΢ÈíÐû²¼5Ô·ݲ¹¶¡£¬ÐÞ¸´°üÂÞ3¸ö0dayÔÚÄÚµÄ75¸ö©¶´

Ðû²¼Ê±¼ä 2022-05-11
1¡¢Î¢ÈíÐû²¼5Ô·ݲ¹¶¡£¬ÐÞ¸´°üÂÞ3¸ö0dayÔÚÄÚµÄ75¸ö©¶´


5ÔÂ10ÈÕ£¬Î¢ÈíÐû²¼Á˱¾ÔµÄÖܶþ²¹¶¡£¬×ܼÆÐÞ¸´ÁË75¸ö©¶´£¬ÆäÖÐÒ»¸öÒѱ»ÀûÓᣴ˴θüÐÂÐÞ¸´ÁË3¸ö0 day©¶´£¬·Ö±ðΪWindows LSAÆÛƭ©¶´£¨CVE-2022-26925£©£¬¿Éͨ¹ýµ÷ÓÃLSARPC½Ó¿ÚÉϵÄÒªÁ첢ǿÖÆÓò¿ØÖÆÆ÷ʹÓÃNTLM½øÐÐÉí·ÝÑéÖ¤£¬Òѱ»»ý¼«ÀûÓã»Windows Hyper-V¾Ü¾ø·þÎñ©¶´£¨CVE-2022-22713£©£»Magnitude Simba Amazon Redshift ODBCÇý¶¯·¨Ê½ÖеÄ©¶´£¨CVE-2022-29972£©¡£´ËÍ⣬»¹ÐÞ¸´ÁËÔ¶³Ì×ÀÃæ¿Í»§¶ËRCE©¶´£¨CVE-2022-22017£©ºÍActive DirectoryÓò·þÎñÌØȨÌáÉý©¶´£¨CVE-2022-26923£©µÈ¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-may-2022-patch-tuesday-fixes-3-zero-days-75-flaws/


2¡¢´÷¶û¡¢Æ»¹ûºÍNetflixÒò½«·þÎñ³·³ö¶íÂÞ˹¶øÃæÁÙËßËÏ


¾Ý5ÔÂ9ÈÕ±¨µÀ£¬ÔÚ´÷¶û¹«Ë¾Î´ÄÜÏòµ±µØϵͳ¼¯³ÉÉÌÌṩ¸¶·Ñ·þÎñºó£¬ÄªË¹¿ÆÖٲ÷¨ÔºÃ»ÊÕÁËÊôÓڸù«Ë¾µÄ½ü1100ÍòÃÀÔª¡£¾ÝϤ£¬ÊÇITϵͳ¼¯³ÉÉÌTalmerÔÚÉÏÔ³õÆðËßÁË´÷¶û£¬Ô­ÒòÊǸù«Ë¾ÊÂÏÈÒÑÏò´÷¶ûÖ§¸¶ÁË·þÎñÓöÈ£¬µ«Î´µÃµ½ÕâЩ·þÎñ¡£ÉϸöÔÂÄ©£¬Æ»¹û¹«Ë¾ÒòΪ´Ó¸Ã¹úÈ¡ÏûÁËÆäÖ§¸¶·þÎñApple Pay£¬Ò²ÃæÁÙÀàËƵÄÖ´·¨ÎÊÌ⣬ҪÇóÅâ³¥9000Íò¬²¼£¨Ô¼129ÍòÃÀÔª£©¡£NetflixÔÚ4ÔÂÒòÀàËƵÄÎ¥·´Óû§Ìõ¿îµÄÔ­ÒòÔâµ½¼¯ÌåËßËÏ£¬ÒªÇóÅâ³¥6000Íò¬²¼£¨86ÍòÃÀÔª£©¡£


https://www.bleepingcomputer.com/news/technology/dell-apple-netflix-face-lawsuits-for-pulling-services-out-of-russia/


3¡¢KasperskyÔÚGoogle Play¼ì²âµ½¶à¸öѬȾJokerµÄÓ¦ÓÃ


¾ÝKasperskyÔÚ5ÔÂ6ÈÕÐû²¼µÄ³ÂËߣ¬Google PlayÖдæÔÚ¶à¸öѬȾÁËJokerµÄÓ¦Óá£Trojan.AndroidOS.JockerϵÁÐľÂí¿ÉÒÔÀ¹½Ø¶ÌÐÅÖз¢Ë͵ĴúÂë²¢Èƹý·´ÆÛÕ©½â¾ö·½°¸£¬ËüÃÇͨ³£ÔÚ Google PlayÉÏÁ÷´«¡£¹¥»÷ÕßÏÈÏÂÔغϷ¨Ó¦Óò¢ÏòÆäÖÐÌí¼Ó¶ñÒâ´úÂ룬ÔÙÒÔ²îÒìµÄÃû³ÆÖØÐÂÉÏ´«µ½Google Play¡£´Ë´Î·¢Ïֵı»Ñ¬È¾Ó¦Ó÷ֱðΪStyle Message¡¢Blood Pressure AppºÍCamera PDF Scanner¡£Ä¿Ç°ËüÃÇÒÑ´ÓGoogle PlayÖÐÒƳý£¬µ«ÈÔ¿É´ÓµÚÈý·½Æ½Ì¨»ñµÃ¡£


https://securelist.com/mobile-subscription-trojans-and-their-tricks/106412/


4¡¢ÎÚ¿ËÀ¼CERT-UA·¢ÏÖÖ¼ÔÚ·Ö·¢JesterµÄ´ó¹æÄ£µöÓã»î¶¯


ýÌå5ÔÂ9ÈÕ±¨µÀ£¬ÎÚ¿ËÀ¼¼ÆËã»úÓ¦¼±ÏìӦС×é(CERT-UA)¼ì²âµ½Á÷´«ÇÔÈ¡¶ñÒâÈí¼þJesterµÄ´ó¹æÄ£µöÓã»î¶¯¡£µöÓãÓʼþÒÔ¡°»¯Ñ§¹¥»÷¡±ÎªÖ÷Ì⣬°üÂÞÁËÖ¸Ïò¶ñÒâMicrosoft ExcelÎļþµÄÁ´½Ó£¬Ä¿±ê´ò¿ªÎĵµ²¢¼¤»îǶÈëµÄºêºó£¬Ñ¬È¾¹ý³Ì¿ªÊ¼¡£Æ¾¾ÝCERT-UAͨ¸æ£¬¿ÉÖ´ÐÐÎļþÊÇ´Ó±»Ñ¬È¾µÄÍøÕ¾ÏÂÔصÄ£¬¶ø²»ÊÇÖ±½Ó´Ó¹¥»÷Õß¿ØÖƵĻù´¡ÉèÊ©¡£Ä¿Ç°£¬Éв»Çå³þ´Ë´Î»î¶¯±³ºó¹¥»÷ÕßµÄÉí·Ý¡£


https://securityaffairs.co/wordpress/131113/breaking-news/cert-ua-warns-jester-stealer-attacks.html


5¡¢BlackBerryÐû²¼¹ØÓÚÁ®¼ÛµÄÉÌÒµRAT DCRatµÄ·ÖÎö³ÂËß


BlackBerryÔÚ5ÔÂ9ÈÕÐû²¼Á˹ØÓÚÉÌÒµRAT DCRat£¨ÓÖ³ÆDarkCrystal RAT£©µÄ·ÖÎö³ÂËß¡£DCRatÊÇÒ»¸ö¹¦Ð§ÆëÈ«µÄºóÃÅ£¬ÊÇ¡°boldenis44¡±ºÍ¡°crystalcoder¡±ÓÃ.NET¿ª·¢µÄ¡£ËüÊÇ×î×ÔÖƵÄÉÌÒµRATÖ®Ò»£¬ÖÕÉí¶©ÔķѽöΪ4200¬²¼£¨40ÃÀÔª£©¡£¸Ã¶ñÒâÈí¼þÓÉ3¸ö²¿ÃÅ×é³É£ºÇÔÈ¡Æ÷/¿Í»§¶Ë¿ÉÖ´ÐÐÎļþ¡¢PHPÒ³ÃæºÍ¹ÜÀíÔ±¹¤¾ß£¬¾ßÓмàÊÓ¡¢Õì²ì¡¢ÐÅÏ¢ÇÔÈ¡¡¢DDoS¹¥»÷ÒÔ¼°´úÂëÖ´Ðеȹ¦Ð§¡£


https://blogs.blackberry.com/en/2022/05/dirty-deeds-done-dirt-cheap-russian-rat-offers-backdoor-bargains


6¡¢ResecurityÐû²¼¹ØÓÚеÄPhaaS FrappoµÄ¼¼Êõ·ÖÎö³ÂËß


ýÌå5ÔÂ10ÈÕ±¨µÀ£¬Resecurity·¢ÏÖÁËÒ»ÖÖеÄPhishing-As-A-Service£¨PhaaS£©Frappo¡£¸Ã·þÎñ×îÔçÓÚ2021Äê3ÔÂ22ÈÕ·ºÆ𣬽üÆÚÓÖÌṩÁËÉ漰Ϊ20¶à¼Ò½ðÈÚ»ú¹¹¡¢ÔÚÏßÁãÊÛÉ̺ÍÓŲ½µÈ·þÎñµÄµöÓãÒ³Ãæ¡£´ËÍ⣬µöÓãÒ³ÃæµÄ²¿Êð¹ý³ÌÊÇÍêÈ«×Ô¶¯»¯µÄ£¬FrappoÀûÓÃÒ»¸öÔ¤ÏÈÅäÖõÄDockerÈÝÆ÷ºÍÒ»¸öÄþ¾²Í¨µÀ£¬ÓÃÀ´Í¨¹ýAPIÊÕ¼¯Æ¾¾Ý¡£Ñо¿ÈËÔ±³Æ£¬ÏñFrappoÕâÑùµÄµöÓã¼´·þÎñÒѱ»ÓÃÓÚÕÊ»§½Ó¹Ü¡¢BEC¹¥»÷¡¢Êý¾Ý͵ÇԵȻ£¬¹¥»÷ÕßÒ»Ö±ÔÚÀûÓÃÏȽøµÄ¹¤¾ßºÍ¼ÆıÀ´¹¥»÷È«ÇòµÄÏû·ÑÕß¡£  


https://securityaffairs.co/wordpress/131136/cyber-crime/frappo-phishing-as-a-service.html