·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷
Ðû²¼Ê±¼ä 2021-12-27·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷
¾ÝýÌå12ÔÂ24ÈÕ±¨µÀ£¬·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½ÀÕË÷¹¥»÷¡£×÷ΪÖڶ๫˾µÄ·þÎñÉÌ£¬Inetum GroupÊÕÈë½Ó½ü20ÒÚÃÀÔª£¬ÊÇÀÕË÷ÍÅ»ïµÄÊ×Ñ¡Ä¿±ê¡£¸Ã¹«Ë¾ÌåÏÖ£¬¹¥»÷·¢ÉúÔÚ12ÔÂ19ÈÕ£¬Ó°ÏìÁËÆäÔÚ·¨¹úµÄ²¿ÃÅÒµÎñ£¬²¢Ã»ÓÐÂûÑÓµ½¿Í»§µÄ»ù´¡ÉèÊ©¡£Inetum²¢Î´Í¸Â¶¹¥»÷ÕßÐÅÏ¢£¬µ«·¨¹úýÌåLeMagIt³ÆÓëBlackCatÓйء£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/global-it-services-provider-inetum-hit-by-ransomware-attack/
BlackmagicÐÞ¸´Æä²úÎïDaVinci ResolveÖеÄ2¸ö©¶´
12ÔÂ21ÈÕ£¬Blackmagic SoftwareÐÞ¸´ÆäDaVinci Resolveƽ̨ÖеÄ2¸ö©¶´¡£¸Ãƽ̨һ¸ö½«ÊÓƵ±à¼ºÍÉ«²ÊУÕý¡¢ÊÓ¾õЧ¹û¡¢¶¯Ì¬Í¼ÐκÍÒôƵºóÆÚÖÆ×÷¹¤¾ß½áºÏÔÚÒ»ÆðµÄ½â¾ö·½°¸¡£ÕâÁ½¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´ÓÉCisco Talos·¢ÏÖ£¬±àºÅΪCVE-2021-40417ºÍCVE-2021-40418£¬CVSSv3ÆÀ·ÖΪ9.8¡£ÆäÖУ¬CVE-2021-40417ÊÇÒ»¸ö»ùÓڶѵĻº³åÇøÒç³ö©¶´£¬ÊÇÓ¦ÓÃÔÚ½âÂëÊÓƵÎļþʱ·¢ÉúÕûÊýÒç³öµ¼Öµģ»CVE-2021-40418ÊÇÓÉ´íÎóµÄUUIDµ¼Ö¹¤¾ß³ÉԱδ³õʼ»¯´¥·¢µÄ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/blackmagic-fixes-critical-davinci-resolve-code-execution-flaws/
AppleÐÞ¸´macOSÖпÉÈƹýGatekeeperÄþ¾²¹¦Ð§µÄ©¶´
¾ÝýÌå12ÔÂ26ÈÕ±¨µÀ£¬AppleÔÚ½üÆÚÐÞ¸´ÁËmacOSÖпÉÓÃÀ´ÈƹýGatekeeperÄþ¾²¹¦Ð§²¢Ö´ÐÐÈÎÒâ´úÂë¡£¸Ã©¶´±àºÅΪCVE-2021-30853£¬ÓÉBoxµÄGordon Long·¢ÏÖ¡£Patrick WardleÔÚ12ÔÂ23ÈÕÐû²¼Á˸鶴µÄ·ÖÎö£¬³Æ¹¥»÷Õß¿ÉÒÔͨ¹ýÓÕʹĿ±ê´ò¿ªÎ±×°³ÉPDFÎļþµÄ¶ñÒâÓ¦ÓÃÀ´´¥·¢¸Ã©¶´£¬»ù´¡ÔÒòÊÇδǩÃû¡¢Î´¹«Ö¤µÄ»ùÓڽű¾µÄÓ¦Ó÷¨Ê½ÎÞ·¨Ö¸¶¨½âÊÍ·¨Ê½¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/126004/security/macos-gatekeeper-bypass-2.html
еÄBLISTERÀûÓÃSectigo·¢±íµÄÇ©ÃûÖ¤ÊéÈƹý¼ì²â
12ÔÂ23ÈÕ£¬ElasticÑо¿ÈËÔ±¹ûÈ»ÁËжñÒâÈí¼þBLISTERÕë¶ÔWindowsϵͳµÄ¹¥»÷»î¶¯¡£Elastic³Æ¸Ã»î¶¯×Ô9ÔÂ15ÈÕÆðÒѾÔËÐÐÁËÖÁÉÙÈý¸öÔ¡£¹¥»÷ÕßʹÓÃÁË8ÔÂ23ÈÕÆðÉúЧµÄÇ©ÃûÖ¤Ê飬¸ÃÖ¤ÊéÓÉSectigo¹«Ë¾·¢±í¸øBlist LLC£¬ÆäÓʼþµØÖ·ÊôÓÚ¶íÂÞ˹¹«Ë¾Mail.Ru¡£´ËÍ⣬¹¥»÷Õß»¹Ê¹ÓÃÁ˶àÖÖÈƹý¼ì²âµÄ¼¼Êõ£¬°üÂÞ½«BlisterǶÈëµ½ºÏ·¨¿âÖУ¨Èçcolorui.dll£©£¬ÕâʹµÃBLISTERÑù±¾ÔÚVirusTotalÖеļì²âÂʷdz£µÍ¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/125958/malware/blister-loader.html
SentinelLabs³ÆеÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª
12ÔÂ23ÈÕ£¬SentinelLabs¹ûÈ»Á˹ØÓÚÐÂÀÕË÷Èí¼þRookµÄÑо¿½á¹û¡£11ÔÂ30ÈÕ£¬¸ÃÍÅ»ïÔÚÆäÊý¾Ýй¶ÍøÕ¾Ðû²¼Á˵ÚÒ»¸öÄ¿±ê¹«Ë¾µÄÐÅÏ¢£¬ÊÇÒ»¼Ò¹þÈø¿Ë˹̹½ðÈÚ»ú¹¹¡£RookµÄ³õʼѬȾý½éΪµöÓãÓʼþºÍ¶ñÒâµÄÏÂÔØÖÖ×Ó£¬²¢Í¨¹ýCobalt Strike·Ö·¢¡£Ñо¿ÈËÔ±·ÖÎö·¢ÏÖ£¬¸Ã¶ñÒâÈí¼þµÄ´úÂëÓëBabukÓÐÃ÷ÏÔÖصþ£¬ºóÕßÒÑÍ£Ö¹ÔËÓª£¬ÇÒÔ´´úÂëÓÚ½ñÄê9ÔÂÔÚºÚ¿ÍÂÛ̳ÉϹûÈ»¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/125988/malware/rook-ransomware-based-on-babuk.html
°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶£¬Õ¼×ÜÈË¿Ú22%
12ÔÂ23ÈÕ£¬°¢¶û°ÍÄáÑÇÕþ¸®È·Èϲ¢ÖÂǸ½üÆÚ·¢ÉúµÄÐÅϢй¶Ê¼þ¡£Ð¹Â¶Îļþ±»ÒÔExcelÎĵµµÄÐÎʽÉÏ´«µ½ÁËWhatsAppÉÏ£¬°üÂÞ¹«ÃñµÄÐÕÃû¡¢Éí·ÝÖ¤ºÅÂ롢нˮ¡¢ÊÂÇéְλºÍ¹ÍÖ÷ÐÕÃûµÈÏêϸÐÅÏ¢£¬Éæ¼°637138ÈË£¬Õ¼¸Ã¹ú×ÜÈË¿Ú22%ÒÔÉÏ¡£µ±µØýÌåÓÚ12ÔÂ22ÈÕ±¨µÀ£¬¸ÃÎļþ°üÂÞÏòÕþ¸®Ìá½»µÄ2021Äê1ÔÂË°ÎñºÍÈËΪÐÅÏ¢£¬»³ÒÉÊÇ´ÓË°Îñ²¿ÃÅ»òÉç»á±£ÏÕ»ú¹¹Ð¹Â¶µÄ¡£¸Ã¹úÕþ¸®³Æ£¬³õ·¨Ê½²éÏÔʾй¶ÊÇÄÚ²¿ÔÒòµ¼Öµģ¬¶ø·ÇÍⲿ¹¥»÷¡£
ÔÎÄÁ´½Ó£º
https://therecord.media/personal-and-salary-data-for-637138-albanian-citizens-leaks-online/