AdobeÐû²¼²¹¶¡ÐÞ¸´¶à¿î²úÆ·Îó²î:KasperskyÐû²¼Ó¦¼±ÏìÓ¦ÊÂÎñ±¨¸æ

Ðû²¼Ê±¼ä 2021-09-17

AdobeÐû²¼ÐÇÆÚ¶þ²¹¶¡£¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¿î²úÆ·ÖеÄ59¸öÎó²î


AdobeÐû²¼ÐÇÆÚ¶þ²¹¶¡£¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¿î²úÆ·ÖеÄ59¸öÎó²î.png


AdobeÐû²¼ÐÇÆÚ¶þÇå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´ÁËAdobe Acrobat Reader¡¢XMP Toolkit SDKºÍPhotoshopµÈ²úÆ·ÖеÄ59¸öÎó²î¡£¡£¡£´Ë´ÎÐÞ¸´µÄ½ÏΪÑÏÖØµÄÊÇPhotoshopÖлº³åÇøÒç³öµ¼ÖµÄí§Òâ´úÂëÖ´ÐÐÎó²î£¨CVE-2021-40709£©¡¢FramemakerÖеÄí§Òâ´úÂëÖ´ÐÐÎó²î£¨CVE-2021-39830¡¢CVE-2021-39829ºÍCVE-2021-39831£©ÒÔ¼°InDesignÖеÄí§Òâ´úÂëÖ´ÐÐÎó²î£¨CVE-2021-39820£©µÈ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/adobe-bugs-acrobat-experience-manager/169467/


HP OMEN Gaming HubÖÐÌáȨÎó²îÓ°ÏìÊý°ÙÍòÅÌËã»ú


HP OMEN Gaming HubÖÐÌáȨÎó²îÓ°ÏìÊý°ÙÍòÅÌËã»ú.jpg


SentinelLabsÓÚ9ÔÂ14ÈÕÅû¶ÁËHP OMEN Gaming HubÖеÄÌáȨÎó²î£¬£¬£¬£¬£¬£¬¿ÉÄÜÓ°ÏìÊý°ÙÍǫ̀ÅÌËã»ú¡£¡£¡£¸ÃÎó²î×·×ÙΪCVE-2021-3437£¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ7.8£¬£¬£¬£¬£¬£¬ÒÑÓÚ2021Äê2ÔÂ17ÈÕ±¨¸æ¸ø»ÝÆÕ£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÔÚ7ÔÂ27ÈÕÐû²¼ÁËÇå¾²¸üС£¡£¡£¸ÃÎó²îÔ´ÓÚ¶ÔOpenLibSys¿ª·¢µÄWinRing0.sysÖÐÎó²î´úÂëµÄÖØÓ㬣¬£¬£¬£¬£¬¹¥»÷Õß¿ÉʹÓÃÆä½ûÓÃÇå¾²²úÆ·¡¢ÁýÕÖϵͳ×é¼þ¡¢ÆÆËð²Ù×÷ϵͳ»òÖ´ÐÐÆäËü¶ñÒâ²Ù×÷¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.sentinelone.com/labs/cve-2021-3437-hp-omen-gaming-hub-privilege-escalation-bug-hits-millions-of-gaming-devices/


Zloader»Ø¹é£¬£¬£¬£¬£¬£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ


Zloader»Ø¹é£¬£¬£¬£¬£¬£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ.jpg


Ñо¿Ö°Ô±·¢Ã÷ZloaderÐÂÒ»ÂֵĹ¥»÷»î¶¯£¬£¬£¬£¬£¬£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ¡£¡£¡£ZLoaderÓÚ2016ÄêÊ״α»·¢Ã÷£¬£¬£¬£¬£¬£¬ÊÇÒ»Öֵ䷶µÄÒøÐÐľÂí£¬£¬£¬£¬£¬£¬¿ÉÓÃÀ´ÇÔÈ¡cookie¡¢ÃÜÂëºÍÈκÎÃô¸ÐÐÅÏ¢¡£¡£¡£´Ë´Î¹¥»÷½ÓÄÉÁׯü¸ß¼¶µÄÒþ²ØÊÖÒÕ£¬£¬£¬£¬£¬£¬ÆäµÚÒ»½×¶ÎµÄdropperÒÑ´Ó¶ñÒâÎĵµ¸ü¸ÄΪÒþ²ØµÄ¡¢ÒÑÊðÃûµÄMSI payload¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬Ëü»¹¿ÉÒÔ½ûÓÃÄ¿µÄÅÌËã»úÉϵÄMicrosoft Defender AntivirusÀ´Èƹý¼ì²â¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/new-zloader-attacks-disable-windows-defender-to-evade-detection/


¿Í»§Ð§À͹«Ë¾TTECÔâµ½Ragnar LockerÀÕË÷¹¥»÷


¿Í»§Ð§À͹«Ë¾TTECÔâµ½Ragnar LockerÀÕË÷¹¥»÷.png


9ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬ÃÀ¹úµÄ¿Í»§Ð§À͹«Ë¾TTEC֪ͨԱ¹¤ÆäÔâµ½ÁË¿ÉÄÜÊÇÀ´×ÔRagnar LockerµÄÀÕË÷¹¥»÷¡£¡£¡£¹¥»÷±¬·¢ÔÚ9ÔÂ12ÈÕ£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÔÚ֪ͨÖÐÌáÐÑÔ±¹¤²»Òª·­¿ªWindows×îÏȲ˵¥ÖÐͻȻ·ºÆðµÄÃûΪ¡°!RA!G!N!A!R!¡±µÄÎļþ¡£¡£¡£TTECÌåÏִ˴ι¥»÷µ¼Ö´󲿷ÖÔ±¹¤¶¼ÎÞ·¨Õý³£ÊÂÇ飬£¬£¬£¬£¬£¬ÆäÔÚÆð¾¢»Ö¸´ÊÜÓ°Ïìϵͳ£¬£¬£¬£¬£¬£¬ÏÖÔÚÉÐδ·¢Ã÷¿Í»§Êý¾Ýй¶µÄÇéÐΡ£¡£¡£



Ô­ÎÄÁ´½Ó£º

https://krebsonsecurity.com/2021/09/customer-care-giant-ttec-hit-by-ransomware/


ÐÂÎ÷À¼CERT NZÐû²¼Õë¶ÔÆóÒµµÄÀÕË÷Èí¼þ±£»£»£»¤Ö¸ÄÏ


ÐÂÎ÷À¼CERT NZÐû²¼Õë¶ÔÆóÒµµÄÀÕË÷Èí¼þ±£»£»£»¤Ö¸ÄÏ.png


ÐÂÎ÷À¼ÅÌËã»úÓ¦¼±ÏìӦС×é(CERT NZ)ÓÚ9ÔÂ14ÈÕÐû²¼ÁËÕë¶ÔÆóÒµµÄÀÕË÷Èí¼þ±£»£»£»¤Ö¸ÄÏ¡£¡£¡£¸ÃÖ¸ÄÏʹÓÃ2ÕÅͼ±í£¬£¬£¬£¬£¬£¬¸ÅÊöÁ˲î±ðµÄÀÕË÷Èí¼þ¹¥»÷µÄ;¾¶£¬£¬£¬£¬£¬£¬²¢ËµÃ÷ÎúÏà¹ØÇå¾²¿ØÖƲ½·¥¿ÉÒÔÔÚÄÄЩ·½ÃæÊ©Õ¹×÷ÓÃÀ´µÖÓù¹¥»÷¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬CERT NZ²»½¨Òé×éÖ¯Ö§¸¶Êê½ð£¬£¬£¬£¬£¬£¬ÓÉÓÚÕâ²»¿É°ü¹ÜÎļþ»á±»Í˻أ¬£¬£¬£¬£¬£¬²¢ÇÒ¿ÉÄÜʹÊܺ¦Õß³ÉΪ½øÒ»²½¹¥»÷µÄÄ¿µÄ¡£¡£¡£  


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/09/14/cert-nz-releases-ransomware-protection-guide-businesses


KasperskyÐû²¼2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄÆÊÎö±¨¸æ


KasperskyÐû²¼2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄÆÊÎö±¨¸æ.png


KasperskyÔÚ9ÔÂ13ÈÕÐû²¼ÁËÓйØ2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄÆÊÎö±¨¸æ¡£¡£¡£±¨¸æÆÊÎöÁËKasperskyÔÚ2020Ä꿪չµÄÊÂÎñÊÓ²ìЧÀÍ£¬£¬£¬£¬£¬£¬²¢´ÓÆô¶¯ÊÂÎñÏìÓ¦µÄÔµ¹ÊÔ­ÓÉ¡¢¹¥»÷ÕßÔõÑù½øÈëÄ¿µÄÍøÂ硢ʹÓõŤ¾ßºÍÎó²îÒÔ¼°¹¥»÷Ò»Á¬Ê±¼äÕâ4¸ö·½ÃæÁÙÆä¾ÙÐÐÁËÆÊÎö¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬´ó´ó¶¼Ó¦¼±ÏìÓ¦ÊÂÎñÀ´×Ô¶íÂÞ˹ºÍ¶ÀÁªÌå(27.8%)¡¢Å·ÃË(24.7%)ºÍÖж«(22.7%)µØÇø£»£»£»ÆäÖУ¬£¬£¬£¬£¬£¬¹¤ÒµÐÐÒµÊܵ½µÄÓ°Ïì×î´ó(22%)£¬£¬£¬£¬£¬£¬Æä´ÎÊÇÕþ¸®»ú¹¹(19%)¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/incident-response-analyst-report-2020/104080/