¶íÂÞ˹Áª°îÇå¾²¾Ö³Ð°üÉÌÔâºÚ¿ÍÈëÇÖ£¬ £¬ÉñÃØÏîÄ¿ÆØ¹â £»£»£»£»£»µÂ¹úCERT-BundÅû¶VLCýÌå²¥·ÅÆ÷ÖеÄRCEÎó²î

Ðû²¼Ê±¼ä 2019-07-22
1¡¢¶íÂÞ˹Áª°îÇå¾²¾Ö³Ð°üÉÌÔâºÚ¿ÍÈëÇÖ£¬ £¬ÉñÃØÏîÄ¿ÆØ¹â


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


¶íÂÞ˹Áª°îÇå¾²¾Ö£¨FSB£©µÄ³Ð°üÉÌSyTechÔâºÚ¿ÍÈëÇÖ£¬ £¬¸Ã¹«Ë¾ÎªFSB¿ª·¢µÄÉñÃØÏîÄ¿±»ÆØ¹â¡£¡£¸Ã¹¥»÷ÊÂÎñ±¬·¢ÔÚ7ÔÂ13ÈÕ£¬ £¬ºÚ¿ÍÍÅ»ï0v1ru$ÈëÇÖÁËSyTechµÄЧÀÍÆ÷£¬ £¬²¢ÇÔÈ¡ÁË7.5TBµÄÊý¾Ý¡£¡£ÕâЩÊý¾ÝËæºó±»·ÖÏí¸øºÚ¿ÍÍÅ»ïDigitalRevolution£¬ £¬ºóÕßÏòýÌå¾ÙÐÐÁËÆØ¹â¡£¡£ÕâЩÉñÃØÏîÄ¿°üÀ¨Ö¼ÔÚ¸ôÀë¶íÂÞ˹»¥ÁªÍøµÄNadezhdaÏîÄ¿¡¢Ö¼ÔÚÍøÂçÉ罻ýÌåÓû§ÐÅÏ¢µÄNautilusÏîÄ¿ÒÔ¼°Ö¼ÔÚ¶ÔTorÍøÂçÓû§¾ÙÐÐÈ¥ÄäÃû»¯µÄNautilus-SÏîÄ¿µÈ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/russian-fsb-intel-agency-contractor-hacked-secret-projects-exposed/


2¡¢EmsisoftÐû²¼ÀÕË÷Èí¼þZeroFucksµÄ½âÃܹ¤¾ß


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


EmsisoftÐû²¼ÀÕË÷Èí¼þZeroFucksµÄ½âÃÜÆ÷¡£¡£ZeroFucksʹÓÃAES-256Ëã·¨¼ÓÃÜÓû§µÄÎļþ£¬ £¬²¢Ê¹Óá°.zerofucks¡±À©Õ¹ÃûÌæ»»Ô­±¾µÄÎļþÀ©Õ¹Ãû¡£¡£µ±¼ÓÃÜÍê³Éºó£¬ £¬¸ÃÀÕË÷Èí¼þÏòÓû§ÀÕË÷¼ÛÖµ400Å·ÔªµÄ±ÈÌØ±ÒÊê½ð£¬ £¬²¢Éù³ÆÈôÊÇÓû§Ã»ÓÐÔÚ48СʱÄÚ¸¶¿î£¬ £¬Êê½ð½«·­±¶ £»£»£»£»£»ÈôÊÇÓû§Ã»ÓÐÔÚ96СʱÄÚ¸¶¿î£¬ £¬Îļþ½«±»Ïú»Ù¡£¡£ÏÖÔÚÓû§¿ÉÒÔʹÓÃÑо¿Ö°Ô±Ðû²¼µÄ½âÃÜÆ÷À´Ã⺬»ìÃÜÎļþ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/88716/hacking/zerofucks-ransomware-decryptor.html


3¡¢ÃÀ¹úÌïÄÉÎ÷ÖÝ¿ÆÀû¶ûά¶ûÕòÔâÀÕË÷Èí¼þRyuk¹¥»÷


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


¾ÝÍâý±¨µÀ£¬ £¬ÃÀ¹úÌïÄÉÎ÷ÖÝ¿ÆÀû¶ûά¶ûÕòÔâµ½ÀÕË÷Èí¼þRyukµÄ¹¥»÷£¬ £¬²¿·ÖÅÌËã»úϵͳ̱»¾£¬ £¬Ò»Ð©¹«¹²Ð§ÀÍÊܵ½Ó°Ïì¡£¡£¸ÃÕò½²»°ÈËÌåÏÖ±¸·ÝЧÀÍÆ÷ËÆºõÊÇÇå¾²µÄ£¬ £¬µ«ITÖ°Ô±ÕýÔÚ½«ËüÃǼÓÈëÍøÂç֮ǰ¶ÔÆä¾ÙÐвâÊÔ¡£¡£ÊÓ²ìÖ°Ô±ÈÔÈ»²»ÖªµÀÀÕË÷²¡¶¾µÄȪԴ£¬ £¬µ«ÒÔΪËü¿ÉÄÜÀ´×ÔÓÚµç×ÓÓʼþÖеÄÁ´½Ó¡£¡£¸ÃÕòûÓÐÏòºÚ¿ÍÖ§¸¶Êê½ð£¬ £¬²¢ÇÒ֪ͨÁËÁª°îÕþ¸®¡£¡£ÏÖÔÚЧÀÍÒÑÕý³£ÔË×÷¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.localmemphis.com/news/local-news/hackers-cause-headaches-on-servers-in-town-of-collierville-with-ransomware-attack/


4¡¢µÂ¹úCERT-BundÅû¶VLCýÌå²¥·ÅÆ÷ÖеÄRCEÎó²î


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


µÂ¹úÍøÂçÇå¾²î¿Ïµ»ú¹¹CERT-Bund·¢Ã÷VLCýÌå²¥·ÅÆ÷±£´æÒ»¸öRCEÎó²î£¬ £¬¸ÃÎó²î£¨CVE-2019-13615£©Ó°ÏìÁËVLCµÄ×îÐÂÎȹ̰汾3.0.7.1¡£¡£¸ÃÎó²îÔ´ÓÚÒ»¸ö»º³åÇøÒç³öÎÊÌ⣬ £¬Î´¾­ÊÚȨµÄ¹¥»÷Õß¿ÉʹÓøÃÎó²î´¥·¢ÐÅϢй¶¡¢ÎļþÐ޸ĻòЧÀÍÖÐÖ¹¡£¡£¸ÃÎó²î±£´æÓÚ¶à¸öƽ̨µÄVLC°æ±¾ÖУ¬ £¬°üÀ¨Windows¡¢LinuxºÍUNIX£¬ £¬µ«macOSδÊÜÓ°Ïì¡£¡£¸ÃÎó²îµÄÐÞ¸´²¹¶¡»¹ÔÚ¿ª·¢Àú³ÌÖС£¡£


Ô­ÎÄÁ´½Ó£ºhttps://news.softpedia.com/news/critical-flaw-in-vlc-media-player-discovered-by-german-cybersecurity-agency-526768.shtml


5¡¢Ë¼¿ÆÐÞ¸´Vision DynamicÖеÄÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


˼¿ÆÐû²¼ÁËVision Dynamic Signage DirectorµÄÇå¾²²¹¶¡£¬ £¬ÐÞ¸´Ò»¸ö¿ÉÔÊÐí¹¥»÷ÕßÔÚÍâµØÏµÍ³ÉÏÖ´ÐÐí§Òâ²Ù×÷µÄÇå¾²Îó²î¡£¡£¸ÃÎó²î£¨CVE-2019-1917£©±£´æÓÚVision Dynamic Signage DirectorµÄREST API½çÃæÖУ¬ £¬¿É±»Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßʹÓ㬠£¬ÒÔÈÆ¹ýÄ¿µÄϵͳÉϵÄÉí·ÝÑéÖ¤¡£¡£¸ÃÎó²îÊÇÓÉÓÚ¶ÔHTTPÇëÇóµÄÑéÖ¤²»³ä·Öµ¼ÖµÄ¡£¡£Ë¼¿ÆÌåÏÖÔÚĬÈÏÇéÐÎÏÂÎÞ·¨½ûÓÃREST API£¬ £¬Óû§¿ÉÒÔͨ¹ý×°ÖÃÈí¼þ¸üÐÂÐÞ¸´¸ÃÎó²î¡£¡£


Ô­ÎÄÁ´½Ó£ºhttp://www.infosecisland.com/blogview/25211-Cisco-Patches-Critical-Flaw-in-Vision-Dynamic-Signage-Director.html


6¡¢ÒÁÀÊAPT34ʹÓÃÐéαLinkedInÒ³Ãæ·Ö·¢¶ñÒâÈí¼þ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ƾ֤FireEyeµÄ±¨¸æ£¬ £¬ÒÁÀÊAPT×éÖ¯APT34µÄд¹ÂÚ¹¥»÷»î¶¯½ÓÄÉÁËÒ»ÖÖÌØÊâµÄÒªÁ죺ҪÇóÊܺ¦ÕßÔÚÉç½»ÍøÂçÉÏÁªÏµËûÃÇ¡£¡£¸ÃÍÅ»ïð³ä½£ÇÅ´óѧµÄÑо¿Ô±£¬ £¬²¢½¨ÉèÒ»¸öÐéαµÄLinkedInÒ³ÃæÒÔ»ñÈ¡Êܺ¦ÕßµÄÐÅÈΣ¬ £¬×îÖÕ·Ö·¢Èý¸öеĶñÒâÈí¼þ¡£¡£Æ¾Ö¤FireEyeµÄ±íÊö£¬ £¬¸ÃÍÅ»ï·Ö·¢µÄ¶ñÒâÈí¼þ°üÀ¨TonedeafºóÃÅ¡¢ä¯ÀÀÆ÷ÃÜÂëת´¢¹¤¾ßValueVaultºÍ¼üÅ̼ͼÆ÷Longwatch¡£¡£±ðµÄ£¬ £¬Ñо¿Ö°Ô±»¹·¢Ã÷ÆäC2ЧÀÍÆ÷·Ö·¢ÁËPickpocketµÄ±äÖÖ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://threatpost.com/iran-apt34-linkedin-malware/146575/