΢ÈíÐû²¼2023Äê1Ô·ÝÄþ¾²¸üÐÂ×ܼÆÐÞ¸´98¸ö©¶´

Ðû²¼Ê±¼ä 2023-01-11

1¡¢Î¢ÈíÐû²¼2023Äê1Ô·ÝÄþ¾²¸üÐÂ×ܼÆÐÞ¸´98¸ö©¶´

      

1ÔÂ10ÈÕ£¬Î¢ÈíÐû²¼2023Äê1Ô·ݵÄÖܶþ²¹¶¡£¬×ܼÆÐÞ¸´ÁË98¸ö©¶´¡£ÆäÖаüÂÞÒѱ»»ý¼«ÀûÓõÄWindows¸ß¼¶µ±µØ¹ý³Ìµ÷ÓÃ(ALPC)ȨÏÞÌáÉý©¶´£¨CVE-2023-21674£©¡£Î¢ÈíÌåÏÖÕâÊÇÒ»¸öɳºÐÌÓÒÝ©¶´£¬ÀÖ³ÉÀûÓôË©¶´¿É»ñµÃSYSTEMȨÏÞ£¬Ä¿Ç°Éв»Çå³þ¹¥»÷ÕßÈçºÎÓôË©¶´¡£´ËÍ⣬»¹ÐÞ¸´ÁËÒ»¸öÒѹûÈ»Åû¶µÄWindows SMB Witness ServiceÌáȨ©¶´£¨CVE-2023-21549£©¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-january-2023-patch-tuesday-fixes-98-flaws-1-zero-day/


2¡¢Èû¶ûάÑdzÆÆäÄÚÕþ²¿ÍøÕ¾ºÍ»ù´¡ÉèÊ©Ôâµ½¶à´ÎDDoS¹¥»÷

      

¾ÝýÌå1ÔÂ9ÈÕ±¨µÀ£¬Èû¶ûάÑÇÕþ¸®³ÆÆäÄÚÕþ²¿µÄÍøÕ¾ºÍIT»ù´¡ÉèÊ©Ôâµ½Á˶à´Î´ó¹æÄ£DDoS¹¥»÷¡£Èû¶ûάÑÇÊ׸®±´¶û¸ñÀ³µÂÌåÏÖ£¬Æù½ñΪֹËûÃÇÒѾ­µÖÓùÁËÎå´ÎÕë¶ÔÆäIT»ù´¡ÉèÊ©µÄ´óÐ͹¥»÷¡£¸Ã¹úÕþ¸®Ôö²¹µÀ£¬ÔöÇ¿µÄÄþ¾²Ð­ÒéÒѱ»¼¤»î£¬Õâ¿ÉÄܻᵼÖÂÊÂÇéËٶȱäÂý£¬Ä³Ð©·þÎñż¶û»áÖжÏ£¬µ«ÕâЩ¶¼ÊÇΪÁ˱£»¤ÄÚÕþ²¿µÄÊý¾Ý¡£Ä¿Ç°£¬ÉÐÎÞºÚ¿ÍÍÅ»ïÉù³Æ¶Ô´Ë´Î¹¥»÷ÂôÁ¦¡£


https://therecord.media/serbian-government-reports-massive-ddos-attack-amid-heightened-tensions-in-balkans/


3¡¢Ñо¿ÈËÔ±ÑÝʾÈçºÎÀûÓÃText-to-SQLÄ£ÐÍÉú³É¶ñÒâ´úÂë

      

¾Ý1ÔÂ9ÈÕ±¨µÀ£¬Ñо¿ÈËÔ±ÑÝʾÁËÈçºÎÀûÓÃText-to-SQLÄ£ÐÍÉú³É¶ñÒâ´úÂ룬¿ÉÓÃÀ´ÊÕ¼¯Ãô¸ÐÐÅÏ¢²¢ÌᳫDoS¹¥»÷¡£ÎªÁ˸üºÃµØÓëÓû§½»»¥£¬´óÁ¿µÄÊý¾Ý¿âÓ¦Ó÷¨Ê½½ÓÄÉAI¼¼Êõ£¬½«ÈËÀàÎÊÌâת»¯ÎªSQL²éѯ£¨¼´Text-to-SQL£©¡£Ñо¿·¢ÏÖ£¬ÌØÖƵÄpayload¿É±»ÎäÆ÷»¯ÒÔÔËÐжñÒâSQL²éѯ£¬¹¥»÷Õß¿ÉÓÃÀ´Ð޸ĺó¶ËÊý¾Ý¿â²¢¶Ô·þÎñÆ÷½øÐÐDoS¹¥»÷¡£´ËÍ⣬ÓкܶàÒªÁì¿ÉÒÔͨ¹ýʹѵÁ·Ñù±¾Öж¾À´ÔÚ»ùÓÚԤѵÁ·ÓïÑÔÄ£ÐÍ(PLM)µÄ¿ò¼ÜÖÐÖ²ÈëºóÃÅ£¬ÀýÈç½øÐе¥´ÊÌæ»»µÈ¡£


https://thehackernews.com/2023/01/new-study-uncovers-text-to-sql-model.html


4¡¢Î¢ÈíÅû¶Kinsing½üÆÚʹÓõÄÈëÇÖKubernetesµÄÒªÁì

      

΢ÈíÔÚ1ÔÂ5ÈÕÅû¶ÁËKinsing½üÆÚʹÓõÄÈëÇÖKubernetes»·¾³µÄ³õʼ·ÃÎʼ¼Êõ¡£KinsingÊÇÒ»ÖÖLinux¶ñÒâÈí¼þ£¬Õë¶ÔÈÝÆ÷»¯»·¾³½øÐмÓÃÜÍÚ¾ò¡£ËüʹÓõĵÚÒ»ÖÖÒªÁìÊÇÀûÓÃÒ×±»¹¥»÷µÄ¾µÏñ£¬¹¥»÷Õß»áÑ°ÕÒÆäÖеÄÔ¶³Ì´úÂëÖ´ÐЩ¶´À´·Ö·¢Æäpayload£¬±»ÀûÓõÄÓ¦Ó÷¨Ê½°üÂÞPHPUnit¡¢Liferay¡¢WebLogicºÍWordpressµÈ¡£ÁíÒ»ÖÖÒªÁìÊÇÀûÓÃÅäÖôíÎóµÄPostgreSQL·þÎñÆ÷£¬¹¥»÷Õß¿ÉÒÔʹÓöàÖÖ´íÎóÅäÖÃÀ´»ñµÃPostgres·þÎñÆ÷µÄ·ÃÎÊȨÏÞ¡£


https://techcommunity.microsoft.com/t5/microsoft-defender-for-cloud/initial-access-techniques-in-kubernetes-environments-used-by/ba-p/3697975


5¡¢SAIFÈ¥Äê10ÔµÄÊý¾ÝÎ¥¹æ¿ÉÄÜ»áй¶¿Í»§µÄÒ½ÁÆÐÅÏ¢

      

ýÌå1ÔÂ9Èճƣ¬¶íÀÕ¸ÔÖݵŤÉËÅâ³¥±£ÏÕ¹«Ë¾SAIF Corp.ÔÚ10Ô·ݷ¢ÉúÁËÒ»´ÎÊý¾ÝÎ¥¹æ£¬¿ÉÄÜ»á鶱£µ¥³ÖÓÐÈËÒÔ¼°¹¤ÉËÅâ³¥Ë÷ÅâÈ˵ÄÐÅÏ¢¡£SAIF½âÊ͵À£¬10ÔÂ24ÈÕδ¾­ÊÚȨµÄ¸öÈËÄܹ»·ÃÎʺͻñÈ¡ÆäÍøÂçÖеÄÎļþ¡£·ÖÎö·¢ÏÖ´ó²¿Ãű»·ÃÎʵÄÊý¾ÝÀ´×Ô2003Äê֮ǰÊÕ¼¯µÄÐÅÏ¢£¬Éæ¼°Éç»á±£ÏÕºÅÂë¡¢²ÆÕþÕʺÅÒÔ¼°Ò½ÁÆÐÅÏ¢¡£´ËÍ⣬2022Äê9ÔÂ24ÈÕÖÁ10ÔÂ25ÈÕÊÕµ½ÁËSAIF¹ØÓÚË÷ÅâµÄÊéÃæͨÐŵÄË÷ÅâÈË£¬ÆäÐÅÏ¢Ò²¿ÉÄܱ»Ð¹Â¶¡£SAIFÒÑÓÚ12ÔÂ8ÈÕ½«´ËÊÂ֪ͨ¿Í»§£¬ÉÐδÅû¶¿ÉÄÜÊÜÓ°ÏìµÄÈËÊý¡£


https://www.databreaches.net/oregon-workers-compensation-claimants-and-policyholders-may-have-had-their-personal-information-hacked/


6¡¢Check PointÐû²¼¹ØÓÚ2022ÄêÍøÂç¹¥»÷Ç÷ÊƵķÖÎö³ÂËß

      

Check PointÔÚ1ÔÂ5ÈÕÐû²¼Á˹ØÓÚ2022ÄêÍøÂç¹¥»÷Ç÷ÊƵķÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬Óë2021ÄêÏà±È£¬2022ÄêÈ«ÇòÍøÂç¹¥»÷Ôö¼ÓÁË38%¡£¹¥»÷ÊýÁ¿ÔÚµÚËļ¾¶Èµ½´ïÀúʷиߣ¬Æ½¾ùÿ¸ö×é֯ÿÖÜÔâµ½1168´Î¹¥»÷¡£2022ÄêÔâµ½¹¥»÷×î¶àµÄÈý´óÐÐÒµÊǽÌÓýÑо¿¡¢Õþ¸®ºÍÒ½ÁƱ£½¡ÐÐÒµ¡£·ÇÖ޵Ĺ¥»÷ÊýÁ¿×î¶à£¬Ã¿¸ö×é֯ÿÖÜƽ¾ùÔâµ½1875´Î¹¥»÷£¬Æä´ÎÊÇÑÇÌ«µØÓò£¨1691´Î£©¡£´ËÍ⣬ÀÕË÷Èí¼þÉú̬ϵͳÕýÔÚ¼ÌÐøÉú³¤ºÍ׳´ó£¬ÐγÉÁ˸üС¸üÁé»îµÄ¹¥»÷ÍŻּÔÚÈƹýÖ´·¨Ðж¯¡£


https://blog.checkpoint.com/2023/01/05/38-increase-in-2022-global-cyberattacks/