MSI BIOS¸üÐÂÐÞ¸´Windows²»Ö§³Ö´¦ÖÃÆ÷µÄBSOD Bug
Ðû²¼Ê±¼ä 2023-09-081¡¢MSI BIOS¸üÐÂÐÞ¸´Windows²»Ö§³Ö´¦ÖÃÆ÷µÄBSOD Bug
¾ÝýÌå9ÔÂ6ÈÕ±¨µÀ£¬MSIÐû²¼ÁËBIOS¸üУ¬ÐÞ¸´Windows¼ÆËã»úÔÚ°²×°8Ô·ݸüк󴥷¢À¶ÆÁËÀ»úµÄBug¡£Á½ÖÜǰ£¬ÓÐÓû§³ÂË߳ư²×°¸üкó»á·ºÆðÀ¶ÆÁ²¢ÏÔʾ´íÎóÐÅÏ¢¡°UNSUPPORTED_PROCESSOR¡±£¬¸üÐÂÔÚ¼¸´ÎÖØÆôºó»á×Ô¶¯»Ø¹ö¡£¸Ã¹«Ë¾ÌåÏÖ£¬ÕâÒ»ÎÊÌâ½öÓ°ÏìÆäÓ¢ÌØ¶û700ºÍ600ϵÁÐÖ÷°å£¬»ù´¡ÔÒò¿É×·Ëݵ½×î½ü΢´úÂë¸üи½´øµÄÓ¢ÌØ¶û»ìºÏ¼Ü¹¹µÄ¹Ì¼þÉèÖá£MSI»¹³Æ£¬±¾Öܽ«Óиü¶àÊÊÓÃÓÚIntel 700ºÍ600ϵÁÐÐͺŵÄBIOS¿ÉÔÚMSI¹Ù·½ÍøÕ¾ÉÏÏÂÔØ£¬ËùÓÐBIOS°æ±¾½«ÓÚ9Ôµ×Ðû²¼¡£
https://www.bleepingcomputer.com/news/software/msi-bios-updates-fix-windows-unsupported-processor-bsod-bug/
2¡¢Apple½ô¼±¸üÐÂÐÞ¸´iPhoneºÍMacÖÐÁ½¸öÒѱ»ÀûÓé¶´
AppleÔÚ9ÔÂ7ÈÕÐû²¼Á˽ô¼±Äþ¾²¸üУ¬ÒÔÐÞ¸´Õë¶ÔiPhoneºÍMacµÄ¹¥»÷Öб»ÀûÓõÄÁ½¸ö©¶´¡£ÕâЩ©¶´´æÔÚÓÚImage I/OºÍÇ®°ü¿ò¼ÜÖУ¬·Ö±ðÊÇ»º³åÇøÒç³ö©¶´£¨CVE-2023-41064£©ºÍÑéÖ¤ÎÊÌ⣨CVE-2023-41061£©¡£Citizen Lab͸¶£¬ÕâÁ½¸ö©¶´×÷ΪÁãµã»÷iMessage©¶´ÀûÓÃÁ´BLASTPASSµÄÒ»²¿Ãű»ÀûÓã¬Í¨¹ý°üÂÞ¶ñÒâͼƬµÄPassKit¸½¼þ£¬½«NSO GroupµÄ¼äµýÈí¼þPegasus°²×°µ½ÔËÐÐiOS 16.6µÄiPhoneÉÏ¡£×Ô½ñÄêÄê³õÒÔÀ´£¬AppleÒÑÐÞ¸´13¸ö±»ÀûÓõÄ0 day¡£
https://securityaffairs.com/150485/hacking/apple-discloses-2-new-actively-exploited-zero-day-flaws-in-iphones-macs.html
3¡¢Group-IBÅû¶µöÓãÍÅ»ïW3LLÕë¶ÔMS 365ÕÊ»§µÄ»î¶¯
9ÔÂ6ÈÕ£¬Group-IBÅû¶Á˹ØÓÚµöÓã¹¥»÷ÍÅ»ïW3LLµÄÔË×÷Çé¿öµÄÏêϸÐÅÏ¢¡£¹¥»÷Õß´´½¨ÁËÒ»¸öµØÏÂÊг¡W3LL Store£¬ÕâÊÇÒ»¸öÓÉÖÁÉÙ500Ãû¹¥»÷Õß×é³ÉµÄ¹Ø±ÕÉçÇø£¬ËûÃÇ¿ÉÒÔ¹ºÖÃ×Ô½çËµÍøÂçµöÓ㹤¾ß°üW3LL Panel£¨Ö¼ÔÚÈÆ¹ý MFA£©£¬ÒÔ¼°ÓÃÓÚBEC¹¥»÷µÄÆäËü16¸ö¶¨Öƹ¤¾ß¡£2022Äê10ÔÂÖÁ2023Äê7ÔÂÆÚ¼ä£¬W3LLµÄµöÓ㹤¾ß±»ÓÃÀ´Õë¶ÔÃÀ¹ú¡¢°Ä´óÀûÑǺÍÅ·ÖÞµÄÁè¼Ý56000¸öÆóÒµMicrosoft 365ÕÊ»§¡£Æ¾¾ÝGroup-IBµÄ´óÂÔÔ¤¼Æ£¬W3LL Store×î½ü10¸öÔµÄÓªÒµ¶î¿ÉÄÜÒѵ½´ï50ÍòÃÀÔª¡£
https://www.group-ib.com/media-center/press-releases/w3ll-phishing-report/
4¡¢·áÌï³ÆÊý¾Ý¿â·þÎñÆ÷´æ´¢¿Õ¼ä²»×ãµ¼ÖÂÉú²ú³µ¼äÍ£¹¤
¾Ý9ÔÂ6ÈÕ±¨µÀ£¬·áÌïÌåÏÖ×î½üÈÕ±¾Éú²ú³µ¼äµÄÔËÓªÖжÏÊÇÓÉÓÚÆäÊý¾Ý¿â·þÎñÆ÷´æ´¢¿Õ¼ä²»×ãµ¼Öµġ£8ÔÂ29ÈÕ£¬Óб¨µÀ³ÆÓÉÓÚ²»Ã÷ϵͳ¹ÊÕÏ£¬·áÌïÔÚÈÕ±¾µÄ14¼ÒÆû³µ×é×°³§ÖеÄ12¼ÒÔËÓªÖжϣ¬µ¼ÖÂÿÌìÔ¼13000Á¾µÄ²úÁ¿Ëðʧ¡£¸Ã¹«Ë¾ÌåÏÖ£¬¹ÊÕÏ·¢ÉúÔÚ8ÔÂ27Èռƻ®µÄϵͳά»¤»î¶¯ÆÚ¼ä£¬¼Æ»®µÄά»¤ÊÇÕûÀíÊý¾Ý¿âÖеÄÊý¾ÝºÍɾ³ýË鯬Êý¾Ý¡£È»¶ø£¬ÔÚÈÎÎñÍê³É֮ǰ´æ´¢ÒÑÂú£¬Òò´Ë·¢Éú´íÎóµ¼ÖÂϵͳ¹Ø±Õ¡£ÆäÖ÷·þÎñÆ÷ºÍ±¸·Ý»úÆ÷ÔÚͬһϵͳÉÏÔËÐУ¬ÃæÁÙͬÑùµÄ¹ÊÕÏ£¬ÎÞ·¨½øÐÐÇл»£¬¹¤³§±»ÆÈÍ£²ú¡£8ÔÂ29ÈÕ·áÌï×¼±¸ÁËһ̨ÈÝÁ¿¸ü´óµÄ·þÎñÆ÷À´½ÓÊÕǰÁ½Ìì´«ÊäµÄÊý¾Ý¡£
https://www.bleepingcomputer.com/news/security/toyota-says-filled-disk-storage-halted-japan-based-factories/
5¡¢Mirai±äÌåѬȾÁ®¼ÛµÄAndroidµçÊÓºÐ×ÓÖ´ÐÐDDoS¹¥»÷
9ÔÂ6ÈÕ±¨µÀ£¬Dr. Web·¢ÏÖÒ»ÖÖеĽ©Ê¬ÍøÂçMirai±äÌ忪ʼѬȾÁ®¼ÛµÄAndroidµçÊÓºÐ×Ó¡£Ä¿Ç°µÄľÂíÊÇ2015ÄêÊ״ηºÆðµÄºóÃÅPandoraµÄа汾¡£¸Ã»î¶¯Ö÷ÒªÕë¶ÔµÍ³É±¾AndroidµçÊӺУ¬ÈçTanix TX6 TV Box¡¢MX10 Pro 6KºÍH96 MAX X3£¬ËüÃÇÅ䱸Ëĺ˴¦ÖÃÆ÷£¬¼´Ê¹ÔÚС¹æÄ£ÏÂÒ²ÄÜÖ´ÐÐÇ¿´óµÄDDoS¹¥»÷¡£Dr. Web³Æ£¬ÕâЩ¶ñÒâÈí¼þͨ¹ýʹÓùûÈ»¿ÉÓõIJâÊÔÃÜÔ¿Ç©ÃûµÄ¶ñÒâ¹Ì¼þ¸üУ¬»òÕßͨ¹ýÕë¶Ô¶ÔµÁ°æÄÚÈݸÐÐËȤµÄÓû§µÄÍøÕ¾ÉϵĶñÒâÓ¦ÓýøÐзַ¢¡£
https://news.drweb.com/show/?lng=en&i=14743
6¡¢Ñо¿ÈËÔ±·¢ÏÖÕë¶ÔMac·Ö·¢Ð°æAMOSµÄ¶ñÒâ¹ã¸æ»î¶¯
MalwarebytesÔÚ9ÔÂ6ÈÕ³ÆÆä·¢ÏÖÁËÕë¶ÔMac·Ö·¢Atomic Stealer£¨AMOS£©µÄ¶ñÒâ¹ã¸æ»î¶¯¡£AMOSÓÚ4ÔÂÊ״ηºÆð£¬Ö÷ÒªÕë¶Ô¼ÓÃÜ×ʲú£¬´Óä¯ÀÀÆ÷ºÍAppleÔ¿³×´®ÖлñÈ¡ÃÜÂë¡£¸Ã»î¶¯ÀûÓÃÁËGoogleËÑË÷µÄ¶ñÒâ¹ã¸æ£¬Í¨¹ýµöÓãÍøÕ¾ÓÕʹĿ±êÏÂÔØÓ¦Óá£ÏÂÔØµÄÎļþ(TradingView.dmg) ¸½´øÈçºÎ´ò¿ªËüÀ´ÈƹýGateKeeperµÄ˵Ã÷¡£¶ñÒâÈí¼þÀ¦°óÔÚÒ»¸öÁÙʱǩÃûµÄÓ¦ÓÃÖУ¬ÕâÒâζ×ÅËü²»ÊÇAppleÖ¤Ê飬Òò´ËÎÞ·¨È¡Ïû£¬payloadÊÇ×î½üÕë¶ÔOSXµÄAMOSµÄа汾¡£
https://www.malwarebytes.com/blog/threat-intelligence/2023/09/atomic-macos-stealer-delivered-via-malvertising