¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20181030

Ðû²¼Ê±¼ä 2018-10-30
1¡¢AvastÅû¶Õë¶ÔÓ¢ÐÛͬÃËÍæ¼ÒµÄÍøÂç´¹Âڻ

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


AvastÑо¿ÍŶÓÔÚ2018ÄêÏÄÈÕÄ©ÊӲ쵽Õë¶ÔÓ¢ÐÛͬÃËÍæ¼ÒµÄÒ»¸öÐÂÍøÂç´¹Âڻ¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÖ÷ÒªÕë¶ÔÎ÷Å·µØÇø £¬£¬£¬´ó´ó¶¼¹¥»÷±¬·¢ÔÚ·¨¹ú £¬£¬£¬Æä´ÎÊǵ¹úºÍÎ÷°àÑÀ¡£¡£¡£¡£¡£¡£¡£¸Ã´¹ÂÚÍøÕ¾ÍйÜÔÚÃâ·ÑµÄÍйÜЧÀÍÉÌ000webhostÉÏ £¬£¬£¬ÒÔ½ÚÔ¼¿ªÖ§ £¬£¬£¬²¢ÇÒ´¹ÂÚÍøÕ¾Í¨³£²»»áÕ¼ÓÃÌ«¶à´ÅÅ̿ռäºÍ±¬·¢½Ï¶àµÄÁ÷Á¿ £¬£¬£¬Òò´Ë¹¥»÷ÕßÍùÍù»áÑ¡ÔñʹÓÃÃâ·ÑµÄÍйÜЧÀÍ¡£¡£¡£¡£¡£¡£¡£¸Ã´¹ÂÚÒ³ÃæÖÆ×÷µÃÊ®·ÖϸÄå £¬£¬£¬Í¼ÏñÖÊÁ¿Ò²Ã»ÓнµµÍ £¬£¬£¬²¢ÔÚÓû§µã»÷µÇ¼ʱ½«Æ¾Ö¤·¢ËÍÖÁ¹¥»÷Õß¡£¡£¡£¡£¡£¡£¡£

   

Ô­ÎÄÁ´½Ó£º

https://blog.avast.com/league-of-legends-gamers-targeted-by-phishing-scam-avast


2¡¢Ñо¿Ö°Ô±·¢Ã÷EmotetʹÓÃDKIMÈÆ¹ýÓʼþ¹ýÂ˲½·¥

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


2018Äê7ÔÂUS-CERTÔøÐû²¼¹ØÓÚÒøÐÐľÂíEmotetµÄ¾¯±¨ £¬£¬£¬²¢Ìá³öÁËÏìÓ¦µÄ·À»¤²½·¥½¨Òé £¬£¬£¬ÆäÖÐÒ»ÏÒéÊÇʹÓûùÓÚÓòµÄÐÂÎÅÈÏÖ¤¡¢±¨¸æºÍÒ»ÖÂÐÔ£¨DMARC£© £¬£¬£¬¸Ã»úÖÆ¿ÉÒÔÅжϵç×ÓÓʼþÊÇ·ñÀ´×ÔÕæÊµµÄµØµã¡£¡£¡£¡£¡£¡£¡£È»¶ø²»ÐÒµÄÊÇ £¬£¬£¬¹¥»÷ÕßËÆºõÒ²ÔĶÁÁËUS-CERTµÄ¾¯±¨ £¬£¬£¬Emotetͨ¹ýÒ»ÖÖÓòÐ®ÖÆÊÖÒÕÀ´ÈƹýDMARC¿ØÖÆ»úÖÆ¡£¡£¡£¡£¡£¡£¡£ÔÚTrickbot¨CEmotet¶ñÒâ»î¶¯ÖÐ £¬£¬£¬ÕâÊÇͨ¹ýн¨ÉèµÄ×ÓÓò_domainkeyʵÏֵġ£¡£¡£¡£¡£¡£¡£
  Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/malware-distributors-adopt-dkim-to-bypass-mail-filters/


3¡¢ÃÀ¼ÓÖÝÔ¼2800ÃûŮͯ¾üµÄСÎÒ˽¼ÒÐÅÏ¢Ôâй¶

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ÃÀ¹úÄϼÓÖݵİÂÀ¼ÖÎÏØÅ®Í¯¾ü×éÖ¯£¨GSOC£©Ôâµ½ºÚ¿Í¹¥»÷ £¬£¬£¬¸Ã×éÖ¯µÄµç×ÓÓʼþÕË»§Ôâµ½µÚÈý·½Î´ÊÚȨ»á¼û £¬£¬£¬Ô¼2800ÃûŮͯ¾ü³ÉÔ±µÄСÎÒ˽¼ÒÐÅÏ¢¿ÉÄÜй¶¡£¡£¡£¡£¡£¡£¡£±»µÁµÄÐÅÏ¢°üÀ¨ÐÕÃû¡¢³öÉúÈÕÆÚ¡¢¼Òͥסַ¡¢°ü¹ÜºÅÂëºÍÒ½ÁÆÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£ÕâЩÐÅÏ¢¿ÉÄܻᱻÓÃÓÚºóÐøµÄÉç½»¹¤³Ì¹¥»÷ºÍÉí·Ý͵ÇԵȡ£¡£¡£¡£¡£¡£¡£¸ÃÕË»§ÔÚ9ÔÂ30ÈÕÖÁ10ÔÂ1ÈÕÖ»±»Ð®ÖÆÁË1Ìì¡£¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://abc30.com/4561129/


4¡¢Æ±Îñ¹«Ë¾PaylogicÔâºÚ¿ÍÈëÇÖ £¬£¬£¬Ô¼6.4ÍòÓû§µÄСÎÒ˽¼ÒÐÅÏ¢±»µÁ

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ƱÎñ¹«Ë¾PaylogicÐû³ÆÆäƱÎñϵͳÔâºÚ¿ÍÈëÇÖ £¬£¬£¬¼ÓÈëTomorrowland 2014ÒôÀÖ½ÚµÄÔ¼6.4ÍòÃûµç×ÓÎèÇú·ÛË¿µÄСÎÒ˽¼ÒÐÅÏ¢±»µÁ¡£¡£¡£¡£¡£¡£¡£TomorrowlandÊÇÔÚ±ÈÀûʱСÕòBoom¾ÙÐеĵç×ÓÒôÀÖ½Ú £¬£¬£¬ÊÇÌìÏÂÉÏ×î´óµÄÒôÀÖ½ÚÖ®Ò»¡£¡£¡£¡£¡£¡£¡£Ð¹Â¶µÄÐÅÏ¢°üÀ¨Óû§µÄÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢ÐÔ±ð¡¢ÄêËêºÍÓÊÕþ±àÂëµÈ £¬£¬£¬µ«²»°üÀ¨Ö§¸¶ÐÅÏ¢¡¢ÃÜÂëºÍÓû§µØµã¡£¡£¡£¡£¡£¡£¡£PaylogicÔÚÉùÃ÷Öв¢Ã»ÓÐ͸¶¹¥»÷µÄÏêϸϸ½Ú¡£¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/crooks-stole-data-of-64-000-tomorrowland-festival-goers-523493.shtml


5¡¢¼ÓÃÜÇ®±ÒÉúÒâËùMapleChangeÔâºÚ¿Í¹¥»÷ £¬£¬£¬Ëðʧ913¸ö±ÈÌØ±Ò

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


¼ÓÃÜÇ®±ÒÉúÒâËùMapleChange³ÆÆäÔâµ½ºÚ¿Í¹¥»÷ £¬£¬£¬¹²Ëðʧ913¸ö±ÈÌØ±Ò£¨¼ÛÖµÔ¼600ÍòÃÀÔª£©¡£¡£¡£¡£¡£¡£¡£¸Ãƽ̨¾Ý³ÆÊǼÓÄôóµÄÒ»¸öСÐÍÉúÒâËù¡£¡£¡£¡£¡£¡£¡£MapleChangeÔÚTwitterÉϳƾ­ÓÉÏêϸµÄÊÓ²ì £¬£¬£¬¸ÃÉúÒâËùÎÞÁ¦¶ÔÓû§¾ÙÐÐÅ⸶ £¬£¬£¬½«²»µÃ²»¹Ø±Õ £¬£¬£¬°üÀ¨¹Ø±ÕÆäTwitterÕË»§ºÍÍøÕ¾¡£¡£¡£¡£¡£¡£¡£ÕâÒ»ÊÂÎñѸËÙÒý·¢Á˶àÈËÏÓÒÉ £¬£¬£¬ÒÔΪ¸ÃСÐÍÉúÒâËù¿ÉÄÜÖ»ÊÇÒ»¸öȦÌ× £¬£¬£¬¸ÃÊÂÎñ¿ÉÄÜ»áÒý·¢ºóÐøµÄÐÌÊÂÊӲ졣¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://ethereumworldnews.com/maplechange-crypto-exchange-hacked-for-913-bitcoin-btc-exit-scam-likely/


6¡¢Ñо¿ÍŶÓÐû²¼¹ØÓÚÀ¬»øÓʼþµÄ¸½¼þÎļþÀàÐÍµÄÆÊÎö±¨¸æ

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Ç÷ÊÆ¿Æ¼¼Ñо¿ÍŶÓÐû²¼¹ØÓÚÀ¬»øÓʼþµÄ¸½¼þÎļþÀàÐÍµÄÆÊÎö±¨¸æ £¬£¬£¬2017Äê×î³£¼ûµÄ¶ñÒ⸽¼þµÄÎļþÀàÐÍÊÇ.XLS¡¢.PDF¡¢.JS¡¢.VBS¡¢.DOCX¡¢.DOC¡¢.WSF¡¢.XLSX¡¢.EXEºÍ.HTML £¬£¬£¬µ«ÍøÂç·¸·¨·Ö×ÓÒѾ­À©´óÁËËûÃǵĹæÄ£ £¬£¬£¬ÐµĶñÒ⸽¼þÎļþÀàÐͰüÀ¨.ARJ¡¢.Z¡¢.IQY¡¢.PUBÒÔ¼°Windows 10ÖеÄÐÂÎļþÀàÐÍSettingContents-ms¡£¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://blog.trendmicro.com/trendlabs-security-intelligence/same-old-yet-brand-new-new-file-types-emerge-in-malware-spam-attachments/


ÉùÃ÷£º±¾×ÊѶÓÉ¿­·¢k8άËûÃüÇ徲С×é·­ÒëºÍÕûÀí