Brave¿ªÔ´CookiecrumblerÖÇÄܹýÂËCookie֪ͨ
°ä²¼¹¦·ò 2025-04-281. Brave¿ªÔ´CookiecrumblerÖÇÄܹýÂËCookie֪ͨ
4ÔÂ27ÈÕ£¬Brave¿ªÔ´ÁËÒ»¿îÃûΪ¡°Cookiecrumbler¡±µÄй¤¾ß£¬ÓÃÓÚ¼ì²â²¢ÓÅ»¯´¦ÖÃcookieÔÞ³É֪ͨ¡£×Ô2022ÄêÆð£¬Braveä¯ÀÀÆ÷±ãĬÈÏÔÚËùÓÐÍøÕ¾ÉÏ×èÖ¹cookieÔ޳ɺá·ù£¬µ«·¢Ïִ˾ٿÉÄܵ¼ÖÂÍøÕ¾³öÏÖÖ°ÄÜÎÊÌ⣬ӰÏì¿ÉÓÃÐÔ¡£BraveÚ¹Êͳƣ¬¹ýÓÚ¿í·º»ò²»ÕýÈ·µÄ×èÖ¹Õ½Êõ¿ÉÄÜ·ÛËéÍøÕ¾¸ù»ùÖ°ÄÜ£¬Èç½áÕËÁ÷³ÌºÍÒ³Ãæ²¼¾Ö¡£ÔÚÏÖʵÀûÓÃÖУ¬²»¼Ó·Ö±æµØ×èÖ¹CookieÔÞ³É֪ͨÒÑÒý·¢¹ö¶¯Öжϡ¢Ò³Ãæ¿ÕȱµÈÎÊÌâ¡£CookiecrumblerÀûÓôóÐÍ˵»°Ä£ÐÍ£¨LLM£©¼¼Êõ£¬²éÕÒʹÓÃÔÞ³ÉÖÎÀíÆ½Ì¨£¨CMP£©µÄÍøÕ¾£¬²¢·ÖÎöÆäcookieÔÞ³É֪ͨ¡£¸Ã¹¤¾ßͨ¹ýÉçÇøÇý¶¯µÄÆÀÂÛ»úÔ죬×èÖ¹ÄÇЩ²»»á·ÛËéÍøÕ¾Ö°ÄܵÄ֪ͨ£¬´Ó¶øÔÚ±£»¤Óû§ÒþÖÔµÄͬʱ£¬Ï÷¼õ¶ÔÍøÕ¾Õý³£ÔËÐеÄ×ÌÈÅ¡£Æä¹¤×÷Á÷³ÌÔ̺¬£ºÊ¹ÓÃÇøÓò´úÀíץȡ¶¥¼¶ÍøÕ¾£¬Í¨¹ýPuppeteer¼ÓÔØÒ³ÃæÒÔ¼ø±ðDZÔÚcookie֪ͨ£¬½«ÕâЩ֪ͨ´«µÝ¸øLLM½øÐзÖÀಢÌṩ½¨¸´½¨Ò飬×îºó½«¼ì²âÁ˾ְ䲼ÖÁGitHubÏîÄ¿£¬¹©Éç·Ö±æÀàºÍ¸Ä½ø¡£ÕâÒ»Á÷³ÌÈ·±£ÁË´ó¹æÄ£¡¢ÇøÓò¸ÐÖªµÄcookieºá·ù¼ì²âºÍ×èÖ¹£¬Í¬Ê±½µµÍÁËÎó±¨ÂʺÍÕ¾µãÎÊÌâ¡£ÔÚÒþÖÔ±£»¤·½Ã棬CookiecrumblerÆëÈ«ÔÚBraveºó¶ËÔËÐУ¬²»Éæ¼°ÈκÎÓû§Êý¾Ý¡£
https://www.bleepingcomputer.com/news/security/braves-cookiecrumbler-tool-taps-community-to-help-block-cookie-notices/
2. WooCommerceÓû§Ôâ·Âð°²È«¾¯±¨´¹µö¹¥»÷
4ÔÂ26ÈÕ£¬½üÈÕ£¬Ò»³¡´ó¹æÄ£ÍøÂç´¹µö»î¶¯Õë¶ÔWooCommerceÓû§·¢Õ¹£¬Í¨¹ý·¢ËÍÐéα°²È«¾¯±¨Óʼþ£¬ÓÕµ¼ÆäÏÂÔØËùν¡°¹Ø¼ü²¹¶¡¡±ÒÔ½¨¸´¡°Î´¾Éí·ÝÑéÖ¤µÄÖÎÀí½Ó¼û¡±·ì϶¡£Óʼþ¼ÙÒâWooCommerce¹Ù·½£¬Ê¹Óá°help@security-woocommerce[.]com¡±µØÖ·£¬Ðû³ÆÍøÕ¾Ãæ¶ÔºÚ¿Í¹¥»÷·çÏÕ£¬²¢¸½Óд¹Î£ÏÂÔØ²¹¶¡µÄ°´Å¥¼°×°ÖÃ×¢Ã÷£¬ÒÔÔì×÷½ôÆÈ¸Ð¡£Óû§µã»÷°´Å¥ºó£¬½«±»Êèµ¼ÖÁÒ»¸ö·ÂðµÄ¡°woocomm?rce[.]com¡±ÍøÕ¾£¨¸ÃÓòÃûÀûÓÃͬÐÎÒìÒå´Ê¹¥»÷¼¼Êõ£¬½«×Öĸ¡°e¡±´úÌæÎªÁ¢ÌÕÍð×Ö·û¡°?¡±£©£¬ÏÂÔØ²¢×°ÖÃÃûΪ¡°authbypass-update-31297-id.zip¡±µÄ¶ñÒâ²å¼þ¡£¸Ã²å¼þ×°Öú󣬻ᴴ½¨Ò»¸öÿ·ÖÖÓÔËÐÐÒ»´ÎµÄËæ»úcronjob£¬ÊÔͼÔö³¤°µ²ØÖÎÀíÔ¹ØË»§£¬²¢ÏòÌØ¶¨URL×¢²áÊÜϰȾվµã£¬»ñÈ¡µÚ¶þ½×¶Î»ìºÏÓÐЧ¸ºÔØ£¬½ø¶øÔÚÍøÕ¾Ä¿Â¼ÏÂ×°Ööà¸öPHP Web Shell£¨ÈçPAS-Form¡¢p0wnyºÍWSO£©£¬Ê¹¹¥»÷Õß¿ÉÄÜÆëÈ«½ÚÔìÍøÕ¾£¬½øÐиæ°××¢Èë¡¢Óû§³Á¶¨Ïò¡¢DDoS¹¥»÷¡¢Ö§¸¶¿¨ÐÅÏ¢ÇÔÈ¡»òÀÕË÷Èí¼þ¼ÓÃܵȶñÒâ»î¶¯¡£ÎªÌӱܼì²â£¬¸Ã²å¼þ»¹»á´Ó¿É¼û²å¼þÁбíÖÐɾ³ý×ÔÉí£¬²¢°µ²Ø¶ñÒâÕË»§¡£Patchstack×êÑÐÈËÔ±Ö¸³ö£¬Õâ´Î»î¶¯Óë2023ËêĺÕë¶ÔWordPressÓû§µÄÀàËÆ¹¥»÷´æÔÚ¹ØÁª£¬¾ùʹÓÃÁËÒ»×鲻Ѱ³£µÄWeb Shell¡¢Ò»ÑùµÄÓÐÐ§ÔØºÉ°µ²Ø²½Öè¼°ÀàËÆµÄÓʼþÄÚÈÝ¡£
https://www.bleepingcomputer.com/news/security/woocommerce-admins-targeted-by-fake-security-patches-that-hijack-sites/
3. Î÷ÐÂÄ«Î÷¸ç´óѧÔâ÷è÷ëºÚ¿Í×éÖ¯ÀÕË÷¹¥»÷
4ÔÂ27ÈÕ£¬½üÁ½ÖÜÀ´£¬Î÷ÐÂÄ«Î÷¸ç´óѧ£¨WNMU£©ÍøÕ¾¼°Êý×Öϵͳ³ÖÐøÔâ·êÍøÂç¹¥»÷£¬¾ÝÐÂÄ«Î÷¸çÖÝ̽Õյƹ«Ë¾»ñÈ¡µÄÎļþÏÔʾ£¬¹¥»÷ÕßÒÉΪ³ôÃûÔ¶ÑïµÄ¶íÓïºÚ¿Í×éÖ¯¡°÷è÷롱£¨Qilin£©£¬¸Ã×éÖ¯ÒòÔËÓª¡°ÀÕË÷Èí¼þ¼´·þÎñ¡±¶øÎÅÃû£¬¼¿Á©¶ñÁÓÇÒ²»Ôñ¼¿Á©¡£Õâ´Î¹¥»÷µ¼ÖÂѧÌÃÍøÕ¾ÎÞ·¨Ïò¹«¼ÒÊ¢¿ª£¬½ÌÈËÔ±¹¤ºÍѧÉúËäÄÜͨ¹ýµÚÈý·½Æ½Ì¨ÈçCanvas½øÐв¿Ã޲Êڻ£¬µ«Ïνӻ¥ÁªÍøµÄ½²Ìù¤¾ßÈç´òÓ¡»ú¡¢Í¶Ó°ÒǵÈÎÞ·¨Ê¹Óá£Ò»ÃûÔ±¹¤µçÄÔÆÁÄ»ÏÔʾÀ´×Ô¡°÷è÷롱µÄÀÕË÷ÐÅÏ¢£¬Ðû³ÆÒÑ»ñÈ¡Ô̺¬Ô±¹¤Ó×ÎÒÊý¾Ý¡¢¼òÀú¡¢¼ÝÕÕ¡¢Éç±£ºÅÂë¼°ÍøÂçµØÍ¼µÈÃô¸ÐÐÅÏ¢£¬²¢ÒªÇóÖ§¸¶Êê½ð£¬²»È»½«Ð¹Â¶Êý¾Ý¡£4ÔÂ25ÈÕ£¬WNMU·¢Ð½ÈÕµ±Ì죬¼ÆÊ±Ô±¹¤ºÍѧÉúÔ±¹¤°µÊ¾Î´ÊÕµ½Ö±½Ó´æ¿î£¬Ð£·½³ÆÎÊÌâÔ´ÓÚÎļþÉÏ´«ÒøÐеÄÒâ±í¸´ÔÓÇé¿ö£¬²¿ÃÅÔ±¹¤¿ÉÄÜÃæ¶Ô½øÒ»²½ÑÓ³¤£¬²¢³ÐŵÍË»¹ÒòÑÓ³¤²úÉúµÄ͸֧Óöȡ£¸ßµµ½ÌÓý²¿Ã޲»°È˰µÊ¾£¬»ú¹¹ÕýÓëÖÝÐÅÏ¢¼¼Êõ²¿ºÏ×÷ÆÀ¹ÀÎÊÌ⣬WNMUÒÑ·¢Õ¹Õýʽµ÷²éÒÔÈ·¶¨ÊÂÎñÁìÓò²¢²ÉÈ¡²¹¾È´ëÊ©¡£Ñ§ÌÃÒÑ×·Çó¸öÈËÍøÂ簲ȫ¹«Ë¾Ô®ÊÖ£¬²¢ÎªÑ§ÉúÌṩCanvas½Ó¼ûÁìµ¼£¬Í¬Ê±Î¬³ÖУ԰ʢ¿ª£¬µ«»¥ÁªÍø¡¢µç×ÓÓʼþµÈÏνÓÈÔÎÞ·¨Ê¹Óá£
https://databreaches.net/2025/04/27/russian-linked-hackers-appear-to-have-launched-a-crippling-cyberattack-on-western-new-mexico-university/
4. ΢Èí¸æ·¢Storm-1977Õë¶Ô½ÌÓýÔÆ×â»§µÄÃÜÂëÅçÈ÷¹¥»÷
4ÔÂ27ÈÕ£¬Î¢Èí½üÈÕÅû¶£¬Æä×·×ÙµÄÍþвÐÐΪÕßStorm-1977ÔÚ´ÓǰһÄêÖÐÕë¶Ô½ÌÓýÁìÓòÔÆ×â»§ÌáÒéÁËÃÜÂëÅçÈ÷¹¥»÷¡£Î¢ÈíÍþвµý±¨ÍŶӷÖÎöÖ¸³ö£¬Õâ´Î¹¥»÷ÀûÓÃÁËÃûΪAzureChecker.exeµÄºÅÁîÐнçÃæ£¨CLI£©¹¤¾ß£¬¸Ã¹¤¾ß±»¶à¸öÍþвÐÐΪÕß¿í·ºÊ¹Ó᣹¥»÷¹ý³ÌÖУ¬¸Ã¶þ½øÔìÎļþ»áÏνÓÖÁ±í²¿·þÎñÆ÷¡°sac-auth.nodefunction[.]vip¡±£¬ÒÔ»ñÈ¡AES¼ÓÃܵÄÃÜÂëÅçÈ÷Ö¸±êÁÐ±í¡£´Ë±í£¬¸Ã¹¤¾ß»¹½ÓÊÜÔ̺¬Óû§ÃûºÍÃÜÂë×éºÏµÄ¡°accounts.txt¡±Îı¾Îļþ×÷ΪÊäÈ룬ÍþвÐÐΪÕßÀûÓÃÕâÁ½¸öÎļþÖеÄÐÅÏ¢£¬¶ÔÖ¸±ê×â»§½øÐÐÆ¾Ö¤ÑéÖ¤¡£ÔÚÀ×µÂÃɵ¹۲쵽µÄһ·³É¹¦ÈëÇÖ°¸ÀýÖУ¬ÍþвÐÐΪÕßÀûÓÃÀ´±öÕÊ»§ÔÚÊÜϰȾ¶©ÔÄÖд´½¨×ÊÔ´×飬²¢½øÒ»²½ÔÚ×éÄÚ´´½¨200¶à¸öÈÝÆ÷£¬Òâͼ½øÐз¸·¨¼ÓÃÜÇ®±ÒÍÚ¾ò¡£Î¢ÈíÇ¿µ÷£¬ÈÝÆ÷»¯×ʲúÈçKubernetes¼¯Èº¡¢ÈÝÆ÷×¢²á±íºÍ¾µÏñµÈÒ×ÊܶàÖÖ¹¥»÷£¬Ô̺¬ÀûÓÃй¶µÄÔÆÆ¾Ö¤½øÐм¯ÈºÊÕÊÜ¡¢ÀûÓôæÔÚ·ì϶ºÍÃýÎóÅäÖõÄÈÝÆ÷¾µÏñÖ´ÐжñÒâ²Ù×÷¡¢Í¨¹ýÃýÎóÅäÖõÄÖÎÀí½Ó¿Ú½Ó¼ûKubernetes API²¢²¿Êð¶ñÒâÈÝÆ÷»ò½Ù³ÖÕû¸ö¼¯Èº£¬ÒÔ¼°ÔÚ½ÚµãÉÏÔËÐÐÒ×Êܹ¥»÷µÄ´úÂë»òÈí¼þ¡£
https://thehackernews.com/2025/04/storm-1977-hits-education-clouds-with.html
5. Commvault Innovation ReleaseÑϳÁ·ì϶Ð费Σ½¨¸´
4ÔÂ25ÈÕ£¬ÆóÒµÐ费ΣӦ¶ÔCommvault Innovation ReleaseÑϳÁ·ì϶CVE-2025-34028¡£¸Ã·ì϶´æÔÚÓÚCommvault Command CenterÆóÒµ¼¶±¸·ÝÓëÊý¾ÝÖÎÀí½â¾ö¹æ»®ÄÚ£¬CVSSÆÀ·Ö¸ß´ï9.0£¬¹¥»÷ÕßÎÞÐèµÇ¼¼´¿ÉÔ¶³ÌÖ´ÐÐËÁÒâ´úÂ룬½ø¶ø»ñȡϵͳÆëÈ«½ÚÔìȨ¡£·ì϶³ÉÒòÊÇ¡°deployWebpackage.do¡±Web½Ó¿Ú×é¼þδ¶Ô±í²¿·þÎñÆ÷½øÐÐÓÐЧÑéÖ¤£¬Ê¹ÆäÒ×Ôâ·êÔ¤ÈÏÖ¤·þÎñÆ÷¶ËÒªÇóαÔ죨SSRF£©¹¥»÷¡£¹¥»÷Õß¿ÉÀûÓô˷ì϶·¢ËÍÌØÔìZIPѹËõ°ü£¨ÄÚº¬¶ñÒâ¡°.JSP¡±Îļþ£©£¬Í¨¹ý¾«ÐÄÉè¼ÆÒªÇó²ÎÊý£¬½«¶ñÒâÎļþ×ªÒÆÖÁ¿É¹«¿ª½Ó¼ûµØÎ»²¢´¥·¢Ö´ÐУ¬´ï³ÉÔ¶³Ì´úÂëÖ´ÐÐÖ÷ÕÅ¡£¸Ã·ì϶ÓÉwatchTowr Labs×êÑÐÔ±ÓÚ2025Äê4ÔÂ7ÈÕ·¢ÏÖ²¢Éϱ¨£¬CommvaultÔÚ4ÔÂ17ÈÕ°²È«²¼¸æÖÐÈÏ¿ÉÆäÑϳÁÐÔ£¬Ö¸³ö¸Ã·ì϶¿ÉÄܵ¼ÖÂCommand Center»·¾³È«ÃæÊ§ÏÝ£¬½ø¶øÐ¹Â¼ûô¸ÐÊý¾Ý²¢ÖжϹؼüÒµÎñ¡£´Ë·ì϶½öÓ°ÏìLinuxºÍWindowsƽ̨¡°Innovation Release¡±Èí¼þ°æ±¾11.38.0ÖÁ11.38.19£¬ÆóÒµ½«ÏµÍ³Éý¼¶ÖÁ11.38.20»ò11.38.25°æ±¾¼´¿ÉʵÏÖ½¨¸´¡£
https://hackread.com/critical-commvault-flaw-allows-full-system-takeover/
6. ³¯ÏʺڿÍͨ¹ý¿Õ¿Ç¹«Ë¾´«²¼¶ñÒâÈí¼þ
4ÔÂ25ÈÕ£¬Ó볯ÏʹØÁªµÄÍþвÐÐΪ×éÖ¯¡°Contagious Interview¡±±»ÆØÍ¨¹ýÐéαÕÐÆ¸Á÷³ÌÉèÁ¢¿Õ¿Ç¹«Ë¾·Ö·¢¶ñÒâÈí¼þ¡£ÍøÂ簲ȫ¹«Ë¾Silent PushÉî¶È·ÖÎö·¢ÏÖ£¬¸Ã×éÖ¯ÔÚ×îлÖÐÀûÓüÓÃÜÇ®±ÒÕ÷ѯÐÐÒµµÄBlockNovas LLC¡¢Angeloper AgencyºÍSoftGlide LLCÈý¼Ò¿Õ¿Ç¹«Ë¾£¬ÒÔ¡°¿ÚÊÔµö¶ü¡±´«²¼BeaverTail¡¢InvisibleFerretºÍOtterCookieÈýÖÖÒÑÖª¶ñÒâÈí¼þ¼Ò×å¡£Õâ´Î¹¥»÷Êdz¯Ïʲ߶¯µÄ¶àÆðÕÐÆ¸Ö÷ÌâÉç»á¹¤³Ì¹¥»÷Ö®Ò»£¬¹¥»÷ÕßÒÔ±à³Ì¹¤×÷»ò½â¾öÊÓÆµ¿ÚÊÔ¼¼ÊõÎÊÌâΪ½è¿Ú£¬ÓÕµ¼Ö¸±êÏÂÔØ¿çƽ̨¶ñÒâÈí¼þ¡£Õâ´Î¹¥»÷³öÏÖÉý¼¶Ì¬ÊÆ£º¿Õ¿Ç¹«Ë¾ÍøÂç·½Ãæ£¬BlockNovas LLCËäÐû³ÆÓÐ14ÃûÔ±¹¤£¬µ«ÎÞÊýµµ°¸Î±Ô죬ÇÒ¹«Ë¾×¢²á¹¦·òÓëÐû³ÆµÄÔËÓªÄêÏÞ²»·û£»É罻ýÌå¼Ù×°ÉÏ£¬¹¥»÷ÕßÔÚ¶à¸öƽ̨´´½¨ÐéαÕË»§À©´ó´«²¼£»¹¥»÷Á´Ôòѡȡ¶à½×¶ÎÉè¼Æ£¬BeaverTail×÷ΪJavaScriptÇÔÈ¡Æ÷/¼ÓÔØÆ÷£¬Í¨¹ýÌØ¶¨ÓòÃû³ÉÁ¢C2ͨѶ²¢Í¶µÝÏÂÒ»½×¶ÎÔØºÉ£¬InvisibleFerretΪPythonºóÃÅ£¬Ö§³Ö¶àÆ½Ì¨ÓÆ¾Ã»¯²¢¿ÉÇÔÈ¡Ãô¸ÐÊý¾Ý£¬OtterCookieÔò²¿ÃÅͨ¹ýͳһJSÔØºÉ·Ö·¢¡£´Ë±í£¬BlockNovas×ÓÓòÃûÍйܡ°×´Ì¬ÒDZíÅÌ¡±¼à¿ØÓйØÓòÃû£¬ÇÒ×ÓÓòÃûÔËÐпªÔ´ÃÜÂëÆÆ½âϵͳ£¬²¿ÃÅÓòÃû»¹ÍйܼÓÃÜÇ®±ÒÇ®°ü¹¤¾ß¡£
https://thehackernews.com/2025/04/north-korean-hackers-spread-malware-via.html


¾©¹«Íø°²±¸11010802024551ºÅ