GoogleÐû²¼ChromeµÄ¸üУ¬×ܼÆÐÞ¸´15¸öÄþ¾²Â©¶´
Ðû²¼Ê±¼ä 2023-05-051¡¢GoogleÐû²¼ChromeµÄ¸üУ¬×ܼÆÐÞ¸´15¸öÄþ¾²Â©¶´
5ÔÂ2ÈÕ£¬GoogleÐû²¼ÁËChrome 113Äþ¾²¸üУ¬×ܼÆÐÞ¸´ÁË15¸ö©¶´¡£ÆäÖнÏΪÑÏÖصÄÊÇÌáʾÖеÄÖ´Ðв»Íש¶´£¨CVE-2023-2459£©¡¢À©Õ¹ÖеĶԲ»ÐÅÈεÄÊäÈëÑéÖ¤²»×㣨CVE-2023-2460£©¡¢²Ù×÷ϵͳÊäÈëÖеÄÊͷźóʹÓ鶴£¨CVE-2023-2461£©ºÍCORSÖеÄÖ´Ðв»Í×£¨CVE-2023-2465£©µÈ¡£ÓëÍù³£Ò»Ñù£¬ÔÚ´ó¶àÊýÓû§¸üÐÂÐÞ¸´·¨Ê½Ö®Ç°£¬GoogleûÓÐ͸¶¹ØÓÚÕâЩ©¶´µÄ¸ü¶àϸ½Ú¡£
https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop.html
2¡¢OrqaµÄ¹Ì¼þ±»Ö²Èë¶ñÒâ´úÂë¿Éµ¼ÖÂÉ豸·ºÆð¹ÊÕÏ
¾ÝýÌå5ÔÂ3ÈÕ±¨µÀ£¬FPVÎÞÈË»ú»¤Ä¿¾µÖÆÔìÉÌOrqa³Æ£¬Ò»¼Ò³Ð°üÉ̽«´úÂëÖ²ÈëÆä¹Ì¼þÖУ¬µ¼ÖÂÉ豸·ºÆð¹ÊÕÏ¡£ÉÏÖÜÁù£¬Orqa¿Í»§³ÂËߣ¬ËûÃǵÄFPV.One V1»¤Ä¿¾µ½øÈëÆô¶¯·¨Ê½Ä£Ê½£¬±äµÃÎÞ·¨Ê¹Ó᣸ù«Ë¾Í¸Â¶£¬Õâ¸öÎÊÌâÊÇÓÉ"ÈÕÆÚ/ʱ¼ä¹¦Ð§ÒýÆðµÄ"¹Ì¼þ´íÎóµ¼Öµġ£¸ÃÎÊÌâÔ´ÓÚÒ»¸öÀÕË÷Èí¼þµÄ¶¨Ê±Õ¨µ¯£¬Õâ¸öÕ¨µ¯ÊǼ¸ÄêÇ°ÓÉÒ»¸öÇ°³Ð°üÉÌÃØÃÜÖ²ÈëÆäÒýµ¼·¨Ê½Öеģ¬Ö¼ÔÚÏò¹«Ë¾Ë÷È¡¸ß¶îÊê½ð¡£¸Ã³Ð°üÉÌ»¹Ðû²¼ÁËÒ»¸öδ¾ÊÚȨµÄ¶þ½øÖÆÎļþ£¬¾Ý³Æ¿ÉÒÔ½â¾ö¸ÃÎÊÌ⡣Ȼ¶ø£¬OrqaÌáÐÑ¿Í»§²»Òª°²×°·Ç¹Ù·½¹Ì¼þ¡£²¢Í¸Â¶Ö»ÓÐһС²¿ÃÅ´úÂëÊܵ½ÕâÖÖ¶ñÒâÈí¼þµÄÓ°Ï죬ĿǰÕýÔÚÐÞ¸´ÖС£
https://www.bleepingcomputer.com/news/technology/drone-goggles-maker-claims-firmware-sabotaged-to-brick-devices/
3¡¢AvosÍÅ»ï½Ù³Ö²¼Â¬·Æ¶ûµÂ´óѧµÄ½ô¼±¾¯±¨ÏµÍ³RamAlert
¾Ý5ÔÂ4ÈÕ±¨µÀ£¬ÀÕË÷ÍÅ»ïAvos½Ù³ÖÁ˲¼Â¬·Æ¶ûµÂ´óѧµÄ½ô¼±¾¯±¨ÏµÍ³¡°RamAlert¡±¡£4ÔÂ30ÈÕ£¬¸ÃУÏòѧÉúºÍ½ÌÖ°¹¤Í¸Â¶£¬ËûÃǵÄITϵͳÔâµ½ÁËÍøÂç¹¥»÷£¬ËùÓп¼ÊÔ±»ÆÈÍƳ١£Æäʱ£¬Ñ§Ð£Éù³ÆûÓÐÓë´ËʼþÏà¹ØµÄ½ðÈÚÆÛÕ©»òÉí·ÝµÁÓð¸¼þ£¬½ÌʦºÍѧÉúÈÔ¿ÉÒÔͨ¹ýÍøÕ¾Äþ¾²µØʹÓúͷÃÎÊMyBU¡¢CanvasºÍͼÊé¹Ý×ÊÔ´¡£µ«Ê¼þÔÚ5ÔÂ1ÈÕ·¢ÉúתÕÛ£¬Avos¿ÉÒÔ·ÃÎÊѧУµÄ½ô¼±¾¯±¨ÏµÍ³RamAlert£¬²¢Í¨¹ý¸ÃϵͳÏòѧÉúºÍ½ÌÖ°¹¤·¢ËͶÌÐźÍÓʼþ¾¯±¨£¬³ÆÒÑÇÔÈ¡1.2 TBÎļþ£¬²¢ÍþвÈç¹û²»¸¶Êê½ð½«Ðû²¼ËùÓÐÊý¾Ý¡£
https://www.bleepingcomputer.com/news/security/ransomware-gang-hijacks-university-alert-system-to-issue-threats/
4¡¢SophosÅû¶Dragon BreathÈƹý¼ì²âµÄм¼ÊõµÄϸ½Ú
5ÔÂ3ÈÕ£¬SophosÅû¶ÁËDragon Breathͨ¹ýË«DLL²à¼ÓÔؼ¼ÊõÀ´Èƹý¼ì²âµÄ·½Ê½¡£ÕâЩ¹¥»÷ÀûÓÃÁËÒ»¸ö½à¾»µÄÓ¦Ó÷¨Ê½£¬×î³£¼ûµÄÊÇTelegram£¬Ëü²à¼ÓÔØÒ»¸öµÚ¶þ½×¶Îpayload£¬ÓÐʱҲÊǽྻµÄ£¬È»ºóÓÖ²à¼ÓÔØÒ»¸ö¶ñÒâÈí¼þ¼ÓÔØ·¨Ê½DLL¡£×îÖÕpayload DLL´ÓÒ»¸ötxtÎļþ£¨'templateX.txt'£©ÖнâÃܲ¢ÔÚϵͳÖÐÖ´ÐС£ÕâÊÇÒ»¸öºóÃÅ£¬Ö§³Ö¶à¸öÃüÁÈçϵͳÖØÆô¡¢×¢²á±íÏîÐ޸ĺÍÔÚÒþ²ØµÄCMD´°¿ÚÉÏÖ´ÐÐÃüÁîµÈ£¬Ëü»¹Õë¶ÔMetaMask¼ÓÃÜ»õ±ÒÇ®°üChromeÀ©Õ¹¡£¸Ã»î¶¯µÄÖ÷ÒªÕë¶ÔÈÕ±¾¡¢Öйų́Í塢мÓÆ¡¢ÖйúÏã¸ÛºÍ·ÆÂɱöµÈµØ¡£
https://news.sophos.com/en-us/2023/05/03/doubled-dll-sideloading-dragon-breath/
5¡¢Meta¼ì²âµ½NodeStealerºÍ¶à¸öð³äChatGPTµÄ¶ñÒâÈí¼þ
5ÔÂ3ÈÕ£¬Meta³ÆÆä·¢ÏÖDucktail¡¢NodeStealerºÍð³äChatGPTµÈ¹¤¾ßµÄ¶ñÒâÈí¼þµÄ¹¥»÷»î¶¯¡£×Ô3ÔÂÒÔÀ´£¬Meta¾Í·¢ÏÖÁËÔ¼10¸ö¶ñÒâÈí¼þ¼Ò×åʹÓÃChatGPTµÈÀàËÆÖ÷ÌâÈëÇÖÍøÂçÉϵÄÕÊ»§¡£1ÔÂÏÂÑ®£¬Ñо¿ÈËÔ±Ê״η¢ÏÖÁËNodeStealer¶ñÒâÈí¼þ£¬²¢½«Æä¹éÒòÓÚÔ½ÄϵĹ¥»÷Õߣ¬VirusTotalÉϼ¸ºõËùÓÐAVÒýÇ涼δÄܽ«Æä±ê־Ϊ¶ñÒâÈí¼þ¡£¸Ã¶ñÒâÈí¼þÖ÷ÒªÇÔÈ¡´æ´¢ÔÚChromiumä¯ÀÀÆ÷£¨ÈçChromeºÍEdge£©ÖеÄFacebook¡¢GmailºÍOutlookµÄcookieºÍÕÊ»§Æ¾¾Ý¡£FacebookÒÑÏòÓò×¢²áÉ̳ÂËßÁ˹¥»÷ÕߵķþÎñÆ÷£¬²¢ÓÚ1ÔÂ25ÈÕ½«Æä¹Ø±Õ¡£
https://engineering.fb.com/2023/05/03/security/malware-nodestealer-ducktail/
6¡¢Trend MicroÐû²¼Earth Longzhi¹¥»÷»î¶¯µÄ·ÖÎö³ÂËß
Trend MicroÔÚ5ÔÂ2ÈÕÐû²¼Á˹ØÓÚEarth Longzhi¹¥»÷»î¶¯µÄ·ÖÎö³ÂËß¡£¸Ã»î¶¯Ö÷ÒªÕë¶ÔÖйų́Í塢̩¹ú¡¢·ÆÂɱöºÍ쳼õÄÕþ¸®¡¢Ò½ÁƱ£½¡¡¢¼¼ÊõºÍÖÆÔìÏà¹Ø×éÖ¯¡£¹¥»÷ÕßÀûÓÃWindows Defender¿ÉÖ´ÐÐÎļþÀ´Ö´ÐÐDLL²à¼ÓÔØ£¬Í¬Ê±»¹ÀûÓÃÁËÒ»¸öÒ×Êܹ¥»÷µÄÇý¶¯·¨Ê½zamguard64.sys£¬Í¨¹ý×Ô´øÒ×Êܹ¥»÷µÄÇý¶¯·¨Ê½£¨BYOVD£©À´½ûÓÃÖ÷»úÉϵÄÄþ¾²²úÎï¡£´ËÍ⣬Earth Longzhi»¹Ê¹ÓÃÁËÒ»ÖÖеķ½Ê½À´½ûÓÃÄþ¾²²úÎͨ¹ýͼÏñÎļþÖ´ÐÐÑ¡ÏIFEO£©µÄ "stack rumbling"£¬ÕâÊÇÒ»ÖÖеÄDoS¼¼Êõ¡£
https://www.trendmicro.com/en_us/research/23/e/attack-on-security-titans-earth-longzhi-returns-with-new-tricks.html