Èðµä¹«¹²ÎÀÉú¾ÖSmiNetÉÏÖÜÔâ¶à´Î¹¥»÷ÔÝʱ¹Ø±Õ£»Á½¸öеÄÍÅ»ïPrometheusºÍGrief¼ÓÈëÊýÊ®ÒÚÀÕË÷Êг¡
Ðû²¼Ê±¼ä 2021-06-011.Èðµä¹«¹²ÎÀÉú¾ÖSmiNetÉÏÖÜÔâ¶à´Î¹¥»÷ÔÝʱ¹Ø±Õ
Èðµä¹«¹²ÎÀÉú¾Ö (Folkh?lsomyndigheten)µÄѬȾ²¡ÏµÍ³SmiNetÔâµ½¶à´Î¹¥»÷£¬ÔÝʱ¹Ø±Õ¡£SmiNetÊÇÓÃÓÚ´æ´¢COVID-19ѬȾͳ¼ÆÊý¾ÝµÄµç×Ó³ÂËߣ¬ÔÚÔâµ½¶à´Î¹¥»÷ºóÓÚÉÏÖÜËĹرÕÒÔ½øÐÐÊӲ죬²¢ÓÚÉÏÖÜÎåÍíÉÏÖØÐÂÉÏÏß¡£µ«ÊÇÓÉÓÚϵͳ¹Ø±Õ£¬¸Ã»ú¹¹×ÔÉÏÖÜÈýÏÂÎç4µã¿ªÊ¼ÎÞ·¨³ÂËßCOVID-19ͳ¼ÆÊý¾Ý£¬Ö±µ½±¾ÖÜËÄ6ÔÂ3Èղůø»Ö¸´Õý³£¡£Ä¿Ç°£¬ÊÓ²ìÈÔÔÚ½øÐÐÖУ¬ÉÐδ·¢ÏÖÓÐÊý¾Ýй¶µÄ³ÂËß¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/swedish-health-agency-shuts-down-sminet-after-hacking-attempts/
2.Á½¸öеÄÍÅ»ïPrometheusºÍGrief¼ÓÈëÊýÊ®ÒÚÀÕË÷Êг¡
Á½¸öÐÂÐ˵ĵÄÀÕË÷ÍÅ»ïPrometheusºÍGrief¼ÓÈëÊýÊ®ÒÚÀÕË÷Êг¡¡£PrometheusÓÚ½üÈÕ¹ûÈ»ÁËÄ«Î÷¸çÕþ¸®µÄÊý¾Ý£¬¿ÉÄÜÊǵÚÒ»¸öÔÚÀ¶¡ÃÀÖÞÖ÷Òª¹ú¼Ò½øÐÐÈç´Ë´ó¹æÄ£»î¶¯µÄÍŻÆä»¹¹ûÈ»ÁË27ÃûÊܺ¦×éÖ¯µÄÊý¾Ý£¬°üÂÞ¼ÓÄɹú¼ÒÌìÈ»Æø¹«Ë¾¡¢Ëþ¶ûÈøÐÄѪ¹ÜÖÐÐÄÒÔ¼°·¨¹ú¡¢Å²Íþ¡¢ÈðÊ¿¡¢ºÉÀ¼¡¢°ÍÎ÷¡¢ÂíÀ´Î÷ÑǺͰ¢ÁªÇõµÈ¹úµÄ¹«Ë¾¡£GriefÔò³ÆÆäÒѹ¥»÷ÁË5¸ö×éÖ¯£¬ÆäÖÐ1¸öÔÚÄ«Î÷¸ç¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/118446/cyber-crime/prometheus-grief-ransomware.html
3.Ñо¿ÈËÔ±ÑÝʾÈçºÎÈÆ¹ýMicrosoft PatchGuardµÄ¹¥»÷
Ñо¿ÈËÔ±Kento OkiÑÝʾÁËÈçºÎÈÆ¹ýMicrosoft PatchGuardµÄ¹¥»÷¡£PatchGuardÒ²³ÆÎªÄں˲¹¶¡±£»¤£¬ÓÚ2005Äê±»ÒýÈëWindows²Ù×÷ϵͳ¡£Kento³ÆPatchGuardÖдæÔÚÒ»¸ö©¶´£¬¿É±»ÓÃÀ´½«Î´Ç©ÃûµÄ¶ñÒâ´úÂë×¢Èëµ½Windows²Ù×÷ϵͳÄÚºËÖУ¬²¢¹ûÈ»Á˴˴ι¥»÷µÄ¼¼Êõϸ½ÚÒÔ¼°¿´·¨ÑéÖ¤ (PoC) ´úÂ롣Ŀǰ£¬Î¢Èí²¢Î´ÐÞ¸´¸Ã©¶´£¬¶øÇÒÆäÔÚÒÔǰ»¹½«ÆäËüPatchGuardÈÆ¹ý©¶´±ê־Ϊ·ÇÄþ¾²ÎÊÌâ¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/118427/hacking/microsoft-patchguard-kpp-bypass.html
4.Cisco TalosÅû¶Accusoft ImageGearÖеĶà¸ö©¶´
Cisco TalosÅû¶ÁËAccusoft ImageGearÖеĶà¸ö©¶´¡£ImageGearÊÇÒ»¸öÎĵµÍ¼Ïñ¿ª·¢¹¤¾ß°ü£¬ÔÊÐíÓû§´´½¨¡¢±à¼¡¢×¢ÊͺÍת»»ÖÖÖÖͼÏñ¡£´Ë´ÎÅû¶µÄ©¶´°üÂÞÔ½½çд©¶´£¨CVE-2021-21793¡¢CVE-2021-21794ºÍ(CVE-2021-21824£©¡¢»º³åÇøÒç³ö©¶´(CVE-2021-21795¡¢CVE-2021-21808ºÍCVE-2021-21821£©ÒÔ¼°Ô¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2021-21833£©µÈ¡£
ÔÎÄÁ´½Ó£º
https://blog.talosintelligence.com/2021/06/vuln-spotlight-accusoft-.html
5.Check PointÐû²¼2021ÄêÑÇÌ«µØÓòÍøÂç¹¥»÷·ÖÎö³ÂËß
Check PointÐû²¼ÁË2021ÄêÑÇÌ«µØÓòÍøÂç¹¥»÷µÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬Óë2020Äê5ÔÂÏà±È£¬ÑÇÌ«µØÓò (APAC) µÄÍøÂç¹¥»÷ÊýÁ¿Í¬±ÈÔö³¤ÁË168%£¬¶øÔÚ2021Äê4ÔÂÖÁ5ÔÂÆÚ¼ä¾ÍÔö¼ÓÁË53%¡£Ôö·ù×î´óµÄ¶ñÒâÈí¼þÀàÐÍÊÇÀÕË÷Èí¼þºÍÔ¶³Ì·ÃÎÊľÂí (RAT)£¬Óë½ñÄêÄê³õÏà±È£¬¶¼Ôö¼ÓÁË26%£¬¶øÒøÐÐľÂíºÍÐÅÏ¢ÇÔÈ¡¹¤¾ßÒ²Ôö¼ÓÁË10%¡£ÍøÂç¹¥»÷´ÎÊýÔö·ù×î´óµÄǰ5¸ö¹ú¼Ò/µØÓòÊÇÈÕ±¾£¨40%£©¡¢ÐÂ¼ÓÆÂ£¨30%£©¡¢Ó¡¶ÈÄáÎ÷ÑÇ£¨25%£©¡¢ÂíÀ´Î÷ÑÇ£¨22%£©ºÍÖйų́Í壨17%£©¡£
ÔÎÄÁ´½Ó£º
https://blog.checkpoint.com/2021/05/27/check-point-research-asia-pacific-experiencing-a-168-year-on-year-increase-in-cyberattacks-in-may-2021/
6.KasperskyÐû²¼2021ÄêQ1 Non-mobileÍþÐ²Ì¬ÊÆ³ÂËß
KasperskyÐû²¼ÁË2021ÄêQ1 Non-mobileÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬µÚÒ»¼¾¶ÈÖÐ×î¶àµÄ½ðÈÚ¶ñÒâÈí¼þÊÇZeuS/Zbot£¨30.8%£©¡¢CliptoShuffler(15.9%)ºÍTrickster (7.5%)£¬ÊÜ´ËÀ๥»÷×î¶àµÄ¹ú¼ÒΪÍÁ¿âÂü˹̹£¨6.3%£©¡¢Ëþ¼ª¿Ë˹̹£¨5.3%£©ºÍ°¢¸»º¹£¨4.8%£©¡£´ËÍ⣬KasperskyÔÚQ1¹²¼ì²âµ½ÁË7¸öеÄÀÕË÷Èí¼þºÍ4354ÖÖбäÌ壬ÊÜ´ËÀ๥»÷×î¶àµÄ¹ú¼ÒΪÃϼÓÀ¹ú£¨2.31%£©¡¢°£Èû¶í±ÈÑÇ£¨0.62%£©ºÍÏ£À°£¨0.49%£©¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/it-threat-evolution-q1-2021-non-mobile-statistics/102425/