·¨¹úITЧÀ͹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷

Ðû²¼Ê±¼ä 2021-12-27

·¨¹úITЧÀ͹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷


·¨¹úITЧÀ͹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷.png


¾ÝýÌå12ÔÂ24ÈÕ±¨µÀ£¬ £¬£¬£¬ £¬£¬·¨¹úITЧÀ͹«Ë¾Inetum GroupÔâµ½ÀÕË÷¹¥»÷¡£¡£¡£¡£¡£×÷ΪÖڶ๫˾µÄЧÀÍÉÌ£¬ £¬£¬£¬ £¬£¬Inetum GroupÊÕÈë¿¿½ü20ÒÚÃÀÔª£¬ £¬£¬£¬ £¬£¬ÊÇÀÕË÷ÍÅ»ïµÄÊ×ѡĿµÄ¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬ £¬£¬£¬ £¬£¬¹¥»÷±¬·¢ÔÚ12ÔÂ19ÈÕ£¬ £¬£¬£¬ £¬£¬Ó°ÏìÁËÆäÔÚ·¨¹úµÄ²¿·ÖÓªÒµ£¬ £¬£¬£¬ £¬£¬²¢Ã»ÓÐÉìÕŵ½¿Í»§µÄ»ù´¡ÉèÊ©¡£¡£¡£¡£¡£Inetum²¢Î´Í¸Â¶¹¥»÷ÕßÐÅÏ¢£¬ £¬£¬£¬ £¬£¬µ«·¨¹úýÌåLeMagIt³ÆÓëBlackCatÓйØ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/global-it-services-provider-inetum-hit-by-ransomware-attack/


BlackmagicÐÞ¸´Æä²úÆ·DaVinci ResolveÖеÄ2¸öÎó²î


BlackmagicÐÞ¸´Æä²úÆ·DaVinci ResolveÖеÄ2¸öÎó²î.png


12ÔÂ21ÈÕ£¬ £¬£¬£¬ £¬£¬Blackmagic SoftwareÐÞ¸´ÆäDaVinci Resolveƽ̨ÖеÄ2¸öÎó²î¡£¡£¡£¡£¡£¸Ãƽ̨һ¸ö½«ÊÓÆµ±à¼­ºÍÉ«²ÊУÕý¡¢ÊÓ¾õЧ¹û¡¢¶¯Ì¬Í¼ÐκÍÒôƵºóÆÚÖÆ×÷¹¤¾ßÁ¬ÏµÔÚÒ»ÆðµÄ½â¾ö¼Æ»®¡£¡£¡£¡£¡£ÕâÁ½¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²îÓÉCisco Talos·¢Ã÷£¬ £¬£¬£¬ £¬£¬±àºÅΪCVE-2021-40417ºÍCVE-2021-40418£¬ £¬£¬£¬ £¬£¬CVSSv3ÆÀ·ÖΪ9.8¡£¡£¡£¡£¡£ÆäÖУ¬ £¬£¬£¬ £¬£¬CVE-2021-40417ÊÇÒ»¸ö»ùÓڶѵĻº³åÇøÒç³öÎó²î£¬ £¬£¬£¬ £¬£¬ÊÇÓ¦ÓÃÔÚ½âÂëÊÓÆµÎļþʱ±¬·¢ÕûÊýÒç³öµ¼Öµģ»£»£»£» £»CVE-2021-40418ÊÇÓɹýʧµÄUUIDµ¼Ö¹¤¾ß³ÉԱδ³õʼ»¯´¥·¢µÄ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/blackmagic-fixes-critical-davinci-resolve-code-execution-flaws/


AppleÐÞ¸´macOSÖпÉÈÆ¹ýGatekeeperÇå¾²¹¦Ð§µÄÎó²î


AppleÐÞ¸´macOSÖпÉÈÆ¹ýGatekeeperÇå¾²¹¦Ð§µÄÎó²î.png


¾ÝýÌå12ÔÂ26ÈÕ±¨µÀ£¬ £¬£¬£¬ £¬£¬AppleÔÚ½üÆÚÐÞ¸´ÁËmacOSÖпÉÓÃÀ´ÈƹýGatekeeperÇå¾²¹¦Ð§²¢Ö´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¸ÃÎó²î±àºÅΪCVE-2021-30853£¬ £¬£¬£¬ £¬£¬ÓÉBoxµÄGordon Long·¢Ã÷¡£¡£¡£¡£¡£Patrick WardleÔÚ12ÔÂ23ÈÕÐû²¼Á˸ÃÎó²îµÄÆÊÎö£¬ £¬£¬£¬ £¬£¬³Æ¹¥»÷Õß¿ÉÒÔͨ¹ýÓÕʹĿµÄ·­¿ªÎ±×°³ÉPDFÎļþµÄ¶ñÒâÓ¦ÓÃÀ´´¥·¢¸ÃÎó²î£¬ £¬£¬£¬ £¬£¬»ù´¡Ôµ¹ÊÔ­ÓÉÊÇδÊðÃû¡¢Î´¹«Ö¤µÄ»ùÓھ籾µÄÓ¦ÓóÌÐòÎÞ·¨Ö¸¶¨Ú¹ÊͳÌÐò¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/126004/security/macos-gatekeeper-bypass-2.html


еÄBLISTERʹÓÃSectigo½ÒÏþµÄÊðÃûÖ¤ÊéÈÆ¹ý¼ì²â


еÄBLISTERʹÓÃSectigo½ÒÏþµÄÊðÃûÖ¤ÊéÈÆ¹ý¼ì²â.png


12ÔÂ23ÈÕ£¬ £¬£¬£¬ £¬£¬ElasticÑо¿Ö°Ô±¹ûÕæÁËжñÒâÈí¼þBLISTERÕë¶ÔWindowsϵͳµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£Elastic³Æ¸Ã»î¶¯×Ô9ÔÂ15ÈÕÆðÒѾ­ÔËÐÐÁËÖÁÉÙÈý¸öÔ¡£¡£¡£¡£¡£¹¥»÷ÕßʹÓÃÁË8ÔÂ23ÈÕÆðÉúЧµÄÊðÃûÖ¤Ê飬 £¬£¬£¬ £¬£¬¸ÃÖ¤ÊéÓÉSectigo¹«Ë¾½ÒÏþ¸øBlist LLC£¬ £¬£¬£¬ £¬£¬ÆäÓʼþµØµãÊôÓÚ¶íÂÞ˹¹«Ë¾Mail.Ru¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬ £¬£¬¹¥»÷Õß»¹Ê¹ÓÃÁ˶àÖÖÈÆ¹ý¼ì²âµÄÊÖÒÕ£¬ £¬£¬£¬ £¬£¬°üÀ¨½«BlisterǶÈëµ½Õýµ±¿âÖУ¨Èçcolorui.dll£©£¬ £¬£¬£¬ £¬£¬ÕâʹµÃBLISTERÑù±¾ÔÚVirusTotalÖеļì²âÂʺÜÊǵÍ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125958/malware/blister-loader.html



SentinelLabs³ÆÐµÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª


SentinelLabs³ÆÐµÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª.png


12ÔÂ23ÈÕ£¬ £¬£¬£¬ £¬£¬SentinelLabs¹ûÕæÁ˹ØÓÚÐÂÀÕË÷Èí¼þRookµÄÑо¿Ð§¹û¡£¡£¡£¡£¡£11ÔÂ30ÈÕ£¬ £¬£¬£¬ £¬£¬¸ÃÍÅ»ïÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾Ðû²¼Á˵ÚÒ»¸öÄ¿µÄ¹«Ë¾µÄÐÅÏ¢£¬ £¬£¬£¬ £¬£¬ÊÇÒ»¼Ò¹þÈø¿Ë˹̹½ðÈÚ»ú¹¹¡£¡£¡£¡£¡£RookµÄ³õʼѬȾǰÑÔΪ´¹ÂÚÓʼþºÍ¶ñÒâµÄÏÂÔØÖÖ×Ó£¬ £¬£¬£¬ £¬£¬²¢Í¨¹ýCobalt Strike·Ö·¢¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÆÊÎö·¢Ã÷£¬ £¬£¬£¬ £¬£¬¸Ã¶ñÒâÈí¼þµÄ´úÂëÓëBabukÓÐÏÔ×ÅÖØµþ£¬ £¬£¬£¬ £¬£¬ºóÕßÒÑ×èÖ¹ÔËÓª£¬ £¬£¬£¬ £¬£¬ÇÒÔ´´úÂëÓÚ½ñÄê9ÔÂÔÚºÚ¿ÍÂÛ̳ÉϹûÕæ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125988/malware/rook-ransomware-based-on-babuk.html


°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶£¬ £¬£¬£¬ £¬£¬Õ¼×ÜÉú³Ý22%


°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶£¬£¬£¬£¬£¬£¬Õ¼×ÜÉú³Ý22%.png


12ÔÂ23ÈÕ£¬ £¬£¬£¬ £¬£¬°¢¶û°ÍÄáÑÇÕþ¸®È·Èϲ¢ÖÂǸ½üÆÚ±¬·¢µÄÐÅϢй¶ÊÂÎñ¡£¡£¡£¡£¡£Ð¹Â¶Îļþ±»ÒÔExcelÎĵµµÄÐÎʽÉÏ´«µ½ÁËWhatsAppÉÏ£¬ £¬£¬£¬ £¬£¬°üÀ¨¹«ÃñµÄÐÕÃû¡¢Éí·ÝÖ¤ºÅÂ롢нˮ¡¢ÊÂÇéְλºÍ¹ÍÖ÷ÐÕÃûµÈÏêϸÐÅÏ¢£¬ £¬£¬£¬ £¬£¬Éæ¼°637138ÈË£¬ £¬£¬£¬ £¬£¬Õ¼¸Ã¹ú×ÜÉú³Ý22%ÒÔÉÏ¡£¡£¡£¡£¡£ÍâµØÃ½ÌåÓÚ12ÔÂ22ÈÕ±¨µÀ£¬ £¬£¬£¬ £¬£¬¸ÃÎļþ°üÀ¨ÏòÕþ¸®Ìá½»µÄ2021Äê1ÔÂ˰ÎñºÍÈËΪÐÅÏ¢£¬ £¬£¬£¬ £¬£¬ÏÓÒÉÊÇ´Ó˰Îñ²¿·Ö»òÉç»á°ü¹Ü»ú¹¹Ð¹Â¶µÄ¡£¡£¡£¡£¡£¸Ã¹úÕþ¸®³Æ£¬ £¬£¬£¬ £¬£¬³õ³ÌÐò²éÏÔʾй¶ÊÇÄÚ²¿Ôµ¹ÊÔ­Óɵ¼Öµģ¬ £¬£¬£¬ £¬£¬¶ø·ÇÍⲿ¹¥»÷¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/personal-and-salary-data-for-637138-albanian-citizens-leaks-online/