AdobeÐÞ¸´Òѱ»Ê¹ÓõÄÊäÈëÑéÖ¤²»µ±Îó²îCVE-2022-24086
Ðû²¼Ê±¼ä 2022-02-16AdobeÐÞ¸´Òѱ»Ê¹ÓõÄÊäÈëÑéÖ¤²»µ±Îó²îCVE-2022-24086
2ÔÂ13ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬AdobeÐû²¼½ôÆÈ¸üУ¬£¬£¬£¬£¬£¬£¬£¬ÐÞ¸´Æä²úÆ·CommerceºÍMagento Open SourceÖеÄÎó²î¡£¡£¡£¡£ÕâÊÇÒ»¸öÊäÈëÑéÖ¤Îó²î£¬£¬£¬£¬£¬£¬£¬£¬×·×ÙΪCVE-2022-24086£¬£¬£¬£¬£¬£¬£¬£¬CVSSµÃ·ÖΪ9.8¡£¡£¡£¡£¿£¿£¿£¿ÉÒÔ±»ÎäÆ÷»¯À´ÊµÏÖí§Òâ´úÂëÖ´ÐУ¬£¬£¬£¬£¬£¬£¬£¬¾Ý³Æ¸ÃÎó²îÕýÔÚ±»ÆÕ±éʹÓᣡ£¡£¡£¸ÃÎó²îÓ°ÏìÁËAdobe CommerceºÍMagento Open Source 2.4.3-p1¼°¸üÔç°æ±¾£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°2.3.7-p2¼°¸üÔç°æ±¾¡£¡£¡£¡£
https://thehackernews.com/2022/02/critical-magento-0-day-vulnerability.html
¼ÓÖݵĴóѧOCCDÔâµ½ÀÕË÷¹¥»÷µ¼ÖÂЧÀÍÖÐֹʮ¶àÌì
¾ÝýÌå2ÔÂ10ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬£¬¼ÓÖݵĴóѧOhlone Community College District(OCCD)ÒòÀÕË÷¹¥»÷ЧÀÍÖÐֹʮ¶àÌì¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ1ÔÂ20ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂÔÚÏßѧÉúÍøÕ¾¹Ø±ÕÁË17Ì죬£¬£¬£¬£¬£¬£¬£¬°Â¡ѧԺµÄµç»°Í¨Ñ¶ºÍÓʼþϵͳ¹Ø±ÕÁË10Ìì¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬£¬²¿·Ö½ÌÖ°Ô±¹¤ºÍѧÉúµÄÐÅϢй¶£¬£¬£¬£¬£¬£¬£¬£¬Éæ¼°Éç»áÇå¾²ºÅÂë¡¢¼ÝʻִÕÕºÅÂë¡¢ÒøÐÐÕË»§ÏêϸÐÅÏ¢¡¢Ñ§ÉúÖ¤ºÅÂë¡¢¿Î³Ì°²ÅźÍЧ¹ûµ¥µÈÐÅÏ¢¡£¡£¡£¡£
https://www.infosecurity-magazine.com/news/californian-college-ransomware/
Uptycs·¢Ã÷ʹÓÃregsvr32·Ö·¢QbotºÍLokibotµÄ»î¶¯
UptycsÔÚ2ÔÂ9ÈÕÅû¶ʹÓÃSquumbledooÊÖÒÕ·Ö·¢QbotºÍLokibotµÄ»î¶¯µÄϸ½Ú¡£¡£¡£¡£SquibldooÊÖÒÕ×Ô2017ÄêÒÔÀ´Ò»Ö±±»ÓÃÓÚ¶ñÒâÈí¼þ·Ö·¢»î¶¯£¬£¬£¬£¬£¬£¬£¬£¬Í¨¹ýʹÓÃregsvr32¼ÓÔØCOM½ÅÔÀ´Ö´ÐÐDLL¡£¡£¡£¡£´ËÒªÁì²»»á¸ü¸Ä×¢²á±í£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÓÃÀ´ÈƹýÓ¦ÓóÌÐò°×Ãûµ¥¡£¡£¡£¡£Uptycs½üÆÚ¼ì²âµ½500¶à¸öʹÓÃregsvr32.exe×¢²á.ocxÎļþµÄÑù±¾£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖÐ97%ÊôÓÚ¶ñÒâMicrosoft OfficeÎĵµ£¬£¬£¬£¬£¬£¬£¬£¬Ö÷ÒªÊÇExcelÎļþ¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/qbot-lokibot-malware-switch-back-to-windows-regsvr32-delivery/
KasperskyÐû²¼2021ÄêQ4 DDoS¹¥»÷µÄÆÊÎö±¨¸æ
KasperskyÔÚ2ÔÂ10ÈÕÐû²¼ÁË2021ÄêQ4 DDoS¹¥»÷µÄÆÊÎö±¨¸æ¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬£¬£¬ÔÚÕâÒ»¼¾¶ÈDDoS¹¥»÷ÊýÄ¿ÏÔÖøÔöÌí£¬£¬£¬£¬£¬£¬£¬£¬±ÈÉÏÒ»¼¾¶ÈÔöÌíÁË52%£¬£¬£¬£¬£¬£¬£¬£¬±ÈÈ¥ÄêͬÆÚÔöÌíÁË4.5±¶ÒÔÉÏ£¬£¬£¬£¬£¬£¬£¬£¬´´ÏÂÀúʷиߡ£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬£¬ÔÚµÚËÄÐò¶È»¹·ºÆðÁ˼¸¸öÐ嵀 DDoS½©Ê¬ÍøÂ磬£¬£¬£¬£¬£¬£¬£¬°üÀ¨AbcbotºÍEwDoorµÈ£»£»£»£»£»£»£»±¬³öÁ˺ųƽñÄê×îΣÏÕµÄÎó²îLog4Shell£¬£¬£¬£¬£¬£¬£¬£¬Mirai¡¢MuhstikºÍElknotµÈ½©Ê¬ÍøÂçÕýÊÔͼʹÓôËÎó²î£»£»£»£»£»£»£»Õë¶ÔVoIPÌṩÉ̵ÄDDoS¹¥»÷ÈÔÔÚ¼ÌÐø¡£¡£¡£¡£
https://securelist.com/ddos-attacks-in-q4-2021/105784/
ChainalysisÐû²¼2021ÄêÀÕË÷¹¥»÷»î¶¯µÄͳ¼Æ±¨¸æ
2ÔÂ10ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Çø¿éÁ´ÆÊÎö¹«Ë¾ChainalysisÐû²¼Á˹ØÓÚ2021ÄêÀÕË÷¹¥»÷»î¶¯µÄͳ¼Æ±¨¸æ¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬£¬£¬2021ÄêÔâµ½ÀÕË÷¹¥»÷µÄ×éÖ¯×ܼÆÖ§¸¶ÁË6.02ÒÚÃÀÔªµÄÊê½ð£¬£¬£¬£¬£¬£¬£¬£¬ÓëÈ¥Ä꣨6.92ÒÚÃÀÔª£©Ïà±ÈÂÔÓÐϽµ¡£¡£¡£¡£ÆäÖÐContiµÄÕ¼±È×î´ó£¬£¬£¬£¬£¬£¬£¬£¬ÊÕµ½ÁËÖÁÉÙ1.8ÒÚÃÀÔªÊê½ð¡£¡£¡£¡£Æ½¾ùÊê½ð½ð¶îÒ²ÓÐËùÔöÌí£¬£¬£¬£¬£¬£¬£¬£¬2019ÄêΪ25000ÃÀÔª£¬£¬£¬£¬£¬£¬£¬£¬2020ÄêµÖ´ï88000ÃÀÔª£¬£¬£¬£¬£¬£¬£¬£¬¶ø2021ÄêÁè¼ÝÁË118000ÃÀÔª£»£»£»£»£»£»£»ÀÕË÷Èí¼þÊýÄ¿´Ó2019ÄêµÄ79ÖÖÔöÌíµ½2020ÄêµÄ119ÖÖ£¬£¬£¬£¬£¬£¬£¬£¬²¢ÔÚ2021ÄêÔöÌíµ½140ÖÖ¡£¡£¡£¡£
https://blog.chainalysis.com/reports/2022-crypto-crime-report-preview-ransomware/
FBI³ÆBlackByteÒÑÈëÇÖÃÀ¹ú¶à¸öÒªº¦»ù´¡ÉèÊ©µÄ×éÖ¯
ýÌå2ÔÂ14ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬£¬ÃÀ¹úFBIºÍÌØÇÚ¾Ö(USSS)Ðû²¼ÁËÒ»·Ý¹ØÓÚBlackByteµÄÁªºÏÍøÂçÇå¾²×ÊѶ¡£¡£¡£¡£¸Ã×ÊѶָ³ö£¬£¬£¬£¬£¬£¬£¬£¬×èÖ¹2021Äê11Ô£¬£¬£¬£¬£¬£¬£¬£¬ÀÕË÷ÍÅ»ïBlackByteÒѾ¹¥»÷ÁËÃÀ¹úµÄ¶à¸ö¹«Ë¾£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÖÁÉÙ3¸öÉæ¼°Òªº¦»ù´¡ÉèÊ©£¨Õþ¸®¡¢½ðÈÚÒÔ¼°Ê³ÎïºÍũҵ£©µÄ×éÖ¯¡£¡£¡£¡£BlackByteÊÇÒ»¸öRaaSÍŻ£¬£¬£¬£¬£¬£¬£¬¸Ãͨ¸æµÄÖØµãÊÇÌṩÓÃÀ´¼ì²âºÍ·ÀÓùBlackByte¹¥»÷µÄIOC£¬£¬£¬£¬£¬£¬£¬£¬»¹Ìá³öÁË¿ÉÒÔ×ÊÖúÖÎÀíÔ±µÖÓùBlackByte¹¥»÷µÄ²½·¥¡£¡£¡£¡£
https://securityaffairs.co/wordpress/128013/malware/blackbyte-ransomware-breached-at-least-3-us-critical-infrastructure-organizations.html
Çå¾²¹¤¾ß
modifyCertTemplate
Ö¼ÔÚ×ÊÖú²Ù×÷Ô±ÐÞ¸Ä ADCS Ö¤ÊéÄ£°å£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ±ã¿ÉÒÔʹÓý¨ÉèµÄÒ×Êܹ¥»÷״̬¾ÙÐÐȨÏÞÌáÉý¡£¡£¡£¡£
https://github.com/fortalice/modifyCertTemplate
Shhhloader
ÊÇÒ»¸ö SysWhispers Shellcode ¼ÓÔØÆ÷¡£¡£¡£¡£
https://github.com/icyguider/Shhhloader
RISKEN
Ò»¸öÇå¾²²Ù×÷ƽ̨£¬£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚÒ»Á¬ÍøÂçºÍ¼à¿ØÒþ²ØÔÚϵͳÇéÐÎÖеÄΣº¦ÐÅÏ¢¡£¡£¡£¡£
https://docs.security-hub.jp/
Exrop
×Ô¶¯ ROP Á´ÌìÉúÆ÷¹¤¾ß£¬£¬£¬£¬£¬£¬£¬£¬Ëü¿ÉÒÔ´Ó¸ø¶¨µÄ¶þ½øÖÆÎļþºÍÔ¼Êø×Ô¶¯¹¹½¨Ð¡¹¤¾ßÁ´¡£¡£¡£¡£
https://github.com/d4em0n/exrop
Get-RBCD-Threaded
ÔÚ Active Directory ÇéÐÎÖз¢Ã÷»ùÓÚ×ÊÔ´µÄÔ¼Êø¹¥»÷·¾¶µÄ¹¤¾ß¡£¡£¡£¡£
https://github.com/FatRodzianko/Get-RBCD-Threaded
Çå¾²ÆÊÎö
΢Èí³Æ¶à¸ö Visual Studio °æ±¾¼´½«¼´½«ÖÕÖ¹Ö§³Ö
https://news.softpedia.com/news/microsoft-warns-of-approaching-eol-for-several-visual-studio-versions-534867.shtml
΢ÈíÕýÔÚ¼Ó´ó´ÓÄÚ´æÖÐÇÔÈ¡ Windows ÃÜÂëµÄÄѶÈ
https://www.bleepingcomputer.com/news/microsoft/microsoft-is-making-it-harder-to-steal-windows-passwords-from-memory/
MOXA MXVIEW±£´æ¶à¸öÎó²î
https://www.claroty.com/2022/02/10/blog-research-securing-network-management-systems-moxa-mxview/
Twitter Òò¡°³öÁ˵ãÎÊÌ⡱¶øÖÐÖ¹
https://www.bleepingcomputer.com/news/technology/twitter-is-down-with-something-went-wrong-errors/


¾©¹«Íø°²±¸11010802024551ºÅ