×êÑÐÈËÔ±ÑÝʾÇÔÈ¡AMDºÍIntel CPUÊý¾ÝµÄSLAM¹¥»÷

°ä²¼¹¦·ò 2023-12-08
1¡¢×êÑÐÈËÔ±ÑÝʾÇÔÈ¡AMDºÍIntel CPUÊý¾ÝµÄSLAM¹¥»÷


¾ÝýÌå12ÔÂ6ÈÕ±¨Â· £¬×êÑÐÈËÔ±¿ª·¢ÁËÒ»ÖÖÃûΪSLAMµÄÐÂÐͲàͨ·¹¥»÷ £¬ÀûÓÃIntel¡¢AMDºÍArm¼´½«ÍƳöµÄÓÃÓÚÌá¸ßCPU°²È«ÐÔµÄÓ²¼þÖ°ÄÜ £¬´ÓÄÚºËÄÚ´æÖÐÇÔÈ¡rootÃÜÂë¡£SLAMÊÇÒ»ÖÖ˲ִ̬Ðй¥»÷ £¬ËüÀûÓÃÁËÔÊÐíÈí¼þʹÓÃ64λÏßÐÔµØÖ·ÖеÄδ·­ÒëµØÖ·Î»À´´æ´¢ÔªÊý¾ÝµÄÄÚ´æÖ°ÄÜ¡£CPU¹©¸øÉÌÒÔ·ÖÆçµÄ·½Ê½ÊµÏÖÕâÒ»µã £¬Intel½«Æä³ÆÎªLAM £¬AMD³ÆÎªUAI £¬¶øArm³ÆÎªTBI¡£×êÑÐÈËÔ±³Æ £¬SLAMÖØÒªÓ°ÏìÁËÂú×ãÌØ¶¨³ß¶ÈµÄ½«À´Ð¾Æ¬ £¬¹ÌÈ»ÏȽøµÄÓ²¼þÖ°ÄÜÌá¸ßÁËÄڴ氲ȫÐÔºÍÖÎÀí £¬µ«Ò²ÒýÈëÁË¿ÉÀûÓõÄ΢¼Ü¹¹¾ºÕùǰÌá¡£


https://www.bleepingcomputer.com/news/security/new-slam-attack-steals-sensitive-data-from-amd-future-intel-cpus/


2¡¢ÈÕ²ú´óÑóÖÞ·Ö¹«Ë¾Ôâµ½¹¥»÷Êý¾Ý¿ÉÄÜй¶´æÔÚÚ¿Æ­·çÏÕ


ýÌå12ÔÂ7ÈÕ³Æ £¬ÈÕ±¾Æû³µÔì×÷ÉÌÈÕ²úÔÚµ÷²éÕë¶ÔÆä´óÑóÖÞ·Ö¹«Ë¾µÄ¹¥»÷»î¶¯¡£ÈÕ²ú´óÑóÖÞ¹«Ë¾ÖØÒªÕƹܰĴóÀûÑǺÍÐÂÎ÷À¼µÄ·ÖÏú¡¢ÓªÏú¡¢ÏúÊۺͷþÎñ¡£¸Ã¹«Ë¾°ä²¼ÉêÃ÷·î¸æ°Ä´óÀûÑǺÍÐÂÎ÷À¼ÈÕ²ú¹«Ë¾ºÍ½ðÈÚ·þÎñ¹«Ë¾µÄϵͳÔâµ½ÁËÒ»Â·ÍøÂçÊÂÎñ £¬Ä¿Ç°ÔÚÈ·¶¨¹¥»÷µÄÓ°Ïì¡£Ö»¹Ü¸ÃÍøÕ¾µÄÖ°ÄÜËÆºõδÊÜÓ°Ïì £¬µ«ÈÕ²ú°µÊ¾ÔÚÖÂÁ¦¸´Ô­ÊÜÓ°Ïìϵͳ¡£Ó×ÎÒÐÅÏ¢¿ÉÄÜй¶ £¬ÈÕ²ú¹«Ë¾ÌáÐѿͻ§¶ÔÆäÕË»§Î¬³Ö¾¯Ìè £¬×¢ÒâÈκÎÒì³£»òÚ¿Æ­»î¶¯¡£


https://securityaffairs.com/155360/security/nissan-oceania-suffers-cyberattack.html


3¡¢ÃÀ¹úˮʦ³Ð°üÉÌAustal USA±»Hunters International¹¥»÷


¾Ý12ÔÂ6ÈÕ±¨Â· £¬ÃÀ¹úÔì´¬¹«Ë¾Austal USAÔâµ½Hunters InternationalµÄ¹¥»÷¡£Austal USAÊÇÃÀ¹ú¹ú·À²¿ºÍºÓɽ°²È«ÊýµÄ³Ð°üÉÌ £¬Ëû°µÊ¾ÒÑѸ¿ì»º½â¸ÃÊÂÎñ £¬Î´¶ÔÔËÓªÔì³ÉÓ°Ïì £¬¹¥»÷ÕßҲûÓнӼû»ò»ñÈ¡ÈκÎÓ×ÎÒ»ò»úÃÜÐÅÏ¢¡£Hunters InternationalÐû³Æ¶ÔÕâ´Î¹¥»÷ÕÆ¹Ü £¬²¢¹«¿ªÁËһЩÊý¾Ý×÷Ϊ֤¾Ý £¬»¹Íþв½«ÔÚ½«À´¼¸Ìì°ä²¼¸üÎÞÊý¾Ý £¬Ô̺¬ºÏ¹æÎļþ¡¢ÕÐÆ¸ÐÅÏ¢¡¢²ÆÕþ¾ßÌåÐÅÏ¢¡¢ÈÏÖ¤ºÍ¹¤³ÌÊý¾Ý¡£


https://www.bleepingcomputer.com/news/security/navy-contractor-austal-usa-confirms-cyberattack-after-data-leak/


4¡¢Î¢ÈíÅû¶¹ØÓÚStar Blizzard×îÐÂTTPµÄ¾ßÌåÐÅÏ¢


΢ÈíÔÚ12ÔÂ7ÈÕÅû¶Á˹ØÓÚ¶íÂÞ˹ÍÅ»ïStar BlizzardµÄ×îÐÂTTP¡£×Ô2022ÄêÒÔÀ´ £¬Star Blizzard¸Ä½øÁ˼ì²âÈÆ¹ýÖ°ÄÜ £¬ÒÀȻרһÓÚµç×ÓÓʼþÍ´´¦Ð¹Â¶¡£Î¢ÈíÈ·ÈÏÁ˸ÃÍÅ»ïµÄ5ÖÖÐÂÈÆ¹ý¼¼Êõ £¬Ô̺¬Ê¹Ó÷þÎñÆ÷¶Ë½ÅÕý±¾Ô¤·À×Ô¶¯É¨Ã衢ʹÓÃÓʼþÓªÏúƽ̨·þÎñ°µ²ØÕæÊµµÄ·¢¼þÈ˵ØÖ·¡¢Ê¹ÓÃDNSÌṩÉÌÀ´°µ²ØVPS»ù´¡ÉèÊ©µÄIP¡¢Ê¹ÓÃÓÐÃÜÂë±£»¤µÄPDFµö¶ü»òÍйÜPDFµö¶üµÄ»ùÓÚÔÆµÄÎļþ¹²ÏíÆ½Ì¨µÄÁ´½ÓÒÔ¼°Îª²Î¼ÓÕß×¢²áµÄÓòתÏòÔ½·¢Ëæ»úµÄÓòÌìÉúËã·¨(DGA)¡£


https://www.microsoft.com/en-us/security/blog/2023/12/07/star-blizzard-increases-sophistication-and-evasion-in-ongoing-attacks/


5¡¢Group-IB·¢ÏÖÕë¶ÔÌ©¹úµçÐŹ«Ë¾µÄLinuxľÂíKrasue


12ÔÂ7ÈÕ £¬Group-IB³ÆÆä·¢ÏÖÁËÕë¶ÔµçÐŹ«Ë¾LinuxϵͳµÄľÂíKrasue £¬×Ô2021ÄêÒÔÀ´Ò»ÏòûÓб»·¢ÏÖ¡£KrasueµÄ¶þ½øÔìÎļþÔ̺¬Ò»¸örootkitµÄ7¸ö±äÖÖ £¬¸ÃrootkitÖ§³Ö¶à¸öLinuxÄں˰汾 £¬²¢»ùÓÚ3¸ö¿ªÔ´ÏîÖ÷ÕÅ´úÂë¡£×êÑÐÈËÔ±°µÊ¾ £¬¸Ã¶ñÒâÈí¼þµÄÖØÒªÖ°ÄÜÊÇά³Ö¶ÔÖ÷»úµÄ½Ó¼û £¬Õâ¿ÉÄÜÅú×¢ËüÊÇͨ¹ý½©Ê¬ÍøÂ粿ÊðµÄ £¬»òÕßÓɳõʼ½Ó¼û´úÀíÏúÊÛ¸ø¹¥»÷Õß¡£Ä¿Ç° £¬KrasueËÆºõ½öÕë¶ÔÌ©¹úµÄµçÐŹ«Ë¾¡£


https://www.group-ib.com/blog/krasue-rat/


6¡¢ZeroFox°ä²¼½ü7¸ö¼¾¶ÈLockBit¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨


12ÔÂ6ÈÕýÌ峯 £¬ZeroFox°ä²¼Á˹ØÓÚ2022Äê1ÔÂÖÁ2023Äê9ÔµÄ7¸ö¼¾¶ÈÖÐLockBit¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£ÔÚÕâ¶Î¹¦·ò £¬È«Çò³¬¹ýËÄ·ÖÖ®Ò»µÄÀÕË÷Èí¼þºÍÊý×ÖÀÕË÷£¨R&DE£©¹¥»÷ÀûÓÃÁËLockBit £¬Å·Ö޺ͱ±ÃÀ±ðÀëÓÐ30%ºÍ25%µÄR&DE¹¥»÷ÀûÓÃLockBit¡£Õë¶Ô±±ÃÀµÄLockBit¹¥»÷Õë¶Ô×î¶àµÄÐÐÒµÊÇÔì×÷¡¢¹¹Öþ¡¢ÁãÊÛ¡¢Ë¾·¨ºÍÕ÷ѯÒÔ¼°Ò½ÁƱ£½¡¡£LockBitËùÕ¼µÄ±ÈÀý³Ê½µÂäÇ÷Ïò £¬Õâ¿ÉÄÜÊÇÓÉÓÚR&DEÈÕÒæ¶àÑù»¯ £¬RaaS²úÆ·½µµÍÁ˹¥»÷ÕߵĽøÈëÃż÷¡£


https://www.zerofox.com/resources/lockbit-targeting-ransomware-digital-extortion/