Adobe´ø±í¸üн¨¸´82¸ö·ì϶£»£»£»£»£»£»£»½©Ê¬ÍøÂçPhorpiexÿÓ×ʱ¿É·¢ËÍ3Íò·âÚ¿ÆÓʼþ£»£»£»£»£»£»£»ÐéαCheckra1n iOSÔ½Óü
°ä²¼¹¦·ò 2019-10-17
Adobe°ä²¼´ø±í°²È«¸üУ¬£¬£¬£¬£¬½¨¸´AcrobatºÍReader¡¢Experience Manager¡¢Experience Manager FormsºÍDownload ManagerÖÐµÄ 82¸ö·ì϶¡£¡£¡£¡£¡£¡£¡£ÆäÖÐ45¸ö·ì϶±»ÆÀΪÑϳÁ¼¶±ð£¬£¬£¬£¬£¬ËüÃǶ¼´æÔÚÓÚAdobe AcrobatºÍReaderÖУ¬£¬£¬£¬£¬²¢ÇÒÔڳɹ¦ÀûÓÃʱ¿Éµ¼ÖÂÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¾ßÌåÀ´Ëµ£¬£¬£¬£¬£¬ÓÐ26¸ö·ì϶Ϊuse-after-free·ì϶£¬£¬£¬£¬£¬6¸ö·ì϶ÊÇÔ½½çд£¬£¬£¬£¬£¬4¸ö·ì϶ÊÇÀàÐÍ»ìºÏÃýÎ󣬣¬£¬£¬£¬4¸ö·ì϶ÊDz»³ÉÐŵÄÖ¸Õë½âÒýÓ㬣¬£¬£¬£¬3¸öÊǶÑÒç³ö£¬£¬£¬£¬£¬1¸öÊÇ»º³åÇøÒç³ö£¬£¬£¬£¬£¬1¸öÊǾºÕùǰÌáÎÊÌâ¡£¡£¡£¡£¡£¡£¡£Adobe Flash PlayerÕâ´ÎûÓÐÊÕµ½°²È«²¹¶¡£¬£¬£¬£¬£¬Ó¦¸Ã°ÑÎȵÄÊÇ£¬£¬£¬£¬£¬Adobe½«ÔÚ2020Äêµ×ÖÕ³¡Ìṩ¶ÔFlash PlayerµÄ¸üС£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2019/10/adobe-software-patches.html
ÈüÃÅÌú¿ËΪÆäEndpoint Protection²úÆ·ÍÆ³öµÄÈëÇÖ¼ì²âÊðÃû¸üе¼ÖÂÓû§É豸³öÏÖ±ÀÀ£²¢ÏÔʾÀ¶ÆÁ£¨BSOD£©¡£¡£¡£¡£¡£¡£¡£¸ÃÎÊÌâÓ°ÏìÁËWin 7¡¢Win8¼°Win 10£¬£¬£¬£¬£¬Æ¾¾ÝÈüÃÅÌú¿ËµÄ±íÊö£¬£¬£¬£¬£¬ÔÚÔËÐÐLiveUpdateʱEndpoint Protection Client»áÏÔʾéæÃüÀ¶ÆÁ£¬£¬£¬£¬£¬²¢ÏÔʾIDSvix86.sys/IDSvia64.sys³öÏÖÎÊÌ⣬£¬£¬£¬£¬µ¼ÖÂBAD_POOL_CALLER (c2)»òKERNEL_MODE_HEAP_CORRUPTION (13A)Òì³£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹²¹³ä³ÆÊÜÓ°ÏìµÄÈëÇÖ¼ì²âµÄÊðÃû°æ±¾Îª2019/10/14 r61£¬£¬£¬£¬£¬¸ÃÎÊÌâÒÑÔÚа汾2019/10/14 r62Öнâ¾ö¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/symantec-fixes-bad-ips-definitions-that-cause-a-windows-bsod/3¡¢·ðÂÞÀï´ïÖÝÒ»¼ÒÅ®ÐÔÕïËù½ü52Íò»¼ÕßÐÅÏ¢¿ÉÄÜй¶
·ðÂÞÀï´ïÖÝÒ»¼ÒרΪŮÐÔÌṩҽÁÆ·þÎñµÄÕïËùÖÒ¸æÆä52.8Íò»¼ÕßËýÃǵÄÓ×ÎÒÊý¾ÝºÍÒ½ÁƼͼ¿ÉÄÜÒѾй¶¡£¡£¡£¡£¡£¡£¡£±±·ðÂÞÀï´ïÖÝOB-GYNÔÚ7ÔÂ27ÈÕÒâʶµ½ÍøÂç¹¥»÷µÄ²úÉú£¬£¬£¬£¬£¬²¢ÓëµÚÈý·½¼¼ÊõÕÕ·÷ºÏ×÷ʵÏÖÁ˳õ²½ÏµÍ³ÆÀ¹À¡£¡£¡£¡£¡£¡£¡£ÆÀ¹ÀÅú×¢Æä²¿ÃÅÍÆËã»úϵͳÔâµ½²»µ±½Ó¼û²¢ÇÒijЩÎļþÒѱ»²¡¶¾¼ÓÃÜ¡£¡£¡£¡£¡£¡£¡£ÆÀ¹ÀÒÔΪ¸Ã¹¥»÷ÊÂÎñ²úÉúÔÚ2019Äê4ÔÂ29ÈÕ֮ǰ¡£¡£¡£¡£¡£¡£¡£¸ÃÕïËù¹Ø¹ØÁËϵͳ²¢Æô¶¯ÁËÊÂÎñÏìÓ¦ºÍ¸´Ô·¨Ê½¡£¡£¡£¡£¡£¡£¡£ÊÜÊÂÎñÓ°ÏìµÄÐÅÏ¢Ô̺¬»¼ÕßµÄÐÕÃû¡¢ÈºÌåÌØµã¡¢µ®ÉúÈÕÆÚ¡¢Éç»á°²È«ºÅÂë¡¢¼ÝÕÕ¼°Éí·ÝID¡¢¾ÍÒµÐÅÏ¢¡¢Ò½ÁƱ£ÏÕÐÅÏ¢¼°Ò½ÖΡ¢Õï¶Ï¡¢Ò½Ñ§Í¼ÏñµÈÒ½ÁÆÐÅÏ¢£¬£¬£¬£¬£¬µ«²»Ô̺¬ÈκÎÐÅÓþ¿¨»òÒøÐп¨ÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°ÏÕЩËùÓмÓÃܵÄÎļþ¶¼ÒѸ´Ô¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.infosecurity-magazine.com/news/florida-womens-clinic-data-breach/4¡¢½©Ê¬ÍøÂçPhorpiexÿÓ×ʱ¿É·¢ËÍ3Íò·âÚ¿ÆÓʼþ
ÔÚCheck PointµÄÒ»·Ýл㱨ÖУ¬£¬£¬£¬£¬×êÑÐÈËÔ±·ÖÎöÁ˽©Ê¬ÍøÂçPhorpiexͨ¹ý¶È·¢ÊýÒÔ°ÙÍò¼ÆµÄsextortionÚ¿ÆÓʼþÀ´²úÉú¿É¹ÛµÄÊÕÈë¡£¡£¡£¡£¡£¡£¡£PhorpiexÒÑÓнüÊ®ÄêµÄº¹Ç࣬£¬£¬£¬£¬ËüÒ²±»³ÆÎªTrik£¬£¬£¬£¬£¬ÊÇÒ»ÖÖͨ¹ýµç×ÓÓʼþ´«²¼µÄÈ䳿¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±·¢Ïָý©Ê¬ÍøÂçÔÚ2019ÄêÔö³¤ÁËÒ»¸öеÄÓÐЧ¸ºÔØ-À¬»øÓʼþ»úеÈË¡£¡£¡£¡£¡£¡£¡£ÔÚ×°Öú󣬣¬£¬£¬£¬¸ÃbotÄ£¿£¿£¿£¿£¿£¿é½«Ïνӵ½C2·þÎñÆ÷£¬£¬£¬£¬£¬ÏÂÔØÔ̺¬´óÁ¿µç×ÓÓʼþµØÖ·µÄÊý¾Ý¿â£¬£¬£¬£¬£¬ÏòÊý°ÙÍòDZÔÚÊܺ¦Õß·¢ËÍÓʼþ¡£¡£¡£¡£¡£¡£¡£ÆäÖÐһЩC2ÓµÓÐ325µ½1363¸öÊý¾Ý¿â£¬£¬£¬£¬£¬Ã¿¸öÊý¾Ý¿âÔ̺¬×î¶à2Íò¸öµç×ÓÓʼþµØÖ·¡£¡£¡£¡£¡£¡£¡£·¢ËÍÀ¬»øÓʼþʱ£¬£¬£¬£¬£¬Phorpiex½«´´½¨1.5Íò¸öỊ̈߳¬£¬£¬£¬£¬Check Point¹À¼Æµ¥¸öÊÜϰȾµÄÉ豸ÿÓ×ʱÄܹ»·¢ËͶà´ï3Íò·âÓʼþ¡£¡£¡£¡£¡£¡£¡£×Ô2019Äê4ÔÂÒÔÀ´£¬£¬£¬£¬£¬×êÑÐÈËÔ±¼à¿ØÁ˹¥»÷ÕßµÄ74¸ö±ÈÌØ±ÒµØÖ·£¬£¬£¬£¬£¬·¢ÏÖ¹¥»÷Õß¹²¼Æ»ñµÃ157±Ê¸¶¿î£¬£¬£¬£¬£¬×ܼÆ11.99545¸ö±ÈÌØ±Ò¡£¡£¡£¡£¡£¡£¡£ÒÔ½ñÌìµÄ¼ÛÖµÍÆË㣬£¬£¬£¬£¬ÆäÊÕÈëÔÚ6¸öÔÂÄÚԼĪ´ïµ½9.5ÍòÃÀÔª£¬£¬£¬£¬£¬¼´Ã¿ÔÂÊÕÈë1.6ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/malware-uses-your-pc-to-send-30k-sextortion-emails-per-hour/
5¡¢TA505ÔÚй¥»÷»î¶¯Öзַ¢ÏÂÔØÆ÷Get2¼°SDBbot RAT
Proofpoint×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬£¬´Ó2019Äê9ÔÂÆðÍ·ºÚ¿Í×éÖ¯TA505ÔÚÆä´¹µö¹¥»÷»î¶¯Öзַ¢ÁËÁ½ÖÖеĶñÒâÈí¼þ£¬£¬£¬£¬£¬Ô̺¬ÏÂÔØÆ÷Get2ºÍÔ¶¿ØÄ¾ÂíSDBbot¡£¡£¡£¡£¡£¡£¡£ÐµÄGet2»ùÓÚC++£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ýËü·Ö·¢FlawedGrace¡¢FlawedAmmyy¡¢SnatchºÍеÄSDBbot RATµÈµÚ¶þ½×¶Îpayload¡£¡£¡£¡£¡£¡£¡£9Ô³õ¸Ã¹¥»÷»î¶¯ÖØÒªÕë¶ÔÏ£À°¡¢ÐÂ¼ÓÆÂ¡¢°¢ÁªÇõ¡¢¸ñ³¼ªÑÇ¡¢ÈðµäºÍÁ¢ÌÕÍðµÈ¹ú¶ÈµÄ½ðÈÚ»ú¹¹£¬£¬£¬£¬£¬9ÔÂ20ºÅÆðÍ·³ÉǧÉÏÍò·âÓ¢ÓïºÍ·¨Óï´¹µöÓʼþ±»·¢Ë͸øÃÀ¹úºÍ¼ÓÄôó¶à¸öÐÐÒµµÄÆóÒµ£¬£¬£¬£¬£¬10ÔÂ7ºÅÆðÍ·¹¥»÷ÕßÀûÓöÌÁ´½ÓÀ´½øÐÐÌø×ª£¬£¬£¬£¬£¬²¢Çл»µ½ÐµÄSDBbot RAT¡£¡£¡£¡£¡£¡£¡£SDBbotҲʹÓÃC++¿ª·¢£¬£¬£¬£¬£¬ËüÊÇÒ»¸öÄ£¿£¿£¿£¿£¿£¿é»¯µÄ¶ñÒâÈí¼þ£¬£¬£¬£¬£¬ÓµÓкÅÁîÐÐshell¡¢ÆÁϼÔì¡¢Ô¶³Ì×ÀÃæ¡¢¶Ë¿Úת·¢ºÍÎļþ½Ó¼ûµÈµäÐÍRATÖ°ÄÜ£¬£¬£¬£¬£¬²¢Í¨¹ýTCP¶Ë¿Ú443½øÐÐͨѶ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/new-sdbot-remote-access-trojan-used-in-ta505-malspam-campaigns/
6¡¢¹¥»÷ÕßÀûÓÃÐéαCheckra1n iOSÔ½ÓüÌáÒéµã»÷ڲƹ¥»÷
˼¿ÆTalosµÄ×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬£¬¹¥»÷ÕßÔÚÀûÓÃÐéαµÄCheckra1n iOSÔ½ÓüÀ´ÌáÒéµã»÷ڲƻ¡£¡£¡£¡£¡£¡£¡£checkra1nÐû³ÆÀûÓÃÁË×êÑÐÈËÔ±×î½üÅû¶µÄiOSÔ½Óü·ì϶bootrom¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß´´½¨ÁËÒ»¸öÐéαµÄcheckrain[.]comÍøÕ¾£¬£¬£¬£¬£¬Ðû³ÆÄܹ»Ô®ÊÖiPhoneÓû§Ô½Óü£¬£¬£¬£¬£¬µ«ÏÖʵÉÏÒªÇóÓû§ÏÂÔØ¶ñÒâµÄ¡°mobileconfig¡±ÅäÖÃÎļþ£¬£¬£¬£¬£¬×îÖÕÔÊÐí¹¥»÷Õß½øÐеã»÷ڲƹ¥»÷¡£¡£¡£¡£¡£¡£¡£¸Ã¹¥»÷ÖØÒªÍ¨¹ýÔÚÓû§µÄiOSÉ豸ÉϽøÐÐÂŴγÁ¶¨ÀúÀ´½øÐУ¬£¬£¬£¬£¬ÔÚÕâ¸ö¹ý³ÌÖУ¬£¬£¬£¬£¬Óû§½«¾Àú¸÷Àà¸æ°×¸ú×Ù¡¢ÑéÖ¤ºÍÌṩµØÀíµØÎ»µÄÑ»·£¬£¬£¬£¬£¬×îÖÕ×°ÖÃÒ»¸öÓÐÄÚ¹ºÖ°ÄܵÄiOSÀÏ»¢»úÓÎÏ·¡£¡£¡£¡£¡£¡£¡£Õâ´Î¹¥»÷µÄÖ¸±êÖØÒªÊÇÃÀ¹ú£¬£¬£¬£¬£¬Æä´ÎÊÇÓ¢¹ú¡¢·¨¹ú¡¢ÄáÈÕÀûÑǵȡ£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/scammers-use-fake-checkra1n-ios-jailbreak-in-click-fraud-campaign/


¾©¹«Íø°²±¸11010802024551ºÅ