Ç÷ÊƿƼ¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ
Ðû²¼Ê±¼ä 2022-05-091¡¢Ç÷ÊƿƼ¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ
¾ÝýÌå5ÔÂ7ÈÕ±¨µÀ£¬Ç÷ÊƿƼ¼¶ËµãÄþ¾²½â¾ö·½°¸Apex OneÖдæÔÚÎÊÌâ¡£¾ÝÓû§Í¸Â¶£¬Apex One½«Microsoft Edge¸üбê־Ϊ²¡¶¾/¶ñÒâÈí¼þ£ºTROJ_FRS.VSNTE222ºÍ²¡¶¾/¶ñÒâÈí¼þ£ºTSC_GENCLEAN¡£´ËÍ⣬²¿ÃÅÓû§³Æ´ËÎÊÌ⻹µ¼ÖÂÔÚÖ´ÐÐÊðÀíµÄÇåÀí¹¤¾ßºó£¬Windows×¢²á±íÏî±»´íÎóµØ¸ü¸Ä¡£Ä¿Ç°£¬Õâ¼ÒÄþ¾²Èí¼þÖÆÔìÉÌÒѾ½â¾öÁËÕâ¸öÎÊÌ⣬²¢Ðû²¼ÁËÒ»·Ý½¨ÒéÀ´×ÊÖú¿Í»§¸üÐÂËûÃǵIJúÎï¡£
https://www.bleepingcomputer.com/news/security/trend-micro-antivirus-modified-windows-registry-by-mistake-how-to-fix/
2¡¢ContiÉù³ÆÒÑÈëÇÖÃس¹ú¼ÒÇ鱨¾Ö²¢ÇÔÈ¡Áè¼Ý9 GBµÄÊý¾Ý
¾Ý5ÔÂ8ÈÕ±¨µÀ£¬ContiÀÕË÷ÍÅ»ïÉù³ÆÒÑÈëÇÖÃسMOF¨CDIGIMIN£¨Ç鱨×ܾ֣©¡£¹ú¼ÒÇ鱨¾ÖÊÇÃسÊ×ÇüÒ»Ö¸µÄÇ鱨»ú¹¹£¬ÂôÁ¦¹ú¼Ò¡¢¾üʺ;¯²ìÇ鱨ÒÔ¼°·´Ç鱨ÊÂÇé¡£ContiÒѽ«¸Ã»ú¹¹Ìí¼Óµ½ÆäTorй©ÍøÕ¾µÄ±»¹¥»÷Ãûµ¥ÖУ¬²¢ÌåÏÖÒѾÇÔÈ¡¸Ã×éÖ¯9.41 GBµÄÊý¾Ý¡£´ËÍ⣬ÃسDIGIMINµÄÍøվʼÖÕÎÞ·¨·ÃÎÊ¡£ÉÏÖÜ£¬ÃÀ¹ú¹úÎñÔºÌṩÁ˸ߴï1500ÍòÃÀÔªµÄ½±½ð£¬ÐüÉÍÓйØContiÀÕË÷ÍÅ»ïµÄÐÅÏ¢¡£
https://securityaffairs.co/wordpress/131093/cyber-crime/conti-ransomware-peru-direccion-general-de-inteligencia.html
3¡¢XboxÈ«Çò·¶Î§ÄÚ·þÎñÖжϣ¬Óû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·
ýÌå5ÔÂ6Èճƣ¬Xbox Live·þÎñÖжϣ¬È«Çò·¶Î§ÄÚµÄÓû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·¡£Õâ´ÎÖжÏÓ°ÏìÁ˶à¸öƽ̨£¬Éæ¼°Xbox Series X|S¡¢Xbox OneÓÎÏ·»ú¡¢AndroidÉ豸¡¢AppleÉ豸¡¢Windows ÉϵÄXboxºÍÔÆÓÎÏ·¡£´óÁ¿Óû§·´Ó³£¬ÔÚÏßÓÎϷƽ̨ÒÑÖжÏÊýСʱ£¬ËûÃÇÎÞ·¨ÍæÏßϺÍÔÚÏßÓÎÏ·¡£Ä¿Ç°£¬¸ÃÎÊÌâÒѾÐÞ¸´¡£
https://www.bleepingcomputer.com/news/technology/xbox-is-down-worldwide-with-users-unable-to-play-games/
4¡¢ÃÀ¹úÅ©Òµ»úеÉú²úÉÌAGCOÔâÀÕË÷¹¥»÷£¬Éú²úÔÝʱÖжÏ
ÃÀ¹úÅ©Òµ»úеÉú²úÉÌAGCOÔÚ5ÔÂ6Èճƣ¬ÆäÔâµ½ÁËÀÕË÷¹¥»÷¡£AGCOÊǸÃÁìÓòµÄÁì¾ü¹«Ë¾£¬ÊÕÈëÁè¼Ý90ÒÚÃÀÔª£¬ÓµÓÐ21000ÃûÔ±¹¤¡£¹¥»÷·¢ÉúÔÚ5ÔÂ5ÈÕ£¬AGCOûÓÐÌṩµ¼ÖÂÖжϵÄÏêϸÐÅÏ¢£¬µ«Ëü¿ÉÄÜ»á¹Ø±ÕÆ䲿ÃÅITϵͳÒÔ·ÀÖ¹¹¥»÷ÂûÑÓ¡£AGCOÔÚÐÂΟåÖнâÊ͵À£¬ÊÓ²ìÈÔÔÚ½øÐÐÖУ¬Ô¤¼ÆÕâ´ÎÍøÂç¹¥»÷µÄÓ°Ï콫Á¬ÐøºÜ³¤Ò»¶Îʱ¼ä£¬ËûÃǻᾡÁ¦»Ö¸´ÏµÍ³¡£FBI³Æ£¬ÀÕË÷¹¥»÷Ô½À´Ô½¶àµØÕë¶ÔÃÀ¹úµÄÅ©Òµ²¿ÃÅ¡£
https://securityaffairs.co/wordpress/131058/cyber-crime/agco-suffered-ransomware-attack.html
5¡¢Cisco·¢ÏÖMustang PandaÕë¶ÔÅ·ÖÞµÄÐÂÒ»ÂÖ¹¥»÷»î¶¯
5ÔÂ5ÈÕ£¬CiscoÐû²¼ÁËMustang PandaÕë¶ÔÅ·ÖÞÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄ³ÂËß¡£2022Äê2Ô£¬Cisco Talos¿ªÊ¼ÊӲ쵽Mustang Panda¶ÔÅ·ÖÞ×éÖ¯½øÐеĵöÓã»î¶¯¡£²¿ÃŵöÓãÓʼþαװ³ÉÅ·Ã˹ØÓÚÎÚ¿ËÀ¼³åÍ»¼°Æä¶Ô±±Ô¼¹ú¼ÒÓ°ÏìµÄ¹Ù·½³ÂËߣ¬»¹ÓеöÓãµç×ÓÓʼþÌṩÐé¼ÙµÄÎÚ¿ËÀ¼Õþ¸®µÄ¹Ù·½³ÂËß¡£´Ë´Î»î¶¯Ê¹ÓÃÁ˶ñÒâÈí¼þPlugX¡¢×Ô½ç˵stagers¡¢·´ÏòshellÒÔ¼°»ùÓÚMeterpreterµÄshellcode¡£
https://blog.talosintelligence.com/2022/05/mustang-panda-targets-europe.html
6¡¢Red CanaryÐû²¼Ð¶ñÒâÈí¼þRaspberry RobinµÄ·ÖÎö³ÂËß
Red CanaryÔÚ5ÔÂ5ÈÕÐû²¼Á˹ØÓÚжñÒâÈí¼þRaspberry RobinµÄ·ÖÎö³ÂËß¡£¸Ã¶ñÒâÈí¼þ×îÔç¿ÉÒÔ×·Ëݵ½2021Äê9Ô£¬Ö÷ÒªÕë¶ÔÓë¼¼ÊõºÍÖÆÔìÒµÓйصÄ×éÖ¯¡£ËüÊÇÒ»ÖÖ¾ßÓÐÀàËÆÈä³æ¹¦Ð§µÄÐÂÐÍWindows¶ñÒâÈí¼þ£¬²¢Í¨¹ý¿ÉÒƶ¯USBÉ豸½øÐÐÁ÷´«¡£¸ÃÈä³æÀûÓÃWindows Installer·ÃÎÊÓëQNAPÏà¹ØµÄÓò²¢ÏÂÔضñÒâDLL£¬²¢Ê¹ÓÃTOR³ö¿Ú½Úµã×÷Ϊ±¸·ÝC2»ù´¡ÉèÊ©¡£Ä¿Ç°£¬Ñо¿ÈËÔ±ÉÐδȷ¶¨´Ë´Î¹¥»÷µÄ¶¯»ú£¬Ò²²»Çå³þRaspberry RobinÈçºÎÒÔ¼°Ôںδ¦Ñ¬È¾ÍⲿÇý¶¯Æ÷½øÐÐÁ÷´«µÄ¡£
https://redcanary.com/blog/raspberry-robin/