ÅíÈø¿ÆÀ­Êб»ÀÕË÷Èí¼þMaze¹¥»÷ÕßÀÕË÷100ÍòÃÀÔª£»£»£»£»AdobeÐû²¼12ÔÂÇå¾²¸üУ¬£¬£¬ÐÞ¸´17¸öÒªº¦´úÂëÖ´ÐÐÎó²î

Ðû²¼Ê±¼ä 2019-12-12


1.Áè¼Ý46ÍòÕÅÍÁ¶úÆäÒøÐп¨ÐÅÏ¢ÔÚ°µÍøJoker's StashÉϳöÊÛ


ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


Group-IBÇå¾²Ñо¿Ö°Ô±·¢Ã÷ÓÐ463378ÕÅÍÁ¶úÆäÒøÐп¨ÐÅÏ¢ÔÚ°µÍøJoker's StashÉϳöÊÛ£¬£¬£¬ÕâÊǽüÄêÀ´¼Í¼µÄ×î´óµÄÍÁ¶úÆäÒøÐп¨ÐÅϢת´¢¡£¡£¡£¡£¸ÃÊý¾ÝÔÚ10ÔÂ28ÈÕÖÁ11ÔÂ27ÈÕʱ´ú·ÖËÄÅúÐû²¼£¨30K+30K+190K+205K£©£¬£¬£¬Ô¤¼Æ¹¥»÷Õß׬ǮÁè¼Ý50ÍòÃÀÔª¡£¡£¡£¡£Æ¾Ö¤Group-IBµÄ˵·¨£¬£¬£¬ÕâÅú¿¨Êý¾Ý¼È°üÀ¨½è¼Ç¿¨ÓÖ°üÀ¨ÐÅÓÿ¨£¬£¬£¬²¢ÇÒÕâЩ¿¨À´×Ô²î±ðµÄÍÁ¶úÆäÒøÐУ¬£¬£¬ÕâÅú×¢Êý¾Ý¿ÉÄÜÀ´×ÔÖ§¸¶´¦Öóͷ£ÏµÍ³£¬£¬£¬¶ø²»Êǵ¥¸öÒøÐеÄϵͳ±»ºÚ¡£¡£¡£¡£


  Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/455000-turkish-card-details-put-up-for-sale-web-skimmers-suspected/


2.iPR Software 1TBÊý¾ÝÔÚÍøÉÏ̻¶£¬£¬£¬°üÀ¨´ó×Ú¿Í»§Òþ˽


ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


UpGuardÇå¾²Ñо¿Ö°Ô±·¢Ã÷iPR Software¹«Ë¾µÄÒ»¸öAmazon S3´æ´¢Í°¿É¹ûÕæ»á¼û£¬£¬£¬µ¼ÖÂÊýǧÃûÓû§µÄÐÅϢ̻¶¡£¡£¡£¡£¸ÃÊý¾Ý¿âÖаüÀ¨47.7Íò¸öµç×ÓÓʼþµØµãºÍÔ¼3.5Íò¸ö¹þÏ£ÃÜÂ룬£¬£¬Êý¾Ý¿âµÄ×ܾÞϸ´ï1TB£¬£¬£¬°üÀ¨ÓªÒµÊµÌåÕÊ»§ÐÅÏ¢¡¢ÎĵµºÍϵͳÖÎÀíÆ¾Ö¤µÈ¡£¡£¡£¡£ÆäÖÐһЩÎĵµÎªiPR¿ª·¢Ö°Ô±Îĵµ¡¢¿Í»§ÓªÏúÖÊÁÏÒÔ¼°Google¡¢TwitterºÍÒ»¸öMongoDBÍйÜЧÀÍÉÌÕË»§µÄƾ֤¡£¡£¡£¡£iPR SoftwareÓÚ10ÔÂ24ÈÕÊÕµ½Í¨Öª£¬£¬£¬²¢ÔÚ11ÔÂ26ÈÕɾ³ýÁ˸ÃÊý¾Ý¿âµÄ»á¼ûȨÏÞ¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/thousands-ipr-software-users-exposed-amazon-s3-bucket


3.Çå¾²³§ÉÌ·¢Ã÷Êý°Ù¸ö¼ÙЬÏúÊÛÍøÕ¾Ñ¬È¾Magecart¶ñÒâ¾ç±¾


ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


Malwarebytes Labs·¢Ã÷ÊýÒ԰ټƵļÙЬÏúÊÛÍøÕ¾Ñ¬È¾ÁËMagecart¶ñÒâ¾ç±¾£¬£¬£¬Õâ¸øÓû§´øÀ´ÁËË«ÖØÎ£º¦¡£¡£¡£¡£ÕâЩڲƭÐÔÍøÕ¾Ö÷ÒªÔÚÌåÓýºÍ½¡ÉíÂÛ̳ÉÏͨ¹ýÀ¬»øÐÅÏ¢ÓÕʹÓû§»á¼ûÊÛ¼ÙÍøÕ¾£¬£¬£¬µ±Óû§ÉÏÆäʱ£¬£¬£¬²»µ«¿ÉÄÜÂòµ½¼ÙЬ£¬£¬£¬»¹»áʹСÎÒ˽¼Ò²ÆÎñÊý¾Ý±»ÇÔ¡£¡£¡£¡£¼òªµÄ¼ì²âÅú×¢£¬£¬£¬ÕâÐ©ÍøÕ¾¶¼ÔÚʹÓÃÏàͬµÄ¹ýʱÈí¼þ£¬£¬£¬°üÀ¨1.9.4.2ÒÔϰ汾µÄMagentoºÍ5.6.40ÒÔϰ汾µÄPHP¡£¡£¡£¡£¶ñÒâ¾ç±¾¿ÉÄÜÖ»ÊǶÔÕâЩIP¹æÄ£¾ÙÐÐÁËɨÃ貢ʹÓÃÏàͬµÄÎó²îѬȾÿһ¸öÕ¾µã¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://blog.malwarebytes.com/threat-analysis/2019/12/hundreds-of-counterfeit-online-shoe-stores-injected-with-credit-card-skimmer/


4.AdobeÐû²¼12ÔÂÇå¾²¸üУ¬£¬£¬ÐÞ¸´17¸öÒªº¦´úÂëÖ´ÐÐÎó²î


ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


AdobeÔÚ12ÔÂÇå¾²¸üÐÂÖÐÐÞ¸´ÁËPhotoshop¡¢ReaderºÍBracketsÖеÄ17¸öÒªº¦´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£ÆäÖÐPhotoshop CCÖÐÐÞ¸´ÁËÄÚ´æËð»µÎó²îCVE-2019-8253ºÍCVE-2019-8254£¬£¬£¬ÕâЩÎó²î¿Éµ¼ÖÂí§Òâ´úÂëÖ´ÐУ¬£¬£¬ÊÜÓ°ÏìµÄ°æ±¾°üÀ¨WindowsºÍmacOSÉϵÄ20.0.7¼°¸üÔç°æ±¾ºÍ21.0.1¼°¸üÔç°æ±¾¡£¡£¡£¡£Adobe AcrobatºÍReader£¨2015¡¢2017ºÍDC£©ÖÐÐÞ¸´ÁË14¸öÎó²î£¬£¬£¬±ðµÄAdobe»¹ÐÞ¸´Á˿ɵ¼ÖÂÊý¾Ýй¶µÄ6¸öÔ½½ç¶ÁÈ¡Îó²î£¨£¨CVE-2019-16449¡¢CVE-2019-16456¡¢CVE-2019-16457¡¢CVE-2019-16458¡¢CVE-2019-16461¡¢CVE-2019-16465£©¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/adobe-patches-17-critical-code-execution-bugs-in-photoshop-reader-brackets/


5.Ñо¿Ö°Ô±·¢Ã÷TrickbotÓ볯ÏÊAPT×éÖ¯Lazarus±£´æ¹ØÁª


ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


Ñо¿Ö°Ô±·¢Ã÷Trickbot±³ºóµÄ·¸·¨×éÖ¯Ó볯ÏÊAPT×éÖ¯LazarusÖ®¼ä±£´æÁªÏµ£¬£¬£¬¶þÕßͨ¹ýTrickbot¿ª·¢µÄ¶àºÏÒ»¹¥»÷¿ò¼ÜAnchor¾ÙÐÐÁËÖ±½ÓµÄÏàÖú¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏִ˾ÙËÆºõÊÇAPT×éÖ¯Ê×´ÎÓë·¸·¨Èí¼þ×éÖ¯·½ÃæµÄÖ÷ҪʵÁ¦¾ÙÐнáÃË£¬£¬£¬Õâ¶ÔÃÀ¹úµÄ¹ú¼ÒÇå¾²¾ßÓÐÖØ´óÓ°Ï죬£¬£¬²¢ÇÒ¸ø³ÉΪLazarusÄ¿µÄµÄ¶¥¼¶¿ç¹ú¹«Ë¾´øÀ´Î£º¦¡£¡£¡£¡£ÏêϸÀ´Ëµ£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ÒÔǰÓëLazarus¹ØÁªµÄ¹¤¾ß¡°PowerRatankba¡±ÒÑ·Ö·¢¸øAnchor ProjectѬȾµÄÊܺ¦Õߣ¬£¬£¬²¢ÓÐÖ¤¾ÝÅú×¢¸Ã¹¤¾ßÊÇͨ¹ýAnchor Project¼ÓÔØµÄ¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://threatpost.com/lazarus-collaborates-trickbots-anchor-project/151000/


6.ÅíÈø¿ÆÀ­Êб»ÀÕË÷Èí¼þMaze¹¥»÷ÕßÀÕË÷100ÍòÃÀÔª


ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


ÀÕË÷Èí¼þMaze±³ºóµÄ¹¥»÷ÕßÉù³Æ¶Ô·ðÂÞÀï´ïÖÝÅíÈø¿ÆÀ­ÊеÄÍøÂç¹¥»÷ÈÏÕæ£¬£¬£¬µ«ÉùÃ÷ËûÃÇÓë¸ÃÊÐ×î½üµÄǹ»÷ÊÂÎñÎ޹ء£¡£¡£¡£¹¥»÷ÕßÌåÏÖËûÃǼÓÃÜÁ˸ÃÊеÄÊý¾Ý£¬£¬£¬²¢ÇÒÒªÇó100ÍòÃÀÔªµÄÊê½ð¡£¡£¡£¡£ÎªÁË֤ʵËûÃǵÄ˵·¨£¬£¬£¬¹¥»÷Õß»¹¹²ÏíÁËһЩ¾Ý³ÆÊÇ´Ó¸ÃÊÐÇÔÈ¡µÄÎļþ£¬£¬£¬µ«Ã»ÓÐ˵Ã÷ÊÇ·ñ¸ø³öÏÞÖÆÊ±¼ä»òÊǽ«Ðû²¼ÕâЩÎļþ¡£¡£¡£¡£¹¥»÷Õß»¹³ÆËûÃǾÓÐıܿªÁË911µÈ½ôÆÈЧÀÍ¡£¡£¡£¡£ÅíÈø¿ÆÀ­Êй«¹²ÐÅÏ¢¹ÙKaycee Lagarde¾Ü¾ø¶Ô´Ë¾ÙÐÐ̸ÂÛ¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/maze-ransomware-behind-pensacola-cyberattack-1m-ransom-demand/