Apple°ä²¼´¹Î£¸üУ¬£¬£¬£¬£¬£¬£¬½¨¸´2¸öÒѱ»ÀûÓõÄÁãÈÕ·ì϶
°ä²¼¹¦·ò 2022-04-02Apple°ä²¼´¹Î£¸üУ¬£¬£¬£¬£¬£¬£¬½¨¸´2¸öÒѱ»ÀûÓõÄÁãÈÕ·ì϶
3ÔÂ31ÈÕ£¬£¬£¬£¬£¬£¬£¬Apple°ä²¼´¹Î£¸üУ¬£¬£¬£¬£¬£¬£¬½¨¸´iPhone¡¢iPadºÍMacÖÐ2¸öÒѱ»ÀûÓõÄÁãÈÕ·ì϶¡£¡£¡£¡£¡£¡£¡£¡£Õâ´Î½¨¸´µÄ·ì϶±ðÀëÎªÓ¢ÌØ¶ûÏÔ¿¨Çý¶¯·¨Ê½ÖеÄÔ½½çдÈë·ì϶(CVE-2022-22674)£¬£¬£¬£¬£¬£¬£¬¿ÉÓÃÀ´¶ÁÈ¡ÄÚºËÄڴ棻£»£»£»£»£»£»ÒÔ¼°AppleAVDýÌå½âÂëÆ÷ÖеÄÔ½½ç¶ÁÈ¡·ì϶(CVE-2022-22675)£¬£¬£¬£¬£¬£¬£¬¿É±»ÓÃÀ´ÒÔÄÚºËȨÏÞÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£Apple°µÊ¾ÕâЩ·ì϶¿ÉÄÜÒѱ»»ý¼«ÀûÓ㬣¬£¬£¬£¬£¬£¬ÏÖÒÑͨ¹ý¸Ä½øÊäÈëÑéÖ¤ºÍÌìǵ²é³£¬£¬£¬£¬£¬£¬£¬ÔÚiOS 15.4.1¡¢iPadOS 15.4.1ºÍmacOS Monterey 12.3.1Öн¨¸´¡£¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/apple-emergency-update-fixes-zero-days-used-to-hack-iphones-macs/
QNAP³ÆÆä²¿ÃÅNASÉ豸´æÔÚDoS·ì϶CVE-2022-0778
¾ÝýÌå3ÔÂ30ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬QNAPÔÚ±¾Öܶþ°ä²¼¹«¸æ³Æ£¬£¬£¬£¬£¬£¬£¬Æä´ó²¿ÃÅNASÉ豸¶¼Êܵ½OpenSSLÖеÄDoS·ì϶µÄÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£ÕâÊÇÒ»¸öÎÞÏÞÑ»··ì϶£¨CVE-2022-0778£©£¬£¬£¬£¬£¬£¬£¬³É¹¦ÀûÓú󹥻÷Õß¿ÉÖ´Ðлؾø·þÎñ¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£¹«¸æÖ¸³ö£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶ÓÚÁ½ÖÜǰ±»¹«¿ª²¢°ä²¼Á˲¹¶¡£¡£¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬£¬£¬µ«QNAP°µÊ¾£¬£¬£¬£¬£¬£¬£¬Æä¿Í»§»¹ÐèÆÚ´ýÆä¹«Ë¾°ä²¼×Ô¼ºµÄ°²È«¸üС£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬£¬OpenSSLÍÅ¶Ó³ÆÆäÉÐδ·¢ÏÖ×Ô¶¯ÀûÓø÷ì϶µÄ»î¶¯£¬£¬£¬£¬£¬£¬£¬µ«Òâ´óÀûCSIRT¼ì²âµ½ËüÒѱ»ÔÚÒ°ÀûÓᣡ£¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/03/qnap-warns-of-openssl-infinite-loop.html
Sentinel·¢ÏÖHiveʹÓÃеÄIPfuscation¿ÉÈÆ¹ý¼ì²â
3ÔÂ29ÈÕ£¬£¬£¬£¬£¬£¬£¬Sentinel°ä²¼»ã±¨³ÆHiveʹÓÃм¼ÊõIPfuscationÈÆ¹ý¼ì²â¡£¡£¡£¡£¡£¡£¡£¡£»£»£»£»£»£»£»ìºÏ¼¼ÊõIPfuscationÉæ¼°IPv4µØÖ·ºÍһϵÁеÄת»»²¢×îÖÕÏÂÔØCobalt Strike beacon¡£¡£¡£¡£¡£¡£¡£¡£¼ì²âµ½µÄÑù±¾ÊÇ64λWindows PEÎļþ£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬Ò»¸ö»ìºÏµÄpayload£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚÌṩ¶î±íµÄÖ²È뷨ʽ¡£¡£¡£¡£¡£¡£¡£¡£»£»£»£»£»£»£»ìºÏµÄpayload¼Ù×°³ÉÒ»¸öASCII IPv4µØÖ·Êý×飬£¬£¬£¬£¬£¬£¬±»´«µÝ¸øRtlIpv4StringToAddressAº¯Êý£¬£¬£¬£¬£¬£¬£¬¸Ãº¯Êý»á½«ASCII IP×Ö·û´®×ª»»Îª¶þ½øÔ죬£¬£¬£¬£¬£¬£¬ÕâЩ¶þ½øÔìÄܹ»×é³ÉÒ»¸öshellcode¿é¡£¡£¡£¡£¡£¡£¡£¡£
https://www.sentinelone.com/blog/hive-ransomware-deploys-novel-ipfuscation-technique/
FBIµÄEagle SweepÐж¯Òѵ·»ÙÈ«Çò¶à¸öBEC¹¥»÷ÍÅ»ï
ýÌå3ÔÂ30ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬ FBIºÍ¹ú¼Ê·¨ÂÉ»ú¹¹µÄ½áºÏÐж¯ÒѾµ·»ÙÁ˶à¸öóÒ×µç×ÓÓʼþй¶(BEC)ÍŻ¡£¡£¡£¡£¡£¡£¡£ÕâÏîÃûΪEagle SweepµÄÐж¯³ÖÐøÁËÈý¸öÔ£¬£¬£¬£¬£¬£¬£¬´Ó2021Äê9ÔÂÆðÍ·£¬£¬£¬£¬£¬£¬£¬ÔÚÃÀ¹ú¡¢ÄáÈÕÀûÑÇ¡¢ÄÏ·Ç¡¢¼íÆÒÕ¯ºÍ¼ÓÄôó¿ÛÁôÁË65ÃûÏÓÒÉÈË¡£¡£¡£¡£¡£¡£¡£¡£Æ¾¾ÝFBI IC3°ä²¼µÄ2021Äê·¸×ï»ã±¨£¬£¬£¬£¬£¬£¬£¬BECÚ¿ÆÔì³ÉµÄ¾¼ÃËðʧ¸ß´ï24ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£¡£¡£FBI³Æ£¬£¬£¬£¬£¬£¬£¬ËûÃÇ¿ÛÁôµÄÏÓÒÉÈ˹¥»÷ÁËÃÀ¹ú500¶à¼Ò¹«Ë¾£¬£¬£¬£¬£¬£¬£¬²¢Ôì³ÉÖÁÉÙ51000000ÃÀÔªµÄËðʧ¡£¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/legal/fbi-disrupts-bec-cybercrime-gangs-targeting-victims-worldwide/
ViasatÅû¶ÆäÎÀÐÇ·þÎñKA-SATÔâµ½¹¥»÷µÄ¾ßÌåÐÅÏ¢
¾Ý3ÔÂ30ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬ÃÀ¹úÎÀÐÇͨѶÌṩÉÌViasat¹«¿ªÁ˹ØÓÚ2ÔÂ24ÈÕÆäÎÀÐÇ¿í´ø·þÎñKA-SATÍøÂç¹¥»÷µÄÊÂÎñ»ã±¨¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñµ¼ÖÂÖÐÅ·ºÍ¶«Å·µÄÎÀÐÇ·þÎñÖжϣ¬£¬£¬£¬£¬£¬£¬»¹ÖжÏÁËÓÃÓÚ½ÚÔìµÂ¹úÔ¼5800̨·çÁ¦ÎÐÂÖ»úµÄµ÷Ôì½âµ÷Æ÷¡£¡£¡£¡£¡£¡£¡£¡£¾µ÷²é£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ýÅäÖÃÃýÎóµÄVPNÉ豸ÈëÇÔìäÖÎÀíϵͳ£¬£¬£¬£¬£¬£¬£¬²¢ÏòÓû§µÄÉ豸·¢ËͺÅÁ£¬£¬£¬£¬£¬£¬µ¼ÖÂÊýÍòµ÷Ôì½âµ÷Æ÷´ÓKA-SATÍøÂçÖеôÏß¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬£¬ViasatÒѾ·¢³ö½ü3Íǫ̀µ÷Ôì½âµ÷Æ÷£¬£¬£¬£¬£¬£¬£¬ÒÔÔ®ÊÖ¿Í»§³ÁÐÂÁªÍø¡£¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/viasat-shares-details-on-ka-sat-satellite-service-cyberattack/
×êÑÐÈËÔ±ÑÝʾ¿ÉÔ¶³ÌÖÐ¶ÏÆû³µ³äµçµÄBrokenwire¹¥»÷
ýÌå3ÔÂ30Èճƣ¬£¬£¬£¬£¬£¬£¬Ó¢¹úÅ£½ò´óѧºÍÈðÊ¿Armasuisse»ú¹¹µÄ×êÑÐÈËÔ±·¢ÏÖÁËÒ»ÖÖÐµĹ¥»÷²½ÖèBrokenwire¡£¡£¡£¡£¡£¡£¡£¡£BrokenwireÊÇÕë¶Ô×éºÏ³äµçϵͳ(CCS)µÄ¹¥»÷£¬£¬£¬£¬£¬£¬£¬¶øCCSÊǵ綯Æû³µÖÐʹÓÃ×î¿í·ºµÄÖ±Á÷¼±¾ç³äµç¼¼ÊõÖ®Ò»¡£¡£¡£¡£¡£¡£¡£¡£ÕâÖÖ¹¥»÷»áÖжϳµÁ¾ºÍ³äµçÆ÷Ö®¼ä±ØÒªµÄ½ÚÔìͨѶ£¬£¬£¬£¬£¬£¬£¬µ¼Ö³äµç¹ý³Ì¶ôÖÆ¡£¡£¡£¡£¡£¡£¡£¡£¾Ý¹À¼Æ£¬£¬£¬£¬£¬£¬£¬È«ÇòÔ¼ÓÐ1200ÍòÁ¾µç¶¯Æû³µ£¬£¬£¬£¬£¬£¬£¬ÆäÖдó²¿ÃÅÊÜ´ËÀ๥»÷Ó°Ïì¡£¡£¡£¡£¡£¡£¡£¡£³ýµç¶¯Æû³µ±í£¬£¬£¬£¬£¬£¬£¬Brokenwire»¹»áÓ°Ïìµç¶¯´¬²°¡¢·É»úºÍ³ÁÐͳµÁ¾µÈ¡£¡£¡£¡£¡£¡£¡£¡£
https://www.brokenwire.fail/
°²È«¹¤¾ß
CVE-2022-27254µÄPoC
±¾ÌïÔ¶³ÌÎÞÔ¿³×ϵͳ·ì϶(CVE-2022-27254)µÄ PoC¡£¡£¡£¡£¡£¡£¡£¡£
https://github.com/nonamecoder/CVE-2022-27254
casper-fs
×Ô½ç˵µÄ Linux ÄÚºËÄ£¿£¿£¿£¿£¿£¿£¿éÌìÉúÆ÷£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚʹÓÃ×ÊÔ´À´±£»£»£»£»£»£»£»¤»ò°µ²Ø×Ô½ç˵ÎļþÁÐ±í¡£¡£¡£¡£¡£¡£¡£¡£
https://github.com/CoolerVoid/casper-fs
hcltm
ÌṩһÖÖ DevOps ÓÅÏȵIJ½ÖèÀ´¼Í¼ϵͳÍþвģÐÍ¡£¡£¡£¡£¡£¡£¡£¡£
https://github.com/xntrik/hcltm
°²È«·ÖÎö
Hive ÀÕË÷ÍŻ﹥»÷¼ÓÖÝPartnership HealthPlan
https://therecord.media/hive-ransomware-shuts-down-california-health-care-organization/
΢ÈíÕý²Ã¼õ IE£¬£¬£¬£¬£¬£¬£¬´òËãÔÚ 6 Ô 15 ÈÕ³¹µ×¹Ø¹Ø
https://news.softpedia.com/news/android-could-at-one-point-be-able-to-detect-bluetooth-trackers-natively-535135.shtml
Mozilla ½«°ä²¼Thunderbird °æ±¾ 102
https://news.softpedia.com/news/mozilla-thunderbird-will-receive-a-major-update-with-version-102-535131.shtml
Infosecurity Europe °ä²¼ 2022 Äê»î¶¯µÄÑݽ²Õß
https://www.infosecurity-magazine.com/news/infosecurity-europe-keynote/
Ò»¸öµ¥Ò»µÄ±àÂëÃýÎóÄܹ»·ÛËéÂí×Ô´ïµÄ»¥ÁªÏµÍ³
https://www.bleepingcomputer.com/news/security/mazda-infotainment-crash-shows-how-fragile-car-security-really-is/


¾©¹«Íø°²±¸11010802024551ºÅ