΢ÈíÐû²¼µÄ3Ô·ݲ¹¶¡¿Éµ¼ÖÂWin10ÔÚ´òӡʱÀ¶ÆÁ£»Å²ÍþÒé»áµÄExchangeÔâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶

Ðû²¼Ê±¼ä 2021-03-12

1.΢ÈíÐû²¼µÄ3Ô·ݲ¹¶¡¿Éµ¼ÖÂWin10ÔÚ´òӡʱÀ¶ÆÁ


1.jpg


΢ÈíÐû²¼ÁËKB5000802ºÍKB5000808ÀÛ»ý¸üУ¬µ¼ÖÂWin10ϵͳÔÚ´òӡʱÀ¶ÆÁ¡£ÔÚ°²×°3Ô·ÝÄþ¾²¸üк󣬶à¸öÓû§·´Ó³ËûÃÇÔÚʹÓÃÍøÂç´òÓ¡»úʱ»á·ºÆðÀ¶ÆÁËÀ»úÏÖÏ󣬲¢ÏÔʾ¡° APC_INDEX_MISMATCH for win32kfull.sys¡±´íÎó´úÂ롣ĿǰÒÑÖªÊÜÓ°ÏìµÄ´òÓ¡»úÆ·ÅÆ°üÂÞKyocera¡¢RicohºÍDymo£¬Éý¼¶´òÓ¡»úÇý¶¯·¨Ê½²¢²»Äܽâ¾ö´ËÎÊÌ⣬ÊÜÓ°ÏìÓû§Ö»ÄÜÐ¶ÔØKB5000802ºÍKB5000808¸üС£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/windows-10-crashes-when-printing-due-to-microsoft-march-updates/


2.ŲÍþÒé»áµÄExchangeÔâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶


2.jpg


ŲÍþÒé»á£¨Storting£©µÄExchange·þÎñÆ÷Ôâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶¡£StortingÔÚÈ¥Äê12ÔÂÔâÊÜÍøÂç¹¥»÷ºó²»¾Ã£¬ÓÖÓÚ3ÔÂ10ÈÕÐû²¼ÆäÔâµ½ÁËÓëMicrosoft Exchange©¶´Ïà¹ØµÄ¹¥»÷¡£¸Ã»ú¹¹³ÆÉÐδÍêÈ«Á˽⹥»÷µÄ·¶Î§£¬µ«ÒÑÈ·ÈϺڿÍÒÑÇÔÈ¡²¿ÃÅÊý¾Ý¡£ÆäÒѾ­ÎªÏµÍ³½ÓÄÉÁ˶àÖÖ´ëÊ©£¬Ä¿Ç°·ÖÎöÊÂÇéÈÔÔÚ½øÐÐÖС£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/norway-parliament-data-stolen-in-microsoft-exchange-attack/


3.ÒûÁϹ«Ë¾Molson CoorsÔâµ½¹¥»÷£¬ÏµÍ³ÔÝʱÖжÏ


3.jpg


ÃÀ¹úÒûÁϹ«Ë¾Molson CoorsÓÚ3ÔÂ11ÈÕÔâµ½¹¥»÷£¬ÏµÍ³ÔÝʱÖжÏ¡£Molson CoorsÒÔÆä±êÖ¾ÐÔÆ¡¾ÆÆ·ÅƶøÎÅÃû£¬°üÂÞCoors Light¡¢Miller LiteºÍMolson CanadianµÈ¡£´Ë´Î¹¥»÷µ¼Ö¸ù«Ë¾µÄϵͳÖжÏ£¬Ê¹µÃ¹«Ë¾µÄ²¿ÃÅÒµÎñÑÓ³Ù»òÖжÏ£¬°üÂÞÆäÆ¡¾Æ³§µÄÔËÓª¡¢Éú²úºÍÔËÊä¡£¶à¸öÏûÏ¢À´Ô´³Æ´Ë´Î¹¥»÷·¢ÉúÔÚÖܶþÇ峿£¬ÎªÀÕË÷Èí¼þËùµ¼Ö£¬¸Ã¹«Ë¾Îª·ÀÖ¹¶ñÒâÈí¼þ½øÒ»²½Á÷´«¶ø¹Ø±ÕÁËϵͳ¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/cyberattack-forces-brewery-shutdown-molson-coors


4.ºÚ¿Í³ÆÒÑÈëÇÖVerkada²¢ÇÔÈ¡15Íò¸öÉãÏñÍ·µÄÊý¾Ý


4.jpg


ºÚ¿Í³ÆÒÑÈëÇÖVerkada²¢ÇÔÈ¡ÁË15Íò¸öÉãÏñÍ·µÄʵʱ¼Ïñ¡£VerkadaÊÇÒ»¼ÒλÓÚ¹è¹ÈµÄÄþ¾²³õ´´¹«Ë¾£¬Îª¾¯²ì¾Ö¡¢¹«Ë¾¡¢Ñ§Ð£ºÍ¼àÓüµÈ×éÖ¯Ìṩ»ùÓÚÔÆµÄÄþ¾²ÉãÏñÍ··þÎñ¡£´ËÍ⣬ºÚ¿Í»¹ÇÔÈ¡ÁËÌØË¹À­µÄ¹¤³§ºÍ¶ÑÕ»¡¢EquinoxÌåÓý¹ÝÒÔ¼°Cloudflare°ì¹«Êҵȹ«Ë¾µÄ¼Ïñ¡£Ñо¿ÈËÔ±³ÆºÚ¿Í¶ÔVerkadaµÄÓ²¼þ½øÐÐÁËÄæÏò¹¤³Ì£¬²¢·¢ÏÖÁ˳¬¼¶¹ÜÀíÔ±ÕÊ»§µÄÓ²±àÂëÆ¾¾Ý¡£VerkadaÏÖÒÑÈϿɴ˴ι¥»÷£¬²¢ÌåÏÖÒѽûÓÃËùÓÐÄÚ²¿¹ÜÀíÔ±ÕÊ»§¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115466/hacking/surveillance-cameras-hacked.html


5.Urban ResearchÔâµ½¹¥»÷£¬Ð¹Â¶31ÍòÓû§µÄÐÅÏ¢


5.jpg


ÈÕ±¾·þ×°¹«Ë¾URBAN RESEARCHµÄ¹ÙÍøÔâµ½¹¥»÷£¬Ð¹Â¶ÁË317326ÍòÓû§µÄÐÅÏ¢¡£¹¥»÷·¢ÉúÔÚ3ÔÂ7ÈÕÍíÖÁ3ÔÂ8ÈÕÏÂÎ磬ºÚ¿Í·ÃÎÊÁ˸ù«Ë¾µÄ¹Ù·½ÔÚÏßÉ̳Ç¡£¸Ã¹«Ë¾ÔÚ·¢ÏÖºóÁ¢¼´½ÓÄÉÁËÏìÓ¦´ëÊ©£¬µ«ÊǺڿͿÉÄÜÒѾ­ÇÔÈ¡ÁËÓû§ÐÅÏ¢£¬°üÂÞµØÖ·¡¢ÐÕÃû¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØÖ·¡¢³öÉúÈÕÆÚ¡¢ÐԱ𡢻áÔ±IDºÍ»áÔ±½×¶ÎµÈ£¬²»°üÂÞÈκβÆÕþÐÅÏ¢¡£


Ô­ÎÄÁ´½Ó£º

https://news.yahoo.co.jp/articles/f5a72addb68c5a8113dbbd0eb8ee2f2025785203


6.FIN8ÍÅ»ïЯBADHATCH»Ø¹é£¬ÀûÓÃTLS¼ÓÃÜÈÆ¹ý¼ì²â


6.jpg


FIN8ÍÅ»ïЯÉý¼¶µÄBADHATCH¶ñÒâÈí¼þ»Ø¹é£¬ÀûÓÃTLS¼ÓÃÜÈÆ¹ý¼ì²â¡£FIN8ÓÚ2016ÄêÊ×´ÎÓÉFireEye·¢ÏÖ£¬ÒÔÀûÓÃÍøÂçµöÓãºÍ¶ñÒ⹤¾ß¹¥»÷POSϵͳ¶øÎÅÃû£¬Ö÷ÒªÕë¶ÔÁãÊÛ¡¢¾ÆµêºÍÓéÀÖÒµ¡£¸Ã×éÖ¯ÔÚʱ¸ôÒ»Äê°ëµÄÐÝÏ¢ºóÔٴλîÔ¾£¬²¢Ê¹ÓÃÁ˸üÇ¿´óµÄºóÃÅ£¬Éý¼¶ºóµÄ¹¦Ð§°üÂÞÆÁÄ»²¶×½¡¢ÊðÀíËíµÀ´«Ê䡢ƾ֤͵ÇÔºÍÎÞÎļþÖ´ÐУ¬²¢ÊÔͼÀûÓÃTLS¼ÓÃÜÒþ²ØPowershellÃüÁîÀ´ÈƹýÄþ¾²¼ì²â¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/03/fin8-hackers-return-with-more-powerful.html