GoogleÐû²¼12Ô·ݵÄAndroid¸üÐÂ×ܼÆÐÞ¸´81¸ö©¶´

Ðû²¼Ê±¼ä 2022-12-08
1¡¢GoogleÐû²¼12Ô·ݵÄAndroid¸üÐÂ×ܼÆÐÞ¸´81¸ö©¶´

12ÔÂ5ÈÕ£¬GoogleÐû²¼ÁËAndroid 12Ô·ݵÄÄþ¾²¸üУ¬×ܼÆÐÞ¸´81¸ö©¶´¡£ÆäÖнÏΪÑÏÖØµÄÊÇAndroid FrameworkÖеÄÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2022-20472ºÍCVE-2022-20473£©¡¢Android ϵͳÖеÄÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2022-20411£©ºÍAndroid ϵͳÖеÄÐÅϢй¶©¶´£¨CVE-2022-20498£©¡£ÆäÓàÒÑÐÞ¸´µÄ©¶´É漰ȨÏÞÌáÉý¡¢Ô¶³Ì´úÂëÖ´ÐС¢ÐÅϢй¶ºÍ¾Ü¾ø·þÎñµÈÎÊÌâ¡£

https://source.android.com/docs/security/bulletin/2022-12-01

2¡¢Ó¡¶ÈÄþ¾²¹«Ë¾CloudSEK³ÆÔâµ½ÁíÒ»¼ÒÄþ¾²¹«Ë¾µÄ¹¥»÷

¾ÝýÌå12ÔÂ7ÈÕ±¨µÀ£¬Ó¡¶ÈÍøÂçÄþ¾²¹«Ë¾CloudSEK³Æ£¬¹¥»÷ÕßʹÓÃÆäÔ±¹¤JiraÕË»§µÄ±»µÁƾ¾Ý·ÃÎÊÁËÆäConfluence·þÎñÆ÷£¬²¿ÃÅÐÅϢй¶¡£ºÚ¿ÍsedutÏÖÕýÔÚ¶à¸öÂÛ̳ÉϳöÊÛ¶ÔCloudSekÍøÂç¡¢Xvigil¡¢´úÂë¿â¡¢µç×ÓÓʼþ¡¢JIRAºÍÉ罻ýÌåÕË»§µÄ·ÃÎÊȨÏÞ£¬²¢ÒÔ10000ÃÀÔª¼Û¸ñ³öÊÛCloudSEKÊý¾Ý¿â£¬ÒÔÿ¸ö8000ÃÀÔªµÄ¼Û¸ñ³öÊÛ´úÂë¿â¡¢Ô±¹¤ºÍ¹¤³Ì²úÎïÎĵµ¡£CloudSEKÒÑËø¶¨ÏÓÒÉÈË·¶Î§£¬Æ¾¾ÝSasiÐû²¼µÄÎÄÕ£¬ËûÃÇ»³ÒÉÒ»¼Ò½øÐаµÍø¼à¿ØµÄÄþ¾²¹«Ë¾ÊÇÄ»ºóºÚÊÖ£¬µ«¾Ü¾øÌṩÓйظù«Ë¾µÄÏêϸÐÅÏ¢¡£

https://www.bleepingcomputer.com/news/security/cloudsek-claims-it-was-hacked-by-another-cybersecurity-firm/

3¡¢Òò¹©Ó¦É̱»¹¥»÷±ÈÀûʱ°²ÌØÎÀÆÕÊеÄÊÐÕþϵͳ̱»¾

ýÌå12ÔÂ6Èճƣ¬Îª±ÈÀûʱ°²ÌØÎÀÆÕÊÐÌṩ¹ÜÀíÈí¼þµÄºÏ×÷»ï°éDigipolisÔâµ½¹¥»÷£¬¸ÃÊеÄÊÐÕþϵͳ̱»¾¡£¾ÝϤ£¬²¿Ãŵ绰·þÎñÎÞ·¨Ê¹Ó㬵ç×ÓÓʼþ·þÎñÒ²·ºÆð¹ÊÕÏ£¬Ô¤¶©ÏµÍ³Ò²±»¹Ø±Õµ¼Ö¾ÓÃñÎÞ·¨ÁìÈ¡Éí·ÝÖ¤£¬¾¯²ìºÍÏû·À²¿ÃÅÒ²Êܵ½Ó°Ïì¡£ÊÓ²ìÕýÔÚ½øÐÐÖУ¬ÉÙÁ¿¿ÉÓõÄÐÅÏ¢±íÃ÷ÕâÊÇÒ»´ÎÀÕË÷¹¥»÷£¬µ«¹¥»÷ÕßÉí·ÝÉÐδÅû¶¡£Ä¿Ç°»¹²»Çå³þ°²ÌØÎÀÆÕµÄϵͳºÎʱ²ÅÆø»Ö¸´Õý³£ÔËÐУ¬¸ÃÊÐÊг¤ÌåÏÖ£¬Ó°Ïì¿ÉÄÜ»áÁ¬Ðøµ½12Եס£

https://www.bleepingcomputer.com/news/security/antwerps-city-services-down-after-hackers-attack-digital-partner/

4¡¢Î¢ÈíÅû¶DEV-0139Õë¶Ô¼ÓÃÜ»õ±ÒµÄ¹¥»÷»î¶¯ÏêÇé


΢ÈíÔÚ12ÔÂ6ÈÕÅû¶ÁËDEV-0139ÀûÓÃTelegramÁÄÌì×éÕë¶Ô¼ÓÃÜ»õ±ÒͶ×ʹ«Ë¾µÄÏêÇé¡£¹¥»÷ÕßÊ×ÏȼÓÈëÁË´Ù½øVIP¿Í»§ºÍ¼ÓÃÜ»õ±Ò½»Òׯ½Ì¨Ö®¼ä½»Á÷µÄTelegramȺ£¬²¢´Ó³ÉÔ±ÖÐÈ·¶¨¹¥»÷µÄÄ¿±ê¡£È»ºóð³äÁíÒ»¼Ò¼ÓÃÜ»õ±ÒͶ×ʹ«Ë¾£¬ÓÚ2022Äê10ÔÂÑûÇëÄ¿±ê¼ÓÈëÁíÒ»¸öÁÄÌì×飬ҪÇóËûÃǼÓÃÜ»õ±Ò½»Òׯ½Ì¨µÄÓöȽṹÌṩ·´À¡¡£ÔÚ»ñµÃÄ¿±êµÄÐÅÈκ󣬹¥»÷Õ߻ᷢËͶñÒâExcel±í¸ñ¡£Ä¿±ê´ò¿ªÎĵµ²¢ÆôÓúêºó£¬»á°²×°Ò»¸ö¶ñÒâDLL¡¢XOR±àÂëºóÃż°ÓÃÓÚ²à¼ÓÔØDLLµÄWindows¿ÉÖ´ÐÐÎļþ¡£


https://www.microsoft.com/en-us/security/blog/2022/12/06/dev-0139-launches-targeted-attacks-against-the-cryptocurrency-industry/

5¡¢Unit 42Ðû²¼Vice SocietyÖ÷ÒªÕë¶Ô½ÌÓýÐÐÒµµÄ·ÖÎö³ÂËß

Unit 42ÔÚ12ÔÂ6ÈÕÐû²¼Á˹ØÓÚVice SocietyÖ÷ÒªÕë¶Ô½ÌÓýÐÐÒµµÄ·ÖÎö³ÂËß¡£×Ô2021Ä꿪ʼÔËÓªÒÔÀ´£¬Vice Society×ܹ²Ó°ÏìÁË100¶à¸ö×éÖ¯¡£Êý¾Ý±íÃ÷£¬½ñÄêVice Society¶Ô½ÌÓýÐÐÒµ×éÖ¯µÄÓ°Ïì×î´ó£¬ÆäÍøÕ¾ÉÏÁгöÁËÖÁÉÙ33¼Ò±»Ñ¬È¾µÄ½ÌÓý»ú¹¹¡£µ«ÊdzýÁ˽ÌÓý×éÖ¯£¬¹¥»÷ÍÅ»ïÒ²Õë¶ÔÒªº¦µÄ»ù´¡ÉèÊ©ÐÐÒµ£¬ÈçÒ½ÁƱ£½¡¡¢Õþ¸®»ú¹¹ºÍÖÆÔìÐÐÒµµÈ¡£¸ÃÍÅ»ïѬȾµÄ×éÖ¯±é²¼¸÷¸öµØÓò£¬ÆäÖÐÃÀ¹úѬȾÈËÊý×î¶à£¬Æä´ÎÊÇÓ¢¹ú¡¢Î÷°àÑÀºÍ·¨¹úµÈ¡£

https://unit42.paloaltonetworks.com/vice-society-targets-education-sector/

6¡¢FortinetÐû²¼¹ØÓÚн©Ê¬ÍøÂçZerobotµÄ·ÖÎö³ÂËß

12ÔÂ6ÈÕ£¬FortinetÐû²¼ÁËÐÂÐÍ»ùÓÚGoµÄ½©Ê¬ÍøÂçZerobotµÄ·ÖÎö³ÂËß¡£Zerobot¿ÉÒÔɨÃèÍøÂç²¢×ÔÎÒÁ÷´«µ½ÏàÁÚÉ豸£¬ÒÔ¼°ÔÚWindows(CMD)»òLinux(Bash)ÉÏÔËÐÐÃüÁî¡£ËüÕûºÏÁË21¸ö©¶´£¬ÆäÖÐÉæ¼°F5 BIG-IP¡¢Zyxel·À»ðǽ¡¢Totolink·ÓÉÆ÷¡¢D-Link·ÓÉÆ÷ÒÔ¼°HikvisionÉãÏñÍ·µÈ£¬À´»ñÈ¡É豸µÄ·ÃÎÊȨÏÞ¡£ÔÚÄ¿±êÖÐÁ¢×ãºó£¬Zerobot»áÉèÖõ½C2·þÎñÆ÷µÄWebSocketÁ¬½Ó£¬²¢·¢ËÍÓйØÄ¿±êµÄ»ù±¾ÐÅÏ¢¡£Ä¿Ç°£¬ZerobotÖ÷ÒªÓÃÓÚÖ´ÐÐDDoS¹¥»÷£¬µ«ÊÇËüÒ²¿ÉÒÔÓÃ×÷³õʼ·ÃÎÊ¡£

https://www.fortinet.com/blog/threat-research/zerobot-new-go-based-botnet-campaign-targets-multiple-vulnerabilities