´ó×ÚQNAP NAS×°±¸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷

Ðû²¼Ê±¼ä 2021-12-29

´ó×ÚQNAP NAS×°±¸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷


´ó×ÚQNAP NAS×°±¸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷.png


¾ÝýÌåÓÚ12ÔÂ27ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬´ó×ÚQNAPÍøÂ總¼Ó´æ´¢×°±¸(NAS)µÄÓû§±¨¸æÆäϵͳÔâµ½ÀÕË÷Èí¼þeCh0raix£¨Ò²³ÆQNAPCrypt£©µÄ¹¥»÷¡£¡£¡£ ¡£¡£ID ransomware serviceÊý¾ÝÏÔʾ£¬£¬£¬£¬£¬£¬Óû§±¨¸æµÄ¹¥»÷ÊýÄ¿´Ó12ÔÂ19ÈÕ×îÏÈÔöÌí£¬£¬£¬£¬£¬£¬²¢ÔÚ12ÔÂ26ÈÕÇ÷ÓÚÆ½»º¡£¡£¡£ ¡£¡£ÏÖÔÚÉв»ÇåÎú×î³õµÄѬȾǰÑÔ£¬£¬£¬£¬£¬£¬²¿·ÖÓû§ÌåÏÖÆäδӦÓÃ׼ȷµÄÇå¾²Õ½ÂÔ£¬£¬£¬£¬£¬£¬ÁíÒ»²¿·ÖÓû§Éù³Æ¹¥»÷ÓëQNAP Photo StationÖеÄÎó²îÓйØ¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/qnap-nas-devices-hit-in-surge-of-ech0raix-ransomware-attacks/


LastPassÓû§Ô⵽ƾ֤Ìî³ä¹¥»÷µ¼ÖÂÖ÷ÃÜԿй¶


LastPassÓû§Ô⵽ƾ֤Ìî³ä¹¥»÷µ¼ÖÂÖ÷ÃÜԿй¶.png


12ÔÂ28ÈÕ£¬£¬£¬£¬£¬£¬ÃÜÂëÖÎÀíÓ¦ÓÃLastPassÌåÏÖ¹¥»÷Õß¶ÔÆäÓû§Ìᳫײ¿â¹¥»÷£¬£¬£¬£¬£¬£¬²¢ÊÔͼ»á¼ûËûÃǵÄÔÆÃÜÂë¿â¡£¡£¡£ ¡£¡£¿ËÈÕ£¬£¬£¬£¬£¬£¬´ó×ÚÓû§ÊÕµ½À´×Ըù«Ë¾µÄÇå¾²¾¯±¨£¬£¬£¬£¬£¬£¬³Æ¡°ÓÐÈËʹÓÃÄúµÄÖ÷ÃÜÂëʵÑé´ÓÎÒÃÇÎÞ·¨Ê¶±ðµÄ×°±¸»òλÖõǼÄúµÄÕÊ»§¡±¡£¡£¡£ ¡£¡£LastPass³Æ´Ë´Î»î¶¯×îÏÈÓÚ±¾ÖÜÒ»£¬£¬£¬£¬£¬£¬ËüÒѾ­×èÖ¹ÁË´ó×ÚÀ´×ÔÍâ¹úIPµØµã£¨´ó²¿·ÖλÓÚ°ÍÎ÷£©Ê¹ÓÃ׼ȷÃÜÂëµÄµÇ¼ʵÑé¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/lastpass-confirms-credential-stuffing-attack-against-some-of-its-users/


Ê©ÄÍµÂµçÆøÐÞ¸´ÆäEVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸öÎó²î


Ê©ÄÍµÂµçÆøÐÞ¸´ÆäEVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸öÎó²î.jpg


¾ÝýÌåÔÚ12ÔÂ27Èճƣ¬£¬£¬£¬£¬£¬Ê©ÄÍµÂµçÆøÒÑÐÞ¸´EVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸öÑÏÖØµÄÎó²î¡£¡£¡£ ¡£¡£¸Ã²¹¶¡Ðû²¼ÓÚ12ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬Ó°ÏìÁËVlink City¡¢ParkingºÍSmart WallboxµÈ×°±¸¡£¡£¡£ ¡£¡£´Ë´ÎÐÞ¸´µÄ×îΪÑÏÖØµÄÎó²îΪЧÀÍÆ÷¶ËÇëÇóαÔìÎó²î£¨CVE-2021-22821£©£¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ9.3£»£» £»£»£»Æä´ÎΪ¿çÕ¾¾ç±¾Îó²î£¨CVE-2021-22822£©µÈ¡£¡£¡£ ¡£¡£¸Ã¹«Ë¾³ÆÕâЩÎó²î¿ÉÄܵ¼Ö¾ܾøÐ§À͹¥»÷£¬£¬£¬£¬£¬£¬»òÓû§ÉèÖúÍÕÊ»§±»¸Ä¶¯ºÍй¶£¬£¬£¬£¬£¬£¬Òò´Ë±Þ²ßÓû§Á¬Ã¦×°ÖÃ×îв¹¶¡¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/new-flaws-expose-evlink-electric-vehicle-charging-stations-remote-hacking


Windows 11±¬³öÐÂBug£¬£¬£¬£¬£¬£¬²¿·ÖHDRÏÔʾÆ÷³ÊÉ«·ºÆðÎÊÌâ


Windows 11±¬³öÐÂBug£¬£¬£¬£¬£¬£¬²¿·ÖHDRÏÔʾÆ÷³ÊÉ«·ºÆðÎÊÌâ.png


12ÔÂ27ÈÕ£¬£¬£¬£¬£¬£¬MicrosoftÒÑÈ·ÈÏÓ°ÏìWindows 11 21H2×°±¸µÄÐÂBug£¬£¬£¬£¬£¬£¬×ÝÈ»ÓÃWin32 APIÔÚ²¿·Ö¸ß¶¯Ì¬¹æÄ£(HDR)ÏÔʾÆ÷ÉϳÊÉ«µÄÓ¦Ó÷ºÆðÎÊÌâ¡£¡£¡£ ¡£¡£MicrosoftÚ¹Ê͵À£¬£¬£¬£¬£¬£¬Ä³Ð©Í¼Ïñ±à¼­Ó¦ÓÃÎÞ·¨ÔÚHDRÏÔʾÆ÷ÉÏ׼ȷ³ÊÉ«£¬£¬£¬£¬£¬£¬ÌØÊâÊǰ×É«¾­³£»£» £»£»£»áÏÔʾ³ÉÁÁ»ÆÉ«»òÆäËüÑÕÉ«¡£¡£¡£ ¡£¡£µ±Ä³Ð©ÏÔÉ«Win32 API·µ»ØÒâÍâÐÅÏ¢»ò¹ýʧʱ¾Í»á·ºÆð´ËÎÊÌ⣬£¬£¬£¬£¬£¬²¢·ÇËùÓÐÉèÖÃÎļþÖÎÀí³ÌÐò¶¼ÊÜ´ËÎÊÌâÓ°Ïì¡£¡£¡£ ¡£¡£MicrosoftÒÑÌṩ¿É½ÓÄɵÄÐÞ¸´²½·¥£¬£¬£¬£¬£¬£¬Ô¤¼ÆÔÚ1ÔÂÏÂÑ®ÐÞ¸´¸ÃÎÊÌâ¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/windows-11-bug-causes-color-rendering-issues-on-hdr-displays/


°µÍøÊг¡ToRReZÔÝÍ£ÔËÓª²¢³Æ¿ÉÄÜÔÚÉÔºó½×¶Î»Ø¹é


°µÍøÊг¡ToRReZÔÝÍ£ÔËÓª²¢³Æ¿ÉÄÜÔÚÉÔºó½×¶Î»Ø¹é.png


ýÌå12ÔÂ27Èճƣ¬£¬£¬£¬£¬£¬°µÍøÊг¡ToRReZÐû²¼ÔÝÍ£ÔËÓª¡£¡£¡£ ¡£¡£Torrez Market½¨ÉèÓÚ2020Äê4Ô£¬£¬£¬£¬£¬£¬ÊÇΨһ½ÓÊÜBitcoin¡¢Monero¡¢ZcashºÍLitecoinµÄ°µÍøÊг¡¡£¡£¡£ ¡£¡£¸ÃÍøÕ¾µÄÖÎÀíÔ±mrblondeÉù³ÆÕâÊÇËûÃÇ×Ô¼º¾öÒéµÄЧ¹û£¬£¬£¬£¬£¬£¬²¢Ú¹ÊÍËûÃÇ¿ÉÄÜ»áÔÚÉÔºó½×¶Î»Ø¹é¡£¡£¡£ ¡£¡£×Ô12ÔÂ17ÈÕÆð£¬£¬£¬£¬£¬£¬¸ÃÍøÕ¾ÒÑÎÞ·¨×¢²áÐÂÕÊ»§£¬£¬£¬£¬£¬£¬Ö®ºóÖÎÀíÔ±Ô¤ÁôÁ½µ½ÈýÖܵÄʱ¼äÆÚ´ýËùÓÐÓû§Íê³ÉÉúÒâ¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/126052/cyber-crime/torrez-marketplace-shut-down.html    


Cisco TalosÐû²¼2021Äê¶ÈÍøÂç¹¥»÷»î¶¯µÄ»ØÊ×±¨¸æ


Cisco TalosÐû²¼2021Äê¶ÈÍøÂç¹¥»÷»î¶¯µÄ»ØÊ×±¨¸æ.png


12ÔÂ27ÈÕ£¬£¬£¬£¬£¬£¬Cisco TalosÐû²¼2021Äê¶ÈÍøÂç¹¥»÷»î¶¯µÄ»ØÊ×±¨¸æ¡£¡£¡£ ¡£¡£¸Ã±¨¸æÖ¼ÔÚ»ØÊ×½ñÄ걬·¢µÄÖØ´óÇå¾²ÊÂÎñ£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨1Ô·ݴó¹æÄ£SolarWinds¹©Ó¦Á´¹¥»÷£»£» £»£»£»3Ô·ÝProxyLogonÎó²îºÍHAFNIUM ÍŻﷺÆð£»£» £»£»£»5Ô·ÝʯÓ͹ܵÀColonial PipelineÔâµ½¹¥»÷£»£» £»£»£»7Ô·ÝKaseya¹©Ó¦Á´¹¥»÷£»£» £»£»£»12Ô·ÝLog4jÎó²î·ºÆðµÈÊÂÎñ¡£¡£¡£ ¡£¡£±¨¸æÕ¹Íû£¬£¬£¬£¬£¬£¬ÔÚ2022Ä꣬£¬£¬£¬£¬£¬´óÐ͹¥»÷»î¶¯ºÍÀÕË÷Èí¼þÈÔ½«³ÊÉÏÉýÇ÷ÊÆ¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/12/2021-looking-back-on-year-in-malware.html