Android¶ñÒâÀûÓÃCamScannerÏÂÔØÁ¿³¬1ÒÚ£»£»£»£»£»xHelperÔÚ4¸öÔÂÄÚϰȾ3.2Íò¸öÖÇÄÜÉ豸

°ä²¼¹¦·ò 2019-08-29

1.Android¶ñÒâÀûÓÃCamScannerÏÂÔØÁ¿³¬1ÒÚ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


¿¨°Í˹»ù×êÑÐÈËÔ±·¢ÏÖCamScannerµÄÃâ·Ñ°æ´æÔÚÒ»¸ö°µ²ØµÄTrojan DropperÄ£¿£¿£¿£¿ £¿é£¬£¬£¬£¬£¬£¬¿ÉÔÊÐíÔ¶³Ì¹¥»÷ÕßÔÚÓû§²»ÖªÇéµÄÇé¿öÏÂÏÂÔØºÍ×°ÖöñÒⷨʽ¡£¡£¡£¡£¡£¡£¡£¡£CamScannerÊÇÒ»¿îÊÜ»¶Ó­µÄÊÖ»úPDF´´½¨APP£¬£¬£¬£¬£¬£¬ËüÔÚGoogle PlayÉ̵êµÄÏÂÔØÁ¿³¬¹ý1ÒÚ¡£¡£¡£¡£¡£¡£¡£¡£¶ñÒâÄ£¿£¿£¿£¿ £¿éÏÖʵÉϲ¢²»´æÔÚÓÚCamScanner×ÔÉíµÄ´úÂëÖУ¬£¬£¬£¬£¬£¬¶øÊÇÔÚµÚÈý·½¸æ°×¿âÖУ¬£¬£¬£¬£¬£¬Òò¶øÄܹ»´§¶ÈÕâÊÇÈí¼þ¿ª·¢ÕߺͲ»Â·µÂµÄ¸æ°×É̺Ï×÷µÄÁ˾Ö¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÄ£¿£¿£¿£¿ £¿éÄܹ»Í¨¹ý¶àÖÖ·½Ê½ÀûÓÃÊÜϰȾµÄÉ豸£¬£¬£¬£¬£¬£¬´ÓÏÔʾÇÖÈëÐÔ¸æ°×µ½¸¶·Ñ¶©ÔÄÇÔÈ¡»°·ÑµÈ¡£¡£¡£¡£¡£¡£¡£¡£Ó¦¸Ã°ÑÎȵÄÊÇ£¬£¬£¬£¬£¬£¬CamScannerµÄ¸¶·Ñ°æ±¾²»Ô̺¬µÚÈý·½¸æ°×¿â¡£¡£¡£¡£¡£¡£¡£¡£GoogleÒѾ­´Ó¹Ù·½PlayÉ̵êÖÐɾ³ýÁ˸ÃAPP¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/08/android-camscanner-malware.html


2.AndroidľÂíxHelperÔÚ4¸öÔÂÄÚϰȾ3.2Íò¸öÖÇÄÜÉ豸


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


Malwarebytes Labs·¢ÏÖÐÂAndroidľÂíDropper.xHelper£¬£¬£¬£¬£¬£¬×Ô5Ô·ÝÒÔÀ´£¬£¬£¬£¬£¬£¬Ôڶ̶Ì4¸öÔÂÄÚxHelperÒѾ­Ï°È¾Á˳¬¹ý3.2Íǫ̀ÖÇÄÜÊÖ»úºÍƽ°åÉ豸¡£¡£¡£¡£¡£¡£¡£¡£¼øÓÚÆä¼±¾çϰȾÐÂÉ豸µÄÄÜÁ¦£¬£¬£¬£¬£¬£¬xHelperÊÇÒ»¸ö±ØÒªµ±Õæ¶Ô´ýµÄÍþв¡£¡£¡£¡£¡£¡£¡£¡£¹ÌÈ»ÉÐδ·¢ÏÖÕýÈ·µÄÏ°È¾ÔØÌ壬£¬£¬£¬£¬£¬µ«·ÖÎöÏÔʾxHelperÍйÜÔÚÃÀ¹úµÄIPµØÖ·ÉÏ£¬£¬£¬£¬£¬£¬ÆäÖÐÒ»¸öλÓÚŦԼ£¬£¬£¬£¬£¬£¬ÁíÒ»¸öÔڵ¿ËÈøË¹ÖÝ´ïÀ­Ë¹¡£¡£¡£¡£¡£¡£¡£¡£¿£¿£¿£¿ £Äܹ»×¢¶¨µØËµÕâÊÇÕë¶ÔÃÀ¹úµÄ¹¥»÷£¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±»¹µÃ³ö½áÂÛÕâÖÖÒÆ¶¯Ï°È¾ÔÚͨ¹ýÍøÂç³Á¶¨Ïò´«²¼¡£¡£¡£¡£¡£¡£¡£¡£ÓÉÓÚ´úÂë±»ÑϳÁ»ìºÏ£¬£¬£¬£¬£¬£¬ºÜÄÑÈ·ÇеØÖ¸³öxHelperµÄÖ¸±êÊÇʲô£¬£¬£¬£¬£¬£¬µ«×êÑÐÈËÔ±ÒÔΪÆäÖØÒªÖ°ÄÜÊǽÓÊÜÔ¶³ÌºÅÁ£¬£¬£¬£¬£¬ÀàËÆÓÚºóÃÅ¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/android-trojan-infects-tens-of-thousands-of-devices-in-4-months/


3.TrickBotбäÖÖ¶Ô×¼ÃÀ¹úÒÆ¶¯ÔËÓªÉÌ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


TrickBotбäÖÖÔÚÊÔͼÇÔÈ¡ÃÀ¹úÒÆ¶¯ÔËÓªÉÌVerizon¡¢T-MobileºÍSprintÓû§µÄPINÂ룬£¬£¬£¬£¬£¬²¢ÌáÒéSIM¿¨»¥»»¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£´÷¶ûSecureworks×êÑÐÍŶÓÖÒ¸æ³Æ£¬£¬£¬£¬£¬£¬¸Ã±äÖÖÀûÓÃÒ»¸öÐÂÄ£¿£¿£¿£¿ £¿éÀ´À¹½ØÊÜϰȾϵͳÉϵÄÍøÂç»á»°£¬£¬£¬£¬£¬£¬²¢ÔÚÕâЩÔËÓªÉ̵ÄÍøÕ¾ÉÏ×¢Èë´úÂ룬£¬£¬£¬£¬£¬ÓÃÓÚÇÔÈ¡Óû§µÄÕË»§ÃÜÂë¡¢PINÂëµÈÍ´´¦¡£¡£¡£¡£¡£¡£¡£¡£ÕâÖÔìÛÕ©ÐÐΪÔÊÐí¹¥»÷Õß½ÚÔìÊܺ¦Õߵĵ绰ºÅÂ룬£¬£¬£¬£¬£¬Ô̺¬ËùÓÐÈëÕ¾ºÍ³öÕ¾¶ÌÐźÍÓïÒôͨѶ¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÔÚ8Ô·ݹ۲쵽ÕâЩ¹¥»÷»î¶¯£¬£¬£¬£¬£¬£¬Ô̺¬Õë¶ÔVerizon Wireless£¨8ÔÂ5ÈÕ£©¡¢T-Mobile£¨8ÔÂ12ÈÕ£©ºÍSprint£¨8ÔÂ19ÈÕ£©¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/new-trickbot-variant-targets-verizon-t-mobile-and-sprint-users/


4.·¨¹ú¾¯·½´Ó85Íǫ̀PCÖÐÔ¶³Ì¶Ï¸ù¶ñÒâÈí¼þRETADUP


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


·¨¹ú·¨ÂÉ»ú¹¹National Gendarmerie°ä·¢³É¹¦µ·»Ù½©Ê¬ÍøÂçRETADUP£¬£¬£¬£¬£¬£¬²¢ÔÚAvastµÄÔ®ÊÖ϶ÔÈ«Çò³¬¹ý85ÍòÌ¨ÍÆËã»ú½øÐÐÁËÔ¶³Ìɱ¶¾¡£¡£¡£¡£¡£¡£¡£¡£½ñÄêÔçЩʱ³½Avast·¢ÏÖRETADUPµÄC£¦CºÍ̸ÖдæÔÚÒ»¸öÉè¼ÆÈ±µã£¬£¬£¬£¬£¬£¬¿ÉÓÃÓÚ´ÓÊܺ¦ÕßµÄÍÆËã»úÖÐɾ³ý¸Ã¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£¡£Òò¶øAvastÁªÏµÁË·¨¹ú¾¯·½£¬£¬£¬£¬£¬£¬²¢ÔÚ7Ô·ݽÚÔìÁËRETADUPµÄC£¦C·þÎñÆ÷£¬£¬£¬£¬£¬£¬´úÌæÎªÒ»¸öɱ¶¾°æ±¾£¬£¬£¬£¬£¬£¬¸Ã·þÎñÆ÷¿ÉÀûÓÃÆäºÍ̸ÖеÄȱµãºÅÁîÊÜÏ°È¾ÍÆËã»úÉϵÄRETADUP×Ô»Ù¡£¡£¡£¡£¡£¡£¡£¡£½ØÖÁÎÄÕ°䲼ʱ£¬£¬£¬£¬£¬£¬µ±¾ÖÒѾ­¶Ï¸ùÁ˳¬¹ý85Íò¸öϰȾÊ·ý£¬£¬£¬£¬£¬£¬ÆäÖдóÎÞÊýÊܺ¦ÕßÀ´×ÔÓÚ½²Î÷°àÑÀÓïµÄÀ­¶¡ÃÀÖÞ¹ú¶È¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/08/retadup-botnet-malware.html


5.È«Çò³¬¹ý80¸öµç×ÓÉÌÎñÍøÕ¾Ï°È¾Magecart¾ç±¾


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


ƾ¾ÝÖÜÈýAite GroupºÍArxan Technologies°ä²¼µÄ×êÑгɾͣ¬£¬£¬£¬£¬£¬È«Çò³¬¹ý80¸öµç×ÓÉÌÎñÍøÕ¾ÔâMagecart¾ç±¾ÈëÇÖ£¬£¬£¬£¬£¬£¬ÕâÐ©ÍøÕ¾ÖÐÓÐËÄ·ÖÖ®Ò»£¨25£¥£©ÊôÓÚÈü³µ»î¶¯ºÍÉÝ³ÞÆ··þ×°µÄ³ÛÃûÆ·ÅÆ¡£¡£¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄÍøÕ¾±é²¼Õû¸öÃÀ¹ú¡¢¼ÓÄôó¡¢Å·ÖÞ¡¢À­¶¡ÃÀÖÞºÍÑÇÖÞ¡£¡£¡£¡£¡£¡£¡£¡£¸Ã×êÑÐÅú×¢£¬£¬£¬£¬£¬£¬ËùÓÐÕâÐ©ÍøÕ¾¶¼ÔËÐÐ×ÅMagentoµç×ÓÉÌÎñƽ̨µÄ¹ýÆÚ°æ±¾£¬£¬£¬£¬£¬£¬Ô̺¬1.5¡¢1.7»ò1.9£¬£¬£¬£¬£¬£¬ÕâЩ°æ±¾Ò×Êܶà¸öÎļþÉÏ´«¡¢Ô¶³Ì´úÂëÖ´ÐкÍCSRF·ì϶ӰÏì¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/magecart-ecommerce-card-skimming-bonanza/147765/


6.ÐÂIoT½©Ê¬ÍøÂçAres¶Ô×¼Android»ú¶¥ºÐ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


ÐÂIoT½©Ê¬ÍøÂçAresÔÚϰȾ»ùÓÚAndroidµÄÉ豸£¬£¬£¬£¬£¬£¬Æ¾¾ÝWootCloudµÄ˵·¨£¬£¬£¬£¬£¬£¬¸Ã½©Ê¬ÍøÂç×î³£¼ûµÄÖ¸±êÊÇÓÉHiSilicon¡¢CubetekºÍQezyMediaÔì×÷µÄAndroid»ú¶¥ºÐ¡£¡£¡£¡£¡£¡£¡£¡£Ares²¢Î´ÀûÓÃAndroid²Ù×÷ϵͳÖеķì϶£¬£¬£¬£¬£¬£¬¶øÊÇÀûÓÃÕâЩ»ú¶¥ºÐÖÐÆôÓÃÁ˵«Î´Êܱ£»£»£»£»£»¤µÄADBµ÷ÊÔ·þÎñ¡£¡£¡£¡£¡£¡£¡£¡£ÕâЩ¹¥»÷ʼÓÚ7Ô£¬£¬£¬£¬£¬£¬WootCloudÊ×ϯ¼¼Êõ¹ÙSrinivas Akella³ÆÒ²²»ÅųýÆäËûÀàÐ͵ÄAndroidϵͳÊܵ½Ï°È¾µÄ¿ÉÄÜÐÔ¡£¡£¡£¡£¡£¡£¡£¡£AresµÄ×îÖÕÖ÷ÕÅδ֪£¬£¬£¬£¬£¬£¬µ«ÓÉÓÚÆä»ùÓÚ½ÏÀϵÄMirai£¬£¬£¬£¬£¬£¬Äܹ»Ô¤¼Æ¸Ã½©Ê¬ÍøÂ罫±»ÓÃÓÚÌáÒéDDoS¹¥»÷ºÍÓÃ×÷Á÷Á¿´úÀí¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/a-new-iot-botnet-is-infecting-android-based-set-top-boxes/