¶íÂÞ˹Ìú·´æÔڿɽӼûÆä¼à¿ØÏµÍ³µÄ·ì϶£»Win10´ò¿ªÌض¨õè¾¶µ¼ÖÂBSOD£¬¿ÉÓÃÀ´DoS¹¥»÷

°ä²¼¹¦·ò 2021-01-18
1.¶íÂÞ˹Ìú·´æÔڿɽӼûÆä¼à¿ØÏµÍ³µÄ·ì϶


1.jpg


¶íÂÞ˹Ìú·¹«Ë¾´æÔÚ·ì϶£¬¿ÉÓÃÀ´½Ó¼ûÆä¼à¿ØÏµÍ³ºÍÄÚ²¿·þÎñ¡£¸Ã·ì϶ÊÇÓÉÓÚĬÈÏÇé¿öÏÂMikroTik·ÓÉÆ÷ÉϵÄÃÜÂëδ¸ü¸ÄËùµ¼ÖµÄ£¬ºÚ¿Í¿ÉÀûÓø÷ì϶ÔÚÒ»ÖÜÄڹعØÌú·ÉϵÄËùÓÐ¼à¿Ø£¬¶ø¸´Ô­ÏµÍ³±ØÒªÖÁÉÙÒ»¸öԵŦ·ò£¬ÆÆ·Ñ1.3ÒÚ¬²¼£¨180ÍòÃÀÔª£©¡£Ä¿Ç°£¬¸Ã·ì϶Òѱ»½¨¸´£¬µ«²»ÄÜÈ·¶¨ÊÇ·ñÓй¥»÷ÕßÀûÓÃÆä·¸·¨½Ó¼û¹ý¹«Ë¾µÄϵͳ¡£


Ô­ÎÄÁ´½Ó£º

https://www.ehackingnews.com/2021/01/hackers-accessed-thousands-of.html


2.ËÕ¸ñÀ¼»·¾³±£»¤¾ÖϰȾConti£¬²¿ÃÅÖ÷»úå´»ú


2.png


ËÕ¸ñÀ¼»·¾³±£»¤¾Ö£¨SEPA£©ÉÏÖÜËÄ֤ʵÆäÔâµ½ÁËContiÀÕË÷Èí¼þ¹¥»÷£¬²¿ÃÅÖ÷»úå´»ú¡£¹¥»÷²úÉúÔÚÊ¥µ®½ÚǰϦ£¬ÆäÁªÏµÖÐÐÄ¡¢ÄÚ²¿ÏµÍ³ºÍÄÚ²¿Í¨Ñ¶¾ùÊܵ½ÁËÓ°Ïì¡£Õâ´Î¹¥»÷й¶ÁËԼĪ1.2 GBµÄÊý¾Ý£¬Ô̺¬Ã³Ò×ÐÅÏ¢¡¢²É¹ºÐÅÏ¢¡¢ÏîÄ¿ÐÅÏ¢ºÍÔ±¹¤ÐÅÏ¢¡£´Ë±í£¬SEPA³Æ£¬Ä¿Ç°µç×ÓÓʼþ¡¢Ô±¹¤¹¦·ò±í¡¢×¨ÒµµÄ»ã±¨¹¤¾ß¡¢ÏµÍ³ºÍÊý¾Ý¿âÒÀÈ»²»³ÉÓá£Ö»¹ÜSEPA²¢Î´Ð¹Â©¹¥»÷ÕßÃû³Æ£¬µ«ContiÐû³ÆÌáÒéÁ˹¥»÷£¬²¢ÒÑÔÚÆäÍøÕ¾Éϰ䲼ÁËÇÔÈ¡µÄÊý¾ÝµÄ7£¥¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/scotland-environmental-regulator-hit-by-ongoing-ransomware-attack/


3.Åû¶·ì϶µÄÓʼþÁбíBugTraq½«ÓÚ±¾ÔÂÄ©¹Ø¹Ø


3.png


1993Äê´´½¨µÄÅû¶·ì϶µÄÓʼþÁбíBugTraq½«ÓÚ±¾ÔÂÄ©¹Ø¹Ø¡£BugTraqÊÇÍøÂ簲ȫÐÐÒµ×îÔçÖÂÁ¦ÓÚ¹«¿ªÅû¶°²È«·ì϶µÄÓʼþÁбíÖ®Ò»£¬ÌṩÁ˵ÚÒ»¸ö¼¯ÖÐʽÃÅ»§¡£¸ÃÍøÕ¾¶àÄêÀ´Ò»Ïò´¦ÓÚ˾·¨»ÒÉ«µØ´ø£¬µ±¹©¸øÉ̻ؾø½¨¸´·ì϶ʱ£¬¶ÔÓÚÅû¶·ì϶µÄºÏ·¨ÐԵĻáÉÌËÜÔìÁ˽ñÌì´óÎÞÊý·ì϶Åû¶׼Ôò¡£¸ÃÍøÕ¾µÄÏûÍöʼÓÚ2019ÄêBroadcomÊÕ¹ºSymantecʱ£¬2020Äê2ÔÂÍøÕ¾ÖÕ³¡¸üÐÂÄÚÈÝ£¬2021Äê1ÔÂ16ÈÕÍøÕ¾°ä·¢½«ÓÚ1ÔÂ31ÈչعØ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/iconic-bugtraq-security-mailing-list-shuts-down-after-27-years/


4.Win10´ò¿ªÌض¨õè¾¶µ¼ÖÂBSOD£¬¿ÉÓÃÀ´DoS¹¥»÷


4.png


×êÑÐÈËÔ±Jonas LykkegaardÅû¶ÁËWin10ÖдæÔÚ·ì϶£¬ÔÚ´ò¿ªÌض¨õ辶ʱ¿Éµ¼ÖÂBSOD¡£Lykkegaard³Æ£¬¿ª·¢ÈËÔ±ÔÚ½ÚÔį̀¶à·¸´ÓÃÆ÷Çý¶¯·¨Ê½µÄWin32É豸Ãû³Æ¿Õ¼äõè¾¶´«µÝattachÊôÐÔÒÔ½øÐÐÏνÓ£¬µ±Ã»Óд«µÝÊôÐÔʱ½«µ¼ÖÂWin10ÖеÄÀ¶ÆÁËÀ»ú£¨BSOD£©±ÀÀ£¡£¶øµÍÌØÈ¨µÄÓû§Ò²Äܹ»Ê¹ÓôËõè¾¶£¬µ¼ÖÂÍÆËã»úÖ´ÐÐÈκη¨Ê½¶¼ÈÝÒ×±ÀÀ£¡£Ä¿Ç°Éв»È·¶¨´Ë·ì϶ÊÇ·ñ¿ÉÓÃÓÚÔ¶³ÌÖ´ÐдúÂë»òÌáÉýÌØÈ¨£¬µ«¿Éͨ¹ýµ±Ç°´ó¾Ö¶ÔÍÆËã»úÌáÒéDoS¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/windows-10-bug-causes-a-bsod-crash-when-opening-a-certain-path/


5.paloalto°ä²¼2021ÄêÍøÂ簲ȫµÄÔ¤²â»ã±¨


5.png


paloalto°ä²¼ÁË2021ÄêÍøÂ簲ȫµÄÔ¤²â»ã±¨¡£»ã±¨Ö¸³ö£¬ÍøÂ簲ȫԤ²âºÍ¹æ»®±äµÃ²»³ÉÔ¤²â£»Íƶ¯Ôƽ»¸¶µÄÍøÂçºÍ°²È«ÐÔÆðͷתÐÍ£¬×ªÏò°²È«½Ó¼û·þÎñ±ßÔµ£¨SASE£©£»5G°²È«²»½öÏÞÓÚÔËÓªÉÌ£¬ÔÚ5GÉϵÄÈκÎÈ˶¼±ØÒª°ÑÎȰ²È«ÐÔ£»»úе½ø½¨½«Ô®ÊÖÍøÂç°²Õûϵͳ±äµÃÔ½·¢×Ô¶¯£¬ÔÚ¹¥»÷ÖÐ×ö³ö·´Ó³²¢²»Ðݽø½¨£¬ÒÔÔ¤·À0dayÍþв¡¢×Ô¶¯Ö´ÐÐÕ½Êõ½¨Òé²¢×Ô¶¯Ìá¸ß°²È«ÐÔ£»ÎïÁªÍø°²È«½«±ÈÒÔÍùÈκÎʱ³½¶¼³ÁÒª£»Êý¾Ý±£»¤¸üΪ¹Ø¼ü£¬µ«¿ÉÓÃÁìÓòÒ²¸ü¹ã¡£


Ô­ÎÄÁ´½Ó£º

https://blog.paloaltonetworks.com/2021/01/network-security-predictions


6.ptsecurity°ä²¼ÓйØAPT×éÖ¯WinntiµÄ·ÖÎö»ã±¨


6.png


ptsecurity°ä²¼ÁËÓйØAPT×éÖ¯WinntiµÄ·ÖÎö»ã±¨¡£×êÑÐÈËÔ±ÔÚ2020Äê5Ôµļà²âÆÚ¼ä£¬¼ì²âµ½Á˼¸¸öÊôÓÚHigaisaµÄеĶñÒâÈí¼þÑù±¾¡£¸Ã»ã±¨¾ßÌåµÄ·ÖÎöÁ˸Ã×éÖ¯ÔÚ½üÆÚ¹¥»÷ÖÐʹÓõĺܶàÑù±¾£¬Ô̺¬¸÷Ààdroppers¡¢loadersºÍinjectors£»Crosswalk¡¢ShadowPadºÍPlugXºóÃÅ£»ÒÔ¼°ÏÈǰδÃèÊöµÄFunnySwitchºóÃÅÑù±¾¡£´Ë±í£¬»ã±¨·¢ÏÖһЩÕë¶Ô¶íÂÞ˹ºÍÖйúÏã¸ÛµÄ¹¥»÷Ò²Óë¸ÃAPT×éÖ¯ÓйØ¡£


Ô­ÎÄÁ´½Ó£º

https://www.ptsecurity.com/ww-en/analytics/pt-esc-threat-intelligence/higaisa-or-winnti-apt-41-backdoors-old-and-new/