CallistoÔø¹¥»÷ÃÀ¹úµÄ3¸öºËÑо¿ÊµÑéÊÒ

Ðû²¼Ê±¼ä 2023-01-10
1¡¢ºÚ¿ÍÍÅ»ïCallistoÔø¹¥»÷ÃÀ¹úµÄ3¸öºËÑо¿ÊµÑéÊÒ

      

¾Ý·͸Éç1ÔÂ7ÈÕ±¨µÀ£¬¶íÂÞ˹ºÚ¿ÍÍÅ»ïCallisto¹¥»÷ÁËÃÀ¹úµÄ3¸öºËÑо¿ÊµÑéÊÒBNL¡¢ArgonneºÍLLNL¡£¹¥»÷·¢ÉúÔÚ2022Äê8ÔÂÖÁ9Ô£¬ºÚ¿Íͨ¹ýµöÓã¹¥»÷Ϊÿ¸öʵÑéÊÒ´´½¨Ðé¼ÙµÄµÇÂ¼Ò³Ãæ£¬²¢ÏòºË¿ÆÑ§¼Ò·¢Ë͵ç×ÓÓʼþÒÔÓÕʹËûÃÇй¶ÃÜÂë¡£Ñо¿ÈËÔ±ÎÞ·¨È·¶¨¹¥»÷ÕßΪºÎÕë¶ÔÕâÈý¸öʵÑéÊÒ£¬ÒÔ¼°ËûÃǵĹ¥»÷ÊÇ·ñÀֳɡ£ÔçÔÚ2020Äê12Ô£¬Ò»Èº¶íÂÞ˹ºÚ¿ÍÒ²Ôø±»Ö¸¿Ø¹¥»÷°üÂÞÃÀ¹úºËÄÜ»ú¹¹ÔÚÄÚµÄ40¸ö×éÖ¯¡£


https://www.reuters.com/world/europe/russian-hackers-targeted-us-nuclear-scientists-2023-01-06/


2¡¢Saint Gheorghe¿µ¸´Ò½Ôº±»ÀÕË÷3¸ö±ÈÌØ±ÒÀ´»Ö¸´Êý¾Ý

      

¾ÝýÌå1ÔÂ6ÈÕ±¨µÀ£¬ÂÞÂíÄáÑǵÄSaint Gheorghe¿µ¸´Ò½ÔºÔÚ12ÔÂÔâµ½ÁËÀÕË÷¹¥»÷£¬¸Ã¹¥»÷ÈÔÔÚÓ°ÏìÆäÕý³£Ò½Áƻ¡£¾ÝϤ£¬ºÚ¿Íͨ¹ýʹÓÃÆäÖÐÒ»¼ÒÔËά¹«Ë¾·ÃÎʵÄÔ¶³ÌÁ¬½ÓÀ´Íê³É¹¥»÷£¬ËûÔÚ½øÈëϵͳºó¼ÓÃÜÁË12ÔµÄÊý¾Ý¿â£¬²¢ÁôÏÂÁËÊê½ð¼Ç¼ҪÇó3±ÈÌØ±Ò£¨Ô¼ºÏ46400Å·Ôª£©¡£Ã½Ì峯´Ë´Î¹¥»÷·Ç³£ÅÓ´ó£¬ÂÞÂíÄáÑÇDIICOTºÍÄþ¾²¹«Ë¾BitDefender¶¼ÎÞ·¨½âÃÜÕâЩÎļþ¡£Ä¿Ç°£¬Õë¶Ô´Ë´Î¹¥»÷»î¶¯µÄÊÓ²ìÒѾ­Õ¹¿ª£¬Ò½Áƻ½«ºÜ¿ì»Ö¸´¡£


https://securityaffairs.com/140446/cyber-crime/saint-gheorghe-recovery-hospital-ransomware.html


3¡¢BitdefenderÐû²¼ÀÕË÷Èí¼þMegaCortexµÄÃâ·Ñ½âÃÜÆ÷

      

ýÌå1ÔÂ5Èճƣ¬Äþ¾²¹«Ë¾BitdefenderÐû²¼ÁËÀÕË÷Èí¼þMegaCortexµÄ½âÃÜÆ÷¡£Ê¹ÓýâÃÜÆ÷µÄÒªÁì·Ç³£¼òµ¥£¬ÒòΪËüÊÇÒ»¸ö¶ÀÁ¢µÄ¿ÉÖ´ÐÐÎļþ£¬²»ÐèÒª°²×°²¢¿ÉÒÔ×Ô¶¯ÔÚϵͳÉ϶¨Î»¼ÓÃÜÎļþ¡£´ËÍ⣬ΪÁËÄþ¾²Æð¼û£¬¸Ã½âÃÜÆ÷¿ÉÒÔ±¸·Ý¼ÓÃÜÎļþ£¬ÒÔ·À½âÃܹý³ÌÖзºÆðÎÊÌ⣬µ¼ÖÂÎļþË𻵶øÎÞ·¨»Ö¸´¡£ËäÈ»BitDefenderûÓÐ˵Ã÷ËûÃÇÊÇÈçºÎ»ñµÃÁËMegaCortex½âÃÜÆ÷µÄ˽Կ£¬µ«ºÜ¿ÉÄÜÊÇʹÓÃËÕÀèÊÀÕþ¸®·¢ÏÖµÄÖ÷ÃÜÔ¿´´½¨µÄ¡£


https://www.bleepingcomputer.com/news/security/bitdefender-releases-free-megacortex-ransomware-decryptor/


4¡¢AppleÒòÔÚApp StoreÉÏͶ·Å¹ã¸æ±»·¨¹ú·£¿î800ÍòÅ·Ôª

      

1ÔÂ5ÈÕ±¨µÀ³Æ£¬Apple±»·¨¹úÊý¾Ý±£»¤»ú¹¹(CNIL)·£¿î800ÍòÅ·Ôª£¨850ÍòÃÀÔª£©¡£Ô­ÒòÊÇAppleÔÚδÕ÷µÃÓû§Í¬ÒâµÄÇé¿öÏÂÊÕ¼¯Óû§Êý¾ÝÓÃÓÚApp StoreÉÏµÄ¹ã¸æÍ¶·Å£¬ÕâÎ¥·´ÁË¡¶·¨¹úÊý¾Ý±£»¤·¨¡·(DPA)µÚ82Ìõ¡£CNILͨ¸æÖ¸³ö£¬ÔÚiOS 14.6Ï£¬µ±Óû§·ÃÎÊApp Storeʱ£¬ÓÃÓÚ¶àÖÖÄ¿µÄµÄ±êʶ·û£¬°üÂÞApp StoreÉÏµÄ¹ã¸æ¸öÐÔ»¯£¬Ä¬ÈÏÇé¿öÏ»áÔÚÖÕ¶ËÉÏ×Ô¶¯¶ÁÈ¡¶øÎÞÐèÕ÷µÃͬÒâ¡£ËäÈ»AppleÒѶÔÕâÒ»ÎÊÌâ½øÐе÷Í££¬µ«CNIL²»µÃ²î³ØÎ¥¹æÆÚ¼äµÄÐÐΪ·£¿î¡£Apple France·¢ÑÔÈËÌåÏÖ£¬ËûÃǼƻ®¶ÔCNILµÄ¾ö¶¨Ìá³öÉÏËß¡£ 


https://www.bleepingcomputer.com/news/apple/france-fines-apple-for-targeted-app-store-ads-without-consent/


5¡¢Unit 42Åû¶JsonWebTokenÖеÄRCE©¶´CVE-2022-23529

      

Unit 42ÔÚ1ÔÂ9ÈÕÅû¶ÁË¿ªÔ´¿âJsonWebTokenÖеÄRCE©¶´£¨CVE-2022-23529£©¡£¸Ã¿â±»Áè¼Ý22000¸öÏîĿʹÓã¬Ã¿ÔÂÔÚNPMÉϵÄÏÂÔØÁ¿Áè¼Ý3600Íò´Î¡£Â©¶´´æÔÚÓÚJsonWebTokenµÄverify()ÒªÁìÖУ¬ÆäÓÃÓÚÑéÖ¤JWT²¢·µ»Ø½âÂëÐÅÏ¢¡£ÓÉÓÚȱ·¦¶ÔsecretOrPublicKey²ÎÊýµÄ¼ì²éÒÔÈ·¶¨ËüÊÇ×Ö·û´®»¹ÊÇ»º³åÇø£¬¹¥»÷Õß¿ÉÒÔ·¢ËÍÌØÖÆµÄ¹¤¾ßÔÚÄ¿±êÉÏÖ´ÐÐÈÎÒâÎļþдÈë¡£ÀÖ³ÉÀûÓôË©¶´¿ÉÔÚÑéÖ¤¶ñÒâJWTÇëÇóµÄ·þÎñÆ÷ÉÏÔ¶³ÌÖ´ÐдúÂ롣Ŀǰ£¬Auth0ÍŶÓÒÑÐÞ¸´¸Ã©¶´¡£


https://unit42.paloaltonetworks.com/jsonwebtoken-vulnerability-cve-2022-23529/


6¡¢Î¢ÈíÐû²¼¹ØÓÚÕë¶ÔMacÉ豸µÄÀÕË÷Èí¼þµÄ¼¼Êõ·ÖÎö³ÂËß

      

1ÔÂ6ÈÕ£¬Î¢ÈíÏêÊöÁËÕë¶ÔApple macOSϵͳµÄ²îÒìÀÕË÷Èí¼þϵÁС£³ÂËßÖ¸³ö£¬MacÀÕË÷¹¥»÷µÄ³õʼý½éͨ³£ÒÀÀµÓÚÓû§¸¨ÖúµÄÒªÁ죬ÀýÈçÏÂÔØºÍÔËÐÐαÔìµÄ»òÎäÆ÷»¯µÄÓ¦Óá£Ò²¿ÉÒÔ×÷ΪµÚ¶þ½×¶ÎµÄpayload·Ö·¢£¬»òÓÉÆäËü¶ñÒâÈí¼þ»ò¹©Ó¦Á´¹¥»÷»î¶¯·Ö·¢»òÏÂÔØ¡£´ËÍ⣬¶ñÒâÈí¼þ¿ª·¢Õß»áÀÄÓúϷ¨¹¦Ð§²¢Í¨¹ýÖÖÖÖ¼¼ÊõÀ´ÀûÓé¶´¡¢Èƹý·ÀÓù»òвÆÈÓû§À´Ñ¬È¾ËûÃǵÄÉ豸¡£¸Ã³ÂËßÖ÷Ҫƾ¾Ý¶Ô4ÖÖÀÕË÷Èí¼þ£¨KeRanger¡¢FileCoder¡¢MacRansomºÍEvilQuest£©µÄ·ÖÎö£¬À´ÏêϸÃèÊöÕâЩ¼¼Êõ¡£


https://thehackernews.com/2023/01/microsoft-reveals-tactics-used-by-4.html