ºÚ¿ÍÔÚ°µÍøÏúÊÛ³¬¹ý8Íò¸öSQLÊý¾Ý¿â£¬£¬£¬£¬£¬Ã¿¸ö550ÃÀÔª£»£»£»£»£»£»£»£»Î¢ÈíÅûÂ¶Ôø½Ù³Ö¹ýChromeºÍEdgeµÈä¯ÀÀÆ÷µÄAdrozek
°ä²¼¹¦·ò 2020-12-11
ºÚ¿ÍÔÚ°µÍøÒÔÿ¸ö550ÃÀÔªµÄ¼ÛÖµÏúÊÛ³¬¹ý85000¸öSQLÊý¾Ý¿â¡£¡£¡£¡£¡£ºÚ¿Í×éÖ¯ÔÚ²»ÐݵØÈëÇÖMySQLÊý¾Ý¿â£¬£¬£¬£¬£¬ÏÂÔØ±í¸ñ£¬£¬£¬£¬£¬É¾³ýÔʼÎĵµ£¬£¬£¬£¬£¬²¢ÁôÏÂÊê½ð¼Í¼£¬£¬£¬£¬£¬Í¨ÖªÊܺ¦ÕßÓëÆäÁªÏµÒÔÈ¡»ØÆäÊý¾Ý¡£¡£¡£¡£¡£ÈôÊÇÊܺ¦ÕßÔÚ¾ÅÌìÄÚûÓи¶¿î£¬£¬£¬£¬£¬ËûÃǵÄÊý¾Ý½«ÔÚÊý¾ÝÐ¹Â¶ÍøÕ¾±»ÅÄÂô¡£¡£¡£¡£¡£Ëæ×ÅÊܺ¦ÕßÊýÁ¿µÄÔö¶à£¬£¬£¬£¬£¬¹¥»÷Õ߯ðͷʹÓÃ×Ô¶¯»¯µÄÈëÇÖÁ÷³ÌºÍÅÄÂôÍøÒ³£¬£¬£¬£¬£¬²¢²»»á·ÖÎö±»ÈëÇÖµÄÊý¾Ý¿âÖеÄÊý¾Ý¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬ÕâЩÊý¾Ý¿âµÄÊÛ¼Û»áËæ×ÅBTC/ USD»ãÂʵĵßô¤ÓÐËù±ä¶¯£¬£¬£¬£¬£¬µ«Í¨³£Ê¼ÖÕά³ÖÔÚ500ÃÀÔª×óÓÒ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/hackers-are-selling-more-than-85000-sql-databases-on-a-dark-web-portal/
2.΢ÈíÅûÂ¶Ôø½Ù³Ö¹ýChromeºÍEdgeµÈä¯ÀÀÆ÷µÄAdrozek

΢ÈíÅû¶ÁËÔø½Ù³Ö¹ýChrome¡¢EdgeºÍFirefoxµÄ¶ñÒâÈí¼þAdrozek¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ´Ó2020Äê5ÔÂÆðÍ·»îÔ¾£¬£¬£¬£¬£¬ÔÚ8Ô´ﵽ¶¥·åʱÆÚ£¬£¬£¬£¬£¬Ã¿Ìì¿É½Ù³Ö³¬¹ý30000̨É豸¡£¡£¡£¡£¡£Æ¾¾ÝÄÚ²¿Ò£²â£¬£¬£¬£¬£¬Êܺ¦ÕßÖØÒª¼¯ÖÐÔÚÅ·ÖÞ£¬£¬£¬£¬£¬Æä´ÎÊÇÄÏÑǺͶ«ÄÏÑÇ¡£¡£¡£¡£¡£Î¢Èí°µÊ¾£¬£¬£¬£¬£¬AdrozekÊÇͨ¹ýdrive-byµÄ·½Ê½´«²¼µÄ¡£¡£¡£¡£¡£³É¹¦×°Öúó¸Ã¶ñÒâÈí¼þ½«Ñ°ÕÒ±¾µØ×°ÖõÄä¯ÀÀÆ÷£¬£¬£¬£¬£¬²¢ÊÔͼÅú¸Ää¯ÀÀÆ÷µÄAppDataÎļþ¼ÐÇ¿Ôì×°ÖÃÀ©´ó£¬£¬£¬£¬£¬´Ë±íËü»¹»áÅú¸ÄһЩä¯ÀÀÆ÷µÄDLLÎļþÀ´¸ü¸ÄÆäÉèÖò¢½ûÓð²È«¸öÐÔ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/microsoft-exposes-adrozek-malware-that-hijacks-chrome-edge-and-firefox/
3.ºÚ¿Í½«ÐÅÓþ¿¨ÇÔÈ¡¾ç±¾°µ²ØÔÚCSS´úÂëÖÐÀ´Èƹý¼ì²â

°²È«¹«Ë¾SansecµÄ×êÑÐÈËÔ±·¢Ïֺڿͽ«ÐÅÓþ¿¨ÇÔÈ¡¾ç±¾°µ²ØÔÚCSS´úÂëÖÐÀ´Èƹý¼ì²â¡£¡£¡£¡£¡£¹ºÎïÕßµã»÷½áÕÊʱ£¬£¬£¬£¬£¬½«±»³Á¶¨Ïòµ½Ò»¸ö¼ÓÔØ²¢½âÎö¶ñÒâCSS´úÂëµÄÐÂÒ³Ãæ£¬£¬£¬£¬£¬¶øºó£¬£¬£¬£¬£¬ºÚ¿ÍÀûÓñ»ÈëÇÖµÄÒ³ÃæÉϵÄJavaScript½âÎöÆ÷¼ÓÔØ²¢Ö´ÐÐCSS´úÂëÖеĶñÒâ¾ç±¾¡£¡£¡£¡£¡£Í¨¹ý´ËÖÖ²½Ö裬£¬£¬£¬£¬¿É³É¹¦µØÈƹý×Ô¶¯°²È«É¨ÃèÆ÷µÄ¼ì²â£¬£¬£¬£¬£¬²¢ÇÒ¼´±ãÔÚÊÖ¶¯°²È«´úÂëÉó¼ÆÖÐÒ²ºÁÎÞÂí½Å¡£¡£¡£¡£¡£Sansec°µÊ¾£¬£¬£¬£¬£¬½«À´¹¥»÷Õß¿ÉÄÜ»¹»áÀûÓÃÆäËû´¦ËùµÄ¾²Ì¬Êý¾Ý¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/credit-card-stealer-hides-in-css-files-of-hacked-online-stores/
4.APT28ÀûÓÃÒÔCOVID-19ΪÖ÷ÌâµÄ´¹µö¹¥»÷·Ö·¢Zebrocy

°²È«¹«Ë¾Intezer·¢ÏÖ£¬£¬£¬£¬£¬¶íÂÞ˹ºÚ¿Í×éÖ¯APT28ÀûÓÃÒÔCOVID-19ΪÖ÷ÌâµÄ´¹µö¹¥»÷·Ö·¢¶ñÒâÈí¼þZebrocy¡£¡£¡£¡£¡£Õâ´Î¹¥»÷»î¶¯ÊÇÔÚ11ÔÂÏÂÑ®½øÐе쬣¬£¬£¬£¬ºÚ¿ÍÀûÓÃÒÔCOVID-19ΪÖ÷ÌâµÄ´¹µöµç×ÓÓʼþÀ´·Ö·¢Go°æ±¾µÄZebrocy£¨»òZekapab£©¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ¿É³äÈκóÃźÍÏÂÔØÆ÷£¬£¬£¬£¬£¬¿ÉÄÜÍøÂçϵͳÐÅÏ¢¡¢Îļþ²Ù×÷£¬£¬£¬£¬£¬²¶»ñÆÁÄ»½ØÍ¼²¢Ö´ÐжñÒâºÅÁ£¬£¬£¬£¬¶øºó½«ÕâЩ¶ñÒâºÅÁî´«²¼µ½¹¥»÷Õß½ÚÔìµÄ·þÎñÆ÷¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2020/12/russian-apt28-hackers-using-covid-19-as.html
5.Talos°ä²¼2020ÄêÇï¼¾ÊÂÎñÏìÓ¦Ì¬ÊÆµÄ·ÖÎö»ã±¨

Cisco Talos°ä²¼ÁË2020ÄêÇï¼¾ÊÂÎñÏìÓ¦Ì¬ÊÆµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£»ã±¨Ö¸³ö£¬£¬£¬£¬£¬ÀÕË÷Èí¼þÔÚÍþвÁìÓòÈÔÕ¼¾ÝÖ÷µ¼Ö°Î»£¬£¬£¬£¬£¬¶¥¼¶ÀÕË÷Èí¼þÍÅ»ïÊÇMazeºÍSodinokibi¡£¡£¡£¡£¡£ºÚ¿ÍÕë¶ÔÁË¿í·ºµÄ´¹Ö±ÁìÓò£¬£¬£¬£¬£¬Ô̺¬Å©Òµ¡¢Ê³Æ·ºÍÒûÁÏ¡¢Ò½ÁƱ£½¡¡¢½ÌÓý¡¢ÄÜÔ´ºÍ¹«ÓÃÊÂÒµ¡¢¹¤Òµ·ÖÏú¡¢·¨ÂÉ¡¢´¦Ëùµ±¾Ö¡¢Ôì×÷ÒµºÍ¼¼Êõ¡£¡£¡£¡£¡£ÖØÒªÖ¸±êÊÇÔì×÷Òµ¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬ÓÉÓÚCOVID-19µÄ·¢×÷£¬£¬£¬£¬£¬Õë¶ÔÎÀÉú±£½¡×éÖ¯µÄ¹¥»÷»î¶¯¼¤Ôö¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://blog.talosintelligence.com/2020/12/quarterly-ir-report-fall-2020-q4.html
6.Adobe°²È«¸üУ¬£¬£¬£¬£¬½¨¸´Èý¿î²úÆ·ÖеĶà¸ö·ì϶

Adobe°²È«¸üУ¬£¬£¬£¬£¬½¨¸´ÁËLightroom¡¢PreludeºÍExperience ManageÖеĶà¸ö·ì϶¡£¡£¡£¡£¡£Õâ´Î½¨¸´µÄ·ì϶Ô̺¬µ¼ÖÂËÁÒâ´úÂëÖ´ÐеIJ»ÊÜ¿ØËÑË÷õè¾¶ÔªËØ·ì϶£¨CVE-2020-24447£©£¬£¬£¬£¬£¬²»ÊܽÚÔìµÄËÑË÷õè¾¶ÒýÆðµÄËÁÒâ´úÂëÖ´Ðзì϶£¨CVE-2020-24440£©£¬£¬£¬£¬£¬¿Éµ¼ÖÂÔÚä¯ÀÀÆ÷ÖÐËÁÒâÖ´ÐÐJavaScriptµÄ´æ´¢ÐÍXSS·ì϶£¨CVE-2020-24445£©ÒÔ¼°¿Éµ¼ÖÂÐÅϢй¶µÄÒªÇóαÔì·ì϶£¨CVE-2020-24444£©¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/adobe-security-update-squashes-critical-vulnerabilities-in-lightroom-prelude/


¾©¹«Íø°²±¸11010802024551ºÅ