KasperskyÐû²¼Q3·ÖÎö³ÂËߣºAppleÐû²¼Äþ¾²¸üÐÂÐÞ¸´iOS©¶´

Ðû²¼Ê±¼ä 2021-10-29

ÀÕË÷ÔËÓªÍÅ»ïGrief³ÆÒÑÈëÇÖÃÀ¹ú²½Ç¹Ð­»áNRAµÄϵͳ


ÀÕË÷ÔËÓªÍÅ»ïGrief³ÆÒÑÈëÇÖÃÀ¹ú²½Ç¹Ð­»áNRAµÄϵͳ.png


10ÔÂ27ÈÕ£¬ÀÕË÷ÔËÓªÍÅ»ïGriefÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾ÉÏÐû²¼ÒÑÈëÇÖÃÀ¹ú²½Ç¹Ð­»áNRAµÄϵͳ¡£¹¥»÷Õß¹ûÈ»ÁËÒ»¸ö2.7 MBµÄÎļþNational Grants.zip×÷ΪÑù±¾£¬ÆäÖÐÉæ¼°NRA²¦¿îÉêÇëµÈÐÅÏ¢£¬ÒÔ¼°°üÂÞÁË˰ÎñÐÅÏ¢ºÍͶ×ʽð¶îExcel±í¸ñµÄ½ØÍ¼¡£Ä¿Ç°£¬NRA²¢Î´¶Ô´ËÊÂ×÷³öÆÀÂÛ¡£¾ÝÐÅ£¬GriefÍÅ»ïÓë¶íÂÞ˹Evil CorpÓйØ£¬ºóÕßΪÁËÌÓ±ÜÖÆ²ÃʹÓÃÁËWastedLocker¡¢HadesºÍPhoenix LockerµÈ¶à¸öÀÕË÷Èí¼þ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/123849/cyber-crime/grief-ransomware-hit-nra.html


Abnormal·¢ÏÖ½üÆÚÀûÓÃQRÂëÈÆ¹ýURL¼ì²âµÄµöÓã»î¶¯


Abnormal·¢ÏÖ½üÆÚÀûÓÃQRÂëÈÆ¹ýURL¼ì²âµÄµöÓã»î¶¯.png


AbnormalÑо¿ÍŶÓÓÚ10ÔÂ26ÈÕÅû¶ÁËÖ¼ÔÚÊÕ¼¯Microsoftƾ¾ÝµÄµöÓã»î¶¯¡£´Ë´Î»î¶¯·¢ÉúÔÚ2021Äê9ÔÂ15ÈÕÖÁ10ÔÂ13ÈÕÆÚ¼ä£¬ÆäÆæÌØÖ®´¦ÔÚÓÚ£¬µöÓãÓʼþ¶¼Ê¹ÓÃÁËQRÂëÀ´ÈƹýÄþ¾²ÓʼþÍø¹ØÖÐÕë¶ÔÓʼþ¸½¼þURLµÄɨÃ蹦Ч¡£¶øÇÒ£¬ËùÓÐQRÂë¶¼ÊÇÔÚ·¢Ë͵±Ìì´´½¨µÄ£¬ÕâʹµÃ´Ë´Î»î¶¯ºÜÄѱ»¼ì²âµ½»ò±»×èÖ¹Áбíʶ±ð¡£¹¥»÷ÕßʹÓÃÁËÆóÒµÊÓ²ì·þÎñÒÔ¼°ÑÇÂíÑ·ºÍ¹È¸è·þÎñÀ´ÍйܵöÓãÒ³Ãæ£¬»¹Ê¹ÓÃÁ˺Ϸ¨µÄOutlookÕÊ»§À´Èƹý¼ì²â¡£


Ô­ÎÄÁ´½Ó£º

https://abnormalsecurity.com/blog/qr-code-campaign-bypass-security


кڿÍÍÅ»ïTA2722ð³ä·ÆÂɱö¹Ù·½×éÖ¯·Ö·¢¶à¸öRAT


кڿÍÍÅ»ïTA2722ð³ä·ÆÂɱö¹Ù·½×éÖ¯·Ö·¢¶à¸öRAT.png


ProofpointÔÚ10ÔÂ27ÈÕ·¢ÏÖÁËÒ»¸öеĺڿÍÍÅ»ïTA2722£¨Óֳƣ¬Balikbayan Foxes£©¡£ÔÚ2021ÄêµÄ»î¶¯ÖУ¬Ëüð³äÁ˶à¸ö·ÆÂɱö¹Ù·½×éÖ¯£¬°üÂÞÎÀÉú²¿¡¢·ÆÂɱöº£Íâ¾ÍÒµ¹ÜÀí¾Ö(POEA)ºÍº£¹Ø¾ÖµÈ£¬Ö÷ÒªÕë¶Ô±±ÃÀ¡¢Å·Ö޺Ͷ«ÄÏÑǵĺ½ÔË¡¢ÎïÁ÷¡¢ÖÆÔì¡¢ÉÌÒµ·þÎñ¡¢ÖÆÒ©¡¢ÄÜÔ´ºÍ½ðÈÚµÈÐÐÒµ¡£´ËÍ⣬ÕâЩ»î¶¯¶¼·Ö·¢ÁËÔ¶³Ì·ÃÎÊľÂíRemcosºÍNanoCore¡£


Ô­ÎÄÁ´½Ó£º

https://www.proofpoint.com/us/blog/threat-insight/new-threat-actor-spoofs-philippine-government-covid-19-health-data-widespread


AppleÐû²¼Äþ¾²¸üУ¬ÐÞ¸´iOSµÈ¶à¿î²úÎïÖеÄ©¶´


AppleÐû²¼Äþ¾²¸üУ¬ÐÞ¸´iOSµÈ¶à¿î²úÎïÖеÄ©¶´.png


AppleÔÚ10ÔÂ25ºÍ26ÈÕÐû²¼Äþ¾²¸üУ¬ÐÞ¸´ÁËiOSµÈ¶à¿î²úÎïÖеÄ©¶´¡£´Ë´ÎÐÞ¸´µÄ×îΪÑÏÖØµÄÊÇApple TV IOMobileFrameBufferÖеÄÄÚ´æËð»µÂ©¶´CVE-2021-30883£¬Ëü¿ÉÄÜÒѾ­±»ÔÚÒ°ÀûÓã¬ZecOpsÌåÏָé¶´¿É±»ÓÃÓÚ1-clickºÍË®¿Ó¹¥»÷¡£´ËÍ⣬¸üл¹ÐÞ¸´ÁË´úÂëÖ´ÐЩ¶´CVE-2021-30919ºÍCVE-2021-30917¡¢ÌáȨ©¶´CVE-2021-30873ºÍÔ½½ç¶Áȡ©¶´CVE-2021-30905µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/10/27/apple-releases-security-updates-multiple-products


GoogleÐû²¼½ô¼±¸üУ¬ÐÞ¸´ChromeÒѱ»ÀûÓõÄ0day


GoogleÐû²¼½ô¼±¸üУ¬ÐÞ¸´ChromeÒѱ»ÀûÓõÄ0day.png


GoogleÔÚ10ÔÂ28ÈÕÐû²¼µÄ½ô¼±¸üÐÂÐÞ¸´ÁËChromeÖеÄ8¸ö©¶´£¬ÆäÖаüÂÞ2¸öÒѱ»ÔÚÒ°ÀûÓõÄ0day¡£Õâ2¸ö0day·Ö±ðΪIntentsÖжÔÓÚÊäÈëµÄÑéÖ¤²»×ã©¶´CVE-2021-38000£¬ºÍChrome V8 JavaScriptÒýÇæÖеÄʵÏÖ²»Íש¶´CVE-2021-38003¡£´ËÍ⣬»¹ÐÞ¸´ÁËÊͷźóʹÓé¶´CVE-2021-37997¡¢CVE-2021-37998ºÍCVE-2021-38002£¬ÒÔ¼°V8ÖеÄÀàÐÍ»ìÏýCVE-2021-38001µÈ©¶´¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/google/emergency-google-chrome-update-fixes-zero-days-used-in-attacks/


KasperskyÐû²¼2021ÄêQ3 APT¹¥»÷»î¶¯µÄ·ÖÎö³ÂËß


KasperskyÐû²¼2021ÄêQ3 APT¹¥»÷»î¶¯µÄ·ÖÎö³ÂËß.png


10ÔÂ26ÈÕ£¬KasperskyµÄÈ«ÇòÑо¿Óë·ÖÎöÍŶÓ(GReAT)Ðû²¼ÁË2021ÄêQ3 APT¹¥»÷»î¶¯µÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³öµÚÈý¼¾¶ÈµÄÖ÷ÒªÇ÷ÊÆ°üÂÞ£¬¹©Ó¦Á´¹¥»÷»î¶¯Ê¼ÖÕÔÚÁ¬Ðø£¬ÀýÈçSmudgeX¡¢DarkHaloºÍLazarusµÄ¹¥»÷£»Éç»á¹¤³ÌѧÈÔÈ»ÊÇÖ÷Òª¹¥»÷ÒªÁ죬µ«Ò²ÓЩ¶´ÀûÓû£¬ÈçCloudComputatingºÍOrigami ElephantµÈ¡£»¹½éÉÜÁËGamaredon×Ô5ÔÂÒÔÀ´Õë¶ÔÎÚ¿ËÀ¼Õþ¸®µÄ¶ñÒâ»î¶¯£»HoneyMyteÕë¶ÔÄÏÑÇij¹úµÄ¹©Ó¦Á´¹¥»÷»î¶¯£»ÒÔ¼°LyceumÕë¶ÔÍ»Äá˹º½¿ÕºÍµçÐÅÐÐÒµµÄ»î¶¯µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/apt-trends-report-q3-2021/104708