¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180619
Ðû²¼Ê±¼ä 2018-06-19¡¾ÆÊÎö±¨¸æ¡¿Ñо¿ÍŶÓÐû²¼2018ÄêQ1ÍøÂç´¹ÂÚ¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ
Palo Alto NetworksµÄUnit42Ñо¿ÍŶÓͳ¼ÆÁË2018ÄêµÚÒ»¼¾¶È£¨1ÔÂÖÁ3ÔÂʱ´ú£©µÄÍøÂç´¹ÂÚ¹¥»÷£¬£¬£¬¹²·¢Ã÷ÁËÀ´×Ô262¸ö²î±ðÓòÃûµÄ4213¸ö´¹ÂÚURL£¬£¬£¬Æ½¾ùÒ»¸öÓòÃû¹ØÁª16¸ö²î±ðµÄ´¹ÂÚURL¡£¡£¡£¡£¡£¡£¡£Ô¼150¸ö´¹ÂÚÓòÃûÍйÜÔÚÃÀ¹ú£¬£¬£¬Æä´ÎÊǵ¹ú£¨28¸ö£©ºÍ²¨À¼£¨13¸ö£©¡£¡£¡£¡£¡£¡£¡£ÓÐ2066¸ö´¹ÂÚURLʹÓÃͨÓô¹ÂÚÄ£°å£¬£¬£¬Ê¹Æä¿ÉÒÔÕë¶Ô¶à¸ö²î±ðµÄ¹«Ë¾»ò×éÖ¯¡£¡£¡£¡£¡£¡£¡£À´×ÔÓÚ46¸ö²î±ðÓòÃûµÄ1010¸ö´¹ÂÚURLÊÇ»ùÓÚHTTPSµÄ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://researchcenter.paloaltonetworks.com/2018/06/unit42-phishing-nutshell-january-march-2018/


¡¾¶ñÒâÈí¼þ¡¿Ñо¿Ö°Ô±·¢Ã÷Ö÷ÒªÕë¶ÔÃÀ¹úWin10Óû§µÄ¹ã¸æÈí¼þZacinlo
BitdefenderµÄÇå¾²Ñо¿Ö°Ô±·¢Ã÷Ö÷ÒªÕë¶ÔÃÀ¹úWin10Óû§µÄ¹ã¸æÈí¼þZacinlo¡£¡£¡£¡£¡£¡£¡£Zacinlo°üÀ¨Ò»¸örootkitÄ£¿£¿£¿£¿£¿£¿£¿é£¬£¬£¬¸ÃÄ£¿£¿£¿£¿£¿£¿£¿é¿É×èÖ¹¶Ô¹ã¸æÈí¼þ¹¦Ð§Ôì³ÉΣÏÕµÄÀú³Ì£¬£¬£¬Í¬Ê±±£»£»£»¤¹ã¸æÈí¼þ²»±»×èµ²»òɾ³ý¡£¡£¡£¡£¡£¡£¡£Zacinlo´Ó2012ÄêÆð×îÏÈ»îÔ¾£¬£¬£¬Ëü¿ÉÒÔÖ´ÐÐÖÐÐÄÈ˹¥»÷£¬£¬£¬½«¹ã¸æ×¢Èëµ½Óû§»á¼ûµÄÍøÒ³ÖУ¬£¬£¬ÉõÖÁ»¹¿ÉÒÔ¾ÙÐÐ½ØÆÁ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/rootkit-based-adware-wreaks-havoc-among-windows-10-users-in-the-us/


¡¾Îó²î²¹¶¡¡¿ÈðµäAxis Communications ABÐÞ¸´392¸öÉãÏñ»úÐͺÅÖеÄ7¸öÇå¾²Îó²î
Èðµä³§ÉÌAxis Communications ABÐÞ¸´ÁË392¸öÉãÏñ»úÐͺÅÖеÄ7¸öÇå¾²Îó²î£¬£¬£¬°üÀ¨¿Éµ¼ÖÂ/bin/ssidÀú³ÌÍß½âµÄÎó²î£¨CVE-2018-10658ºÍCVE-2018-10659£©¡¢ShellÏÂÁî×¢ÈëÎó²î£¨CVE-2018-10660£©¡¢È¨ÏÞÈÆ¹ýÎó²î£¨CVE-2018-10661£©¡¢dbus»á¼û²»ÊÜÏÞÎó²î£¨CVE-2018-10662£©¡¢ÐÅϢй¶Îó²î£¨CVE-2018-10663£©ºÍ¿Éµ¼ÖÂhttpdÀú³ÌÍß½âµÄÎó²î£¨CVE-2018-10664£©¡£¡£¡£¡£¡£¡£¡£Çå¾²³§ÉÌVDOO·¢Ã÷ÁËÕâЩÎó²î£¬£¬£¬²¢Åû¶ÁËÏà¹ØPoC¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/vendor-patches-seven-vulnerabilities-across-392-camera-models/


¡¾ÍþвÇ鱨¡¿US-CERTÕë¶Ô³¯ÏʶñÒâÈí¼þTypeframeÐû²¼ÖÒÑÔ
US-CERTÕë¶Ô³¯ÏʵÄжñÒâÈí¼þTypeframeÐû²¼ÖÒÑÔ£¬£¬£¬¸Ã¶ñÒâÈí¼þÓ볯ÏÊAPT×éÖ¯Hidden CobraÓйء£¡£¡£¡£¡£¡£¡£Õâ·Ý¶ñÒâÈí¼þÆÊÎö±¨¸æ£¨MAR£©ÓÉÃÀ¹úÁìÍÁÇå¾²²¿£¨DHS£©ºÍÁª°îÊÓ²ì¾Ö£¨FBI£©ÅäºÏ±àд£¬£¬£¬±¨¸æÖÐÆÊÎöÁ˶ñÒâÈí¼þµÄ11¸öÑù±¾£¬£¬£¬Æä¹¦Ð§°üÀ¨ÏÂÔØºÍ×°ÖöñÒâÈí¼þ¡¢×°ÖÃÊðÀíºÍRAT¡¢ÅþÁ¬C2ЧÀÍÆ÷²¢½ÓÊÜÖ¸ÁîÒÔ¼°Ð޸ķÀ»ðǽµÈ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.infosecurity-magazine.com/news/uscert-uncovers-north-korean/


¡¾ÍþвÇ鱨¡¿Ñо¿Ö°Ô±ÖÒÑԳƶñÒâÈí¼þͨ¹ýαװ³É±¤ÀÝÖ®Ò¹°²×¿°æ¾ÙÐÐÈö²¥
ESETµÄ¶ñÒâÈí¼þÑо¿Ö°Ô±Lukas Stefanko·¢Ã÷²¿·Ö¶ñÒâÈí¼þͨ¹ýαװ³É±¤ÀÝÖ®Ò¹µÄ°²×¿°æ¾ÙÐÐÈö²¥¡£¡£¡£¡£¡£¡£¡£±¤ÀÝÖ®Ò¹ÔÚÈ«ÇòÓµÓÐÁè¼Ý1.25ÒÚÍæ¼Ò£¬£¬£¬µ«Æä¹Ù·½°²×¿°æ±¾ÉÐδÐû²¼¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷GoogleºÍYouTubeÉϵÄһЩÊÓÆµºÍÁ´½ÓÉù³ÆÆä°üÀ¨±¤ÀÝÖ®Ò¹µÄAPKÎļþ£¬£¬£¬»òÊÇÖ¸µ¼Óû§×°ÖÃһЩÆäËüÓ¦ÓÃÒÔ½âËø¸ÃÓÎÏ·£¬£¬£¬Õ⽫¸ø¶ñÒâÈí¼þ¿ª·¢Ö°Ô±´øÀ´ÊÕÈë»òËðº¦Óû§µÄ°²×¿×°±¸¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/06/fortnite-for-android-apk.html


¡¾ÍþвÇ鱨¡¿°²µÏAndroidÄ£ÄâÆ÷±»ÆØÔÚÓû§µÄ»úеÉÏ×°ÖÃGPUÍÚ¿óÈí¼þ
RedditÓû§TopWireÔÚһƪÎÄÕÂÖгư²µÏAndroidÄ£ÄâÆ÷ÔÚÓû§²»ÖªÇéµÄÇéÐÎÏÂ×°ÖÃÁËÒ»¸öGPUÍÚ¿óÈí¼þ£¬£¬£¬¸Ã¿ó¹¤ÔÚÔËÐÐʱ»áºÄ¾¡Óû§µÄGPU×ÊÔ´¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÎļþÊǰ²µÏAndroidÄ£ÄâÆ÷ÔÚ×°ÖÃʱ½¨ÉèµÄÒ»¸öupdater.exe£¬£¬£¬VirusTotalµÄɨÃèЧ¹ûÏÔʾÕâÊÇÒ»¸ö¶ñÒâ¿ó¹¤¡£¡£¡£¡£¡£¡£¡£°²µÏ¿ª·¢Ö°Ô±ÉÐδ¾ÙÐлØÓ¦¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/andy-os-android-emulator-reportedly-installing-a-gpu-miner/


¾©¹«Íø°²±¸11010802024551ºÅ