Operaä¯ÀÀÆ÷ÑϳÁ·ì϶MyFlawʹÊý°ÙÍòÓû§Ãæ¶Ô·çÏÕ

°ä²¼¹¦·ò 2024-01-17
1. Operaä¯ÀÀÆ÷ÑϳÁ·ì϶MyFlawʹÊý°ÙÍòÓû§Ãæ¶Ô·çÏÕ


1ÔÂ16ÈÕ  £¬Ê¢ÐÐµÄ Opera Web ä¯ÀÀÆ÷Öз¢ÏÖÁËÒ»¸öÑϳÁ·ì϶  £¬¸Ã·ì϶¿ÉÄܵ¼ÖÂÔÚ Windows ºÍ Mac ²Ù×÷ϵͳÉÏÔ¶³ÌÖ´ÐдúÂë¡£Guardio Labs ×êÑÐÍŶӷ¢ÏÖ²¢Åû¶µÄÕâһȱµã͹ÏÔÁËÔÚÏÖ´úä¯ÀÀÆ÷ÖÐÆ½ºâÐÂÖ°ÄÜÓë׳´ó°²È«ÐÔËùÃæ¶ÔµÄ³ÖÐøÌôÕ½¡£Guardio ×êÑÐÍŶӽ«Õâ¸ö·ì϶¶¨ÃûΪMyFlaw  £¬ÊÇÓÉÓÚOpera µÄ¡°My Flow¡±Ö°Äܶø´æÔÚµÄÔ¶³Ì´úÂëÖ´Ðзì϶  £¬¸ÃÖ°ÄÜÄܹ»Í¨¹ýä¯ÀÀÆ÷ÔÚ×ÀÃæºÍÒÆ¶¯É豸֮¼äÎÞ·ì¹²Ïí±Ê¼ÇºÍÎļþ¡£¾ßÌåÀ´Ëµ  £¬My Flow µÄ»ùÓÚÍøÂçµÄ̸Ìì½çÃæÎªÈκθԶ×ãļþÔö³¤ÁË¡°´ò¿ª¡±Á´½Ó  £¬µ¼ÖÂÖ±½Ó´Óä¯ÀÀÆ÷Ö´ÐÐËüÃÇ¡£


2. ³¬¹ý178000¸öSONICWALLÏÂÒ»´ú·À»ðǽÒ×Ôâ·êºÚ¿Í¹¥»÷


1ÔÂ15ÈÕ  £¬SonicWall ÏÂÒ»´ú·À»ðǽ (NGFW) ϵÁÐ 6 ºÍ 7 É豸Êܵ½Á½¸öδ¾­Éí·ÝÑéÖ¤µÄ»Ø¾ø·þÎñ·ì϶µÄÓ°Ïì  £¬±ðÀëΪCVE-2022-22274 ºÍ CVE-2023-0656  £¬Õâ¿ÉÄܻᵼÖÂÔ¶³Ì´úÂëÖ´ÐС£Ö»¹ÜÕë¶ÔCVE-2023-0656ȱµãµÄ¸ÅÏëÑéÖ¤ÀûÓÃÒѹ«¿ª°ä²¼  £¬µ«¹©¸øÉ̲¢²»ÖªÂ·ÀûÓÃÕâЩ·ì϶½øÐеÄÒ°±í¹¥»÷¡£Bishop Fox µÄ×êÑÐÈËԱʹÓà BinaryEdge Ô´Êý¾ÝÕÒµ½Á˶³öÓÚ»¥ÁªÍøµÄÖÎÀí½çÃæµÄ SonicWall ·À»ðǽ¡£×¨¼Ò·¢ÏÖ  £¬76%£¨233,984 ¸öÖÐµÄ 178,637 ¸ö£©ÃæÏò»¥ÁªÍøµÄ·À»ðǽÈÝÒ×Êܵ½Ò»¸ö»òÁ½¸öÎÊÌâµÄÓ°Ï졣ר¼ÒÖ¸³ö  £¬ÕâÁ½¸öÎÊÌâÐÔÖÊÉÏÊÇÒ»ÑùµÄ  £¬µ«ÓÉÓÚ³ÁÓÃÁËÒ×Êܹ¥»÷µÄ´úÂëģʽ  £¬Òò¶øÄܹ»ÔÚ·ÖÆçµÄ HTTP URI õè¾¶ÉÏÀûÓá£×êÑÐÈËÔ±»¹¿ª·¢ÁËÒ»¸ö²âÊԾ籾  £¬Äܹ»ÔÚ²»µ¼ÖÂÉ豸±ÀÀ£µÄÇé¿öÏÂÈ·¶¨É豸ÊÇ·ñÈÝÒ×Êܵ½¹¥»÷¡£


3. Microsoft½¨¸´KB5034441¸üÐÂʱµ¼ÖÂ0x80070643ÃýÎó


1ÔÂ15ÈÕ  £¬Microsoft ÔÚÖÂÁ¦½¨¸´ÔÚ×°Öý¨²¹ CVE-2024-20666 BitLocker ·ì϶µÄ KB5034441 °²È«¸üÐÂʱµ¼Ö 0x80070643 ÃýÎóµÄÒÑÖªÎÊÌâ¡£¹ÌÈ»°²È«ÎÊÌâÒÑÔÚ±¾ÔµÄÖܶþ²¹¶¡Èյõ½½â¾ö  £¬µ«ÔÚ Windows ¸´Ô­»·¾³ (WinRE) ·ÖÇø¹ýÓ×µÄϵͳÉϲ¿Êð KB5034441 ½«»áʧ°Ü  £¬²¢ÃýÎóµØÏÔʾͨÓá° 0x80070643 - ERROR_INSTALL_FAILURE¡±ÃýÎóÐÂÎÅ  £¬¶ø²»ÊÇÕýÈ·µÄ CBS_E_INSUFFICIENT_DISK_SPACE ÃýÎó¡£


4. SmartScreen·ì϶±»ÀûÓÃÀ´Í¶·ÅPhemedrone¶ñÒâÈí¼þ


1ÔÂ15ÈÕ  £¬Phemedrone ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ»î¶¯ÀûÓà Microsoft Defender SmartScreen ·ì϶ (CVE-2023-36025) ÔÚ´ò¿ª URL ÎļþÊ±ÈÆ¹ý Windows °²È«ÌáÐÑ¡£Phemedrone ÊÇÒ»ÖÖÐÂÐÍ¿ªÔ´ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ  £¬¿ÉÍøÂçÍøÂçä¯ÀÀÆ÷¡¢¼ÓÃÜÇ®±ÒÇ®°üÒÔ¼° Discord¡¢Steam ºÍ Telegram µÈÈí¼þÖд洢µÄÊý¾Ý¡£¶øºó  £¬ÕâЩÊý¾Ý±»·¢Ëͻع¥»÷Õß  £¬ÓÃÓÚÆäËû¶ñÒâ»î¶¯»òÏúÊÛ¸øÆäËûÍþвÐÐΪÕß¡£Phemedrone »î¶¯ÖÐÀûÓÃµÄ Microsoft Defender ȱµãΪ CVE-2023-36025¡£


5. Tura Scandinavia ABÔâµ½ÀÕË÷Èí¼þÍÅ»ïLockBitµÄ¹¥»÷


1ÔÂ15ÈÕ  £¬ura Scandinavia AB ·¢ÏÖ×Ô¼º³ÉΪ LockBit ÀÕË÷Èí¼þ×éÖ¯µÄ¹¥»÷Ö¸±ê  £¬Õâ±ê־ȡ¸Ã¹«Ë¾ÍøÂ簲ȫʷÉϵÄÓÖÒ»ÊÂÎñ¡£ÍþвÐÐΪÕß LockBit ÀÕË÷Èí¼þ×éÖ¯ÔÚ°µÍøÉϰ䲼ÁËÓйØÕâ´ÎÈëÇÖµÄÉêÃ÷¡£¶ÔTura Scandinavia AB µÄËùÎ½ÍøÂç¹¥»÷Ö®ËùÒԳɹ¦  £¬ÊÇÓÉÓÚ Tura Scandinavia ¹«Ë¾ÍøÂçÖеĶà¸ö·ì϶µ¼ÖÂδ¾­ÊÚȨµÄ½Ó¼û¡£ÁîÈËÕ𾪵ÄÊÇ  £¬LockBitÐû³ÆÄÚ²¿·þÎñÆ÷²»×ã¼à¿ØÏµÍ³¡¢·À²¡¶¾Èí¼þºÍ·À»ðǽµÈ¸ù»ù°²È«´ëÊ©¡£ 


6. Inferno DrainerÚ¿Æ­³¬¹ý13ÍòÃûÊܺ¦Õß»ñµÃ8700ÍòÃÀÔª


1ÔÂ16ÈÕ  £¬ÏÖÒÑDzɢµÄInferno Drainer±³ºóµÄÔËÓªÕßÔÚ 2022 ÄêÖÁ 2023 ÄêµÄÒ»Ä깦·òÄÚ´´½¨Á˳¬¹ý 16,000 ¸ö¹ÖÒìµÄ¶ñÒâÓòÃû¡£¸Ã¶ñÒâÈí¼þÊÇһϵÁиü¿í·ºµÄÀàËÆ²úÆ·µÄÒ»²¿ÃÅ  £¬ÕâЩ²úÆ·ÒÔsaasģʽÌṩ¸ø¿Í»§  £¬ÒÔ»»È¡ 20% µÄÊÕÈë·Ö³É¡£Inferno Drainer µÄ¿Í»§Äܹ»½«¶ñÒâÈí¼þÉÏ´«µ½×Ô¼ºµÄ´¹µöÍøÕ¾  £¬»òÕßÀûÓÿª·¢ÕߵķþÎñÀ´´´½¨ºÍÍйܴ¹µöÍøÕ¾  £¬ÎÞÐè¶î±íÓÃ¶È  £¬ÔÚijЩÇé¿öÏÂÒ²Äܹ»ÊÕÈ¡±»µÁ×ʲúµÄ 30%¡£¡°Inferno Drainer ´¹µöÍøÕ¾µÄÁíÒ»¸öµäÐÍÌØµãÊÇÓû§ÎÞ·¨Í¨¹ýʹÓÿì½Ý¼ü»òÓÒ¼üµ¥»÷Êó±êÀ´´ò¿ªÍøÕ¾Ô´´úÂë¡£³ý´ËÖ®±í  £¬Group-IB °µÊ¾  £¬Inferno Drainer µÄ³É¹¦¿ÉÄÜ»áÍÆ¶¯Ð Drainer µÄ¿ª·¢  £¬²¢µ¼ÖÂÔÌÃÔºýŪ Web3 ºÍ̸µÄ¶ñÒâ¾ç±¾µÄÍøÕ¾¼¤Ôö  £¬²¢Ö¸³ö 2024 Äê¿ÉÄܳÉΪ¡°Drainer Äꡱ¡£