WindowsÄÚ´æÐ¶ñÒâÈí¼þ£ººÚ¿ÍʵʱµÁÈ¡Êý×Ö×ʲú

°ä²¼¹¦·ò 2026-02-02

1. WindowsÄÚ´æÐ¶ñÒâÈí¼þ£ººÚ¿ÍʵʱµÁÈ¡Êý×Ö×ʲú


1ÔÂ31ÈÕ£¬£¬£¬£¬£¬Point WildÆìÏÂLat61Íþвµý±¨ÍŶӽüÈÕ·¢ÏÖÒ»ÖÖÒñ±ÎµÄÐÂÐÍWindows¶ñÒâÈí¼þ»î¶¯£¬£¬£¬£¬£¬¸Ã»î¶¯ÀûÓÃPulsar RATºÍStealerv37¹¤¾ß£¬£¬£¬£¬£¬Í¨¹ýÄÚ´æ×¤Áô·½Ê½Ö´ÐÐÈ«ÃæÊý×ÖÈëÇÖ¡£¡£¡£ ¡£¡£¡£×êÑÐÈËÔ±Ö¸³ö£¬£¬£¬£¬£¬¹¥»÷ʼÓÚ%APPDATA%\MicrosoftĿ¼Ï°µ²ØµÄ΢ÐÍÎļþ£¬£¬£¬£¬£¬Ëæºóѡȡ"½èÁ¦´òÁ¦"¼¼Êõ½Ù³Öϵͳ¿ÉÐŹ¤¾ßÈçPowerShell£¬£¬£¬£¬£¬ÆëÈ«ÔÚÄÚ´æÖÐÖ´ÐжñÒâ´úÂ룬£¬£¬£¬£¬Ô¤·À´«Í³Ó²ÅÌÎļþ²ÐÁô£¬£¬£¬£¬£¬´Ó¶øÈƹý»ù´¡É±¶¾Èí¼þ¼ì²â¡£¡£¡£ ¡£¡£¡£¸Ã¶ñÒâÈí¼þ¾ß±¸Ë«³Á·ÛËé¸öÐÔ£ºÒ»·½ÃæÍ¨¹ýDonut¹¤¾ß½«¶ñÒâ´úÂë×¢Èëexplorer.exeµÈÈÕ³£¹ý³Ì£¬£¬£¬£¬£¬¼´±ã±»À¹½ØÒ²»áÆô¶¯¼à¶½·¨Ê½ÊµÏÖÃë¼¶×Ô¶¯³ÁÆô£»£»£»£»£» £»ÁíÒ»·½Ãæ×Ô¶¯½ûÓù¤×÷ÖÎÀíÆ÷ºÍUAC°²È«ÌáÐÑ£¬£¬£¬£¬£¬×è¶ÏÓû§»Ø»÷Çþ·¡£¡£¡£ ¡£¡£¡£ÆäÖ÷ÌâÖ¸±ê¾Û½¹ÓÚÐÅÏ¢ÇÔÈ¡£¬£¬£¬£¬£¬Pulsar RAT¿ÉÔ¶³Ì²Ù¿ØÉãÏñÍ·ºÍÂó¿Ë·çÖ´ÐÐ¼à¿Ø£¬£¬£¬£¬£¬¶øStealerv37ÔòרÃÅɨÃè¼ÓÃÜÇ®±ÒÇ®°ü¡¢¼à¿Ø¼ôÌù°å²¢´úÌæÖ§¸¶µØÖ·Ö´ÐÐ×ʽðµÁÈ¡£¬£¬£¬£¬£¬Í¬Ê±ÇÔÈ¡Chrome/Edgeä¯ÀÀÆ÷ÃÜÂë¼°Cookie¡¢NordVPNµÈVPNƾ֤¡¢¿ª·¢Õß¹¤¾ßÊý¾Ý¼°Steam/RobloxµÅ×ÎÏ·Õ˺𣡣¡£ ¡£¡£¡£ËùÓÐÔßÎïÊý¾Ý¾ùͨ¹ýDiscord/Telegramͨ·´«Ê䏸ºÚ¿Í¡£¡£¡£ ¡£¡£¡£


https://hackread.com/windows-malware-pulsar-rat-live-chats-steal-data/


2. StopICE³¬10ÍòÓû§ÐÅÏ¢ÔâÁª¹ú»ú¹¹»ñÈ¡


1ÔÂ31ÈÕ£¬£¬£¬£¬£¬·´ÒÆÃñ·¨Âɾ֣¨ICE£©»î¶¯ÈËʿƽ̨StopICE½üÈÕÔâ·ê³Á´ó°²È«·ì϶£¬£¬£¬£¬£¬µ¼Ö³¬¹ý10ÍòÃûÓû§µÄÓ×ÎÒÐÅϢй¶¸øÔ̺¬Áª¹úµ÷²é¾Ö£¨FBI£©¡¢ÒÆÃñ·¨Âɾ֣¨ICE£©ºÍºÓɽ°²È«µ÷²é¾Ö£¨HSI£©ÔÚÄÚµÄÃÀ¹úÁª¹ú»ú¹¹¡£¡£¡£ ¡£¡£¡£ºÚ¿ÍÐû³Æ»ñÈ¡ÁËÓû§µÄÐÕÃû¡¢µÇ¼Ãû¡¢ÃÜÂë¡¢µç»°ºÅÂë¼°¾«È·GPS×ø±ê£¬£¬£¬£¬£¬²¢½«ÕâЩÊý¾ÝÖ±½Ó·¢Ë͸øµ±¾Ö¡£¡£¡£ ¡£¡£¡£Õâ´ÎÊÂÎñÒý·¢Óû§ºÍ°²È«·ÖÎöʦ¶ÔÊý¾Ý¹æÄ£¼°¾ßÌåÐÔµÄÓÇÓô£¬£¬£¬£¬£¬Ð¹Â¶µÄGPS×ø±ê¿ÉÄܶ³ö»î¶¯ÈËʿסËù»ò³£È¥µØÖ·£¬£¬£¬£¬£¬¶øµÇ¼ÐÅÏ¢Ôò¿ÉÄܱ»ÓÃÓÚ×·×ÙÓ×ÎÒ»ò½Ó¼ûÆäËû¹ØÁªÕË»§£¬£¬£¬£¬£¬¼Ó¾ç·´ICE»î¶¯ÈËÊ¿Ãæ¶ÔµÄ·çÏÕ¡£¡£¡£ ¡£¡£¡£StopICEƽ̨ÓɳÛÃûÎÞµ±¾ÖÖ÷ÒåÕßл¶ûÂü¡¤°Â˹͡Ö÷µ¼ÔËÓª£¬£¬£¬£¬£¬¸Ãƽ̨¶¨Î»Îª¡°×èÖ¹ICEͻϮ¾¯±¨ÍøÂ硱£¬£¬£¬£¬£¬Í¨¹ý¶à°ü·½Ê½ÍøÂç²¢°ä²¼ICEÔÚÈ«¹úÁìÓòÄڵķ¨ÂÉÐж¯ÐÅÏ¢£¬£¬£¬£¬£¬Ô̺¬³µÁ¾Ä¿¼û¼Í¼¡¢³µÉ̱ꡢ¹¦·ò´ÁºÍµØÎ»£¬£¬£¬£¬£¬Ö¼ÔÚΪÈõÊÆÈºÌåÌṩ·¨ÂÉÔ¤¾¯¡¢Ë¾·¨ÔöÔ®¼°ÉçÇøÖ§³Ö×ÊÔ´¡£¡£¡£ ¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬Æ½Ì¨´æÔÚÐÅÀµ¶ÈÆÀ·ÖµÍ¡¢ËùÓÐȨ²»Ã÷µÈÕùÒé¡£¡£¡£ ¡£¡£¡£


https://www.ibtimes.co.uk/stopice-hacked-names-locations-over-100k-users-were-sent-fbi-ice-hsi-1775307


3. ÃϼÓÀ­ECÍøÕ¾¹ÊÕÏÖÂ1.4Íò¼ÇÕßÃô¸ÐÐÅϢй¶


1ÔÂ31ÈÕ£¬£¬£¬£¬£¬ÃϼÓÀ­¹úÑ¡¾ÙίԱ»á£¨EC£©×¨ÓÃÃÅ»§ÍøÕ¾pr.ecs.gov.bd²úÉú³Á´ó¼¼Êõ¹ÊÕÏ£¬£¬£¬£¬£¬µ¼ÖÂÔ¼14000Ãû¼ÇÕßµÄÃô¸ÐÓ×ÎÒÊý¾Ýй¶¡£¡£¡£ ¡£¡£¡£Õâ´ÎÐ¹Â¶Éæ¼°¹úÃñÉí·ÝÖ¤ºÅÂë¡¢ÊÖ»úºÅÂ뼰ýÌå´ÓÒµÈËÔ±µÄÆëÈ«ÉêÇë±í¸±±¾£¬£¬£¬£¬£¬ÕâЩ¼ÇÕß´ËǰÒÑÔÚÏß×¢²áÉêÇë¼ÇÕßÖ¤ºÍ³µÁ¾ÌùÖ½£¬£¬£¬£¬£¬ÒÔ±¸¼´½«µ½À´µÄµÚÊ®Èý½ìÈ«¹úÒé»áÑ¡¾ÙºÍÈ«Ãñ¹«Í¶Ö®Óᣡ£¡£ ¡£¡£¡£¸ÃÍøÕ¾Ô­Ö¼ÔÚͨ¹ýÏÖ´ú»¯¼¿Á©¼ò»¯¼ÇÕßÖ¤ÉêÇëÁ÷³Ì£¬£¬£¬£¬£¬µ«¹ÊÕ϶³öÁËÑϳÁ°²È«Òþ»¼¡£¡£¡£ ¡£¡£¡£¾ßÌå¶øÑÔ£¬£¬£¬£¬£¬Óû§µÇÂ¼ÍøÕ¾ºó£¬£¬£¬£¬£¬Ê×Ò³»áÁ¢¼´ÏÔʾËùÓÐÉêÇëÈËµÄÆëÈ«Ãûµ¥£¬£¬£¬£¬£¬ÏµÍ³ÔÊÐíÈκÎÈ˽Ӽû²¢´ò¿ªÆëÈ«µÄÉêÇëÎļþ£¬£¬£¬£¬£¬´Ó¶øÐ¹Â¶¸öÈËÁªÏµ·½Ê½ºÍÉí·ÝÖ¤ºÅÂëµÈÃô¸ÐÐÅÏ¢¡£¡£¡£ ¡£¡£¡£·ì϶±»·¢Ïֺ󣬣¬£¬£¬£¬ÍøÕ¾Ñ¸ËÙ±»½ûÓÃÒÔÔ¤·À½øÒ»²½Î´¾­ÊÚȨ½Ó¼û¡£¡£¡£ ¡£¡£¡£Ñ¡¾ÙίԱ»á¹«¹²¹ØÏµ²¿ÃÅÖ÷Èγºú¶û¡¤°¢Ã÷¡¤ÂíÀû¿Ë°µÊ¾£¬£¬£¬£¬£¬¸ÃÔÚÏßϵͳ±¾Ó¦ÓÚÖÜÎåÍ£Ó㬣¬£¬£¬£¬µ«ÕƹÜÍøÕ¾ÖÎÀíµÄ¹ÙÔ±ÖÜÁùÏÂÎç¶ÌÔÝ¿ªÆôÁ˸ÃÍøÕ¾£¬£¬£¬£¬£¬µ¼ÖÂÊý¾Ýй¶¡£¡£¡£ ¡£¡£¡£ËûÈ·ÈÏÍøÕ¾Ä¿Ç°ÒÑÏÂÏߣ¬£¬£¬£¬£¬²¢Ç¿µ÷ÔÚµ÷²éϵͳΪºÎÄÜÔÚ·ÇÔ¤ÆÚ¹¦·ò±»½Ó¼û¡£¡£¡£ ¡£¡£¡£


https://www.observerbd.com/news/564449


4. Arsink°²×¿Ä¾Âí¼Ù×°50ÓàÆ·ÅÆÈ«ÇòϰȾ³¬4.5ÍòÉ豸


1ÔÂ30ÈÕ£¬£¬£¬£¬£¬Zimperium zLabs×êÑÐÈËÔ±½üÈÕ·¢ÏÖÃûΪArsinkµÄΣÏÕ°²×¿Ä¾Âí£¬£¬£¬£¬£¬¸ÃľÂí¼Ù×°³ÉWhatsApp¡¢TikTokµÈ50Óà¸ö³ÛÃûÆ·ÅÆ£¬£¬£¬£¬£¬Í¨¹ýTelegram¡¢Discord¼°MediaFireµÈ·Ç¹Ù·½Çþ·´«²¼£¬£¬£¬£¬£¬ÔÚÈ«Çò143¸ö¹ú¶ÈϰȾ³¬4.5Íǫ̀É豸£¬£¬£¬£¬£¬ÆäÖа£¼°£¨Ô¼1.3Íò£©¡¢Ó¡¶ÈÄáÎ÷ÑÇ£¨7000£©¡¢ÒÁÀ­¿Ë£¨3000£©Îª³ÁÔÖÇø¡£¡£¡£ ¡£¡£¡£¸ÃľÂíѡȡ¡°×¨Òµ°æ¡±ÀûÓÃÏÝÚåÕ½Êõ£¬£¬£¬£¬£¬ÒÔÌṩÕý°æÀûÓÃȱʧµÄÌØÊâÖ°ÄÜΪµö¶ü£¬£¬£¬£¬£¬ÓÕµ¼Óû§ÏÂÔØ¡£¡£¡£ ¡£¡£¡£×°Öú󣬣¬£¬£¬£¬ÀûÓÃÁ¢¼´ÒªÇóÓû§ÊÚÓè´óÁ¿È¨ÏÞ£¬£¬£¬£¬£¬Ëæºó°µ²Ø×ÔÉíͼ±ê²¢ÔÚºó¶ÜÔËÐУ¬£¬£¬£¬£¬²¿ÃŰ汾ÉõÖÁÄÚÖõڶþ¸ö¡°ÓÐÐ§ÔØºÉ¡±£¬£¬£¬£¬£¬ÊµÏÖÀëÏßϰȾ¡£¡£¡£ ¡£¡£¡£ArsinkÆô¶¯¡°³ÖÐøºó¶Ü·þÎñ¡±È·±£ÓÀ²»¹Ø¹Ø£¬£¬£¬£¬£¬¾ß±¸Ô¶³Ì½ÚÔì¡¢¹àÒô¼àÌý¡¢¶ÌÐÅÇÔÈ¡¡¢ÕÕÆ¬µÁÈ¡¡¢ÁªÏµÈ˼°Í¨»°¼Í¼¶ÁÈ¡¡¢¹È¸èÕË»§ÓÊÏä½Ó¼ûµÈ¶ñÒâÖ°ÄÜ£¬£¬£¬£¬£¬¸ü¿ÉÇ¿ÔìÊÖ»ú²¦´òµç»°¡¢×·×Ù¾«È·µØÎ»£¬£¬£¬£¬£¬ÉõÖÁ¶Ô´æ´¢¿Õ¼ä½øÐÓ×°·ÛËéÐÔ²Á³ý¡±¡£¡£¡£ ¡£¡£¡£ËùÓÐÇÔÈ¡Êý¾Ýͨ¹ý317¸öÊý¾Ý¿âÈë¿ÚÔ̺¬Firebase¡¢Telegram»úеÈ˼°GoogleÔÆ¶ËÓ²Å̰µ²ØÎļþ¼Ð»Ø´«ÖÁºÚ¿Í¡£¡£¡£ ¡£¡£¡£


https://hackread.com/arsink-spyware-whatsapp-youtube-instagram-tiktok/


5. È«Çò½áºÏ·¨Âɵ·»Ù¹¤Òµ¼¶·¸·¨IPTV·¸×ïÍøÂç


1ÔÂ30ÈÕ£¬£¬£¬£¬£¬Å·ÖÞÐ̾¯×éÖ¯¡¢Å·ÖÞ˾·¨×éÖ¯Óë¹ú¼ÊÐ̾¯×éÖ¯½áºÏЭµ÷£¬£¬£¬£¬£¬ÓÉÒâ´óÀû¿¨ËþÄáÑǼì²ì¹Ù°ì¹«ÊҺ͹ú¶È¾¯Ô±Ö÷µ¼µÄÈ«Çò·¨ÂÉÐж¯£¬£¬£¬£¬£¬ÔÚ11¸ö³ÇÊÐ14¸ö¹ú¶È·¢Õ¹×îн׶νø¹¥£¬£¬£¬£¬£¬³ÁµãÕë¶ÔÒâ´óÀûÃ×À¼¶¬°Â»áÆÚ¼ä·¸·¨ÌåÓýÈüÊÂת²¥ÎÊÌâ¡£¡£¡£ ¡£¡£¡£Ðж¯²é»ñÈý¼Ò¹¤Òµ¼¶·¸·¨IPTV·þÎñÉÌIPTVItalia¡¢migliorIPTVºÍDarkTV£¬£¬£¬£¬£¬²ð½âÆä¸²¸Ç°ÙÍò¼¶ÖÕ¶ËÓû§µÄÐÅÏ¢¼¼Êõ»ù´¡ÉèÊ©£¬£¬£¬£¬£¬È·ÈÏ31ÃûÉæ°¸ÈËÔ±£¬£¬£¬£¬£¬ÆäÖÐ11ÈËλÓÚÒâ´óÀû£¬£¬£¬£¬£¬ÆäÓàÉ¢²¼ÔÚÓ¢¹ú¡¢Î÷°àÑÀ¡¢ÂÞÂíÄáÑÇ¡¢¿ÆË÷Îֵȵء£¡£¡£ ¡£¡£¡£µ÷²éÏÔʾ£¬£¬£¬£¬£¬¸Ã·¸×ï×éÖ¯²ã¼¼û÷ÏÔ£¬£¬£¬£¬£¬Í¨¹ý¼ÓÃÜÇ®±ÒÖ§¸¶¡¢¿Õ¿Ç¹«Ë¾Ï´Ç®µÈ¼¿Á©Ìӱܼà¹Ü£¬£¬£¬£¬£¬Ã¿Ô·¸·¨»ñÀûÊý°ÙÍòÅ·Ôª¡£¡£¡£ ¡£¡£¡£Æä·¸·¨½ØÈ¡²¢³Áд«ÊäSky¡¢DAZN¡¢Mediaset¡¢Amazon Prime¡¢Netflix¡¢Paramount¡¢Disney+µÈƽ̨ÄÚÈÝ£¬£¬£¬£¬£¬¼Óº¦°æÈ¨µÄͬʱִÐÐÍÆËã»úڲƭ¡¢Ðéα×ʲúµÇ¼ÇµÈ·¸×ï״Ϊ¡£¡£¡£ ¡£¡£¡£Òâ´óÀû¾¯·½Åû¶£¬£¬£¬£¬£¬½ö¸Ã¹ú¾ÍÓÐÖÁÉÙ250¼Ò¾­ÏúÉ̺Í10ÍòÓû§ÊÜÓ°Ï죬£¬£¬£¬£¬ÂÞÂíÄáÑDzð³ý6̨·þÎñÆ÷£¬£¬£¬£¬£¬·ÇÖÞÒàÓÐһ̨·þÎñÆ÷±»²é·â¡£¡£¡£ ¡£¡£¡£


https://www.bleepingcomputer.com/news/legal/operation-switch-off-dismantles-major-pirate-tv-streaming-services/


6. CISA½«Ivanti EPMM¸ßΣ·ì϶²ÎÓëKEVĿ¼


1ÔÂ30ÈÕ£¬£¬£¬£¬£¬ÃÀ¹úÍøÂ簲ȫºÍ»ù´¡ÉèÊ©°²È«¾Ö£¨CISA£©½üÈÕ½«Ivanti Endpoint Manager Mobile£¨EPMM£©µÄ´úÂë×¢Èë·ì϶£¨CVE-2026-1281£¬£¬£¬£¬£¬CVSSÆÀ·Ö9.8£©ÄÉÈëÒÑÖªÀûÓ÷ì϶£¨KEV£©Ä¿Â¼¡£¡£¡£ ¡£¡£¡£¸Ã·ì϶ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÔ¶³ÌÖ´ÐдúÂ룬£¬£¬£¬£¬×é³ÉÑϳÁ°²È«Íþв¡£¡£¡£ ¡£¡£¡£Ivanti¹«Ë¾Ö¤ÊµÒѼà²âµ½Õë¶Ô¸Ã·ì϶µÄ¹¥»÷ÐÐΪ£¬£¬£¬£¬£¬µ«°µÊ¾½öÓм«ÉÙÊý¿Í»§ÔÚ·ì϶Åû¶ʱÊܵ½ÏÖʵÀûÓᣡ£¡£ ¡£¡£¡£Æ¾¾Ý°²È«²¼¸æ£¬£¬£¬£¬£¬·ì϶ԴÓÚIvanti EPMMµÄ´úÂë×¢Èëȱµã£¬£¬£¬£¬£¬¹¥»÷Õ߿ɽè´ËʵÏÖδ¾­ÈÏÖ¤µÄÔ¶³Ì´úÂëÖ´ÐÓ×£¡£¡£ ¡£¡£¡£IvantiÇ¿µ÷£¬£¬£¬£¬£¬SentryºÍIvanti Neurons MDM²úÆ·²»ÊÜ´Ë·ì϶ӰÏ죬£¬£¬£¬£¬ÔÆ·þÎñ¿Í»§Ò²Î´²¨¼°¡£¡£¡£ ¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬¹«Ë¾Õý³ÖÐøµ÷²éÊÂÎñϸ½Ú£¬£¬£¬£¬£¬ËäÉÐδ·¢ÏÖ¿¿µÃסÈëÇÖ¼£Ï󣬣¬£¬£¬£¬µ«ÒѰ䲼¼¼Êõ²¹¶¡¡¢À©´ó¿Í»§Ö§³ÖÁìÓò£¬£¬£¬£¬£¬²¢Ó밲ȫºÏ×÷ͬ°é¼°·¨Âɲ¿ÃÅ·¢Õ¹ºÏ×÷¡£¡£¡£ ¡£¡£¡£Æ¾¾ÝÓµÓÐÔ¼ÊøÁ¦µÄ²Ù×÷Ö¸ÁBOD£©22-01ÒªÇ󣬣¬£¬£¬£¬Áª¹ú»ú¹¹ÐèÔÚ2026Äê2ÔÂ2ÈÕǰʵÏÖ·ì϶½¨¸´£¬£¬£¬£¬£¬ÒÔ½µµÍÂä´ó·çÏÕ¡£¡£¡£ ¡£¡£¡£


https://securityaffairs.com/187488/security/u-s-cisa-adds-a-flaw-in-ivanti-epmm-to-its-known-exploited-vulnerabilities-catalog.html