Èðµä¹«¹²ÎÀÉú¾ÖSmiNetÉÏÖÜÔâ¶à´Î¹¥»÷ÔÝʱ¹Ø±Õ£»Á½¸öеÄÍÅ»ïPrometheusºÍGrief¼ÓÈëÊýÊ®ÒÚÀÕË÷Êг¡

Ðû²¼Ê±¼ä 2021-06-01

1.Èðµä¹«¹²ÎÀÉú¾ÖSmiNetÉÏÖÜÔâ¶à´Î¹¥»÷ÔÝʱ¹Ø±Õ


1.jpg


Èðµä¹«¹²ÎÀÉú¾Ö (Folkh?lsomyndigheten)µÄѬȾ²¡ÏµÍ³SmiNetÔâµ½¶à´Î¹¥»÷ £¬ÔÝʱ¹Ø±Õ¡£SmiNetÊÇÓÃÓÚ´æ´¢COVID-19ѬȾͳ¼ÆÊý¾ÝµÄµç×Ó³ÂËß £¬ÔÚÔâµ½¶à´Î¹¥»÷ºóÓÚÉÏÖÜËĹرÕÒÔ½øÐÐÊÓ²ì £¬²¢ÓÚÉÏÖÜÎåÍíÉÏÖØÐÂÉÏÏß¡£µ«ÊÇÓÉÓÚϵͳ¹Ø±Õ £¬¸Ã»ú¹¹×ÔÉÏÖÜÈýÏÂÎç4µã¿ªÊ¼ÎÞ·¨³ÂËßCOVID-19ͳ¼ÆÊý¾Ý £¬Ö±µ½±¾ÖÜËÄ6ÔÂ3Èղůø»Ö¸´Õý³£¡£Ä¿Ç° £¬ÊÓ²ìÈÔÔÚ½øÐÐÖÐ £¬ÉÐδ·¢ÏÖÓÐÊý¾Ýй¶µÄ³ÂËß¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/swedish-health-agency-shuts-down-sminet-after-hacking-attempts/


2.Á½¸öеÄÍÅ»ïPrometheusºÍGrief¼ÓÈëÊýÊ®ÒÚÀÕË÷Êг¡


2.jpg


Á½¸öÐÂÐ˵ĵÄÀÕË÷ÍÅ»ïPrometheusºÍGrief¼ÓÈëÊýÊ®ÒÚÀÕË÷Êг¡¡£PrometheusÓÚ½üÈÕ¹ûÈ»ÁËÄ«Î÷¸çÕþ¸®µÄÊý¾Ý £¬¿ÉÄÜÊǵÚÒ»¸öÔÚÀ­¶¡ÃÀÖÞÖ÷Òª¹ú¼Ò½øÐÐÈç´Ë´ó¹æÄ£»î¶¯µÄÍÅ»ï £¬Æä»¹¹ûÈ»ÁË27ÃûÊܺ¦×éÖ¯µÄÊý¾Ý £¬°üÂÞ¼ÓÄɹú¼ÒÌìÈ»Æø¹«Ë¾¡¢Ëþ¶ûÈøÐÄѪ¹ÜÖÐÐÄÒÔ¼°·¨¹ú¡¢Å²Íþ¡¢ÈðÊ¿¡¢ºÉÀ¼¡¢°ÍÎ÷¡¢ÂíÀ´Î÷ÑǺͰ¢ÁªÇõµÈ¹úµÄ¹«Ë¾¡£GriefÔò³ÆÆäÒѹ¥»÷ÁË5¸ö×éÖ¯ £¬ÆäÖÐ1¸öÔÚÄ«Î÷¸ç¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118446/cyber-crime/prometheus-grief-ransomware.html


3.Ñо¿ÈËÔ±ÑÝʾÈçºÎÈÆ¹ýMicrosoft PatchGuardµÄ¹¥»÷


3.jpg


Ñо¿ÈËÔ±Kento OkiÑÝʾÁËÈçºÎÈÆ¹ýMicrosoft PatchGuardµÄ¹¥»÷¡£PatchGuardÒ²³ÆÎªÄں˲¹¶¡±£»¤ £¬ÓÚ2005Äê±»ÒýÈëWindows²Ù×÷ϵͳ¡£Kento³ÆPatchGuardÖдæÔÚÒ»¸ö©¶´ £¬¿É±»ÓÃÀ´½«Î´Ç©ÃûµÄ¶ñÒâ´úÂë×¢Èëµ½Windows²Ù×÷ϵͳÄÚºËÖÐ £¬²¢¹ûÈ»Á˴˴ι¥»÷µÄ¼¼Êõϸ½ÚÒÔ¼°¿´·¨ÑéÖ¤ (PoC) ´úÂ롣Ŀǰ £¬Î¢Èí²¢Î´ÐÞ¸´¸Ã©¶´ £¬¶øÇÒÆäÔÚÒÔǰ»¹½«ÆäËüPatchGuardÈÆ¹ý©¶´±ê־Ϊ·ÇÄþ¾²ÎÊÌâ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118427/hacking/microsoft-patchguard-kpp-bypass.html


4.Cisco TalosÅû¶Accusoft ImageGearÖеĶà¸ö©¶´


4.jpg


Cisco TalosÅû¶ÁËAccusoft ImageGearÖеĶà¸ö©¶´¡£ImageGearÊÇÒ»¸öÎĵµÍ¼Ïñ¿ª·¢¹¤¾ß°ü £¬ÔÊÐíÓû§´´½¨¡¢±à¼­¡¢×¢ÊͺÍת»»ÖÖÖÖͼÏñ¡£´Ë´ÎÅû¶µÄ©¶´°üÂÞÔ½½çд©¶´£¨CVE-2021-21793¡¢CVE-2021-21794ºÍ(CVE-2021-21824£©¡¢»º³åÇøÒç³ö©¶´(CVE-2021-21795¡¢CVE-2021-21808ºÍCVE-2021-21821£©ÒÔ¼°Ô¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2021-21833£©µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/06/vuln-spotlight-accusoft-.html    


5.Check PointÐû²¼2021ÄêÑÇÌ«µØÓòÍøÂç¹¥»÷·ÖÎö³ÂËß


5.jpg


Check PointÐû²¼ÁË2021ÄêÑÇÌ«µØÓòÍøÂç¹¥»÷µÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö £¬Óë2020Äê5ÔÂÏà±È £¬ÑÇÌ«µØÓò (APAC) µÄÍøÂç¹¥»÷ÊýÁ¿Í¬±ÈÔö³¤ÁË168% £¬¶øÔÚ2021Äê4ÔÂÖÁ5ÔÂÆÚ¼ä¾ÍÔö¼ÓÁË53%¡£Ôö·ù×î´óµÄ¶ñÒâÈí¼þÀàÐÍÊÇÀÕË÷Èí¼þºÍÔ¶³Ì·ÃÎÊľÂí (RAT) £¬Óë½ñÄêÄê³õÏà±È £¬¶¼Ôö¼ÓÁË26% £¬¶øÒøÐÐľÂíºÍÐÅÏ¢ÇÔÈ¡¹¤¾ßÒ²Ôö¼ÓÁË10%¡£ÍøÂç¹¥»÷´ÎÊýÔö·ù×î´óµÄǰ5¸ö¹ú¼Ò/µØÓòÊÇÈÕ±¾£¨40%£©¡¢ÐÂ¼ÓÆÂ£¨30%£©¡¢Ó¡¶ÈÄáÎ÷ÑÇ£¨25%£©¡¢ÂíÀ´Î÷ÑÇ£¨22%£©ºÍÖйų́Í壨17%£©¡£


Ô­ÎÄÁ´½Ó£º

https://blog.checkpoint.com/2021/05/27/check-point-research-asia-pacific-experiencing-a-168-year-on-year-increase-in-cyberattacks-in-may-2021/


6.KasperskyÐû²¼2021ÄêQ1 Non-mobileÍþÐ²Ì¬ÊÆ³ÂËß


6.jpg


KasperskyÐû²¼ÁË2021ÄêQ1 Non-mobileÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö £¬µÚÒ»¼¾¶ÈÖÐ×î¶àµÄ½ðÈÚ¶ñÒâÈí¼þÊÇZeuS/Zbot£¨30.8%£©¡¢CliptoShuffler(15.9%)ºÍTrickster (7.5%) £¬ÊÜ´ËÀ๥»÷×î¶àµÄ¹ú¼ÒΪÍÁ¿âÂü˹̹£¨6.3%£©¡¢Ëþ¼ª¿Ë˹̹£¨5.3%£©ºÍ°¢¸»º¹£¨4.8%£©¡£´ËÍâ £¬KasperskyÔÚQ1¹²¼ì²âµ½ÁË7¸öеÄÀÕË÷Èí¼þºÍ4354ÖÖбäÌå £¬ÊÜ´ËÀ๥»÷×î¶àµÄ¹ú¼ÒΪÃϼÓÀ­¹ú£¨2.31%£©¡¢°£Èû¶í±ÈÑÇ£¨0.62%£©ºÍÏ£À°£¨0.49%£©¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/it-threat-evolution-q1-2021-non-mobile-statistics/102425/