ÀÕË÷ÍÅ»ïLapsus$Éù³ÆÒÑ´ÓÈýÐǵç×ÓÇÔÈ¡190GBµÄÊý¾Ý
Ðû²¼Ê±¼ä 2022-03-08ÀÕË÷ÍÅ»ïLapsus$Éù³ÆÒÑ´ÓÈýÐǵç×ÓÇÔÈ¡190GBµÄÊý¾Ý
3ÔÂ4ÈÕ£¬£¬£¬£¬£¬ÀÕË÷ÍÅ»ïLapsus$Ðû²¼Ò»·ÝÉùÃ÷£¬£¬£¬£¬£¬³ÆÆäÒÑ´ÓÈýÐǵç×ÓÇÔÈ¡190GBµÄÊý¾Ý¡£¡£¡£¡£¡£¡£¸ÃÍŻォÇÔÈ¡µ½µÄÊý¾Ý²ð·ÖΪÈý¸öѹËõÎļþ£¬£¬£¬£¬£¬»®·ÖΪ£ºÓйØSecurity/Defense/Knox/Bootloader/TrustedAppsµÈÏîÄ¿µÄÔ´´úÂëºÍÏà¹ØÊý¾Ý£»£»£»£»ÓйØ×°±¸Çå¾²ºÍ¼ÓÃܵÄÔ´´úÂëºÍÏà¹ØÊý¾Ý£»£»£»£»À´×ÔÈýÐÇGithubµÄÖÖÖÖ´æ´¢¿â£¬£¬£¬£¬£¬ÈçÒÆ¶¯·ÀÓù¹¤³Ì¡¢ÈýÐÇÕÊ»§ºó¶Ë¡¢ÈýÐÇͨÐÐÖ¤ºó¶Ë/ǰ¶ËºÍSES¡£¡£¡£¡£¡£¡£Éв»ÇåÎúLapsus$ÊÇ·ñÁªÏµÁËÈýÐÇË÷ÒªÊê½ð£¬£¬£¬£¬£¬ÈýÐÇҲδ¶Ô´ËÊÂ×÷³ö»ØÓ¦¡£¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/128712/cyber-crime/samsung-electronics-lapsus-ransomware.html
Ñо¿Ö°Ô±·¢Ã÷¶à¸ö¶ñÒâÈí¼þʹÓÃй¶µÄNVIDIAÖ¤ÊéÊðÃû
¾ÝýÌå3ÔÂ5ÈÕ±¨µÀ£¬£¬£¬£¬£¬¹¥»÷ÕßÕýÔÚʹÓñ»µÁµÄNVIDIAÖ¤Êé¶Ô¶ñÒâÈí¼þ¾ÙÐÐÊðÃû¡£¡£¡£¡£¡£¡£NVIDIAÔÚÉÏÖÜÔâµ½¹¥»÷£¬£¬£¬£¬£¬ÀÕË÷ÍÅ»ïLapsus$ÇÔÈ¡²¢Ð¹Â¶Á˸ù«Ë¾1TBµÄÊý¾Ý¡£¡£¡£¡£¡£¡£ÆäÖаüÀ¨2¸ö´úÂëÊðÃûÖ¤Ê飬£¬£¬£¬£¬NVIDIAµÄ¿ª·¢Ö°Ô±Ê¹ÓÃËüÃÇÀ´ÊðÃûÇý¶¯³ÌÐòºÍ¿ÉÖ´ÐÐÎļþ¡£¡£¡£¡£¡£¡£Æ¾Ö¤ÉÏ´«µ½VirusTotalÑù±¾£¬£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ÕâЩ֤Êé±»ÓÃÓÚ¶à¸ö¶ñÒâÈí¼þºÍºÚ¿Í¹¤¾ßµÄÊðÃû£¬£¬£¬£¬£¬ÀýÈçCobalt Strike¡¢Mimikatz¡¢Quasar¡¢ÒÔ¼°¶àÖÖºóÃźÍľÂíµÈ¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/malware-now-using-nvidias-stolen-code-signing-certificates/
SharkBotαװ³Éɱ¶¾Èí¼þͨ¹ýGoogle PlayÊÐËÁ·Ö·¢
3ÔÂ3ÈÕ£¬£¬£¬£¬£¬NCC GroupÅû¶Á˶ñÒâÈí¼þSharkBotµÄ·Ö·¢»î¶¯µÄϸ½ÚÐÅÏ¢¡£¡£¡£¡£¡£¡£Ôڴ˴λÖУ¬£¬£¬£¬£¬SharkBotαװ³É¾ßÓÐϵͳÕûÀí¹¦Ð§µÄɱ¶¾Èí¼þ£¬£¬£¬£¬£¬Í¨¹ýAndroidÓ¦ÓÃÉ̳ÇGoogle Play Store¾ÙÐзַ¢¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÓÚ2021Äê10ÔÂÓÉCleafyÊ״η¢Ã÷£¬£¬£¬£¬£¬ÓëÆäËüÒøÐÐľÂíµÄÇø±ðÊÇ¿ÉÒÔͨ¹ý×Ô¶¯×ªÕËϵͳ(ATS)¾ÙÐÐתÕË¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬Ëü»¹¿ÉÒÔͨ¹ýͨ¹ý¡°×Ô¶¯»Ø¸´¡±¹¦Ð§£¬£¬£¬£¬£¬Ö±½Ó´ÓC2ÏÂÔØ¾ßÓÐATS¹¦Ð§µÄSharkBot²¢×Ô¶¯×°ÖÃÔÚÄ¿µÄ×°±¸ÉÏ¡£¡£¡£¡£¡£¡£
https://research.nccgroup.com/2022/03/03/sharkbot-a-new-generation-android-banking-trojan-being-distributed-on-google-play-store/
Imperva³ÆÆäÒѵÖÓù¸ß´ï250ÍòRPSµÄÀÕË÷DDoS¹¥»÷»î¶¯
Çå¾²¹«Ë¾ImpervaÔÚ3ÔÂ4ÈÕÌåÏÖ£¬£¬£¬£¬£¬Ëü×î½üµÖÓùÁ˸ߴïÿÃë250Íò´ÎÇëÇó(RPS)µÄÀÕË÷DDoS¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¹¥»÷µÄÖ÷ҪȪԴÊÇÓ¡¶ÈÄáÎ÷ÑÇ£¬£¬£¬£¬£¬Æä´ÎÊÇÃÀ¹ú¡¢Öйú¡¢°ÍÎ÷ºÍÓ¡¶ÈµÈ¡£¡£¡£¡£¡£¡£¹¥»÷Õß×Ô³ÆÊÇREvil£¬£¬£¬£¬£¬Éв»ÇåÎúÕâÊÇÕæµÄREvilÍÅ»ïÕÕ¾ÉðÃû¶¥ÌæÕߣ¬£¬£¬£¬£¬ImpervaÍøÂçµÄÖ¤¾ÝÅú×¢´Ë´ÎDDoS¹¥»÷Ô´×Ô½©Ê¬ÍøÂçM¨¥ris¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬±»¹¥»÷µÄ×éÖ¯ÔÚ¹¥»÷ʱ´úÊÕµ½Á˶à·ÝÊê½ð֪ͨ¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/03/imperva-thwarts-25-million-rps-ransom.html
AvastÐû²¼Õë¶ÔÀÕË÷Èí¼þHermeticRansomµÄÃ⺬»ìÃÜÆ÷
ýÌå3ÔÂ3ÈÕ±¨µÀ£¬£¬£¬£¬£¬Çå¾²¹«Ë¾AvastÐû²¼ÁË×Ô2ÔÂ23ÈÕ×îÏȹ¥»÷ÎÚ¿ËÀ¼µÄÀÕË÷Èí¼þHermeticRansomµÄÃ⺬»ìÃÜÆ÷¡£¡£¡£¡£¡£¡£Ö®Ç°£¬£¬£¬£¬£¬CrowdstrikeµÄÑо¿Ö°Ô±·¢Ã÷Æä¼ÓÃÜÀú³ÌÖб£´æÒ»¸öÂß¼Îó²î£¬£¬£¬£¬£¬¿É±»ÓÃÀ´ÆÆ½â¼ÓÃÜ¡£¡£¡£¡£¡£¡£×¨¼ÒÍÆ²â£¬£¬£¬£¬£¬¿ª·¢Ö°Ô±ÔÚ²âÊÔÀÕË÷Èí¼þµÄ·½ÃæÍ¶ÈëµÄ¾«ÉñÓÐÏÞ£¬£¬£¬£¬£¬¿ÉÄÜÊÇÓÉÓÚ¼ÓÃܲ¢²»ÊÇÆä×îÖÕÄ¿µÄ¡£¡£¡£¡£¡£¡£Avast»¹Ðû²¼ÁËʹÓýâÃÜÆ÷»Ö¸´Êý¾ÝµÄÏêϸ˵Ã÷¡£¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/128652/breaking-news/free-decryptor-hermeticransom-ukraine.html
MozillaÐû²¼Çå¾²¸üÐÂÐÞ¸´FirefoxÖÐ2¸öÒѱ»Ê¹ÓõÄ0day
¾Ý3ÔÂ6Èյı¨µÀ£¬£¬£¬£¬£¬Mozilla Firefox 97.0.2ÐÞ¸´ÁË2¸öÒѱ»Æð¾¢Ê¹ÓõÄÁãÈÕÎó²î¡£¡£¡£¡£¡£¡£Õâ2¸öÎó²î»®·ÖΪXSLT²ÎÊý´¦Öóͷ£ÖеÄÊͷźóʹÓÃÎó²î£¨CVE-2022-26485£©£¬£¬£¬£¬£¬ÒÔ¼°WebGPU IPC¿ò¼ÜÖеÄÊͷźóʹÓÃÎó²î£¨CVE-2022-26486£©¡£¡£¡£¡£¡£¡£MozillaûÓйûÕæ¹¥»÷ÕßÊÇÔõÑùʹÓÃÕâЩÎó²îµÄ£¬£¬£¬£¬£¬µ«ºÜ¿ÉÄÜÊÇͨ¹ý½«FirefoxÓû§Öض¨Ïòµ½¶ñÒâÍøÒ³À´Íê³ÉµÄ¡£¡£¡£¡£¡£¡£ÓÉÓÚÕâЩÎó²îµÄÑÏÖØÐÔ¼°ÆäÕý±»Ê¹Ó㬣¬£¬£¬£¬Ñо¿Ö°Ô±½¨ÒéËùÓÐÓû§Á¬Ã¦×°ÖøüС£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/mozilla-firefox-9702-fixes-two-actively-exploited-zero-day-bugs/
Çå¾²¹¤¾ß
Osmedeus
½ø¹¥ÐÔÇå¾²µÄÊÂÇéÁ÷ÒýÇæ¡£¡£¡£¡£¡£¡£
https://github.com/j3ssie/osmedeus
PyShell
¶àƽ̨Python WebShell£¬£¬£¬£¬£¬¿ÉÔÚ Web ЧÀÍÆ÷ÉÏ»ñµÃÀàËÆ shell µÄ½çÃæÒÔ¾ÙÐÐÔ¶³Ì»á¼û¡£¡£¡£¡£¡£¡£
https://github.com/JoelGMSec/PyShell
Authz0
×Ô¶¯ÊÚȨ²âÊÔ¹¤¾ß£¬£¬£¬£¬£¬¿ÉÒÔÆ¾Ö¤ URL ºÍ Roles ºÍ Credentials ʶ±ðδ¾ÊÚȨµÄ»á¼û¡£¡£¡£¡£¡£¡£
https://github.com/hahwul/authz0
patching
¸ÃÏîÄ¿À©Õ¹ÁËÊ¢ÐеÄIDA Pro·´»ã±à³ÌÐò£¬£¬£¬£¬£¬ÒÔ½¨Éè¸üǿʢµÄ½»»¥Ê½¶þ½øÖÆÐÞ²¹ÊÂÇéÁ÷³Ì£¬£¬£¬£¬£¬Ö¼ÔÚʵÏÖ¿ìËÙµü´ú¡£¡£¡£¡£¡£¡£
https://github.com/gaasedelen/patching
shfz
»ùÓÚ TypeScript ³¡¾°µÄ Web Ó¦ÓóÌÐòÄ£ºý²âÊÔ¿ò¼Ü¡£¡£¡£¡£¡£¡£
https://github.com/shfz/shfz
Çå¾²ÆÊÎö
¶íÂÞ˹¹ûÕæ 17,000 ¸ö IP µÄÃûµ¥£¬£¬£¬£¬£¬¾Ý³ÆÊǶíÂÞ˹×éÖ¯DDOS
https://www.bleepingcomputer.com/news/security/russia-shares-list-of-17-000-ips-allegedly-ddosing-russian-orgs/
ÎÚ¿ËÀ¼¼ÓÈë±±Ô¼Ç鱨¹²ÏíÍøÂç·ÀÓùÖÐÐÄ
https://www.bleepingcomputer.com/news/government/ukraine-to-join-nato-intel-sharing-cyberdefense-hub/
Ñо¿Ö°Ô±±Þ²ß²»ÒªÔÚÍøÂçä¯ÀÀÆ÷ÖÐÇ¿ÖÆÊ¹Óò»Çå¾²µÄÖ¤Êé
https://www.bleepingcomputer.com/news/security/experts-urge-eu-not-to-force-insecure-certificates-in-web-browsers/
¶íÂÞ˹եȡ»á¼û Facebook¡¢Twitter¡¢Íâ¹úÐÂÎÅýÌå
https://www.bleepingcomputer.com/news/technology/russia-blocks-access-to-facebook-twitter-foreign-news-outlets/
ÃÀ¹ú²ÎÒéԺͨ¹ýÍøÂçÇå¾²·¨°¸ÒÔÔöǿҪº¦»ù´¡ÉèÊ©Çå¾²
https://thehackernews.com/2022/03/us-senate-passes-cybersecurity-bill-to.html


¾©¹«Íø°²±¸11010802024551ºÅ