AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2020.12.28-2021.01.03£©
2021-01-05
Ò»¡¢ ÈÈÃÅ×ÊѶ
1. SolarWindsÐû²¼SUPERNOVA¶ñÒâÈí¼þµÄÇå¾²¸üÐÂ
¡¾¸ÅÊö¡¿
ÉÏÖÜÄ©SolarWindsÕë¶ÔÆäÍøÂçÖÎÀíÆ½Ì¨OrionÉÏ·¢Ã÷µÄµÚ¶þ¸ö¶ñÒâÈí¼þ——SuperNovaÐû²¼ÁËÇå¾²¸üÐÂͨ¸æ¡£±¾Ô³õ£¬SolarWinds±»ÆØ¹âÔâÓö¹©Ó¦Á´APT¹¥»÷£¬¹¥»÷ÕßÔÚÕýµ±µÄSolarWindsÍø¹ÜÈí¼þOrionµÄ¶¯Ì¬¿âÎļþ——SolarWinds.Orion.Core.BusinessLayer.dllÖÐÖ²ÈëÁ˶ñÒâµÄSUNBURSTºóÃÅľÂí¡£È»ºó£¬¸ÃºóÃÅľÂíͨ¹ý¹©Ó¦Á´¹¥»÷ÖеÄ×Ô¶¯¸üй¦Ð§·Ö·¢¸øSolarWinds¿Í»§¡£
¡¾²Î¿¼Á´½Ó¡¿
http://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651095570&idx=2&sn=f391462535889490d1211b927769075f&chksm=bd1432c18a63bbd7c44fc968c0f58458b4d8345afea0a384e8d34b9920b86cb306f18c691327#rd
2. GoDaddyΪ·¢Ë͸øÆäÔ±¹¤ÌṩÐéα½±½ðµÄ²»Ãô¸ÐµÄÍøÂç´¹ÂÚÓʼþÖÂǸ
¡¾¸ÅÊö¡¿
GoDaddyÏòÆäÔ±¹¤·¢ËÍÁËÒ»·âµç×ÓÓʼþ£¬ÔÊÐíÏòÆäÌṩʥµ®½Ú½±½ð£¬ÒÔ×ÊÖúËûÃÇÓ¦¶ÔÒòÒ»Á¬±¬·¢µÄCOVID-19´óÊ¢ÐжøÒýÆðµÄ¾¼ÃÎÊÌâ¡£¸ÃÍøÂçÌṩÉÌÖÜËÄÎªÍøÂçÇå¾²²âÊÔÖÂǸ£¬¸Ã²âÊÔÖ¼ÔÚÑéÖ¤ÆäÖ°Ô±¶ÔÍøÂç´¹ÂÚÔ˶¯µÄ·´Ó¦¡£
¡¾²Î¿¼Á´½Ó¡¿
https://securityaffairs.co/wordpress/112664/security/godaddy-phishing-test-employees.html
3. µç×ÓÉÌÎñÓ¦ÓóÌÐòÆØ¹â°ÙÍòÓû§Êý¾Ý
¡¾¸ÅÊö¡¿
ÍøÂçÇå¾²¹«Ë¾vpnMentorµÄÑо¿Ö°Ô±·¢Ã÷£¬µç×ÓÉÌÎñÓ¦ÓóÌÐò21 ButtonsÕýÔÚÏòÅ·ÖÞ100¸öÓÐÓ°ÏìÁ¦µÄÈ˹ûÕæË½ÈËÊý¾Ý¡£21 ButtonsÔÊÐíÓû§ÓëËûÃÇËù´©Æ·ÅƵÄÁ´½Ó¹²ÏíËûÃǵĴò°çÕÕÆ¬£¬È»ºóËûÃǵÄ×·ËæÕß¿ÉÒÔʹÓøÃÓ¦ÓÃÖ±½Ó´ÓÏà¹ØÆ·ÅÆ¹ºÖÃ×Ô¼ºÏ²»¶µÄÒ·þ¡£ÔÚ»¥ÁªÍøÉÏ£¬ÓÐÐí¶à²î±ðµÄƽ̨¿ÉÒÔΪ×Ô¼ºÕÒµ½ºÏÊʵÄλÖá£ÔÚAndroidÉÏÓÐÁè¼Ý500Íò´ÎÏÂÔØµÄ21 Buttonsǡǡ¾ÍÊÇÕâÑùÒ»ÖÖÉç½»ÍøÂ磬Ö÷ÒªÃæÏòʱÉÐÐÐÒµ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://securityaffairs.co/wordpress/112701/data-breach/button-21-data-leak.html
4. ËßËϳÆÃ沿ʶ±ðÓÐȱÏݵ¼Ö¸ÃÄÐ×Ó±»¹ýʧ¾Ð²¶
¡¾¸ÅÊö¡¿
ºÚÈËÆðËß¾¯Ô±£¬³ÆËûÒòÃæ²¿Ê¶±ð¹ýʧ¶ø±»Éí·Ýʶ±ð£¬²¢ÓëÆäËû³ÉΪ¸ÃÊÖÒÕÖÖ×å˽¼ûµÄºÚÈËÃÀ¹úÈËÒ»ÆðÊܺ¦¡£Ò»ÏîеÄËßËϳƣ¬ÔÚÃæ²¿Ê¶±ðÊÖÒÕÖÐÕë¶Ô·Ç°×Ƥ·ôµÄÖÖ×å˽¼ûʹNijeer ParksÓÚ2019ÄêÈëÓüÊ®Ì죬´Ëǰ¸ÃÊÖÒÕ¹ýʧµØ½«Ëûʶ±ðΪÈëµêÐÐÇÔÏÓÒÉÈË¡£
¡¾²Î¿¼Á´½Ó¡¿
https://threatpost.com/lawsuit-claims-flawed-facial-recognition-led-to-mans-wrongful-arrest/162663/
5. MicrosoftÒÑÐÞ¸´ÁËWindows10µÄÃÜÂëÉúÑÄÎÊÌâ
¡¾¸ÅÊö¡¿
ÔÚ2020Äê4ÔÂÐû²¼Windows 10°æ±¾2004ºó²»¾Ã£¬Ò»Ð©Óû§±¨¸æÁË»ñÈ¡ÃÜÂëÒÔÉúÑÄÔÚWebä¯ÀÀÆ÷£¨ÀýÈçGoogle Chrome»òMicrosoft Edge£©ÒÔ¼°ÆäËûÓ¦ÓóÌÐò£¨ÀýÈçOneDrive»òOutlook£©ÖеÄÎÊÌâ¡£MicrosoftÔÚ2020Äê6ÔÂÈ·ÈÏÁË´ËÎÊÌ⣬²¢ÔÚÆä¹Ù·½Ö§³ÖÍøÕ¾ÉÏÐû²¼ÁËÖ§³ÖÒ³Ãæ¡£¸ÃÖ§³ÖÒ³ÃæÍ¨ÖªÓû§¸ÃÎÊÌâÊÇÓÉÌØ¶¨µÄWindows 10ʹÃüÍýÏë³ÌÐòʹÃü£¬ÈçHP¿Í»§¼ÓÈ빫ÓÃÊÂҵʹÃüÒýÆðµÄ£¬Ëü»áÓ°Ïìµ½ÔËÐеÄWindows 2004Äê10°æ±¾¹¹½¨19041.173»ò¸ü¸ß°æ±¾µÄ×°±¸¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.ghacks.net/2020/12/29/microsoft-has-a-fix-for-windows-10s-password-saving-issue/
6. ÈÕ±¾´¨ÆéÖØ¹¤Åû¶Çå¾²Îó²î
¡¾¸ÅÊö¡¿
´¨ÆéÖØ¹¤Åû¶ÁËÒ»ÏîÇå¾²Îó²î£¬¸Ã¹«Ë¾·¢Ã÷¶à¸öÍâÑó·þÎñ´¦¶ÔÈÕ±¾¹«Ë¾·þÎñÆ÷µÄδÊÚȨ»á¼û¡£½ñÄêÔçЩʱ¼ä±¬·¢µÄÇå¾²Îó²î¿ÉÄܵ¼ÖÂÆäÍâÑó·þÎñ´¦µÄÐÅÏ¢±»µÁ¡£´¨ÆéÖØ¹¤ÓÐÏÞ¹«Ë¾ÊÇÒ»¼ÒÈÕ±¾µÄ¹«¹²¿ç¹ú¹«Ë¾£¬Ö÷ÒªÉú²úĦÍгµ£¬·¢ÄîÍ·£¬ÖØÐÍ×°±¸£¬º½¿Õº½ÌìºÍ¹ú·À×°±¸£¬»ú³µ³µÁ¾ºÍ´¬²°¡£Ëü»¹»îÔ¾ÓÚ¹¤Òµ»úеÈË£¬È¼ÆøÂÖ»ú£¬¹øÂ¯ºÍÆäËû¹¤Òµ²úÆ·µÄÉú²ú¡£
¡¾²Î¿¼Á´½Ó¡¿
https://securityaffairs.co/wordpress/112765/data-breach/kawasaki-heavy-industries-cyber-attack.html
7. FBIÖÒÑÔºÚ¿ÍÕýÔÚʹÓñ»Ð®ÖƵļÒÍ¥Çå¾²×°±¸
¡¾¸ÅÊö¡¿
±»ÇÔÈ¡µÄµç×ÓÓʼþƾ֤Õý±»ÓÃÓÚÐ®ÖÆ¼ÒÍ¥¼à¿Ø×°±¸£¨ÀýÈçRing£©£¬ÒÔð³ä½ôÆÈÇéÐδòµç»°¸ø¾¯Ô±£¬È»ºóÊÓ²ìÇéÐεÄÉú³¤¡£Áª°îÊÓ²ì¾ÖÔÚ±¾ÖÜÖÒÑÔ˵£¬±»µÁµÄµç×ÓÓʼþÃÜÂë±»ÓÃÓÚÐ®ÖÆÖÇÄܼҾÓÇ徲ϵͳ£¬ÒÔ“ÂӶᔺÁÎÞ½äÐĵÄÓû§¡£¸Ãͨ¸æÊÇÔÚÓйØ×°±¸ÖÆÔìÉ̾ʹËÎÊÌâÏòÖ´·¨»ú¹¹·¢³ö¾¯±¨Ö®ºóÐû²¼µÄ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://threatpost.com/fbi-warn-home-security-devices-swatting/162678/
8. 2020Äê×îÓÕÈ˵ÄÍøÂç¹¥»÷
¡¾¸ÅÊö¡¿
´Ó2ÔÂ×îÏÈ£¬MalwarebytesºÍÐí¶àÆäËûÍøÂçÇå¾²Ñо¿Ö°Ô±ÒѾ¼Í¼Á˹Ú×´²¡¶¾ÓÕ¶üµÄ´ó×ÚÔöÌí£¬ÕâЩÓÕ¶ü±»ÓÃÀ´ÓÕÆÈËÃÇ·¿ª¶ñÒâµç×ÓÓʼþºÍ»á¼ûΣÏÕÍøÕ¾¡£Ê×ÏÈ£¬ÎÒÃÇ·¢Ã÷ÍøÂç·¸·¨·Ö×Óð³äÌìÏÂÎÀÉú×éÖ¯·Ö·¢Î±ÔìµÄ¹Ú×´²¡¶¾µç×ÓÊé¡£¸Ã¹¥»÷ǰÑÔÒ»¶¨ÓÐÓã¬ÓÉÓÚÔÚͳһ¸öÔ£¬ÍøÂç×ï·¸ÔÙ´Îð³äÌìÏÂÎÀÉú×éÖ¯£¬ÒÔÈö²¥ÈëÇÖÐÔ¼üÅ̼ͼÆ÷ÌØË¹À£¨Agent Tesla£©¡£
¡¾²Î¿¼Á´½Ó¡¿
https://blog.malwarebytes.com/security-world/2020/12/the-most-enticing-cyberattacks-of-2020/
9. еĻùÓÚAutoHotkeyµÄ¶ñÒâÈí¼þÕë¶ÔÃÀ¹ú£¬¼ÓÄôóµÄÒøÐÐ
¡¾¸ÅÊö¡¿
Çå¾²¹«Ë¾Ç÷ÊÆ¿Æ¼¼µÄÑо¿Ö°Ô±·¢Ã÷ÁËÒ»ÖÖеÄÐÅÏ¢ÇÔÈ¡Èí¼þ¶ñÒâÈí¼þ£¬ÒÔAutoHotkey±à³ÌÓïÑÔ±àд£¬Äܹ»´Ó²î±ðµÄWebä¯ÀÀÆ÷ÖÐÇÔÈ¡ÒøÐÐÆ¾Ö¤¡£¸ÃÔ˶¯ÓÚ½ñÄêÔçЩʱ¼ä×îÏÈ£¬ÔÚÃÀ¹úºÍ¼ÓÄôóÒ»Ö±»îÔ¾£¬ÆäÄ¿µÄ¿Í»§ÊÇ·áÒµÒøÐУ¬±´±¦£¬¼ÓÄôó»Ê¼ÒÒøÐУ¬Capital OneºÍ»ã·áÒøÐеÈÒøÐС£
¡¾²Î¿¼Á´½Ó¡¿
https://www.inforisktoday.com/new-autohotkey-based-malware-targets-us-canadian-banks-a-15680
10. ÁôÉñÓëCOVID-19ÒßÃçÓйصÄȦÌ×
¡¾¸ÅÊö¡¿
ÃÀ¹ú²ÆÎñ²¿µÄ½ðÈÚ·¸·¨Ö´·¨ÍøÂçÕýÔÚÖÒÑÔ½ðÈÚ»ú¹¹ÓйØÓëCOVID-19ÒßÃçÑо¿ºÍ·ÖÅÉ×éÖ¯ÓйصÄڲƣ¬ÀÕË÷Èí¼þ¹¥»÷»òÀàËÆÀàÐÍ·¸·¨Ô˶¯µÄ¿ÉÄÜÐÔ¡£FinCEN±¨¸æ³Æ£¬Ú²ÆÐÐΪ°üÀ¨Ê¹ÓÃÀÕË÷Èí¼þÕë¶ÔÒßÃçÑо¿Ö°Ô±£¬ÔÊÐíÈÃÏûºÄÕß¼°Ôç»ñµÃÌØÊâÓöȵÄCOVID-19ÒßÃçÒÔ¼°¶µÊÛ¼ÙÒ©¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.inforisktoday.com/fincen-beware-scams-related-to-covid-19-vaccines-a-15679

AG¹«Ë¾ÔÆ







