2025ÄêãåÈÕ¹ºÎï¼¾ÔâÓöÐéαÁãÊÛ´¹ÂÚ¹¥»÷

Ðû²¼Ê±¼ä 2025-12-22

1. 2025ÄêãåÈÕ¹ºÎï¼¾ÔâÓöÐéαÁãÊÛ´¹ÂÚ¹¥»÷


12ÔÂ18ÈÕ £¬£¬£¬£¬£¬2025ÄêãåÈÕ¹ºÎ^ʱ´ú £¬£¬£¬£¬£¬ÍþвÐÐΪÕßÌᳫ´ó¹æÄ£ÐéαÔÚÏßÁãÊÛÊÐËÁ¹¥»÷ £¬£¬£¬£¬£¬¶ÔÈ«ÇòÏûºÄÕß×é³ÉÖØ´óÍøÂçÇå¾²Íþв¡£¡£¡£¡£¸Ã»î¶¯Í¨¹ý·ÂðZalando¡¢Birkenstock¡¢IKEAµÈ×ÅÃûÆ·ÅÆµÄÓòÃû £¬£¬£¬£¬£¬Ê¹ÓÃ×Ô¶¯»¯¹¤¾ßÅúÁ¿ÌìÉú¸ß¶È±ÆÕæµÄÚ²Æ­ÍøÕ¾ £¬£¬£¬£¬£¬ÍýÏëÔÚ¡°ÐþÉ«ÐÇÆÚÎ塱¡°Ë«Ê®Ò»¡±µÈ¹ºÎïá¯ÁëÆÚÇÔ×÷·ÏºÄÕßÐÅÓÿ¨ÐÅÏ¢»òÓÕµ¼ÏÂÔØ¶ñÒâÈí¼þ¡£¡£¡£¡£¹¥»÷ÕßÒÀÍÐÖйú»ù´¡ÉèÊ©ÌṩÉÌ×¢²á³¬200¸öÐÂÓòÃû £¬£¬£¬£¬£¬Í¨¹ýTikTok¡¢FacebookµÈÉ罻ýÌåÆ½Ì¨ÍÆ¹ãÐéαµêËÁÁ´½Ó¡£¡£¡£¡£ÍøÕ¾½ÓÄÉÓëÕýÆ·¸ß¶ÈÏàËÆµÄÊÓ¾õÉè¼Æ £¬£¬£¬£¬£¬²¢Ç¶Èë·Âð½áÕËϵͳ £¬£¬£¬£¬£¬Óû§Ò»µ©ÊäÈëÖ§¸¶ÐÅÏ¢ £¬£¬£¬£¬£¬Êý¾Ý½«±»Ö±½ÓÇÔÈ¡»òÖØ¶¨ÏòÖÁ¶ñÒâÔØºÉ¡£¡£¡£¡£Bfore.aiÆÊÎöʦÓÚ2025Äê11Ô·¢Ã÷ £¬£¬£¬£¬£¬¸Ã»î¶¯ÒÀÀµÒþ˽±£»£»£»£»£»£»¤µÄWHOISÊý¾ÝÒþ²Ø¹¥»÷ÕßÉí·Ý £¬£¬£¬£¬£¬·ºÆð¡°¹¤Òµ»¯¡±Ú²Æ­ÌØÕ÷ £¬£¬£¬£¬£¬²î±ð¹¥»÷¼¯Èº¿É×·ËÝÖÁÌØ¶¨ÍйÜЧÀÍÌṩÉ̺Í×ÔÖÎϵͳ £¬£¬£¬£¬£¬Ê¹¹¥»÷ÕßÄÜÔÚ¾ÉÓòÃû±»·âºó¿ìËÙÇл»ÐÂÓòÃûά³ÖÔËÓª¡£¡£¡£¡£ÏûºÄÕßÃæÁÙÖ±½Ó¾­¼ÃËðʧºÍÉí·Ý͵ÇÔΣº¦ £¬£¬£¬£¬£¬»î¶¯¹æÄ£Åú×¢±³ºóÊÇ×ÊÔ´¸»×ãµÄ¾­¼ÃÄîÍ·ÍŻ¡£¡£¡£


https://cybersecuritynews.com/threats-actors-registering-fake-shopping-domains/


2. Ó¢¹úDXS InternationalÔâÍøÂçÈëÇÖ


12ÔÂ18ÈÕ £¬£¬£¬£¬£¬Ó¢¹úÊÖÒÕ¹«Ë¾DXS International¿ËÈÕÅû¶һÆðÓ°ÏìÆäÄÚ²¿ÏµÍ³µÄÍøÂçÇå¾²ÊÂÎñ¡£¡£¡£¡£¸Ã¹«Ë¾×÷ΪNHS£¨Ó¢¹ú¹ú¼ÒÒ½ÁÆÐ§ÀÍϵͳ£©ÁÙ´²¾öÒéÖ§³ÖºÍתÕïÖÎÀí¹¤¾ßµÄ½¹µã¹©Ó¦ÉÌ £¬£¬£¬£¬£¬ÆäÈí¼þÁýÕÖȫӢ¸ñÀ¼Ô¼10%µÄNHSתÕïÁ÷³Ì £¬£¬£¬£¬£¬Éæ¼°Êý°ÙÍò»¼ÕßÊý¾Ý¡£¡£¡£¡£12ÔÂ14ÈÕ £¬£¬£¬£¬£¬DXS·¢Ã÷°ì¹«Ð§ÀÍÆ÷Ôâδ¾­ÊÚȨ»á¼û £¬£¬£¬£¬£¬µ«ÁÙ´²Ð§ÀÍδÊÜÓ°ÏìÇÒ¼á³ÖÔËÐС£¡£¡£¡£ÏÖÔÚÉÐÎÞNHS»¼ÕßÊý¾Ýй¶µÄÃ÷È·Ö¤¾Ý £¬£¬£¬£¬£¬¹«Ë¾ÒÑ֪ͨӢ¹úÊý¾Ý±£»£»£»£»£»£»¤î¿Ïµ»ú¹¹ICO £¬£¬£¬£¬£¬²¢ÕýÓëNHSÍøÂçÇå¾²ÍŶӼ°Íⲿר¼ÒÏàÖúÊÓ²ìÊÂÎñÐÔ×ÓÓë¹æÄ£ £¬£¬£¬£¬£¬ÆðÔ´ÅжϲÆÎñÓ°ÏìÓÐÏÞ¡£¡£¡£¡£´Ë´ÎÊÂÎñ²¢·ÇÁæØê £¬£¬£¬£¬£¬½üÄêÀ´ £¬£¬£¬£¬£¬Ó¢¹úÎÀÍâÐÐÒÕ¹©Ó¦ÉÌÆµÈÔ³ÉΪ¹¥»÷Ä¿µÄ¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ £¬£¬£¬£¬£¬Ó¢¹úÏÖÐÐÍøÂçÇå¾²¹æÔòÎ´Ç¿ÖÆÒªÇóDXSÆ·¼¶Èý·½ÎÀÉúIT¹©Ó¦ÉÌÖª×ãÌØ¶¨Çå¾²±ê×¼¡£¡£¡£¡£È»¶ø £¬£¬£¬£¬£¬ÉÏÔÂÌá½»Òé»áµÄ¡¶ÍøÂçÇå¾²ÓëÈÍÐÔ·¨°¸¡·Äâ¶ÔÒªº¦ÁìÓòITЧÀÍÉÌʵÑé¸üÑÏ¿áî¿Ïµ £¬£¬£¬£¬£¬°üÀ¨¸ß¶î·£¿£¿£¿£¿£¿îÌõ¿î¡£¡£¡£¡£Èô·¨°¸Í¨¹ý £¬£¬£¬£¬£¬´ËÀ๩ӦÉ̽«ÃæÁÙ¸üÑÏ¿ÁµÄÇå¾²ºÏ¹æÒªÇ󡣡£¡£¡£


https://therecord.media/uk-nhs-tech-provider-dxs-discloses-hack


3. ³¯ÏÊKimsuky¶þάÂëÈö²¥DocSwap°²×¿¶ñÒâÈí¼þ


12ÔÂ18ÈÕ £¬£¬£¬£¬£¬º«¹úÍøÂçÇå¾²¹«Ë¾ENKIÅû¶ £¬£¬£¬£¬£¬³¯ÏÊÍþвÐÐΪÕßKimsukyÕýͨ¹ýαװ³ÉCJ LogisticsµÄ´¹ÂÚÍøÕ¾ £¬£¬£¬£¬£¬Ê¹ÓöþάÂë·Ö·¢ÃûΪDocSwapµÄ°²×¿¶ñÒâÈí¼þбäÖÖ¡£¡£¡£¡£¸Ã¹¥»÷ͨ¹ý¶ÌÐÅ´¹ÂÚ»ò´¹ÂÚÓʼþÓÕµ¼Óû§µã»÷¶ñÒâÍøÖ· £¬£¬£¬£¬£¬µ±Óû§´Ó×ÀÃæ¶Ë»á¼ûʱ £¬£¬£¬£¬£¬Ò³Ãæ»áÌáÐÑɨÃè¶þάÂëÔÚ°²×¿×°±¸×°Öá°°ü¹ü×·×ÙÓ¦Óᱡ£¡£¡£¡£¶þάÂëÖØ¶¨ÏòÖÁ¡°tracking.php¡±¾ç±¾ £¬£¬£¬£¬£¬¸Ã¾ç±¾Í¨¹ý¼ì²âUser-Agent×Ö·û´® £¬£¬£¬£¬£¬ÒÔ¡°¹ú¼Êº£¹ØÇå¾²Õþ²ß¡±ÎªÓÉÓÕÆ­Óû§×°Öá°Ç徲ģ¿£¿£¿£¿£¿é¡±¡£¡£¡£¡£¶ñÒâAPK»á½âÃܲ¢¼ÓÔØÇ¶ÈëµÄ¼ÓÃÜAPK £¬£¬£¬£¬£¬Æô¶¯DocSwapÔ¶³Ì»á¼ûľÂí¡£¡£¡£¡£×°ÖÃÀú³ÌÖÐ £¬£¬£¬£¬£¬Ó¦ÓóÌÐò»áÇëÇó¶ÁÈ¡´æ´¢¡¢»á¼ûÍøÂç¼°×°ÖÃÆäËûÈí¼þ°üµÄȨÏÞ¡£¡£¡£¡£Ò»µ©È¨ÏÞ»ñÈ¡ £¬£¬£¬£¬£¬Ä¾Âí½«×¢²á¡°com.delivery.security.MainService¡±Ð§ÀÍ £¬£¬£¬£¬£¬²¢Æô¶¯Î±×°³ÉOTPÈÏÖ¤½çÃæµÄAuthActivity £¬£¬£¬£¬£¬Ê¹ÓÃÓ²±àÂë¿ìµÝµ¥ºÅ¡°742938128549¡±ÑéÖ¤Éí·Ý¡£¡£¡£¡£Óû§ÊäÈëËæ»úÑéÖ¤Âëºó £¬£¬£¬£¬£¬Ä¾Âíºǫ́ÅþÁ¬¹¥»÷ÕßЧÀÍÆ÷ £¬£¬£¬£¬£¬ÎüÊÕ¶à´ï57ÌõÏÂÁî £¬£¬£¬£¬£¬ÊµÏÖ¼üÅ̼ͼ¡¢ÒôƵ²¶»ñ¡¢ÉãÏñÍ·¿ØÖÆ¡¢Îļþ²Ù×÷¡¢Î»ÖÃÐÅÏ¢ÇÔÈ¡µÈ¹¦Ð§ £¬£¬£¬£¬£¬²¢ÉÏ´«¶ÌÐÅ¡¢ÁªÏµÈË¡¢Í¨»°¼Í¼µÈÃô¸ÐÊý¾Ý¡£¡£¡£¡£


https://thehackernews.com/2025/12/kimsuky-spreads-docswap-android-malware.html


4. ¶àÆ·ÅÆÖ÷°åUEFI¹Ì¼þÎó²î̻¶DMA¹¥»÷Σº¦


12ÔÂ19ÈÕ £¬£¬£¬£¬£¬¿ËÈÕ £¬£¬£¬£¬£¬»ªË¶¡¢¼¼¼Î¡¢Î¢ÐÇ¡¢»ªÇæµÈÖ÷°å³§É̵IJ¿·ÖÐͺű»·¢Ã÷±£´æUEFI¹Ì¼þÎó²îCVE-2025-11901¡¢CVE-2025-14302ÖÁ14304 £¬£¬£¬£¬£¬¸ÃÎó²î¿É±»Ê¹ÓþÙÐÐÖ±½ÓÄÚ´æ»á¼û£¨DMA£©¹¥»÷ £¬£¬£¬£¬£¬ÈƹýÔçÆÚÆô¶¯½×¶ÎµÄÄÚ´æ±£»£»£»£»£»£»¤»úÖÆ¡£¡£¡£¡£Îó²îÔ´ÓÚUEFI¹Ì¼þÔÚ³õʼ»¯Ê±Î´ÄÜ׼ȷÉèÖÃÊäÈë/Êä³öÄÚ´æÖÎÀíµ¥Î»£¨IOMMU£© £¬£¬£¬£¬£¬Ò»ÖÖÓ²¼þÇ¿ÖÆµÄÄÚ´æ·À»ðǽ £¬£¬£¬£¬£¬µ¼ÖÂϵͳÔÚÆô¶¯³õÆÚ´¦ÓÚ¡°×î¸ßÌØÈ¨×´Ì¬¡±Ê± £¬£¬£¬£¬£¬¶ñÒâPCIe×°±¸£¨ÈçÏÔ¿¨¡¢ThunderboltÍâÉ裩¿ÉÈÆ¹ýIOMMUÏÞÖÆ £¬£¬£¬£¬£¬Ö±½Ó¶ÁдϵͳÄÚ´æ £¬£¬£¬£¬£¬ÉõÖÁÐÞ¸ÄÒªº¦Êý¾Ý¡£¡£¡£¡£Ö»¹Ü¹Ì¼þÉù³ÆDMA±£»£»£»£»£»£»¤ÒÑÆôÓà £¬£¬£¬£¬£¬µ«ÔÚÆô¶¯ÐòÁеÄÔçÆÚ½»½Ó½×¶Î £¬£¬£¬£¬£¬IOMMUÏÖʵδ±»×¼È·¼¤»î £¬£¬£¬£¬£¬Ê¹ÏµÍ³Ì»Â¶ÓÚÎïÆÊÎö¼û¹¥»÷Σº¦ÖС£¡£¡£¡£¿£¿£¿£¿£¿¨ÄÚ»ù÷¡´óѧCERTЭµ÷ÖÐÐÄ£¨CERT/CC£©Ðû²¼Í¨¸æÖ¤Êµ £¬£¬£¬£¬£¬¸ÃÎó²îÓ°ÏìÉÏÊöÆ·ÅÆµÄ²¿·ÖÖ÷°åÐͺŠ£¬£¬£¬£¬£¬ÇÒ¿ÉÄܲ¨¼°ÆäËû³§É̲úÆ·¡£¡£¡£¡£¹¥»÷ÐèÎïÀí½Ó´¥×°±¸ £¬£¬£¬£¬£¬ÔÚ²Ù×÷ϵͳÆô¶¯Ç°ÅþÁ¬¶ñÒâPCIe×°±¸ £¬£¬£¬£¬£¬´ËʱÇå¾²¹¤¾ßÎÞ·¨¼ì²â»ò×èÖ¹¹¥»÷ÐÐΪ £¬£¬£¬£¬£¬µ¼ÖÂÄÚ´æÊý¾Ý±»ÇÔÈ¡»ò¸Ä¶¯ £¬£¬£¬£¬£¬ÉõÖÁ¿ÉÄÜÆÆËð²Ù×÷ϵͳÍêÕûÐÔ¡£¡£¡£¡£ÏÖÔÚ £¬£¬£¬£¬£¬¸÷³§ÉÌÒÑÐû²¼Ç徲ͨ¸æ¼°¹Ì¼þ¸üР£¬£¬£¬£¬£¬Ã÷È·ÁгöÊÜÓ°ÏìÐͺż°ÐÞ¸´¼Æ»®¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/new-uefi-flaw-enables-pre-boot-attacks-on-motherboards-from-gigabyte-msi-asus-asrock/


5. µ¤ÂóÖ¸¿Ø¶íÂÞ˹·¢¶¯»ìÏýÕ½ÕùÍøÂç¹¥»÷


12ÔÂ19ÈÕ £¬£¬£¬£¬£¬µ¤Âó¹ú·ÀÇ鱨¾ÖÓÚÖÜËÄÐû²¼ÉùÃ÷ £¬£¬£¬£¬£¬Õýʽָ¿Ø¶íÂÞ˹¶Ô2024ÄêÕë¶Ô¸Ã¹ú×ÔÀ´Ë®¹«Ë¾µÄ¡°ÆÆËðÐÔ¡±ÍøÂç¹¥»÷¼°11Ôµط½Ñ¡¾ÙǰϦµ¼Öµ¤ÂóÍøÕ¾Ì±»¾µÄ¾Ü¾øÐ§À͹¥»÷£¨DDoS£©ÈÏÕæ¡£¡£¡£¡£¾Ýµ¤Âó¹ã²¥¹«Ë¾DR±¨µÀ £¬£¬£¬£¬£¬×ÔÀ´Ë®¹«Ë¾Ôâ¹¥»÷ºó¹ÜµÀ±¬ÁÑ £¬£¬£¬£¬£¬Ôì³É¸ç±¾¹þ¸ùÒÔÄÏ35¹«Àï¿Æ¶òµØÇø²¿·ÖסÃñ¶ÏË®£»£»£»£»£»£»¶øÑ¡¾ÙǰϦµÄDDoS¹¥»÷Ôòµ¼Ö¶à¸öÕþ¸®¼°¹«¹²ÍøÕ¾ÎÞ·¨»á¼û £¬£¬£¬£¬£¬ÑÏÖØ×ÌÈÅÑ¡¾ÙÀú³Ì¡£¡£¡£¡£Ç鱨²¿·ÖÇ¿µ÷ £¬£¬£¬£¬£¬ÕâЩ¹¥»÷ÊǶíÂÞ˹¶ÔÎ÷·½·¢¶¯µÄ¡°»ìÏýÕ½Õù¡±×é³É²¿·Ö £¬£¬£¬£¬£¬Ö¼ÔÚͨ¹ýÆÆËðÒªº¦»ù´¡ÉèÊ©¡¢ÖÆÔìÉç»á²»ÎȹÌÀ´Ï÷Èõ²¢´¦·ÖÖ§³ÖÎÚ¿ËÀ¼µÄ¹ú¼Ò¡£¡£¡£¡£ÊÓ²ìÏÔʾ £¬£¬£¬£¬£¬Ç×¶í×éÖ¯Z-PentestʵÑéÁË2024Äê¶ÔË®Îñ¹«Ë¾µÄ¹¥»÷ £¬£¬£¬£¬£¬µ¼ÖÂˮѹÒì³£Òý·¢¹ÜµÀÆÆË飻£»£»£»£»£»ÁíÒ»×éÖ¯NoName057(16)Ôò¶ÔÑ¡¾ÙǰϦµÄDDoS¹¥»÷ÈÏÕæ¡£¡£¡£¡£µ¤ÂóÇ鱨²¿Çå³þÈ·ÌåÏÖ £¬£¬£¬£¬£¬ÕâÁ½¸ö×éÖ¯¾ùÓë¶íÂÞ˹Õþ¸®±£´æ¹ØÁª £¬£¬£¬£¬£¬ÊÇ¶í·½¶ÔÎ÷·½ÊµÑé»ìÏýÕ½ÕùµÄ¡°¹¤¾ß¡± £¬£¬£¬£¬£¬Æä½¹µãÄ¿µÄÊÇÖÆÔì²»Çå¾²¸Ð²¢·Ö½â¹ú¼ÊÉç»á¶ÔÎÚÖ§³Ö¡£¡£¡£¡£


https://www.securityweek.com/denmark-blames-russia-for-cyberattacks-ahead-of-elections-and-on-water-utility/


6. WatchGuard Firebox RCEÎó²î±»Æð¾¢Ê¹ÓÃ


12ÔÂ19ÈÕ £¬£¬£¬£¬£¬WatchGuard¿ËÈÕÐû²¼½ôÆÈÇ徲ͨ¸æ £¬£¬£¬£¬£¬Åû¶ÆäFirebox·À»ðǽ±£´æÑÏÖØÔ¶³Ì´úÂëÖ´ÐÐÎó²îCVE-2025-14733 £¬£¬£¬£¬£¬¸ÃÎó²îÒѱ»ÍþвÐÐΪÕ߯ð¾¢Ê¹Óà £¬£¬£¬£¬£¬ÐèÁ¬Ã¦ÐÞ²¹¡£¡£¡£¡£Îó²îÔ´ÓÚÔ½½çдÈëȱÏÝ £¬£¬£¬£¬£¬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÔÚÉèÖÃIKEv2 VPNµÄ×°±¸ÉÏÔ¶³ÌÖ´ÐжñÒâ´úÂë £¬£¬£¬£¬£¬¹¥»÷ÖØÆ¯ºóµÍÇÒÎÞÐèÓû§½»»¥¡£¡£¡£¡£ÊÜÓ°Ïì¹æÄ£°üÀ¨ÔËÐÐFireware OS 11.xÖÁ11.12.4_Update1¡¢12.xÖÁ12.11.5¼°2025.1ÖÁ2025.1.3µÄ·À»ðǽװ±¸ £¬£¬£¬£¬£¬ÏêϸÐͺź­¸ÇT15¡¢T35¡¢T115-W¡¢M570¡¢Firebox CloudµÈÊýÊ®ÖÖÐͺŠ£¬£¬£¬£¬£¬Éæ¼°È«ÇòÁè¼Ý250,000¼ÒÖÐСÆóÒµÓû§¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ £¬£¬£¬£¬£¬×ÝÈ»ÖÎÀíԱɾ³ýÁËIKEv2 VPNÉèÖà £¬£¬£¬£¬£¬ÈôÈÔ±£´æÅþÁ¬µ½¾²Ì¬Íø¹Ø¶ÔµÈÌåµÄ·ÖÖ§»ú¹¹VPN£¨BOVPN£© £¬£¬£¬£¬£¬×°±¸ÈÔ¿ÉÄÜ̻¶ÓÚ¹¥»÷Σº¦ÖС£¡£¡£¡£WatchGuardÒÑÌṩÔÝʱ»º½â²½·¥£ºÖÎÀíÔ±Ó¦½ûÓö¯Ì¬¶ÔµÈBOVPN £¬£¬£¬£¬£¬Ìí¼ÓеķÀ»ðǽսÂÔÒÔÏÞÖÆVPNÁ÷Á¿ £¬£¬£¬£¬£¬²¢½ûÓô¦Öóͷ£VPNÁ÷Á¿µÄĬÈÏϵͳսÂÔ¡£¡£¡£¡£Í¬Ê± £¬£¬£¬£¬£¬¹«Ë¾½¨ÒéÓû§Ê¹ÓÃÌṩµÄÈëÇÖÖ¸±ê¼ì²é×°±¸ÊÇ·ñÒѱ»ÈëÇÖ £¬£¬£¬£¬£¬²¢ÂÖ»»ËùÓÐÍâµØ´æ´¢µÄÃÜÔ¿¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/watchguard-warns-of-new-rce-flaw-in-firebox-firewalls-exploited-in-attacks/