ÒÔÉ«ÁÐÆô¶¯Ãñº½ÍøÂ簲ȫ´òË㣬£¬£¬£¬£¬½«¸ÄÉÆº½¿ÕÍøÂç·ÀÓùÄÜÁ¦£»£»£»£»£»£»£»Î¢Èí·¢ÏÖ¶ñÒânpmÈí¼þ°ü ¿É´ÓUNIXϵͳÇÔÈ¡Êý¾Ý

°ä²¼¹¦·ò 2020-01-14


1.ÒÔÉ«ÁÐÆô¶¯Ãñº½ÍøÂ簲ȫ´òË㣬£¬£¬£¬£¬½«¸ÄÉÆº½¿ÕÍøÂç·ÀÓùÄÜÁ¦


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


¾ÝÉÏÖÜÈÕÒÔÉ«Áйú¶ÈÍøÂçÖÎÀí¾Ö£¨INCD£©±¨Â·£¬£¬£¬£¬£¬ÒÔÉ«Áе±¾ÖºË×¼ÁËÒ»ÏîÃñº½ÍøÂ簲ȫ´òËã¡£¡£¡£¡£¡£¡£×÷Ϊ¸Ã´òËãµÄÒ»²¿ÃÅ£¬£¬£¬£¬£¬ÒÔÉ«Áн«³ÉÁ¢Ò»¸ö¹ú¶ÈÁ쵼ίԱ»áÀ´¸ÄÉÆ¸Ã¹ú¶ÈµÄº½¿ÕÍøÂç·ÀÓùÄÜÁ¦¡£¡£¡£¡£¡£¡£¸ÃίԱ»áÓÉINCD¸¨µ¼£¬£¬£¬£¬£¬²¢ÇÒÓÉÒÔÉ«Áн»Í¨²¿¡¢Ãñº½¾Ö¡¢»ú³¡ÖÎÀí¾Ö¡¢°²È«¾Ö¡¢¹ú·À²¿¡¢¹ú¶È°²È«Î¯Ô±»áºÍÒÔÉ«Áйú·À¾üµÄ´ú±í×é³É¡£¡£¡£¡£¡£¡£¸Ã´òËãµÄÄÚÈÝÔ̺¬£ºÍþвӳÉäºÍ½â¾ö¹æ»®ÏîÄ¿¡¢Ôڸ߿Ƽ¼ºÍÍøÂçÐÐÒµÒÔ¼°Ñ§Êõ½çÍÆ¶¯Ç°Ñؼ¼Êõ×êÑк͹ú·À½â¾ö¹æ»®µÄÑз¢¡¢Ó벨Òô½øÐкÏ×÷¡¢³ÉÁ¢ÔËÊä½ÚÔìÖÐÐÄ¡¢¿ª·¢·ÉÐÐÔ±Åàѵ¿Î³ÌµÈ¡£¡£¡£¡£¡£¡£


  Ô­ÎÄÁ´½Ó£º

http://www.xinhuanet.com/english/2020-01/13/c_138699304.htm


2.Maze¹¥»÷ÕßÔÙ´ÎÔÚmazenewsÍøÕ¾Éϰ䲼Êܺ¦¹«Ë¾Áбí


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


È¥Äê12Ô·ݣ¬£¬£¬£¬£¬MAZE¹¥»÷ÕßÔÚhttp[:]//mazenews[.]top/ÍøÕ¾Éϰ䲼ÁË´Ó±±ÃÀµçÀÂÔì×÷ÉÌSouthwireÇÔÈ¡µÄ²¿ÃÅÎļþ£¬£¬£¬£¬£¬¸ÃÍøÕ¾Óɰ®¶ûÀ¼µÄISPÍйÜ¡£¡£¡£¡£¡£¡£ËæºóSouthwireÓÚ12ÔÂ31ÈÕÔÚÃÀ¹úÇÇÖÎÑÇÖݱ±²¿µØÓò¶ÔMAZE¹¥»÷ÕßÌá¸æ×´ËÏ£¬£¬£¬£¬£¬µ¼Ö¸ÃÍøÕ¾±»¹Ø¹Ø£¬£¬£¬£¬£¬µ«ÕâûÓÐ×èÖ¹¹¥»÷ÕߵĴòË㣬£¬£¬£¬£¬½üÈÕ¸ÃÍøÕ¾ÔÙ´ÎÉÏÏߣ¬£¬£¬£¬£¬ÕâÒ»´ÎÊÇͨ¹ý°¢Àï°Í°ÍÍйÜÔÚÐÂ¼ÓÆÂÒÔ±íµÄ´¦Ëù¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÔÚÐÂÍøÕ¾ÉÏÁгöÁ˾ݳÆÊÇÒÑÊÜÇÖº¦µ«Î´Ö§¸¶Êê½ðµÄ¹«Ë¾ÁÐ±í£¬£¬£¬£¬£¬Ô̺¬Southwire¡¢RBC¡¢THEONE¡¢Vernay¡¢Bakerwotring¡¢BILTON¡¢greccoauto¡¢Groupe Igrec¡¢Mitch Co International¡¢Einhell¡¢CONTINENTALNH3¡¢Groupe Europe Handling SAS¡¢Auteuil Tour Eiffel¡¢Fratelli Beretta¡¢Randalegal¡¢crossroadsnet¡¢SAXBST¡¢ÃÀ¹ú˰ÊÕÕ÷ѯ¹«Ë¾BST£¦CoºÍ³¢ÊÔÊÒ²âÊÔÉèÊ©MDL¡£¡£¡£¡£¡£¡£·ðÂÞÀï´ïÖݵÄÅíÈø¿ÆÀ­ÊÐÒ²±»Áгö¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹°ä²¼ÁËһЩÊôÓÚEinhell¡¢Fratelli Beretta¡¢Crossroadsnet¡¢MDL¡¢BST£¦Co¡¢SAXBSTºÍAuteuil Tour EiffelµÄʧÇÔÎļþ¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/maze-relaunches-name-and-shame/


3.¶íÂÞ˹ºÚ¿ÍÍÅ»ïSilence¹¥»÷ÑÇÈö¹þÀ­µØÓò¶à¼ÒÒøÐÐ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


¿¨°Í˹»ù°²È«×êÑÐÈËÔ±»ã±¨ÁËÊýǧÆðÓйØÑÇÈö¹þÀ­µØÓò£¨SSA£©µÄÖØÒªÒøÐÐÔâ·ê¹¥»÷µÄ֪ͨ¡£¡£¡£¡£¡£¡£¹¥»÷ÖÐʹÓõĶñÒâÈí¼þÅú×¢¹¥»÷Õß¿ÉÄÜÊdzôÃûÔ¶ÑïµÄ¶íÂÞ˹·¸×ïÍÅ»ïSilence£¬£¬£¬£¬£¬¸Ã×éÖ¯Ôø´ÓÊÀ½ç¸÷µØµÄÒøÐÐ͵ÇÔÊý°ÙÍòÃÀÔª¡£¡£¡£¡£¡£¡£¼ì²âµ½µÄ¹¥»÷ÆðÍ·ÓÚ2020Äê1ÔµĵÚÒ»ÖÜ£¬£¬£¬£¬£¬ÕâÅú×¢¹¥»÷Õß¼´½«ÆðÍ·ÆäÐж¯µÄ×îºó½×¶Î²¢¶ÒÏÖ×ʽ𡣡£¡£¡£¡£¡£Æù½ñΪֹ¹¥»÷ÈÔÔÚ³ÖÐø£¬£¬£¬£¬£¬²¢ÇÒ³ÖÐøÕë¶Ô¼¸¸öSSA¹ú¶ÈµÄ´óÐÍÒøÐС£¡£¡£¡£¡£¡£¹¥»÷ÕßʹÓõĶñÒâÈí¼þÔ̺¬HEUR:Trojan.Win32.GenericºÍPDM:Exploit.Win32.Generic¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://kaspersky.africa-newsroom.com/press/silence-before-the-storm-russian-speaking-hacking-group-is-attacking-banks-in-subsaharan-africa


4.Android¶ñÒâAPP Shopper.aÀÄÓø¨ÖúÖ°ÄÜ´«²¼ÐéαÆÀÂÛ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


¿¨°Í˹»ù×êÑÐÈËÔ±¼ì²âµ½Ò»¸öAndroidľÂíTrojan-Dropper.AndroidOS.Shopper.a¡£¡£¡£¡£¡£¡£¸ÃľÂíÄܹ»ÀÄÓÃAndroid¸¨ÖúÖ°ÄÜÀ´´«²¼ÐéαÆÀÂÛ¡£¡£¡£¡£¡£¡£Æ¾¾Ý×êÑÐÈËÔ±µÄ±íÊö£¬£¬£¬£¬£¬Shopper.aÄܹ»´ò¿ªGoogle Play£¨»òÆäËûÀûÓÃÉ̵꣩£¬£¬£¬£¬£¬×°Ööà¸öAPP²¢½øÐÐÐéαµÄÓû§ÆÀÂÛ£¬£¬£¬£¬£¬×°Öô°¿Ú»áͨ¹ý¡°²»Ë½¼û¡±ÊôÐÔ½øÐаµ²Ø¡£¡£¡£¡£¡£¡£¸ÃľÂí½«Æä×ÔÉíÆÁ±ÎΪϵͳÀûÓ÷¨Ê½£¬£¬£¬£¬£¬²¢Ê¹ÓÃÃûΪConfigAPKsµÄϵͳͼ±êÀ´ÏòÓû§°µ²Ø×ÔÉí¡£¡£¡£¡£¡£¡£½âËøÆÁÄ»ºó£¬£¬£¬£¬£¬¸ÃľÂí½«ÍøÂçÓйØÊܺ¦ÕßÉ豸µÄÐÅÏ¢£¬£¬£¬£¬£¬²¢½«Æä·¢Ë͵½¹¥»÷ÕߵķþÎñÆ÷¡£¡£¡£¡£¡£¡£ÔÚ½Óµ½·þÎñÆ÷µÄºÅÁîºó£¬£¬£¬£¬£¬¸ÃľÂí»¹Äܹ»Ö´ÐнûÓÃGoogle Play±£»£»£»£»£»£»£»¤Ö°ÄܵÈ¡£¡£¡£¡£¡£¡£ÔÚ2019Äê10Ôµ½11ÔÂÆÚ¼ä£¬£¬£¬£¬£¬ÊܸÃľÂíϰȾµÄÓû§±ÈÀý×î¸ßµÄ¹ú¶ÈÊǶíÂÞ˹£¨28.46£¥£©£¬£¬£¬£¬£¬Æä´ÎÊǰÍÎ÷£¨18.70£¥£©ºÍÓ¡¶È£¨14.23£¥£©¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://securelist.com/smartphone-shopaholic/95544/


5.΢Èí·¢ÏÖ¶ñÒânpmÈí¼þ°ü ¿É´ÓUNIXϵͳÇÔÈ¡Êý¾Ý


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


npm°²È«ÍŶÓɾ³ýÁËÒ»¸ö¶ñÒâÈí¼þ°ü£¬£¬£¬£¬£¬¸ÃÈí¼þ°ü±»Î¢Èí×êÑÐÍŶӷ¢ÏÖ´ÓUNIXϵͳÇÔÈ¡Ãô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ°üÃûΪ1337qq-js£¬£¬£¬£¬£¬ÓÚ2019Äê12ÔÂ30ÈÕÉÏ´«µ½npm´æ´¢¿âÖУ¬£¬£¬£¬£¬²¢ÔڸÿâÖдæÔÚÁËÔ¼Á½¸öÐÇÆÚµÄ¹¦·ò¡£¡£¡£¡£¡£¡£ÔÚ±»É¾³ý֮ǰ£¬£¬£¬£¬£¬¸ÃÈí¼þ°üÖÁÉÙ±»ÏÂÔØÁË32´Î¡£¡£¡£¡£¡£¡£Æ¾¾Ýnpm°²È«ÍŶӵķÖÎö£¬£¬£¬£¬£¬¸ÃÈí¼þ°üͨ¹ý×°ÖýÅÕý±¾ÇÔÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬²¢ÇÒ½öÕë¶ÔUNIXϵͳ£¬£¬£¬£¬£¬ÆäÍøÂçµÄÊý¾ÝÀàÐÍÔ̺¬£º»·¾³±äÁ¿¡¢ÔÚÔËÐеĹý³Ì¡¢/etc/hosts¡¢uname -aÒÔ¼°npmrcÎļþ¡£¡£¡£¡£¡£¡£ÆäÖл·¾³±äÁ¿ÖпÉÄÜÔ̺¬Ó²±àÂëµÄÃÜÔ¿»òAPI½Ó¼ûÁîÅÆµÈÃô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/microsoft-spots-malicious-npm-package-stealing-data-from-unix-systems/


6.µÃ¿ËÈøË¹ÖÝÒ»Ñ§ÇøÔâµç×ÓÓʼþÚ¿Æ­Ëðʧ230ÍòÃÀÔª


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


µÃ¿ËÈøË¹ÖÝÂíŵ¶ÀÁ¢Ñ§ÇøÔâµ½µç×ÓÓʼþÚ¿Æ­Ëðʧ230ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¸Ã»ú¹¹ÔÚÈ¥Äê11Ô·ÝÊÕµ½´¹µöÓʼþ£¬£¬£¬£¬£¬µ¼ÖÂÁËÈýÏî¶ÀÁ¢ÂòÂôµÄ²úÉú£¬£¬£¬£¬£¬ÔÚÒ»¸öÔºóÒ»Ãû¹ÍÔ±²Å·¢ÏÖÁ˸ÃȦÌס£¡£¡£¡£¡£¡£¸ÃÑ§ÇøÔÚÒ»·ÝÐÂΟåÖаµÊ¾£¬£¬£¬£¬£¬¸Ã°¸¼þ´æÔÚ¡°Ç¿Á¦µÄÏßË÷¡±£¬£¬£¬£¬£¬µ«·¨ÂÉ»ú¹¹ÔÚ×·ÇóÆäËü¿ÉÄܸú×ÙÍøÂç¹¥»÷ÕßµÄÐÅÏ¢£¬£¬£¬£¬£¬ÔÚÏÖ½×¶ÎÉв»ÄÜÈ·¶¨ÊÇ·ñÄÜÊÕ»ØÕâ±ÊÇ®¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/texas-school-district-falls-for-scam-email-hands-over-2-3-million/