Ç÷ÊÆ¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ

Ðû²¼Ê±¼ä 2022-05-09

1¡¢Ç÷ÊÆ¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ


¾ÝýÌå5ÔÂ7ÈÕ±¨µÀ£¬£¬£¬£¬Ç÷ÊÆ¿Æ¼¼¶ËµãÇå¾²½â¾ö¼Æ»®Apex OneÖб£´æÎÊÌâ¡£¡£¡£¡£¡£¡£¡£¾ÝÓû§Í¸Â¶£¬£¬£¬£¬Apex One½«Microsoft Edge¸üбê¼ÇΪ²¡¶¾/¶ñÒâÈí¼þ£ºTROJ_FRS.VSNTE222ºÍ²¡¶¾/¶ñÒâÈí¼þ£ºTSC_GENCLEAN¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬²¿·ÖÓû§³Æ´ËÎÊÌ⻹µ¼ÖÂÔÚÖ´ÐÐÊðÀíµÄÕûÀí¹¤¾ßºó£¬£¬£¬£¬Windows×¢²á±íÏî±»¹ýʧµØ¸ü¸Ä¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬Õâ¼ÒÇå¾²Èí¼þÖÆÔìÉÌÒѾ­½â¾öÁËÕâ¸öÎÊÌ⣬£¬£¬£¬²¢Ðû²¼ÁËÒ»·Ý½¨ÒéÀ´×ÊÖú¿Í»§¸üÐÂËûÃǵIJúÆ·¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/trend-micro-antivirus-modified-windows-registry-by-mistake-how-to-fix/


2¡¢ContiÉù³ÆÒÑÈëÇÖÃØÂ³¹ú¼ÒÇ鱨¾Ö²¢ÇÔÈ¡Áè¼Ý9 GBµÄÊý¾Ý


¾Ý5ÔÂ8ÈÕ±¨µÀ£¬£¬£¬£¬ContiÀÕË÷ÍÅ»ïÉù³ÆÒÑÈëÇÖÃØÂ³MOF¨CDIGIMIN£¨Ç鱨×ܾ֣©¡£¡£¡£¡£¡£¡£¡£¹ú¼ÒÇ鱨¾ÖÊÇÃØÂ³Ñ¹µ¹Ò»ÇеÄÇ鱨»ú¹¹£¬£¬£¬£¬ÈÏÕæ¹ú¼Ò¡¢¾üʺ;¯Ô±Ç鱨ÒÔ¼°·´Ç鱨ÊÂÇé¡£¡£¡£¡£¡£¡£¡£ContiÒѽ«¸Ã»ú¹¹Ìí¼Óµ½ÆäTor×ßÂ©ÍøÕ¾µÄ±»¹¥»÷Ãûµ¥ÖУ¬£¬£¬£¬²¢ÌåÏÖÒѾ­ÇÔÈ¡¸Ã×éÖ¯9.41 GBµÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬ÃØÂ³DIGIMINµÄÍøÕ¾Ê¼ÖÕÎÞ·¨»á¼û¡£¡£¡£¡£¡£¡£¡£ÉÏÖÜ£¬£¬£¬£¬ÃÀ¹ú¹úÎñÔºÌṩÁ˸ߴï1500ÍòÃÀÔªµÄ½±½ð£¬£¬£¬£¬ÐüÉÍÓйØContiÀÕË÷ÍÅ»ïµÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/131093/cyber-crime/conti-ransomware-peru-direccion-general-de-inteligencia.html


3¡¢XboxÈ«Çò¹æÄ£ÄÚЧÀÍÖÐÖ¹£¬£¬£¬£¬Óû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·


ýÌå5ÔÂ6Èճƣ¬£¬£¬£¬Xbox LiveЧÀÍÖÐÖ¹£¬£¬£¬£¬È«Çò¹æÄ£ÄÚµÄÓû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·¡£¡£¡£¡£¡£¡£¡£Õâ´ÎÖÐÖ¹Ó°ÏìÁ˶à¸öƽ̨£¬£¬£¬£¬Éæ¼°Xbox Series X|S¡¢Xbox OneÓÎÏ·»ú¡¢Android×°±¸¡¢Apple×°±¸¡¢Windows ÉϵÄXboxºÍÔÆÓÎÏ·¡£¡£¡£¡£¡£¡£¡£´ó×ÚÓû§·´Ó¦£¬£¬£¬£¬ÔÚÏßÓÎϷƽ̨ÒÑÖÐÖ¹ÊýСʱ£¬£¬£¬£¬ËûÃÇÎÞ·¨ÍæÏßϺÍÔÚÏßÓÎÏ·¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬¸ÃÎÊÌâÒѾ­ÐÞ¸´¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/technology/xbox-is-down-worldwide-with-users-unable-to-play-games/


4¡¢ÃÀ¹úũҵ»úеÉú²úÉÌAGCOÔâÀÕË÷¹¥»÷£¬£¬£¬£¬Éú²úÔÝʱÖÐÖ¹


ÃÀ¹úũҵ»úеÉú²úÉÌAGCOÔÚ5ÔÂ6Èճƣ¬£¬£¬£¬ÆäÔâµ½ÁËÀÕË÷¹¥»÷¡£¡£¡£¡£¡£¡£¡£AGCOÊǸÃÁìÓòµÄÁì¾ü¹«Ë¾£¬£¬£¬£¬ÊÕÈëÁè¼Ý90ÒÚÃÀÔª£¬£¬£¬£¬ÓµÓÐ21000ÃûÔ±¹¤¡£¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ5ÔÂ5ÈÕ£¬£¬£¬£¬AGCOûÓÐÌṩµ¼ÖÂÖÐÖ¹µÄÏêϸÐÅÏ¢£¬£¬£¬£¬µ«Ëü¿ÉÄÜ»á¹Ø±ÕÆä²¿·ÖITϵͳÒÔ±ÜÃâ¹¥»÷ÉìÕÅ¡£¡£¡£¡£¡£¡£¡£AGCOÔÚÐÂΟåÖÐÚ¹Ê͵À£¬£¬£¬£¬ÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬£¬£¬£¬Ô¤¼ÆÕâ´ÎÍøÂç¹¥»÷µÄÓ°Ï콫һÁ¬ºÜ³¤Ò»¶Îʱ¼ä£¬£¬£¬£¬ËûÃÇ»áÆð¾¢»Ö¸´ÏµÍ³¡£¡£¡£¡£¡£¡£¡£FBI³Æ£¬£¬£¬£¬ÀÕË÷¹¥»÷Ô½À´Ô½¶àµØÕë¶ÔÃÀ¹úµÄũҵ²¿·Ö¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/131058/cyber-crime/agco-suffered-ransomware-attack.html


5¡¢Cisco·¢Ã÷Mustang PandaÕë¶ÔÅ·ÖÞµÄÐÂÒ»ÂÖ¹¥»÷»î¶¯


5ÔÂ5ÈÕ£¬£¬£¬£¬CiscoÐû²¼ÁËMustang PandaÕë¶ÔÅ·ÖÞÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄ±¨¸æ¡£¡£¡£¡£¡£¡£¡£2022Äê2Ô£¬£¬£¬£¬Cisco Talos×îÏÈÊӲ쵽Mustang Panda¶ÔÅ·ÖÞ×éÖ¯¾ÙÐеĴ¹Âڻ¡£¡£¡£¡£¡£¡£¡£²¿·Ö´¹ÂÚÓʼþαװ³ÉÅ·Ã˹ØÓÚÎÚ¿ËÀ¼³åÍ»¼°Æä¶Ô±±Ô¼¹ú¼ÒÓ°ÏìµÄ¹Ù·½±¨¸æ£¬£¬£¬£¬ÉÐÓд¹ÂÚµç×ÓÓʼþÌṩÐéαµÄÎÚ¿ËÀ¼Õþ¸®µÄ¹Ù·½±¨¸æ¡£¡£¡£¡£¡£¡£¡£´Ë´Î»î¶¯Ê¹ÓÃÁ˶ñÒâÈí¼þPlugX¡¢×Ô½ç˵stagers¡¢·´ÏòshellÒÔ¼°»ùÓÚMeterpreterµÄshellcode¡£¡£¡£¡£¡£¡£¡£


https://blog.talosintelligence.com/2022/05/mustang-panda-targets-europe.html


6¡¢Red CanaryÐû²¼Ð¶ñÒâÈí¼þRaspberry RobinµÄÆÊÎö±¨¸æ


Red CanaryÔÚ5ÔÂ5ÈÕÐû²¼Á˹ØÓÚжñÒâÈí¼þRaspberry RobinµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ×îÔç¿ÉÒÔ×·Ëݵ½2021Äê9Ô£¬£¬£¬£¬Ö÷ÒªÕë¶ÔÓëÊÖÒÕºÍÖÆÔìÒµÓйصÄ×éÖ¯¡£¡£¡£¡£¡£¡£¡£ËüÊÇÒ»ÖÖ¾ßÓÐÀàËÆÈ䳿¹¦Ð§µÄÐÂÐÍWindows¶ñÒâÈí¼þ£¬£¬£¬£¬²¢Í¨¹ý¿ÉÒÆ¶¯USB×°±¸¾ÙÐÐÈö²¥¡£¡£¡£¡£¡£¡£¡£¸ÃÈä³æÊ¹ÓÃWindows Installer»á¼ûÓëQNAPÏà¹ØµÄÓò²¢ÏÂÔØ¶ñÒâDLL£¬£¬£¬£¬²¢Ê¹ÓÃTOR³ö¿Ú½Úµã×÷Ϊ±¸·ÝC2»ù´¡ÉèÊ©¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬Ñо¿Ö°Ô±ÉÐδȷ¶¨´Ë´Î¹¥»÷µÄÄîÍ·£¬£¬£¬£¬Ò²²»ÇåÎúRaspberry RobinÔõÑùÒÔ¼°ÔÚÄÇÀïѬȾÍⲿÇý¶¯Æ÷¾ÙÐÐÈö²¥µÄ¡£¡£¡£¡£¡£¡£¡£


https://redcanary.com/blog/raspberry-robin/