AppleÐÞ¸´iPhoneºÍMacÖпÉÄÜÒѱ»»ý¼«ÀûÓõÄ©¶´

Ðû²¼Ê±¼ä 2022-09-13
1¡¢AppleÐÞ¸´iPhoneºÍMacÖпÉÄÜÒѱ»»ý¼«ÀûÓõÄ©¶´

      

ýÌå9ÔÂ12Èճƣ¬AppleÐû²¼Äþ¾²¸üУ¬ÐÞ¸´ÁËÓÃÓÚ¹¥»÷iPhoneºÍMacµÄ©¶´¡£¸Ã©¶´×·×ÙΪCVE-2022-32917£¬¿Éͨ¹ý¶ñÒâÖÆ×÷µÄÓ¦Ó÷¨Ê½ÒÔÄÚºËȨÏÞÖ´ÐÐÈÎÒâ´úÂë¡£ÕâÊǸù«Ë¾×ÔÄê³õÒÔÀ´ÐÞ¸´µÄµÚ8¸öÁãÈÕ©¶´£¬AppleÔÚÄþ¾²Í¨¸æÖÐ͸¶¸Ã©¶´¿ÉÄÜÒѱ»»ý¼«ÀûÓ㬵«ÉÐδÐû²¼ÓйØÕâЩ¹¥»÷µÄÈκÎÐÅÏ¢¡£Ñо¿ÈËԱǿÁÒ½¨ÒéÓû§¾¡¿ì½øÐÐÄþ¾²¸üÐÂÒÔ×èÖ¹´ËÀ๥»÷¡£


https://www.bleepingcomputer.com/news/security/apple-fixes-eighth-zero-day-used-to-hack-iphones-and-macs-this-year/


2¡¢BRONZE PRESIDENTÍÅ»ïÀûÓÃPlugX¹¥»÷È«ÇòµÄÕþ¸®»ú¹¹

      

SecureworksÔÚ9ÔÂ8ÈÕÅû¶ÁËAPT×éÖ¯BRONZE PRESIDENTÕë¶ÔÅ·ÖÞ¡¢Öж«ºÍÄÏÃÀµÈµØÕþ¸®»ú¹¹µÄPlugX¶ñÒâÈí¼þ»î¶¯¡£Ñо¿ÈËÔ±ÔÚ2022Äê6ÔºÍ7Ô·¢Ïָû£¬Ñ¬È¾Á´Ê¼ÓÚÒ»¸ö°üÂÞ¶ñÒâÈí¼þµÄRAR´æµµ£¬´ò¿ª´æµµºó»áÏÔʾһ¸öαװ³ÉÎĵµµÄLNKÎļþ£¬µã»÷¸ÃÎļþºó½«Ö´ÐжñÒâÈí¼þ¡£´ËÍ⣬¹¥»÷Õß»¹·Ö·¢Á˶ñÒâDLLºÍ¼ÓÃܵÄpayload£¬ºÏ·¨µÄ¶þ½øÖÆÎļþÈÝÒ×Ôâµ½DLLËÑË÷˳Ðò½Ù³Ö¹¥»÷¡£ 


https://www.secureworks.com/blog/bronze-president-targets-government-officials


3¡¢Cofense·¢ÏÖͨ¹ýWeTransfer·þÎñ·Ö·¢LampionµÄ»î¶¯

      

¾Ý9ÔÂ9ÈÕ±¨µÀ£¬Cofense¼ì²âµ½ÐÂÒ»Âֻ£¬¹¥»÷ÕßÀÄÓÃWeTransfer·þÎñ´ó¹æÄ£·Ö·¢¶ñÒâÈí¼þLampion¡£WeTransferÊÇÒ»ÖֺϷ¨Îļþ¹²Ïí·þÎñ£¬±»ÓÃÀ´ÈƹýÄþ¾²Èí¼þ¶Ôµç×ÓÓʼþÖÐʹÓõÄURLµÄ¾¯±¨¡£LampionÔËÓªÍÅ»ï´Ó±»Ñ¬È¾µÄ¹«Ë¾ÕÊ»§·¢Ë͵öÓãÓʼþ£¬ÒªÇóÓû§´ÓWeTransferÏÂÔØ¡°¸¶¿îÖ¤Ã÷¡±Îļþ¡£Ä¿±ê»áÊÕµ½Ò»¸öZIP´æµµ£¬²¢×îÖÕÖ´ÐÐLampion¡£Lampionͨ¹ý´ÓC2ÖлñȡעÈëµÄÊý¾Ý²¢ÔڵǼҳÃæÉÏÁýÕÖαÔìµÄ±íµ¥À´Ëø¶¨ÒøÐÐÕË»§¡£µ±Óû§ÊäÈëƾ֤ʱ£¬ÕâЩÊý¾Ý½«±»ÇÔÈ¡²¢·¢Ë͸ø¹¥»÷Õß¡£


https://www.bleepingcomputer.com/news/security/lampion-malware-returns-in-phishing-attacks-abusing-wetransfer/


4¡¢WordfenceÅû¶WP²å¼þBackupBuddyÖÐÒѱ»ÀûÓ鶴µÄϸ½Ú

      

WordfenceÓÚ9ÔÂ7ÈÕ͸¶£¬WordPress²å¼þBackupBuddyÖеÄ©¶´ÕýÔÚ±»»ý¼«ÀûÓ᣸鶴£¨CVE-2022-31474£©Ô¼ÓÐ140000´Î°²×°£¬¿É±»Î´¾­Éí·ÝÑéÖ¤µÄÓû§ÓÃÀ´´ÓÄ¿±êÍøÕ¾ÏÂÔØÈÎÒâÎļþ£¬°üÂÞ/etc/passwdµÈÃô¸ÐÐÅÏ¢¡£Â©¶´Ó°Ïì°æ±¾8.5.8.0ÖÁ8.7.4.1£¬ÒÑÔÚ9ÔÂ2ÈÕÐû²¼µÄ°æ±¾8.7.5ÖÐÐÞ¸´¡£ÔÚ²éÔÄÀúÊ·Êý¾Ýºó£¬Ñо¿ÈËԱȷ¶¨¹¥»÷¿ªÊ¼×Ô2022Äê8ÔÂ26ÈÕ£¬×ÔÄÇʱÆð¸Ã¹«Ë¾ÒÑ×èÖ¹Á˽ü500Íò´ÎÕë¶Ô¸Ã©¶´µÄ¹¥»÷¡£


https://www.wordfence.com/blog/2022/09/psa-nearly-5-million-attacks-blocked-targeting-0-day-in-backupbuddy-plugin/


5¡¢Ó¢¹úPVCÖÆÔìÉÌEurocellÔâµ½¹¥»÷ºóÔ±¹¤µÄÐÅϢй¶

      

¾ÝýÌå9ÔÂ12ÈÕ±¨µÀ£¬Ó¢¹úPVCÖÆÔìÉÌEurocell֪ͨÆäÏÖÔ±¹¤ºÍÇ°Ô±¹¤¹ØÓÚËûÃǵĸöÈËÐÅϢ鶵Äʼþ¡£¸Ã¹«Ë¾½âÊͳÆ£¬Î´¾­ÊÚȨµÄµÚÈý·½·ÃÎÊÁËÆäϵͳ£¬±»Ð¹Â¶µÄÊý¾Ý°üÂÞ£º¹ÍÓ¶Ìõ¿îºÍÌõ¼þ¡¢³öÉúÈÕÆÚ¡¢Ç×Êô¡¢ÒøÐÐÕË»§¡¢NIºÍË°Îñ²Î¿¼ºÅ¡¢½¡¿µºÍ¸£ÀûÎļþµÈ¡£ÕâЩÐÅÏ¢ºóÐø¿ÉÄܱ»µöÓã¹¥»÷»òÕßÀÕË÷ÀÕË÷ÀûÓã¬EurocellÌåÏÖÄ¿Ç°ÉÐÎÞÖ¤¾Ý±íÃ÷Êý¾Ý±»ÀÄÓ᣸ù«Ë¾ÏÖÓÐÁè¼Ý2000¸öÔ±¹¤£¬µ«¼øÓÚй¶ÐÅÏ¢µÄÀàÐÍ£¬¿ÉÄÜ»¹Óиü¶àµÄÇ°Ô±¹¤ÃæÁÙ·çÏÕ¡£


https://www.infosecurity-magazine.com/news/hackers-employee-data-pvcmaker/


6¡¢KasperskyÐû²¼2022ÄêH1¹¤Òµ×Ô¶¯»¯ÏµÍ³Íþв̬ÊƵķÖÎö

      

9ÔÂ8ÈÕ£¬KasperskyÐû²¼ÁË2022ÄêÉÏ°ëÄ깤ҵ×Ô¶¯»¯ÏµÍ³Íþв̬ÊƵķÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬×éÖ¯µÄÔËÓª¼¼Êõ»ù´¡ÉèÊ©ÖмÆËã»úÃæÁÙµÄÖ÷ÒªÍþвÀ´Ô´ÊÇ»¥ÁªÍø16.5%£©¡¢¿ÉÒƶ¯Ã½Ì壨3.5%£©ºÍµç×ÓÓʼþ£¨7.0%£©¡£ÔÚÂ¥Óî×Ô¶¯»¯ÐÐÒµ£¬×èÖ¹µÄ¶ñÒ⸽¼þºÍµöÓãÁ´½ÓµÄICSµÄÕ¼±È(14.4%)ÊÇÈ«Çòƽ¾ùÖµ(7%)µÄÁ½±¶¡£2022ÄêÉÏ°ëÄ꣬ICS×èÖ¹ÁËÀ´×Ô7219¸öϵÁеĶñÒâÈí¼þ£¬°üÂÞÀÕË÷Èí¼þ¡¢¶ñÒâÎļþ¡¢ÓÃÓÚÒþ±Î¼ÓÃÜ»õ±ÒÍÚ¾òµÄ¶ñÒâÈí¼þºÍ¼äµýÈí¼þµÈ¡£


https://securelist.com/threat-landscape-for-industrial-automation-systems-for-h1-2022/107373/