¶ñÒâÈí¼þBlank GrabberÕë¶ÔPython¿ª·¢ÈËÔ±ÇÔÈ¡ÐÅÏ¢

Ðû²¼Ê±¼ä 2024-01-16
1. ¶ñÒâÈí¼þBlank GrabberÕë¶ÔPython¿ª·¢ÈËÔ±ÇÔÈ¡ÐÅÏ¢


1ÔÂ14ÈÕ£¬Imperva ÍþвÑо¿ÍŶÓ×î½üÔÚ PyPI Öз¢ÏÖÁËÒ»¸öÃûΪ¡°sellpass-sdk¡±µÄ¶ñÒâÈí¼þ°ü£¬¸ÃÈí¼þ°üÊÇ¡°Blank Grabber¡±ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þµÄÁ÷´«Õß¡£ÔÚ·¢ÉúһϵÁÐÀàËÆʼþÖ®ºó£¬ÕâÒ»·¢ÏÖ±êÖ¾×Å Python ¿ª·¢µÄÍøÂçÄþ¾²ÁìÓò·ºÆðÁËÁîÈ˵£ÓǵÄÇ÷ÊÆ¡£¸Ã¶ñÒâÈí¼þ°üÄ£·ÂºÏ·¨Èí¼þ°ü¡°sellpass¡±£¬½ÓÄÉÖÖÖÖ¼ÆıÀ´½¨Á¢¿ÉÐŶÈ¡£ÆäÖаüÂÞʹÓÃÏàËƵÄ×÷ÕßÐÕÃûÒÔ¼°´´½¨¶à¸ö°æ±¾ÒÔʹÆä¿´ÆðÀ´µÃµ½»ý¼«Î¬»¤¡£ÕâÖÖ¹î¼Æµ¼Ö¸ÃÈí¼þ°ü±»¶à´ÎÏÂÔØ£¬Í¹ÏÔ³ö´ËÀà¶ñÒâÈí¼þ¿ÉÒÔÇáËÉÉø͸ϵͳ¡£Ò»µ©°²×°£¬¡°Blank Grabber¡±¾Í»áÌåÏÖ³öÓк¦ÐÐΪ¡£ËüÄܹ»×èÖ¹ÊÜѬȾÉè±¹ØÁ¬ÄÀ´µçºÍÏûÏ¢£¬·ÀÖ¹Êܺ¦ÕßÊÕµ½ÖØÒª¾¯±¨¡£¸Ã¶ñÒâÈí¼þÖ´ÐÐÁËÅÓ´óµÄÊý¾Ýй¶ºÍϵͳÈëÇÖ¼Æı¡£ÕâһʼþÇå³þµØÌáÐÑÈËÃDZ£³ÖÍøÂçÄþ¾²¾¯ÌèµÄÖØÒªÐÔ¡£¿ª·¢ÈËÔ±ºÍÓû§¶¼±ØÐë½÷É÷ÐÐÊ£¬ÓÈÆäÊÇ´Ó PyPI µÈ´æ´¢¿â»ñÈ¡Èí¼þ°üʱ¡£


2. Phemedrone StealerÀûÓÃCVE-2023-36025¹æ±Ü¼ì²â


1ÔÂ14ÈÕ£¬ÔÚ×î½üµÄÒ»Ïî·¢ÏÖÖУ¬Ç÷ÊƿƼ¼µÄÍøÂçÄþ¾²Ñо¿ÈËÔ±·¢ÏÖ¶Ô CVE-2023-36025 µÄ»ý¼«ÀûÓ㬵¼ÖÂÏÈǰδ֪µÄ¶ñÒâÈí¼þ±äÌ壨³ÆΪ Phemedrone Stealer£©µÄÁ÷´«¡£Phemedrone Stealer ÊÇÒ»ÖÖÒþÐζñÒâÈí¼þ£¬Ö÷ÒªÕë¶ÔÍøÂçä¯ÀÀÆ÷¡¢¼ÓÃÜ»õ±ÒÇ®°üºÍÏûÏ¢Ó¦Ó÷¨Ê½£¬°üÂÞTelegram¡¢Steam ºÍ Discord µÈÁ÷ÐÐƽ̨¡£ÕâÖֶ෽ÃæµÄ¶ñÒâÈí¼þ²»½ö½öÊÇÇÔÈ¡Êý¾Ý£»Ëü»¹²¶×½ÆÁÄ»½Øͼ²¢ÊÕ¼¯Òªº¦ÏµÍ³ÐÅÏ¢£¬ÀýÈçÓ²¼þÏêϸÐÅÏ¢¡¢Î»ÖúͲÙ×÷ϵͳϸ½Ú¡£±»µÁÊý¾Ýͨ¹ý Telegram »òÆäÃüÁîºÍ¿ØÖÆ·þÎñÆ÷½÷É÷µØ´«Êä¸ø¹¥»÷Õß¡£Phemedrone Stealer µÄÓëÖÚ²îÒìÖ®´¦ÔÚÓÚÆ俪ԴÐÔÖÊ£¬Óà C# ±àд£¬²¢ÔÚ GitHub ºÍ Telegram ÉÏ»ý¼«Î¬»¤¡£Phemedrone Stealer ÀֳɵÄȪԴÔÚÓÚËüÀûÓÃÁË CVE-2023-36025£¬ÕâÊÇÒ»¸öÓ°ÏìMicrosoft Windows Defender SmartScreen µÄ©¶´¡£´Ë©¶´ÊÇÓÉÓÚȱ·¦¶Ô Internet ¿ì½Ý·½Ê½ (.url) ÎļþµÄ¼ì²éºÍÏà¹ØÌáʾ¶øµ¼ÖµÄ£¬ÍþвÐÐΪÕßÀûÓÃÕâЩÎļþÀ´ÖÆ×÷¶ñÒâ .url Îļþ¡£ÕâЩÎļþÏÂÔز¢Ö´ÐжñÒâ½Å±¾£¬ÓÐЧÈƹý Windows Defender SmartScreen ¾¯¸æºÍ¼ì²é¡£Î¢ÈíÓÚ 2023 Äê 11 Ô 14 ÈÕÐÞ²¹ÁË´Ë©¶´£¬µ«¹¥»÷ÀûÓõķºÆð´ÙʹÍøÂçÄþ¾²ºÍ»ù´¡ÉèÊ©Äþ¾²¾Ö (CISA) ½«ÆäÄÉÈëÒÑÖªÀûÓ鶴 (KEV) ÁбíÖС£


3. Ñо¿ÍŶӳÆ2023ÄêÀÕË÷Èí¼þÍÅ»ïÒѹ¥»÷½ü5200¸öÆóÒµ


1ÔÂ12ÈÕ£¬Rapid7 µÄһƪ²©¿ÍÎÄÕÂÖÐÌåÏÖ£¬2023 Ä꽫Óнü 5,200 ¸ö×éÖ¯ÔâÊÜÀÕË÷Èí¼þ¹¥»÷£¬²¢´ÓÆä¹ÜÀíµÄ¼ì²âºÍÏìÓ¦ÍŶӵĹûÈ»Åû¶ºÍʼþÊý¾ÝÖнøÐÐÁËÑо¿¡£Rapid7 Íþв·ÖÎö¸ß¼¶×ܼà Christiaan Beek ÔÚ³ÂËßÖÐÌåÏÖ£º¡°ÊÂʵÉÏ£¬ÎÒÃÇÈÏΪÕâ¸öÊý×Öʵ¼ÊÉϸü¸ß£¬ÒòΪËüûÓп¼Âǵ½Ðí¶à¿ÉÄÜδ±»³ÂËߵĹ¥»÷¡£¡±Rapid7 ûÓÐÌṩ 2022 ÄêµÄÊý¾Ý£¬µ«ÆäËû¹«Ë¾µÄÑо¿µÃ³ö½áÂÛ£¬ÀÕË÷Èí¼þ¹¥»÷µÄÊýÁ¿ÕýÔÚÉÏÉý¡£BlackFog µÄÊý¾ÝÏÔʾ£¬2023 ÄêÏ°ëÄêµÄÀÕË÷Èí¼þ¹¥»÷ÊýÁ¿ÊÇ2022 ÄêÏ°ëÄêµÄÁ½±¶¡£ËäÈ»ÀÕË÷Èí¼þ»î¶¯ÈÔÈ»ºÜ¸ß£¬µ«ÓÃÓÚÕâЩ¹¥»÷µÄÆæÌØÀÕË÷Èí¼þ¼Ò×åµÄÊýÁ¿¼õÉÙÁËÒ»°ëÒÔÉÏ£¬´Ó2022ÄêµÄ95¸öмÒ×å¼õÉÙµ½2023ÄêµÄ43¸ö¡£±È¿ËÌåÏÖ£¬Õâ±íÃ÷µ±Ç°µÄÀÕË÷Èí¼þϵÁкÍÄ£ÐÍÕýÔÚÂú×ãÍþвÐÐΪÕßµÄÄ¿±ê¡£AlphV ÊÇÈ¥Äê×î»îÔ¾µÄÍþв×éÖ¯¡£2023 Äê½ÓÏÂÀ´µÄ4¸ö×î»îÔ¾µÄÀÕË÷Èí¼þ×éÖ¯°üÂÞ£ºBianLian£»Clop£»LockBit 3.0ºÍPlay¡£


4. Áè¼Ý100¸öÒÔÉ«ÁÐ×éÖ¯Ôâµ½ºÚ¿Í¹¥»÷ÇÒ´óÁ¿Êý¾Ýй¶


1ÔÂ15ÈÕ£¬Ò»¸öÃûΪ Cyber Toufan µÄºÚ¿Í×éÖ¯¾Ý³ÆÊܵ½Ä³¹úÖ§³Ö£¬Éù³Æͨ¹ýÊý¾Ýɾ³ýºÍ͵ÇÔÐж¯ÈëÇÖÁË 100 ¶à¸öÒÔÉ«ÁÐ×éÖ¯¡£ÕâÊÇÒò¸ÃµØÓòÈÕÒæ½ôÕŵÄÕþÖξÖÊƶøÌᳫµÄÈ«ÃæÏ®»÷Ðж¯µÄÒ»²¿ÃÅ¡£Äþ¾²Ñо¿ÈËÔ±ÒÑ×·×Ùµ½Áè¼Ý 100 ÆðÓë Cyber Toufan ÔËÓªÏà¹ØµÄ¹¥»÷£¬ÆäÌصãÊÇÇÔÈ¡´óÁ¿Êý¾Ý£¨°üÂÞ¸öÈËÐÅÏ¢£©²¢ÔÚÍøÂçÉÏÁ÷´«¡£¸ÃºÚ¿Í×éÖ¯ÔÚÆä Telegram ƵµÀÉÏй¶ÁË 59 ¸ö×éÖ¯µÄÊý¾Ý¡£È»¶ø£¬¸Ã×éÖ¯ÔÚÕë¶ÔÍйܷþÎñÌṩÉÌ (MSP) µÄ¹¥»÷ÖпÉÄÜÒѾ­Î£º¦ÁËÁíÍâ 40 ¶à¸ö×éÖ¯¡£¸Ã×é֯鶵ÄÊý¾Ý°üÂÞ·þÎñÆ÷µÄÍêÕû´ÅÅÌÓ³Ïñ¡¢ÈÔÈ»ÓÐЧÇÒÕýÔÚʹÓÃµÄ SSL Ö¤Êé¡¢SQL ת´¢¡¢CRM£¬ÉõÖÁ WordPress ±¸·Ý¡£Êܺ¦Õß°üÂÞÒÔÉ«Áйú¼Òµµ°¸¹Ý£»ÒÔÉ«Áд´Ð¾Ö£»ÒÔÉ«ÁÐס·¿ÖÐÐÄ£»ÒÔÉ«ÁÐ×ÔÈ»ºÍ¹«Ô°¹ÜÀí¾Ö£»ÌØÀ­Î¬·òѧԺ£»ÒÔÉ«ÁÐÎÀÉú²¿£»¸£ÀûºÍÉç»áÊÂÎñ²¿¡¢ÒÔÉ«ÁÐ֤ȯ¹ÜÀí¾Ö£»Allot¡¢MAX Security & Intelligence¡¢Radware ºÍ·áÌïÒÔÉ«Áй«Ë¾µÈ¡£


5. Ñо¿ÍŶÓÅû¶SandwormÕë¶Ôµ¤ÂóºÍÎÚ¿ËÀ¼ÄÜÔ´µÄ¹¥»÷


1ÔÂ15ÈÕ£¬ÔÚÍøÂçÄþ¾²ÁìÓò£¬ÄÜÔ´ÐÐÒµÈÔÈ»ÊÇÈÝÒ×Êܵ½ÅÓ´óÍøÂç¹¥»÷µÄÒªº¦ÁìÓò¡£Forescout Vedere Labs ×î½üµÄÍþв¼ò±¨½ÒʾÁËÕë¶Ôµ¤ÂóºÍÎÚ¿ËÀ¼ÕâÒ»ÁìÓòµÄÁ½´Î²îÒìÍøÂç¹¥»÷£¬²¢½«Æä¹éÒòÓÚ Sandworm£¬ÕâÊÇÒ»¸öÒԸ߼¶Á¬ÐøÍþв (APT) ÎÅÃûµÄ¶íÂÞ˹¾üÊÂÍþв×éÖ¯¡£Forescout Vedere LabsµÄ³ÂË߶Ե¤ÂóÄÜÔ´»ù´¡ÉèÊ©µÄÁ½´Î¶ÀÁ¢¹¥»÷À˳±½øÐÐÁËÈ«Ãæ·ÖÎö¡£SektorCERTµÄ³õ·¨Ê½²é½á¹ûµ¤ÂóÒªº¦»ù´¡ÉèÊ©¼ÆËã»ú½ô¼±ÏìӦС×é (CERT) Ö¸³öÁËÁ½´Î²îÒìµÄ¹¥»÷¡£È»¶ø£¬Î¤´úÀ×ʵÑéÊҵķÖÎöÌá³öÁ˲îÒìµÄ˵·¨¡£ÕâЩ¹¥»÷µÄÒ»¸öÖµµÃ×¢ÒâµÄ·½ÃæÊÇʹÓá°¿¿µØÉú´æ¡±(LotL) ¼¼Êõ¡£ËäÈ»·×Æ綨±È¶¨ÖƶñÒâÈí¼þ¸ü¿ì£¬µ« LotL ÌṩÁËÒþÃØÓÅÊÆ£¬Ê¹¹¥»÷ÕßÄܹ»ÖÆÖ¹¼ì²â²¢ÀûÓÃÏÖÓÐϵͳ¡£ÕâÖÖÒªÁì͹ÏÔÁ˹¥»÷Õß²»Í£±ä»¯µÄ¼ÆıÒÔ¼°¶ÔÇ¿´ó·ÀÓù»úÖƵÄÐèÇó¡£


6. Balada InjectorÓÃPopup Builder¹¥»÷WordPressÍøÕ¾


1ÔÂ15ÈÕ£¬Sucuri Ñо¿ÈËÔ±³ÂË߳ƣ¬9Ô·ÝÓÐÁè¼Ý 17,000 ¸ö WordPress ÍøÕ¾Ò×Êܵ½ Balada InjectorµÄ¹¥»÷¡£Balada InjectorÊÇÒ»¸ö×Ô 2017 ÄêÒÔÀ´Ò»Ö±»îÔ¾µÄ¶ñÒâÈí¼þ¼Ò×å¡£¸Ã¶ñÒâÈí¼þÖ§³Ö¶àÖÖ¹¥»÷ÏòÁ¿ºÍ³Ö¾ÃÐÔ»úÖÆ¡£¸Ã¶ñÒâ´úÂë×î³õÓÉ AV ¹«Ë¾ Doctor Web ÓÚ 2022 Äê 12 Ô·¢ÏÖ¡£Sucurity ³ÂË߳ƣ¬12 Ô 13 ÈÕ£¬  Balada Injector »î¶¯¿ªÊ¼Ê¹Óþɰ汾µÄ Popup Builder£¨CVE-2023-6000£¬CVSS ÆÀ·Ö 8.8£©Ñ¬È¾ÍøÕ¾¡£ÍþвÐÐΪÕßʹÓÃÁË×î½ü×¢²á£¨12 Ô 13 ÈÕ£©µÄÓòÃû specialcraftbox[.]com¡£½ØÖÁ׫д±¾ÎÄʱ£¬  PublicWWW ÔÚ 7100 ¶à¸öÍøÕ¾Éϼì²âµ½×¢Èë ¡£