Operaä¯ÀÀÆ÷ÑÏÖØÎó²îMyFlawʹÊý°ÙÍòÓû§ÃæÁÙΣº¦
Ðû²¼Ê±¼ä 2024-01-171ÔÂ16ÈÕ£¬Ê¢ÐÐµÄ Opera Web ä¯ÀÀÆ÷Öз¢Ã÷ÁËÒ»¸öÑÏÖØÎó²î£¬¸ÃÎó²î¿ÉÄܵ¼ÖÂÔÚ Windows ºÍ Mac ²Ù×÷ϵͳÉÏÔ¶³ÌÖ´ÐдúÂë¡£Guardio Labs Ñо¿ÍŶӷ¢Ã÷²¢Åû¶µÄÕâһȱÏÝ͹ÏÔÁËÔÚÏÖ´úä¯ÀÀÆ÷ÖÐƽºâй¦Ð§ÓëÇ¿Ê¢Çå¾²ÐÔËùÃæÁÙµÄÒ»Á¬ÌôÕ½¡£Guardio Ñо¿ÍŶӽ«Õâ¸öÎó²îÃüÃûΪMyFlaw£¬ÊÇÓÉÓÚOpera µÄ¡°My Flow¡±¹¦Ð§¶ø±£´æµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¸Ã¹¦Ð§¿ÉÒÔͨ¹ýä¯ÀÀÆ÷ÔÚ×ÀÃæºÍÒƶ¯×°±¸Ö®¼äÎÞ·ì¹²ÏíÌõ¼ÇºÍÎļþ¡£ÏêϸÀ´Ëµ£¬My Flow µÄ»ùÓÚÍøÂçµÄ̸Ìì½çÃæΪÈκθԶ×ãļþÌí¼ÓÁË¡°·¿ª¡±Á´½Ó£¬µ¼ÖÂÖ±½Ó´Óä¯ÀÀÆ÷Ö´ÐÐËüÃÇ¡£
2. Áè¼Ý178000¸öSONICWALLÏÂÒ»´ú·À»ðǽÒ×ÔâÊܺڿ͹¥»÷
1ÔÂ15ÈÕ£¬SonicWall ÏÂÒ»´ú·À»ðǽ (NGFW) ϵÁÐ 6 ºÍ 7 ×°±¸Êܵ½Á½¸öδ¾Éí·ÝÑéÖ¤µÄ¾Ü¾ø·þÎñÎó²îµÄÓ°Ï죬»®·ÖΪCVE-2022-22274 ºÍ CVE-2023-0656£¬Õâ¿ÉÄܻᵼÖÂÔ¶³Ì´úÂëÖ´ÐС£Ö»¹ÜÕë¶ÔCVE-2023-0656ȱÏݵĿ´·¨Ñé֤ʹÓÃÒѹûÕæÐû²¼£¬µ«¹©Ó¦É̲¢²»ÖªµÀʹÓÃÕâЩÎó²î¾ÙÐеÄÒ°Íâ¹¥»÷¡£Bishop Fox µÄÑо¿Ö°Ô±Ê¹Óà BinaryEdge Ô´Êý¾ÝÕÒµ½ÁË̻¶ÓÚ»¥ÁªÍøµÄÖÎÀí½çÃæµÄ SonicWall ·À»ðǽ¡£×¨¼Ò·¢Ã÷£¬76%£¨233,984 ÆäÖÐµÄ 178,637 ¸ö£©ÃæÏò»¥ÁªÍøµÄ·À»ðǽÈÝÒ×Êܵ½Ò»¸ö»òÁ½¸öÎÊÌâµÄÓ°Ï졣ר¼ÒÖ¸³ö£¬ÕâÁ½¸öÎÊÌâʵÖÊÉÏÊÇÏàͬµÄ£¬µ«ÓÉÓÚÖØÓÃÁËÒ×Êܹ¥»÷µÄ´úÂëģʽ£¬Òò´Ë¿ÉÒÔÔÚ²î±ðµÄ HTTP URI ·¾¶ÉÏʹÓá£Ñо¿Ö°Ô±»¹¿ª·¢ÁËÒ»¸ö²âÊԾ籾£¬¿ÉÒÔÔÚ²»µ¼ÖÂ×°±¸Íß½âµÄÇéÐÎÏÂÈ·¶¨×°±¸ÊÇ·ñÈÝÒ×Êܵ½¹¥»÷¡£
3. MicrosoftÐÞ¸´KB5034441¸üÐÂʱµ¼ÖÂ0x80070643¹ýʧ
1ÔÂ15ÈÕ£¬Microsoft ÕýÔÚÆð¾¢ÐÞ¸´ÔÚ×°ÖÃÐÞ²¹ CVE-2024-20666 BitLocker Îó²îµÄ KB5034441 Çå¾²¸üÐÂʱµ¼Ö 0x80070643 ¹ýʧµÄÒÑÖªÎÊÌâ¡£ËäÈ»Çå¾²ÎÊÌâÒÑÔÚ±¾ÔµÄÖܶþ²¹¶¡ÈÕ»ñµÃ½â¾ö£¬µ«ÔÚ Windows »Ö¸´ÇéÐÎ (WinRE) ·ÖÇø¹ýСµÄϵͳÉÏ°²ÅÅ KB5034441 ½«»áʧ°Ü£¬²¢¹ýʧµØÏÔʾͨÓá° 0x80070643 - ERROR_INSTALL_FAILURE¡±¹ýʧÐÂÎÅ£¬¶ø²»ÊÇ׼ȷµÄ CBS_E_INSUFFICIENT_DISK_SPACE ¹ýʧ¡£
4. SmartScreenÎó²î±»Ê¹ÓÃÀ´Í¶·ÅPhemedrone¶ñÒâÈí¼þ
1ÔÂ15ÈÕ£¬Phemedrone ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þÔ˶¯Ê¹Óà Microsoft Defender SmartScreen Îó²î (CVE-2023-36025) ÔÚ·¿ª URL ÎļþʱÈƹý Windows Çå¾²ÌáÐÑ¡£Phemedrone ÊÇÒ»ÖÖÐÂÐÍ¿ªÔ´ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ£¬¿ÉÍøÂçÍøÂçä¯ÀÀÆ÷¡¢¼ÓÃÜÇ®±ÒÇ®°üÒÔ¼° Discord¡¢Steam ºÍ Telegram µÈÈí¼þÖд洢µÄÊý¾Ý¡£È»ºó£¬ÕâЩÊý¾Ý±»·¢Ëͻع¥»÷Õߣ¬ÓÃÓÚÆäËû¶ñÒâÔ˶¯»ò³öÊÛ¸øÆäËûÍþвÐÐΪÕß¡£Phemedrone Ô˶¯ÖÐʹÓÃµÄ Microsoft Defender ȱÏÝΪ CVE-2023-36025¡£
5. Tura Scandinavia ABÔâµ½ÀÕË÷Èí¼þÍÅ»ïLockBitµÄ¹¥»÷
1ÔÂ15ÈÕ£¬ura Scandinavia AB ·¢Ã÷×Ô¼º³ÉΪ LockBit ÀÕË÷Èí¼þ×éÖ¯µÄ¹¥»÷Ä¿µÄ£¬Õâ±ê¼Çןù«Ë¾ÍøÂçÇ徲ʷÉϵÄÓÖÒ»ÊÂÎñ¡£ÍþвÐÐΪÕß LockBit ÀÕË÷Èí¼þ×éÖ¯ÔÚ°µÍøÉÏÐû²¼ÁËÓйش˴ÎÈëÇÖµÄÉùÃ÷¡£¶ÔTura Scandinavia AB µÄËùνÍøÂç¹¥»÷Ö®ÒÔÊÇÀֳɣ¬ÊÇÓÉÓÚ Tura Scandinavia ¹«Ë¾ÍøÂçÖеĶà¸öÎó²îµ¼ÖÂδ¾ÊÚȨµÄ»á¼û¡£ÁîÈËÕ𾪵ÄÊÇ£¬LockBitÉù³ÆÄÚ²¿·þÎñÆ÷ȱ·¦¼à¿Øϵͳ¡¢·À²¡¶¾Èí¼þºÍ·À»ðǽµÈ»ù±¾Çå¾²²½·¥¡£
6. Inferno DrainerÕ©ÆÁè¼Ý13ÍòÃûÊܺ¦Õß»ñµÃ8700ÍòÃÀÔª
1ÔÂ16ÈÕ£¬ÏÖÒÑÇýÖðµÄInferno Drainer±³ºóµÄÔËÓªÕßÔÚ 2022 ÄêÖÁ 2023 ÄêµÄÒ»Äêʱ¼äÄÚ½¨ÉèÁËÁè¼Ý 16,000 ¸öÆæÒìµÄ¶ñÒâÓòÃû¡£¸Ã¶ñÒâÈí¼þÊÇһϵÁиüÆÕ±éµÄÀàËƲúÆ·µÄÒ»²¿·Ö£¬ÕâЩ²úÆ·ÒÔsaasģʽÌṩӦ¿Í»§£¬ÒÔ»»È¡ 20% µÄÊÕÈë·Ö³É¡£Inferno Drainer µÄ¿Í»§¿ÉÒÔ½«¶ñÒâÈí¼þÉÏ´«µ½×Ô¼ºµÄ´¹ÂÚÍøÕ¾£¬»òÕßʹÓÿª·¢ÕߵķþÎñÀ´½¨ÉèºÍÍйܴ¹ÂÚÍøÕ¾£¬ÎÞÐèÌØÊâÓöȣ¬ÔÚijЩÇéÐÎÏÂÒ²¿ÉÒÔÊÕÈ¡±»µÁ×ʲúµÄ 30%¡£¡°Inferno Drainer ´¹ÂÚÍøÕ¾µÄÁíÒ»¸öµä·¶ÌØÕ÷ÊÇÓû§ÎÞ·¨Í¨¹ýʹÓÿì½Ý¼ü»òÓÒ¼üµ¥»÷Êó±êÀ´·¿ªÍøÕ¾Ô´´úÂë¡£³ý´ËÖ®Í⣬Group-IB ÌåÏÖ£¬Inferno Drainer µÄÀֳɿÉÄÜ»áÍƶ¯Ð Drainer µÄ¿ª·¢£¬²¢µ¼Ö°üÀ¨ÓÕÆ Web3 ÐÒéµÄ¶ñÒâ¾ç±¾µÄÍøÕ¾¼¤Ôö£¬²¢Ö¸³ö 2024 Äê¿ÉÄܳÉΪ¡°Drainer Äꡱ¡£