OutlookÓÊÏä¹ýÂËÆ÷·ºÆðÎÊÌâµ¼ÖÂÓû§ÊÕµ½´óÁ¿À¬»øÓʼþ

Ðû²¼Ê±¼ä 2023-02-21

1¡¢OutlookÓÊÏä¹ýÂËÆ÷·ºÆðÎÊÌâµ¼ÖÂÓû§ÊÕµ½´óÁ¿À¬»øÓʼþ


¾Ý2ÔÂ20ÈÕ±¨µÀ£¬Ô½À´Ô½¶àµÄMicrosoftÓû§³ÆÆäOutlookÊÕ¼þÏäÔÚ¹ýÈ¥¼¸Ð¡Ê±ÄÚ±»À¬»øÓʼþÑÍû¡£Ò»Î»Óû§Ëµ¹ýÈ¥µÄ2СʱÄÚ£¬ÆäÊÕ¼þÏäÊÕµ½ÁË36·âÀ¬»øÓʼþ¡£»¹ÓÐÓû§·´Ó³£¬ÔÚÀ¬»øÓʼþ¹ýÂËÆ÷ÖÐÉèÖá°½öÐÅÈÎÀ´×ÔÎÒµÄÄþ¾²·¢¼þÈ˺ÍÓòÁбíÒÔ¼°Äþ¾²ÓʼþÁбíÖеĵØÖ·µÄµç×ÓÓʼþ¡±Ò²ÎÞ·¨½â¾ö´ËÎÊÌ⣬Õâ±íÃ÷Óʼþ·þÎñ¹ýÂËÆ÷¿ÉÄÜÒѱ»ÍêÈ«ÆÆ»µ¡£¾¡¹ÜÓû§Í¶Ëß²»Í££¬µ«Office·þÎñ״̬ҳÃæÈÔÏÔʾһÇÐÕý³£¡£Ä¿Ç°£¬Microsoft²¢Î´¶Ô´ËÊÂ×÷³ö»ØÓ¦¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-outlook-flooded-with-spam-due-to-broken-email-filters/


2¡¢Ó¡¶È»ð³µ¶©Æ±Æ½Ì¨RailYatriÔ¼3100ÍòÈËÐÅÏ¢ÔÚ°µÍø¹ûÈ»


ýÌå2ÔÂ20Èճƣ¬Ó¡¶È»ð³µ¶©Æ±Æ½Ì¨RailYatriÔâµ½ºÚ¿Í¹¥»÷£¬31062673¸öÂÿ͵ÄÐÅϢй¶¡£¹¥»÷·¢ÉúÔÚ2022Äê12Ô£¬µ«±»µÁÊý¾ÝÖ±µ½ÏÖÔڲű»Ð¹Â©µ½ºÚ¿ÍÂÛ̳BreachforumsÉÏ¡£ÔçÔÚ2020Äê2Ô£¬Ñо¿ÈËÔ±·¢ÏÖÁËÒ»¸öÅäÖôíÎóµÄElasticsearch·þÎñÆ÷ÊôÓÚRailYatri£¬ÔÚÓ¡¶ÈCERT-In½éÈëºó¸Ã¹«Ë¾²ÅÉè·¨±£»¤ÆäÊý¾Ý¡£È»¶øÁ½Äêºó£¬¸Ã¹«Ë¾Ôٴη¢ÉúÊý¾Ýй¶Ê¼þ¡£Ñо¿ÈËÔ±ÈÏΪ£¬RailYatri±¾¿ÉÒÔÖÆÖ¹´Ë´ÎÊý¾Ýй¶Ê¼þ£¬Èç¹ûËü´ÓÒ»¿ªÊ¼¾ÍʵʩÊʵ±µÄÍøÂçÄþ¾²¼Æı¡£


https://www.hackread.com/indian-ticketing-platform-railyatri-hacked/


3¡¢Earth KitsuneÍÅ»ïͨ¹ýË®¿Ó¹¥»÷·Ö·¢ÐµÄWhiskerSpy


2ÔÂ17ÈÕ£¬Trend Micro³ÆÆä·¢ÏÖÁËEarth KitsuneÍÅ»ïͨ¹ýË®¿Ó¹¥»÷·Ö·¢WhiskerSpyµÄ¹¥»÷»î¶¯¡£2022Äêµ×£¬Ñо¿ÈËÔ±·¢ÏÖÒ»¸öÓ볯ÏÊÏà¹Ø×éÖ¯µÄÍøÕ¾Ôâµ½ÈëÇÖ£¬²¢±»¸Ä¶¯ÒÔÁ÷´«¶ñÒâÈí¼þ¡£µ±·ÃÎÊÕßÔÚÍøÕ¾ÉÏԢĿÊÓƵʱ£¬¹¥»÷Õß×¢ÈëµÄ¶ñÒâ½Å±¾»áÏÔʾһÌõÏûÏ¢Ìáʾ֪ͨËûÃÇÊÓƵ±à½âÂëÆ÷´íÎó£¬À´ÓÕʹËûÃÇÏÂÔز¢°²×°Ä¾Âí»¯µÄ±à½âÂëÆ÷°²×°·¨Ê½¡£¸Ã°²×°·¨Ê½»á¼ÓÔØÒ»¸öеĺóÃÅWhiskerSpy¡£´ËÍ⣬¸Ã»î¶¯Ê¹Óõij־ÃÐÔ¼¼ÊõÀÄÓÃÁËGoogle ChromeµÄ±¾»úÏûϢͨ±¨Ö÷»ú£¬²¢°²×°ÃûΪGoogle Chrome HelperµÄ¶ñÒâÀ©Õ¹¡£


https://www.trendmicro.com/en_us/research/23/b/earth-kitsune-delivers-new-whiskerspy-backdoor.html


4¡¢Check PointÅû¶Õë¶ÔÑÇÃÀÄáÑÇ×éÖ¯µÄÐÂÒ»ÂÖ¹¥»÷»î¶¯


Check PointÔÚ2ÔÂ16ÈÕÅû¶ÁË2022ÄêÄ©Õë¶ÔÑÇÃÀÄáÑÇ×éÖ¯µÄÐÂÒ»ÂÖ¹¥»÷»î¶¯£¬Ö÷Òª·Ö·¢ºóÃÅOxtaRAT¡£OxtaRATÊÇÒ»ÖÖ»ùÓÚAutoItµÄÔ¶³Ì·ÃÎʺÍ×ÀÃæ¼à¿Ø¹¤¾ß£¬Ëü¿ÉÒÔ´Ó±»Ñ¬È¾µÄ¼ÆËã»úÖÐËÑË÷ºÍй¶Îļþ¡¢´ÓÍøÂçÉãÏñÍ·ºÍ×ÀÃæ¼ÖÆÊÓƵ¡¢Ê¹ÓÃTightVNCÔ¶³Ì¿ØÖƱ»Ñ¬È¾µÄÉ豸¡¢°²×°web shellºÍÖ´Ðж˿ÚɨÃèµÈ¡£Ñо¿ÈËÔ±³Æ£¬Óë¸ÃÍÅ»ï֮ǰµÄ»î¶¯Ïà±È£¬2022Äê11ÔÂ×îлµÄѬȾÁ´·¢ÉúÁ˱仯£¬½ÓÄÉÁËÌá¸ß²Ù×÷Äþ¾²ÐԵĴëÊ©£¬ÒÔ¼°Ê¹ÓøïÐÂÇÔÈ¡Êý¾Ý·½Ê½µÄй¦Ð§¡£


https://research.checkpoint.com/2023/operation-silent-watch-desktop-surveillance-in-azerbaijan-and-armenia/


5¡¢ºÚ¿ÍÀûÓÃľÂí»¯°²×°·¨Ê½Õë¶Ô¶«ÑǺͶ«ÄÏÑÇÁ÷´«FatalRAT 


¾ÝESET 2ÔÂ16ÈÕ±¨µÀ£¬ºÚ¿Íͨ¹ý¹È¸èËÑË÷½á¹ûÖеÄÎóµ¼ÐÔ¹ã¸æ£¬ÓÕʹĿ±êÏÂÔØľÂí»¯°²×°·¨Ê½¡£Ñо¿ÈËÔ±ÔÚ2022Äê8ÔÂÖÁ2023Äê1ÔÂÊӲ쵽ÕâЩ¹¥»÷£¬µ«Æ¾¾ÝÒ£²âÊý¾Ý£¬ÖÁÉÙ´Ó2022Äê5Ô¾ͿªÊ¼Ê¹ÓÃÏÈÇ°°æ±¾µÄ°²×°·¨Ê½¡£¸Ã¹¥»÷Ö÷ÒªÕë¶Ô¶«ÄÏÑǺͶ«Ñǽ²ÖÐÎĵÄÈË£¬Í¨¹ý´´½¨ÓëFirefox¡¢WhatsApp»òTelegramµÈÁ÷ÐÐÓ¦ÓÃÏàͬµÄÐé¼ÙÍøÕ¾£¬·Ö·¢¶ñÒâÈí¼þFatalRAT¡£FatalRAT¿É²¶×½»÷¼ü¡¢¸ü¸ÄÄ¿±êµÄÆÁÄ»·Ö±æÂÊ¡¢ÏÂÔغÍÖ´ÐÐÎļþµÈ£¬ËüÓë2021Äê³ÂËߵİ汾·Ç³£ÏàËÆ¡£


https://www.welivesecurity.com/2023/02/16/these-arent-apps-youre-looking-for-fake-installers/


6¡¢KasperskyÐû²¼¹ØÓÚ2022ÄêÀ¬»øÓʼþºÍµöÓã»î¶¯µÄ³ÂËß


2ÔÂ16ÈÕ£¬KasperskyÐû²¼Á˹ØÓÚ2022ÄêÀ¬»øÓʼþºÍµöÓã»î¶¯µÄ³ÂËß¡£³ÂËßÖ¸³ö£¬ÔÚ2022Ä꣬ȫÇò48.63%µÄÓʼþÊÇÀ¬»øÓʼþ£¬±ÈÉÏÒ»ÄêÔö³¤3.07¸ö°Ù·Öµã¡£À¬»øÓʼþ×î¶àµÄÔ·ÝÊÇ2Ô£¬Õ¼±ÈΪ52.78%¡£¶à´ï29.82%µÄÀ¬»øÓʼþÀ´×Ô¶íÂÞ˹£¬Æä´ÎÊǵ¹ú£¨29.82%£©¡£Ôâµ½µöÓã¹¥»÷×î¶àµÄ¹ú¼ÒÊÇÔ½ÄÏ(17.03%)£¬Æä´ÎÊÇ°ÄÃÅ£¨13.88%£©ºÍÂí´ï¼Ó˹¼Ó£¨12.04%£©¡£´ó¶àÊýµöÓãÒ³Ã涼ÍйÜÔÚCOMÓò£¨17.69%£©£¬È»ºóÊÇXYZ(8.79%)¡£ÊÜ´ËÀ๥»÷×î¶àµÄÐÐҵΪ¿ìµÝ¹«Ë¾£¨27.38%£©£¬ÔÚÏßÉ̵꣨15.56%£©ºÍÖ§¸¶ÏµÍ³£¨10.39%£©´ÎÖ®¡£


https://securelist.com/spam-phishing-scam-report-2022/108692/