FBI³Æ×Ô2016ÄêÒÔÀ´BEC¹¥»÷ÒÑÔì³É430ÒÚÃÀÔªµÄËðʧ
Ðû²¼Ê±¼ä 2022-05-06¾Ý5ÔÂ4ÈÕ±¨µÀ£¬FBIµÄÊý¾ÝÏÔʾÉÌÒµµç×ÓÓʼþй¶(BEC)¹¥»÷Ôì³ÉµÄËðʧ½ð¶îÿÄ궼ÔÚÔö³¤¡£ÔÚ2019Äê7ÔÂÖÁ2021Äê12ÔÂÆڼ䣬ÒÑÈ·¶¨µÄËðʧ½ð¶îÔö¼ÓÁË65%¡£´Ó2016Äê6Ôµ½2019Äê7Ô£¬IC3ÊÕµ½ÁË241206Æð¹úÄں͹ú¼ÊʼþµÄ³ÂËߣ¬Éæ¼°½ð¶î×ܼÆΪ43312749946ÃÀÔª¡£FBIÌåÏÖ£¬Æ¾¾Ý2021ÄêµÄÊý¾Ý£¬Î»ÓÚÌ©¹úºÍÏã¸ÛµÄÒøÐÐÊÇÆÛÕ©×ʽðµÄÖ÷ҪĿµÄµØ¡£
https://therecord.media/fbi-business-email-compromise-attacks-led-to-more-than-43-billion-in-losses-since-2016/
2¡¢Windows 11¸üÐÂKB5012643Ó°Ï첿ÃÅÓ¦ÓõÄÕý³£ÔËÐÐ
ýÌå5ÔÂ4Èճƣ¬Î¢Èí½üÆÚÐû²¼µÄWindows 11ÀۼƸüдæÔÚÎÊÌâ¡£¸Ã¹«Ë¾ÌåÏÖ£¬°²×°KB5012643ºó£¬²¿ÃÅ.NET Framework 3.5Ó¦Ó÷¨Ê½¿ÉÄ᷺ܻÆðÎÊÌâ»òÎÞ·¨´ò¿ª¡£¸ÃÎÊÌâ½öÓ°ÏìÔËÐÐÁËWindows 11°æ±¾21H2µÄϵͳÇÒ°²×°ÁËKB5012643µÄÓû§¡£Î¢Èí½¨ÒéÊÜÓ°ÏìÓû§ÊÖ¶¯Ð¶ÔØÕâ¸öÓÐÎÊÌâµÄ¸üУ¬Èç¹ûÎÞ·¨Ð¶ÔØ¿ÉÔÚWindows¹¦Ð§ÖÐÖØÐÂÆôÓÃ.NET Framework 3.5ºÍWindows Communication Foundation»º½â´ËÎÊÌ⡣΢ÈíÕýÔÚÖƶ¨´ËÎÊÌâµÄ½â¾ö·½°¸£¬Ô¤¼ÆÔÚ¼´½«Ðû²¼µÄ°æ±¾ÖÐÌṩ¸üС£
https://news.softpedia.com/news/microsoft-confirms-new-bug-in-windows-11-cumulative-update-kb5012643-535326.shtml
3¡¢Ó¢¹úNHSÉÏ°ÙÃûÔ±¹¤µÄÓÊÏäÒѱ»½Ù³Ö²¢ÓÃÓÚµöÓã»î¶¯
¾ÝýÌå5ÔÂ4ÈÕ±¨µÀ£¬ÔÚ°ëÄêµÄʱ¼äÀӢ¹ú¹ú¼ÒÎÀÉúϵͳ(NHS)µÄÉÏ°ÙÃûÔ±¹¤µÄÓʼþÕÊ»§±»ÓÃÓÚ¶à´ÎµöÓã»î¶¯¡£¹¥»÷Õß´ÓÈ¥Äê10Ô¿ªÊ¼½Ù³ÖºÏ·¨µÄNHSÓʼþÕË»§£¬Ö±µ½2022Äê4ÔÂÈÔÔÚʹÓÃÕâЩÕË»§½øÐеöÓã¹¥»÷¡£INKYÑо¿ÈËÔ±¸ú×ÙÁËÀ´×ÔNHSÁ½¸öIPµØÖ·µÄµöÓãÓʼþ£¬·¢ÏÖËüÃÇÉæ¼°µ½NHSµÄ139ÃûÔ±¹¤µÄÕÊ»§£¬×ܹ²ÓÐ1157·âµöÓãÓʼþ¡£ÔÚ´ó¶àÊýÇé¿öÖУ¬µöÓãÓʼþ»á·¢ËÍÐé¼Ù¾¯±¨£¬²¢»á½«Óû§Öض¨Ïòµ½ÇÔÈ¡Microsoftƾ¾ÝµÄµöÓãÒ³Ãæ¡£
https://www.bleepingcomputer.com/news/security/attackers-hijack-uk-nhs-email-accounts-to-steal-microsoft-logins/
4¡¢¶íÂÞ˹ºÍ°×¶íÂÞ˹µÄ¶à¸ö¹Ù·½ÍøÕ¾Ôâµ½DDoS¹¥»÷
CrowdStrikeÔÚ5ÔÂ4Èճƣ¬Docker¾µÏñÒѱ»ÓÃÓÚDDoS¹¥»÷¶íÂÞ˹ºÍ°×¶íÂÞ˹µÄÕþ¸®¡¢¾ü·½ºÍýÌå»ú¹¹µÄÊ®¼¸¸öÍøÕ¾¡£´ËÍ⣬¹¥»÷»¹Éæ¼°µ½Á¢ÌÕÍðµÄ3¸öýÌåÍøÕ¾¡£Ñо¿ÈËԱȷ¶¨ÁË2¸öDocker¾µÏñ¡°erikmnkl/ stoppropaganda¡±ºÍ¡°abagayev/ stop-russia¡±£¬ËüÃÇÓÚ2022Äê2ÔÂÖÁ3Ô²¿Êð£¬Òѱ»ÏÂÔØÁè¼Ý150000´Î¡£¾ÝÐÅ£¬´Ë´Î¹¥»÷»î¶¯ÓëÎÚ¿ËÀ¼Óйأ¬ÒòΪÕâЩ¾µÏñµÄÄ¿±êÁбíÓëÎÚ¿ËÀ¼UIA¹²ÏíµÄÓòÓÐÖصþ¡£
https://securityaffairs.co/wordpress/130901/cyber-warfare-2/docker-images-ddos-attack-russia.html
5¡¢HerokuÇ¿ÖÆÖØÖÃËùÓÐÓû§µÄÃÜÂ룬²¢Î´½âÊÍÆäÖÐÔÒò
¾ÝýÌå5ÔÂ4Èճƣ¬SalesforceµÄ×Ó¹«Ë¾HerokuÇ¿ÖÆÖØÖÃÁËËùÓÐÓû§µÄÃÜÂë¡£¸Ã¹«Ë¾·¢Ë͸øÓû§µÄÄþ¾²Í¨¸æÖгƣ¬5ÔÂ4ÈÕ½«Ç¿ÖÆÖØÖÃÃÜÂëÒÔÓ¦¶ÔÉϸöÔµÄÄþ¾²Ê¼þ£¬µ«ÊDz¢Î´½âÊ;ßÌåÔÒò¡£²¿ÃÅÓû§·´Ó³Heroku¶Ô¹¥»÷µÄ͸Ã÷¶È²»¹»£¬¸øÆäÔì³ÉÁËÀ§»ó¡£Ö®ºó£¬¸Ã¹«Ë¾ÔÚ5ÔÂ5ÈÕÐû²¼ÁË×îÐÂÏûÏ¢£¬ÌåÏÖÆä±»µÁµÄGitHub OAuthÁîÅÆÒѱ»ÓÃÓÚÈëÇÖÊý¾Ý¿â²¢Ð¹Â¶Óû§µÄÕË»§ºÍÃÜÂë¡£GitHubÓÚ4ÔÂ12ÈÕ·¢ÏÖÁ˸ù¥»÷£¬Ð¹Â¶ÁË°üÂÞNPMÔÚÄÚµÄÊýÊ®¸ö×éÖ¯µÄÊý¾Ý¡£
https://www.bleepingcomputer.com/news/security/heroku-forces-user-password-resets-but-fails-to-explain-why/
6¡¢GoogleÐû²¼5Ô·ÝAndroid¸üУ¬ÐÞ¸´¶à¸öÄþ¾²Â©¶´
5ÔÂ5ÈÕ£¬GoogleÐû²¼ÁË5Ô·ÝAndroid¸üеĵڶþ²¿ÃÅ£¬ÐÞ¸´Á˶à¸ö©¶´¡£ÆäÖнÏΪÑÏÖصÄÊÇLinuxÄÚºËÖеÄÌáȨ©¶´£¨CVE-2021-22600£©£¬CISAÔÚ4ÔÂÐû²¼µÄÄþ¾²Í¨¸æÖгƸ鶴Õý±»»ý¼«ÀûÓᣴ˴θüл¹ÐÞ¸´ÁËÄÚºË×é¼þÖеÄÌáȨ©¶´£¨CVE-2022-0847¡¢CVE-2022-20009ºÍCVE-2021-22600£©ºÍ¸ßͨ×é¼þÖеģ¨CVE-2022-22057ºÍCVE-2022-22064£©µÈ¶à¸ö©¶´¡£´ËÍ⣬Google»¹Ðû²¼ÁËÕë¶ÔPixelÉ豸ÖÐ11¸ö©¶´µÄ²¹¶¡¡£
https://www.securityweek.com/androids-may-2022-security-updates-patch-36-vulnerabilities