AdobeÐû²¼²¹¶¡ÐÞ¸´¶à¿î²úÆ·Îó²î:KasperskyÐû²¼Ó¦¼±ÏìÓ¦ÊÂÎñ±¨¸æ

Ðû²¼Ê±¼ä 2021-09-17

AdobeÐû²¼ÐÇÆÚ¶þ²¹¶¡£¬£¬£¬£¬ÐÞ¸´¶à¿î²úÆ·ÖеÄ59¸öÎó²î


AdobeÐû²¼ÐÇÆÚ¶þ²¹¶¡£¬£¬£¬£¬ÐÞ¸´¶à¿î²úÆ·ÖеÄ59¸öÎó²î.png


AdobeÐû²¼ÐÇÆÚ¶þÇå¾²¸üУ¬£¬£¬£¬ÐÞ¸´ÁËAdobe Acrobat Reader¡¢XMP Toolkit SDKºÍPhotoshopµÈ²úÆ·ÖеÄ59¸öÎó²î¡£¡£¡£¡£ ¡£¡£¡£´Ë´ÎÐÞ¸´µÄ½ÏΪÑÏÖØµÄÊÇPhotoshopÖлº³åÇøÒç³öµ¼ÖµÄí§Òâ´úÂëÖ´ÐÐÎó²î£¨CVE-2021-40709£©¡¢FramemakerÖеÄí§Òâ´úÂëÖ´ÐÐÎó²î£¨CVE-2021-39830¡¢CVE-2021-39829ºÍCVE-2021-39831£©ÒÔ¼°InDesignÖеÄí§Òâ´úÂëÖ´ÐÐÎó²î£¨CVE-2021-39820£©µÈ¡£¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/adobe-bugs-acrobat-experience-manager/169467/


HP OMEN Gaming HubÖÐÌáȨÎó²îÓ°ÏìÊý°ÙÍòÅÌËã»ú


HP OMEN Gaming HubÖÐÌáȨÎó²îÓ°ÏìÊý°ÙÍòÅÌËã»ú.jpg


SentinelLabsÓÚ9ÔÂ14ÈÕÅû¶ÁËHP OMEN Gaming HubÖеÄÌáȨÎó²î£¬£¬£¬£¬¿ÉÄÜÓ°ÏìÊý°ÙÍǫ̀ÅÌËã»ú¡£¡£¡£¡£ ¡£¡£¡£¸ÃÎó²î×·×ÙΪCVE-2021-3437£¬£¬£¬£¬CVSSÆÀ·ÖΪ7.8£¬£¬£¬£¬ÒÑÓÚ2021Äê2ÔÂ17ÈÕ±¨¸æ¸ø»ÝÆÕ£¬£¬£¬£¬¸Ã¹«Ë¾ÔÚ7ÔÂ27ÈÕÐû²¼ÁËÇå¾²¸üС£¡£¡£¡£ ¡£¡£¡£¸ÃÎó²îÔ´ÓÚ¶ÔOpenLibSys¿ª·¢µÄWinRing0.sysÖÐÎó²î´úÂëµÄÖØÓ㬣¬£¬£¬¹¥»÷Õß¿ÉʹÓÃÆä½ûÓÃÇå¾²²úÆ·¡¢ÁýÕÖϵͳ×é¼þ¡¢ÆÆËð²Ù×÷ϵͳ»òÖ´ÐÐÆäËü¶ñÒâ²Ù×÷¡£¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.sentinelone.com/labs/cve-2021-3437-hp-omen-gaming-hub-privilege-escalation-bug-hits-millions-of-gaming-devices/


Zloader»Ø¹é£¬£¬£¬£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ


Zloader»Ø¹é£¬£¬£¬£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ.jpg


Ñо¿Ö°Ô±·¢Ã÷ZloaderÐÂÒ»ÂֵĹ¥»÷»î¶¯£¬£¬£¬£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ¡£¡£¡£¡£ ¡£¡£¡£ZLoaderÓÚ2016ÄêÊ״α»·¢Ã÷£¬£¬£¬£¬ÊÇÒ»Öֵ䷶µÄÒøÐÐľÂí£¬£¬£¬£¬¿ÉÓÃÀ´ÇÔÈ¡cookie¡¢ÃÜÂëºÍÈκÎÃô¸ÐÐÅÏ¢¡£¡£¡£¡£ ¡£¡£¡£´Ë´Î¹¥»÷½ÓÄÉÁׯü¸ß¼¶µÄÒþ²ØÊÖÒÕ£¬£¬£¬£¬ÆäµÚÒ»½×¶ÎµÄdropperÒÑ´Ó¶ñÒâÎĵµ¸ü¸ÄΪÒþ²ØµÄ¡¢ÒÑÊðÃûµÄMSI payload¡£¡£¡£¡£ ¡£¡£¡£±ðµÄ£¬£¬£¬£¬Ëü»¹¿ÉÒÔ½ûÓÃÄ¿µÄÅÌËã»úÉϵÄMicrosoft Defender AntivirusÀ´Èƹý¼ì²â¡£¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/new-zloader-attacks-disable-windows-defender-to-evade-detection/


¿Í»§Ð§À͹«Ë¾TTECÔâµ½Ragnar LockerÀÕË÷¹¥»÷


¿Í»§Ð§À͹«Ë¾TTECÔâµ½Ragnar LockerÀÕË÷¹¥»÷.png


9ÔÂ14ÈÕ£¬£¬£¬£¬ÃÀ¹úµÄ¿Í»§Ð§À͹«Ë¾TTEC֪ͨԱ¹¤ÆäÔâµ½ÁË¿ÉÄÜÊÇÀ´×ÔRagnar LockerµÄÀÕË÷¹¥»÷¡£¡£¡£¡£ ¡£¡£¡£¹¥»÷±¬·¢ÔÚ9ÔÂ12ÈÕ£¬£¬£¬£¬¸Ã¹«Ë¾ÔÚ֪ͨÖÐÌáÐÑÔ±¹¤²»Òª·­¿ªWindows×îÏȲ˵¥ÖÐͻȻ·ºÆðµÄÃûΪ¡°!RA!G!N!A!R!¡±µÄÎļþ¡£¡£¡£¡£ ¡£¡£¡£TTECÌåÏִ˴ι¥»÷µ¼Ö´󲿷ÖÔ±¹¤¶¼ÎÞ·¨Õý³£ÊÂÇ飬£¬£¬£¬ÆäÔÚÆð¾¢»Ö¸´ÊÜÓ°Ïìϵͳ£¬£¬£¬£¬ÏÖÔÚÉÐδ·¢Ã÷¿Í»§Êý¾Ýй¶µÄÇéÐΡ£¡£¡£¡£ ¡£¡£¡£



Ô­ÎÄÁ´½Ó£º

https://krebsonsecurity.com/2021/09/customer-care-giant-ttec-hit-by-ransomware/


ÐÂÎ÷À¼CERT NZÐû²¼Õë¶ÔÆóÒµµÄÀÕË÷Èí¼þ±£» £» £»£»£»£»£»¤Ö¸ÄÏ


ÐÂÎ÷À¼CERT NZÐû²¼Õë¶ÔÆóÒµµÄÀÕË÷Èí¼þ±£»£»£»£»£»£»£»¤Ö¸ÄÏ.png


ÐÂÎ÷À¼ÅÌËã»úÓ¦¼±ÏìӦС×é(CERT NZ)ÓÚ9ÔÂ14ÈÕÐû²¼ÁËÕë¶ÔÆóÒµµÄÀÕË÷Èí¼þ±£» £» £»£»£»£»£»¤Ö¸ÄÏ¡£¡£¡£¡£ ¡£¡£¡£¸ÃÖ¸ÄÏʹÓÃ2ÕÅͼ±í£¬£¬£¬£¬¸ÅÊöÁ˲î±ðµÄÀÕË÷Èí¼þ¹¥»÷µÄ;¾¶£¬£¬£¬£¬²¢ËµÃ÷ÎúÏà¹ØÇå¾²¿ØÖƲ½·¥¿ÉÒÔÔÚÄÄЩ·½ÃæÊ©Õ¹×÷ÓÃÀ´µÖÓù¹¥»÷¡£¡£¡£¡£ ¡£¡£¡£±ðµÄ£¬£¬£¬£¬CERT NZ²»½¨Òé×éÖ¯Ö§¸¶Êê½ð£¬£¬£¬£¬ÓÉÓÚÕâ²»¿É°ü¹ÜÎļþ»á±»Í˻أ¬£¬£¬£¬²¢ÇÒ¿ÉÄÜʹÊܺ¦Õß³ÉΪ½øÒ»²½¹¥»÷µÄÄ¿µÄ¡£¡£¡£¡£ ¡£¡£¡£  


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/09/14/cert-nz-releases-ransomware-protection-guide-businesses


KasperskyÐû²¼2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄÆÊÎö±¨¸æ


KasperskyÐû²¼2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄÆÊÎö±¨¸æ.png


KasperskyÔÚ9ÔÂ13ÈÕÐû²¼ÁËÓйØ2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄÆÊÎö±¨¸æ¡£¡£¡£¡£ ¡£¡£¡£±¨¸æÆÊÎöÁËKasperskyÔÚ2020Ä꿪չµÄÊÂÎñÊÓ²ìЧÀÍ£¬£¬£¬£¬²¢´ÓÆô¶¯ÊÂÎñÏìÓ¦µÄÔµ¹ÊÔ­ÓÉ¡¢¹¥»÷ÕßÔõÑù½øÈëÄ¿µÄÍøÂ硢ʹÓõŤ¾ßºÍÎó²îÒÔ¼°¹¥»÷Ò»Á¬Ê±¼äÕâ4¸ö·½ÃæÁÙÆä¾ÙÐÐÁËÆÊÎö¡£¡£¡£¡£ ¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬´ó´ó¶¼Ó¦¼±ÏìÓ¦ÊÂÎñÀ´×Ô¶íÂÞ˹ºÍ¶ÀÁªÌå(27.8%)¡¢Å·ÃË(24.7%)ºÍÖж«(22.7%)µØÇø£» £» £»£»£»£»£»ÆäÖУ¬£¬£¬£¬¹¤ÒµÐÐÒµÊܵ½µÄÓ°Ïì×î´ó(22%)£¬£¬£¬£¬Æä´ÎÊÇÕþ¸®»ú¹¹(19%)¡£¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/incident-response-analyst-report-2020/104080/