FBI×·»ØColonial PipelineÖ§¸¶µÄ230ÍòÃÀÔªÊê½ð £»¹È¸èÒòÀÄÓÃÆäÔÚ¹ã¸æÁìÓòµÄְλ±»·¨¹ú·£¿î2.2ÒÚÅ·Ôª

Ðû²¼Ê±¼ä 2021-06-09

1.FBI×·»ØColonial PipelineÖ§¸¶µÄ230ÍòÃÀÔªÊê½ð


1.jpg


ÃÀ¹úFBIºÍDOJÁªºÏ×·»ØÁËColonial PipelineÖ§¸¶µÄÌ©°ëÊê½ð¡£5ÔÂ7ÈÕ £¬¸Ã¹«Ë¾Ôâµ½ÁËDarkSideÀÕË÷Èí¼þ¹¥»÷ȼÁϹܵÀ¹Ø±Õ £¬Îª´ËÆäÖ§¸¶ÁË×ܼÆ440ÍòÃÀÔªµÄÊê½ð £¬´Ë´Î×·»ØÁËÆäÖеÄ230ÍòÃÀÔª¡£DOJÌåÏÖ £¬ËûÃÇͨ¹ýÉó²é±ÈÌØ±Ò¹«¹²·ÖÀàÕË £¬¸ú×ÙÁ˶à´Î±ÈÌØ±ÒתÕË £¬²¢È·¶¨Ô¼Äª63.7±ÈÌØ±ÒÒÑ×ªÒÆµ½Ìض¨µØÖ· £¬¶øFBIÓµÓиõØÖ·µÄ˽Կ»ò´óÖµÈЧµÄµØÖ·¡£ÃÀ¹ú˾·¨²¿»¹³Æ £¬ÊÂʵÉÏÁª°îÊÓ²ì¾Ö´ÓÒ»¿ªÊ¼¾ÍÉèÁËȦÌס£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/fbi-claws-back-millions-darksides-ransom/166705/


2.¹È¸èÒòÀÄÓÃÆäÔÚ¹ã¸æÁìÓòµÄְλ±»·¨¹ú·£¿î2.2ÒÚÅ·Ôª


2.jpg


·¨¹ú¾ºÕù¹ÜÀí»ú¹¹¶Ô¹È¸è´¦ÒÔ2.2ÒÚÅ·ÔªµÄ·£¿î £¬ÀíÓÉÊǹȸèÀÄÓÃÆäÔÚ¹ã¸æÁìÓòµÄÖ÷µ¼Ö°Î»²¢Æ«Ì»Æä·þÎñ¶ø¶ÔÆäËü³öÊéÉ̺;ºÕù¶ÔÊÖ²»¹«¡£GoogleûÓжԴ˴ÎÖ¸¿ØÌá³öÒìÒé £¬Í¬ÒâÖ§¸¶·£¿î²¢ÔÊÐí½«¸ÄÉÆ¹È¸èAd Manager·þÎñ £¬ÒÔ¼°ÖÕÖ¹ÓÐÀûÓÚGoogleµÄÌõ¿î¡£ÔçÔÚ2017Äê6Ô £¬Å·ÃËίԱ»áÒòÆäÀûÓÃÖ÷µ¼Ö°Î»µ÷ÕûËÑË÷½á¹û¶øË𺦾ºÕù¶ÔÊÖµÄÀûÒæ £¬·£¿î27.2ÒÚÃÀÔª £»2019Äê3ÔÂÅ·ÃËίԱ»áÓÖÒòÆäÀÄÓÃÊг¡Ö§Åäְλ·£¿î17ÒÚÃÀÔª¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/google/google-fined-220-million-for-abusing-dominant-role-in-online-ads/


3.MicrosoftÄþ¾²¸üР£¬ÐÞ¸´7¸ö0dayÔÚÄÚµÄ50¸ö©¶´


3.jpg


MicrosoftÐû²¼ÁË6Ô·ݵÄÖܶþÄþ¾²¸üР£¬ÐÞ¸´Á˰üÂÞ7¸ö0dayÔÚÄÚµÄ50¸ö©¶´¡£´Ë´ÎÐÞ¸´µÄ0day°üÂÞWindowsÄÚºËÐÅϢй¶©¶´£¨CVE-2021-31955£©¡¢Windows NTFSÌáȨ©¶´£¨CVE-2021-31956£©¡¢Microsoft DWMÌáȨ©¶´£¨CVE-2021-33739£©¡¢Windows MSHTMLƽ̨RCE©¶´£¨CVE-2021-33742£©¡¢MicrosoftÔöÇ¿ÐͼÓÃÜÌṩ·¨Ê½ÌáȨ©¶´£¨CVE-2021-31199ºÍCVE-2021-31201£©ºÍWindowsÔ¶³Ì×ÀÃæ·þÎñ¾Ü¾ø·þÎñ©¶´£¨CVE-2021-31968£©¡£ÆäÖÐ £¬Ç°6¸ö0dayÒÑÔÚ¹ýÈ¥±»ÀûÓùý¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-june-2021-patch-tuesday-fixes-6-exploited-zero-days-50-flaws/


4.ÃÀ¹ú¾ü³µÖÆÔìÉÌNavistar³ÆÆäÔâµ½¹¥»÷ £¬²¿ÃÅÊý¾Ýй¶


4.jpg


ÃÀ¹ú¿¨³µºÍ¾üÓóµÁ¾ÖÆÔìÉÌNavistar International Corporation³ÆÆäÔâµ½¹¥»÷ £¬²¿ÃÅÊý¾Ýй¶¡£¸Ã¹«Ë¾ÌåÏÖÆäÔÚ2021Äê5ÔÂ20ÈÕ·¢ÏÖ´Ë´Îʼþ £¬²¢ÓÚ5ÔÂ31ÈÕÊÕµ½ÁËÒ»·ÝÉùÃ÷³ÆÄ³Ð©Êý¾ÝÒѱ»ÇÔÈ¡¡£µ±±»Îʼ°ÊÇ·ñÓëÀÕË÷¹¥»÷ÓйØÊ± £¬¸Ã¹«Ë¾·¢ÑÔÈ˳ÆÄ¿Ç°ÊÓ²ìÕýÔÚ½øÐÐÖÐ £¬Ã»Óиü¶àϸ½Ú¿ÉÒÔ·ÖÏí¡£¸Ã¹«Ë¾»¹ÌåÏÖ £¬ÆäÔËÓª²¢Î´Êܵ½Ó°Ïì £¬ITϵͳҲÒÑÕý³£ÔËÐС£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/military-vehicles-maker-navistar-reports-data-theft-cyberattack


5.Unit42Åû¶Ê׸öÕë¶ÔWindowsÈÝÆ÷µÄ¶ñÒâÈí¼þSiloscape


5.jpg


Unit42Åû¶ÁËÊ׸öÕë¶ÔWindowsÈÝÆ÷µÄ¶ñÒâÈí¼þSiloscape¡£SiloscapeÊÇÒ»ÖÖ¾­¹ý¸ß¶È»ìÏýµÄ¶ñÒâÈí¼þ £¬¿ÉÒÔͨ¹ýWindowsÈÝÆ÷Õë¶ÔKubernetes¼¯Èº £¬ÆäÖ÷ҪĿµÄÊÇÔÚÅäÖò»Í×µÄKubernetes¼¯ÈºÖÐÖ´ÐкóÃÅ £¬ÔËÐжñÒâÈÝÆ÷¡£¸Ã¶ñÒâÈí¼þʹÓÃTorÊðÀíºÍ.onionÓòÄäÃûÁ¬½Óµ½ÆäC2 £¬Ñо¿ÈËÔ±Éè·¨·ÃÎÊÁËÕą̂·þÎñÆ÷ £¬È·¶¨ÁË23¸öSiloscapeµÄÊܺ¦Õß¡£´ËÍâ £¬»¹·¢Ïָ÷þÎñÆ÷ÍйÜÁË313¸öÓû§ £¬ÕâÒâζ×ÅSiloscapeÖ»ÊǸü´ó·¶Î§»î¶¯µÄһС²¿ÃÅ¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/siloscape/


6.KasperskyÐû²¼ÓйضñÒâÈí¼þGootkitµÄ·ÖÎö³ÂËß


6.jpg


KasperskyÐû²¼ÓйضñÒâÈí¼þGootkitµÄ·ÖÎö³ÂËß¡£GootkitÊÇÅÓ´óµÄÒøÐжñÒâÈí¼þ £¬ÓÉDoctor WebÓÚ2014ÄêÊ״η¢ÏÖ¡£GootkitÄܹ»´Óä¯ÀÀÆ÷ÇÔÈ¡Êý¾Ý¡¢Ö´ÐÐä¯ÀÀÆ÷ÖмäÈ˹¥»÷¡¢¼Ç¼¼üÅÌÊäÈëÄÚÈÝ¡¢½ØÈ¡ÆÁÄ»½ØÍ¼ºÍÐí¶àÆäËû¶ñÒâ²Ù×÷¡£2019Äê £¬GootkitÔÚ·¢ÉúÊý¾Ýй¶ºóÍ£Ö¹ÔËÓª £¬µ«×Ô2020Äê11ÔÂÒÔÀ´ÔٴλîÔ¾¡£GootkitµÄÊܺ¦ÕßÖ÷ÒªÂþÑÜÔڵ¹úºÍÒâ´óÀûµÈÅ·Ã˹ú¼Ò¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/gootkit-the-cautious-trojan/102731/