ºÚ¿ÍÀûÓÃľÂí»¯µÄBitKeepÓ¦Ó÷¨Ê½ÇÔÈ¡Óû§µÄ×ʽð
Ðû²¼Ê±¼ä 2022-12-29
¾ÝýÌå12ÔÂ27ÈÕ±¨µÀ£¬¶à¸öBitKeepÓ¦ÓõÄÓû§³Æ£¬ÔÚºÚ¿Í´¥·¢²»ÐèÒªÑéÖ¤µÄ½»Ò׺ó£¬ËûÃǵÄÇ®°üÔÚÊ¥µ®½ÚÆÚ¼ä±»Çå¿Õ¡£BitKeepÊÇÒ»¸öÈ¥ÖÐÐÄ»¯µÄ¶àÁ´web3 DeFiÇ®°ü£¬È«ÇòÁè¼Ý800ÍòÈËʹÓÃËü½øÐÐ×ʲú¹ÜÀíºÍ½»Ò×´¦Öá£BitKeep͸¶ÕâÊÇÒ»´Î´ó¹æÄ£ºÚ¿Íʼþ£¬Í¨¹ý¶ñÒâÖ²ÈëµÄ´úÂë±»¸Ä¶¯µÄAPKµ¼ÖÂÓû§µÄ˽Կй¶£¬Ê¹ºÚ¿ÍÄܹ»×ªÒÆ×ʽ𡣾ÝPeckShieldºÍOKLink³Æ£¬½ØÖÁĿǰËðʧԤ¼Æ¸ß´ï990ÍòÃÀÔª¡£
https://www.bleepingcomputer.com/news/security/hackers-steal-8-million-from-users-running-trojanized-bitkeep-apps/
2¡¢Ñо¿ÈËÔ±ÑÝʾÈçºÎͨ¹ýÔ˶¯´«¸ÐÆ÷ÇÔÌýAndroidÊÖ»ú
¾Ý12ÔÂ27ÈÕ±¨µÀ£¬Ñо¿ÍŶӷ¢ÏÖÁËÒ»ÖÖÕë¶ÔAndroidÉ豸µÄÐÂÐÍÇÔÌý¹¥»÷£¬¿ÉÒÔÔÚ²îÒìˮƽÉÏʶ±ðÀ´µçÕßµÄÐÔ±ðºÍÉí·Ý£¬ÉõÖÁ·Ö±æË½ÈË̸»°¡£¸Ã²àÐŵÀ¹¥»÷ÃûΪEarSpy£¬Ö¼ÔÚͨ¹ý²¶×½Òƶ¯É豸Öжú»úÑïÉùÆ÷µÄ»ìÏìÒýÆðµÄÔ˶¯´«¸ÐÆ÷Êý¾Ý¶ÁÊý£¬À´Ì½Ë÷ÇÔÌýµÄпÉÄÜÐÔ¡£²âÊÔÊý¾ÝÒòÊý¾Ý¼¯ºÍÉ豸¶øÒ죬Ñо¿ÈËÔ±³Æ£¬Ê¹ÓþµäµÄMLËã·¨ÆÀ¹ÀʱÓòºÍƵÓòÌØÕ÷£¬ÏÔʾ³ö×î¸ß56.42%µÄ׼ȷÂÊ¡£
https://www.bleepingcomputer.com/news/security/earspy-attack-eavesdrops-on-android-phones-via-motion-sensors/
3¡¢¼ÓÀû¸£ÄáÑÇÖÝÊ¥ÂÞ˹ҽԺ1.7TBµÄÎļþÔÚ°µÍøÉÏ·ºÆð
ýÌå12ÔÂ27Èճƣ¬Ñо¿ÈËÔ±ÔÚÒ»¸öÈÈÃÅÂÛ̳ÉÏ·¢ÏÖÁ˾ݳÆÊÇÀ´×Ô¼ÓÀû¸£ÄáÑÇÖݺ£ÎÖµÂÊ¥ÂÞ˹ҽԺµÄÎļþ¡£¸ÃÇåµ¥±»ÃèÊöΪй¶ÎļþµÄÑù±¾Êý¾Ý°ü£¬¾Ý³Æ×Üй¶Êý¾Ý°üÂÞ1.7 TBµÄÎļþ£¬Éæ¼°²ÆÕþÊý¾Ý¡¢ÒµÎñÊý¾Ý¡¢Ô±¹¤ºÍ»¼Õ߸öÈËÐÅÏ¢µÈ¡£Ñù±¾ÖмǼÁË2022Äê10ÔÂÏÂÑ®µÄÎļþ£¬Òò´Ëй¶Ê¼þ¿ÉÄÜ·¢ÉúÔÚ11Ô»ò12Ô¡£Ñо¿ÈËÔ±ÔÚ12ÔÂ26ÈÕÁªÏµÁ˸ÃÒ½Ôº£¬µ«ÉÐδÊÕµ½Èκλظ´£¬Ò½ÔºÍøÕ¾Ò²Ã»ÓйØÓÚÈκÎÎ¥¹æ»òÊý¾ÝÄþ¾²Ê¼þµÄÐÅÏ¢¡£
https://www.databreaches.net/st-rose-hospital-patient-data-appears-on-hacking-forum/
4¡¢KasperskyÅû¶BlueNoroffÍÅ»ïÈÆ¹ýMoTW±£»¤µÄÐÂÒªÁì
12ÔÂ27ÈÕ£¬KasperskyÅû¶BlueNoroffÍÅ»ïÈÆ¹ýWindowsÍøÂç±êÖ¾(MotW)±£»¤µÄÐÂÒªÁì¡£µ±Óû§´ò¿ª´ÓÍøÂçÉÏÏÂÔØµÄÎļþʱ£¬Windows»áÏÔʾһÌõ¾¯¸æÏûÏ¢¡£Îª´Ë£¬¹¥»÷ÕßʹÓÃÁ˹âÅ̾µÏñ£¨.iso£©ºÍÐéÄâÓ²ÅÌ£¨.vhd£©Îļþ¸ñʽ¡£´ËÍ⣬¸ÃÍŻﻹ²âÊÔÁ˲îÒìµÄÎļþÀàÐÍÒÔ¸ïжñÒâÈí¼þµÄ·Ö·¢ÒªÁ죬Ñо¿ÈËÔ±ÊӲ쵽ÁËеÄVisual Basic½Å±¾¡¢WindowsÅú´¦ÖÃÎļþºÍWindows¿ÉÖ´ÐÐÎļþ¡£BlueNoroff ÍÅ»ïËÆºõÕýÔÚʵÑéеÄÎļþÀàÐÍ£¬ÒÔÓÐЧµØ·Ö·¢ËûÃǵĶñÒâÈí¼þ¡£¸ÃÍÅ»ïʹÓÃÁË70¶à¸öÓò£¬ÕâÒâζ×ÅËüÃÇÖ±µ½×î½ü²Å·Ç³£»îÔ¾¡£
https://securelist.com/bluenoroff-methods-bypass-motw/108383/
5¡¢Fox ITÑо¿ÈËԱɨÃè·¢ÏÖ´óÁ¿Citrix·þÎñÆ÷Ò×±»¹¥»÷
Fox ITÔÚ12ÔÂ28ÈÕ͸¶£¬Æä·¢ÏÖÊýÒÔǧ¼ÆµÄCitrix ADCºÍÍø¹ØÈÔÈ»ÈÝÒ×Êܵ½½üÆÚÐÞ¸´µÄÁ½¸ö©¶´µÄÓ°Ïì¡£µÚÒ»¸öÊÇÉí·ÝÑéÖ¤ÈÆ¹ý©¶´£¨CVE-2022-27510£©£¬ÒÑÓÚ11ÔÂ8ÈÕÐÞ¸´£»µÚ¶þ¸öÊÇÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2022-27518£©£¬ÓÚ12ÔÂ13ÈÕÅû¶²¢ÐÞ¸´¡£Ñо¿ÈËÔ±µÄɨÃè½á¹ûÌåÏÖ£¬½ØÖÁ2022Äê12ÔÂ28ÈÕ£¬ÓÐ3500̨É豸ÔÚÂú×ãijЩÌõ¼þʱÈÝÒ×Êܵ½Õë¶Ô©¶´CVE-2022-27518µÄ¹¥»÷£¬ÓÐÁè¼Ý1000̨ÈÝÒ×Êܵ½CVE-2022-27510µÄÓ°Ï죬Լ3000̨É豸Ò×ÊÜÕâÁ½¸ö©¶´µÄÓ°Ïì¡£
https://blog.fox-it.com/2022/12/28/cve-2022-27510-cve-2022-27518-measuring-citrix-adc-gateway-version-adoption-on-the-internet/
6¡¢ESETÐû²¼2022ÄêÊ®´óÍøÂç¹¥»÷ʼþµÄ»Ø¹Ë³ÂËß
ESETÔÚ12ÔÂ27ÈÕÐû²¼ÁË2022ÄêÊ®´óÍøÂç¹¥»÷ʼþµÄ»Ø¹Ë³ÂËߣ¬»ã×ÜÁËÓ°ÏìÈ«Çò¸÷¸öÐÐÒµµÄ×îÑÏÖØµÄºÚ¿Í¹¥»÷ºÍÎ¥¹æ»î¶¯¡£ÆäÖаüÂÞ£¬ÎÚ¿ËÀ¼µÄÒªº¦»ù´¡ÉèÊ©Ôâµ½µÄÍøÂç¹¥»÷¡¢Éæ¼°¶à¸öÊý¾Ý²Á³ý¹¤¾ßCaddyWiper¡¢HermeticWiperºÍIsaacWiperµÄ¹¥»÷»î¶¯¡¢Õë¶ÔÉÌÒµÎÀÐÇ»¥ÁªÍø¹«Ë¾ViasatµÄÍøÂç¹¥»÷¡¢¸ç˹´ïÀè¼ÓÔâµ½ContiµÄ¹¥»÷²¢Ðû²¼½øÈë¹ú¼Ò½ô¼±×´Ì¬¡¢¶à¸öÀÕË÷ÍÅ»ïµÄ¹¥»÷»î¶¯ÒÔ¼°Ronin Network 6.18ÒÚÃÀÔª±»µÁµÈʼþ¡£
https://www.welivesecurity.com/2022/12/27/2022-review-10-biggest-cyberattacks/