Unit 42Ðû²¼¶ñÒâÈí¼þAcidBoxµÄÆÊÎö±¨¸æ£»£»£»£»£»£»AMDÔ¤¼Æ½«ÓÚ6ÔÂβ֮ǰÐÞ¸´ÆäCPUÖеÄ3¸öÐÂÎó²î

Ðû²¼Ê±¼ä 2020-06-22

1.Unit 42Ðû²¼¶ñÒâÈí¼þAcidBoxµÄÆÊÎö±¨¸æ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Çå¾²¹«Ë¾Unit 42Ðû²¼Á˶ÔAcidBoxµÄÆÊÎö±¨¸æ£¬£¬£¬£¬¸Ã¶ñÒâÈí¼þÓÚ2017Äê¾ÍÒѾ­±»ÓÃÀ´¾ÙÐй¥»÷»î¶¯£¬£¬£¬£¬¿ÉÊÇÖ±µ½ÏÖÔڲű»ÈË·¢Ã÷¡£¡£¡£ ¡£¡£¸Ã¶ñÒâÈí¼þͨ¹ýVirtualBoxÖеÄÎó²îÀ´½ûÓÃWindowsÖÐÇý¶¯³ÌÐòÊðÃûµÄÖ´ÐУ¬£¬£¬£¬ÏÖÔÚÒѾ­±»ÓÃÓÚ¹¥»÷ÖÁÉÙÁ½¸ö¶íÂÞ˹×éÖ¯¡£¡£¡£ ¡£¡£Unit 42»¹ÒÔΪAcidBoxÖ»ÊÇÒ»¸ö¸ü´óµÄºÚ¿Í¹¤¾ßÏäÖеÄÒ»²¿·Ö£¬£¬£¬£¬¿ÉÊÇÏÖÔÚ»¹Ã»ÓÐÕÒµ½Ö¤¾ÝÀ´Ö¤ÊµÕâÒ»½áÂÛ¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/acidbox-rare-malware/


2.Sberbank·¢Ã÷ºÚ¿ÍʹÓÃÈ˹¤ÖÇÄÜ¿ª·¢ÐÂÐÍÒøÐÐľÂí


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


¶íÂÞ˹Áª°î´¢±¸ÒøÐÐ(Sberbank)¸±¶­Ê³¤Stanislav KuznetsovÌåÏÖ£¬£¬£¬£¬ºÚ¿ÍÕýÔÚʹÓÃÈ˹¤ÖÇÄÜ´´Á¢ÐÂÒ»´úµÄÒøÐÐľÂí£¬£¬£¬£¬Ê¹µÃÒøÐÐľÂí±äµÃÔ½·¢Öش󡢸üÄѱ»Ê¶±ð¡£¡£¡£ ¡£¡£KuznetsovÌåÏÖ£¬£¬£¬£¬ÓÉÓںڿ͹¥»÷£¬£¬£¬£¬µ½½ñÄêÄêµ×Ϊֹ¶íÂÞ˹¾­¼Ã¿ÉÄÜ»áËðʧԼ3.5ÍòÒÚ¬²¼(500ÒÚÃÀÔª)£¬£¬£¬£¬Ã÷ÄêµÄËðʧ½ð¶î¿ÉÄܻᷭ±¶¡£¡£¡£ ¡£¡£Ëû»¹Ö¸³ö£¬£¬£¬£¬ºÚ¿Í¸üÆ«ÏòÓÚʹÓÃÎïÁªÍø×°±¸£¬£¬£¬£¬ÒÔ¼°¶ÔÃÜÂë³ÖÓÐÖÁÌᳫ¹¥»÷£¬£¬£¬£¬ÆäÖÐ×î³£¼ûµÄ͵ÇÔÇþµÀÊÇÊÖ»úÓ¦ÓÃ(43%)¡¢ÒøÐп¨(42%)¡¢ÍøÂçЧÀÍ(7%)£¬£¬£¬£¬ÉÐÓÐ×Ô¶¯È¡¿î»ú¡¢posÖն˺ͶÌÐÅÒøÐС£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.ehackingnews.com/2020/06/sberbank-says-cyber-criminals-using.html


3.AMDÔ¤¼Æ½«ÓÚ6ÔÂβ֮ǰÐÞ¸´ÆäCPUÖеÄ3¸öÐÂÎó²î


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


AMDÐû²¼£¬£¬£¬£¬Ô¤¼Æ½«ÓÚ6ÔÂβ֮ǰÐÞ¸´ÆäCPUÖеÄ3¸öÐÂÎó²î¡£¡£¡£ ¡£¡£Õâ3¸öÎó²î±»AMD³ÆÎªSMM±ê×¢Îó²î£¬£¬£¬£¬Ó°ÏìÁË2016ÄêÖÁ2019ÄêÖ®¼äÐû²¼µÄһС²¿·Ö¼ÓËÙ´¦Öóͷ£µ¥Î»£¨APU£©¡£¡£¡£ ¡£¡£Çå¾²Ñо¿Ô±Danny OdlerÓÚ6ÔÂ13ÈÕÆØ¹âÁËÕâ3¸öÎó²î£¬£¬£¬£¬²¢ÌåÏÖºÚ¿Í¿ÉÒÔʹÓÃÕâЩÎó²î½«¶ñÒâ´úÂëÖ²ÈëSMRAM£¨SMMµÄÄÚ²¿Äڴ棩ÖУ¬£¬£¬£¬²¢ÒÔSMMµÄÌØÈ¨ÔËÐÐËü¡£¡£¡£ ¡£¡£¹¥»÷ÕßÀÖ³ÉÈëÇÖSMMºó²»µ«¿ÉÒÔ¿ØÖƲÙ×÷ϵͳ£¬£¬£¬£¬»¹¿ÉÒÔÍêÈ«¿ØÖÆÅÌËã»úµÄÓ²¼þ¡£¡£¡£ ¡£¡£ÏÖÔÚ£¬£¬£¬£¬AMDÒѾ­Ðû²¼Á˵ÚÒ»¸öÎó²î£¨CVE-2020-14032£©µÄ²¹¶¡£¬£¬£¬£¬Ô¤¼ÆÔÚ6ÔÂβ֮ǰ½«Ðû²¼ÍêÕû²¹¶¡¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/amd-says-it-will-fix-new-cpu-bug-by-the-end-of-june-2020/


4.Mid-Michigan´óѧÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬Ð¹Â¶Áè¼Ý1.6ÍòÈËÐÅÏ¢


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÔÚÉÏÖÜËÄ£¬£¬£¬£¬Mid-MichiganÐû²¼Á˹ûÕæÍ¨Öª£¬£¬£¬£¬ÌåÏÖÆäµç×ÓÓʼþϵͳÔâµ½ÁËÈëÇÖ£¬£¬£¬£¬ºÚ¿ÍÐ®ÖÆÁË10ÃûÔ±¹¤µÄÕË»§£¬£¬£¬£¬»ò½«ÍµÈ¡1.6ÍòÈËÐÅÏ¢¡£¡£¡£ ¡£¡£¸Ã´óѧÌåÏÖ£¬£¬£¬£¬ÆäϵͳÈÔÔÚÕý³£ÔËÐУ¬£¬£¬£¬Ò²Ã»ÓÐÊÕµ½Êê½ðÒªÇ󡣡£¡£ ¡£¡£´Ë´Îй¶Êý¾Ý°üÀ¨Éç»áÇå¾²ºÅÂëºÍÆäËûСÎÒ˽¼ÒÐÅÏ¢£¬£¬£¬£¬Ó°ÏìÁ˸ÃУµÄÐí¶à³ÉÔ±£¬£¬£¬£¬°üÀ¨½ÌÖ°Ô±¹¤¡¢Ñ§ÉúºÍÒѾ­½áÒµµÄУÓѵÈÈË¡£¡£¡£ ¡£¡£¸ÃУ¹ÙÔ±ÕýÔÚÓë״ʦÊÂÎñËùHonigmanµÄÍøÂçÇå¾²²¿·ÖÏàÖú£¬£¬£¬£¬ÒÔÊÓ²ìÏêϸԵ¹ÊÔ­Óɼ°Ð¹Â¶Êý¾Ý¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.themorningsun.com/news/data-breach-at-mid-michigan-college-endangers-personal-data-of-up-to-16-000/article_6d01cae4-b25c-11ea-89cd-1f4b9b41c0de.html


5.ºÚ¿ÍÕýÔÚ°µÍø³öÊÛÁè¼Ý23ÍòÓ¡ÄáCOVID-19»¼ÕߵIJ¡Àú


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÍþвÇ鱨¹«Ë¾CybleµÄÇå¾²Ñо¿Ö°Ô±ÔÚ°µÍøÉÏ·¢Ã÷ÁËÁè¼Ý23Íò¶àÃûÓ¡¶ÈÄáÎ÷ÑÇCOVID-19»¼ÕߵIJ¡Àý¡£¡£¡£ ¡£¡£´Ë´Îй¶µÄÊý¾Ý°üÀ¨ÐÕÃû¡¢µØµã¡¢ÏÖסµØµã¡¢µç»°ºÅÂë¡¢¹«ÃñÉí·Ý¡¢Õï¶ÏÈÕÆÚ¡¢Ð§¹û¡¢Ð§¹ûÈÕÆÚµÈ¡£¡£¡£ ¡£¡£Cyble̫ͨ¹ýÎöÊý¾ÝÒÑÈ·ÈÏÆäÕæÊµÐÔ£¬£¬£¬£¬²¢ÔÚÆäÊý¾Ýй¶¼àÊÓºÍ֪ͨЧÀÍAmiBreached.comÖжÔÁ˸üͼ½¨ÉèÁËË÷Òý¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/105043/deep-web/indonesian-covid-19-patients-leak.html?utm_source=rss&utm_medium=rss&utm_campaign=indonesian-covid-19-patients-leak


6.ºÚ¿Í×éÖ¯NetWalkerÕýÔÚ³öÊÛÃÀ¹úÒ½ÁÆ»ú¹¹Êý¾Ý


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Crozer-KeystoneÒ½ÁÆ»ú¹¹Ôâµ½ÁËÀÕË÷Èí¼þ×éÖ¯NetWalkerµÄ¹¥»÷£¬£¬£¬£¬²¢±»ÍµÈ¡Êý¾Ý¡£¡£¡£ ¡£¡£ÏÖÔÚ£¬£¬£¬£¬ºÚ¿Í×éÖ¯ÕýÔÚ¹ýÆäÍøÕ¾DarknetÅÄÂôCrozer-KeystoneµÄÊý¾Ý£¬£¬£¬£¬²¢ÌåÏÖÈôÊǸÃҽԺδÔÚÁùÌìÄÚ¹ºÖ㬣¬£¬£¬ËûÃǽ«»á×ß©ÕâЩÊý¾Ý¡£¡£¡£ ¡£¡£¾ÝϤ£¬£¬£¬£¬±»µÁÊý¾ÝÖ÷ҪΪ²ÆÎñ״̬Ïà¹ØÐÅÏ¢£¬£¬£¬£¬Ó뻼ÕߵIJ¡ÀúÎ޹ء£¡£¡£ ¡£¡£Æ¾Ö¤¶ñÒâÈí¼þʵÑéÊÒEmsisoftµÄͳ¼Æ£¬£¬£¬£¬ÔÚ2019Ä꣬£¬£¬£¬ÓÐÖÁÉÙ764¼ÒÃÀ¹úÒ½ÁƱ£½¡¹«Ë¾Ôâµ½ÁËÀÕË÷Èí¼þµÄÓ°Ïì¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://cointelegraph.com/news/ransomware-gang-auctions-off-us-healthcare-data-for-bitcoin