·¨¹úITЧÀ͹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷

Ðû²¼Ê±¼ä 2021-12-27

·¨¹úITЧÀ͹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷


·¨¹úITЧÀ͹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷.png


¾ÝýÌå12ÔÂ24ÈÕ±¨µÀ £¬ £¬£¬£¬·¨¹úITЧÀ͹«Ë¾Inetum GroupÔâµ½ÀÕË÷¹¥»÷¡£¡£¡£¡£¡£¡£×÷ΪÖڶ๫˾µÄЧÀÍÉÌ £¬ £¬£¬£¬Inetum GroupÊÕÈë¿¿½ü20ÒÚÃÀÔª £¬ £¬£¬£¬ÊÇÀÕË÷ÍÅ»ïµÄÊ×ѡĿµÄ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ £¬ £¬£¬£¬¹¥»÷±¬·¢ÔÚ12ÔÂ19ÈÕ £¬ £¬£¬£¬Ó°ÏìÁËÆäÔÚ·¨¹úµÄ²¿·ÖÓªÒµ £¬ £¬£¬£¬²¢Ã»ÓÐÉìÕŵ½¿Í»§µÄ»ù´¡ÉèÊ©¡£¡£¡£¡£¡£¡£Inetum²¢Î´Í¸Â¶¹¥»÷ÕßÐÅÏ¢ £¬ £¬£¬£¬µ«·¨¹úýÌåLeMagIt³ÆÓëBlackCatÓйØ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/global-it-services-provider-inetum-hit-by-ransomware-attack/


BlackmagicÐÞ¸´Æä²úÆ·DaVinci ResolveÖеÄ2¸öÎó²î


BlackmagicÐÞ¸´Æä²úÆ·DaVinci ResolveÖеÄ2¸öÎó²î.png


12ÔÂ21ÈÕ £¬ £¬£¬£¬Blackmagic SoftwareÐÞ¸´ÆäDaVinci Resolveƽ̨ÖеÄ2¸öÎó²î¡£¡£¡£¡£¡£¡£¸Ãƽ̨һ¸ö½«ÊÓÆµ±à¼­ºÍÉ«²ÊУÕý¡¢ÊÓ¾õЧ¹û¡¢¶¯Ì¬Í¼ÐκÍÒôƵºóÆÚÖÆ×÷¹¤¾ßÁ¬ÏµÔÚÒ»ÆðµÄ½â¾ö¼Æ»®¡£¡£¡£¡£¡£¡£ÕâÁ½¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²îÓÉCisco Talos·¢Ã÷ £¬ £¬£¬£¬±àºÅΪCVE-2021-40417ºÍCVE-2021-40418 £¬ £¬£¬£¬CVSSv3ÆÀ·ÖΪ9.8¡£¡£¡£¡£¡£¡£ÆäÖÐ £¬ £¬£¬£¬CVE-2021-40417ÊÇÒ»¸ö»ùÓڶѵĻº³åÇøÒç³öÎó²î £¬ £¬£¬£¬ÊÇÓ¦ÓÃÔÚ½âÂëÊÓÆµÎļþʱ±¬·¢ÕûÊýÒç³öµ¼ÖµÄ£»£»£»£»£»£»£»CVE-2021-40418ÊÇÓɹýʧµÄUUIDµ¼Ö¹¤¾ß³ÉԱδ³õʼ»¯´¥·¢µÄ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/blackmagic-fixes-critical-davinci-resolve-code-execution-flaws/


AppleÐÞ¸´macOSÖпÉÈÆ¹ýGatekeeperÇå¾²¹¦Ð§µÄÎó²î


AppleÐÞ¸´macOSÖпÉÈÆ¹ýGatekeeperÇå¾²¹¦Ð§µÄÎó²î.png


¾ÝýÌå12ÔÂ26ÈÕ±¨µÀ £¬ £¬£¬£¬AppleÔÚ½üÆÚÐÞ¸´ÁËmacOSÖпÉÓÃÀ´ÈƹýGatekeeperÇå¾²¹¦Ð§²¢Ö´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¸ÃÎó²î±àºÅΪCVE-2021-30853 £¬ £¬£¬£¬ÓÉBoxµÄGordon Long·¢Ã÷¡£¡£¡£¡£¡£¡£Patrick WardleÔÚ12ÔÂ23ÈÕÐû²¼Á˸ÃÎó²îµÄÆÊÎö £¬ £¬£¬£¬³Æ¹¥»÷Õß¿ÉÒÔͨ¹ýÓÕʹĿµÄ·­¿ªÎ±×°³ÉPDFÎļþµÄ¶ñÒâÓ¦ÓÃÀ´´¥·¢¸ÃÎó²î £¬ £¬£¬£¬»ù´¡Ôµ¹ÊÔ­ÓÉÊÇδÊðÃû¡¢Î´¹«Ö¤µÄ»ùÓھ籾µÄÓ¦ÓóÌÐòÎÞ·¨Ö¸¶¨Ú¹ÊͳÌÐò¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/126004/security/macos-gatekeeper-bypass-2.html


еÄBLISTERʹÓÃSectigo½ÒÏþµÄÊðÃûÖ¤ÊéÈÆ¹ý¼ì²â


еÄBLISTERʹÓÃSectigo½ÒÏþµÄÊðÃûÖ¤ÊéÈÆ¹ý¼ì²â.png


12ÔÂ23ÈÕ £¬ £¬£¬£¬ElasticÑо¿Ö°Ô±¹ûÕæÁËжñÒâÈí¼þBLISTERÕë¶ÔWindowsϵͳµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£Elastic³Æ¸Ã»î¶¯×Ô9ÔÂ15ÈÕÆðÒѾ­ÔËÐÐÁËÖÁÉÙÈý¸öÔ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßʹÓÃÁË8ÔÂ23ÈÕÆðÉúЧµÄÊðÃûÖ¤Êé £¬ £¬£¬£¬¸ÃÖ¤ÊéÓÉSectigo¹«Ë¾½ÒÏþ¸øBlist LLC £¬ £¬£¬£¬ÆäÓʼþµØµãÊôÓÚ¶íÂÞ˹¹«Ë¾Mail.Ru¡£¡£¡£¡£¡£¡£±ðµÄ £¬ £¬£¬£¬¹¥»÷Õß»¹Ê¹ÓÃÁ˶àÖÖÈÆ¹ý¼ì²âµÄÊÖÒÕ £¬ £¬£¬£¬°üÀ¨½«BlisterǶÈëµ½Õýµ±¿âÖУ¨Èçcolorui.dll£© £¬ £¬£¬£¬ÕâʹµÃBLISTERÑù±¾ÔÚVirusTotalÖеļì²âÂʺÜÊǵÍ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125958/malware/blister-loader.html



SentinelLabs³ÆÐµÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª


SentinelLabs³ÆÐµÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª.png


12ÔÂ23ÈÕ £¬ £¬£¬£¬SentinelLabs¹ûÕæÁ˹ØÓÚÐÂÀÕË÷Èí¼þRookµÄÑо¿Ð§¹û¡£¡£¡£¡£¡£¡£11ÔÂ30ÈÕ £¬ £¬£¬£¬¸ÃÍÅ»ïÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾Ðû²¼Á˵ÚÒ»¸öÄ¿µÄ¹«Ë¾µÄÐÅÏ¢ £¬ £¬£¬£¬ÊÇÒ»¼Ò¹þÈø¿Ë˹̹½ðÈÚ»ú¹¹¡£¡£¡£¡£¡£¡£RookµÄ³õʼѬȾǰÑÔΪ´¹ÂÚÓʼþºÍ¶ñÒâµÄÏÂÔØÖÖ×Ó £¬ £¬£¬£¬²¢Í¨¹ýCobalt Strike·Ö·¢¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÆÊÎö·¢Ã÷ £¬ £¬£¬£¬¸Ã¶ñÒâÈí¼þµÄ´úÂëÓëBabukÓÐÏÔ×ÅÖØµþ £¬ £¬£¬£¬ºóÕßÒÑ×èÖ¹ÔËÓª £¬ £¬£¬£¬ÇÒÔ´´úÂëÓÚ½ñÄê9ÔÂÔÚºÚ¿ÍÂÛ̳ÉϹûÕæ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125988/malware/rook-ransomware-based-on-babuk.html


°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶ £¬ £¬£¬£¬Õ¼×ÜÉú³Ý22%


°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶£¬£¬£¬£¬Õ¼×ÜÉú³Ý22%.png


12ÔÂ23ÈÕ £¬ £¬£¬£¬°¢¶û°ÍÄáÑÇÕþ¸®È·Èϲ¢ÖÂǸ½üÆÚ±¬·¢µÄÐÅϢй¶ÊÂÎñ¡£¡£¡£¡£¡£¡£Ð¹Â¶Îļþ±»ÒÔExcelÎĵµµÄÐÎʽÉÏ´«µ½ÁËWhatsAppÉÏ £¬ £¬£¬£¬°üÀ¨¹«ÃñµÄÐÕÃû¡¢Éí·ÝÖ¤ºÅÂ롢нˮ¡¢ÊÂÇéְλºÍ¹ÍÖ÷ÐÕÃûµÈÏêϸÐÅÏ¢ £¬ £¬£¬£¬Éæ¼°637138ÈË £¬ £¬£¬£¬Õ¼¸Ã¹ú×ÜÉú³Ý22%ÒÔÉÏ¡£¡£¡£¡£¡£¡£ÍâµØÃ½ÌåÓÚ12ÔÂ22ÈÕ±¨µÀ £¬ £¬£¬£¬¸ÃÎļþ°üÀ¨ÏòÕþ¸®Ìá½»µÄ2021Äê1ÔÂ˰ÎñºÍÈËΪÐÅÏ¢ £¬ £¬£¬£¬ÏÓÒÉÊÇ´Ó˰Îñ²¿·Ö»òÉç»á°ü¹Ü»ú¹¹Ð¹Â¶µÄ¡£¡£¡£¡£¡£¡£¸Ã¹úÕþ¸®³Æ £¬ £¬£¬£¬³õ³ÌÐò²éÏÔʾй¶ÊÇÄÚ²¿Ôµ¹ÊÔ­Óɵ¼Ö嵀 £¬ £¬£¬£¬¶ø·ÇÍⲿ¹¥»÷¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/personal-and-salary-data-for-637138-albanian-citizens-leaks-online/