Razer SynapseÖеı¾µØÌáȨ0dayÓ°Ï쳬¹ý1ÒÚÓû§£ºÎ¢ÈíPower AppsÍøÕ¾ÒòÅäÖÃÃýÎóй¶3800Íò±Ê¼Í¼

°ä²¼¹¦·ò 2021-08-24

Razer SynapseÖеı¾µØÌáȨ0dayÓ°Ï쳬¹ý1ÒÚÓû§


Razer SynapseÖеı¾µØÌáȨ0dayÓ°Ï쳬¹ý1ÒÚÓû§.jpg


×êÑÐÈËÔ±jonhatÓÚ2021Äê8ÔÂ21ÈÕÔÚTwitterÉÏÅû¶ÁËRazer SynapseÖеı¾µØÌáȨ0dayµÄϸ½Ú¡£¡£¡£¡£¡£¡£¡£¡£RazerÊÇÒ»¼ÒÍÆËã»ú±íÉèÔì×÷ÉÌ£¬£¬£¬£¬£¬£¬£¬Ðû³ÆÆäRazer SynapseÒѱ»È«Çò³¬¹ý1ÒÚÓû§Ê¹Óᣡ£¡£¡£¡£¡£¡£¡£ÕâÊÇÒ»¸ö±¾µØÌáȨ£¨LPE£©·ì϶£¬£¬£¬£¬£¬£¬£¬½«RazerÉ豸²åÈëWindows 10ʱ£¬£¬£¬£¬£¬£¬£¬ÏµÍ³»á×Ô¶¯ÏÂÔØ²¢×°ÖÃÇý¶¯·¨Ê½ºÍRazer Synapse£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚRazerInstaller.exeÊÇͨ¹ýSYSTEMȨÏÞµÄWindows¹ý³ÌÆô¶¯µÄ£¬£¬£¬£¬£¬£¬£¬Òò¶øÆäÒ²»ñµÃÁËSYSTEMȨÏÞ¡£¡£¡£¡£¡£¡£¡£¡£Ö®ºóÔÚÑ¡Ôñ×°ÖÃÎļþ¼Ðʱ£¬£¬£¬£¬£¬£¬£¬°´ÏÂShift²¢ÓÒ¼üµ¥»÷¶Ô»°¿ò£¬£¬£¬£¬£¬£¬£¬¾ÍÄܹ»´ò¿ªSYSTEMȨÏÞµÄPowerShell´°¿Ú¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/razer-bug-lets-you-become-a-windows-10-admin-by-plugging-in-a-mouse/


΢ÈíPower AppsÍøÕ¾ÒòÅäÖÃÃýÎóй¶3800Íò±Ê¼Í¼


΢ÈíPower AppsÍøÕ¾ÒòÅäÖÃÃýÎóй¶3800Íò±Ê¼Í¼.jpg


UpGuard ResearchÓÚ8ÔÂ23ÈÕ±¾ÖÜÒ»³ÆÎ¢ÈíµÄPower AppsÃÅ»§ÍøÕ¾ÒòÅäÖÃÃýÎóй¶47¸ö×éÖ¯µÄ3800Íò±Ê¼Í¼¡£¡£¡£¡£¡£¡£¡£¡£Power AppsÊÇһϵÁÐÀûÓᢷþÎñ¡¢ÏÎ½ÓÆ÷ºÍÊý¾Ýƽ̨£¬£¬£¬£¬£¬£¬£¬¿ÉÌṩ¼±¾çµÄÀûÓÿª·¢»·¾³¡£¡£¡£¡£¡£¡£¡£¡£UpGuard³Æ£¬£¬£¬£¬£¬£¬£¬Êý¾Ýй¶ÓëPower Appsƽ̨ÈôºÎʹÓÃÊ¢¿ªÊý¾ÝºÍ̸(OData)¼°ÆäAPIsÓйØ¡£¡£¡£¡£¡£¡£¡£¡£Õâ´ÎÊÂÎñÉæ¼°ÁËÓ¡µÚ°²ÄÉÖÝ¡¢ÂíÀïÀ¼ÖݺÍŦԼÊеȵ±¾ÖµÄ×éÖ¯,ÒÔ¼°ÃÀ¹úº½¿Õ¹«Ë¾¡¢JB HuntºÍ΢ÈíµÈ¹«Ë¾¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/microsoft-38-million-sensitive-records-power-app/168885/


¶à¼ÒÒ½ÔºµÄÒ½ÁÆÏµÍ³MemorialÔâµ½HiveµÄÀÕË÷¹¥»÷


¶à¼ÒÒ½ÔºµÄÒ½ÁÆÏµÍ³MemorialÔâµ½HiveµÄÀÕË÷¹¥»÷.jpg


Memorial Health SystemÓÚ2021Äê8ÔÂ15ÈÕÔâµ½ÍøÂç¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£¸ÃϵͳÔ̺¬Èý¼ÒÒ½Ôº£¨Marietta MemorialÒ½Ôº¡¢Selby GeneralÒ½ÔººÍSistersville GeneralÒ½Ôº£©¡¢ÃÅÕï·þÎñÕ¾µãºÍÕïËù×é³É¡£¡£¡£¡£¡£¡£¡£¡£Õâ´Î¹¥»÷µ¼ÖÂÁÙ´²ºÍ²ÆÕþµÄÔËÓªÖжÏ£¬£¬£¬£¬£¬£¬£¬²¢ÇÒ´¹Î£ÊÖÊõºÍ·ÅÉä¿Æ²é³­±»ÆÈÈ¡µÞ¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬BleepingComputer³Æ¹¥»÷Õß¿ÉÄÜΪHiveÍŻ£¬£¬£¬£¬£¬£¬²¢ÒÑÇÔÈ¡200000¸ö»¼ÕßµÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/121378/cyber-crime/memorial-health-system-ransomware.html


Cisco·¢ÏÖÕë¶ÔÀ­¶¡ÃÀÖÞ·Ö·¢njRATºÍAsyncRATµÄ»î¶¯


Cisco·¢ÏÖÕë¶ÔÀ­¶¡ÃÀÖÞ·Ö·¢njRATºÍAsyncRATµÄ»î¶¯.jpg


Cisco TalosÓÚ8ÔÂ19ÈÕ°ä·¢×êÑÐÅû¶Æä¹Û²ìµ½µÄÒ»¸öеĶñÒâÈí¼þ»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£Õâ´Î»î¶¯ÖØÒªÕë¶ÔÀ­¶¡ÃÀÖÞµÄÓÎÀÀºÍ¾Æµê¹«Ë¾·Ö·¢njRATºÍAsyncRAT£¬£¬£¬£¬£¬£¬£¬ÆäÖÐʹÓõļ¼ÊõÓëAggahÍÅ»ïµÄ¼¼ÊõÓÐһЩÀàËÆÖ®´¦¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß×Ô³Æalosh£¬£¬£¬£¬£¬£¬£¬ÖÁÉÙ´Ó2018Äê¾ÍÆðÍ·»îÔ¾ÁË£¬£¬£¬£¬£¬£¬£¬²¢ÇÒ»¹ÊǼÓÃÜÆ÷3losh crypter ratµÄ¿ª·¢Õß¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±´§Ä¦¹¥»÷ÕßÀ´×Ô°ÍÎ÷£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚÆäÖØÒªµÄÓòÖ®Ò»(updatewin32[.]xyz) ×¢²áÓÚ°ÍÎ÷£¬£¬£¬£¬£¬£¬£¬²¢Æ«ÐÄʹÓÃÆÏÌÑÑÀÓï¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/08/rat-campaign-targets-latin-america.html


Area 1 Security°ä²¼2021Äêµç×ÓÓʼþÍþÐ²Ì¬ÊÆµÄ»ã±¨


Area 1 Security°ä²¼2021Äêµç×ÓÓʼþÍþÐ²Ì¬ÊÆµÄ»ã±¨.jpg


Area 1 Security°ä²¼ÁË2021Äêµç×ÓÓʼþÍþÐ²Ì¬ÊÆµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£¡£¸Ã»ã±¨·ÖÎöÁË¿ç¶à¸ö×éÖ¯ºÍÐÐÒµµÄ³¬¹ý3100Íò¸öÍþв£¬£¬£¬£¬£¬£¬£¬·¢ÏÖ½ü9%µÄ¹¥»÷ʹÓÃÁËÉí·ÝºýŪսÊõ£»£»£»£»£»£»£»£»±»¼ÙÒâ×î¶àµÄÆ·ÅÆÔ̺¬ÊÀ½çÎÀÉú×éÖ¯(WHO)¡¢¹È¸èºÍ΢Èí£»£»£»£»£»£»£»£»BEC¹¥»÷µÄÕ¼±ÈºÜµÍ(1.3%£©£¬£¬£¬£¬£¬£¬£¬µ«ÊÇÔì³ÉµÄ¾­¼ÃËðʧ×î´ó£¬£¬£¬£¬£¬£¬£¬¾ùÔÈËðʧΪ150ÍòÃÀÔª£»£»£»£»£»£»£»£»³¬¹ý92%µÄÓû§»ã±¨µÄ´¹µöÓʼþÊôÓÚÎ󱨵ÄÁͬ»¯Ê¼þ£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂITÍŶӱØÒª´¦ÖôóÁ¿µÄµÄÎ󱨡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.area1security.com/2021-email-threat-report/


KELA°ä²¼°µÍøÊÛÂôRDPºÍVPNµÄ½Ó¼ûȨÏÞµÄÇ÷Ïò»ã±¨


KELA°ä²¼°µÍøÊÛÂôRDPºÍVPNµÄ½Ó¼ûȨÏÞµÄÇ÷Ïò»ã±¨.jpg


KELA°ä²¼ÁËÓйذµÍøÊÛÂôRDPºÍVPNµÄ½Ó¼ûȨÏÞµÄÇ÷Ïò·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£¡£¸Ã»ã±¨¶ÔInitial Access Brokers£¨IAB£©´Ó2020Äê7ÔÂ1ÈÕµ½2021Äê6ÔÂ30ÈյĻ½øÐзÖÎö£¬£¬£¬£¬£¬£¬£¬²¢×ܽáÁË5¸öÖØÒªÇ÷Ïò¡£¡£¡£¡£¡£¡£¡£¡£ÆäÖÐÔ̺¬£¬£¬£¬£¬£¬£¬£¬½Ó¼ûȨÏ޵ľù¼ÛΪ5400ÃÀÔª£¬£¬£¬£¬£¬£¬£¬ÖÐÑë¼ÛΪ1000ÃÀÔª£»£»£»£»£»£»£»£»½Ó¼û¶àÑù»¯Ôö³¤£¬£¬£¬£¬£¬£¬£¬×î³£¼ûµÄÊÇÊÇ»ùÓÚRDPºÍVPNµÄ½Ó¼û£»£»£»£»£»£»£»£»³É¹¦µÄIABÇ÷ÓÚ³Á¾²£»£»£»£»£»£»£»£»ÀÕË÷ÍŻ﷢չ³öְҵ·µÂ£¬£¬£¬£¬£¬£¬£¬³Ðŵ²»»áÕë¶ÔijЩ²¿ÃÅ£»£»£»£»£»£»£»£»Í¨¹ý¶àÖÖ·½Ê½½«½Ó¼ûȨÏÞÇ®±Ò»¯¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://ke-la.com/all-access-pass-five-trends-with-initial-access-brokers/