Brave¿ªÔ´CookiecrumblerÖÇÄܹýÂËCookie֪ͨ

°ä²¼¹¦·ò 2025-04-28

1. Brave¿ªÔ´CookiecrumblerÖÇÄܹýÂËCookie֪ͨ


4ÔÂ27ÈÕ £¬Brave¿ªÔ´ÁËÒ»¿îÃûΪ¡°Cookiecrumbler¡±µÄй¤¾ß £¬ÓÃÓÚ¼ì²â²¢ÓÅ»¯´¦ÖÃcookieÔÞ³É֪ͨ¡£×Ô2022ÄêÆð £¬Braveä¯ÀÀÆ÷±ãĬÈÏÔÚËùÓÐÍøÕ¾ÉÏ×èÖ¹cookieÔ޳ɺá·ù £¬µ«·¢Ïִ˾ٿÉÄܵ¼ÖÂÍøÕ¾³öÏÖÖ°ÄÜÎÊÌâ £¬Ó°Ïì¿ÉÓÃÐÔ¡£BraveÚ¹ÊͳÆ £¬¹ýÓÚ¿í·º»ò²»ÕýÈ·µÄ×èÖ¹Õ½Êõ¿ÉÄÜ·ÛËéÍøÕ¾¸ù»ùÖ°ÄÜ £¬Èç½áÕËÁ÷³ÌºÍÒ³Ãæ²¼¾Ö¡£ÔÚÏÖʵÀûÓÃÖÐ £¬²»¼Ó·Ö±æµØ×èÖ¹CookieÔÞ³É֪ͨÒÑÒý·¢¹ö¶¯Öжϡ¢Ò³Ãæ¿ÕȱµÈÎÊÌâ¡£CookiecrumblerÀûÓôóÐÍ˵»°Ä£ÐÍ£¨LLM£©¼¼Êõ £¬²éÕÒʹÓÃÔÞ³ÉÖÎÀíÆ½Ì¨£¨CMP£©µÄÍøÕ¾ £¬²¢·ÖÎöÆäcookieÔÞ³É֪ͨ¡£¸Ã¹¤¾ßͨ¹ýÉçÇøÇý¶¯µÄÆÀÂÛ»úÔì £¬×èÖ¹ÄÇЩ²»»á·ÛËéÍøÕ¾Ö°ÄܵÄ֪ͨ £¬´Ó¶øÔÚ±£»¤Óû§ÒþÖÔµÄͬʱ £¬Ï÷¼õ¶ÔÍøÕ¾Õý³£ÔËÐеÄ×ÌÈÅ¡£Æä¹¤×÷Á÷³ÌÔ̺¬£ºÊ¹ÓÃÇøÓò´úÀíץȡ¶¥¼¶ÍøÕ¾ £¬Í¨¹ýPuppeteer¼ÓÔØÒ³ÃæÒÔ¼ø±ðDZÔÚcookie֪ͨ £¬½«ÕâЩ֪ͨ´«µÝ¸øLLM½øÐзÖÀಢÌṩ½¨¸´½¨Òé £¬×îºó½«¼ì²âÁ˾ְ䲼ÖÁGitHubÏîÄ¿ £¬¹©Éç·Ö±æÀàºÍ¸Ä½ø¡£ÕâÒ»Á÷³ÌÈ·±£ÁË´ó¹æÄ£¡¢ÇøÓò¸ÐÖªµÄcookieºá·ù¼ì²âºÍ×èÖ¹ £¬Í¬Ê±½µµÍÁËÎó±¨ÂʺÍÕ¾µãÎÊÌâ¡£ÔÚÒþÖÔ±£»¤·½Ãæ £¬CookiecrumblerÆëÈ«ÔÚBraveºó¶ËÔËÐÐ £¬²»Éæ¼°ÈκÎÓû§Êý¾Ý¡£


https://www.bleepingcomputer.com/news/security/braves-cookiecrumbler-tool-taps-community-to-help-block-cookie-notices/


2. WooCommerceÓû§Ôâ·Âð°²È«¾¯±¨´¹µö¹¥»÷


4ÔÂ26ÈÕ £¬½üÈÕ £¬Ò»³¡´ó¹æÄ£ÍøÂç´¹µö»î¶¯Õë¶ÔWooCommerceÓû§·¢Õ¹ £¬Í¨¹ý·¢ËÍÐéα°²È«¾¯±¨Óʼþ £¬ÓÕµ¼ÆäÏÂÔØËùν¡°¹Ø¼ü²¹¶¡¡±ÒÔ½¨¸´¡°Î´¾­Éí·ÝÑéÖ¤µÄÖÎÀí½Ó¼û¡±·ì϶¡£Óʼþ¼ÙÒâWooCommerce¹Ù·½ £¬Ê¹Óá°help@security-woocommerce[.]com¡±µØÖ· £¬Ðû³ÆÍøÕ¾Ãæ¶ÔºÚ¿Í¹¥»÷·çÏÕ £¬²¢¸½Óд¹Î£ÏÂÔØ²¹¶¡µÄ°´Å¥¼°×°ÖÃ×¢Ã÷ £¬ÒÔÔì×÷½ôÆÈ¸Ð¡£Óû§µã»÷°´Å¥ºó £¬½«±»Êèµ¼ÖÁÒ»¸ö·ÂðµÄ¡°woocomm?rce[.]com¡±ÍøÕ¾£¨¸ÃÓòÃûÀûÓÃͬÐÎÒìÒå´Ê¹¥»÷¼¼Êõ £¬½«×Öĸ¡°e¡±´úÌæÎªÁ¢ÌÕÍð×Ö·û¡°?¡±£© £¬ÏÂÔØ²¢×°ÖÃÃûΪ¡°authbypass-update-31297-id.zip¡±µÄ¶ñÒâ²å¼þ¡£¸Ã²å¼þ×°Öúó £¬»á´´½¨Ò»¸öÿ·ÖÖÓÔËÐÐÒ»´ÎµÄËæ»úcronjob £¬ÊÔͼÔö³¤°µ²ØÖÎÀíÔ¹ØË»§ £¬²¢ÏòÌØ¶¨URL×¢²áÊÜϰȾվµã £¬»ñÈ¡µÚ¶þ½×¶Î»ìºÏÓÐЧ¸ºÔØ £¬½ø¶øÔÚÍøÕ¾Ä¿Â¼ÏÂ×°Ööà¸öPHP Web Shell£¨ÈçPAS-Form¡¢p0wnyºÍWSO£© £¬Ê¹¹¥»÷Õß¿ÉÄÜÆëÈ«½ÚÔìÍøÕ¾ £¬½øÐиæ°××¢Èë¡¢Óû§³Á¶¨Ïò¡¢DDoS¹¥»÷¡¢Ö§¸¶¿¨ÐÅÏ¢ÇÔÈ¡»òÀÕË÷Èí¼þ¼ÓÃܵȶñÒâ»î¶¯¡£ÎªÌӱܼì²â £¬¸Ã²å¼þ»¹»á´Ó¿É¼û²å¼þÁбíÖÐɾ³ý×ÔÉí £¬²¢°µ²Ø¶ñÒâÕË»§¡£Patchstack×êÑÐÈËÔ±Ö¸³ö £¬Õâ´Î»î¶¯Óë2023ËêĺÕë¶ÔWordPressÓû§µÄÀàËÆ¹¥»÷´æÔÚ¹ØÁª £¬¾ùʹÓÃÁËÒ»×鲻Ѱ³£µÄWeb Shell¡¢Ò»ÑùµÄÓÐÐ§ÔØºÉ°µ²Ø²½Öè¼°ÀàËÆµÄÓʼþÄÚÈÝ¡£


https://www.bleepingcomputer.com/news/security/woocommerce-admins-targeted-by-fake-security-patches-that-hijack-sites/


3. Î÷ÐÂÄ«Î÷¸ç´óѧÔâ÷è÷ëºÚ¿Í×éÖ¯ÀÕË÷¹¥»÷


4ÔÂ27ÈÕ £¬½üÁ½ÖÜÀ´ £¬Î÷ÐÂÄ«Î÷¸ç´óѧ£¨WNMU£©ÍøÕ¾¼°Êý×Öϵͳ³ÖÐøÔâ·êÍøÂç¹¥»÷ £¬¾ÝÐÂÄ«Î÷¸çÖÝ̽Õյƹ«Ë¾»ñÈ¡µÄÎļþÏÔʾ £¬¹¥»÷ÕßÒÉΪ³ôÃûÔ¶ÑïµÄ¶íÓïºÚ¿Í×éÖ¯¡°÷è÷롱£¨Qilin£© £¬¸Ã×éÖ¯ÒòÔËÓª¡°ÀÕË÷Èí¼þ¼´·þÎñ¡±¶øÎÅÃû £¬¼¿Á©¶ñÁÓÇÒ²»Ôñ¼¿Á©¡£Õâ´Î¹¥»÷µ¼ÖÂѧÌÃÍøÕ¾ÎÞ·¨Ïò¹«¼ÒÊ¢¿ª £¬½ÌÈËÔ±¹¤ºÍѧÉúËäÄÜͨ¹ýµÚÈý·½Æ½Ì¨ÈçCanvas½øÐв¿Ã޲Êڻ £¬µ«Ïνӻ¥ÁªÍøµÄ½²Ìù¤¾ßÈç´òÓ¡»ú¡¢Í¶Ó°ÒǵÈÎÞ·¨Ê¹Óá£Ò»ÃûÔ±¹¤µçÄÔÆÁÄ»ÏÔʾÀ´×Ô¡°÷è÷롱µÄÀÕË÷ÐÅÏ¢ £¬Ðû³ÆÒÑ»ñÈ¡Ô̺¬Ô±¹¤Ó×ÎÒÊý¾Ý¡¢¼òÀú¡¢¼ÝÕÕ¡¢Éç±£ºÅÂë¼°ÍøÂçµØÍ¼µÈÃô¸ÐÐÅÏ¢ £¬²¢ÒªÇóÖ§¸¶Êê½ð £¬²»È»½«Ð¹Â¶Êý¾Ý¡£4ÔÂ25ÈÕ £¬WNMU·¢Ð½ÈÕµ±Ìì £¬¼ÆÊ±Ô±¹¤ºÍѧÉúÔ±¹¤°µÊ¾Î´ÊÕµ½Ö±½Ó´æ¿î £¬Ð£·½³ÆÎÊÌâÔ´ÓÚÎļþÉÏ´«ÒøÐеÄÒâ±í¸´ÔÓÇé¿ö £¬²¿ÃÅÔ±¹¤¿ÉÄÜÃæ¶Ô½øÒ»²½ÑÓ³¤ £¬²¢³ÐŵÍË»¹ÒòÑÓ³¤²úÉúµÄ͸֧ÓöÈ¡£¸ßµµ½ÌÓý²¿Ã޲»°È˰µÊ¾ £¬»ú¹¹ÕýÓëÖÝÐÅÏ¢¼¼Êõ²¿ºÏ×÷ÆÀ¹ÀÎÊÌâ £¬WNMUÒÑ·¢Õ¹Õýʽµ÷²éÒÔÈ·¶¨ÊÂÎñÁìÓò²¢²ÉÈ¡²¹¾È´ëÊ©¡£Ñ§ÌÃÒÑ×·Çó¸öÈËÍøÂ簲ȫ¹«Ë¾Ô®ÊÖ £¬²¢ÎªÑ§ÉúÌṩCanvas½Ó¼ûÁìµ¼ £¬Í¬Ê±Î¬³ÖУ԰ʢ¿ª £¬µ«»¥ÁªÍø¡¢µç×ÓÓʼþµÈÏνÓÈÔÎÞ·¨Ê¹Óá£


https://databreaches.net/2025/04/27/russian-linked-hackers-appear-to-have-launched-a-crippling-cyberattack-on-western-new-mexico-university/


4. ΢Èí¸æ·¢Storm-1977Õë¶Ô½ÌÓýÔÆ×â»§µÄÃÜÂëÅçÈ÷¹¥»÷


4ÔÂ27ÈÕ £¬Î¢Èí½üÈÕÅû¶ £¬Æä×·×ÙµÄÍþвÐÐΪÕßStorm-1977ÔÚ´ÓǰһÄêÖÐÕë¶Ô½ÌÓýÁìÓòÔÆ×â»§ÌáÒéÁËÃÜÂëÅçÈ÷¹¥»÷¡£Î¢ÈíÍþвµý±¨ÍŶӷÖÎöÖ¸³ö £¬Õâ´Î¹¥»÷ÀûÓÃÁËÃûΪAzureChecker.exeµÄºÅÁîÐнçÃæ£¨CLI£©¹¤¾ß £¬¸Ã¹¤¾ß±»¶à¸öÍþвÐÐΪÕß¿í·ºÊ¹Ó᣹¥»÷¹ý³ÌÖÐ £¬¸Ã¶þ½øÔìÎļþ»áÏνÓÖÁ±í²¿·þÎñÆ÷¡°sac-auth.nodefunction[.]vip¡± £¬ÒÔ»ñÈ¡AES¼ÓÃܵÄÃÜÂëÅçÈ÷Ö¸±êÁбí¡£´Ë±í £¬¸Ã¹¤¾ß»¹½ÓÊÜÔ̺¬Óû§ÃûºÍÃÜÂë×éºÏµÄ¡°accounts.txt¡±Îı¾Îļþ×÷ΪÊäÈë £¬ÍþвÐÐΪÕßÀûÓÃÕâÁ½¸öÎļþÖеÄÐÅÏ¢ £¬¶ÔÖ¸±ê×â»§½øÐÐÆ¾Ö¤ÑéÖ¤¡£ÔÚÀ×µÂÃɵ¹۲쵽µÄһ·³É¹¦ÈëÇÖ°¸ÀýÖÐ £¬ÍþвÐÐΪÕßÀûÓÃÀ´±öÕÊ»§ÔÚÊÜϰȾ¶©ÔÄÖд´½¨×ÊÔ´×é £¬²¢½øÒ»²½ÔÚ×éÄÚ´´½¨200¶à¸öÈÝÆ÷ £¬Òâͼ½øÐз¸·¨¼ÓÃÜÇ®±ÒÍÚ¾ò¡£Î¢ÈíÇ¿µ÷ £¬ÈÝÆ÷»¯×ʲúÈçKubernetes¼¯Èº¡¢ÈÝÆ÷×¢²á±íºÍ¾µÏñµÈÒ×ÊܶàÖÖ¹¥»÷ £¬Ô̺¬ÀûÓÃй¶µÄÔÆÆ¾Ö¤½øÐм¯ÈºÊÕÊÜ¡¢ÀûÓôæÔÚ·ì϶ºÍÃýÎóÅäÖõÄÈÝÆ÷¾µÏñÖ´ÐжñÒâ²Ù×÷¡¢Í¨¹ýÃýÎóÅäÖõÄÖÎÀí½Ó¿Ú½Ó¼ûKubernetes API²¢²¿Êð¶ñÒâÈÝÆ÷»ò½Ù³ÖÕû¸ö¼¯Èº £¬ÒÔ¼°ÔÚ½ÚµãÉÏÔËÐÐÒ×Êܹ¥»÷µÄ´úÂë»òÈí¼þ¡£


https://thehackernews.com/2025/04/storm-1977-hits-education-clouds-with.html


5. Commvault Innovation ReleaseÑϳÁ·ì϶Ð费Σ½¨¸´


4ÔÂ25ÈÕ £¬ÆóÒµÐ费ΣӦ¶ÔCommvault Innovation ReleaseÑϳÁ·ì϶CVE-2025-34028¡£¸Ã·ì϶´æÔÚÓÚCommvault Command CenterÆóÒµ¼¶±¸·ÝÓëÊý¾ÝÖÎÀí½â¾ö¹æ»®ÄÚ £¬CVSSÆÀ·Ö¸ß´ï9.0 £¬¹¥»÷ÕßÎÞÐèµÇ¼¼´¿ÉÔ¶³ÌÖ´ÐÐËÁÒâ´úÂë £¬½ø¶ø»ñȡϵͳÆëÈ«½ÚÔìȨ¡£·ì϶³ÉÒòÊÇ¡°deployWebpackage.do¡±Web½Ó¿Ú×é¼þδ¶Ô±í²¿·þÎñÆ÷½øÐÐÓÐЧÑéÖ¤ £¬Ê¹ÆäÒ×Ôâ·êÔ¤ÈÏÖ¤·þÎñÆ÷¶ËÒªÇóαÔ죨SSRF£©¹¥»÷¡£¹¥»÷Õß¿ÉÀûÓô˷ì϶·¢ËÍÌØÔìZIPѹËõ°ü£¨ÄÚº¬¶ñÒâ¡°.JSP¡±Îļþ£© £¬Í¨¹ý¾«ÐÄÉè¼ÆÒªÇó²ÎÊý £¬½«¶ñÒâÎļþ×ªÒÆÖÁ¿É¹«¿ª½Ó¼ûµØÎ»²¢´¥·¢Ö´ÐÐ £¬´ï³ÉÔ¶³Ì´úÂëÖ´ÐÐÖ÷ÕÅ¡£¸Ã·ì϶ÓÉwatchTowr Labs×êÑÐÔ±ÓÚ2025Äê4ÔÂ7ÈÕ·¢ÏÖ²¢Éϱ¨ £¬CommvaultÔÚ4ÔÂ17ÈÕ°²È«²¼¸æÖÐÈÏ¿ÉÆäÑϳÁÐÔ £¬Ö¸³ö¸Ã·ì϶¿ÉÄܵ¼ÖÂCommand Center»·¾³È«ÃæÊ§ÏÝ £¬½ø¶øÐ¹Â¼ûô¸ÐÊý¾Ý²¢ÖжϹؼüÒµÎñ¡£´Ë·ì϶½öÓ°ÏìLinuxºÍWindowsƽ̨¡°Innovation Release¡±Èí¼þ°æ±¾11.38.0ÖÁ11.38.19 £¬ÆóÒµ½«ÏµÍ³Éý¼¶ÖÁ11.38.20»ò11.38.25°æ±¾¼´¿ÉʵÏÖ½¨¸´¡£


https://hackread.com/critical-commvault-flaw-allows-full-system-takeover/


6. ³¯ÏʺڿÍͨ¹ý¿Õ¿Ç¹«Ë¾´«²¼¶ñÒâÈí¼þ


4ÔÂ25ÈÕ £¬Ó볯ÏʹØÁªµÄÍþвÐÐΪ×éÖ¯¡°Contagious Interview¡±±»ÆØÍ¨¹ýÐéαÕÐÆ¸Á÷³ÌÉèÁ¢¿Õ¿Ç¹«Ë¾·Ö·¢¶ñÒâÈí¼þ¡£ÍøÂ簲ȫ¹«Ë¾Silent PushÉî¶È·ÖÎö·¢ÏÖ £¬¸Ã×éÖ¯ÔÚ×îлÖÐÀûÓüÓÃÜÇ®±ÒÕ÷ѯÐÐÒµµÄBlockNovas LLC¡¢Angeloper AgencyºÍSoftGlide LLCÈý¼Ò¿Õ¿Ç¹«Ë¾ £¬ÒÔ¡°¿ÚÊÔµö¶ü¡±´«²¼BeaverTail¡¢InvisibleFerretºÍOtterCookieÈýÖÖÒÑÖª¶ñÒâÈí¼þ¼Ò×å¡£Õâ´Î¹¥»÷Êdz¯Ïʲ߶¯µÄ¶àÆðÕÐÆ¸Ö÷ÌâÉç»á¹¤³Ì¹¥»÷Ö®Ò» £¬¹¥»÷ÕßÒÔ±à³Ì¹¤×÷»ò½â¾öÊÓÆµ¿ÚÊÔ¼¼ÊõÎÊÌâΪ½è¿Ú £¬ÓÕµ¼Ö¸±êÏÂÔØ¿çƽ̨¶ñÒâÈí¼þ¡£Õâ´Î¹¥»÷³öÏÖÉý¼¶Ì¬ÊÆ£º¿Õ¿Ç¹«Ë¾ÍøÂç·½Ãæ £¬BlockNovas LLCËäÐû³ÆÓÐ14ÃûÔ±¹¤ £¬µ«ÎÞÊýµµ°¸Î±Ôì £¬ÇÒ¹«Ë¾×¢²á¹¦·òÓëÐû³ÆµÄÔËÓªÄêÏÞ²»·û£»É罻ýÌå¼Ù×°ÉÏ £¬¹¥»÷ÕßÔÚ¶à¸öƽ̨´´½¨ÐéαÕË»§À©´ó´«²¼£»¹¥»÷Á´Ôòѡȡ¶à½×¶ÎÉè¼Æ £¬BeaverTail×÷ΪJavaScriptÇÔÈ¡Æ÷/¼ÓÔØÆ÷ £¬Í¨¹ýÌØ¶¨ÓòÃû³ÉÁ¢C2ͨѶ²¢Í¶µÝÏÂÒ»½×¶ÎÔØºÉ £¬InvisibleFerretΪPythonºóÃÅ £¬Ö§³Ö¶àÆ½Ì¨ÓÆ¾Ã»¯²¢¿ÉÇÔÈ¡Ãô¸ÐÊý¾Ý £¬OtterCookieÔò²¿ÃÅͨ¹ýͳһJSÔØºÉ·Ö·¢¡£´Ë±í £¬BlockNovas×ÓÓòÃûÍйܡ°×´Ì¬ÒDZíÅÌ¡±¼à¿ØÓйØÓòÃû £¬ÇÒ×ÓÓòÃûÔËÐпªÔ´ÃÜÂëÆÆ½âϵͳ £¬²¿ÃÅÓòÃû»¹ÍйܼÓÃÜÇ®±ÒÇ®°ü¹¤¾ß¡£


https://thehackernews.com/2025/04/north-korean-hackers-spread-malware-via.html