Î÷°àÑÀÇå¾²³§ÉÌProsegurÔâµ½ÀÕË÷Èí¼þRyuk¹¥»÷£»£»£»£»£»£»£»¿¨°Í˹»ùÐÞ¸´Web Protection¹¦Ð§ÖеĶà¸öÎó²î
Ðû²¼Ê±¼ä 2019-11-29
Î÷°àÑÀÇå¾²³§ÉÌProsegurÔÚÒ»·ÝÉùÃ÷ÖÐÐû²¼ÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬Õû¸ö¹«Ë¾µÄÍøÂç¶¼Òѹرա£¡£¡£Ö»¹ÜûÓлñµÃ¹Ù·½È·ÈÏ£¬£¬£¬£¬£¬µ«BleepingComputerÏàʶµ½¸Ã¹¥»÷Ó°ÏìÁËProsegurÔÚÅ·ÖÞµÄËùÓÐËùÔÚ¡£¡£¡£ÔÚTwitterÉϵĸüÐÂÖУ¬£¬£¬£¬£¬ProsegurÈ·Èϵ¼ÖÂÆäЧÀÍÖÐÖ¹µÄ¶ñÒâÈí¼þÊÇRyuk£¬£¬£¬£¬£¬²¢½«ÊÂÎñ±ê¼ÇΪ¡°Ò»Ñùƽ³£ÐÔ¹¥»÷¡±¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖÒѽÓÄÉ×îºéÁ÷ƽµÄÇå¾²²½·¥×èÖ¹¸Ã¶ñÒâÈí¼þÔÚÆäÄÚ²¿¼°¿Í»§¶ËÍøÂçÖÐÈö²¥¡£¡£¡£×÷ΪԤ·À²½·¥£¬£¬£¬£¬£¬¸Ã¹«Ë¾½«¼ÌÐøÏÞÖÆÍ¨Ñ¶£¬£¬£¬£¬£¬Ö±µ½È·ÈÏÆäϵͳÒÑÇå½à£¬£¬£¬£¬£¬²¢ÕýÔÚÆð¾¢ÒÔ×î¿ìµÄËÙÂʻָ´ÊÜÓ°ÏìµÄЧÀÍ¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ryuk-ransomware-forces-prosegur-security-firm-to-shut-down-network/2¡¢GPHealthÒ½ÁÆÖÐÐÄ»¼ÕßÊý¾Ý±»ÀÕË÷Èí¼þ¼ÓÃÜ
Great Plains HealthÒ½ÁÆÖÐÐÄÔÚ±¾ÖܳõÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬Ô±¹¤±»ÆÈʹÓÃÖ½ºÍ±Ê¾ÙÐа칫¡£¡£¡£¸ÃÊÂÎñ±¬·¢ÔÚÖÜÒ»ÍíÉÏ7µã×óÓÒ£¬£¬£¬£¬£¬ÖܶþGPHealthÐû²¼×÷·Ï´ó×ڷǽôÆÈ»¼ÕßµÄÔ¤Ô¼ºÍÁ÷³Ì£¬£¬£¬£¬£¬µ«²»Ó°ÏìÊÖÊõºÍÒ½ÁÆÓ°ÏñÅÄÉã¡£¡£¡£GPHealthÊ×ϯִÐйÙMel McNeaÌåÏÖûÓÐÀíÓÉÏÓÒÉ»¼ÕßÊý¾ÝÔâµ½»á¼û£¬£¬£¬£¬£¬µ«¸Ã¹«Ë¾½«¾ÙÐÐÖÜÈ«µÄÉó²é¡£¡£¡£¸Ã¹«Ë¾»¹ÌåÏÖÕýÔÚÓëÖ´·¨²¿·ÖÏàÖú¾ÙÐÐÊӲ졣¡£¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÖÐʹÓõÄÀÕË÷Èí¼þÀàÐÍÒÔ¼°¸Ã¹«Ë¾ÊÇ·ñÖ§¸¶ÁËÊê½ð¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ransomware-locks-medical-records-at-great-plains-health/3¡¢Á¬Ëø²ÍÌüOn The Border¿Í»§Ö§¸¶ÐÅÏ¢±»µÁ

Á¬Ëø²ÍÌüOn The Border֪ͨ¿Í»§ÆäÖ§¸¶ÐÅÏ¢¿ÉÄÜÒѱ»ºÚ¿ÍÇÔÈ¡¡£¡£¡£¸Ã¹«Ë¾ÓÚ11ÔÂ14ÈÕ·¢Ã÷ÁË´ËÊÂÎñ£¬£¬£¬£¬£¬¹«Ë¾ÊÓ²ìÒÔΪÓÐ27¸öÖݵIJÍÌüÊܵ½Ó°Ïì¡£¡£¡£ÏÖÔÚµÄÖ¤¾ÝÅú×¢ÕâЩ²ÍÌüÔÚ2019Äê4ÔÂ10ÈÕÖÁ2019Äê8ÔÂ10ÈÕÖ®¼äѬȾÁ˶ñÒâÈí¼þ£¬£¬£¬£¬£¬¿ÉÄܱ»ÇԵĿͻ§ÐÅÏ¢°üÀ¨ÐÕÃû¡¢ÐÅÓÿ¨ºÅ¡¢ÓÐÓÃÆÚ¡¢ÑéÖ¤ÂëµÈ£¬£¬£¬£¬£¬µ«²»°üÀ¨³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¼°Éí·ÝID¡£¡£¡£ÓµÓÐOn The BorderµÄ˽ÈËͶ×ʹ«Ë¾Argonne Capital GroupÒ²ÓµÓпì²ÍÁ¬ËøµêKrystal£¬£¬£¬£¬£¬¸ÃÁ¬Ëøµê½üÆÚÒ²Ôâµ½Ö§¸¶ÐÅϢ͵ÇÔÊÂÎñ£¬£¬£¬£¬£¬ÏÖÔÚ»¹²»ÇåÎúÕâÁ½ÆðÊÂÎñÖ®¼äÊÇ·ñ±£´æ¹ØÁª¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/malware-found-payment-system-used-border-restaurants4¡¢¿¨°Í˹»ùÐÞ¸´Web Protection¹¦Ð§ÖеĶà¸öÎó²î
¿¨°Í˹»ùÐÞ¸´ÁËһЩÎó²î£¬£¬£¬£¬£¬ÕâЩÎó²îÓ°ÏìÁËÆäɱ¶¾Èí¼þ¡¢InternetÇå¾²¡¢Çå¾²ÔÆµÈ²úÆ·ÖеÄWeb Protection¹¦Ð§¡£¡£¡£Æ¾Ö¤Ñо¿Ö°Ô±Wladimir PalantµÄÐÎò£¬£¬£¬£¬£¬¿¨°Í˹»ùWeb Protection¹¦Ð§ÐèÒªÓëÖ÷Ó¦ÓóÌÐò¾ÙÐÐͨѶ£¬£¬£¬£¬£¬²¢ÇÒʹÓÃÒ»¸öWebÓò²»ÖªµÀµÄÃÜÔ¿À´È·±£Ç徲ͨѶ¡£¡£¡£È»¶øÓÉÓÚ±£´æÎó²î£¬£¬£¬£¬£¬ÍøÕ¾¿ÉÒÔºÜÈÝÒ׵ػñÈ¡´ËÃÜÔ¿£¬£¬£¬£¬£¬²¢ÏñWeb ProtectionÒ»ÑùÓëKasperskyÓ¦ÓóÌÐò½¨ÉèÅþÁ¬ºÍ·¢ËÍÏÂÁî¡£¡£¡£ÈôÊÇûÓÐ×°Öÿ¨°Í˹»ùµÄä¯ÀÀÆ÷²å¼þ£¬£¬£¬£¬£¬¿¨°Í˹»ù½«Ö±½Ó½«Æä¾ç±¾×¢Èëµ½ÍøÒ³ÖС£¡£¡£¸ÃÎó²î£¨CVE-2019-15685£©¿ÉÓÃÓÚ¾²Ä¬½ûÓÃ¹ã¸æ×èµ²ºÍ¸ú×Ù±£»£»£»£»£»£»£»¤¹¦Ð§¡£¡£¡£ÔÚ7Ô·ݿ¨°Í˹»ùÐÞ¸´´ËÎó²îºó£¬£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ÓÖÒýÈëÁËеÄÎÊÌ⣬£¬£¬£¬£¬°üÀ¨¿Éµ¼ÖÂɱ¶¾Èí¼þÍß½âµÄÎó²î£¨CVE-2019-15686£©ÒÔ¼°ÐÅϢй¶µÄÎó²î£¨CVE-2019-15687£©¡£¡£¡£¿£¿£¿£¿¨°Í˹»ùÔÚ11ÔÂ28ÈÕÐû²¼ÁËеÄÐÞ¸´²¹¶¡¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/kaspersky-patches-several-vulnerabilities-web-protection-features
5¡¢·¸·¨ÍÅ»ïRevengeHotelsÖ÷ÒªÕë¶ÔÈ«ÇòÂùÝ
¿¨°Í˹»ùÐû²¼¹ØÓÚ·¸·¨ÍÅ»ïRevengeHotelsµÄÕë¶ÔÐÔ¶ñÒâ»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£¸ÃÍÅ»ïÖ÷ÒªÕë¶ÔÂùݡ¢ÂÃÉá¡¢±ö¹ÝºÍÂÃÓι«Ë¾£¬£¬£¬£¬£¬¿¨°Í˹»ùÒÑÈ·ÈÏÁè¼Ý20¼ÒÂùݳÉΪÊܺ¦Õߣ¬£¬£¬£¬£¬ÕâЩÂùݻ®·ÖλÓÚ°ÍÎ÷µÄ8¸öÖݺͰ¢¸ùÍ¢¡¢²£ÀûάÑÇ¡¢ÖÇÀûµÈ¹ú¼Ò¡£¡£¡£¸Ã·¸·¨ÍÅ»ïÖ¼ÔÚÇÔÈ¡´æ´¢ÔÚÂùÝϵͳÖÐÒÔ¼°´ÓBooking.comµÈÔÚÏßÂÃÐÐÉçÇÔÈ¡µÄ¿Í»§ÐÅÓÿ¨Êý¾Ý¡£¡£¡£¸ÃÍÅ»ï×Ô2015ÄêÒÔÀ´Ò»Ö±»îÔ¾£¬£¬£¬£¬£¬µ«Æä»î¶¯ÔÚ2019ÄêµÖ´ïáÛ·å¡£¡£¡£Ö÷ÒªµÄ¹¥»÷ǰÑÔÊÇͨ¹ýµç×ÓÓʼþ·¢Ë͵ĶñÒâWord¡¢Excel»òPDFÎĵµ£¬£¬£¬£¬£¬ËüÃǰüÀ¨RevengeRAT¡¢NjRAT¡¢NanoCoreRAT¡¢888 RATµÈ¶ñÒâÈí¼þ¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/revengehotels/95229/
6¡¢ºÉÀ¼NCSCÖÒÑÔ3ÖÖÀÕË÷Èí¼þÒÑѬȾȫÇò1800¼ÒÆóÒµ
ºÉÀ¼¹ú¼ÒÍøÂçÇå¾²ÖÐÐÄ£¨NCSC£©µÄÉñÃØ±¨¸æÏÔʾ£¬£¬£¬£¬£¬È«ÇòÖÁÉÙÓÐ1800¼Ò¹«Ë¾Êܵ½3ÖÖÀÕË÷Èí¼þµÄÓ°Ïì¡£¡£¡£ÕâÈýÖÖÀÕË÷Èí¼þ»®·ÖÊÇLockerGoga¡¢MegaCortexºÍRyuk£¬£¬£¬£¬£¬ËüÃDz¿·ÖÒÀÀµÓÚÏàͬµÄ»ù´¡ÉèÊ©£¬£¬£¬£¬£¬ÕâÅú×¢ËüÃÇ»ñÈ¡ÆóÒµÍøÂç»á¼ûȨÏ޵ķ½·¨¿ÉÄÜÓëÒ»¸ö¼òµ¥ÈëÇÖÕßÓйء£¡£¡£NCSCûÓÐÔÚ±¨¸æÖÐÌṩÊÜÓ°Ï칫˾µÄÃû³Æ£¬£¬£¬£¬£¬µ«ÌåÏÖ¹¥»÷ÕßµÄÄ¿µÄÊÇÊÕÈëȪԴ´ïÊý°ÙÍò»òÊýÊ®ÒÚÃÀÔªµÄ´óÐÍÆóÒµ¡£¡£¡£Êܺ¦ÕßÀ´×ÔÆû³µ¡¢ÐÞ½¨¡¢»¯Ñ§¡¢Ò½ÁÆ¡¢Ê³ÎïºÍÓéÀֵȸ÷¸öÁìÓò£¬£¬£¬£¬£¬ÖÁÉÙÓÐÒ»¸öÒªº¦»ù´¡ÉèÊ©ÁìÓòµÄÆóÒµÔâµ½¹¥»÷¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/dutch-govt-warns-of-3-ransomware-infecting-1-800-businesses/