Google°ä²¼12Ô·ݵÄAndroid¸üÐÂ×ܼƽ¨¸´81¸ö·ì϶

°ä²¼¹¦·ò 2022-12-08
1¡¢Google°ä²¼12Ô·ݵÄAndroid¸üÐÂ×ܼƽ¨¸´81¸ö·ì϶

12ÔÂ5ÈÕ£¬ £¬£¬£¬£¬£¬£¬£¬Google°ä²¼ÁËAndroid 12Ô·ݵݲȫ¸üУ¬ £¬£¬£¬£¬£¬£¬£¬×ܼƽ¨¸´81¸ö·ì϶¡£¡£¡£¡£¡£¡£¡£¡£ÆäÖнÏΪÑϳÁµÄÊÇAndroid FrameworkÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2022-20472ºÍCVE-2022-20473£©¡¢Android ϵͳÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2022-20411£©ºÍAndroid ϵͳÖеÄÐÅϢй¶·ì϶£¨CVE-2022-20498£©¡£¡£¡£¡£¡£¡£¡£¡£ÆäÓàÒѽ¨¸´µÄ·ìÏ¶Éæ¼°È¨ÏÞÌáÉý¡¢Ô¶³Ì´úÂëÖ´ÐÓ×¢ÐÅϢй¶ºÍ»Ø¾ø·þÎñµÈÎÊÌâ¡£¡£¡£¡£¡£¡£¡£¡£

https://source.android.com/docs/security/bulletin/2022-12-01

2¡¢Ó¡¶È°²È«¹«Ë¾CloudSEK³ÆÔâµ½ÁíÒ»¼Ò°²È«¹«Ë¾µÄ¹¥»÷

¾ÝýÌå12ÔÂ7ÈÕ±¨Â·£¬ £¬£¬£¬£¬£¬£¬£¬Ó¡¶ÈÍøÂ簲ȫ¹«Ë¾CloudSEK³Æ£¬ £¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓÃÆäÔ±¹¤JiraÕË»§µÄ±»µÁÍ´´¦½Ó¼ûÁËÆäConfluence·þÎñÆ÷£¬ £¬£¬£¬£¬£¬£¬£¬²¿ÃÅÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£¡£ºÚ¿ÍsedutÈç½ñ¶à¸öÂÛ̳ÉÏÏúÊÛ¶ÔCloudSekÍøÂç¡¢Xvigil¡¢´úÂë¿â¡¢µç×ÓÓʼþ¡¢JIRAºÍÉ罻ýÌåÕË»§µÄ½Ó¼ûȨÏÞ£¬ £¬£¬£¬£¬£¬£¬£¬²¢ÒÔ10000ÃÀÔª¼ÛÖµÏúÊÛCloudSEKÊý¾Ý¿â£¬ £¬£¬£¬£¬£¬£¬£¬ÒÔÿ¸ö8000ÃÀÔªµÄ¼ÛÖµÏúÊÛ´úÂë¿â¡¢Ô±¹¤ºÍ¹¤³Ì²úÆ·Îĵµ¡£¡£¡£¡£¡£¡£¡£¡£CloudSEKÒÑËø¶¨ÏÓÒÉÈËÁìÓò£¬ £¬£¬£¬£¬£¬£¬£¬Æ¾¾ÝSasi°ä²¼µÄÎÄÕ£¬ £¬£¬£¬£¬£¬£¬£¬ËûÃÇÒÉ»óÒ»¼Ò½øÐаµÍø¼à¿ØµÄ°²È«¹«Ë¾ÊÇÄ»ºóºÚÊÖ£¬ £¬£¬£¬£¬£¬£¬£¬µ«»Ø¾øÌṩÓйظù«Ë¾µÄ¾ßÌåÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£

https://www.bleepingcomputer.com/news/security/cloudsek-claims-it-was-hacked-by-another-cybersecurity-firm/

3¡¢Òò¹©¸øÉ̱»¹¥»÷±ÈÀûʱ°²ÌØÎÀÆÕÊеÄÊÐÕþϵͳ̱»¾

ýÌå12ÔÂ6Èճƣ¬ £¬£¬£¬£¬£¬£¬£¬Îª±ÈÀûʱ°²ÌØÎÀÆÕÊÐÌṩÖÎÀíÈí¼þµÄºÏ×÷ͬ°éDigipolisÔâµ½¹¥»÷£¬ £¬£¬£¬£¬£¬£¬£¬¸ÃÊеÄÊÐÕþϵͳ̱»¾¡£¡£¡£¡£¡£¡£¡£¡£¾ÝϤ£¬ £¬£¬£¬£¬£¬£¬£¬²¿Ãŵ绰·þÎñÎÞ·¨Ê¹Ó㬠£¬£¬£¬£¬£¬£¬£¬µç×ÓÓʼþ·þÎñÒ²³öÏÖ¹ÊÕÏ£¬ £¬£¬£¬£¬£¬£¬£¬Ô¤Ô¼ÏµÍ³Ò²±»¹Ø¹Øµ¼Ö¾ÓÃñÎÞ·¨ÁìÈ¡Éí·ÝÖ¤£¬ £¬£¬£¬£¬£¬£¬£¬¾¯Ô±ºÍÏû·À²¿ÃÅÒ²Êܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£¡£¡£µ÷²éÔÚ½øÐÐÖУ¬ £¬£¬£¬£¬£¬£¬£¬ÉÙÁ¿¿ÉÓõÄÐÅÏ¢Åú×¢ÕâÊÇÒ»´ÎÀÕË÷¹¥»÷£¬ £¬£¬£¬£¬£¬£¬£¬µ«¹¥»÷ÕßÉí·ÝÉÐδÅû¶¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°»¹²»Ã÷ÏÔ°²ÌØÎÀÆÕµÄϵͳºÎʱÄÜÁ¦¸´Ô­Õý³£ÔËÐУ¬ £¬£¬£¬£¬£¬£¬£¬¸ÃÊÐÊг¤°µÊ¾£¬ £¬£¬£¬£¬£¬£¬£¬Ó°Ïì¿ÉÄÜ»á³ÖÐøµ½12Ôµס£¡£¡£¡£¡£¡£¡£¡£

https://www.bleepingcomputer.com/news/security/antwerps-city-services-down-after-hackers-attack-digital-partner/

4¡¢Î¢ÈíÅû¶DEV-0139Õë¶Ô¼ÓÃÜÇ®±ÒµÄ¹¥»÷»î¶¯ÏêÇé


΢ÈíÔÚ12ÔÂ6ÈÕÅû¶ÁËDEV-0139ÀûÓÃTelegram̸Ìì×éÕë¶Ô¼ÓÃÜÇ®±ÒͶ×ʹ«Ë¾µÄÏêÇé¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÊ×ÏȲÎÓëÁËÍÆ½øVIP¿Í»§ºÍ¼ÓÃÜÇ®±ÒÂòÂôƽ̨֮¼ä»¥»»µÄTelegramȺ£¬ £¬£¬£¬£¬£¬£¬£¬²¢´Ó³ÉÔ±ÖÐÈ·¶¨¹¥»÷µÄÖ¸±ê¡£¡£¡£¡£¡£¡£¡£¡£¶øºó¼ÙÒâÁíÒ»¼Ò¼ÓÃÜÇ®±ÒͶ×ʹ«Ë¾£¬ £¬£¬£¬£¬£¬£¬£¬ÓÚ2022Äê10ÔÂÔ¼ÇëÖ¸±ê²ÎÓëÁíÒ»¸ö̸Ìì×飬 £¬£¬£¬£¬£¬£¬£¬ÒªÇóËûÃǼÓÃÜÇ®±ÒÂòÂôƽ̨µÄÓöȽṹÌṩ·´À¡¡£¡£¡£¡£¡£¡£¡£¡£ÔÚ»ñµÃÖ¸±êµÄÐÅÀµºó£¬ £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õ߻ᷢËͶñÒâExcel±í¸ñ¡£¡£¡£¡£¡£¡£¡£¡£Ö¸±ê´ò¿ªÎĵµ²¢ÆôÓúêºó£¬ £¬£¬£¬£¬£¬£¬£¬»á×°ÖÃÒ»¸ö¶ñÒâDLL¡¢XOR±àÂëºóÃż°ÓÃÓÚ²à¼ÓÔØDLLµÄWindows¿ÉÖ´ÐÐÎļþ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.microsoft.com/en-us/security/blog/2022/12/06/dev-0139-launches-targeted-attacks-against-the-cryptocurrency-industry/

5¡¢Unit 42°ä²¼Vice SocietyÖØÒªÕë¶Ô½ÌÓýÐÐÒµµÄ·ÖÎö»ã±¨

Unit 42ÔÚ12ÔÂ6ÈÕ°ä²¼Á˹ØÓÚVice SocietyÖØÒªÕë¶Ô½ÌÓýÐÐÒµµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£¡£×Ô2021ÄêÆðÍ·ÔËÓªÒÔÀ´£¬ £¬£¬£¬£¬£¬£¬£¬Vice Society×ܹ²Ó°ÏìÁË100¶à¸ö×éÖ¯¡£¡£¡£¡£¡£¡£¡£¡£Êý¾ÝÅú×¢£¬ £¬£¬£¬£¬£¬£¬£¬½ñÄêVice Society¶Ô½ÌÓýÐÐÒµ×éÖ¯µÄÓ°Ïì×î´ó£¬ £¬£¬£¬£¬£¬£¬£¬ÆäÍøÕ¾ÉÏÁгöÁËÖÁÉÙ33¼Ò±»Ï°È¾µÄ½ÌÓý»ú¹¹¡£¡£¡£¡£¡£¡£¡£¡£µ«ÊdzýÁ˽ÌÓý×éÖ¯£¬ £¬£¬£¬£¬£¬£¬£¬¹¥»÷ÍÅ»ïÒ²Õë¶Ô¹Ø¼üµÄ»ù´¡ÉèÖ´ÐÐÒµ£¬ £¬£¬£¬£¬£¬£¬£¬ÈçÒ½ÁƱ£½¡¡¢µ±¾Ö»ú¹¹ºÍÔì×÷ÐÐÒµµÈ¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÍÅ»ïϰȾµÄ×éÖ¯±é²¼¸÷¸öµØÓò£¬ £¬£¬£¬£¬£¬£¬£¬ÆäÖÐÃÀ¹úϰȾÈËÊý×î¶à£¬ £¬£¬£¬£¬£¬£¬£¬Æä´ÎÊÇÓ¢¹ú¡¢Î÷°àÑÀºÍ·¨¹úµÈ¡£¡£¡£¡£¡£¡£¡£¡£

https://unit42.paloaltonetworks.com/vice-society-targets-education-sector/

6¡¢Fortinet°ä²¼¹ØÓÚн©Ê¬ÍøÂçZerobotµÄ·ÖÎö»ã±¨

12ÔÂ6ÈÕ£¬ £¬£¬£¬£¬£¬£¬£¬Fortinet°ä²¼ÁËÐÂÐÍ»ùÓÚGoµÄ½©Ê¬ÍøÂçZerobotµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£¡£ZerobotÄܹ»É¨ÃèÍøÂç²¢×ÔÎÒ´«²¼µ½ÏàÁÚÉ豸£¬ £¬£¬£¬£¬£¬£¬£¬ÒÔ¼°ÔÚWindows(CMD)»òLinux(Bash)ÉÏÔËÐкÅÁî¡£¡£¡£¡£¡£¡£¡£¡£ËüÕûºÏÁË21¸ö·ì϶£¬ £¬£¬£¬£¬£¬£¬£¬ÆäÖÐÉæ¼°F5 BIG-IP¡¢Zyxel·À»ðǽ¡¢Totolink·ÓÉÆ÷¡¢D-Link·ÓÉÆ÷ÒÔ¼°HikvisionÉãÏñÓŵȣ¬ £¬£¬£¬£¬£¬£¬£¬À´»ñÈ¡É豸µÄ½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÖ¸±êÖа²Éíºó£¬ £¬£¬£¬£¬£¬£¬£¬Zerobot»áÉèÖõ½C2·þÎñÆ÷µÄWebSocketÏνӣ¬ £¬£¬£¬£¬£¬£¬£¬²¢·¢ËÍÓйØÖ¸±êµÄ¸ù»ùÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬ £¬£¬£¬£¬£¬£¬£¬ZerobotÖØÒªÓÃÓÚÖ´ÐÐDDoS¹¥»÷£¬ £¬£¬£¬£¬£¬£¬£¬µ«ÊÇËüÒ²Äܹ»ÓÃ×÷³õʼ½Ó¼û¡£¡£¡£¡£¡£¡£¡£¡£

https://www.fortinet.com/blog/threat-research/zerobot-new-go-based-botnet-campaign-targets-multiple-vulnerabilities