Î÷°àÑÀÇå¾²³§ÉÌProsegurÔâµ½ÀÕË÷Èí¼þRyuk¹¥»÷£»£»£»£»¿¨°Í˹»ùÐÞ¸´Web Protection¹¦Ð§ÖеĶà¸öÎó²î

Ðû²¼Ê±¼ä 2019-11-29
1¡¢Î÷°àÑÀÇå¾²³§ÉÌProsegurÔâµ½ÀÕË÷Èí¼þRyuk¹¥»÷

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾

Î÷°àÑÀÇå¾²³§ÉÌProsegurÔÚÒ»·ÝÉùÃ÷ÖÐÐû²¼ÔâÀÕË÷Èí¼þ¹¥»÷ £¬£¬£¬£¬£¬Õû¸ö¹«Ë¾µÄÍøÂç¶¼Òѹرա£¡£¡£¡£¡£Ö»¹ÜûÓлñµÃ¹Ù·½È·ÈÏ £¬£¬£¬£¬£¬µ«BleepingComputerÏàʶµ½¸Ã¹¥»÷Ó°ÏìÁËProsegurÔÚÅ·ÖÞµÄËùÓÐËùÔÚ¡£¡£¡£¡£¡£ÔÚTwitterÉϵĸüÐÂÖÐ £¬£¬£¬£¬£¬ProsegurÈ·Èϵ¼ÖÂÆäЧÀÍÖÐÖ¹µÄ¶ñÒâÈí¼þÊÇRyuk £¬£¬£¬£¬£¬²¢½«ÊÂÎñ±ê¼ÇΪ¡°Ò»Ñùƽ³£ÐÔ¹¥»÷¡±¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖÒѽÓÄÉ×îºéÁ÷ƽµÄÇå¾²²½·¥×èÖ¹¸Ã¶ñÒâÈí¼þÔÚÆäÄÚ²¿¼°¿Í»§¶ËÍøÂçÖÐÈö²¥¡£¡£¡£¡£¡£×÷ΪԤ·À²½·¥ £¬£¬£¬£¬£¬¸Ã¹«Ë¾½«¼ÌÐøÏÞÖÆÍ¨Ñ¶ £¬£¬£¬£¬£¬Ö±µ½È·ÈÏÆäϵͳÒÑÇå½à £¬£¬£¬£¬£¬²¢ÕýÔÚÆð¾¢ÒÔ×î¿ìµÄËÙÂʻָ´ÊÜÓ°ÏìµÄЧÀÍ¡£¡£¡£¡£¡£

   

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/ryuk-ransomware-forces-prosegur-security-firm-to-shut-down-network/

2¡¢GPHealthÒ½ÁÆÖÐÐÄ»¼ÕßÊý¾Ý±»ÀÕË÷Èí¼þ¼ÓÃÜ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Great Plains HealthÒ½ÁÆÖÐÐÄÔÚ±¾ÖܳõÔâµ½ÀÕË÷Èí¼þ¹¥»÷ £¬£¬£¬£¬£¬Ô±¹¤±»ÆÈʹÓÃÖ½ºÍ±Ê¾ÙÐа칫¡£¡£¡£¡£¡£¸ÃÊÂÎñ±¬·¢ÔÚÖÜÒ»ÍíÉÏ7µã×óÓÒ £¬£¬£¬£¬£¬ÖܶþGPHealthÐû²¼×÷·Ï´ó×ڷǽôÆÈ»¼ÕßµÄÔ¤Ô¼ºÍÁ÷³Ì £¬£¬£¬£¬£¬µ«²»Ó°ÏìÊÖÊõºÍÒ½ÁÆÓ°ÏñÅÄÉã¡£¡£¡£¡£¡£GPHealthÊ×ϯִÐйÙMel McNeaÌåÏÖûÓÐÀíÓÉÏÓÒÉ»¼ÕßÊý¾ÝÔâµ½»á¼û £¬£¬£¬£¬£¬µ«¸Ã¹«Ë¾½«¾ÙÐÐÖÜÈ«µÄÉó²é¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹ÌåÏÖÕýÔÚÓëÖ´·¨²¿·ÖÏàÖú¾ÙÐÐÊӲ졣¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÖÐʹÓõÄÀÕË÷Èí¼þÀàÐÍÒÔ¼°¸Ã¹«Ë¾ÊÇ·ñÖ§¸¶ÁËÊê½ð¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/ransomware-locks-medical-records-at-great-plains-health/

3¡¢Á¬Ëø²ÍÌüOn The Border¿Í»§Ö§¸¶ÐÅÏ¢±»µÁ

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾

Á¬Ëø²ÍÌüOn The Border֪ͨ¿Í»§ÆäÖ§¸¶ÐÅÏ¢¿ÉÄÜÒѱ»ºÚ¿ÍÇÔÈ¡¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ11ÔÂ14ÈÕ·¢Ã÷ÁË´ËÊÂÎñ £¬£¬£¬£¬£¬¹«Ë¾ÊÓ²ìÒÔΪÓÐ27¸öÖݵIJÍÌüÊܵ½Ó°Ïì¡£¡£¡£¡£¡£ÏÖÔÚµÄÖ¤¾ÝÅú×¢ÕâЩ²ÍÌüÔÚ2019Äê4ÔÂ10ÈÕÖÁ2019Äê8ÔÂ10ÈÕÖ®¼äѬȾÁ˶ñÒâÈí¼þ £¬£¬£¬£¬£¬¿ÉÄܱ»ÇԵĿͻ§ÐÅÏ¢°üÀ¨ÐÕÃû¡¢ÐÅÓÿ¨ºÅ¡¢ÓÐÓÃÆÚ¡¢ÑéÖ¤ÂëµÈ £¬£¬£¬£¬£¬µ«²»°üÀ¨³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¼°Éí·ÝID¡£¡£¡£¡£¡£ÓµÓÐOn The BorderµÄ˽ÈËͶ×ʹ«Ë¾Argonne Capital GroupÒ²ÓµÓпì²ÍÁ¬ËøµêKrystal £¬£¬£¬£¬£¬¸ÃÁ¬Ëøµê½üÆÚÒ²Ôâµ½Ö§¸¶ÐÅϢ͵ÇÔÊÂÎñ £¬£¬£¬£¬£¬ÏÖÔÚ»¹²»ÇåÎúÕâÁ½ÆðÊÂÎñÖ®¼äÊÇ·ñ±£´æ¹ØÁª¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/malware-found-payment-system-used-border-restaurants

4¡¢¿¨°Í˹»ùÐÞ¸´Web Protection¹¦Ð§ÖеĶà¸öÎó²î


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


¿¨°Í˹»ùÐÞ¸´ÁËһЩÎó²î £¬£¬£¬£¬£¬ÕâЩÎó²îÓ°ÏìÁËÆäɱ¶¾Èí¼þ¡¢InternetÇå¾²¡¢Çå¾²ÔÆµÈ²úÆ·ÖеÄWeb Protection¹¦Ð§¡£¡£¡£¡£¡£Æ¾Ö¤Ñо¿Ö°Ô±Wladimir PalantµÄÐÎò £¬£¬£¬£¬£¬¿¨°Í˹»ùWeb Protection¹¦Ð§ÐèÒªÓëÖ÷Ó¦ÓóÌÐò¾ÙÐÐͨѶ £¬£¬£¬£¬£¬²¢ÇÒʹÓÃÒ»¸öWebÓò²»ÖªµÀµÄÃÜÔ¿À´È·±£Ç徲ͨѶ¡£¡£¡£¡£¡£È»¶øÓÉÓÚ±£´æÎó²î £¬£¬£¬£¬£¬ÍøÕ¾¿ÉÒÔºÜÈÝÒ׵ػñÈ¡´ËÃÜÔ¿ £¬£¬£¬£¬£¬²¢ÏñWeb ProtectionÒ»ÑùÓëKasperskyÓ¦ÓóÌÐò½¨ÉèÅþÁ¬ºÍ·¢ËÍÏÂÁî¡£¡£¡£¡£¡£ÈôÊÇûÓÐ×°Öÿ¨°Í˹»ùµÄä¯ÀÀÆ÷²å¼þ £¬£¬£¬£¬£¬¿¨°Í˹»ù½«Ö±½Ó½«Æä¾ç±¾×¢Èëµ½ÍøÒ³ÖС£¡£¡£¡£¡£¸ÃÎó²î£¨CVE-2019-15685£©¿ÉÓÃÓÚ¾²Ä¬½ûÓÃ¹ã¸æ×èµ²ºÍ¸ú×Ù±£»£»£»£»¤¹¦Ð§¡£¡£¡£¡£¡£ÔÚ7Ô·ݿ¨°Í˹»ùÐÞ¸´´ËÎó²îºó £¬£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ÓÖÒýÈëÁËеÄÎÊÌâ £¬£¬£¬£¬£¬°üÀ¨¿Éµ¼ÖÂɱ¶¾Èí¼þÍß½âµÄÎó²î£¨CVE-2019-15686£©ÒÔ¼°ÐÅϢй¶µÄÎó²î£¨CVE-2019-15687£©¡£¡£¡£¡£¡£¿£¿£¿£¿£¿¨°Í˹»ùÔÚ11ÔÂ28ÈÕÐû²¼ÁËеÄÐÞ¸´²¹¶¡¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.securityweek.com/kaspersky-patches-several-vulnerabilities-web-protection-features

5¡¢·¸·¨ÍÅ»ïRevengeHotelsÖ÷ÒªÕë¶ÔÈ«ÇòÂùÝ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


¿¨°Í˹»ùÐû²¼¹ØÓÚ·¸·¨ÍÅ»ïRevengeHotelsµÄÕë¶ÔÐÔ¶ñÒâ»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¸ÃÍÅ»ïÖ÷ÒªÕë¶ÔÂùݡ¢ÂÃÉá¡¢±ö¹ÝºÍÂÃÓι«Ë¾ £¬£¬£¬£¬£¬¿¨°Í˹»ùÒÑÈ·ÈÏÁè¼Ý20¼ÒÂùݳÉΪÊܺ¦Õß £¬£¬£¬£¬£¬ÕâЩÂùݻ®·ÖλÓÚ°ÍÎ÷µÄ8¸öÖݺͰ¢¸ùÍ¢¡¢²£ÀûάÑÇ¡¢ÖÇÀûµÈ¹ú¼Ò¡£¡£¡£¡£¡£¸Ã·¸·¨ÍÅ»ïÖ¼ÔÚÇÔÈ¡´æ´¢ÔÚÂùÝϵͳÖÐÒÔ¼°´ÓBooking.comµÈÔÚÏßÂÃÐÐÉçÇÔÈ¡µÄ¿Í»§ÐÅÓÿ¨Êý¾Ý¡£¡£¡£¡£¡£¸ÃÍÅ»ï×Ô2015ÄêÒÔÀ´Ò»Ö±»îÔ¾ £¬£¬£¬£¬£¬µ«Æä»î¶¯ÔÚ2019ÄêµÖ´ïáÛ·å¡£¡£¡£¡£¡£Ö÷ÒªµÄ¹¥»÷ǰÑÔÊÇͨ¹ýµç×ÓÓʼþ·¢Ë͵ĶñÒâWord¡¢Excel»òPDFÎĵµ £¬£¬£¬£¬£¬ËüÃǰüÀ¨RevengeRAT¡¢NjRAT¡¢NanoCoreRAT¡¢888 RATµÈ¶ñÒâÈí¼þ¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://securelist.com/revengehotels/95229/

6¡¢ºÉÀ¼NCSCÖÒÑÔ3ÖÖÀÕË÷Èí¼þÒÑѬȾȫÇò1800¼ÒÆóÒµ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ºÉÀ¼¹ú¼ÒÍøÂçÇå¾²ÖÐÐÄ£¨NCSC£©µÄÉñÃØ±¨¸æÏÔʾ £¬£¬£¬£¬£¬È«ÇòÖÁÉÙÓÐ1800¼Ò¹«Ë¾Êܵ½3ÖÖÀÕË÷Èí¼þµÄÓ°Ïì¡£¡£¡£¡£¡£ÕâÈýÖÖÀÕË÷Èí¼þ»®·ÖÊÇLockerGoga¡¢MegaCortexºÍRyuk £¬£¬£¬£¬£¬ËüÃDz¿·ÖÒÀÀµÓÚÏàͬµÄ»ù´¡ÉèÊ© £¬£¬£¬£¬£¬ÕâÅú×¢ËüÃÇ»ñÈ¡ÆóÒµÍøÂç»á¼ûȨÏ޵ķ½·¨¿ÉÄÜÓëÒ»¸ö¼òµ¥ÈëÇÖÕßÓйء£¡£¡£¡£¡£NCSCûÓÐÔÚ±¨¸æÖÐÌṩÊÜÓ°Ï칫˾µÄÃû³Æ £¬£¬£¬£¬£¬µ«ÌåÏÖ¹¥»÷ÕßµÄÄ¿µÄÊÇÊÕÈëȪԴ´ïÊý°ÙÍò»òÊýÊ®ÒÚÃÀÔªµÄ´óÐÍÆóÒµ¡£¡£¡£¡£¡£Êܺ¦ÕßÀ´×ÔÆû³µ¡¢ÐÞ½¨¡¢»¯Ñ§¡¢Ò½ÁÆ¡¢Ê³ÎïºÍÓéÀֵȸ÷¸öÁìÓò £¬£¬£¬£¬£¬ÖÁÉÙÓÐÒ»¸öÒªº¦»ù´¡ÉèÊ©ÁìÓòµÄÆóÒµÔâµ½¹¥»÷¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/dutch-govt-warns-of-3-ransomware-infecting-1-800-businesses/