ÓÉÓÚCDNÎÊÌâ £¬Microsoft WinGettÈí¼þ°üÖÎÀíÆ÷±¨´í

°ä²¼¹¦·ò 2022-11-09
1¡¢ÓÉÓÚCDNÎÊÌâ £¬Microsoft WinGettÈí¼þ°üÖÎÀíÆ÷±¨´í

¾ÝýÌå11ÔÂ7ÈÕ±¨Â· £¬´ÓÉÏÖÜÄ©ÆðÍ· £¬WindowsÓû§·¢ÏÖµ±ËûÃdz¢ÊÔʹÓÃWinGet×°ÖûòÉý¼¶ÀûÓ÷¨Ê½Ê± £¬»áÊÕµ½·ÖÆçµÄÃýÎóÌáÐÑ ¡£ÀýÈç £¬winget upgrade»áÏÔʾ¡°³¢ÊÔ¸üÐÂԴʧ°Ü£ºwinget¡± £¬winget install»áÏÔʾ¡°Ö´ÐкÅÁîʱ²úÉúÒâ±íÃýÎó£º0x8a15000f£ºÔ´ËùÐèµÄÊý¾ÝÃÔʧ¡± ¡£¾ÝϤ £¬¸ÃÎÊÌâÊÇÓÉÓÚAzureÄÚÈݽ»¸¶ÍøÂç(CDN)·µ»ØÒ»¸ö0×Ö½ÚµÄÊý¾Ý¿âÎļþµ¼Ö嵀 £¬Î¢ÈíĿǰÔÚ½â¾ö¸ÃÎÊÌâ £¬²¢°µÊ¾Ëü²»»áÓ°ÏìËùÓÐЧ»§ ¡£

https://www.bleepingcomputer.com/news/microsoft/microsoft-winget-package-manager-failing-due-to-cdn-issues/

2¡¢Citrix°ä²¼¸üР£¬½¨¸´ÆäADCºÍGatewayÖеĶà¸ö·ì϶

CitrixÓÚ11ÔÂ8ÈÕ°ä²¼°²È«¸üР£¬½¨¸´ÆäADCºÍGatewayÖеĶà¸ö·ì϶ ¡£Õâ´Î½¨¸´ÁËʹÓôúÌæõè¾¶»òͨ·µÄÈÏÖ¤ÈÆ¹ý·ì϶£¨CVE-2022-27510£© £¬¿É±»ÓÃÀ´½Ó¼ûGatewayÓû§£»Êý¾ÝÕæÊµÐÔÑéÖ¤²»¼°·ì϶£¨CVE-2022-27513£© £¬¿Éͨ¹ý´¹µö¹¥»÷½øÐÐÔ¶³Ì×ÀÃæÊÕÊÜ£»±£»¤»úÔìʧЧ£¨CVE-2022-27516£© £¬¿ÉÈÆ¹ýÓû§µÇ¼µÄ±©Á¦¹¥»÷±£»¤ ¡£½öÔÚijЩÔÚÌØ¶¨ÅäÖÃÏ £¬ÕâЩ·ì϶ÄÜÁ¦±»ÀûÓà £¬Citrix½¨ÒéÖÎÀíÔ±µ±¼´½¨¸´ÕâЩ·ì϶ ¡£

https://support.citrix.com/article/CTX463706/citrix-gateway-and-citrix-adc-security-bulletin-for-cve202227510-cve202227513-and-cve202227516

3¡¢¼ÓÄôóMaple Leaf FoodsÔÚÔâµ½¹¥»÷ºóÔËÓªÁÙʱÖжÏ

¾Ý11ÔÂ7ÈÕ±¨Â· £¬Maple Leaf FoodsÈ·ÈÏÆä¾­ÀúÁËÒ»Â·ÍøÂ簲ȫÊÂÎñ £¬µ¼ÖÂϵͳºÍÔËÓªÖжÏ ¡£Maple Leaf FoodsÊǼÓÄôó×î´óµÄÔ¤ÔìÈâÀàºÍ¼ÒÇÝʳƷ³ö²úÉÌ £¬2021Äê½»Ò×¶îΪ33ÒÚÃÀÔª ¡£¸Ã¹«Ë¾ÔÚÖÂÁ¦¸´Ô­ÊÜÓ°ÏìµÄϵͳ £¬È»¶øÔ¤¼ÆÈ«Ãæ½â¾ö¹ÊÕÏÎÊÌ⽫ÈÔ±ØÒª¹¦·ò £¬²¢½«µ¼Ö²¿ÃÅÔËÓªºÍ·þÎñÖжÏ ¡£¸Ã¹«Ë¾°µÊ¾½«³ÖÐøÓë¿Í»§ºÍºÏ×÷ͬ°éºÏ×÷ £¬ÒÔÏ÷¼õ¼ÓÄôóÊг¡µÄʳƷ¹©¸øÖжÏ ¡£Ä¿Ç° £¬µ÷²éÈÔÔÚ½øÐÐÖÐ £¬ÉÐδȷ¶¨¹¥»÷ÊÇÈôºÎ²úÉúµÄ ¡£

https://www.bleepingcomputer.com/news/security/maple-leaf-foods-suffers-outage-following-weekend-cyberattack/

4¡¢Justice Blade¹¥»÷ÓëÉ³ÌØ°¢À­²®ÓйصÄIT±í°ü¹©¸øÉÌ

ýÌå11ÔÂ7ÈÕ³Æ £¬Justice Blade°ä²¼ÁË´ÓIT±í°ü¹©¸øÉÌSmart Link BPO SolutionsÇÔÈ¡µÄÊý¾Ý ¡£¸Ã¹«Ë¾ÓëÉ³ÌØ°¢À­²®Íõ¹úºÍGCCÆäËû¹ú¶ÈµÄ¹«Ë¾ºÍµ±¾Ö»ú¹¹ºÏ×÷ ¡£¹¥»÷Õß³ÆÆäÇÔÈ¡ÁË´óÁ¿Êý¾Ý £¬Ô̺¬CRM¼Í¼¡¢Ó×ÎÒÐÅÏ¢¡¢µç×ÓÓʼþͨѶ¡¢ºÏͬºÍÕÊ»§Í´´¦µÈ £¬²¢°ä²¼Á˸õØÓò¸÷¹«Ë¾Ö®¼äµÄRDP»á»°ºÍOffice 365ͨѶµÄ½ØÍ¼ £¬ÒÔ¼°¿ÉÄÜÓëFlyNasºÍSAMACaresÓйصöÓû§Áбí ¡£×êÑÐÈËÔ±ÔøÔÚ°µÍøÉÏ·¢ÏÖÁ˶à¸öSmart Link BPO½â¾ö¹æ»®µÄƾ֤ £¬¹¥»÷Õß¿ÉÀûÓÃÕâЩƾִ֤Ðй¥»÷ ¡£

https://securityaffairs.co/wordpress/138213/hacking/justice-blade-targets-saudi-arabia.html

5¡¢ºÚ¿ÍÍÅ»ïÀûÓÃAndroid RAT¹¥»÷Ó¡¶Å×ë¹ú·ÀÓйصÄ×éÖ¯

CyfirmaÔÚ11ÔÂ7ÈÕй©Æä×î½ü¼ì²âµ½Ò»¸öÕë¶ÔÓ¡¶È¹ú·ÀÓйØ×éÖ¯µÄ¶ñÒâAndroid APK ¡£×êÑÐÅú×¢ £¬¸Ã¹¥»÷×Ô2021Äê7ÔÂÒÔÀ´Ò»ÏòºÜ»îÔ¾ ¡£APKÎļþÊÇÓйء°Subs Naik¡±µÄµö¶ü¸±±¾ ¡£ÔÚÖ¸±ê×°Öúó £¬Õâ¸öÀûÓ÷¨Ê½¾Í»áÔÚÉ豸ÉÏÏÔʾΪһ¸öAdobeÔĶÁÆ÷ÀûÓÃͼ±ê ¡£¹¥»÷Õß»¹ÀûÓÃÁË¿ªÔ´µÄSpymax RAT±äÌå ¡£Spymax¿ÉÌṩ·ÖÆçµÄAndroid°ü¹¹½¨ £¬ÆäÖÐÒ»¸ö¿É½«ËÁÒâWebÁ´½Ó×¢ÈëWebÊÓͼÄ £¿é ¡£³É¹¦×°ÖÃÌìÉúµÄAPKºó £¬Ëü¾ÍÔì³ÉÁËÒ»¸öÕæÕýµÄAndroidÀûÓà ¡£

https://www.cyfirma.com/outofband/unknown-nation-based-threat-actor-using-android-rat-to-target-indian-defence-personnel/

6¡¢Kaspersky°ä²¼2022ÄêµÚÈý¼¾¶ÈDDoS¹¥»÷µÄ·ÖÎö»ã±¨

11ÔÂ7ÈÕ £¬Kaspersky°ä²¼Á˹ØÓÚ2022ÄêµÚÈý¼¾¶ÈDDoS¹¥»÷µÄ·ÖÎö»ã±¨ ¡£ÓëÉÏÒ»¼¾¶ÈÏà±È £¬ËùÓÐÀàÐ͵ÄDDoS¹¥»÷ÊýÁ¿ÏÔÖøÔö³¤ ¡£ÖÇÄܹ¥»÷µÄÕ¼±È³ÖÐøÔö³¤ £¬¸ß´ï53% ¡£´Ë±í £¬±¾¼¾¶È¶ÔHTTP(S)µÄDDoS¹¥»÷³õ´Î³¬¹ýÁ˶ÔTCPµÄ¹¥»÷ ¡£ÔÚ2022ÄêQ3 £¬Kaspersky¹²¼ì²âµ½57116´ÎDDoS¹¥»÷£»Ò»ÖÜÖÐ×îæÂÒµÄÊÇÐÇÆÚÎ壨15.36% µÄ¹¥»÷£© £¬×î³Á¾²µÄÊÇÐÇÆÚËÄ£¨12.99%£©£»³ÖÐø¹¦·òÉÙÓÚ4Ó×ʱµÄ¹¥»÷Õ¼¹¥»÷×ܹ¦·òµÄ60.65% £¬Õ¼¹¥»÷×ÜÊýµÄ94.29%£»UDP FloodÕ¼¹¥»÷×ÜÊýµÄ51.84% £¬SYN FloodÕ¼26.96% ¡£

https://securelist.com/ddos-report-q3-2022/107860/