¼ÓÄôó5¼Ò´óÐÍÒøÐÐÒòδ֪ԭÒò·þÎñÖжÏÊýСʱ

Ðû²¼Ê±¼ä 2022-02-21

¼ÓÄôó5¼Ò´óÐÍÒøÐÐÒòδ֪ԭÒò·þÎñÖжÏÊýСʱ


¾ÝýÌå2ÔÂ17ÈÕ±¨µÀ£¬¼ÓÄôó5¼Ò´óÐÍÒøÐзþÎñÖжÏÊýСʱ¡£ÖжϷ¢ÉúÔÚ±¾ÖÜÈýÏÂÎç5µãµ½6µãÖ®¼ä£¬°üÂÞ¼ÓÄôó»Ê¼ÒÒøÐУ¨RBC£©¡¢ÃÉÌØÀû¶ûÒøÐУ¨BMO£©¡¢·áÒµÒøÐС¢µÀÃ÷ÒøÐУ¨TD£©ºÍ¼ÓÄôóµÛ¹úÉÌÒµÒøÐУ¨CIBC£©¡£RBC³ÆÓöµ½Á˼¼ÊõÎÊÌ⣬BMOÈ«Çò»ã¿î·þÎñÈ«Ìì¹Ø±Õ£¬CIBCÉÐδÈÏ¿ÉËûÃǵÄÍøÉÏÒøÐдæÔÚÎÊÌ⣬TD BankµÄÒÆ¶¯ÒøÐÐÎÞ·¨·ÃÎʵ«Ðû²¼ÉùÃ÷³ÆÃ»ÓÐÓöµ½ÈκÎÖжÏÎÊÌ⡣Ŀǰ£¬´Ë´ÎÖжÏʼþµÄÔ­ÒòÉв»Ã÷È·¡£


https://www.bleepingcomputer.com/news/security/canadas-major-banks-go-offline-in-mysterious-hours-long-outage/


FBI¡¢NSAºÍCISAÐû²¼¶íÂÞ˹ºÚ¿ÍÃé×¼ÃÀ¹ú¹ú·ÀÐÐÒµµÄͨ¸æ


2ÔÂ16ÈÕ£¬ÃÀ¹úFBI¡¢NSAºÍCISAÁªºÏÐû²¼Á˶íÂÞ˹ºÚ¿ÍÃé×¼ÃÀ¹ú¹ú·ÀÐÐÒµµÄͨ¸æ¡£Í¨¸æ³Æ£¬¸Ã»î¶¯¿ªÊ¼ÓÚ2020Äê1Ô£¬ÀûÓÃÁËÓã²æÊ½ÍøÂçµöÓ㡢ƾ¾ÝÊÕ¼¯¡¢±©Á¦ÆÆ½âµÈ¼¼ÊõºÍ VPN É豸ÖеÄÒÑ֪©¶´£¬¹¥»÷¹ú¼ÒÅú×¼µÄ¹ú·À³Ð°üÉÌ(CDC)£¬ÒÔ»ñÈ¡Óë¹ú·ÀºÍÇ鱨ÁìÓòÓйصĻúÃÜÐÅÏ¢¡£¹¥»÷ÕßÓÃÓÚ³õʼ·ÃÎʺÍȨÏÞÌáÉýµÄ©¶´°üÂÞCVE-2018-13379¡¢CVE-2020-0688ºÍCVE-2020-17144¡£


https://www.cisa.gov/news/2022/02/16/new-cybersecurity-advisory-protecting-cleared-defense-contractor-networks-against


Egress³Æ×Ô2Ô·Ýð³äLinkedInµÄµöÓã¹¥»÷Ôö¼Ó232%


¾Ý2ÔÂ16ÈÕ±¨µÀ£¬Egress·¢ÏÖ×Ô2ÔÂ1ÈÕÒÔÀ´£¬Ã°³äLinkedInµÄµöÓã¹¥»÷Ôö¼ÓÁË232%¡£¹¥»÷ÕßʹÓÃÁË¿´ÆðÀ´·Ç³£ÕæÊµµÄHTMLÄ£°å£¬ÒÔ¼°´øÓÐLinkedInÃû³ÆµÄÓʼþµØÖ·£¬Ö¼ÔÚÓÕʹÓû§µã»÷µöÓãÁ´½Ó²¢ÊäÈëÆ¾¾Ý¡£´Ë´Î»î¶¯Ö÷ÒªÕë¶ÔÓ¢¹úºÍ±±ÃÀµØÓò£¬Ê¹ÓÃÁËOutlook 365ƽ̨£¬²¢¿ÉÒÔÈÆ¹ý´«Í³µÄµç×ÓÓʼþÄþ¾²·ÀÓù»úÖÆ¡£


https://www.egress.com/resources/cybersecurity-information/phishing/linkedin-phishing-attacks


ÃÀ¹úÁ½¼ÒÒ½ÔºSSHºÍFCHCй¶½ü15Íò»¼ÕߵĸöÈËÐÅÏ¢


ýÌå2ÔÂ16Èճƣ¬ÃÀ¹úÒÁÀûŵÒÁÖݽü150000¸ö¾ÓÃñµÄPHIÐÅϢй¶¡£´Ë´Îй¶µÄÐÅÏ¢Ô´ÓÚÁ½¼ÒÒ½Ôº£ºÖ¥¼Ó¸çµÄÄϰ¶Ò½Ôº(SSH)³ÆËûÃÇÓÚ2021Äê12ÔÂ10ÈÕ·¢ÏÖ¿ÉÒɻ£¬¾­ÊÓ²ìÈ·¶¨½ü116000¸ö»¼ÕߺÍÔ±¹¤µÄÐÅϢй¶£»ÒÁÀûŵÒÁÖݹþάµÄÒ½ÔºFCHCÔÚ2021Äê11ÔÂ18ÈÕ×óÓÒÔâµ½ÀÕË÷¹¥»÷£¬µ«Ö±µ½11ÔÂ30Èղŷ¢ÏÖÊý¾Ýй¶£¬Éæ¼°31000¸ö»¼Õß¡£ÆäÖУ¬SSH³Æ½«ÎªËùÓÐÊÜÓ°ÏìµÄ¾ÓÃñÌṩÉí·Ý͵ÇÔ±£»¤·þÎñ¡£ 


https://www.infosecurity-magazine.com/news/healthcare-data-breaches-impact/


CiscoÐÞ¸´ÆäÓʼþÄþ¾²É豸ÖÐDoS©¶´CVE-2022-20653


CiscoÔÚ2ÔÂ16ÈÕÐû²¼Äþ¾²¸üУ¬ÐÞ¸´ÆäÓʼþÄþ¾²É豸ÖÐDoS©¶´£¨CVE-2022-20653£©¡£¸Ã©¶´´æÔÚÓÚAsyncOSÈí¼þµÄ»ùÓÚDNSµÄÃüÃûʵÌåÉí·ÝÑéÖ¤(DANE)×é¼þÖУ¬ÊÇÓÉÓÚ¶ÔDNSÃû³Æ½âÎöµÄ´íÎó´¦Öò»×㵼ֵġ£CiscoÐû²¼µÄͨ¸æ³Æ£¬¹¥»÷Õß¿ÉÒÔͨ¹ý·¢ËÍÌØÊâ¸ñʽµÄµç×ÓÓʼþÀ´ÀûÓôË©¶´£¬ÀÖ³ÉÀûÓÿɵ¼ÖÂÎÞ·¨·ÃÎʹÜÀí½çÃæ»ò´¦ÖÃÌØ±ðµÄÓʼþÏûÏ¢£¬´Ó¶ø´¥·¢DoS¡£


https://www.bleepingcomputer.com/news/security/cisco-bug-can-let-hackers-crash-cisco-secure-email-gateways/


CrowdStrikeÐû²¼2021ÄêÈ«ÇòÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß


2ÔÂ15ÈÕ£¬CrowdStrikeÐû²¼ÁË2021ÄêÈ«ÇòÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬ÓëÀÕË÷Èí¼þÏà¹ØµÄÊý¾Ýй¶ÔÚ2021Äêͬ±ÈÔö¼ÓÁË82%£¬´Ó1474ÆðÉÏÉýµ½2686Æð£»62% µÄ¹¥»÷ûÓÐʹÓõ½¶ñÒâÈí¼þ£»×îÒýÈËעĿµÄ©¶´ÊÇLog4Shell£¬Ô¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓÃÆä×¢ÈëJava´úÂ룻ÀûÓÃÔÆ·þÎñµÄ¹¥»÷»î¶¯Ôö¶à£»Ð·ºÆðÁË21¸öºÚ¿ÍÍŻ½»»¥ÈëÇֻÔö¼Ó45%£»¹©Ó¦µÄƽ¾ùʱ³¤Îª1Сʱ38·ÖÖÓ¡£


https://www.crowdstrike.com/global-threat-report/



Äþ¾²¹¤¾ß


Unredacter


¸Ã¹¤¾ß¿É´ÓÄ£ºýµÄÏñËØ»¯Í¼ÏñÖÐÖØ½¨Îı¾¡£


https://github.com/bishopfox/unredacter


Macrome


ÓÃÓÚºì¶ÓºÍ·ÖÎöʦµÄ Excel ºêÎĵµÔĶÁÆ÷/±àдÆ÷¡£


https://github.com/michaelweber/Macrome


FakeLogonScreen


ÊÇÒ»¸öαÔì Windows µÇ¼ÆÁÄ»ÒÔ»ñÈ¡Óû§ÃÜÂëµÄʵÓ÷¨Ê½¡£


https://github.com/bitsadmin/fakelogonscreen


WELA


Windows ʼþÈÕÖ¾·ÖÎöÆ÷£¬×î´ó¹¦Ð§ÊÇ´´½¨Ò×ÓÚ·ÖÎöµÄµÇ¼ʱ¼äÏߣ¬ÒÔ×ÊÖú¿ìËÙȡ֤ºÍʼþÏìÓ¦¡£


https://github.com/Yamato-Security/WELA/


jwt-hack


ÊÇÓÃÓÚ¶ÔJWT½øÐкڿÍ/Äþ¾²²âÊԵŤ¾ß¡£


https://github.com/hahwul/jwt-hack/



Äþ¾²·ÖÎö


Mozilla ¾¯¸æ Chrome¡¢Firefox '100' Óû§ÊðÀí¿ÉÄÜ»áÆÆ»µÍøÕ¾


https://www.bleepingcomputer.com/news/software/mozilla-warns-chrome-firefox-100-user-agents-may-break-sites/


Å·ÃËÒþ˽¼à¹Ü»ú¹¹Ï£Íû½ûÖ¹ Pegasus ¼äµýÈí¼þ


https://www.bleepingcomputer.com/news/security/blackcat-alphv-claims-swissport-ransomware-attack-leaks-data/


FBI ¾¯¸æ BEC ¹¥»÷ÕßÔÚÐéÄâ»áÒéÖÐð³ä CEO


https://www.bleepingcomputer.com/news/security/fbi-warns-of-bec-attackers-impersonating-ceos-in-virtual-meetings/


Á¢ÌÕÍðºÍ²¨À¼Ðû²¼ÍøÂç¹¥»÷¾¯¸æ


https://www.infosecurity-magazine.com/news/lithuania-poland-cyber-attack/


¹ú¼ÊºìÊ®×ÖίԱ»áÌåÏÖºÚ¿ÍÀûÓà Zoho ©¶´ÈëÇÖÆäÍøÂç


https://www.bleepingcomputer.com/news/security/red-cross-state-hackers-breached-our-network-using-zoho-bug/


Microsoft£ºÇø¿éÁ´Éϵġ°Ice phishing¡±


https://www.microsoft.com/security/blog/2022/02/16/ice-phishing-on-the-blockchain/