McAfee°ä²¼2020ÄêÍøÂçÍþвÇ÷ÏòÔ¤²â»ã±¨£»ÄªË¹¿Æ³ÇÊÐ¼à¿ØÏµÍ³½Ó¼ûȨÏÞÔÚ°µÍøÏúÊÛ

°ä²¼¹¦·ò 2019-12-09


1.×êÑÐÍŶӰ䲼ÀÕË÷Èí¼þ¼Ò×åLooCipherµÄ·ÖÎö»ã±¨


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


LooCipherÊǽñÄêгöÏÖµÄÒ»¸öÀÕË÷Èí¼þ¼Ò×壬ƾ¾ÝMcAfeeµÄ·ÖÎö»ã±¨£¬¸ÃÀÕË÷Èí¼þÖØÒªÍ¨¹ýDOCÎļþ´«²¼¡£ÓëÆäËü¶ñÒâÈí¼þÏà±È£¬¸ÃDOCÎļþÏ൱´Ö²Ú£¬Ã»ÓÐѡȡÈκÎÉç»á¹¤³Ì¼¼Êõ£¬ÀïÃæµÄÄÚÈÝÖ»ÓÐÒ»¾ä»°¡°ÆôÓúêÀ´²é¿´Îĵµ¡±¡£¸Ã¶ñÒâºê»á´ÓÔ¶³Ì·þÎñÆ÷ÏÂÔØLooCipher¡£LooCipherÔÚ¼ÓÃܹý³ÌÖÐʹÓÃAES-ECB¼ÓÃÜËã·¨£¬²¢ÇÒËùÓÐÎļþµÄÃÜÔ¿¾ùÒ»Ñù£¬ÆäÖ¸±êÎļþµÄÀ©´óÃûÁÐ±í±»Ó²±àÂëÔÚ¶þ½øÔìÎļþÖС£LooCipherµÄBTCµØÖ·ÖÐÉÐûÓÐÈκÎÂòÂô£¬ÕâÅú×¢Æä×÷ÕßÉÐδ´ÓÖлñÀû¡£¾ßÌåIoCÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£


  Ô­ÎÄÁ´½Ó£º

https://securingtomorrow.mcafee.com/blogs/other-blogs/mcafee-labs/analysis-of-loocipher-a-new-ransomware-family-observed-this-year/


2.AvastÅûÂ¶ÖØÒªÕë¶Ô°ÍÎ÷¹«ÃñµÄÍøÂç´¹µö»î¶¯


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


11ÔÂÏÂÑ®Avast×êÑÐÍŶӷ¢ÏÖÁËÒ»¸öÀûÓðÍÎ÷Óû§µÄ·ÓÉÆ÷½«Æä³Á¶¨Ïòµ½´¹µöÍøÕ¾µÄ¹¥»÷»î¶¯¡£ÕâÐ©ÍøÕ¾¼Ù×°³ÉÒøÐÓ×¢ÐÂÎÅÍøÕ¾ºÍNetflixµÄ¹ÙÍøµÈ¡£ÕâÖÖ¹¥»÷ͨ³£ÔÚÓû§½Ó¼û´øÓжñÒâ¸æ°×µÄÊÜÏ°È¾ÍøÕ¾Ê±Æô¶¯£¬Óû§½«±»×Ô¶¯³Á¶¨Ïòµ½Á½¸ö·ÓÉÆ÷EKµÄ׎ҳÖУ¬´Ó¶øÔÚºó¶ÜÎÞÐèÓû§¹ýÎʾÍÌáÒé¶Ô·ÓÉÆ÷µÄ¹¥»÷¡£¶øºó£¬Óû§µÄ·ÓÉÆ÷½«Æä´ÓÕæÊµµÄÒµÎñÒ³Ãæ³Á¶¨Ïòµ½ÀàËÆµÄÍøÂç´¹µöÕ¾µã¡£11ÔÂ25ÈÕAvast×èÖ¹µÄÁ½¸ö´¹µöÍøÕ¾¾ÍϰȾÁ˽ü5500¸öÓû§µÄ·ÓÉÆ÷¡£


 Ô­ÎÄÁ´½Ó£º

https://blog.avast.com/avast-threat-labs-uncovers-brazil-cyberattacks


3.ÐéαVPNÍøÕ¾ÏòÓû§ÍÆËÍVidarºÍCryptBotľÂí


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


BleepingComputer·¢ÏÖÒ»¸ö¼Ù×°³ÉInter VPNÍÆ¹ãÍøÕ¾µÄÐéαվµã£¬¸ÃÍøÕ¾ÖØÒª·Ö·¢ÐÅÏ¢ÇÔȡľÂíVidarºÍCryptBot¡£¸ÃÍøÕ¾ÏÔʾµÄVPN¿Í»§¶ËͼƬÏÖʵÉÏÊǺϷ¨Èí¼þVPN ProµÄͼƬ£¬ÆäÏÂÔØµÄ·¨Ê½½«Ê¹ÓÃAutoHotKey¾ç±¾Ïνӵ½iplogger.org£¬¶øºóƾ¾Ý¸ÃÍøÕ¾ÉÏÈ·µ±Ç°·Ö·¢»î¶¯´Óbitbucket.org ÏÂÔØVidarºÍCryptBot¿ÉÖ´ÐÐÎļþ¡£ÕâЩľÂí¿ÉÇÔÈ¡Óû§µÄä¯ÀÀÆ÷Í´´¦¡¢Cookie¡¢×ÀÃæ½ØÆÁ¡¢Îı¾ÎļþÒÔ¼°¼ÓÃÜÇ®±ÒÇ®°üµÈ¡£ÓÉÓÚÏÂÔØµÄ×°Öðü´ò°üÁ˺Ϸ¨µÄVPN ProÈí¼þ£¬Òò¶øÓû§¿ÉÄÜÄÑÒÔ·¢´Ë¿Ìºó¶ÜÔËÐеÄľÂí¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fake-vpn-site-pushes-cryptbot-and-vidar-info-stealing-trojans/


4.×êÑл㱨³ÆÓ¢¹úÐÅÓþ¿¨Ú²Æ­ËðʧռÕû¸öÅ·ÖÞµÄÒ»°ë


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ƾ¾ÝFICOµÄ×îе÷²éÁ˾Ö£¬ÓÉÓÚÊý¾Ýй¶ºÍÔÚÏßڲƭÊÂÎñµÄ¼¤Ôö£¬Ó¢¹úÐÅÓþ¿¨Ú²Æ­Ôì³ÉµÄËðʧ´Ë¿ÌÕ¼Õû¸öÅ·ÖÞµÄÒ»°ë¡£Æ¾¾Ý¸Ã¹«Ë¾°ä²¼µÄ»¥¶¯Ê½¡¶Å·ÖÞڲƭµØÍ¼¡·£¬2018ÄêÓ¢¹úÐÅÓþ¿¨Ú²Æ­Ëðʧ´ïµ½ÁË´´¼Í¼µÄ6.71ÒÚÓ¢°÷£¬±ÈÉÏÒ»ÄêÔö³¤19£¥¡£¸ÃÊý×ÖÏÕЩռµØÍ¼ÉÏÅ·ÖÞ19¸ö¹ú¶È×ܶî16ÒÚÅ·Ôª£¨14ÒÚÓ¢°÷£©µÄÒ»°ë¡£Ó¢¹úµÄ´ó²¿·ÔìÛÕ©Ëðʧ£¨5.064ÒÚÓ¢°÷£©À´×ÔÎÞ¿¨Ú²Æ­£¨CNP£©Çþ·£¬ÕâЩÇþ·Èç½ñ¶¼±»ÔÚÏßڲƭËù½ÚÔì¡£


 Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/uk-card-fraud-losses/


5.McAfee°ä²¼2020ÄêÍøÂçÍþвÇ÷ÏòÔ¤²â»ã±¨


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


McAfee¶Ô2020ÄêµÄÍþвÇ÷ÏòÔ¤²âÔ̺¬£º¼¼Êõ½ÏÈõµÄ¹¥»÷Õß½«¸ü¶àµØÑ¡È¡Deepfake¼ÓÇ¿ÆäÐÅÏ¢Õ½µÄÄÜÁ¦£¬ÀýÈçαÔìÆóÒµCEOµÄÊÓÆµ/ÒôƵÉêÃ÷À´°Ñ³Ö¹É¼Û»òÒý·¢ÆäËü½ðÈÚ·¸×ÀûÓÃDeepfakeÀ´ÈƹýÈËÁ³¼ø±ð£»ÀÕË÷Èí¼þ¹¥»÷½«ÑݱäΪ˫½×¶Î¹¥»÷£¬ÀýÈçÔÚÀÕË÷Èí¼þ¹¥»÷ÏÖʵ²úÉúǰװÖöñÒâ¿ó¹¤»òÇÔÈ¡ÆóÒµ»úÃÜÐÅÏ¢£»API½«³ÉÎªÔÆÔ­ÉúÍþвµÄ×îÓÄ΢»·½Ú£»Ëæ×ÅÈÝÆ÷»¯¹¤×÷¸ºÔصÄÔö³¤µ¼Ö°²È«½ÚÔìÏò¡°×óÒÆ¡±£¬DevSecOps½«»áÔ½·¢Í¹Æð¡£


 Ô­ÎÄÁ´½Ó£º

https://securingtomorrow.mcafee.com/blogs/other-blogs/mcafee-labs/mcafee-labs-2020-threats-predictions-report/


6.Ī˹¿Æ³ÇÊÐ¼à¿ØÏµÍ³½Ó¼ûȨÏÞÔÚ°µÍøÏúÊÛ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


MBKh Mediaµ÷²é¼ÇÕßAndrey Kaganskikh·¢ÏÖĪ˹¿Æ³ÇÊÐ¼à¿ØÏµÍ³ºÍÃæ²¿¼ø±ðÊý¾ÝµÄ½Ó¼ûȨÏÞÔÚµØÏÂÂÛ̳ºÍ̸ÌìÊÒÖÐÏúÊÛ¡£Andrey°µÊ¾Âô·½ÊÇ·¨ÂÉÈËÔ±/µ±¾Ö¹ÙÔ±£¬Äܹ»µÇ¼Ī˹¿Æ³ÇÊмලϵͳµÄÊý¾Ý´¦Öúʹ洢¼¯³ÉÖÐÐÄ£¨YTKD£©¡£²É°ìÁËÉãÏñͷȨÏÞµÄÓû§½«»áÊÕµ½Ö¸Ïò³ÇÊÐCCTVϵͳµÄÒ»¸öÁ´½Ó£¬¸ÃÁ´½Ó¿É½Ó¼ûËùÓй«¹²ÉãÏñÍ·£¬Æä¿ÉÓù¦·òΪ5Ìì¡£´Ë±í£¬ÓµÓÐÎÞÏÞ½Ó¼ûȨÏ޵ĵǼʹ´¦¼ÛֵΪ30000¬²¼£¨470ÃÀÔª£©¡£µ÷²éÈËÔ±²âÊÔÁËÆäÕÕÆ¬£¬Âô·½·µ»ØÁË238ÕÅͼƬ£¬ÕâЩͼƬÀ´×Ô140̨ÉãÏñÍ·£¬»¹ÁгöÁË×½Äõ½µÄ¾ßÌ嵨ַºÍ¹¦·ò£¬µ«·µ»ØµÄÕÕÆ¬¶¼²»Êǵ÷²éÈËÔ±µÄ£¬Õâ¿ÉÄÜÓëÉãÏñÍ·µÄÊýÁ¿ºÍËã·¨ÓйØ£¬ÏµÍ³¶ÔÆäÃæ²¿ÌصãµÄÆÀ¹ÀÀàËÆ¶ÈΪ67%¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/moscow-cops-sell-access-to-city-cctv-facial-recognition-data/