ºÚ¿ÍÀûÓÃľÂí»¯µÄBitKeepÀûÓ÷¨Ê½ÇÔÈ¡Óû§µÄ×ʽð

°ä²¼¹¦·ò 2022-12-29
1¡¢ºÚ¿ÍÀûÓÃľÂí»¯µÄBitKeepÀûÓ÷¨Ê½ÇÔÈ¡Óû§µÄ×ʽð

      

¾ÝýÌå12ÔÂ27ÈÕ±¨Â·£¬£¬£¬£¬£¬ £¬£¬¶à¸öBitKeepÀûÓõÄÓû§³Æ£¬£¬£¬£¬£¬ £¬£¬ÔÚºÚ¿Í´¥·¢²»±ØÒªÑéÖ¤µÄÂòÂôºó£¬£¬£¬£¬£¬ £¬£¬ËûÃǵÄÇ®°üÔÚÊ¥µ®½ÚÆÚ¼ä±»Çå¿Õ¡£¡£¡£¡£¡£BitKeepÊÇÒ»¸öÈ¥ÖÐÐÄ»¯µÄ¶àÁ´web3 DeFiÇ®°ü£¬£¬£¬£¬£¬ £¬£¬È«Çò³¬¹ý800ÍòÈËʹÓÃËü½øÐÐ×ʲúÖÎÀíºÍÂòÂô´¦Öᣡ£¡£¡£¡£BitKeepй©ÕâÊÇÒ»´Î´ó¹æÄ£ºÚ¿ÍÊÂÎñ£¬£¬£¬£¬£¬ £¬£¬Í¨¹ý¶ñÒâÖ²ÈëµÄ´úÂë±»´Û¸ÄµÄAPKµ¼ÖÂÓû§µÄ˽Կй¶£¬£¬£¬£¬£¬ £¬£¬Ê¹ºÚ¿Í¿ÉÄÜ×ªÒÆ×ʽ𡣡£¡£¡£¡£¾ÝPeckShieldºÍOKLink³Æ£¬£¬£¬£¬£¬ £¬£¬½ØÖÁĿǰËðʧ¹À¼Æ¸ß´ï990ÍòÃÀÔª¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/hackers-steal-8-million-from-users-running-trojanized-bitkeep-apps/


2¡¢×êÑÐÈËÔ±ÑÝʾÈôºÎͨ¶ÈÈÕ¶¯´«¸ÐÆ÷ÇÔÌýAndroidÊÖ»ú

      

¾Ý12ÔÂ27ÈÕ±¨Â·£¬£¬£¬£¬£¬ £¬£¬×êÑÐÍŶӷ¢ÏÖÁËÒ»ÖÖÕë¶ÔAndroidÉ豸µÄÐÂÐÍÇÔÌý¹¥»÷£¬£¬£¬£¬£¬ £¬£¬Äܹ»ÔÚ·ÖÆçˮƽÉϼø±ðÀ´µçÕßµÄÐÔ±ðºÍÉí·Ý£¬£¬£¬£¬£¬ £¬£¬ÉõÖÁ·Ö±æ¸öÈË·¢ÑÔ¡£¡£¡£¡£¡£¸Ã²àÐÅ·¹¥»÷ÃûΪEarSpy£¬£¬£¬£¬£¬ £¬£¬Ö¼ÔÚͨ¹ý²¶»ñÒÆ¶¯É豸Öжú»úÑïÉùÆ÷µÄ»ìÏìÒýÆðµÄ»î¶¯´«¸ÐÆ÷Êý¾Ý¶ÁÊý£¬£¬£¬£¬£¬ £¬£¬À´Ë÷ÇóÇÔÌýµÄпÉÄÜÐÔ¡£¡£¡£¡£¡£²âÊÔÊý¾ÝÒòÊý¾Ý¼¯ºÍÉ豸¶øÒ죬£¬£¬£¬£¬ £¬£¬×êÑÐÈËÔ±³Æ£¬£¬£¬£¬£¬ £¬£¬Ê¹Óþ­µäµÄMLËã·¨ÆÀ¹ÀʱÓòºÍƵÓòÌØµã£¬£¬£¬£¬£¬ £¬£¬ÏÔʾ³ö×î¸ß56.42%µÄÕýÈ·ÂÊ¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/earspy-attack-eavesdrops-on-android-phones-via-motion-sensors/


3¡¢¼ÓÀû¸£ÄáÑÇÖÝÊ¥ÂÞ˹ҽԺ1.7TBµÄÎļþÔÚ°µÍøÉϳöÏÖ

      

ýÌå12ÔÂ27Èճƣ¬£¬£¬£¬£¬ £¬£¬×êÑÐÈËÔ±ÔÚÒ»¸öÈȵãÂÛ̳ÉÏ·¢ÏÖÁ˾ݳÆÊÇÀ´×Ô¼ÓÀû¸£ÄáÑÇÖݺ£ÎÖµÂÊ¥ÂÞ˹ҽԺµÄÎļþ¡£¡£¡£¡£¡£¸ÃÇåµ¥±»ÃèÊöΪй¶ÎļþµÄÑù±¾Êý¾Ý°ü£¬£¬£¬£¬£¬ £¬£¬¾Ý³Æ×Üй¶Êý¾ÝÔ̺¬1.7 TBµÄÎļþ£¬£¬£¬£¬£¬ £¬£¬Éæ¼°²ÆÕþÊý¾Ý¡¢ÒµÎñÊý¾Ý¡¢Ô±¹¤ºÍ»¼ÕßÓ×ÎÒÐÅÏ¢µÈ¡£¡£¡£¡£¡£Ñù±¾ÖмͼÁË2022Äê10ÔÂÏÂÑ®µÄÎļþ£¬£¬£¬£¬£¬ £¬£¬Òò¶øÐ¹Â¶ÊÂÎñ¿ÉÄܲúÉúÔÚ11Ô»ò12Ô¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÔÚ12ÔÂ26ÈÕÁªÏµÁ˸ÃÒ½Ôº£¬£¬£¬£¬£¬ £¬£¬µ«ÉÐδÊÕµ½Èκλظ´£¬£¬£¬£¬£¬ £¬£¬Ò½ÔºÍøÕ¾Ò²Ã»ÓйØÓÚÈκÎÎ¥¹æ»òÊý¾Ý°²È«ÊÂÎñµÄÐÅÏ¢¡£¡£¡£¡£¡£


https://www.databreaches.net/st-rose-hospital-patient-data-appears-on-hacking-forum/


4¡¢KasperskyÅû¶BlueNoroffÍÅ»ïÈÆ¹ýMoTW±£»£»£»£»£»£»£»£»¤µÄв½Öè

      

12ÔÂ27ÈÕ£¬£¬£¬£¬£¬ £¬£¬KasperskyÅû¶BlueNoroffÍÅ»ïÈÆ¹ýWindowsÍøÂçÏóÕ÷(MotW)±£»£»£»£»£»£»£»£»¤µÄв½Öè¡£¡£¡£¡£¡£µ±Óû§´ò¿ª´ÓÍøÂç¸ßµÍÔØµÄÎļþʱ£¬£¬£¬£¬£¬ £¬£¬Windows»áÏÔʾһÌõÖÒ¸æÐÂÎÅ¡£¡£¡£¡£¡£Îª´Ë£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßʹÓÃÁ˹âÅ̾µÏñ£¨.iso£©ºÍÐé¹¹Ó²ÅÌ£¨.vhd£©ÎļþÌåʽ¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬ £¬£¬¸ÃÍŻﻹ²âÊÔÁË·ÖÆçµÄÎļþÀàÐÍÒԸĽø¶ñÒâÈí¼þµÄ·Ö·¢²½Ö裬£¬£¬£¬£¬ £¬£¬×êÑÐÈËÔ±¹Û²ìµ½ÁËеÄVisual Basic¾ç±¾¡¢WindowsÅú´¦ÖÃÎļþºÍWindows¿ÉÖ´ÐÐÎļþ¡£¡£¡£¡£¡£BlueNoroff ÍÅ»ïËÆºõÔÚ³¢ÊÔеÄÎļþÀàÐÍ£¬£¬£¬£¬£¬ £¬£¬ÒÔÓÐЧµØ·Ö·¢ËûÃǵĶñÒâÈí¼þ¡£¡£¡£¡£¡£¸ÃÍÅ»ïʹÓÃÁË70¶à¸öÓò£¬£¬£¬£¬£¬ £¬£¬ÕâÒâζ×ÅËüÃÇÖ±µ½×î½ü²Å·Ç³£»£»£»£»£»£»£»£»îÔ¾¡£¡£¡£¡£¡£


https://securelist.com/bluenoroff-methods-bypass-motw/108383/


5¡¢Fox IT×êÑÐÈËԱɨÃè·¢ÏÖ´óÁ¿Citrix·þÎñÆ÷Ò×±»¹¥»÷

      

Fox ITÔÚ12ÔÂ28ÈÕй©£¬£¬£¬£¬£¬ £¬£¬Æä·¢ÏÖÊýÒÔǧ¼ÆµÄCitrix ADCºÍÍø¹ØÒÀÈ»ÈÝÒ×Êܵ½½üÆÚ½¨¸´µÄÁ½¸ö·ì϶µÄÓ°Ïì¡£¡£¡£¡£¡£µÚÒ»¸öÊÇÉí·ÝÑéÖ¤ÈÆ¹ý·ì϶£¨CVE-2022-27510£©£¬£¬£¬£¬£¬ £¬£¬ÒÑÓÚ11ÔÂ8ÈÕ½¨¸´£»£»£»£»£»£»£»£»µÚ¶þ¸öÊÇÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2022-27518£©£¬£¬£¬£¬£¬ £¬£¬ÓÚ12ÔÂ13ÈÕÅû¶²¢½¨¸´¡£¡£¡£¡£¡£×êÑÐÈËÔ±µÄɨÃèÁ˾ְµÊ¾£¬£¬£¬£¬£¬ £¬£¬½ØÖÁ2022Äê12ÔÂ28ÈÕ£¬£¬£¬£¬£¬ £¬£¬ÓÐ3500̨É豸ÔÚÂú×ãijЩǰÌáʱÈÝÒ×Êܵ½Õë¶Ô·ì϶CVE-2022-27518µÄ¹¥»÷£¬£¬£¬£¬£¬ £¬£¬Óг¬¹ý1000̨ÈÝÒ×Êܵ½CVE-2022-27510µÄÓ°Ï죬£¬£¬£¬£¬ £¬£¬Ô¼3000̨É豸Ò×ÊÜÕâÁ½¸ö·ì϶µÄÓ°Ïì¡£¡£¡£¡£¡£


https://blog.fox-it.com/2022/12/28/cve-2022-27510-cve-2022-27518-measuring-citrix-adc-gateway-version-adoption-on-the-internet/


6¡¢ESET°ä²¼2022ÄêÊ®´óÍøÂç¹¥»÷ÊÂÎñµÄ»ØÊ׻㱨

      

ESETÔÚ12ÔÂ27ÈÕ°ä²¼ÁË2022ÄêÊ®´óÍøÂç¹¥»÷ÊÂÎñµÄ»ØÊ׻㱨£¬£¬£¬£¬£¬ £¬£¬»ã×ÜÁËÓ°ÏìÈ«Çò¸÷¸öÐÐÒµµÄ×îÑϳÁµÄºÚ¿Í¹¥»÷ºÍÎ¥¹æ»î¶¯¡£¡£¡£¡£¡£ÆäÖÐÔ̺¬£¬£¬£¬£¬£¬ £¬£¬ÎÚ¿ËÀ¼µÄ¹Ø¼ü»ù´¡ÉèÊ©Ôâµ½µÄÍøÂç¹¥»÷¡¢Éæ¼°¶à¸öÊý¾Ý²Á³ý¹¤¾ßCaddyWiper¡¢HermeticWiperºÍIsaacWiperµÄ¹¥»÷»î¶¯¡¢Õë¶ÔóÒ×ÎÀÐÇ»¥ÁªÍø¹«Ë¾ViasatµÄÍøÂç¹¥»÷¡¢¸ç˹´ïÀè¼ÓÔâµ½ContiµÄ¹¥»÷²¢°ä·¢½øÈë¹ú¶È´¹Î£×´Ì¬¡¢¶à¸öÀÕË÷ÍÅ»ïµÄ¹¥»÷»î¶¯ÒÔ¼°Ronin Network 6.18ÒÚÃÀÔª±»µÁµÈÊÂÎñ¡£¡£¡£¡£¡£


https://www.welivesecurity.com/2022/12/27/2022-review-10-biggest-cyberattacks/