΢Èí³ÆÉý¼¶µ½Android 12ºó²¿ÃÅÉ豸Intune³öÏÖÎÊÌâ

°ä²¼¹¦·ò 2022-03-16

΢Èí³ÆÉý¼¶µ½Android 12ºó²¿ÃÅÉ豸Intune³öÏÖÎÊÌâ


¾ÝýÌå3ÔÂ10ÈÕ±¨Â·£¬£¬£¬£¬ £¬£¬£¬MicrosoftÈ·ÈÏ´ÓAndroid 11Éý¼¶µ½Android 12ºó»áµ¼Ö²¿ÃÅÉ豸µÄIntune×¢²á³öÏÖÎÊÌâ¡£¡£¡£¡£¡£¡£¡£¡£ÊÜ´ËÎÊÌâÓ°ÏìµÄ¿Í»§»¹³ÆÆäÔÚÉý¼¶ºóÎÞ·¨½Ó¼ûÍйÜÔÚMicrosoft IntuneµÄ×ÊÔ´¡£¡£¡£¡£¡£¡£¡£¡£µ½Ä¿Ç°ÎªÖ¹£¬£¬£¬£¬ £¬£¬£¬MicrosoftÒÑÈ·¶¨OPPO¡¢OnePlusºÍRealmeÉ豸ÊÜ´ËÎÊÌâÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬ £¬£¬£¬×êÑÐÈËÔ±ÔÚÈýÐÇGalaxyÉ豸Öз¢ÏÖÒ»¸öÀàËÆÎÊÌ⣬£¬£¬£¬ £¬£¬£¬ÔÚÉý¼¶µ½Android 12ºó×¢²áIntune£¬£¬£¬£¬ £¬£¬£¬»áÒòÖ¤Êéȱʧµ¼Öµç×ÓÓʼþºÍVPNÏνӳöÏÖÎÊÌâ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-confirms-intune-enrollment-issue-on-android-devices/


Cisco·¢ÏÖMuddyWaterÕë¶ÔÍÁ¶úÆäµÈ¹úµÄÐÂÒ»ÂÖ¹¥»÷


Cisco TalosÔÚ3ÔÂ10ÈÕÅû¶ÁËÒÁÀÊÍÅ»ïMuddyWaterÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄÏêÇé¡£¡£¡£¡£¡£¡£¡£¡£Õâ´Î»î¶¯ÖØÒªÕë¶ÔÍÁ¶úÆäºÍ°¢À­²®°ëµº£¬£¬£¬£¬ £¬£¬£¬¹¥»÷ÕßʹÓô¹µöÓʼþ·Ö·¢´øÓжñÒâÈí¼þµÄÎĵµ£¬£¬£¬£¬ £¬£¬£¬²¢×°ÖûùÓÚWindows¾ç±¾Îļþ (WSF) µÄÔ¶³Ì½Ó¼ûľÂíSloughRAT£¨±ðÃûCanopy£©¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±»¹·¢ÏÖÁËÁí±í2¸ö»ùÓھ籾µÄÖ²È뷨ʽ£¬£¬£¬£¬ £¬£¬£¬Ò»¸öÊÇÓÃVisual Basic±àдµÄ£¬£¬£¬£¬ £¬£¬£¬ÁíÒ»¸öÊÇÓÃJavaScript±àÂëµÄ£¬£¬£¬£¬ £¬£¬£¬ËüÃǶ¼ÓÃÓÚÔÚÖ¸±êÖ÷»ú¸ßµÍÔØºÍÖ´ÐжñÒâºÅÁî¡£¡£¡£¡£¡£¡£¡£¡£


https://blog.talosintelligence.com/2022/03/iranian-supergroup-muddywater.html


ASEC·¢ÏÖ¼Ù×°³ÉValorantÎè±×Æ÷·Ö·¢RedLineµÄ»î¶¯


3ÔÂ11ÈÕ£¬£¬£¬£¬ £¬£¬£¬ASEC·ÖÎöÍÅ¶Ó³ÆÆä·¢ÏÖÁËÒ»¸öͨ¹ýYouTube·Ö·¢ÐÅÏ¢ÇÔÈ¡·¨Ê½RedLineµÄ»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß½«¶ñÒâÈí¼þ¼Ù×°³ÉValorantÎè±×Æ÷£¬£¬£¬£¬ £¬£¬£¬²¢ÉÏ´«ÁËÓÎÏ·ÊÓÆµÒÔ¼°¸ÃÎè±×Æ÷µÄÏÂÔØÁ´½Ó¡£¡£¡£¡£¡£¡£¡£¡£ValorantÊÇÒ»¿îºÏÓÃÓÚWindowsµÄÃâ·ÑµÚÒ»È˳ÆÉä»÷ÓÎÏ·£¬£¬£¬£¬ £¬£¬£¬¸ÃÎè±×Æ÷Ðû³ÆÊÇÒ»¸ö×Ô¶¯¶Ô×¼¹¤¾ß¡£¡£¡£¡£¡£¡£¡£¡£Óû§µã»÷ÏÂÔØºó»á±»³Á¶¨Ïòµ½anonfiles²¢ÏÂÔØÒ»¸öRARÎļþ£¬£¬£¬£¬ £¬£¬£¬ÆäÖÐÔ̺¬Cheat installer.exe£¬£¬£¬£¬ £¬£¬£¬¸ÃÎļþÏÖʵÉÏÊÇRedLineµÄ¸±±¾¡£¡£¡£¡£¡£¡£¡£¡£


https://asec.ahnlab.com/en/32499/


×êÑÐÍÅ¶Ó°ä²¼ÒøÐÐľÂíLampion¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨


ýÌå3ÔÂ13ÈÕ±¨Â·£¬£¬£¬£¬ £¬£¬£¬seguranca×êÑÐÍŶӷ¢ÏÖ½üÆÚÒøÐÐľÂíLampionµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£Lampion×Ô2019ÄêÆðÍ·»îÔ¾£¬£¬£¬£¬ £¬£¬£¬ÖØÒªÊ¹ÓÃÆÏÌÑÑÀµ±¾Ö²ÆÕþºÍ˰Îñ´¹µöÓʼþÔÚÖ¸±êϵͳÖÐÏÂÔØ¼ÓÔØ·¨Ê½£¨VBSÎļþ£©¡£¡£¡£¡£¡£¡£¡£¡£Õâ´Î»î¶¯µÄ¶ñÒâÈí¼þTTP¼°ÆäÖ°ÄÜÓë֮ǰÀàËÆ£¬£¬£¬£¬ £¬£¬£¬µ«Ä¾Âí¼ÓÔØ·¨Ê½´æÔÚÏÔÖø²î¾à¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß½«À¬»øÎļþµÄ´óÓ×À©´óµ½56MBÓÒ£¬£¬£¬£¬ £¬£¬£¬ÒÔÈÆ¹ý¼ì²â£¨2019Äê½öΪ13.20KB£©£¬£¬£¬£¬ £¬£¬£¬»¹É¾³ýÁËVBSÎļþÖÐ31.7MBÎÞÓôúÂë¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬ £¬£¬£¬LampionÔÚ³¬¹ýÁ½ÄêµÄ¹¦·òÖÐʹÓÃÁËλÓÚ¶íÂÞ˹µÄͳһ¸öC2·þÎñÆ÷¡£¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/128975/malware/hidden-c2-lampion-trojan-release-212.html


Avast°ä²¼¶ñÒâÈí¼þRaccoon StealerµÄ·ÖÎö»ã±¨


3ÔÂ9ÈÕ£¬£¬£¬£¬ £¬£¬£¬Avast°ä²¼Raccoon StealerµÄ¼¼Êõ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÓÚ2019Äê4Ô³õ´Î³öÏÖ£¬£¬£¬£¬ £¬£¬£¬ÓÃÀ´ÇÔÈ¡ÃÜÂëºÍcookieµÈ¸÷ÖÖÀàÐ͵ÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬ £¬£¬£¬ËüÔÚʹÓÃTelegramÀ´´æ´¢ºÍ¸üÐÂC2µØÖ·£¬£¬£¬£¬ £¬£¬£¬ÇÒÐÂÔöÁ˶à¸ö·Ö·¢Çþ·¡£¡£¡£¡£¡£¡£¡£¡£³ýÁËʹÓÃ2¸ö¼ÓÔØ·¨Ê½Buer LoaderºÍGCleanerÖ®±í£¬£¬£¬£¬ £¬£¬£¬»¹Í¨¹ýÓÎÏ·Îè±×Æ÷¡¢ÆÆ½âÈí¼þ²¹¶¡µÈÈí¼þ½øÐд«²¼¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬ £¬£¬£¬¹¥»÷Õß»¹ÀûÓÃThemidaµÈ´ò°ü·¨Ê½À´Èƹý¼ì²â£¬£¬£¬£¬ £¬£¬£¬¼ì²âµ½µÄ²¿ÃÅÑù±¾±»Í³Ò»¸ö´ò°ü·¨Ê½´ò°üÁ˳¬¹ý5´Î¡£¡£¡£¡£¡£¡£¡£¡£


https://decoded.avast.io/vladimirmartyanov/raccoon-stealer-trash-panda-abuses-telegram/


LinuxµÄnetfilter×é¼þÖÐÔ½½çдÈë·ì϶CVE-2022-25636


¾Ý3ÔÂ14ÈÕ±¨Â·£¬£¬£¬£¬ £¬£¬£¬Capsule8×êÑÐÈËÔ±·¢ÏÖÁËLinuxÄÚºËÖÐnetfilter×Ó×é¼þÖеĶÑÔ½½çдÈë·ì϶£¨CVE-2022-25636£©¡£¡£¡£¡£¡£¡£¡£¡£¸Ã·ì϶ÊÇÓÉÓÚ¶Ô¿ò¼ÜÓ²¼þÐ¶ÔØÖ°ÄܵĴ¦ÖÃÃýÎóµ¼ÖµÄ£¬£¬£¬£¬ £¬£¬£¬±¾µØ¹¥»÷Õ߿ɽ«Æä±øÆ÷»¯£¬£¬£¬£¬ £¬£¬£¬µ¼ÖÂDoS»òÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£Red HatÔÚ2ÔÂ22ÈÕ°ä²¼²¼¸æ°µÊ¾£¬£¬£¬£¬ £¬£¬£¬´Ë·ì϶¿Éµ¼ÖÂϵͳ±ÀÀ£»£»£»£»£»£»òȨÏÞÌáÉý£¬£¬£¬£¬ £¬£¬£¬²¢ÌṩÁË»º½â´ëÊ©¡£¡£¡£¡£¡£¡£¡£¡£Debian¡¢Oracle Linux¡¢SUSEºÍUbuntuÒ²°ä²¼ÁËÀàËÆµÄ¹«¸æ¡£¡£¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2022/03/new-linux-bug-in-netfilter-firewall.html



°²È«¹¤¾ß


GoodHound


ʹÓà Sharphound¡¢Bloodhound ºÍ Neo4j ÌìÉú¿É²Ù×÷µÄ¹¥»÷õè¾¶ÁбíÒÔ½øÐÐÓÐÕë¶ÔÐԵIJ¹¾È¡£¡£¡£¡£¡£¡£¡£¡£


https://github.com/idnahacks/GoodHound


Dome


×ÓÓòö¾Ù¹¤¾ß£¬£¬£¬£¬ £¬£¬£¬ËüÄܹ»½øÐÐ×Ô¶¯ºÍ/»ò±»¶¯É¨ÃèÒÔ»ñÈ¡×ÓÓò²¢ËÑË÷Ê¢ÅüÍ·¿Ú¡£¡£¡£¡£¡£¡£¡£¡£


https://github.com/v4d1/Dome


BlueTeam.Lab


¸ÃÏîÄ¿Ô̺¬Ò»×é Terraform ºÍ Ansible ¾ç±¾£¬£¬£¬£¬ £¬£¬£¬ÓÃÓÚ´´½¨Ð­µ÷µÄ BlueTeam Lab¡£¡£¡£¡£¡£¡£¡£¡£


https://github.com/op7ic/BlueTeam.Lab


factual-rules-generator


ÊÇÒ»¸ö¿ªÔ´ÏîÄ¿£¬£¬£¬£¬ £¬£¬£¬Ö¼ÔÚ´ÓÔÚÔËÐеIJÙ×÷ϵͳÌìÉúÓйØÒÑ×°ÖÃÈí¼þµÄYARA ¹æ¶¨¡£¡£¡£¡£¡£¡£¡£¡£


https://github.com/CIRCL/factual-rules-generator



°²È«·ÖÎö


²éÕÒä¯ÀÀÆ÷É쵀 WhatsApp Web ´úÂëÊÇ·ñ±»ÈëÇÖ


https://thehackernews.com/2022/03/heres-how-to-find-if-whatsapp-web-code.html


DuckDuckGo ½«Ðû´«¶íÂÞ˹µÄÍøÕ¾½µ¼¶


https://www.bleepingcomputer.com/news/technology/duckduckgo-down-ranks-sites-spreading-russian-propaganda/


¹È¸èÊÔͼڹÊÍ Chrome ÁãÈÕ·ì϶ÀûÓõļ¤Ôö


https://www.securityweek.com/google-attempts-explain-surge-chrome-zero-day-exploitation


VPNÌṩÉÌÔÚ±»µçÓ°ÔìÆ¬³§¸æ×´ºó²»ÈÝBitTorrent


https://www.bleepingcomputer.com/news/security/vpn-provider-bans-bittorrent-after-getting-sued-by-film-studios/


Link11 µÄРDDoS »ã±¨


https://www.darkreading.com/attacks-breaches/the-fight-against-the-hydra-new-ddos-report-from-link11-


HBO ÒòÓë Facebook ¹²ÏíÊÜ»§Êý¾Ý¶ø±»¸æ×´


https://blog.malwarebytes.com/privacy-2/2022/03/hbo-sued-for-sharing-subscriber-data-with-facebook/