¡¾Íþвͨ¸æ¡¿AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2021.11.01-2021.11.07£©
2021-11-08
Ò»¡¢ Íþвͨ¸æ
Linux KernelÔ¶³Ì´úÂëÖ´ÐÐÎó²îͨ¸æ£¨CVE-2021-43267£©
¡¾Ðû²¼Ê±¼ä¡¿2021-11-05 18:00:00 GMT
¡¾¸ÅÊö¡¿
¿ËÈÕ£¬AG¹«Ë¾¿Æ¼¼CERT¼à²âµ½ÓÐÑо¿Ö°Ô±¹ûÕæÅû¶ÁËLinuxÄÚºËTIPCÄ£¿éÖеÄÒ»¸ö¶ÑÒç³öÎó²î£¨CVE-2021-43267£©£»ÓÉÓÚTIPC¹¦Ð§Ä£¿é¶ÔÓû§ÌṩµÄ MSG_CRYPTOÐÂÎÅÀàÐ;ÞϸÑé֤ȱ·¦£¬Ôì³É Linux ÄÚºËÖеÄÔ½½çдÈ룬´Ó¶øµ¼Ö¹¥»÷ÕßʹÓøÃÎó²î¶ÑÒç³öʵÏÖÍâµØ»òÔ¶³Ì´úÂëÖ´ÐС£CVSSÆÀ·ÖΪ9.8£¬ÇëÏà¹ØÓû§ÊµÊ±½ÓÄɲ½·¥·À»¤¡£TIPC£¨Í¸Ã÷Àú³Ì¼äͨѶ£©ÊÇÒ»ÖÖÓÃÓÚרÃÅΪ¼¯ÈºÄÚͨѶÉè¼ÆµÄÍøÂçͨѶÐÒ飬Ëü¿ÉÒÔÉèÖÃΪͨ¹ý UDP »òÖ±½Óͨ¹ýÒÔÌ«Íø´«ÊäÐÂÎÅ£»Ö§³ÖÓÃÓÚ²î±ðÄ¿µÄµÄÖÖÖÖÀàÐ͵ÄÐÂÎÅ£¬°ü¹ÜÐÂÎÅת´ïÓÐÐò¡¢ÎÞɥʧ¡£TIPC Ä£¿éËæÖ÷ÒªµÄLinux ¿¯ÐаæÒ»ÆðÌṩ£¬µ«ÐèÒªÓû§¼ÓÔØ²Å»ªÆôÓøÃÐÒé¡£
¡¾Á´½Ó¡¿
https://nti.nsfocus.com/threatWarning
¶þ¡¢ ÈÈÃÅ×ÊѶ
1. Quickfox VPNÌṩµÄ·þÎñµ¼ÖÂ100ÍòÓû§µÄÊý¾Ý±»Ð¹Â¶
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±ÌåÏÖÃâ·ÑµÄÐéÄâ˽ÈËÍøÂ磨VPN£©·þÎñÉÌQuickfoxÌṩÁË´ÓÍâÑó»á¼ûÖйúÍøÕ¾µÄ·þÎñ£¬Ëüй¶ÁËÁè¼ÝÒ»°ÙÍòÓû§µÄСÎÒ˽¼ÒÉí·ÝÐÅÏ¢£¨PII£©¡£Ö»¹ÜQuickfoxÒѾÔÚKibanaÉèÖÃÁË»á¼ûȨÏÞ£¬¿ÉÊÇûÓÐΪËûÃǵÄElasticsearch·þÎñÆ÷ÉèÖÃͬÑùµÄÇå¾²²½·¥£¬ÕâÒâζ×Å£¬ÈκÎÈ˶¼¿ÉÒÔʹÓÃä¯ÀÀÆ÷ºÍ»¥ÁªÍøÀ´»á¼ûQuickfoxµÄÈÕÖ¾£¬²¢ÌáÈ¡QuickfoxÓû§µÄÃô¸ÐÐÅÏ¢¡£Ñо¿Ö°Ô±»¹·¢Ã÷£¬Öйú¡¢Ó¡¶ÈÄáÎ÷ÑÇ¡¢ÈÕ±¾¡¢¹þÈø¿Ë˹̹ºÍÃÀ¹úµÄQuickfoxµÄÓû§¶¼Êܵ½ÁËÓ°Ï죬²¢Ôö²¹Ëµ´Ë´Î¹²ÓÐ5ÒÚÌõ¼Í¼ºÍ100GBµÄÊý¾Ý±»Ð¹Â¶¡£²¢Ìáµ½£¬±»Ð¹Â¶µÄÊý¾Ý·ÖΪÁ½À࣬Ö÷ÒªÊǵç×ÓÓʼþºÍµç»°ºÅÂëµÈPII£¬Í¬Ê±Ò²ÓÐԼĪ30ÍòÃûQuickfoxÓû§Éè±¹ØÁ¬ÄÈí¼þÐÅÏ¢¡£×ß©µÄÊý¾Ý»á̻¶Óû§×°±¸ÉÏ×°ÖÃµÄÆäËûÈí¼þµÄÃû³Æ¡¢ÎļþλÖá¢×°ÖÃÈÕÆÚºÍ°æ±¾ºÅ¡£ÏÖÔÚ»¹²»ÇåÎúΪʲôVPNÒªÍøÂçÕâЩÊý¾Ý£¬ÓÉÓÚÕâЩÊý¾Ý¶ÔÆä¹¦Ð§À´ËµÊDz»ÐëÒªµÄ£¬²¢ÇÒÕâÒ²²»ÊÇÆäËûVPN·þÎñµÄ±ê×¼×ö·¨¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlN02
2. ¹¥»÷Õßͨ¹ýÍøÂç´¹ÂÚÍøÕ¾Ãé×¼ÍøÂç·¸·¨ÐÂÊÖ
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±ÌåÏÖ¶à¸öÍøÂç·¸·¨ÍÅ»ïËÆºõͨ¹ýÍøÂç´¹ÂÚ¹¥»÷Ãé×¼Á˸ÃÁìÓòÏà¶Ô½ÏеĽøÈëÕߣ¬ÕâЩÍÅ»ïÒÔÆÊÎöʦËùνµÄ“ͬÀàÏàʳ·½·¨”ð³äµØÏ¿¨µê——ÀýÈç Joker\\'s Stash¡¢BriansClub¡¢Uni§ã§ã¡¢Ferum Shop ºÍ ValidCC——À´ÓÕÆÐÂÊÖÒÔ»ñµÃ¿î×ÓÊÕÒæ¡£ÆäÖÐSPAGETTI µÄ½¨ÉèÕßʹÓÃÁËÒ»¸öÃûΪ briansclub[.]ru µÄÍøÂç´¹ÂÚÓò¡£ÆÊÎöʦָ³ö£¬³ýÁËͨ¹ýÕÊ»§¼¤»î·ÑÚ²Æ×¬Ç®Í⣬Ëü»¹Í¨¹ýÆäÍøÕ¾Èö²¥¶ñÒâÈí¼þ£¬ÔÚÖ§¸¶Á˼٠briansclub[.]ru µÄ¼¤»î·Ñºó£¬Óû§»á¿´µ½Ò»Ìõ“ÀֳɔÐÂÎÅ£¬²¢±»ÒªÇó´ÓÒ»¸öÃûΪ“panelcontrol.rar”µÄ´æµµÁ´½ÓÏÂÔØÒ»¸ö“Êܱ£»¤”µÄÓ¦ÓóÌÐò£¬´æµµ°üÀ¨Á½¸öÎļþ£º“PanelControl.exe”ºÍ“LitePanel.exe”¡£ÆÊÎöʦ˵£¬Ç°ÕßûÓÐÌṩ¶Ô¿¨Æ¬ÊÐËÁÃæ°åµÄ»á¼ûȨÏÞ£¬¶øÊÇÆô¶¯ÁËÒ»¸öÃûΪ Taurus Project µÄÇÔÈ¡³ÌÐò¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMZy
3. ¼ÓÖÝÕïËùÔâÊܵÄÍøÂç¹¥»÷½«µ¼Ö´ó×Ú¿µ½¡Êý¾Ýй¶
¡¾¸ÅÊö¡¿
×î½ü¶ÔÉçÇøÒ½ÁÆÖÐÐÄ£¨±±¼ÓÖݵÄÒ»¸ö·ÇÓªÀûÐÔÉçÇø¿µ½¡ÖÐÐÄÍøÂ磩µÄÍøÂç¹¥»÷¿ÉÄÜ»áÆÆËðÁè¼Ý 656,000 СÎÒ˽¼ÒµÄСÎÒ˽¼ÒÉí·ÝÐÅÏ¢ºÍÊܱ£»¤µÄ¿µ½¡ÐÅÏ¢¡£×èÖ¹Öܶþ£¬CMC ÊÂÎñÉÐδÐû²¼ÔÚÎÀÉúÓ빫¹²·þÎñ²¿µÄHIPAA Î¥¹æ±¨¸æ¹¤¾ßÍøÕ¾ÉÏ£¬¸ÃÍøÕ¾ÁгöÁËÓ°Ïì 500 »ò¸ü¶àСÎÒ˽¼ÒµÄ¿µ½¡Êý¾Ýй¶£¬Í¬Ê±ÉùÃ÷³Æ£¬¿ÉÄܱ»Ð¹Â¶µÄСÎÒ˽¼ÒÐÅÏ¢°üÀ¨ÐÕÃû¡¢Óʼĵص㡢Éç»áÇå¾²ºÅÂë¡¢³öÉúÈÕÆÚ¡¢Éú³Ýͳ¼ÆÐÅÏ¢ºÍÓÉ CMC ά»¤µÄÒ½ÁÆÐÅÏ¢¡£È»¶ø£¬¸ÃÊÂÎñ½«³ÉΪ½ñÄêÆù½ñΪֹÐû²¼µ½ HHS ÍøÕ¾µÄµÚ12´ó¿µ½¡Êý¾Ýй¶ÊÂÎñ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMZY
4. ¹¥»÷ÕßʹÓà WSL ¹¦Ð§½«ELF °²ÅÅΪWINDOWS¼ÓÔØ³ÌÐò
¡¾¸ÅÊö¡¿
WSLÊÇÊÊÓÃÓÚ Linux µÄ Windows ×Óϵͳ (WSL) ÊÇ Windows ²Ù×÷ϵͳÖеÄÒ»ÖÖ×ÊÔ´£¬ËüÔÊÐíÓû§ÔÚÔËÐÐ Windows ²Ù×÷ϵͳµÄ»úеÉÏÖ´ÐÐ Linux ÏÂÁîÐУ¬ÊÊÓÃÓÚ Linux µÄ Windows ×ÓϵͳʹÓóÆÎª Bash.exe µÄÓ¦ÓóÌÐò£¬Ëü»áÔÚ Windows ²Ù×÷ϵͳ½çÃæÄÚÆô¶¯Ò»¸ö Linux ¶Ô»°¿ò¡£Õâ¿ÉÄܱ»ÊÓΪÔÚ Windows ÖÐÔËÐеēÍâ¿Ç”Ó¦ÓóÌÐò¡£Ñо¿Ö°Ô±ÌåÏÖÓÐÒ»¸öÐµĹ¥»÷Á´ÕýÔÚ±¬·¢£¬¹¥»÷ÕßÒÔ WSL ÇéÐÎΪĿµÄ¡£ÕâЩÎļþÊÇÓà Python 3 ±àдµÄ£¬È»ºóÔÚ PyInstaller µÄ×ÊÖúÏ£¬×ª»»Îª Debian Linux µÄ ELF ¿ÉÖ´ÐÐÎļþ¡£ÕâЩÎļþ³äµ±¼ÓÔØÆ÷£¬ÔËÐÐǶÈëÔÚÑù±¾Öлò´ÓÔ¶³Ì·þÎñÆ÷¼ìË÷µÄÓÐÓøºÔØ£¬È»ºó×¢Èëµ½ÕýÔÚÔËÐеÄÀú³ÌÖС£ÕâÖÖÊÖÒÕ¿ÉÒÔʹ¼ÓÈëÕßÔÚÊÜѬȾµÄ»úеÉÏ»ñµÃ²»±»×¢ÖصÄפ×ãµã¡£ELF ¼ÓÔØÆ÷ÓÐÁ½ÖÖ±äÌ壺µÚÒ»ÖÖÍêÈ«Óà Python ±àд£¬¶øµÚ¶þÖÖʹÓà Python ͨ¹ý ctypes ŲÓöà¸ö Windows API ²¢Æô¶¯ PowerShell ¾ç±¾ÒÔÔÚÖ÷»úÉÏÖ´ÐнøÒ»²½µÄ²Ù×÷¡£Ò»Ð©Ê¾Àý°üÀ¨ÓÉ Meterpreter µÈ¿ªÔ´¹¤¾ßÌìÉúµÄÇáÁ¿¼¶¸ºÔØ¡£ÔÚÆäËûÇéÐÎÏ£¬ÕâЩÎļþ»áʵÑé´ÓÔ¶³Ì C2 ÏÂÔØ shellcode¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMZA
5. Lockean ÀÕË÷Èí¼þ×éÖ¯¶Ô·¨¹ú¹«Ë¾Ìᳫ´¹ÂÚ¹¥»÷
¡¾¸ÅÊö¡¿
·¨¹úÍøÂçÇå¾²¹ÙÔ±Ê×´ÎÈ·¶¨ÁËÒ»¸öÀÕË÷Èí¼þ“Á¥Êô×éÖ¯”£¬¸Ã×éÖ¯¶ÔÒÑÍùÁ½Äê¶Ô·¨¹ú¹«Ë¾µÄÒ»³¤´®¹¥»÷ÈÏÕæ¡£CERT-FR ¹ÙÔ±ÌåÏÖ£¬¸Ã×é֯ͨ³£»á×âÓÃÒÔǰͨ¹ý Emotet ÍøÂç´¹ÂÚµç×ÓÓʼþѬȾµÄÆóÒµÍøÂçµÄ»á¼ûȨÏÞ£¬ËûÃǽ«ÔÚÆäÖа²ÅÅ QakBot ¶ñÒâÈí¼þ£¬È»ºó°²ÅÅ CobaltStrike ºó¿ª·¢¿ò¼Ü£¬LockeanÔËÓªÉÌËæºó½«Ê¹ÓÃAdFind¡¢ BITSAdminºÍ BloodHoundµÈ¹¤¾ßÔÚÍøÂçÄÚºáÏòÒÆ¶¯£¬ÒÔÀ©´óËûÃǶԹ«Ë¾ÏµÍ³µÄ»á¼ûºÍ¿ØÖÆ¡£È»ºó£¬¸Ã×éÖ¯½«Ê¹Óà RClone ÊÊÓóÌÐò´ÓÊܺ¦ÍøÂç¸´ÖÆÃô¸ÐÎļþ£¬È»ºó°²ÅÅÎļþ¼ÓÃÜÀÕË÷Èí¼þ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlN00
6. ContiÍøÂç·¸·¨ÍÅ»ïÔÚ°µÍøÍøÕ¾Ð¹Â¶´ó×ÚÃûÈËÊý¾Ý
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±·¢Ã÷¹¥»÷ÕßÔÚÒ»¸ö°µÍøÍøÕ¾ÉÏй¶ÁË 69,000 ·ÝÉñÃØÎļþ£¬ÆäÖаüÀ¨ÓëÌÆÄÉµÂ·ÌØÀÊÆÕ¡¢°ÂÆÕÀ·Î¸¥ÈðºÍ´óÎÀ·±´¿ËººÄ·ÓйصÄÎļþ£¬²¢ÇÒй¶µÄÔ¼11,000ÈËÊý¾ÝÉæ¼° Graff µÄ¸»Óпͻ§£¬ÀÕË÷Èí¼þ¼ÓÈëÕßÒªÇóÊýÍòÍòÓ¢°÷µÄÊê½ð£¬ÒÔ×èÖ¹½øÒ»²½Ðû²¼Ãô¸ÐÐÅÏ¢¡£Í¬Ê±Ð¹Â¶µÄÎļþ°üÀ¨¿Í»§Ãûµ¥¡¢·¢Æ±¡¢ÊÕÌõºÍÐÅÓÃÆ±¾Ý£¬¸ÃÃûµ¥°üÀ¨¹ú¼Ê¾ÞÐÇ£¬ÈçÌÀÄ·ºº¿Ë˹¡¢ÈûçѶû½Ü¿ËÑ·ºÍÑÇÀú¿Ë±«µÂεȡ£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMZx
7. ¶àÂ׶ཻͨίԱ»á (TTC) Ôâµ½ÀÕË÷Èí¼þ¹¥»÷
¡¾¸ÅÊö¡¿
¶àÂ׶ཻͨίԱ»áÖÜÎåÐû²¼£¬¶àÂ×¶àÔËÊäίԱ»á¹«¹²½»Í¨»ú¹¹µÄϵͳÒÑѬȾÀÕË÷Èí¼þ£¬¹¥»÷ÓÚÖÜËÄÍíÉÏ×îÏÈ£¬²¢ÖÐÖ¹ÁËÆäÔ˶¯¡£Çå¾²Îó²îÓ°ÏìÁ˸ûú¹¹µÄÄÚ²¿µç×ÓÓʼþ·þÎñÆ÷¡¢Wheel-Trans Ô¤¶©¡¢Æ½Ì¨ÆÁÄ»ÉϵijµÁ¾ÐÅÏ¢¡¢Ó¦ÓóÌÐò¡¢TTC Vision ͨѶϵͳÒÔ¼°ÆäËûÄÚ²¿ÏµÍ³£¬Ë¾»ú±»ÆÈʹÓþµäµÄ»ùÓÚÎÞÏßµçµÄͨѶϵͳ¾ÙÐÐͨѶ¡£TTC »¹Ðû²¼×÷·ÏÁËÖÜÁùÔÚ St. Clair ºÍ College Õ¾Ö®¼äµÄ 1 ºÅÏßµØÌú¹Ø±Õ£¬¸Ã¹Ø±Õ½«ÓÃÓÚÍê³É¹ìµÀ¹¤³Ì¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMZz
8. ÃÀ¹úÎïÀíÖÎÁÆÖÐÐÄ´ó×ÚÒ½ÁƱ£½¡ÐÅÏ¢±»Ð¹Â¶
¡¾¸ÅÊö¡¿
ÃÀ¹úÒ»¼ÒÀíÁÆÖÐÐÄÐû²¼£¬ÔÚÒ»´ÎÇå¾²ÊÂÎñÖУ¬Áè¼Ý 6,500 Ãû»¼ÕßµÄСÎÒ˽¼ÒÊý¾ÝÔâµ½ÆÆËð¡£×ܲ¿Î»ÓÚÃ÷ÄáËÕ´ïÖÝÃ÷Äá°¢²¨Àû˹µÄ Viverant PT ÌåÏÖ£¬Ä¿½ñºÍÒÔǰµÄ»¼ÕߺÍÔ±¹¤µÄСÎÒ˽¼ÒÉí·ÝÐÅÏ¢ (PII) Êܵ½Êý¾Ýй¶µÄÓ°Ïì¡£¾Ý±¨µÀ£¬´ó×ÚÒ½ÁƱ£½¡ÐÅÏ¢±»Ð¹Â¶£¬°üÀ¨»¼ÕßÐÕÃû¡¢µØµã¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢¼ÝʻִÕÕºÅÂëºÍÒ½ÁƼͼºÅÂë¡£ÆäËû¿ÉÄܱ»»á¼ûµÄÊý¾Ý°üÀ¨Õï¶Ï»òÖÎÁÆÐÅÏ¢¡¢´øÓÐÃÜÂë»òÇå¾²ÂëµÄÖ§¸¶¿¨ºÅ¡¢¿µ½¡°ü¹ÜÐÅÏ¢¡¢´ø»ò²»´øÃÜÂë»ò·ÓɺÅÂëµÄ½ðÈÚÕʺÅÒÔ¼°Êý×ÖÊðÃû¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMZJ
9. Chaos ÀÕË÷Èí¼þÍÅ»ïʹÓÃMinecraft Ìæ»»ÁÐ±í¹¥»÷ÈÕ±¾ÓÎÏ·Íæ¼Ò
¡¾¸ÅÊö¡¿
Minecraft ÊÇÌìÏÂÉÏ×îÊܽӴýµÄÓÎÏ·Ö®Ò»£¬µ½ 2021 Äê 8 Ô£¬ËüµÄÔ»îÔ¾Íæ¼ÒÁè¼Ý 1.4 ÒÚ¡£ÍøÂç·¸·¨·Ö×ÓÕýÊÔͼʹÓÃÕâÖÖÊ¢Ðжȣ¬Chaos Ransomware ÍÅ»ïͨ¹ýÐû´«µÄÐéα Minecraft Ìæ»»ÁбíÃé×¼ÈÕ±¾ÓÎÏ·Íæ¼ÒµÄ Windows ×°±¸ÔÚÓÎÏ·ÂÛ̳ÉÏ¡£Ñо¿Ö°Ô±×¢Öص½£¬¹¥»÷ÖÐʹÓõÄChaosÀÕË÷Èí¼þ±äÖÖ²»µ«»á¼ÓÃÜijЩÎļþ£¬»¹»áÆÆËðÆäËûÎļþ£¬Ê¹ËüÃÇÎÞ·¨»Ö¸´£¬ÈôÊÇÓÎÏ·Íæ¼Ò³ÉΪ¹¥»÷µÄÎþÉüÆ·£¬Ñ¡ÔñÖ§¸¶Êê½ðÈÔ¿ÉÄܵ¼ÖÂÊý¾Ýɥʧ¡£²¢ÌåÏÖChaos ÀÕË÷Èí¼þ±äÖÖÒþ²ØÔÚÒ»¸öÎļþÖУ¬Ã°³ä°üÀ¨“Minecraft Alt”ÕÊ»§ÁÐ±í¡£ÔÚÕâÖÖÇéÐÎÏ£¬¸ÃÎļþÊÇÒ»¸ö¿ÉÖ´ÐÐÎļþ£¬µ«ËüʹÓÃÒ»¸öÎı¾Í¼±êÀ´ÓÕÆÇ±ÔÚµÄÊܺ¦Õߣ¬Ê¹ÆäÎóÒÔΪËüÊÇÒ»¸ö³äÂú Minecraft ÒÑй¶Óû§ÃûºÍÃÜÂëµÄÎı¾Îļþ£¬·¿ª¿ÉÖ´ÐÐÎļþºó£¬¶ñÒâÈí¼þ½«±»Ö´Ðв¢ÔÚÊÜѬȾ»úеÉÏËÑË÷СÓÚ 2,117,152 ×Ö½ÚµÄÎļþÒÔ¶ÔÆä¾ÙÐмÓÃÜ¡£ÀÕË÷Èí¼þ½«ËĸöËæ»ú×Ö·û¸½¼Óµ½¼ÓÃÜÎļþµÄÎļþÃûÖУ¬ÕâЩ×Ö·ûÑ¡×Ô“abcdefghijklmnopqrstuvwxyz1234567890”¡£ ¾ßÓÐÖ¸¶¨ÎļþÀ©Õ¹ÃûµÄ´óÓÚ 2,117,152 ×Ö½ÚµÄÎļþ±»Ëæ»ú×Ö½ÚÌî³ä£¬ÕâʹµÃÔÚ²»Ö§¸¶Êê½ðµÄÇéÐÎÏÂÎÞ·¨»Ö¸´ËüÃÇ¡£ÓëÆäËûÀÕË÷Èí¼þÒ»Ñù£¬Chaos ÀÕË÷Èí¼þµÄÕâÖÖ±äÌåÒ²»á´ÓÊÜѬȾµÄ»úеÖÐɾ³ý¾íÓ°¸±±¾¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMZ3
10. ¹¥»÷ÕßʹÓöñÒâÈí¼þPixStealer¹¥»÷°ÍÎ÷µÄpixÖ§¸¶ÏµÍ³ºÍ°ÍÎ÷ÒøÐÐ
¡¾¸ÅÊö¡¿
9ÔÂÄ©£¬Ñо¿Ö°Ô±ÔڹȸèÓ¦ÓÃÊÐËÁ·¢Ã÷ÁËһϵÁÐÕë¶ÔPixÖ§¸¶ÏµÍ³ºÍ°ÍÎ÷ÒøÐеĶñÒâÈí¼þ£¬ÆäÖÐÒ»¸ö°æ±¾¿ÉÒÔÖ±½ÓÇÔȡĿµÄÇ®°ü£¬Ñо¿Ö°Ô±½«ÆäÃüÃûΪPixStealer¡£PixStealer¶ñÒâÈí¼þµÄÄÚ²¿Ãû³ÆÊÇPag Cashback 1.4¡£¸ÃÈí¼þÔڹȸèÓ¦ÓÃÊÐËÁÉÏαװ³ÉPagBank Cashback¾ÙÐÐÈö²¥¡£°üÃûΪcom.pagcashback.beta£¬ÌåÏÖÓ¦ÓóÌÐò¿ÉÄÜÈÔ´¦ÓÚ²âÊԽ׶Ρ£PixStealerºÜÊÇС£¬Ö»¾ßÓÐ×îµÍȨÏÞ£¬Ã»ÓÐÓëC“Ïֽ𷵻¹”¹¦Ð§£¬¸Ã·þÎñÃûΪcom.gservice.autobot.Acessibilidade£¬ÔÚÊÚȨ¿É»á¼ûÐÔ·þÎñºó£¬¶ñÒâÈí¼þÏÔʾÐÅÏ¢µÄͬʱŲÓò¢·¿ªPagBank¾ÙÐÐͬ²½¡£Êܺ¦Õß·¿ªÒøÐÐÕÊ»§²¢ÊäÈëÆ¾Ö¤ºó£¬¶ñÒâÈí¼þ»áͨ¹ý»á¼ûȨÏÞµ¥»÷“ÏÔʾ”°´Å¥À´ÅÌÎÊÊܺ¦ÕßµÄÄ¿½ñÓà¶îºó¾ÙÐÐ×ʽð×ªÒÆ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMZ4

AG¹«Ë¾ÔÆ







