AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2020.08.31-2020.09.6£©
2020-09-08
Ò»¡¢ ÈÈÃÅ×ÊѶ
1. ¿çƽ̨ÍÚ¿óľÂíMrbMinerÒÑ¿ØÖÆÉÏǧ̨·þÎñÆ÷
¡¾¸ÅÊö¡¿
ÐÂÐÍÍÚ¿óľÂí¼Ò×åMrbMiner£¬ºÚ¿Íͨ¹ýSQL Server·þÎñÆ÷Èõ¿ÚÁî±¬ÆÆÈëÇÖ£¬±¬ÆÆÀֳɺóÔÚÄ¿µÄϵͳÊÍ·ÅC#ÓïÑÔ±àдµÄľÂíassm.exe£¬È»ºóÏÂÔØÃÅÂÞ±ÒÍÚ¿óľÂí²¢Î¬³ÖÍÚ¿óÀú³Ì¡£
¡¾²Î¿¼Á´½Ó¡¿
https://s.tencent.com//research/report/1105.html
2. KryptoCibule£º¶àʹÃü¶àÇ®±ÒÃÜÂëÇÔÈ¡³ÌÐò
¡¾¸ÅÊö¡¿
ESETÑо¿Ö°Ô±·¢Ã÷ÁËÆù½ñδ¼Í¼µÄ¶ñÒâÈí¼þ¼Ò×壬ÃüÃûΪKryptoCibule¡£¾Í¼ÓÃÜÇ®±Ò¶øÑÔ£¬ÕâÖÖ¶ñÒâÈí¼þÊÇÈýÖØÍþв¡£ËüʹÓÃÊܺ¦ÕßµÄ×ÊÔ´À´ÍÚ¾òÓ²±Ò£¬ÊµÑéͨ¹ýÌæ»»¼ôÌù°åÖеÄÇ®°üµØµãÀ´Ð®ÖÆÉúÒ⣬²¢×ß©Óë¼ÓÃÜÇ®±ÒÏà¹ØµÄÎļþ£¬Í¬Ê±°²ÅŶàÖÖÊÖÒÕÀ´×èÖ¹¼ì²â¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.welivesecurity.com/2020/09/02/kryptocibule-multitasking-multicurrency-cryptostealer/
3. ÎļþÖÎÀíÆ÷²å¼þÖеÄÑÏÖØÎó²îÓ°Ïì700k WordPressÍøÕ¾
¡¾¸ÅÊö¡¿
WordPress²å¼þÎļþÖÎÀíÆ÷ÒѸüУ¬ÐÞ¸´ÁËÒ»¸öÑÏÖØÎó²î£¬¸ÃÎó²îʹÈκÎÍøÕ¾»á¼ûÕß¶¼ÄÜÍêÈ«»á¼û¸ÃÍøÕ¾¡£
¡¾²Î¿¼Á´½Ó¡¿
https://blog.sucuri.net/2020/09/critical-vulnerability-file-manager-affecting-700k-wordpress-websites.html
4. ÃÀ¹ú´óÑ¡ÔÚ¼´£¬ºÚ¿ÍƵÈÔ¹¥»÷ÌØÀÊÆÕµÄ¾ºÑ¡ÍøÕ¾
¡¾¸ÅÊö¡¿
¾Ý·͸Éç12ÈÕ±¨µÀ£¬ÔÚÃÀ¹ú11Ô´óѡǰϦ£¬ºÚ¿ÍÕýÔÚ¼Ó½ô¹¥»÷ÌØÀÊÆÕµÄ¾ºÑ¡ÍøÕ¾ºÍÉÌÒµÍøÕ¾£¬²¢Ê¹ÆäÏÂÏß¡£ÎªÌØÀÊÆÕ¾ºÑ¡ÊÂÇéµÄÒ»¼ÒÇå¾²¹«Ë¾CloudflareÌåÏÖ£¬Õâ¿ÉÄÜÊÇÔÚΪ¸ü´ó¹æÄ£µÄÊý×Ö¹¥»÷×ö×¼±¸¡£
¡¾²Î¿¼Á´½Ó¡¿
5. ÒÁÀʹú¼Ò¼¶APT£ºPioneer Kitten×éÖ¯¹ûÕæ¶µÊÛÆóÒµÍøÂç»á¼ûȨÏÞ
¡¾¸ÅÊö¡¿
¿ËÈÕ£¬Ò»¸öÓëÒÁÀÊÓйصÄAPT×éÖ¯Pioneer Kitten£¨ÏÈ·æÐ¡Ã¨£©£¬ÕýÔÚºÚ¿ÍÂÛ̳ÉϹûÕæÊÛÂôÏà¹ØÆóÒµµÄÍøÂçÆ¾Ö¤ÐÅÏ¢¡£¸Ã×éÖ¯×Ô2017ÄêÒÔÀ´Ò»Ö±»îÔ¾£¬ÒÔÇÔÈ¡¹ú¼ÒÕþ¸®¼°Ïà¹ØÊµÌåµÄÃôÇéÐ÷±¨ÐÅϢΪÖ÷£¬²¢Æð¾¢»ñÈ¡²¢¼á³Ö¶ÔÕâЩÇ鱨ÐÅÏ¢¶Ë¿ÚµÄ»á¼ûȨÏÞ¡£ Æä¹¥»÷Ä¿µÄÒ²Ïà¶ÔÃ÷È·£¬¼¯ÖÐÔÚÒÁÀʽÏÁ¿¸ÐÐԵı±ÃÀºÍÒÔÉ«ÁÐʵÌ壬ÏêϸÐÐÒµ°üÀ¨£ºÊÖÒÕ¡¢Õþ¸®¡¢¹ú·À¡¢Ò½ÁƱ£½¡¡¢º½¿Õ¡¢Ã½Ì塢ѧÊõ¡¢¹¤³Ì¡¢×ÉѯºÍרҵ·þÎñ¡¢»¯Ñ§¡¢ÖÆÔì¡¢½ðÈÚ·þÎñ¡¢°ü¹ÜºÍÁãÊÛÐÐÒµµÈ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.anquanke.com/post/id/216449
6. °µÍøÊг¡EmpireÓÉÓÚDDos¹¥»÷¹Ø±ÕÊýÈÕ
¡¾¸ÅÊö¡¿
°µÍøÖеÄ×ÅÃûÍøÕ¾Empire MarketÒѾ¹Ø±ÕÁËÊýÈÕ£¬Ò»Ð©Óû§ÏÓÒÉÏÓÒɱ£´æexit scamµÄÎÊÌ⣬¶øÁíһЩÓû§ÔòÔÚÖ¸ÔðÁËÍøÕ¾·ºÆðµÄ³¤Ê±¼äÂþÑÜʽ¾Ü¾ø·þÎñ¹¥»÷(DDoS)¡£Empire MarketÉÏÊÛÂô×ÅÐí¶àµÄ²»·¨ÉÌÆ·£¬°üÀ¨Î¥½ûÒ©Î»¯Ñ§Ò©Æ·£¬ØÍÆ·£¬Ö鱦ºÍÐÅÓÿ¨ºÅ£¬²¢Ö§³ÖʹÓðüÀ¨±ÈÌØ±Ò£¨BTC£©£¬À³Ìرң¨LTC£©ºÍÃÅÂÞ±Ò£¨XMR£©ÔÚÄڵĸ¶¿î·½·¨
¡¾²Î¿¼Á´½Ó¡¿
http://mp.weixin.qq.com/s?__biz=MzkyMzAwMDEyNg==&mid=2247499419&idx=3&sn=b9c32241fdf7afa806ddbb40d607c071&chksm=c1e972caf69efbdc3403e04bbeac180a7fc61094d9ccc075477d62ef86a7e4389c388f8defd3#rd
7. Èý´óÒøÐÐÒòСÎÒ˽¼ÒÐÅÓÃÐÅÏ¢ÖÎÀíÎÊÌâ±»´¦·Ö
¡¾¸ÅÊö¡¿
½»Í¨ÒøÐйɷÝÓÐÏÞ¹«Ë¾ÉÂÎ÷Ê¡·ÖÐС¢ÐËÒµÒøÐйɷÝÓÐÏÞ¹«Ë¾Î÷Ñ·ÖÐС¢ÕãÉÌÒøÐйɷÝÓÐÏÞ¹«Ë¾Î÷Ñ·ÖÐУ¬ÕâÈý¼ÒÒøÐÐÒòÎ¥·´¡¶Ð¡ÎÒ˽¼ÒÐÅÓÃÐÅÏ¢»ù´¡Êý¾Ý¿âÖÎÀíÔÝÐв½·¥¡·µÄµÚ39Ìõ¶ø±»´¦·Ö¡£ÎÞÓÃÕË»§¡¢½©Ê¬ÕË»§µÄ±£´æ£¬Ò»Ñùƽ³£È±·¦¶ÔÕâЩÕË»§µÄÖÎÀí£¬ºÜÈÝÒ×±»ºÚ¿Í²»·¨Ê¹ÓÃÕâЩÕË»§£¬Ç±È뵥λϵͳÄÚ²¿£¬²»·¨»ñÈ¡µ½ÓÐÓÃÐÅÏ¢¡£
¡¾²Î¿¼Á´½Ó¡¿
http://mp.weixin.qq.com/s?__biz=MzU1ODM1Njc1Ng==&mid=2247488481&idx=1&sn=c48ff30d33c122effd36daa70a400d91&chksm=fc26939acb511a8c531c17cb8b1f5a20373f5f5790e071cff47d760365d8ad030f61113ac575#rd
8. ºÚ¿Í¿ÉÒÔͨ¹ýÖÇÄÜÊÖ»úÀ´¿Ë¡ÄãµÄËøÔ¿³×
¡¾¸ÅÊö¡¿
ÐÂ¼ÓÆÂ¹úÁ¢´óѧÅÌËã»ú¿ÆÑ§ÏµµÄ×îÐÂÑо¿Õ¹ÏÖÁËÓëÖÇÄÜËøÏà¹ØµÄΣº¦¡£Ñо¿Ö°Ô±¿ÉÒÔʹÓÃÌØ¶¨Èí¼þºÍÊÖ»úÂó¿Ë·çÀ´¿ËÂ¡Ëø³×£¬²¢½«¹¥»÷Ä£×ÓÃüÃûΪSpiKey¡£Ê¹ÓÃSpiKey£¬¿ÉÒÔËÜÔì·¿ªÈκε¯×ÓËøµÄÔ¿³×¡£ÈôÊǺڿͿÉÒÔÔÚÄúµÄÖÇÄÜÊÖ±í£¬ÖÇÄÜÊÖ»ú»òÖÇÄÜÃÅÁåÉÏ×°ÖöñÒâÈí¼þÀ´Â¼ÖÆÒôƵ£¬Ôò¹¥»÷Õß¿ÉÄÜÎÞÐèÎïÀíÉÏ¿¿½üËø¼´¿É¾ÙÐй¥»÷¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.hackread.com/hackers-clone-lock-keys-from-smartphone-clicks/

AG¹«Ë¾ÔÆ







