΢ÈíÐû²¼µÄ3Ô·ݲ¹¶¡¿Éµ¼ÖÂWin10ÔÚ´òӡʱÀ¶ÆÁ£»Å²ÍþÒé»áµÄExchangeÔâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶
Ðû²¼Ê±¼ä 2021-03-121.΢ÈíÐû²¼µÄ3Ô·ݲ¹¶¡¿Éµ¼ÖÂWin10ÔÚ´òӡʱÀ¶ÆÁ
΢ÈíÐû²¼ÁËKB5000802ºÍKB5000808ÀÛ»ý¸üУ¬µ¼ÖÂWin10ϵͳÔÚ´òӡʱÀ¶ÆÁ¡£ÔÚ°²×°3Ô·ÝÄþ¾²¸üк󣬶à¸öÓû§·´Ó³ËûÃÇÔÚʹÓÃÍøÂç´òÓ¡»úʱ»á·ºÆðÀ¶ÆÁËÀ»úÏÖÏ󣬲¢ÏÔʾ¡° APC_INDEX_MISMATCH for win32kfull.sys¡±´íÎó´úÂ롣ĿǰÒÑÖªÊÜÓ°ÏìµÄ´òÓ¡»úÆ·ÅÆ°üÂÞKyocera¡¢RicohºÍDymo£¬Éý¼¶´òÓ¡»úÇý¶¯·¨Ê½²¢²»Äܽâ¾ö´ËÎÊÌ⣬ÊÜÓ°ÏìÓû§Ö»ÄÜÐ¶ÔØKB5000802ºÍKB5000808¸üС£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/microsoft/windows-10-crashes-when-printing-due-to-microsoft-march-updates/
2.ŲÍþÒé»áµÄExchangeÔâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶
ŲÍþÒé»á£¨Storting£©µÄExchange·þÎñÆ÷Ôâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶¡£StortingÔÚÈ¥Äê12ÔÂÔâÊÜÍøÂç¹¥»÷ºó²»¾Ã£¬ÓÖÓÚ3ÔÂ10ÈÕÐû²¼ÆäÔâµ½ÁËÓëMicrosoft Exchange©¶´Ïà¹ØµÄ¹¥»÷¡£¸Ã»ú¹¹³ÆÉÐδÍêÈ«Á˽⹥»÷µÄ·¶Î§£¬µ«ÒÑÈ·ÈϺڿÍÒÑÇÔÈ¡²¿ÃÅÊý¾Ý¡£ÆäÒѾΪϵͳ½ÓÄÉÁ˶àÖÖ´ëÊ©£¬Ä¿Ç°·ÖÎöÊÂÇéÈÔÔÚ½øÐÐÖС£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/norway-parliament-data-stolen-in-microsoft-exchange-attack/
3.ÒûÁϹ«Ë¾Molson CoorsÔâµ½¹¥»÷£¬ÏµÍ³ÔÝʱÖжÏ
ÃÀ¹úÒûÁϹ«Ë¾Molson CoorsÓÚ3ÔÂ11ÈÕÔâµ½¹¥»÷£¬ÏµÍ³ÔÝʱÖжϡ£Molson CoorsÒÔÆä±êÖ¾ÐÔÆ¡¾ÆÆ·ÅƶøÎÅÃû£¬°üÂÞCoors Light¡¢Miller LiteºÍMolson CanadianµÈ¡£´Ë´Î¹¥»÷µ¼Ö¸ù«Ë¾µÄϵͳÖжϣ¬Ê¹µÃ¹«Ë¾µÄ²¿ÃÅÒµÎñÑÓ³Ù»òÖжϣ¬°üÂÞÆäÆ¡¾Æ³§µÄÔËÓª¡¢Éú²úºÍÔËÊä¡£¶à¸öÏûÏ¢À´Ô´³Æ´Ë´Î¹¥»÷·¢ÉúÔÚÖܶþÇ峿£¬ÎªÀÕË÷Èí¼þËùµ¼Ö£¬¸Ã¹«Ë¾Îª·ÀÖ¹¶ñÒâÈí¼þ½øÒ»²½Á÷´«¶ø¹Ø±ÕÁËϵͳ¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/cyberattack-forces-brewery-shutdown-molson-coors
4.ºÚ¿Í³ÆÒÑÈëÇÖVerkada²¢ÇÔÈ¡15Íò¸öÉãÏñÍ·µÄÊý¾Ý
ºÚ¿Í³ÆÒÑÈëÇÖVerkada²¢ÇÔÈ¡ÁË15Íò¸öÉãÏñÍ·µÄʵʱ¼Ïñ¡£VerkadaÊÇÒ»¼ÒλÓÚ¹è¹ÈµÄÄþ¾²³õ´´¹«Ë¾£¬Îª¾¯²ì¾Ö¡¢¹«Ë¾¡¢Ñ§Ð£ºÍ¼àÓüµÈ×éÖ¯Ìṩ»ùÓÚÔÆµÄÄþ¾²ÉãÏñÍ··þÎñ¡£´ËÍ⣬ºÚ¿Í»¹ÇÔÈ¡ÁËÌØË¹ÀµÄ¹¤³§ºÍ¶ÑÕ»¡¢EquinoxÌåÓý¹ÝÒÔ¼°Cloudflare°ì¹«Êҵȹ«Ë¾µÄ¼Ïñ¡£Ñо¿ÈËÔ±³ÆºÚ¿Í¶ÔVerkadaµÄÓ²¼þ½øÐÐÁËÄæÏò¹¤³Ì£¬²¢·¢ÏÖÁ˳¬¼¶¹ÜÀíÔ±ÕÊ»§µÄÓ²±àÂëÆ¾¾Ý¡£VerkadaÏÖÒÑÈϿɴ˴ι¥»÷£¬²¢ÌåÏÖÒѽûÓÃËùÓÐÄÚ²¿¹ÜÀíÔ±ÕÊ»§¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/115466/hacking/surveillance-cameras-hacked.html
5.Urban ResearchÔâµ½¹¥»÷£¬Ð¹Â¶31ÍòÓû§µÄÐÅÏ¢
ÈÕ±¾·þ×°¹«Ë¾URBAN RESEARCHµÄ¹ÙÍøÔâµ½¹¥»÷£¬Ð¹Â¶ÁË317326ÍòÓû§µÄÐÅÏ¢¡£¹¥»÷·¢ÉúÔÚ3ÔÂ7ÈÕÍíÖÁ3ÔÂ8ÈÕÏÂÎ磬ºÚ¿Í·ÃÎÊÁ˸ù«Ë¾µÄ¹Ù·½ÔÚÏßÉ̳ǡ£¸Ã¹«Ë¾ÔÚ·¢ÏÖºóÁ¢¼´½ÓÄÉÁËÏìÓ¦´ëÊ©£¬µ«ÊǺڿͿÉÄÜÒѾÇÔÈ¡ÁËÓû§ÐÅÏ¢£¬°üÂÞµØÖ·¡¢ÐÕÃû¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØÖ·¡¢³öÉúÈÕÆÚ¡¢ÐԱ𡢻áÔ±IDºÍ»áÔ±½×¶ÎµÈ£¬²»°üÂÞÈκβÆÕþÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://news.yahoo.co.jp/articles/f5a72addb68c5a8113dbbd0eb8ee2f2025785203
6.FIN8ÍÅ»ïЯBADHATCH»Ø¹é£¬ÀûÓÃTLS¼ÓÃÜÈÆ¹ý¼ì²â
FIN8ÍÅ»ïЯÉý¼¶µÄBADHATCH¶ñÒâÈí¼þ»Ø¹é£¬ÀûÓÃTLS¼ÓÃÜÈÆ¹ý¼ì²â¡£FIN8ÓÚ2016ÄêÊ×´ÎÓÉFireEye·¢ÏÖ£¬ÒÔÀûÓÃÍøÂçµöÓãºÍ¶ñÒ⹤¾ß¹¥»÷POSϵͳ¶øÎÅÃû£¬Ö÷ÒªÕë¶ÔÁãÊÛ¡¢¾ÆµêºÍÓéÀÖÒµ¡£¸Ã×éÖ¯ÔÚʱ¸ôÒ»Äê°ëµÄÐÝÏ¢ºóÔٴλîÔ¾£¬²¢Ê¹ÓÃÁ˸üÇ¿´óµÄºóÃÅ£¬Éý¼¶ºóµÄ¹¦Ð§°üÂÞÆÁÄ»²¶×½¡¢ÊðÀíËíµÀ´«Ê䡢ƾ֤͵ÇÔºÍÎÞÎļþÖ´ÐУ¬²¢ÊÔͼÀûÓÃTLS¼ÓÃÜÒþ²ØPowershellÃüÁîÀ´ÈƹýÄþ¾²¼ì²â¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/03/fin8-hackers-return-with-more-powerful.html