´óÁ¿QNAP NASÉ豸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷

°ä²¼¹¦·ò 2021-12-29

´óÁ¿QNAP NASÉ豸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷


´óÁ¿QNAP NASÉ豸Óû§³ÆÆäÔâµ½eCh0raixÀÕË÷¹¥»÷.png


¾ÝýÌåÓÚ12ÔÂ27ÈÕ±¨Â·£¬£¬£¬£¬£¬´óÁ¿QNAPÍøÂ總¼Ó´æ´¢É豸(NAS)µÄÓû§»ã±¨ÆäϵͳÔâµ½ÀÕË÷Èí¼þeCh0raix£¨Ò²³ÆQNAPCrypt£©µÄ¹¥»÷¡£¡£¡£ ¡£¡£ID ransomware serviceÊý¾ÝÏÔʾ£¬£¬£¬£¬£¬Óû§»ã±¨µÄ¹¥»÷ÊýÁ¿´Ó12ÔÂ19ÈÕÆðÍ·Ôö³¤£¬£¬£¬£¬£¬²¢ÔÚ12ÔÂ26ÈÕÇ÷ÓÚÆ½»º¡£¡£¡£ ¡£¡£Ä¿Ç°Éв»Ã÷ÏÔ×î³õµÄϰȾý½é£¬£¬£¬£¬£¬²¿ÃÅÓû§°µÊ¾ÆäδÀûÓÃÕýÈ·µÄ°²È«Õ½Êõ£¬£¬£¬£¬£¬ÁíÒ»²¿ÃÅÓû§Ðû³Æ¹¥»÷ÓëQNAP Photo StationÖеķì϶Óйء£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/qnap-nas-devices-hit-in-surge-of-ech0raix-ransomware-attacks/


LastPassÓû§Ô⵽ƾ֤Ìî³ä¹¥»÷µ¼ÖÂÖ÷ÃÜԿй¶


LastPassÓû§Ô⵽ƾ֤Ìî³ä¹¥»÷µ¼ÖÂÖ÷ÃÜԿй¶.png


12ÔÂ28ÈÕ£¬£¬£¬£¬£¬ÃÜÂëÖÎÀíµ±ÓÃLastPass°µÊ¾¹¥»÷Õß¶ÔÆäÓû§ÌáÒéײ¿â¹¥»÷£¬£¬£¬£¬£¬²¢ÊÔͼ½Ó¼ûËûÃǵÄÔÆÃÜÂë¿â¡£¡£¡£ ¡£¡£½üÈÕ£¬£¬£¬£¬£¬´óÁ¿Óû§ÊÕµ½À´×Ըù«Ë¾µÄ°²È«¾¯±¨£¬£¬£¬£¬£¬³Æ¡°ÓÐÈËʹÓÃÄúµÄÖ÷ÃÜÂë³¢ÊÔ´ÓÎÒÃÇÎÞ·¨Ê¶´ËÍâÉ豸»òµØÎ»µÇ¼ÄúµÄÕÊ»§¡±¡£¡£¡£ ¡£¡£LastPass³ÆÕâ´Î»î¶¯ÆðÍ·ÓÚ±¾ÖÜÒ»£¬£¬£¬£¬£¬ËüÒѾ­×èÖ¹ÁË´óÁ¿À´×Ô±í¹úIPµØÖ·£¨´ó²¿ÃÅλÓÚ°ÍÎ÷£©Ê¹ÓÃÕýÈ·ÃÜÂëµÄµÇ¼³¢ÊÔ¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/lastpass-confirms-credential-stuffing-attack-against-some-of-its-users/


Ê©ÄÍµÂµçÆø½¨¸´ÆäEVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸ö·ì϶


Ê©ÄÍµÂµçÆø½¨¸´ÆäEVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸ö·ì϶.jpg


¾ÝýÌåÔÚ12ÔÂ27Èճƣ¬£¬£¬£¬£¬Ê©ÄÍµÂµçÆøÒѽ¨¸´EVlinkµç¶¯Æû³µ³äµçÕ¾Öжà¸öÑϳÁµÄ·ì϶¡£¡£¡£ ¡£¡£¸Ã²¹¶¡°ä²¼ÓÚ12ÔÂ14ÈÕ£¬£¬£¬£¬£¬Ó°ÏìÁËVlink City¡¢ParkingºÍSmart WallboxµÈÉ豸¡£¡£¡£ ¡£¡£Õâ´Î½¨¸´µÄ×îΪÑϳÁµÄ·ì϶Ϊ·þÎñÆ÷¶ËÒªÇóαÔì·ì϶£¨CVE-2021-22821£©£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ9.3 £»£»£»£»£»£»Æä´ÎΪ¿çÕ¾¾ç±¾·ì϶£¨CVE-2021-22822£©µÈ¡£¡£¡£ ¡£¡£¸Ã¹«Ë¾³ÆÕâЩ·ì϶¿ÉÄܵ¼Ö»ؾø·þÎñ¹¥»÷£¬£¬£¬£¬£¬»òÓû§ÉèÖúÍÕÊ»§±»´Û¸ÄºÍй¶£¬£¬£¬£¬£¬Òò¶ø¶½´ÙÓû§Á¢¼´×°ÖÃ×îв¹¶¡¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/new-flaws-expose-evlink-electric-vehicle-charging-stations-remote-hacking


Windows 11±¬³öÐÂBug£¬£¬£¬£¬£¬²¿ÃÅHDRÏÔʾÆ÷³ÊÉ«³öÏÖÎÊÌâ


Windows 11±¬³öÐÂBug£¬£¬£¬£¬£¬²¿ÃÅHDRÏÔʾÆ÷³ÊÉ«³öÏÖÎÊÌâ.png


12ÔÂ27ÈÕ£¬£¬£¬£¬£¬MicrosoftÒÑÈ·ÈÏÓ°ÏìWindows 11 21H2É豸µÄÐÂBug£¬£¬£¬£¬£¬¼´±ãÓÃWin32 APIÔÚ²¿ÃŸ߶¯Ì¬ÁìÓò(HDR)ÏÔʾÆ÷ÉϳÊÉ«µÄÀûÓóöÏÖÎÊÌâ¡£¡£¡£ ¡£¡£MicrosoftÚ¹ÊÍ·£¬£¬£¬£¬£¬Ä³Ð©Í¼Ïñ±à×ëÀûÓÃÎÞ·¨ÔÚHDRÏÔʾÆ÷ÉÏÕýÈ·³ÊÉ«£¬£¬£¬£¬£¬³ö¸ñÊǰ×É«¾­³ £»£»£»£»£»£»áÏÔʾ³ÉÁÁ»ÆÉ«»òÆäËüÉ«²Ê¡£¡£¡£ ¡£¡£µ±Ä³Ð©ÏÔÉ«Win32 API·µ»ØÒâ±íÐÅÏ¢»òÃýÎóʱ¾Í»á³öÏÖ´ËÎÊÌ⣬£¬£¬£¬£¬²¢·ÇËùÓÐÅäÖÃÎļþÖÎÀí·¨Ê½¶¼ÊÜ´ËÎÊÌâÓ°Ïì¡£¡£¡£ ¡£¡£MicrosoftÒÑÌṩ¿É²ÉÈ¡µÄ½¨¸´´ëÊ©£¬£¬£¬£¬£¬Ô¤¼ÆÔÚ1ÔÂÏÂÑ®½¨¸´¸ÃÎÊÌâ¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/windows-11-bug-causes-color-rendering-issues-on-hdr-displays/


°µÍøÊг¡ToRReZÔÝÍ£ÔËÓª²¢³Æ¿ÉÄÜÔÚÉÔºó½×¶Î»Ø¹é


°µÍøÊг¡ToRReZÔÝÍ£ÔËÓª²¢³Æ¿ÉÄÜÔÚÉÔºó½×¶Î»Ø¹é.png


ýÌå12ÔÂ27Èճƣ¬£¬£¬£¬£¬°µÍøÊг¡ToRReZ°ä·¢ÔÝÍ£ÔËÓª¡£¡£¡£ ¡£¡£Torrez Market³ÉÁ¢ÓÚ2020Äê4Ô£¬£¬£¬£¬£¬ÊÇΨһ½ÓÊÜBitcoin¡¢Monero¡¢ZcashºÍLitecoinµÄ°µÍøÊг¡¡£¡£¡£ ¡£¡£¸ÃÍøÕ¾µÄÖÎÀíÔ±mrblondeÐû³ÆÕâÊÇËûÃÇ×Ô¼º¾ö¶¨µÄÁ˾Ö£¬£¬£¬£¬£¬²¢Ú¹ÊÍËûÃÇ¿ÉÄÜ»áÔÚÉÔºó½×¶Î»Ø¹é¡£¡£¡£ ¡£¡£×Ô12ÔÂ17ÈÕÆð£¬£¬£¬£¬£¬¸ÃÍøÕ¾ÒÑÎÞ·¨×¢²áÐÂÕÊ»§£¬£¬£¬£¬£¬Ö®ºóÖÎÀíÔ±Ô¤ÁôÁ½µ½ÈýÖܵŦ·òÆÚ´ýËùÓÐЧ»§ÊµÏÖÂòÂô¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/126052/cyber-crime/torrez-marketplace-shut-down.html    


Cisco Talos°ä²¼2021Äê¶ÈÍøÂç¹¥»÷»î¶¯µÄ»ØÊ׻㱨


Cisco Talos°ä²¼2021Äê¶ÈÍøÂç¹¥»÷»î¶¯µÄ»ØÊ׻㱨.png


12ÔÂ27ÈÕ£¬£¬£¬£¬£¬Cisco Talos°ä²¼2021Äê¶ÈÍøÂç¹¥»÷»î¶¯µÄ»ØÊ׻㱨¡£¡£¡£ ¡£¡£¸Ã»ã±¨Ö¼ÔÚ»ØÊ×½ñÄê²úÉúµÄ³Á´ó°²È«ÊÂÎñ£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬1Ô·ݴó¹æÄ£SolarWinds¹©¸øÁ´¹¥»÷ £»£»£»£»£»£»3Ô·ÝProxyLogon·ì϶ºÍHAFNIUM ÍÅ»ï³öÏÖ £»£»£»£»£»£»5Ô·ÝʯÓ͹Ü·Colonial PipelineÔâµ½¹¥»÷ £»£»£»£»£»£»7Ô·ÝKaseya¹©¸øÁ´¹¥»÷ £»£»£»£»£»£»12Ô·ÝLog4j·ì϶³öÏÖµÈÊÂÎñ¡£¡£¡£ ¡£¡£»ã±¨Ô¤²â£¬£¬£¬£¬£¬ÔÚ2022Ä꣬£¬£¬£¬£¬´óÐ͹¥»÷»î¶¯ºÍÀÕË÷Èí¼þÈÔ½«³ÊÉÏÉýÇ÷Ïò¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/12/2021-looking-back-on-year-in-malware.html