·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷

°ä²¼¹¦·ò 2021-12-27

·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷


·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷.png


¾ÝýÌå12ÔÂ24ÈÕ±¨Â·£¬·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½ÀÕË÷¹¥»÷¡£×÷Ϊ¶à¶à¹«Ë¾µÄ·þÎñÉÌ£¬Inetum GroupÊÕÈë¿¿½ü20ÒÚÃÀÔª£¬ÊÇÀÕË÷ÍÅ»ïµÄÊ×ѡָ±ê¡£¸Ã¹«Ë¾°µÊ¾£¬¹¥»÷²úÉúÔÚ12ÔÂ19ÈÕ£¬Ó°ÏìÁËÆäÔÚ·¨¹úµÄ²¿ÃÅÒµÎñ£¬²¢Ã»ÓÐÊæÕ¹µ½¿Í»§µÄ»ù´¡ÉèÊ©¡£Inetum²¢Î´Ð¹Â©¹¥»÷ÕßÐÅÏ¢£¬µ«·¨¹úýÌåLeMagIt³ÆÓëBlackCatÓйØ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/global-it-services-provider-inetum-hit-by-ransomware-attack/


Blackmagic½¨¸´Æä²úÆ·DaVinci ResolveÖеÄ2¸ö·ì϶


Blackmagic½¨¸´Æä²úÆ·DaVinci ResolveÖеÄ2¸ö·ì϶.png


12ÔÂ21ÈÕ£¬Blackmagic Software½¨¸´ÆäDaVinci Resolveƽ̨ÖеÄ2¸ö·ì϶¡£¸Ãƽ̨һ¸ö½«ÊÓÆµ±à×ëºÍÉ«²ÊУ¶Ô¡¢ÊÓ¾õ³ÉЧ¡¢¶¯Ì¬Í¼ÐκÍÒôƵºóÆÚÔì×÷¹¤¾ß½áºÏÔÚһ·µÄ½â¾ö¹æ»®¡£ÕâÁ½¸öÔ¶³Ì´úÂëÖ´Ðзì϶ÓÉCisco Talos·¢ÏÖ£¬±àºÅΪCVE-2021-40417ºÍCVE-2021-40418£¬CVSSv3ÆÀ·ÖΪ9.8¡£ÆäÖУ¬CVE-2021-40417ÊÇÒ»¸ö»ùÓڶѵĻº³åÇøÒç¶Âí½Å£¬ÊÇÀûÓÃÔÚ½âÂëÊÓÆµÎļþʱ²úÉúÕûÊýÒç³öµ¼ÖµÄ£»CVE-2021-40418ÊÇÓÉÃýÎóµÄUUIDµ¼Ö¶ÔÏó³ÉԱδ³õʼ»¯´¥·¢µÄ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/blackmagic-fixes-critical-davinci-resolve-code-execution-flaws/


Apple½¨¸´macOSÖпÉÈÆ¹ýGatekeeper°²È«Ö°Äܵķì϶


Apple½¨¸´macOSÖпÉÈÆ¹ýGatekeeper°²È«Ö°Äܵķì϶.png


¾ÝýÌå12ÔÂ26ÈÕ±¨Â·£¬AppleÔÚ½üÆÚ½¨¸´ÁËmacOSÖпÉÓÃÀ´ÈƹýGatekeeper°²È«Ö°Äܲ¢Ö´ÐÐËÁÒâ´úÂë¡£¸Ã·ì϶±àºÅΪCVE-2021-30853£¬ÓÉBoxµÄGordon Long·¢ÏÖ¡£Patrick WardleÔÚ12ÔÂ23ÈÕ°ä²¼Á˸÷ì϶µÄ·ÖÎö£¬³Æ¹¥»÷ÕßÄܹ»Í¨¹ýÓÕʹָ±ê´ò¿ª¼Ù×°³ÉPDFÎļþµÄ¶ñÒâÀûÓÃÀ´´¥·¢¸Ã·ì϶£¬µ××ÓÔ­ÒòÊÇδÊðÃû¡¢Î´¹«Ö¤µÄ»ùÓھ籾µÄÀûÓ÷¨Ê½ÎÞ·¨Ö¸¶¨Ú¹ÊÍ·¨Ê½¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/126004/security/macos-gatekeeper-bypass-2.html


еÄBLISTERÀûÓÃSectigoÐû¸æµÄÊðÃûÖ¤ÊéÈÆ¹ý¼ì²â


еÄBLISTERÀûÓÃSectigoÐû¸æµÄÊðÃûÖ¤ÊéÈÆ¹ý¼ì²â.png


12ÔÂ23ÈÕ£¬Elastic×êÑÐÈËÔ±¹«¿ªÁËжñÒâÈí¼þBLISTERÕë¶ÔWindowsϵͳµÄ¹¥»÷»î¶¯¡£Elastic³Æ¸Ã»î¶¯×Ô9ÔÂ15ÈÕÆðÒѾ­ÔËÐÐÁËÖÁÉÙÈý¸öÔ¡£¹¥»÷ÕßʹÓÃÁË8ÔÂ23ÈÕÆðÉúЧµÄÊðÃûÖ¤Ê飬¸ÃÖ¤ÊéÓÉSectigo¹«Ë¾Ðû¸æ¸øBlist LLC£¬ÆäÓʼþµØÖ·ÊôÓÚ¶íÂÞ˹¹«Ë¾Mail.Ru¡£´Ë±í£¬¹¥»÷Õß»¹Ê¹ÓÃÁ˶àÖÖÈÆ¹ý¼ì²âµÄ¼¼Êõ£¬Ô̺¬½«BlisterǶÈëµ½ºÏ·¨¿âÖУ¨Èçcolorui.dll£©£¬ÕâʹµÃBLISTERÑù±¾ÔÚVirusTotalÖеļì²âÂʼ«¶ÈµÍ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125958/malware/blister-loader.html



SentinelLabs³ÆÐµÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª


SentinelLabs³ÆÐµÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª.png


12ÔÂ23ÈÕ£¬SentinelLabs¹«¿ªÁ˹ØÓÚÐÂÀÕË÷Èí¼þRookµÄ×êÑÐÁ˾Ö¡£11ÔÂ30ÈÕ£¬¸ÃÍÅ»ïÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾°ä²¼Á˵ÚÒ»¸öÖ¸±ê¹«Ë¾µÄÐÅÏ¢£¬ÊÇÒ»¼Ò¹þÈø¿Ë˹̹½ðÈÚ»ú¹¹¡£RookµÄ³õʼϰȾý½éΪ´¹µöÓʼþºÍ¶ñÒâµÄÏÂÔØÖÖ×Ó£¬²¢Í¨¹ýCobalt Strike·Ö·¢¡£×êÑÐÈËÔ±·ÖÎö·¢ÏÖ£¬¸Ã¶ñÒâÈí¼þµÄ´úÂëÓëBabukÓÐÏÔÖø³Áµþ£¬ºóÕßÒÑÖÕ³¡ÔËÓª£¬ÇÒÔ´´úÂëÓÚ½ñÄê9ÔÂÔÚºÚ¿ÍÂÛ̳ÉϹ«¿ª¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125988/malware/rook-ransomware-based-on-babuk.html


°¢¶û°ÍÄáÑdz¬¹ý63Íò¹«ÃñµÄÐÅϢй¶£¬Õ¼×ÜÈ˶¡22%


°¢¶û°ÍÄáÑdz¬¹ý63Íò¹«ÃñµÄÐÅϢй¶£¬Õ¼×ÜÈ˶¡22%.png


12ÔÂ23ÈÕ£¬°¢¶û°ÍÄáÑǵ±¾ÖÈ·Èϲ¢ÖÂǸ½üÆÚ²úÉúµÄÐÅϢй¶ÊÂÎñ¡£Ð¹Â¶Îļþ±»ÒÔExcelÎĵµµÄ´ó¾ÖÉÏ´«µ½ÁËWhatsAppÉÏ£¬Ô̺¬¹«ÃñµÄÐÕÃû¡¢Éí·ÝÖ¤ºÅÂ롢нˮ¡¢¹¤×÷ְλºÍ¹ÍÖ÷ÐÕÃûµÈ¾ßÌåÐÅÏ¢£¬Éæ¼°637138ÈË£¬Õ¼¸Ã¹ú×ÜÈ˶¡22%ÒÔÉÏ¡£±¾µØÃ½ÌåÓÚ12ÔÂ22ÈÕ±¨Â·£¬¸ÃÎļþÔ̺¬Ïòµ±¾ÖÌá½»µÄ2021Äê1ÔÂ˰ÎñºÍ¹¤×ÊÐÅÏ¢£¬ÒÉ»óÊÇ´Ó˰Îñ²¿ÃÅ»òÉç»á±£ÏÕ»ú¹¹Ð¹Â¶µÄ¡£¸Ã¹úµ±¾Ö³Æ£¬³õ´ëÊ©²éÏÔʾй¶ÊÇÄÚ²¿Ô­Òòµ¼ÖµÄ£¬¶ø·Ç±í²¿¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/personal-and-salary-data-for-637138-albanian-citizens-leaks-online/