¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180921

Ðû²¼Ê±¼ä 2018-09-21

¡¾Êý¾Ýй¶¡¿Ðµ°ÍøÔâMagecart¶ñÒâ¾ç±¾Ñ¬È¾£¬£¬£¬£¬£¬£¬Êý°ÙÍò¿Í»§µÄÐÅÓÿ¨ÐÅÏ¢¿ÉÄܱ»ÇÔ


ƾ֤VolexityºÍRiskIQµÄ±¨¸æ£¬£¬£¬£¬£¬£¬·¸·¨ÍÅ»ïMagecartʹÓöñÒâJavascript¾ç±¾Ñ¬È¾ÁËе°Íø²¢ÇÔÈ¡Á˲¿·Ö¿Í»§µÄÐÅÓÿ¨ÐÅÏ¢¡£¡£¡£ ¡£ÔÚ2018Äê8ÔÂ14ÈÕÖÁ9ÔÂ18ÈÕʱ´ú¹ºÎïµÄËùÓпͻ§µÄÐÅÓÿ¨ÐÅÏ¢¶¼±»·¢Ë͵½¹¥»÷ÕßµÄÔ¶³ÌЧÀÍÆ÷£¨ÓòÃûΪneweggstats£¨dot£©com£©¡£¡£¡£ ¡£Ðµ°ÍøµÄ×ÀÃæ¿Í»§ºÍÒÆ¶¯¿Í»§¶¼Êܵ½Ó°Ï죬£¬£¬£¬£¬£¬µ«ÏÖÔÚÉв»ÇåÎúÏêϸµÄÊý×Ö£¨ÕâÒ»Êý×Ö¿ÉÄÜ´ïÊý°ÙÍò£©¡£¡£¡£ ¡£


https://thehackernews.com/2018/09/newegg-credit-card-hack.html


¡¾¹¥»÷ÊÂÎñ¡¿ÈÕ±¾¼ÓÃÜÇ®±ÒÉúÒâËùZaifÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬Ô¼Ëðʧ¼ÛÖµ6000ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò


ÈÕ±¾¼ÓÃÜÇ®±ÒÉúÒâËùZaifÔâµ½ºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬Ô¼Ëðʧ¼ÛÖµ6000ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò¡£¡£¡£ ¡£¸Ã¹¥»÷±¬·¢ÔÚ9ÔÂ14ÈÕÍâµØÊ±¼ä17:00µ½19:00Ö®¼ä£¬£¬£¬£¬£¬£¬¶øZaifÖ±ÖÁ9ÔÂ17Èղŷ¢Ã÷¡£¡£¡£ ¡£¹¥»÷Õß´ÓZaifµÄÈÈÇ®°üÖÐÇÔÈ¡ÁË×ܼƼÛÖµ67ÒÚÈÕÔª£¨Ô¼5967ÍòÃÀÔª£©µÄ±ÈÌØ±Ò¡¢±ÈÌØÏÖ½ðÒÔ¼°MonaCoin¡£¡£¡£ ¡£ZaifÍŶÓÒѾ­ÔÝÍ£ÁËÓû§µÄ´æ¿îºÍÈ¡¿î£¬£¬£¬£¬£¬£¬²¢½øÒ»³ÌÐò²é¸ÃÊÂÎñµÄϸ½Ú¡£¡£¡£ ¡£


https://www.zdnet.com/article/zaif-cryptocurrency-exchange-loses-60-million-in-july-hack/


¡¾ÍþвÇ鱨¡¿Flashpoint·¢Ã÷Ô¼3000¸öÍøÕ¾µÄºóÃÅÔÚ°µÍøÊг¡ÉϳöÊÛ


FlashpointÑо¿ÍŶӷ¢Ã÷Ô¼3000¸öÍøÕ¾µÄºóÃÅȨÏÞÔÚ°µÍøÊг¡MagBoÉϳöÊÛ¡£¡£¡£ ¡£ÆäÖÐÒ»Ð©ÍøÕ¾µÄ»á¼ûȨÏÞµÍÖÁ50ÃÀ·Ö¡£¡£¡£ ¡£´ó´ó¶¼Êܺ¦Õß¶¼Êǵç×ÓÉÌÎñÍøÕ¾£¬£¬£¬£¬£¬£¬µ«Ñо¿Ö°Ô±Ò²·¢Ã÷ÁËÊôÓÚÒ½ÁÆ¿µ½¡¡¢Ö´·¨¡¢½ÌÓý¡¢°ü¹ÜºÍÕþ¸®µÈÐÐÒµ/²¿·ÖµÄÍøÕ¾¡£¡£¡£ ¡£´ó´ó¶¼Êܺ¦Õß¶¼À´×ÔÃÀ¹ú¡¢¶íÂÞ˹»òÊǵ¹úµÄÍøÂçÍйÜЧÀÍ¡£¡£¡£ ¡£Ñо¿ÍŶÓÒѽ«ÊÓ²ìЧ¹ûÓëÖ´·¨»ú¹¹¹²Ïí£¬£¬£¬£¬£¬£¬²¢Í¨ÖªÏà¹ØÊܺ¦Õß¡£¡£¡£ ¡£


https://www.flashpoint-intel.com/blog/access-to-breached-sites-found-on-underground-market/


¡¾ÆÊÎö±¨¸æ¡¿ÍøÂçÍþвͬÃËCTAÐû²¼¹ØÓÚ¶ñÒâÍÚ¿óÍþвµÄ°×ƤÊé


ÍøÂçÍþвͬÃËÐû²¼¹ØÓÚ¶ñÒâÍÚ¿óÍþвµÄ°×ƤÊé¡£¡£¡£ ¡£×Ô2017ÄêÒÔÀ´£¬£¬£¬£¬£¬£¬À´×ÔCTA³ÉÔ±µÄ×ÛºÏÊý¾ÝÅú×¢¶ñÒâÍÚ¿óÍþвµÄ¼ì²âÊýÄ¿ÔöÌíÁË459%¡£¡£¡£ ¡£¶øÀ´×ÔCTA³ÉÔ±µÄ×îм¾¶ÈÇ÷ÊÆ±¨¸æÅú×¢£¬£¬£¬£¬£¬£¬ÕâÖÖ¿ìËÙÔöÌíûÓзŻºµÄ¼£Ï󡣡£¡£ ¡£ÈôÊÇ˵2017ÄêÊÇÀÕË÷Èí¼þµÄÎę̀£¬£¬£¬£¬£¬£¬ÄÇô2018Äê¾ÍÊǶñÒâÍÚ¿óÈí¼þµÄÖ÷³¡¡£¡£¡£ ¡£±¨¸æÖÐÕë¶Ô¸ÃÍþвÌá³öÁËÏìÓ¦µÄ½¨Òé²½·¥¡£¡£¡£ ¡£


https://blog.talosintelligence.com/2018/09/CTA-Cryptomining-Whitepaper.html


¡¾ÆÊÎö±¨¸æ¡¿FireEyeÐû²¼¹ØÓÚClick2GovÃÅ»§ÍøÕ¾Ôâµ½¹¥»÷ÊÂÎñµÄÆÊÎö±¨¸æ


ƾ֤FireEyeÐû²¼µÄб¨¸æ£¬£¬£¬£¬£¬£¬Ò»¸öÒÔǰδ֪µÄ·¸·¨ÍÅ»ïÈëÇÖÁËClick2GovµÄЧÀÍÆ÷²¢ÔÚÆäÃÅ»§ÍøÕ¾ÉÏÖ²ÈëÁËÓÃÓÚÇÔÊØÐÅÓÿ¨ÐÅÏ¢µÄ¶ñÒâÈí¼þ¡£¡£¡£ ¡£Click2GovÊǹ©Ó¦ÉÌSuperionµÄ²úÆ·£¬£¬£¬£¬£¬£¬Ö÷ÒªÏúÊÛ¸øÃÀ¹úÍâµØÕþ¸®£¬£¬£¬£¬£¬£¬ÓÃÓÚ¹«ÃñÖ§¸¶Ë®µç·Ñ¡¢Ö¤¼þÔÊÐí·ÑÒÔ¼°· £¿£¿£¿îµÈ¡£¡£¡£ ¡£FireEyeÌåÏָ÷¸·¨ÍÅ»ïÒѾ­ÈëÇÖÁ˸ÃÍøÕ¾½üÒ»ÄêµÄʱ¼ä£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÊÇʹÓÃOracle WebLogic Java EEÓ¦ÓÃЧÀÍÆ÷ÖеÄÒ»¸ö»ò¶à¸öÎó²î¾ÙÐй¥»÷µÄ¡£¡£¡£ ¡£


https://www.fireeye.com/blog/threat-research/2018/09/click-it-up-targeting-local-government-payment-portals.html


¡¾Îó²î²¹¶¡¡¿AdobeÐû²¼½ôÆÈÇå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´AcrobatºÍAdobe ReaderÖеÄÇå¾²Îó²î


AdobeÔÚÆä9ÔÂÇå¾²¸üÐÂÖ®ÍâÐû²¼ÁËеĽôÆÈÐÞ¸´²¹¶¡£¬£¬£¬£¬£¬£¬ÐÞ¸´Adobe AcrobatºÍReaderÖеÄÇå¾²Îó²î¡£¡£¡£ ¡£Windowsƽ̨¼°MacOSƽ̨µÄ²úÆ·¶¼Êܵ½Ó°Ïì¡£¡£¡£ ¡£ÆäÖÐ×îÑÏÖØµÄÎó²îÊÇÔ½½çдÈëÎó²î£¨CVE-2018-12848£©£¬£¬£¬£¬£¬£¬¸ÃÎó²î¿Éµ¼ÖÂí§Òâ´úÂëÖ´ÐС£¡£¡£ ¡£¸Ã²¹¶¡»¹Ìá¼°ÁíÍâ5¸ö¿Éµ¼ÖÂÐÅϢй¶µÄÇå¾²Îó²î¡£¡£¡£ ¡£½¨ÒéÓû§¾¡¿ì¾ÙÐÐÉý¼¶¡£¡£¡£ ¡£


https://www.bleepingcomputer.com/news/security/critical-security-update-released-for-adobe-reader-and-acrobat/



¡¾¼øºÚµ£±£Íø¼¯ÍÅADLabÕûÀíÐû²¼¡¿