ÎÒ¹úͨ¹ý¡¶ÃÜÂë·¨¡·£¬£¬£¬£¬£¬£¬£¬£¬½«ÓÚ2020Äê1ÔÂ1ÈÕÆðʵÑ飻£»£»£»£»£»£»£»NCSCÐû²¼2019ÄêÍøÂçÇå¾²Äê¶È±¨¸æ

Ðû²¼Ê±¼ä 2019-10-28
1¡¢ÎÒ¹úͨ¹ý¡¶ÃÜÂë·¨¡·£¬£¬£¬£¬£¬£¬£¬£¬½«ÓÚ2020Äê1ÔÂ1ÈÕÆðʵÑé

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾

Ê®Èý½ìÌìÏÂÈË´ó³£Î¯»áµÚÊ®ËĴξۻá26ÈÕ±í¾öͨ¹ý¡¶ÖлªÈËÃñ¹²ºÍ¹úÃÜÂë·¨¡·£¬£¬£¬£¬£¬£¬£¬£¬½«×Ô2020Äê1ÔÂ1ÈÕÆðÊ©ÐС£¡£¡£¡£¡£¡£ÃÜÂë·¨Ö¼Ôڹ淶ÃÜÂëÓ¦ÓúÍÖÎÀí£¬£¬£¬£¬£¬£¬£¬£¬Ôö½øÃÜÂëÊÂÒµÉú³¤£¬£¬£¬£¬£¬£¬£¬£¬°ü¹ÜÍøÂçÓëÐÅÏ¢Çå¾²£¬£¬£¬£¬£¬£¬£¬£¬ÌáÉýÃÜÂëÖÎÀí¿ÆÑ§»¯¡¢¹æ·¶»¯¡¢·¨Öλ¯Ë®Æ½£¬£¬£¬£¬£¬£¬£¬£¬ÊÇÎÒ¹úÃÜÂëÁìÓòµÄ×ÛºÏÐÔ¡¢»ù´¡ÐÔÖ´·¨¡£¡£¡£¡£¡£¡£ÃÜÂë·¨¹²ÎåÕÂËÄÊ®ËÄÌõ£¬£¬£¬£¬£¬£¬£¬£¬½«ÃÜÂë·ÖΪ½¹µãÃÜÂ롢ͨË×ÃÜÂëºÍÉÌÓÃÃÜÂ룬£¬£¬£¬£¬£¬£¬£¬²¢¶ÔÏà¹ØÖÆ¶È¡¢Ö´·¨ÔðÈμ°Ö°È¨²¿·Ö¾ÙÐÐÁË»®¶¨¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

http://www.xinhuanet.com/politics/2019-10/26/c_1125156896.htm

2¡¢Ó¢¹úNCSCÐû²¼2019ÄêÍøÂçÇå¾²Äê¶È±¨¸æ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ƾ֤Ӣ¹ú¹ú¼ÒÍøÂçÇå¾²ÖÐÐÄ£¨NCSC£©Ðû²¼µÄ2019ÍøÂçÇå¾²Äê¶È±¨¸æ£¬£¬£¬£¬£¬£¬£¬£¬2018Äê9ÔÂ1ÈÕÖÁ2019Äê8ÔÂ31ÈÕʱ´úNCSC¹²×èÖ¹ÁË600¶àÆðÍøÂç¹¥»÷ÊÂÎñ£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖдó´ó¶¼¹¥»÷ÊÇÓÉÍâÑó¹¥»÷ÕßÌᳫµÄ¡£¡£¡£¡£¡£¡£¸Ã±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬£¬£¬´ó´ó¶¼¹¥»÷Õë¶ÔÕþ¸®»ú¹¹¡¢´óѧ¡¢ÐÅÏ¢ÊÖÒÕ¡¢Ò½ÁƱ£½¡ºÍÔËÊäµÈÐÐÒµ¡£¡£¡£¡£¡£¡£NCSC»¹ÖÒÑÔÁË56¼ÒÒøÐÐÓйØATM͵ÇÔÍþв¡£¡£¡£¡£¡£¡£¸Ã±¨¸æÖгƶíÂÞ˹¡¢Öйú¡¢ÒÁÀʺͳ¯ÏʼÌÐø¶ÔÓ¢¹ú×é³ÉÕ½ÂÔÐÔ¹ú¼ÒÇå¾²Íþв¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/93015/intelligence/ncsc-report-cyber-attacks.html

3¡¢7-11¼ÓÓÍAPPÒâÍâй¶²¿·ÖÓû§Êý¾Ý

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾

ƾ֤Ӣ¹ú¡¶ÎÀ±¨¡·±¨µÀ£¬£¬£¬£¬£¬£¬£¬£¬7-11¼ÓÓÍAPP·ºÆðbug£¬£¬£¬£¬£¬£¬£¬£¬Ê¹µÃÓû§¿ÉÒÔÉó²éÆäËü¿Í»§µÄСÎÒ˽¼ÒÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢ÊÖ»úºÅÂëºÍ³öÉúÈÕÆÚ¡£¡£¡£¡£¡£¡£Ò»Ãû¿Í»§ÌåÏÖËûÔÚ¶à´ÎµÇ¼ºÍ×¢Ïúºó£¬£¬£¬£¬£¬£¬£¬£¬ÔÙÖØÐµÇ¼¼´¿É»á¼ûÆäËü¿Í»§µÄÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨ËûÃÇÕË»§ÖеĽð¶î¡£¡£¡£¡£¡£¡£¸ÃAPPµÄÏÂÔØÁ¿Îª200Íò´Î£¬£¬£¬£¬£¬£¬£¬£¬ÔÚ½«¸ÃAPPÏÂÏßÁ˼¸¸öСʱºó£¬£¬£¬£¬£¬£¬£¬£¬7-11½²»°ÈËÌåÏÖ¸ÃÊÖÒÕÎÊÌâÒѾ­ÐÞ¸´£¬£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÕýÔÚ¼ÌÐøÊӲ첢֪ͨÓйØÕþ¸®¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/drivers-data-exposed-in-7eleven/

4¡¢ÐÂÀÕË÷Èí¼þFuxSocyð³äCerber¾ÙÐÐÈö²¥


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ÐÂÀÕË÷Èí¼þFuxSocy±»·¢Ã÷Ä£ÄâÁËÏÖÔÚÒѲ»¸´±£´æµÄÀÕË÷Èí¼þCerber¡£¡£¡£¡£¡£¡£¸ÃÀÕË÷Èí¼þÓÉMalwareHunterTeam·¢Ã÷£¬£¬£¬£¬£¬£¬£¬£¬ÒÔµçÊÓ¾çMr. RobotÖз¸·¨ÍÅ»ïFSocietyµÄÃû×Ö¾ÙÐÐÃüÃû¡£¡£¡£¡£¡£¡£ÄæÏò¹¤³ÌʦVitali Kremez·¢Ã÷FuxSocyÔÚÍâ¹ÛÓëÄÚ²¿¶¼ºÍCerber¾ßÓÐÀàËÆÖ®´¦£¬£¬£¬£¬£¬£¬£¬£¬ÀýÈç¼ÓÃÜÎļþʱFuxSocy½«Ìø¹ýÎļþ·¾¶°üÀ¨Ä³Ð©×Ö·û´®µÄÎļþ£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÐí¶à×Ö·û´®Ö±½ÓÈ¡×ÔCerberµÄÁбí£»£»£»£»£»£»£»£»±ðµÄ£¬£¬£¬£¬£¬£¬£¬£¬FuxSocy»¹ÒÔÀàËÆÓÚCerberµÄ·½·¨¶Ô¼ÓÃÜÎļþµÄÃû×ÖºÍÀ©Õ¹Ãû¾ÙÐÐÉ趨£»£»£»£»£»£»£»£»×îºó£¬£¬£¬£¬£¬£¬£¬£¬ÔÚ¼ÓÃÜϵͳºó£¬£¬£¬£¬£¬£¬£¬£¬FuxSocy½«Windows×ÀÃæÅä¾°¸ü¸ÄΪÓëCerberʹÓõÄÏÕЩÏàͬµÄÅä¾°¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/new-fuxsocy-ransomware-impersonates-the-notorious-cerber/

5¡¢Ð¶ñÒâÈí¼þBlueFaceÃé×¼Windows DiscordÓû§

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


MalwareHunterTeam·¢Ã÷жñÒâÈí¼þͨ¹ýÐÞ¸ÄWindows Discord¿Í»§¶ËÀ´Õë¶ÔDiscordÓû§£¬£¬£¬£¬£¬£¬£¬£¬Ö÷ÒªÇÔÈ¡Óû§ÐÅÏ¢ºÍ³äµ±ºóÃųÌÐò¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ±»³ÆÎªBlueFace£¬£¬£¬£¬£¬£¬£¬£¬»áÔÚÊÜѬȾµÄϵͳÉÏÌí¼Ó×Ô¼ºµÄ¶ñÒâJavaScript£¬£¬£¬£¬£¬£¬£¬£¬¸Ã¾ç±¾½«Ö´ÐÐÖÖÖÖDiscord APIÏÂÁîºÍJavaScriptº¯Êý£¬£¬£¬£¬£¬£¬£¬£¬ÍøÂçÓйØÓû§µÄÖÖÖÖÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬×îºóͨ¹ýDiscord Webhook½«ÕâЩÐÅÏ¢·¢Ë͸ø¹¥»÷Õß¡£¡£¡£¡£¡£¡£ÓÉÓÚËü»áÍøÂç¼ôÌù°åµÄÄÚÈÝ£¬£¬£¬£¬£¬£¬£¬£¬Òò´Ë¿ÉÄÜ»áÇÔÈ¡Óû§µÄÃÜÂ롢СÎÒ˽¼ÒÐÅÏ¢»òÆäËüÃô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ»¹»áÖ´ÐÐfightdio£¨£©º¯Êý³äµ±ºóÃÅ¡£¡£¡£¡£¡£¡£ÏÖÔÚÆäÔÚVirusTotalÉϵļì²âÂʽöΪ24/65 ¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/discord-turned-into-an-info-stealing-backdoor-by-new-malware/

6¡¢Ñо¿Ö°Ô±·¢Ã÷NukeSped RATÓ볯ÏÊLazarus APTÓйØ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


FortinetÇ徲ר¼ÒÆÊÎöÁ˶ñÒâÈí¼þNukeSpedµÄÑù±¾£¬£¬£¬£¬£¬£¬£¬£¬·¢Ã÷ÆäÓ볯ÏÊAPT×éÖ¯Lazarus±£´æ¹ØÁª¡£¡£¡£¡£¡£¡£Í¨¹ý¶Ô¶ñÒâÈí¼þµÄ¹¦Ð§¾ÙÐÐÆÊÎö£¬£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±È·¶¨ËüÊǶ¯Ì¬ÆÊÎö¹¦Ð§µÄ£¬£¬£¬£¬£¬£¬£¬£¬ÏÖʵÉÏ£¬£¬£¬£¬£¬£¬£¬£¬¶ñÒâ´úÂë½öŲÓÃÁËÉÙÁ¿API¡£¡£¡£¡£¡£¡£NukeSped Ñù±¾»¹¼ÓÃÜÁËAPIÃû³ÆÒÔ×èÖ¹¾²Ì¬ÆÊÎö£¬£¬£¬£¬£¬£¬£¬£¬Ëüͨ¹ýÌí¼Ó×¢²á±íÏîÀ´»ñµÃ³¤ÆÚÐÔ£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÔÚijЩÇéÐÎÏ»Ὣ×Ô¼º×÷ΪЧÀÍ×°Öᣡ£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þµÄÖ÷Òª¹¦Ð§ÊÇΪ¹¥»÷ÕßÌṩ¶ÔÊÜѬȾÖ÷»úµÄÔ¶³ÌÖÎÀí¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/92916/malware/nukesped-rat-north-korea.html