McAfeeÐû²¼2020ÄêÍøÂçÍþвÇ÷ÊÆÕ¹Íû±¨¸æ£»£»£»£»ÄªË¹¿Æ¶¼»á¼à¿ØÏµÍ³»á¼ûȨÏÞÔÚ°µÍø³öÊÛ

Ðû²¼Ê±¼ä 2019-12-09


1.Ñо¿ÍŶÓÐû²¼ÀÕË÷Èí¼þ¼Ò×åLooCipherµÄÆÊÎö±¨¸æ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


LooCipherÊǽñÄêзºÆðµÄÒ»¸öÀÕË÷Èí¼þ¼Ò×壬£¬£¬Æ¾Ö¤McAfeeµÄÆÊÎö±¨¸æ£¬£¬£¬¸ÃÀÕË÷Èí¼þÖ÷Ҫͨ¹ýDOCÎļþÈö²¥¡£¡£¡£¡£¡£¡£¡£ÓëÆäËü¶ñÒâÈí¼þÏà±È£¬£¬£¬¸ÃDOCÎļþÏ൱´Ö²Ú£¬£¬£¬Ã»ÓнÓÄÉÈκÎÉç»á¹¤³ÌÊÖÒÕ£¬£¬£¬ÄÚÀïµÄÄÚÈÝÖ»ÓÐÒ»¾ä»°¡°ÆôÓúêÀ´Éó²éÎĵµ¡±¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâºê»á´ÓÔ¶³ÌЧÀÍÆ÷ÏÂÔØLooCipher¡£¡£¡£¡£¡£¡£¡£LooCipherÔÚ¼ÓÃÜÀú³ÌÖÐʹÓÃAES-ECB¼ÓÃÜËã·¨£¬£¬£¬²¢ÇÒËùÓÐÎļþµÄÃÜÔ¿¾ùÏàͬ£¬£¬£¬ÆäÄ¿µÄÎļþµÄÀ©Õ¹ÃûÁÐ±í±»Ó²±àÂëÔÚ¶þ½øÖÆÎļþÖС£¡£¡£¡£¡£¡£¡£LooCipherµÄBTCµØµãÖÐÉÐûÓÐÈκÎÉúÒ⣬£¬£¬ÕâÅú×¢Æä×÷ÕßÉÐδ´ÓÖÐ׬Ǯ¡£¡£¡£¡£¡£¡£¡£ÏêϸIoCÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£¡£¡£¡£¡£¡£¡£


  Ô­ÎÄÁ´½Ó£º

https://securingtomorrow.mcafee.com/blogs/other-blogs/mcafee-labs/analysis-of-loocipher-a-new-ransomware-family-observed-this-year/


2.AvastÅû¶Ö÷ÒªÕë¶Ô°ÍÎ÷¹«ÃñµÄÍøÂç´¹Âڻ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


11ÔÂÏÂÑ®AvastÑо¿ÍŶӷ¢Ã÷ÁËÒ»¸öʹÓðÍÎ÷Óû§µÄ·ÓÉÆ÷½«ÆäÖØ¶¨Ïòµ½´¹ÂÚÍøÕ¾µÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾Î±×°³ÉÒøÐС¢ÐÂÎÅÍøÕ¾ºÍNetflixµÄ¹ÙÍøµÈ¡£¡£¡£¡£¡£¡£¡£ÕâÖÖ¹¥»÷ͨ³£ÔÚÓû§»á¼û´øÓжñÒâ¹ã¸æµÄÊÜÑ¬È¾ÍøÕ¾Ê±Æô¶¯£¬£¬£¬Óû§½«±»×Ô¶¯Öض¨Ïòµ½Á½¸ö·ÓÉÆ÷EKµÄ׎ҳÖУ¬£¬£¬´Ó¶øÔÚºǫ́ÎÞÐèÓû§¸ÉÔ¤¾ÍÌᳫ¶Ô·ÓÉÆ÷µÄ¹¥»÷¡£¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬Óû§µÄ·ÓÉÆ÷½«Æä´ÓÕæÊµµÄÓªÒµÒ³ÃæÖØ¶¨Ïòµ½ÏàËÆµÄÍøÂç´¹ÂÚÕ¾µã¡£¡£¡£¡£¡£¡£¡£11ÔÂ25ÈÕAvast×èÖ¹µÄÁ½¸ö´¹ÂÚÍøÕ¾¾ÍѬȾÁ˽ü5500¸öÓû§µÄ·ÓÉÆ÷¡£¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://blog.avast.com/avast-threat-labs-uncovers-brazil-cyberattacks


3.ÐéαVPNÍøÕ¾ÏòÓû§ÍÆËÍVidarºÍCryptBotľÂí


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


BleepingComputer·¢Ã÷Ò»¸öαװ³ÉInter VPNÍÆ¹ãÍøÕ¾µÄÐéαվµã£¬£¬£¬¸ÃÍøÕ¾Ö÷Òª·Ö·¢ÐÅÏ¢ÇÔȡľÂíVidarºÍCryptBot¡£¡£¡£¡£¡£¡£¡£¸ÃÍøÕ¾ÏÔʾµÄVPN¿Í»§¶ËͼƬÏÖʵÉÏÊÇÕýµ±Èí¼þVPN ProµÄͼƬ£¬£¬£¬ÆäÏÂÔØµÄ³ÌÐò½«Ê¹ÓÃAutoHotKey¾ç±¾ÅþÁ¬µ½iplogger.org£¬£¬£¬È»ºóƾ֤¸ÃÍøÕ¾ÉϵÄÄ¿½ñ·Ö·¢»î¶¯´Óbitbucket.org ÏÂÔØVidarºÍCryptBot¿ÉÖ´ÐÐÎļþ¡£¡£¡£¡£¡£¡£¡£ÕâЩľÂí¿ÉÇÔÈ¡Óû§µÄä¯ÀÀÆ÷ƾ֤¡¢Cookie¡¢×ÀÃæ½ØÆÁ¡¢Îı¾ÎļþÒÔ¼°¼ÓÃÜÇ®±ÒÇ®°üµÈ¡£¡£¡£¡£¡£¡£¡£ÓÉÓÚÏÂÔØµÄ×°Öðü´ò°üÁËÕýµ±µÄVPN ProÈí¼þ£¬£¬£¬Òò´ËÓû§¿ÉÄÜÄÑÒÔ·¢Ã÷ÔÚºǫ́ÔËÐеÄľÂí¡£¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fake-vpn-site-pushes-cryptbot-and-vidar-info-stealing-trojans/


4.Ñо¿±¨¸æ³ÆÓ¢¹úÐÅÓÿ¨Ú²Æ­ËðʧռÕû¸öÅ·ÖÞµÄÒ»°ë


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


ƾ֤FICOµÄ×îÐÂÊÓ²ìЧ¹û£¬£¬£¬ÓÉÓÚÊý¾Ýй¶ºÍÔÚÏßڲƭÊÂÎñµÄ¼¤Ôö£¬£¬£¬Ó¢¹úÐÅÓÿ¨Ú²Æ­Ôì³ÉµÄËðʧÏÖÔÚÕ¼Õû¸öÅ·ÖÞµÄÒ»°ë¡£¡£¡£¡£¡£¡£¡£Æ¾Ö¤¸Ã¹«Ë¾Ðû²¼µÄ»¥¶¯Ê½¡¶Å·ÖÞڲƭµØÍ¼¡·£¬£¬£¬2018ÄêÓ¢¹úÐÅÓÿ¨Ú²Æ­ËðʧµÖ´ïÁË´´¼Í¼µÄ6.71ÒÚÓ¢°÷£¬£¬£¬±ÈÉÏÒ»ÄêÔöÌí19£¥¡£¡£¡£¡£¡£¡£¡£¸ÃÊý×ÖÏÕЩռµØÍ¼ÉÏÅ·ÖÞ19¸ö¹ú¼Ò×ܶî16ÒÚÅ·Ôª£¨14ÒÚÓ¢°÷£©µÄÒ»°ë¡£¡£¡£¡£¡£¡£¡£Ó¢¹úµÄ´ó²¿·ÖڲƭËðʧ£¨5.064ÒÚÓ¢°÷£©À´×ÔÎÞ¿¨Ú²Æ­£¨CNP£©ÇþµÀ£¬£¬£¬ÕâЩÇþµÀÏÖÔÚ¶¼±»ÔÚÏßڲƭËù¿ØÖÆ¡£¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/uk-card-fraud-losses/


5.McAfeeÐû²¼2020ÄêÍøÂçÍþвÇ÷ÊÆÕ¹Íû±¨¸æ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


McAfee¶Ô2020ÄêµÄÍþвÇ÷ÊÆÕ¹Íû°üÀ¨£ºÊÖÒÕ½ÏÈõµÄ¹¥»÷Õß½«¸ü¶àµØ½ÓÄÉDeepfakeÔöÇ¿ÆäÐÅÏ¢Õ½µÄÄÜÁ¦£¬£¬£¬ÀýÈçαÔìÆóÒµCEOµÄÊÓÆµ/ÒôƵÉùÃ÷À´Ê¹ÓùɼۻòÒý·¢ÆäËü½ðÈÚ·¸·¨£»£»£»£»Ê¹ÓÃDeepfakeÀ´ÈƹýÈËÁ³Ê¶±ð£»£»£»£»ÀÕË÷Èí¼þ¹¥»÷½«ÑݱäΪ˫½×¶Î¹¥»÷£¬£¬£¬ÀýÈçÔÚÀÕË÷Èí¼þ¹¥»÷ÏÖʵ±¬·¢Ç°×°ÖöñÒâ¿ó¹¤»òÇÔÈ¡ÆóÒµÉñÃØÐÅÏ¢£»£»£»£»API½«³ÉÎªÔÆÔ­ÉúÍþвµÄ×Èõ»·½Ú£»£»£»£»Ëæ×ÅÈÝÆ÷»¯ÊÂÇé¸ºÔØµÄÔöÌíµ¼ÖÂÇå¾²¿ØÖÆÏò¡°×óÒÆ¡±£¬£¬£¬DevSecOps½«»áÔ½·¢Í»³ö¡£¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://securingtomorrow.mcafee.com/blogs/other-blogs/mcafee-labs/mcafee-labs-2020-threats-predictions-report/


6.Ī˹¿Æ¶¼»á¼à¿ØÏµÍ³»á¼ûȨÏÞÔÚ°µÍø³öÊÛ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


MBKh MediaÊÓ²ì¼ÇÕßAndrey Kaganskikh·¢Ã÷Ī˹¿Æ¶¼»á¼à¿ØÏµÍ³ºÍÃæ²¿Ê¶±ðÊý¾ÝµÄ»á¼ûȨÏÞÕýÔÚµØÏÂÂÛ̳ºÍ̸ÌìÊÒÖгöÊÛ¡£¡£¡£¡£¡£¡£¡£AndreyÌåÏÖÂô·½ÊÇÖ´·¨Ö°Ô±/Õþ¸®¹ÙÔ±£¬£¬£¬¿ÉÒԵǼĪ˹¿Æ¶¼»á¼àÊÓϵͳµÄÊý¾Ý´¦Öóͷ£ºÍ´æ´¢¼¯³ÉÖÐÐÄ£¨YTKD£©¡£¡£¡£¡£¡£¡£¡£¹ºÖÃÁËÉãÏñͷȨÏÞµÄÓû§½«»áÊÕµ½Ö¸Ïò¶¼»áCCTVϵͳµÄÒ»¸öÁ´½Ó£¬£¬£¬¸ÃÁ´½Ó¿É»á¼ûËùÓй«¹²ÉãÏñÍ·£¬£¬£¬Æä¿ÉÓÃʱ¼äΪ5Ìì¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬¾ßÓÐÎÞÏÞ»á¼ûȨÏ޵ĵǼƾ֤¼ÛǮΪ30000¬²¼£¨470ÃÀÔª£©¡£¡£¡£¡£¡£¡£¡£ÊÓ²ìÖ°Ô±²âÊÔÁËÆäÕÕÆ¬£¬£¬£¬Âô·½·µ»ØÁË238ÕÅͼƬ£¬£¬£¬ÕâЩͼƬÀ´×Ô140̨ÉãÏñÍ·£¬£¬£¬»¹ÁгöÁ˲¶»ñµ½µÄÏêϸµØµãºÍʱ¼ä£¬£¬£¬µ«·µ»ØµÄÕÕÆ¬¶¼²»ÊÇÊÓ²ìÖ°Ô±µÄ£¬£¬£¬Õâ¿ÉÄÜÓëÉãÏñÍ·µÄÊýÄ¿ºÍËã·¨ÓйØ£¬£¬£¬ÏµÍ³¶ÔÆäÃæ²¿ÌØÕ÷µÄÆÀ¹ÀÏàËÆ¶ÈΪ67%¡£¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/moscow-cops-sell-access-to-city-cctv-facial-recognition-data/