Adobe°ä²¼²¹¶¡½¨¸´¶à¿î²úÆ··ì϶:Kaspersky°ä²¼Ó¦¼±ÏìÓ¦ÊÂÎñ»ã±¨

°ä²¼¹¦·ò 2021-09-17

Adobe°ä²¼ÐÇÆÚ¶þ²¹¶¡£¬½¨¸´¶à¿î²úÆ·ÖеÄ59¸ö·ì϶


Adobe°ä²¼ÐÇÆÚ¶þ²¹¶¡£¬½¨¸´¶à¿î²úÆ·ÖеÄ59¸ö·ì϶.png


Adobe°ä²¼ÐÇÆÚ¶þ°²È«¸üУ¬½¨¸´ÁËAdobe Acrobat Reader¡¢XMP Toolkit SDKºÍPhotoshopµÈ²úÆ·ÖеÄ59¸ö·ì϶¡£Õâ´Î½¨¸´µÄ½ÏΪÑϳÁµÄÊÇPhotoshopÖлº³åÇøÒç³öµ¼ÖµÄËÁÒâ´úÂëÖ´Ðзì϶£¨CVE-2021-40709£©¡¢FramemakerÖеÄËÁÒâ´úÂëÖ´Ðзì϶£¨CVE-2021-39830¡¢CVE-2021-39829ºÍCVE-2021-39831£©ÒÔ¼°InDesignÖеÄËÁÒâ´úÂëÖ´Ðзì϶£¨CVE-2021-39820£©µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/adobe-bugs-acrobat-experience-manager/169467/


HP OMEN Gaming HubÖÐÌáȨ·ì϶ӰÏìÊý°ÙÍòÍÆËã»ú


HP OMEN Gaming HubÖÐÌáȨ·ì϶ӰÏìÊý°ÙÍòÍÆËã»ú.jpg


SentinelLabsÓÚ9ÔÂ14ÈÕÅû¶ÁËHP OMEN Gaming HubÖеÄÌáȨ·ì϶£¬¿ÉÄÜÓ°ÏìÊý°ÙÍòÌ¨ÍÆËã»ú¡£¸Ã·ì϶׷×ÙΪCVE-2021-3437£¬CVSSÆÀ·ÖΪ7.8£¬ÒÑÓÚ2021Äê2ÔÂ17Èջ㱨¸ø»ÝÆÕ£¬¸Ã¹«Ë¾ÔÚ7ÔÂ27ÈÕ°ä²¼Á˰²È«¸üС£¸Ã·ì϶ԴÓÚ¶ÔOpenLibSys¿ª·¢µÄWinRing0.sysÖзì϶´úÂëµÄ³ÁÓ㬹¥»÷Õß¿ÉÀûÓÃÆä½ûÓð²È«²úÆ·¡¢¸²¸Çϵͳ×é¼þ¡¢·ÛËé²Ù×÷ϵͳ»òÖ´ÐÐÆäËü¶ñÒâ²Ù×÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.sentinelone.com/labs/cve-2021-3437-hp-omen-gaming-hub-privilege-escalation-bug-hits-millions-of-gaming-devices/


Zloader»Ø¹é£¬ÖØÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ


Zloader»Ø¹é£¬ÖØÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ.jpg


×êÑÐÈËÔ±·¢ÏÖZloaderÐÂÒ»ÂֵĹ¥»÷»î¶¯£¬ÖØÒªÕë¶ÔµÂ¹úºÍ°Ä´óÀûÑǵĽðÈÚÐÐÒµ¡£ZLoaderÓÚ2016Äê³õ´Î±»·¢ÏÖ£¬ÊÇÒ»ÖÖµäÐ͵ÄÒøÐÐľÂí£¬¿ÉÓÃÀ´ÇÔÈ¡cookie¡¢ÃÜÂëºÍÈκÎÃô¸ÐÐÅÏ¢¡£Õâ´Î¹¥»÷ѡȡÁ˸ü¸ß¼¶µÄÒñ±Î¼¼Êõ£¬ÆäµÚÒ»½×¶ÎµÄdropperÒÑ´Ó¶ñÒâÎĵµ¸ü¸ÄΪÒñ±ÎµÄ¡¢ÒÑÊðÃûµÄMSI payload¡£´Ë±í£¬Ëü»¹Äܹ»½ûÓÃÖ¸±êÍÆËã»úÉϵÄMicrosoft Defender AntivirusÀ´Èƹý¼ì²â¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/new-zloader-attacks-disable-windows-defender-to-evade-detection/


¿Í»§·þÎñ¹«Ë¾TTECÔâµ½Ragnar LockerÀÕË÷¹¥»÷


¿Í»§·þÎñ¹«Ë¾TTECÔâµ½Ragnar LockerÀÕË÷¹¥»÷.png


9ÔÂ14ÈÕ£¬ÃÀ¹úµÄ¿Í»§·þÎñ¹«Ë¾TTEC֪ͨԱ¹¤ÆäÔâµ½ÁË¿ÉÄÜÊÇÀ´×ÔRagnar LockerµÄÀÕË÷¹¥»÷¡£¹¥»÷²úÉúÔÚ9ÔÂ12ÈÕ£¬¸Ã¹«Ë¾ÔÚ֪ͨÖÐÌáÐÑÔ±¹¤²»Òª´ò¿ªWindowsÆðÍ·²Ëµ¥ÖкöÈ»³öÏÖµÄÃûΪ¡°!RA!G!N!A!R!¡±µÄÎļþ¡£TTEC°µÊ¾Õâ´Î¹¥»÷µ¼Ö´ó²¿ÃÅÔ±¹¤¶¼ÎÞ·¨Õý³£¹¤×÷£¬ÆäÔÚÖÂÁ¦¸´Ô­ÊÜÓ°Ïìϵͳ£¬Ä¿Ç°ÉÐδ·¢ÏÖ¿Í»§Êý¾Ýй¶µÄÇé¿ö¡£



Ô­ÎÄÁ´½Ó£º

https://krebsonsecurity.com/2021/09/customer-care-giant-ttec-hit-by-ransomware/


ÐÂÎ÷À¼CERT NZ°ä²¼Õë¶ÔÆóÒµµÄÀÕË÷Èí¼þ± £»¤Ö¸ÄÏ


ÐÂÎ÷À¼CERT NZ°ä²¼Õë¶ÔÆóÒµµÄÀÕË÷Èí¼þ±£»¤Ö¸ÄÏ.png


ÐÂÎ÷À¼ÍÆËã»úÓ¦¼±ÏìÓ¦Ó××é(CERT NZ)ÓÚ9ÔÂ14ÈÕ°ä²¼ÁËÕë¶ÔÆóÒµµÄÀÕË÷Èí¼þ± £»¤Ö¸ÄÏ¡£¸ÃÖ¸ÄÏÀûÓÃ2ÕÅͼ±í£¬¸ÅÊöÁË·ÖÆçµÄÀÕË÷Èí¼þ¹¥»÷µÄõè¾¶£¬²¢ËµÁËÈ»Óйذ²È«½ÚÔì´ëÊ©Äܹ»ÔÚÄÄЩ·½Ãæ²ûÑï×÷ÓÃÀ´Õмܹ¥»÷¡£´Ë±í£¬CERT NZ²»½¨Òé×éÖ¯Ö§¸¶Êê½ð£¬ÓÉÓÚÕâ²»Äܱ£ÕÏÎļþ»á±»Í˻أ¬²¢ÇÒ¿ÉÄÜʹÊܺ¦Õß³ÉΪ½øÒ»²½¹¥»÷µÄÖ¸±ê¡£  


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/09/14/cert-nz-releases-ransomware-protection-guide-businesses


Kaspersky°ä²¼2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄ·ÖÎö»ã±¨


Kaspersky°ä²¼2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄ·ÖÎö»ã±¨.png


KasperskyÔÚ9ÔÂ13ÈÕ°ä²¼ÁËÓйØ2020ÄêÓ¦¼±ÏìÓ¦ÊÂÎñµÄ·ÖÎö»ã±¨¡£»ã±¨·ÖÎöÁËKasperskyÔÚ2020Äê·¢Õ¹µÄÊÂÎñµ÷²é·þÎñ£¬²¢´ÓÆô¶¯ÊÂÎñÏìÓ¦µÄÔ­Òò¡¢¹¥»÷ÕßÈôºÎ½øÈëÖ¸±êÍøÂç¡¢ÀûÓõŤ¾ßºÍ·ì϶ÒÔ¼°¹¥»÷³ÖÐø¹¦·òÕâ4¸ö·½Ãæ¶ÔÆä½øÐÐÁË·ÖÎö¡£»ã±¨Ö¸³ö£¬´óÎÞÊýÓ¦¼±ÏìÓ¦ÊÂÎñÀ´×Ô¶íÂÞ˹ºÍ¶ÀÁªÌå(27.8%)¡¢Å·ÃË(24.7%)ºÍÖж«(22.7%)µØÓò £»ÆäÖУ¬¹¤ÒµÐÐÒµÊܵ½µÄÓ°Ïì×î´ó(22%)£¬Æä´ÎÊǵ±¾Ö»ú¹¹(19%)¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/incident-response-analyst-report-2020/104080/