Gladinet¼ÓÃÜÎó²îÖÂ9¼Ò»ú¹¹±»Ô¶³Ì¹¥»÷

Ðû²¼Ê±¼ä 2025-12-15

1. Gladinet¼ÓÃÜÎó²îÖÂ9¼Ò»ú¹¹±»Ô¶³Ì¹¥»÷


12ÔÂ11ÈÕ£¬£¬£¬£¬£¬£¬£¬ºÚ¿ÍÕýʹÓÃGladinet CentreStackºÍTriofox²úÆ·ÖÐδ¼Í¼µÄ¼ÓÃÜËã·¨Îó²îʵÑé¹¥»÷¡£ ¡£¡£¸ÃÎó²îÔ´ÓÚAES¼ÓÃÜËã·¨µÄ×Ô½ç˵ʵÏÖ±£´æÓ²±àÂëÃÜԿȱÏÝ£¬£¬£¬£¬£¬£¬£¬GladCtrl64.dllÎļþÖд洢µÄ¼ÓÃÜÃÜÔ¿ºÍ³õʼ»¯ÏòÁ¿£¨IV£©Ô´×ÔÁ½¸ö¾²Ì¬µÄ100×Ö½ÚÖÐÎÄ×Ö·û´®£¬£¬£¬£¬£¬£¬£¬ÔÚËùÓвúÆ·×°ÖÃÖÐÍêÈ«Ïàͬ¡£ ¡£¡£¹¥»÷Õß¿ÉÌáÈ¡ÕâЩÃÜÔ¿½âÃÜ»á¼ûƱ¾Ýº¬Îļþ·¾¶¡¢Óû§Æ¾Ö¤µÈÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬»òαÔìÆ±¾Ýð³äÓû§»ñȡϵͳÎļþ¡£ ¡£¡£Ïêϸ¹¥»÷·¾¶ÏÔʾ£¬£¬£¬£¬£¬£¬£¬ÍþвÐÐΪÕßͨ¹ý"filesvr.dn"´¦Öóͷ£³ÌÐòʹÓÃÎó²î£¬£¬£¬£¬£¬£¬£¬½«»á¼ûƱ¾ÝµÄʱ¼ä´ÁÉèÖÃΪ9999ÄêʵÏÖÓÀÊÀÓÐÓ㬣¬£¬£¬£¬£¬£¬ËæºóÇëÇóweb.configÎļþ»ñÈ¡machineKey£¬£¬£¬£¬£¬£¬£¬×îÖÕͨ¹ýViewState·´ÐòÁл¯´¥·¢Ô¶³Ì´úÂëÖ´ÐС£ ¡£¡£HuntressÇå¾²ÍŶӼà²â·¢Ã÷£¬£¬£¬£¬£¬£¬£¬ÖÁÉÙ9¼ÒÒ½ÁÆ¡¢ÊÖÒÕµÈÐÐÒµµÄ»ú¹¹Ôâ´Ë¹¥»÷£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß»¹Á¬ÏµÁ˾ÉÎó²îCVE-2025-30406À©´óÆÆËð¡£ ¡£¡£GladinetÒÑÐû²¼½ôÆÈ¸üУ¬£¬£¬£¬£¬£¬£¬²¢½¨ÒéÓû§Éý¼¶ºóÁ¬Ã¦ÂÖ»»»úеÃÜÔ¿¡£ ¡£¡£


https://www.bleepingcomputer.com/news/security/hackers-exploit-gladinet-centrestack-cryptographic-flaw-in-rce-attacks/


2. ConsentFix¹¥»÷ÈÆ¹ýMFAÐ®ÖÆÎ¢ÈíÕË»§


12ÔÂ11ÈÕ£¬£¬£¬£¬£¬£¬£¬ÍøÂçÇå¾²¹«Ë¾Push Security·¢Ã÷Ò»ÖÖÃûΪ¡°ConsentFix¡±µÄÐÂÐÍClickFix¹¥»÷±äÖÖ£¬£¬£¬£¬£¬£¬£¬¸Ã¹¥»÷ͨ¹ýÀÄÓÃAzure CLI OAuthÓ¦ÓóÌÐò£¬£¬£¬£¬£¬£¬£¬ÔÚÎÞÐèÃÜÂë»ò¶àÒòËØÉí·ÝÑéÖ¤£¨MFA£©µÄÇéÐÎÏÂÐ®ÖÆMicrosoftÕË»§¡£ ¡£¡£¹¥»÷ʼÓÚÊܺ¦Õß»á¼û±»ÈëÇÖµÄÕýµ±ÍøÕ¾£¬£¬£¬£¬£¬£¬£¬ÕâÐ©ÍøÕ¾Í¨¹ýGoogleËÑË÷Õë¶ÔÌØ¶¨Òªº¦´ÊÅÅÃû¿¿Ç°¡£ ¡£¡£ÍøÕ¾Ò³Ãæ»áÏÔʾαÔìµÄCloudflare TurnstileÑéÖ¤ÂëС²¿¼þ£¬£¬£¬£¬£¬£¬£¬ÒªÇóÓû§ÊäÈëÓÐÓÃÆóÒµÓÊÏ䵨µã£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õ߾籾»á¹ýÂË»úеÈË¡¢ÆÊÎöʦ¼°Î´ÁÐÈëÄ¿µÄµÄÓû§¡£ ¡£¡£Í¨¹ýÑéÖ¤µÄÓû§½«¿´µ½ÀàËÆClickFixµÄ½»»¥Ò³Ã棬£¬£¬£¬£¬£¬£¬Ö¸µ¼ÆäÖ´ÐС°ÑéÖ¤ÈËÀàÉí·Ý¡±µÄ²Ù×÷¡£ ¡£¡£Óû§µã»÷Ò³ÃæÖеġ°µÇ¼¡±°´Å¥ºó£¬£¬£¬£¬£¬£¬£¬»á±»Öض¨Ïòµ½Õýµ±µÄ΢ÈíAzureµÇÂ¼Ò³Ãæ¡£ ¡£¡£ÈôÓû§ÒѵǼ΢ÈíÕË»§£¬£¬£¬£¬£¬£¬£¬Ö»ÐèÑ¡Ôñ×Ô¼ºµÄÕË»§£»£»£»£»£»ÈôδµÇ¼£¬£¬£¬£¬£¬£¬£¬ÔòÐèÔÚ΢Èí¹Ù·½Ò³ÃæÍê³ÉÕý³£Éí·ÝÑéÖ¤¡£ ¡£¡£Íê³ÉµÇ¼ºó£¬£¬£¬£¬£¬£¬£¬Î¢Èí»á½«Óû§Öض¨Ïòµ½µ±ÌïÖ÷»úÒ³Ãæ£¬£¬£¬£¬£¬£¬£¬´Ëʱä¯ÀÀÆ÷µØµãÀ¸»áÏÔʾ°üÀ¨Azure CLI OAuthÊÚȨÂëµÄURL¡£ ¡£¡£µ±Óû§Æ¾Ö¤Ö¸Ê¾½«¸ÃURLÕ³Ìùµ½¶ñÒâÒ³ÃæÊ±£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¼´¿Éͨ¹ýAzure CLI OAuthÓ¦ÓûñÈ¡ÍêÕûµÄÕË»§»á¼ûȨÏÞ¡£ ¡£¡£


https://www.bleepingcomputer.com/news/security/new-consentfix-attack-hijacks-microsoft-accounts-via-azure-cli/


3. PayPal¶©ÔĹ¦Ð§ÔâÀÄÓÃÖÂÕ©Æ­ÓʼþÂþÒç


12ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬£¬½üÆÚ£¬£¬£¬£¬£¬£¬£¬Õ©Æ­·Ö×ÓÀÄÓÃPayPalµÄ¡°¶©ÔÄ¡±¼Æ·Ñ¹¦Ð§£¬£¬£¬£¬£¬£¬£¬ÏòÓû§·¢ËÍαװ³ÉÕýµ±PayPalÓʼþµÄÕ©Æ­ÐÅÏ¢¡£ ¡£¡£ÕâÀàÓʼþÉù³Æ¡°×Ô¶¯¸¶¿îʧЧ¡±£¬£¬£¬£¬£¬£¬£¬ÊµÔòǶÈëÐéα¹ºÖÃ֪ͨ£¬£¬£¬£¬£¬£¬£¬ÈçÉù³ÆÓû§¹ºÖÃÁËË÷Äá×°±¸¡¢MacBook»òiPhoneµÈÌÚ¹óÉÌÆ·£¬£¬£¬£¬£¬£¬£¬²¢¸½ÓÐ1300ÖÁ1600ÃÀÔª²»µÈµÄ¸¶¿î¼Í¼¼°¡°¿Í·þµç»°¡±¡£ ¡£¡£Óʼþͨ¹ý¡°mailto:service@paypal.com¡±µØµã·¢ËÍ£¬£¬£¬£¬£¬£¬£¬ÇÒͨ¹ýÁËDKIM¡¢SPF¼°DMARCµÈÓʼþÇå¾²ÈÏÖ¤£¬£¬£¬£¬£¬£¬£¬Ö±½ÓÀ´×ÔPayPal¹Ù·½Ð§ÀÍÆ÷£¬£¬£¬£¬£¬£¬£¬Òò´ËÄÜÈÆ¹ýÀ¬»øÓʼþ¹ýÂËÆ÷£¬£¬£¬£¬£¬£¬£¬¼«¾ßÓÕÆ­ÐÔ¡£ ¡£¡£Õ©Æ­·Ö×Óͨ¹ýÐ޸Ŀͻ§Ð§ÀÍURL×ֶΣ¬£¬£¬£¬£¬£¬£¬½«ÐéαÐÅϢǶÈëÕýµ±ÓʼþÄ£°å¡£ ¡£¡£ÀýÈ磬£¬£¬£¬£¬£¬£¬URLÖпÉÄܰüÀ¨ÓòÃû¡¢¸¶¿î½ð¶î¼°¡°×÷·Ï»ò×Éѯ¡±µç»°ºÅÂ룬£¬£¬£¬£¬£¬£¬²¢¼ÐÔÓUnicode×Ö·ûÒÔ´ÖÌå»òÌØÊâ×ÖÌåÏÔʾ£¬£¬£¬£¬£¬£¬£¬ÊÔͼ¹æ±ÜÒªº¦´Ê¼ì²â¡£ ¡£¡£Í¨¹ý²âÊÔ·¢Ã÷£¬£¬£¬£¬£¬£¬£¬µ±É̼ÒÔÝÍ£¶©ÔÄÓû§Ê±£¬£¬£¬£¬£¬£¬£¬PayPal»á×Ô¶¯·¢ËÍ֪ͨÓʼþ£¬£¬£¬£¬£¬£¬£¬¶øÕ©Æ­Õß¿ÉÄÜʹÓö©ÔÄÔªÊý¾Ý´¦Öóͷ£Îó²î»ò¾Éƽ̨½Ó¿Ú£¬£¬£¬£¬£¬£¬£¬ÔÚURL×Ö¶ÎÖÐ×¢ÈëÎÞЧÎı¾£¬£¬£¬£¬£¬£¬£¬´Ó¶øÌìÉúÕ©Æ­Óʼþ¡£ ¡£¡£ÕâЩÓʼþ¿ÉÄܱ»×ª·¢ÖÁδע²áPayPal¶©ÔĵÄÓû§¡£ ¡£¡£


https://www.bleepingcomputer.com/news/security/beware-paypal-subscriptions-abused-to-send-fake-purchase-emails/


4. Ç×¶íVolkLockerÀÕË÷Èí¼þÎó²î»òÖÂÃ⺬»ìÃÜ


12ÔÂ13ÈÕ£¬£¬£¬£¬£¬£¬£¬Ç×¶íºÚ¿Í×éÖ¯CyberVolkÍÆ³öµÄÀÕË÷Èí¼þ¼´Ð§ÀÍ£¨RaaS£©VolkLocker±£´æÖØ´óʵÏÖȱÏÝ£¬£¬£¬£¬£¬£¬£¬Ê¹Êܺ¦Õß¿ÉÄÜÎÞÐèÖ§¸¶Êê½ð¼´¿É»Ö¸´Îļþ¡£ ¡£¡£¾ÝSentinelOneÑо¿£¬£¬£¬£¬£¬£¬£¬¸ÃÈí¼þÔÚ¶þ½øÖÆÎļþÖÐÓ²±àÂëÁËÖ÷ÃÜÔ¿£¬£¬£¬£¬£¬£¬£¬ÇÒ¸ÃÃÜÔ¿ÒÔÃ÷ÎÄÐÎʽ´æ´¢ÓÚÊÜѬȾ»úеµÄ%TEMP%Îļþ¼ÐÖУ¬£¬£¬£¬£¬£¬£¬Êܺ¦Õß¿Éͨ¹ýÌáÈ¡¸ÃÃÜԿʵÑé½âÃÜ¡£ ¡£¡£VolkLocker½ÓÄÉAES-256 GCM¼ÓÃÜ£¬£¬£¬£¬£¬£¬£¬Ã¿¸öÎļþʹÓÃËæ»ú12×Ö½Únonce×÷Ϊ³õʼ»¯ÏòÁ¿£¬£¬£¬£¬£¬£¬£¬¼ÓÃܺ󸽼Ó.locked»ò.cvolkÀ©Õ¹Ãû²¢É¾³ýԭʼÎļþ¡£ ¡£¡£È»¶ø£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚËùÓÐÎļþ¹²ÏíͳһÖ÷ÃÜÔ¿ÇÒÃÜԿδ±»É¾³ý£¬£¬£¬£¬£¬£¬£¬¸ÃÎó²îÏÔÖøÏ÷ÈõÁËÆäÀÕË÷ÄÜÁ¦¡£ ¡£¡£CyberVolk×ܲ¿Î»ÓÚÓ¡¶È£¬£¬£¬£¬£¬£¬£¬×Ô2024ÄêÆð»îÔ¾£¬£¬£¬£¬£¬£¬£¬Ôø¶Ô·´¶í»òÖ§³ÖÎÚ¿ËÀ¼µÄʵÌåÌᳫDDoSºÍÀÕË÷¹¥»÷¡£ ¡£¡£2025Äê8Ô£¬£¬£¬£¬£¬£¬£¬¸Ã×éÖ¯ÒÔVolkLocker 2.x°æ±¾»Ø¹é£¬£¬£¬£¬£¬£¬£¬Í¬Ê±Õë¶ÔLinux/VMware ESXiºÍWindowsϵͳ£¬£¬£¬£¬£¬£¬£¬²¢ÒýÈëGolang׼ʱÆ÷¹¦Ð§£¬£¬£¬£¬£¬£¬£¬Èô³¬Ê±»òÊäÈë¹ýʧÃÜÔ¿£¬£¬£¬£¬£¬£¬£¬½«²Á³ýÓû§Îĵµ¡¢ÏÂÔØ¡¢Í¼Æ¬ºÍ×ÀÃæÎļþ¼Ð¡£ ¡£¡£RaaS¶¨¼Û°´²Ù×÷ϵͳ¼Ü¹¹»®·Ö£º¼òµ¥ÏµÍ³800-1100ÃÀÔª£¬£¬£¬£¬£¬£¬£¬Ë«ÏµÍ³1600-2200ÃÀÔª£¬£¬£¬£¬£¬£¬£¬¹ºÖÃÕß¿Éͨ¹ýTelegram¹¹½¨»úеÈ˶¨ÖƼÓÃÜÆ÷²¢»ñÈ¡ÓÐÓÃÔØºÉ¡£ ¡£¡£Í¬Äê11Ô£¬£¬£¬£¬£¬£¬£¬¸Ã×éÖ¯»¹ÍƳö500ÃÀÔªµÄÔ¶³Ì»á¼ûľÂíºÍ¼üÅ̼ͼÆ÷¡£ ¡£¡£


https://www.bleepingcomputer.com/news/security/cybervolks-ransomware-debut-stumbles-on-cryptography-weakness/


5. CISA¸üÐÂKEVĿ¼£¬£¬£¬£¬£¬£¬£¬ÒªÇóÁª°î»ú¹¹2026ÄêÍ·ÐÞ¸´Îó²î


12ÔÂ13ÈÕ£¬£¬£¬£¬£¬£¬£¬ÃÀ¹úÍøÂçÇå¾²ºÍ»ù´¡ÉèÊ©Çå¾²¾Ö£¨CISA£©¿ËÈÕ½«CVE-2025-14174£¨Google ChromiumÔ½½çÄÚ´æ»á¼ûÎó²î£©ºÍCVE-2018-4063£¨Sierra Wireless AirLink ALEOSÎÞÏÞÖÆÉÏ´«Îó²î£©Ôö²¹ÖÁÒÑÖª¿ÉʹÓÃÎó²î£¨KEV£©Ä¿Â¼¡£ ¡£¡£CVE-2025-14174ÊÇGoogle Chrome 143.0.7499.110°æ±¾Ç°Macϵͳ±£´æµÄANlgeͼÐοâÎó²î¡£ ¡£¡£¸ÃÎó²îÔ´ÓÚMetaläÖȾÆ÷¶ÔGL_UNPACK_IMAGE_HEIGHTÖµµÄ¹ýʧÅÌË㣬£¬£¬£¬£¬£¬£¬µ±Í¼Ïñ¸ß¶ÈÁè¼Ý»º³åÇøÈÝÁ¿Ê±£¬£¬£¬£¬£¬£¬£¬»á´¥·¢Ô½½çÄÚ´æ»á¼û£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂÄÚ´æË𻵡¢³ÌÐòÍß½âÉõÖÁí§Òâ´úÂëÖ´ÐС£ ¡£¡£¹È¸èÒÑͨ¹ýÇå¾²¸üÐÂÐÞ¸´´ËÎó²î£¬£¬£¬£¬£¬£¬£¬²¢È·ÈϸÃÎó²îÒÑÔÚÏÖʵ¹¥»÷Öб»Ê¹Óᣠ¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬£¬£¬£¬£¬¹È¸èδ¹ûÕæÊÖÒÕϸ½Ú£¬£¬£¬£¬£¬£¬£¬µ«GitHubÌá½»¼Í¼ÏÔʾÎó²îÓ뻺³åÇøÒç³öÖ±½ÓÏà¹Ø¡£ ¡£¡£ÁíÒ»Îó²îCVE-2018-4063ÔòÓ°ÏìSierra Wireless AirLink ES450¹Ì¼þ4.9.3µÄupload.cgi×é¼þ¡£ ¡£¡£¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õ߿ɷ¢ËÍÌØÖÆHTTPÇëÇ󣬣¬£¬£¬£¬£¬£¬ÔÚ×°±¸WebЧÀÍÆ÷ÉÏ´«²¢Ö´ÐжñÒâ´úÂ룬£¬£¬£¬£¬£¬£¬ÊµÏÖÔ¶³Ì´úÂëÖ´ÐС£ ¡£¡£¸ÃÎó²î×Ô2018ÄêÅû¶ÒÔÀ´£¬£¬£¬£¬£¬£¬£¬ÒòδʵʱÐÞ¸´ÈÔ±»CISAÄÉÈëĿ¼¡£ ¡£¡£


https://securityaffairs.com/185639/security/u-s-cisa-adds-google-chromium-and-sierra-wireless-airlink-aleos-flaws-to-its-known-exploited-vulnerabilities-catalog.html


6. ·´µÁ°æÍ¬ÃËACEµ·»ÙÓ¡¶È°ÙÍò¼¶·Ã¿ÍµÁ°æÆ½Ì¨


12ÔÂ12ÈÕ£¬£¬£¬£¬£¬£¬£¬ÓɵÏÊ¿Äá¡¢»ªÄÉÐֵܡ¢NetflixµÈ50Óà¼ÒÓ°ÊÓÍøÂç¾ÞÍ·Ö§³ÖµÄ´´ÒâÓëÓéÀÖͬÃË£¨ACE£©½üÆÚÔÚÓ¡¶ÈÌᳫ´ó¹æÄ£·´µÁ°æÐж¯£¬£¬£¬£¬£¬£¬£¬Àֳɵ·»ÙÍâµØ×îÊܽӴýµÄÁ÷ýÌåµÁ°æÐ§ÀÍÖ®Ò»MKVCinemas¼°Æä25¸öÏà¹ØÓòÃû¡£ ¡£¡£¸Ãƽ̨ÔÚ2024-2025Äê¼äÎüÒý³¬1.424ÒڷÿÍ£¬£¬£¬£¬£¬£¬£¬ÎªÊý°ÙÍòÓû§ÌṩÃâ·ÑÓ°Ï·µçÊÓ×ÊÔ´¡£ ¡£¡£ACEͨ¹ýÐÌÊÂÒÆËÍ¡¢ÃñÊÂËßËϼ°×èÖ¹ÁîÐж¯£¬£¬£¬£¬£¬£¬£¬ÆÈʹλÓÚÓ¡¶È±È¹þ¶û°îµÄÔËÓªÉÌ×èÖ¹ÔËÓª²¢Òƽ»ÓòÃû¿ØÖÆÈ¨£¬£¬£¬£¬£¬£¬£¬ËùÓÐMKVCinemasÍøÕ¾ÏÖÒÑÖØ¶¨ÏòÖÁACEµÄ¡°Õýµ±Ô¢Ä¿¡±ÃÅ»§£¬£¬£¬£¬£¬£¬£¬ÇжϵÁ°æÄÚÈÝÈö²¥Â·¾¶¡£ ¡£¡£´Ë´ÎÐж¯»¹¹Ø±ÕÁËÒ»¿îÆÕ±éʹÓõÄÎļþ¿Ë¡¹¤¾ß£¬£¬£¬£¬£¬£¬£¬¸Ã¹¤¾ßͨ¹ýÒþ²ØÔƴ洢ýÌåÎļþȪԴ£¬£¬£¬£¬£¬£¬£¬×ÊÖúÓ¡¶È¼°Ó¡ÄáÓû§Èƹýϼܲ½·¥£¬£¬£¬£¬£¬£¬£¬Á½ÄêÄÚ»ñ2.314Òڴλá¼û£¬£¬£¬£¬£¬£¬£¬³ÉΪµÁ°æÄÚÈÝ·Ö·¢µÄÒªº¦ÊÖÒÕÖ§³Ö¡£ ¡£¡£ÃÀ¹úӰϷЭ»áÖ´Ðи±×ܲÃÀ­ÀïÈø¡¤¿ËÄÉÆÕÇ¿µ÷£¬£¬£¬£¬£¬£¬£¬ACE½«Ò»Á¬×·²é²»·¨ÔËÓª£¬£¬£¬£¬£¬£¬£¬Î¬»¤Çå¾²¿ÉÒ»Á¬µÄÊг¡ÇéÐΡ£ ¡£¡£


https://www.bleepingcomputer.com/news/security/mkvcinemas-streaming-piracy-service-with-142m-visits-shuts-down/