AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2020.11.30-2020.12.06£©
2020-12-07
Ò»¡¢ Íþвͨ¸æ
Drupal Ô¶³Ì´úÂëÖ´ÐÐÎó²îÇ徲ͨ¸æ£¨CVE-2020-13671¡¢CVE-2020-28948¡¢CVE-2020-28949£©
¡¾Ðû²¼Ê±¼ä¡¿2020-11-30 12:00:00 GMT
¡¾¸ÅÊö¡¿
AG¹«Ë¾¿Æ¼¼¼à²âµ½Drupal ¹Ù·½Ðû²¼Ç徲ͨ¸æÐÞ¸´ÁËDrupal Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-13671£©£¬ÓÉÓÚDrupal core ûÓÐ׼ȷµØ´¦Öóͷ£ÉÏ´«ÎļþÖеÄijЩÎļþÃû£¬µ¼ÖÂÔÚÌØ¶¨ÉèÖÃϺóÐø´¦Öóͷ£ÖÐÎļþ»á±»¹ýʧµØÆÊÎöΪÆäËûMIME ÀàÐÍ£¬Î´ÊÚȨµÄÔ¶³Ì¹¥»÷Õß¿Éͨ¹ýÉÏ´«Ìض¨ÎļþÃûµÄ¶ñÒâÎļþ£¬´Ó¶øÊµÏÖí§Òâ´úÂëÖ´ÐС£ÇëÏà¹ØÓû§¾¡¿ì½ÓÄɲ½·¥¾ÙÐзÀ»¤¡£Drupal ÊÇʹÓÃPHP ÓïÑÔ±àдµÄ¿ªÔ´ÄÚÈÝÖÎÀí¿ò¼ÜCMF£©£¬ÓÉÄÚÈÝÖÎÀíϵͳ£¨CMS£©ºÍPHP ¿ª·¢¿ò¼Ü£¨Framework£©ÅäºÏ×é³É¡£
¡¾Á´½Ó¡¿
https://nti.nsfocus.com/threatWarning
¶þ¡¢ ÈÈÃÅ×ÊѶ
1. ̽Ë÷¶ñÒâÈí¼þÈÆ¹ýDNAɸѡ²¢µ¼Ö“ÉúÎïºÚ¿Í”¹¥»÷
¡¾¸ÅÊö¡¿
ÄڸǷò±¾¹ÅÀï°²´óѧµÄÒ»×éÑо¿Ö°Ô±ÐÎòÁ˶ÔDNA¿ÆÑ§¼ÒµÄÐÂÍøÂç¹¥»÷£¬¸Ã¹¥»÷¿ÉÄÜ»áÒý±¬·¢ÎïÕ½¡£¿ÆÑ§¼ÒÔÚÏÖ´úÉç»áÖÐÆð×ÅÖÁ¹ØÖ÷ÒªµÄ×÷Óã¬ÓÈÆäÊÇÔÚCOVID-19´óÊ¢ÐÐʱ´ú¡£ÔÚѧÊõÆÚ¿¯¡¶×ÔÈ»ÉúÎïÊÖÒÕ¡·ÉϽÒÏþµÄһƪÌâΪ¡¶ÍøÂçÉúÎïÇå¾²£ººÏ³ÉÉúÎïѧÖеÄÔ¶³ÌDNA×¢ÈëÍþв¡·µÄÑо¿ÂÛÎļͼÁËÔõÑùʹÓöñÒâÈí¼þÀ´ÆÆËðÉúÎïѧ¼ÒµÄÅÌËã»ú£¬ÒÔÌæ»»DNA²âÐòÖеÄ×Ó×Ö·û´®¡£ÍþвÐÐΪÕß¿ÉÒÔʹÓá¶É¸Ñ¡¿ò¼ÜÖ¸ÄÏ¡·ÖеĹýʧÀ´¹æ±ÜÐÒ顣ר¼ÒÚ¹ÊÍ˵£¬ÉúÎïѧ¼Òÿ´ÎÏòºÏ³É»ùÒòÌṩÕß¶©¹ºDNAʱ£¬ÃÀ¹úÎÀÉúÓ빫¹²·þÎñ²¿£¨HHS£©Ö¸Ä϶¼ÒªÇó½ÓÄÉɸѡ¼Æ»®À´É¨Ãè¿ÉÄÜÓꦵÄÍÑÑõºËÌǺËËá¡£Ñо¿Ö°Ô±Ê¹ÓöñÒâ´úÂëͨ¹ý»ìÏýÀ´¹æ±ÜÕâЩÐÒé¡£²âÊÔÅú×¢£¬ÔÚ50¸ö»ìÏýµÄDNAÑù±¾ÖУ¬ÓÐ16¸öÄܹ»ÈƹýDeoxyriboNucleic Acidɸѡ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://securityaffairs.co/wordpress/111681/hacking/biohacking-attacks-dna-screening.html
2. ÂíÈøÖîÈûÖÝ¿ÉÄܳÉΪµÚÒ»¸öեȡ¾¯Ô±Ê¹ÓÃÃæ²¿Ê¶±ðµÄÖÝ
¡¾¸ÅÊö¡¿
ÂíÈøÖîÈûÖÝÒéÔ±Öܶþͨ¹ýÁËÒ»ÏԱˢз¨°¸£¬Õ¥È¡¹«¹²»ú¹¹ºÍÖ´·¨²¿·ÖʹÓÃÃæ²¿Ê¶±ðÊÖÒÕ£¬ÕâʹËü¸ü¿¿½ü³ÉΪµÚÒ»¸öեȡʹÓøÃÊÖÒÕµÄÖÝ£¬ÓÉÓÚÒþ˽ºÍÃñȨÖ÷ÒåÕßÔ½À´Ô½×赲ʹÓøÃÊÖÒÕ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.forbes.com/sites/rachelsandler/2020/12/01/massachusetts-may-become-first-state-to-ban-police-use-of-facial-recognition/
3. ÀÕË÷Èí¼þ¹¥»÷¼ÑÄÜ̻¶Ա¹¤Êý¾Ý
¡¾¸ÅÊö¡¿
¼ÑÄÜÃÀ¹ú¹«Ë¾ÖÕÓÚÈϿɣ¬½ñÄêÔçЩʱ¼äµÄÀÕË÷Èí¼þ¹¥»÷Éæ¼°¹«Ë¾Êý¾ÝµÄ͵ÇÔ£¬°üÀ¨Ô±¹¤ÐÅÏ¢¡£Õâ¼ÒÓ°Ïñ¹«Ë¾ÔÚ11ÔÂ25ÈÕµÄÒ»·Ý֪ͨÉùÃ÷ÖÐ˵£¬ËüÔÚ¹¥»÷±¬·¢ºóÁªÏµÁËÖ´·¨¹ÙÔ±£¬²¢Ô¼ÇëÁËÒ»¼ÒÇå¾²¹«Ë¾ÐÖúÊӲ졣¼ÑÄÜÏÖÔÚÌåÏÖ£¬¹¥»÷ÕßµÚÒ»´Î½øÈë¸ÃÍøÂçÊÇÔÚ7Ô·ݡ£
¡¾²Î¿¼Á´½Ó¡¿
https://www.inforisktoday.com/canon-ransomware-attack-exposed-employee-data-a-15476
4. ΢ÈíÔÚ“Éú²úÁ¦·ÖÊý”¼à¿ØÉϻõçõÇ
¡¾¸ÅÊö¡¿
Microsoft 365¹«Ë¾¸±×ܲÃJared SpataroÔÚÖܶþÐû²¼µÄ²©¿ÍÎÄÕÂÖÐ˵£¬´Ë¹¦Ð§µÄÄ¿µÄ²»ÊǸú×ÙСÎÒ˽¼Ò£¬¶øÊÇ×ÊÖúITÖÎÀíÔ±¸üºÃµØ“ȨºâºÍÖÎÀíMicrosoft 365µÄ½ÓÄÉ”£¬ÓÈÆäÊÇ˼Á¿µ½ÔÚ´óÊ¢ÐÐʱ´úΪÐí¶à×éÖ¯Ìṩ»ùÓÚÔÆµÄÓ¦ÓóÌÐòºÍ¹¤¾ß¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.inforisktoday.com/microsoft-backpedals-over-productivity-score-monitoring-a-15510
5. ¼ÒÀÖ¸£±»GDPR·£¿î370ÍòÃÀÔª
¡¾¸ÅÊö¡¿
¿ËÈÕ£¬·¨¹úÁãÊÛÒµ¾ÞÍ·¼ÒÀÖ¸£¼°ÆäÒøÐв¿·ÖÒò¶à´ÎÎ¥·´GDPR±»ÍâµØÊý¾Ý±£»¤î¿Ïµ»ú¹¹·£¿îÁè¼Ý300ÍòÅ·Ôª£¨ºÏ370ÍòÃÀÔª£©¡£¾Ý±¨µÀ£¬·¨¹ú¹ú¼ÒÐÅÏ¢×ÔÓÉίԱ»á£¨CNIL£©¶Ô·¨¹ú¼ÒÀÖ¸£´¦ÒÔ225ÍòÅ·ÔªµÄ·£¿î£¬¶ø¼ÒÀÖ¸£ÒøÐÐÔòÊܵ½80ÍòÅ·ÔªµÄ·£¿î¡£CNILÌåÏÖ£¬ÔÚ´¦·Ö“Á¿Ð̔ʱ˼Á¿Á˼ÒÀÖ¸£ÒѾÆð¾¢½ÓÄɵÄÖØ´óµ÷½â²½·¥¡£
¡¾²Î¿¼Á´½Ó¡¿
http://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651094721&idx=3&sn=f7f64f938a705a05e04620d87fad71b3&chksm=bd14ce128a634704751ee74ac9ab4f6fe711455ab0b6a1cbdd74770c08a00ba5ff87087d5158#rd
6. APT¿ªÆô׬Ǯģʽ£¬Ô½ÄÏ»ò½«³ÉΪȫÇò·¸·¨ÖÐÐÄ
¡¾¸ÅÊö¡¿
¼ÌÀÈö·£¨Lazarus Group£©Ö®ºó£¬ÓÖÒ»¸ö¹ú¼ÒºÚ¿Í×éÖ¯±»·¢Ã÷¼ÓÈë´ó¹æÄ£¼ÓÃÜÇ®±ÒÍÚ¿óÐж¯¡£Î¢Èí±¾ÖÜÒ»µÄ±¨¸æ·¢Ã÷£¬Ô½ÄÏÕþ¸®Ö§³ÖµÄºÚ¿Í×îÏÈÔÚͨÀýµÄÍøÂçÌØ¹¤¹¤¾ßÌ×¼þÖа²ÅżÓÃÜÇ®±ÒÍÚ¿óÈí¼þ¡£¸Ã±¨¸æÖ¸³öÔ½À´Ô½¶àµÄ¹ú¼ÒÖ§³ÖµÄºÚ¿Í×éÖ¯×îÏȽ«ÑÛ¹âͶÏòÁËͨÀýµÄÍøÂç·¸·¨Ô˶¯£¬ÕâʹµÃ¶Ô²ÆÎñÄîÍ·µÄ·¸·¨ÓëÇé±¨ÍøÂçÔ˶¯µÄÇø·Ö±äµÃÔ½·¢ÄÑÌâ¡£¸ÃÔ½ÄϺڿÍ×éÖ¯ÔÚ΢ÈíÄÚ²¿µÄ×·×Ù´úºÅΪBismuth£¬×Ô2012ÄêÒÔÀ´Ò»Ö±»îÔ¾£¬ÔÚÇå¾²Òµ½ç¹ãΪÈËÖªµÄ´úºÅ»¹°üÀ¨APT32ºÍOceanLotus£¨º£Á«»¨£©µÈ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.aqniu.com/threat-alert/71483.html
7. ÖÇ¿âÊܵ½Íâ¹úAPTµÄ¹¥»÷
¡¾¸ÅÊö¡¿
Áª°îÕþ¸®ÒѾ¿´µ½ÁËÕë¶ÔÖÇ¿âµÄÍøÂç¹¥»÷(רעÓÚÌØ¹¤Ô˶¯¡¢¶ñÒâÈí¼þ´«ÊäµÈ)£¬Ê¹ÓÃÍøÂç´¹ÂÚºÍVPN×÷ΪÖ÷Òª¹¥»÷ÔØÌå¡£ÃÀ¹úÍøÂçÇå¾²Óë»ù´¡ÉèÊ©Çå¾²¾Ö(CISA)ºÍÃÀ¹úÁª°îÊÓ²ì¾Ö(FBI)¾ÍËûÃÇËù˵µÄÕë¶ÔÃÀ¹úÖÇ¿âµÄ¸ß¼¶Ò»Á¬Íþв(APT)ÐÐΪÕßÒ»Á¬Ò»Ö±µÄÍøÂç¹¥»÷·¢³öÖÒÑÔ¡£¾ÝÁª°îÊÓ²ì¾Ö˵£¬¹¥»÷ÕßµÄÄ¿µÄÊÇÇÔÈ¡Ãô¸ÐÐÅÏ¢¡¢»ñÈ¡Óû§Ö¤Êé²¢»ñµÃ¶ÔÊܺ¦ÕßÍøÂçµÄ³¤ÆÚ»á¼ûȨ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://threatpost.com/think-tanks-attack-apts-cisa/161807/
8. ÆáºÚµÄ¿¨À¿¨¶ûÍøÂçÌØ¹¤×éÖ¯»ØÀ´ÁË
¡¾¸ÅÊö¡¿
ÆáºÚµÄ¿¨À¿¨¶ûÍøÂçÌØ¹¤×éÖ¯»ØÀ´ÁË£¬À´×Ô¼ì²éµãµÄÑо¿Ö°Ô±·¢Ã÷ÁËÕë¶Ô¶à¸öÐÐÒµµÄһϵÁÐÐµĹ¥»÷¡£ÆáºÚµÄ¿¨À¿¨¶ûÊÇÒ»¸öÓëÀè°ÍÄÛ×ÜÖ¸»Ó²¿ÓÐÁªÏµµÄAPT×éÖ¯£¬ÔÚ×î½üµÄ¹¥»÷ÖУ¬ËüʹÓÃÁËÒ»¸öа汾µÄ13ÄêǰµÄºóÃÅľÂí£¬±»³ÆÎªBandook¡£BandookÉϴα»·¢Ã÷ÊÇÔÚ2015ÄêºÍ2017Ä꣬±»³ÆÎª“ManulÐж¯”ºÍ“Dark Caracal”£¬»®·Ö¹éÒòÓÚ¹þÈø¿Ë˹̹ºÍÀè°ÍÄÛÕþ¸®¡£ÔÚÒÑÍùµÄÒ»ÄêÀÕâ¸öÒ»¾µÄͨË×¶ñÒâÈí¼þµÄ¼¸Ê®¸öÊý×ÖÊðÃû±äÌå×îÏÈÖØÐ·ºÆðÔÚÍþвÁìÓò£¬ÖØÐµãȼÁËÈËÃǶÔÕâ¸ö¾É¶ñÒâÈí¼þ¼Ò×åµÄÐËȤ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://securityaffairs.co/wordpress/111617/apt/dark-caracal-still-active.html
9. 2030ÄêÈ˹¤ÖÇÄÜÍøÂçÇå¾²Êг¡²úÖµ½«¸ß´ï1018ÒÚÃÀÔª
¡¾¸ÅÊö¡¿
ƾ֤Research And MarketsµÄ×îб¨¸æ£¬È˹¤ÖÇÄÜÍøÂçÇå¾²Êг¡µÄ²úÖµÔ¤¼Æ½«´Ó2019ÄêµÄ86ÒÚÃÀÔªÔöÌíµ½2030ÄêµÄ1018ÒÚÃÀÔª¡£2020-2030Äêʱ´úÈ˹¤ÖÇÄÜÍøÂçÇå¾²Êг¡¸´ºÏÄêÔöÌíÂÊΪ25.7£¥¡£È˹¤ÖÇÄÜÍøÂçÇå¾²Êг¡·ÖΪÍþвÇ鱨¡¢Ú²Æ¼ì²â/·´Ú²Æ¡¢Çå¾²ºÍÎó²îÖÎÀí¡¢Êý¾ÝɥʧԤ·À£¨DLP£©¡¢Éí·ÝºÍ»á¼ûÖÎÀí¡¢ÈëÇÖ¼ì²â/Ô¤·Àϵͳ¡¢·À²¡¶¾/¶ñÒâÈí¼þ¡¢Í³Ò»ÍþвÖÎÀíÒÔ¼°Î£º¦ÓëºÏ¹æÐÔÖÎÀíµÈ¡£±¨¸æÖ¸³ö£¬ÍøÂçڲƺÍDLP½«ÊÇδÀ´Ê®ÄêÈ˹¤ÖÇÄÜÍøÂçÇå¾²Êг¡ÔöÌí×î¿ìµÄÁìÓò¡£ÔÚÈ«Çò¹æÄ£ÄÚ¶ñÒâ¹¥»÷ºÍÍøÂçڲƵÄÊÂÎñÊýÄ¿ÒÑ´ó´óÔöÌí£¬Õâ¿É¹éÒòÓÚ»¥ÁªÍøµÄѸËÙÆÕ¼°ºÍÔÆ½â¾ö¼Æ»®µÄʹÓÃÂÊÒ»Ö±Ìá¸ß¡£ÍøÂçڲơ¢°üÀ¨Ö§¸¶ºÍÉí·Ý֤͵ÇÔÕ¼ËùÓÐÍøÂç·¸·¨µÄ55£¥ÒÔÉÏ£¬ÈôÊDz»¼ÓÒÔ»º½â£¬½«¸øÆóÒµÔì³ÉÖØ´óËðʧ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.aqniu.com/industry/71450.html
10. »úеÈ˵ÄÐËÆðʹ·¸·¨¹¥»÷±äµÃÔ½·¢×Ô¶¯»¯
¡¾¸ÅÊö¡¿
ÍøÂç·¸·¨¼ÌÐø±äµÃÔ½À´Ô½×Ô¶¯»¯£¬¶ø»úеÈËÊÇÕâÒ»Ç÷ÊÆµÄÒªº¦¡£BotÖ¸µÄÊÇÈκÎÀàÐ͵Ä×Ô¶¯»¯——ºÃµÄ»ò»µµÄ¡£Group-IBµÄÊ×ϯÊÖÒÕ¹ÙµÂÃ×ÌØÀï•ÎÖ¶û¿Æ·ò(Dmitry Volkov)ÌåÏÖ£¬¹ØÓÚÄÇЩÏëʹÓûúеÈ˵폷¨·Ö×ÓÀ´Ëµ£¬“ÕâÖÖÚ²ÆÐÔÔ˶¯µÄÒ»¸öÖØ´óת±äÊÇ£¬ËûÃDz¢²»ÕæµÄÐèÒª´ó×Ú±»Ñ¬È¾µÄ×°±¸¡£”Ëû˵£¬ÍøÂçץȡºÍƾ֤Ìî³äµÄ»úеÈËÔ˶¯£¬Ö÷ÒªµÄÇý¶¯ÒòËØÊÇ´ó×ÚµÄÊý¾Ý¿â×ß©¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.inforisktoday.com/rise-bots-criminal-attacks-grow-more-automated-a-15417

AG¹«Ë¾ÔÆ







