·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷

Ðû²¼Ê±¼ä 2021-12-27

·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷


·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷.png


¾ÝýÌå12ÔÂ24ÈÕ±¨µÀ£¬·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½ÀÕË÷¹¥»÷ ¡£×÷ΪÖڶ๫˾µÄ·þÎñÉÌ£¬Inetum GroupÊÕÈë½Ó½ü20ÒÚÃÀÔª£¬ÊÇÀÕË÷ÍÅ»ïµÄÊ×Ñ¡Ä¿±ê ¡£¸Ã¹«Ë¾ÌåÏÖ£¬¹¥»÷·¢ÉúÔÚ12ÔÂ19ÈÕ£¬Ó°ÏìÁËÆäÔÚ·¨¹úµÄ²¿ÃÅÒµÎñ£¬²¢Ã»ÓÐÂûÑÓµ½¿Í»§µÄ»ù´¡ÉèÊ© ¡£Inetum²¢Î´Í¸Â¶¹¥»÷ÕßÐÅÏ¢£¬µ«·¨¹úýÌåLeMagIt³ÆÓëBlackCatÓйØ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/global-it-services-provider-inetum-hit-by-ransomware-attack/


BlackmagicÐÞ¸´Æä²úÎïDaVinci ResolveÖеÄ2¸ö©¶´


BlackmagicÐÞ¸´Æä²úÎïDaVinci ResolveÖеÄ2¸ö©¶´.png


12ÔÂ21ÈÕ£¬Blackmagic SoftwareÐÞ¸´ÆäDaVinci Resolveƽ̨ÖеÄ2¸ö©¶´ ¡£¸Ãƽ̨һ¸ö½«ÊÓƵ±à¼­ºÍÉ«²ÊУÕý¡¢ÊÓ¾õЧ¹û¡¢¶¯Ì¬Í¼ÐκÍÒôƵºóÆÚÖÆ×÷¹¤¾ß½áºÏÔÚÒ»ÆðµÄ½â¾ö·½°¸ ¡£ÕâÁ½¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´ÓÉCisco Talos·¢ÏÖ£¬±àºÅΪCVE-2021-40417ºÍCVE-2021-40418£¬CVSSv3ÆÀ·ÖΪ9.8 ¡£ÆäÖУ¬CVE-2021-40417ÊÇÒ»¸ö»ùÓڶѵĻº³åÇøÒç³ö©¶´£¬ÊÇÓ¦ÓÃÔÚ½âÂëÊÓƵÎļþʱ·¢ÉúÕûÊýÒç³öµ¼ÖµÄ £»CVE-2021-40418ÊÇÓÉ´íÎóµÄUUIDµ¼Ö¹¤¾ß³ÉԱδ³õʼ»¯´¥·¢µÄ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/blackmagic-fixes-critical-davinci-resolve-code-execution-flaws/


AppleÐÞ¸´macOSÖпÉÈƹýGatekeeperÄþ¾²¹¦Ð§µÄ©¶´


AppleÐÞ¸´macOSÖпÉÈƹýGatekeeperÄþ¾²¹¦Ð§µÄ©¶´.png


¾ÝýÌå12ÔÂ26ÈÕ±¨µÀ£¬AppleÔÚ½üÆÚÐÞ¸´ÁËmacOSÖпÉÓÃÀ´ÈƹýGatekeeperÄþ¾²¹¦Ð§²¢Ö´ÐÐÈÎÒâ´úÂë ¡£¸Ã©¶´±àºÅΪCVE-2021-30853£¬ÓÉBoxµÄGordon Long·¢ÏÖ ¡£Patrick WardleÔÚ12ÔÂ23ÈÕÐû²¼Á˸鶴µÄ·ÖÎö£¬³Æ¹¥»÷Õß¿ÉÒÔͨ¹ýÓÕʹĿ±ê´ò¿ªÎ±×°³ÉPDFÎļþµÄ¶ñÒâÓ¦ÓÃÀ´´¥·¢¸Ã©¶´£¬»ù´¡Ô­ÒòÊÇδǩÃû¡¢Î´¹«Ö¤µÄ»ùÓڽű¾µÄÓ¦Ó÷¨Ê½ÎÞ·¨Ö¸¶¨½âÊÍ·¨Ê½ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/126004/security/macos-gatekeeper-bypass-2.html


еÄBLISTERÀûÓÃSectigo·¢±íµÄÇ©ÃûÖ¤ÊéÈƹý¼ì²â


еÄBLISTERÀûÓÃSectigo·¢±íµÄÇ©ÃûÖ¤ÊéÈƹý¼ì²â.png


12ÔÂ23ÈÕ£¬ElasticÑо¿ÈËÔ±¹ûÈ»ÁËжñÒâÈí¼þBLISTERÕë¶ÔWindowsϵͳµÄ¹¥»÷»î¶¯ ¡£Elastic³Æ¸Ã»î¶¯×Ô9ÔÂ15ÈÕÆðÒѾ­ÔËÐÐÁËÖÁÉÙÈý¸öÔ ¡£¹¥»÷ÕßʹÓÃÁË8ÔÂ23ÈÕÆðÉúЧµÄÇ©ÃûÖ¤Ê飬¸ÃÖ¤ÊéÓÉSectigo¹«Ë¾·¢±í¸øBlist LLC£¬ÆäÓʼþµØÖ·ÊôÓÚ¶íÂÞ˹¹«Ë¾Mail.Ru ¡£´ËÍ⣬¹¥»÷Õß»¹Ê¹ÓÃÁ˶àÖÖÈƹý¼ì²âµÄ¼¼Êõ£¬°üÂÞ½«BlisterǶÈëµ½ºÏ·¨¿âÖУ¨Èçcolorui.dll£©£¬ÕâʹµÃBLISTERÑù±¾ÔÚVirusTotalÖеļì²âÂʷdz£µÍ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125958/malware/blister-loader.html



SentinelLabs³ÆеÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª


SentinelLabs³ÆеÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª.png


12ÔÂ23ÈÕ£¬SentinelLabs¹ûÈ»Á˹ØÓÚÐÂÀÕË÷Èí¼þRookµÄÑо¿½á¹û ¡£11ÔÂ30ÈÕ£¬¸ÃÍÅ»ïÔÚÆäÊý¾Ýй¶ÍøÕ¾Ðû²¼Á˵ÚÒ»¸öÄ¿±ê¹«Ë¾µÄÐÅÏ¢£¬ÊÇÒ»¼Ò¹þÈø¿Ë˹̹½ðÈÚ»ú¹¹ ¡£RookµÄ³õʼѬȾý½éΪµöÓãÓʼþºÍ¶ñÒâµÄÏÂÔØÖÖ×Ó£¬²¢Í¨¹ýCobalt Strike·Ö·¢ ¡£Ñо¿ÈËÔ±·ÖÎö·¢ÏÖ£¬¸Ã¶ñÒâÈí¼þµÄ´úÂëÓëBabukÓÐÃ÷ÏÔÖصþ£¬ºóÕßÒÑÍ£Ö¹ÔËÓª£¬ÇÒÔ´´úÂëÓÚ½ñÄê9ÔÂÔÚºÚ¿ÍÂÛ̳ÉϹûÈ» ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125988/malware/rook-ransomware-based-on-babuk.html


°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶£¬Õ¼×ÜÈË¿Ú22%


°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶£¬Õ¼×ÜÈË¿Ú22%.png


12ÔÂ23ÈÕ£¬°¢¶û°ÍÄáÑÇÕþ¸®È·Èϲ¢ÖÂǸ½üÆÚ·¢ÉúµÄÐÅϢй¶Ê¼þ ¡£Ð¹Â¶Îļþ±»ÒÔExcelÎĵµµÄÐÎʽÉÏ´«µ½ÁËWhatsAppÉÏ£¬°üÂÞ¹«ÃñµÄÐÕÃû¡¢Éí·ÝÖ¤ºÅÂ롢нˮ¡¢ÊÂÇéְλºÍ¹ÍÖ÷ÐÕÃûµÈÏêϸÐÅÏ¢£¬Éæ¼°637138ÈË£¬Õ¼¸Ã¹ú×ÜÈË¿Ú22%ÒÔÉÏ ¡£µ±µØýÌåÓÚ12ÔÂ22ÈÕ±¨µÀ£¬¸ÃÎļþ°üÂÞÏòÕþ¸®Ìá½»µÄ2021Äê1ÔÂË°ÎñºÍÈËΪÐÅÏ¢£¬»³ÒÉÊÇ´ÓË°Îñ²¿ÃÅ»òÉç»á±£ÏÕ»ú¹¹Ð¹Â¶µÄ ¡£¸Ã¹úÕþ¸®³Æ£¬³õ·¨Ê½²éÏÔʾй¶ÊÇÄÚ²¿Ô­Òòµ¼ÖµÄ£¬¶ø·ÇÍⲿ¹¥»÷ ¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/personal-and-salary-data-for-637138-albanian-citizens-leaks-online/