AdobeÐû²¼²¹¶¡ÐÞ¸´¶à¿î²úÎï©¶´:KasperskyÐû²¼Ó¦¼±ÏìӦʼþ³ÂËß

Ðû²¼Ê±¼ä 2021-09-17

AdobeÐû²¼ÐÇÆÚ¶þ²¹¶¡£¬ÐÞ¸´¶à¿î²úÎïÖеÄ59¸ö©¶´


AdobeÐû²¼ÐÇÆÚ¶þ²¹¶¡£¬ÐÞ¸´¶à¿î²úÎïÖеÄ59¸ö©¶´.png


AdobeÐû²¼ÐÇÆÚ¶þÄþ¾²¸üУ¬ÐÞ¸´ÁËAdobe Acrobat Reader¡¢XMP Toolkit SDKºÍPhotoshopµÈ²úÎïÖеÄ59¸ö©¶´¡£´Ë´ÎÐÞ¸´µÄ½ÏΪÑÏÖØµÄÊÇPhotoshopÖлº³åÇøÒç³öµ¼ÖµÄÈÎÒâ´úÂëÖ´ÐЩ¶´£¨CVE-2021-40709£©¡¢FramemakerÖеÄÈÎÒâ´úÂëÖ´ÐЩ¶´£¨CVE-2021-39830¡¢CVE-2021-39829ºÍCVE-2021-39831£©ÒÔ¼°InDesignÖеÄÈÎÒâ´úÂëÖ´ÐЩ¶´£¨CVE-2021-39820£©µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/adobe-bugs-acrobat-experience-manager/169467/


HP OMEN Gaming HubÖÐÌáȨ©¶´Ó°ÏìÊý°ÙÍò¼ÆËã»ú


HP OMEN Gaming HubÖÐÌáȨ©¶´Ó°ÏìÊý°ÙÍò¼ÆËã»ú.jpg


SentinelLabsÓÚ9ÔÂ14ÈÕÅû¶ÁËHP OMEN Gaming HubÖеÄÌáȨ©¶´£¬¿ÉÄÜÓ°ÏìÊý°ÙÍǫ̀¼ÆËã»ú¡£¸Ã©¶´×·×ÙΪCVE-2021-3437£¬CVSSÆÀ·ÖΪ7.8£¬ÒÑÓÚ2021Äê2ÔÂ17ÈÕ³ÂË߸ø»ÝÆÕ£¬¸Ã¹«Ë¾ÔÚ7ÔÂ27ÈÕÐû²¼ÁËÄþ¾²¸üС£¸Ã©¶´Ô´ÓÚ¶ÔOpenLibSys¿ª·¢µÄWinRing0.sysÖЩ¶´´úÂëµÄÖØÓ㬹¥»÷Õß¿ÉÀûÓÃÆä½ûÓÃÄþ¾²²úÎï¡¢ÁýÕÖϵͳ×é¼þ¡¢ÆÆ»µ²Ù×÷ϵͳ»òÖ´ÐÐÆäËü¶ñÒâ²Ù×÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.sentinelone.com/labs/cve-2021-3437-hp-omen-gaming-hub-privilege-escalation-bug-hits-millions-of-gaming-devices/


Zloader»Ø¹é£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ


Zloader»Ø¹é£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ.jpg


Ñо¿ÈËÔ±·¢ÏÖZloaderÐÂÒ»ÂֵĹ¥»÷»î¶¯£¬Ö÷ÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ¡£ZLoaderÓÚ2016ÄêÊ״α»·¢ÏÖ£¬ÊÇÒ»ÖÖµäÐ͵ÄÒøÐÐľÂí£¬¿ÉÓÃÀ´ÇÔÈ¡cookie¡¢ÃÜÂëºÍÈκÎÃô¸ÐÐÅÏ¢¡£´Ë´Î¹¥»÷½ÓÄÉÁ˸ü¸ß¼¶µÄÒþ±Î¼¼Êõ£¬ÆäµÚÒ»½×¶ÎµÄdropperÒÑ´Ó¶ñÒâÎĵµ¸ü¸ÄΪÒþ±ÎµÄ¡¢ÒÑÇ©ÃûµÄMSI payload¡£´ËÍ⣬Ëü»¹¿ÉÒÔ½ûÓÃÄ¿±ê¼ÆËã»úÉϵÄMicrosoft Defender AntivirusÀ´Èƹý¼ì²â¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/new-zloader-attacks-disable-windows-defender-to-evade-detection/


¿Í»§·þÎñ¹«Ë¾TTECÔâµ½Ragnar LockerÀÕË÷¹¥»÷


¿Í»§·þÎñ¹«Ë¾TTECÔâµ½Ragnar LockerÀÕË÷¹¥»÷.png


9ÔÂ14ÈÕ£¬ÃÀ¹úµÄ¿Í»§·þÎñ¹«Ë¾TTEC֪ͨԱ¹¤ÆäÔâµ½ÁË¿ÉÄÜÊÇÀ´×ÔRagnar LockerµÄÀÕË÷¹¥»÷¡£¹¥»÷·¢ÉúÔÚ9ÔÂ12ÈÕ£¬¸Ã¹«Ë¾ÔÚ֪ͨÖÐÌáÐÑÔ±¹¤²»Òª´ò¿ªWindows¿ªÊ¼²Ëµ¥ÖÐͻȻ·ºÆðµÄÃûΪ¡°!RA!G!N!A!R!¡±µÄÎļþ¡£TTECÌåÏִ˴ι¥»÷µ¼Ö´ó²¿ÃÅÔ±¹¤¶¼ÎÞ·¨Õý³£ÊÂÇ飬ÆäÔÚŬÁ¦»Ö¸´ÊÜÓ°Ïìϵͳ£¬Ä¿Ç°ÉÐδ·¢ÏÖ¿Í»§Êý¾Ýй¶µÄÇé¿ö¡£



Ô­ÎÄÁ´½Ó£º

https://krebsonsecurity.com/2021/09/customer-care-giant-ttec-hit-by-ransomware/


ÐÂÎ÷À¼CERT NZÐû²¼Õë¶ÔÆóÒµµÄÀÕË÷Èí¼þ± £»¤Ö¸ÄÏ


ÐÂÎ÷À¼CERT NZÐû²¼Õë¶ÔÆóÒµµÄÀÕË÷Èí¼þ±£»¤Ö¸ÄÏ.png


ÐÂÎ÷À¼¼ÆËã»úÓ¦¼±ÏìӦС×é(CERT NZ)ÓÚ9ÔÂ14ÈÕÐû²¼ÁËÕë¶ÔÆóÒµµÄÀÕË÷Èí¼þ± £»¤Ö¸ÄÏ¡£¸ÃÖ¸ÄÏÀûÓÃ2ÕÅͼ±í£¬¸ÅÊöÁ˲îÒìµÄÀÕË÷Èí¼þ¹¥»÷µÄ;¾¶£¬²¢ËµÃ÷ÁËÏà¹ØÄþ¾²¿ØÖÆ´ëÊ©¿ÉÒÔÔÚÄÄЩ·½Ãæ·¢»Ó×÷ÓÃÀ´µÖÓù¹¥»÷¡£´ËÍ⣬CERT NZ²»½¨Òé×éÖ¯Ö§¸¶Êê½ð£¬ÒòΪÕâ²»Äܱ£Ö¤Îļþ»á±»Í˻أ¬¶øÇÒ¿ÉÄÜʹÊܺ¦Õß³ÉΪ½øÒ»²½¹¥»÷µÄÄ¿±ê¡£  


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/09/14/cert-nz-releases-ransomware-protection-guide-businesses


KasperskyÐû²¼2020ÄêÓ¦¼±ÏìӦʼþµÄ·ÖÎö³ÂËß


KasperskyÐû²¼2020ÄêÓ¦¼±ÏìӦʼþµÄ·ÖÎö³ÂËß.png


KasperskyÔÚ9ÔÂ13ÈÕÐû²¼ÁËÓйØ2020ÄêÓ¦¼±ÏìӦʼþµÄ·ÖÎö³ÂËß¡£³ÂËß·ÖÎöÁËKasperskyÔÚ2020Ä꿪չµÄʼþÊÓ²ì·þÎñ£¬²¢´ÓÆô¶¯Ê¼þÏìÓ¦µÄÔ­Òò¡¢¹¥»÷ÕßÈçºÎ½øÈëÄ¿±êÍøÂç¡¢ÀûÓõŤ¾ßºÍ©¶´ÒÔ¼°¹¥»÷Á¬ÐøÊ±¼äÕâ4¸ö·½Ãæ¶ÔÆä½øÐÐÁË·ÖÎö¡£³ÂËßÖ¸³ö£¬´ó¶àÊýÓ¦¼±ÏìӦʼþÀ´×Ô¶íÂÞ˹ºÍ¶ÀÁªÌå(27.8%)¡¢Å·ÃË(24.7%)ºÍÖж«(22.7%)µØÓò £»ÆäÖУ¬¹¤ÒµÐÐÒµÊܵ½µÄÓ°Ïì×î´ó(22%)£¬Æä´ÎÊÇÕþ¸®»ú¹¹(19%)¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/incident-response-analyst-report-2020/104080/