Ç÷ÊÆ¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ

Ðû²¼Ê±¼ä 2022-05-09

1¡¢Ç÷ÊÆ¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ


¾ÝýÌå5ÔÂ7ÈÕ±¨µÀ£¬£¬£¬ £¬£¬Ç÷ÊÆ¿Æ¼¼¶ËµãÇå¾²½â¾ö¼Æ»®Apex OneÖб£´æÎÊÌâ¡£¡£¡£¡£¾ÝÓû§Í¸Â¶£¬£¬£¬ £¬£¬Apex One½«Microsoft Edge¸üбê¼ÇΪ²¡¶¾/¶ñÒâÈí¼þ£ºTROJ_FRS.VSNTE222ºÍ²¡¶¾/¶ñÒâÈí¼þ£ºTSC_GENCLEAN¡£¡£¡£¡£±ðµÄ£¬£¬£¬ £¬£¬²¿·ÖÓû§³Æ´ËÎÊÌ⻹µ¼ÖÂÔÚÖ´ÐÐÊðÀíµÄÕûÀí¹¤¾ßºó£¬£¬£¬ £¬£¬Windows×¢²á±íÏî±»¹ýʧµØ¸ü¸Ä¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬ £¬£¬Õâ¼ÒÇå¾²Èí¼þÖÆÔìÉÌÒѾ­½â¾öÁËÕâ¸öÎÊÌ⣬£¬£¬ £¬£¬²¢Ðû²¼ÁËÒ»·Ý½¨ÒéÀ´×ÊÖú¿Í»§¸üÐÂËûÃǵIJúÆ·¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/trend-micro-antivirus-modified-windows-registry-by-mistake-how-to-fix/


2¡¢ContiÉù³ÆÒÑÈëÇÖÃØÂ³¹ú¼ÒÇ鱨¾Ö²¢ÇÔÈ¡Áè¼Ý9 GBµÄÊý¾Ý


¾Ý5ÔÂ8ÈÕ±¨µÀ£¬£¬£¬ £¬£¬ContiÀÕË÷ÍÅ»ïÉù³ÆÒÑÈëÇÖÃØÂ³MOF¨CDIGIMIN£¨Ç鱨×ܾ֣©¡£¡£¡£¡£¹ú¼ÒÇ鱨¾ÖÊÇÃØÂ³Ñ¹µ¹Ò»ÇеÄÇ鱨»ú¹¹£¬£¬£¬ £¬£¬ÈÏÕæ¹ú¼Ò¡¢¾üʺ;¯Ô±Ç鱨ÒÔ¼°·´Ç鱨ÊÂÇé¡£¡£¡£¡£ContiÒѽ«¸Ã»ú¹¹Ìí¼Óµ½ÆäTor×ßÂ©ÍøÕ¾µÄ±»¹¥»÷Ãûµ¥ÖУ¬£¬£¬ £¬£¬²¢ÌåÏÖÒѾ­ÇÔÈ¡¸Ã×éÖ¯9.41 GBµÄÊý¾Ý¡£¡£¡£¡£±ðµÄ£¬£¬£¬ £¬£¬ÃØÂ³DIGIMINµÄÍøÕ¾Ê¼ÖÕÎÞ·¨»á¼û¡£¡£¡£¡£ÉÏÖÜ£¬£¬£¬ £¬£¬ÃÀ¹ú¹úÎñÔºÌṩÁ˸ߴï1500ÍòÃÀÔªµÄ½±½ð£¬£¬£¬ £¬£¬ÐüÉÍÓйØContiÀÕË÷ÍÅ»ïµÄÐÅÏ¢¡£¡£¡£¡£


https://securityaffairs.co/wordpress/131093/cyber-crime/conti-ransomware-peru-direccion-general-de-inteligencia.html


3¡¢XboxÈ«Çò¹æÄ£ÄÚЧÀÍÖÐÖ¹£¬£¬£¬ £¬£¬Óû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·


ýÌå5ÔÂ6Èճƣ¬£¬£¬ £¬£¬Xbox LiveЧÀÍÖÐÖ¹£¬£¬£¬ £¬£¬È«Çò¹æÄ£ÄÚµÄÓû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·¡£¡£¡£¡£Õâ´ÎÖÐÖ¹Ó°ÏìÁ˶à¸öƽ̨£¬£¬£¬ £¬£¬Éæ¼°Xbox Series X|S¡¢Xbox OneÓÎÏ·»ú¡¢Android×°±¸¡¢Apple×°±¸¡¢Windows ÉϵÄXboxºÍÔÆÓÎÏ·¡£¡£¡£¡£´ó×ÚÓû§·´Ó¦£¬£¬£¬ £¬£¬ÔÚÏßÓÎϷƽ̨ÒÑÖÐÖ¹ÊýСʱ£¬£¬£¬ £¬£¬ËûÃÇÎÞ·¨ÍæÏßϺÍÔÚÏßÓÎÏ·¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬ £¬£¬¸ÃÎÊÌâÒѾ­ÐÞ¸´¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/technology/xbox-is-down-worldwide-with-users-unable-to-play-games/


4¡¢ÃÀ¹úũҵ»úеÉú²úÉÌAGCOÔâÀÕË÷¹¥»÷£¬£¬£¬ £¬£¬Éú²úÔÝʱÖÐÖ¹


ÃÀ¹úũҵ»úеÉú²úÉÌAGCOÔÚ5ÔÂ6Èճƣ¬£¬£¬ £¬£¬ÆäÔâµ½ÁËÀÕË÷¹¥»÷¡£¡£¡£¡£AGCOÊǸÃÁìÓòµÄÁì¾ü¹«Ë¾£¬£¬£¬ £¬£¬ÊÕÈëÁè¼Ý90ÒÚÃÀÔª£¬£¬£¬ £¬£¬ÓµÓÐ21000ÃûÔ±¹¤¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ5ÔÂ5ÈÕ£¬£¬£¬ £¬£¬AGCOûÓÐÌṩµ¼ÖÂÖÐÖ¹µÄÏêϸÐÅÏ¢£¬£¬£¬ £¬£¬µ«Ëü¿ÉÄÜ»á¹Ø±ÕÆä²¿·ÖITϵͳÒÔ±ÜÃâ¹¥»÷ÉìÕÅ¡£¡£¡£¡£AGCOÔÚÐÂΟåÖÐÚ¹Ê͵À£¬£¬£¬ £¬£¬ÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬£¬£¬ £¬£¬Ô¤¼ÆÕâ´ÎÍøÂç¹¥»÷µÄÓ°Ï콫һÁ¬ºÜ³¤Ò»¶Îʱ¼ä£¬£¬£¬ £¬£¬ËûÃÇ»áÆð¾¢»Ö¸´ÏµÍ³¡£¡£¡£¡£FBI³Æ£¬£¬£¬ £¬£¬ÀÕË÷¹¥»÷Ô½À´Ô½¶àµØÕë¶ÔÃÀ¹úµÄũҵ²¿·Ö¡£¡£¡£¡£


https://securityaffairs.co/wordpress/131058/cyber-crime/agco-suffered-ransomware-attack.html


5¡¢Cisco·¢Ã÷Mustang PandaÕë¶ÔÅ·ÖÞµÄÐÂÒ»ÂÖ¹¥»÷»î¶¯


5ÔÂ5ÈÕ£¬£¬£¬ £¬£¬CiscoÐû²¼ÁËMustang PandaÕë¶ÔÅ·ÖÞÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄ±¨¸æ¡£¡£¡£¡£2022Äê2Ô£¬£¬£¬ £¬£¬Cisco Talos×îÏÈÊӲ쵽Mustang Panda¶ÔÅ·ÖÞ×éÖ¯¾ÙÐеĴ¹Âڻ¡£¡£¡£¡£²¿·Ö´¹ÂÚÓʼþαװ³ÉÅ·Ã˹ØÓÚÎÚ¿ËÀ¼³åÍ»¼°Æä¶Ô±±Ô¼¹ú¼ÒÓ°ÏìµÄ¹Ù·½±¨¸æ£¬£¬£¬ £¬£¬ÉÐÓд¹ÂÚµç×ÓÓʼþÌṩÐéαµÄÎÚ¿ËÀ¼Õþ¸®µÄ¹Ù·½±¨¸æ¡£¡£¡£¡£´Ë´Î»î¶¯Ê¹ÓÃÁ˶ñÒâÈí¼þPlugX¡¢×Ô½ç˵stagers¡¢·´ÏòshellÒÔ¼°»ùÓÚMeterpreterµÄshellcode¡£¡£¡£¡£


https://blog.talosintelligence.com/2022/05/mustang-panda-targets-europe.html


6¡¢Red CanaryÐû²¼Ð¶ñÒâÈí¼þRaspberry RobinµÄÆÊÎö±¨¸æ


Red CanaryÔÚ5ÔÂ5ÈÕÐû²¼Á˹ØÓÚжñÒâÈí¼þRaspberry RobinµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ×îÔç¿ÉÒÔ×·Ëݵ½2021Äê9Ô£¬£¬£¬ £¬£¬Ö÷ÒªÕë¶ÔÓëÊÖÒÕºÍÖÆÔìÒµÓйصÄ×éÖ¯¡£¡£¡£¡£ËüÊÇÒ»ÖÖ¾ßÓÐÀàËÆÈ䳿¹¦Ð§µÄÐÂÐÍWindows¶ñÒâÈí¼þ£¬£¬£¬ £¬£¬²¢Í¨¹ý¿ÉÒÆ¶¯USB×°±¸¾ÙÐÐÈö²¥¡£¡£¡£¡£¸ÃÈä³æÊ¹ÓÃWindows Installer»á¼ûÓëQNAPÏà¹ØµÄÓò²¢ÏÂÔØ¶ñÒâDLL£¬£¬£¬ £¬£¬²¢Ê¹ÓÃTOR³ö¿Ú½Úµã×÷Ϊ±¸·ÝC2»ù´¡ÉèÊ©¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬ £¬£¬Ñо¿Ö°Ô±ÉÐδȷ¶¨´Ë´Î¹¥»÷µÄÄîÍ·£¬£¬£¬ £¬£¬Ò²²»ÇåÎúRaspberry RobinÔõÑùÒÔ¼°ÔÚÄÇÀïѬȾÍⲿÇý¶¯Æ÷¾ÙÐÐÈö²¥µÄ¡£¡£¡£¡£


https://redcanary.com/blog/raspberry-robin/