¡¾Íþвͨ¸æ¡¿AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2022.01.03-2022.01.09£©
2022-01-10
Ò»¡¢ Íþвͨ¸æ
·ÉÖÂÔÆMeterSphere¿ªÔ´²âÊÔÆ½Ì¨Ô¶³Ì´úÂëÖ´ÐÐÎó²î
¡¾Ðû²¼Ê±¼ä¡¿2022-01-06 17:00:00 GMT
¡¾¸ÅÊö¡¿
1ÔÂ6ÈÕ£¬AG¹«Ë¾¿Æ¼¼CERT¼à²â·¢Ã÷FIT2CLOUD·ÉÖÂÔÆÐû²¼Í¨¸æ£¬ÐÞ¸´ÁËMeterSphereһվʽ¿ªÔ´Ò»Á¬²âÊÔÆ½Ì¨±£´æµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£ÓÉÓÚ×Ô½ç˵²å¼þ¹¦Ð§´¦±£´æÈ±ÏÝ£¬Î´¾Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚÄ¿µÄϵͳÉÏÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£ÇëÏà¹ØÓû§¾¡¿ì½ÓÄɲ½·¥¾ÙÐзÀ»¤¡£ MeterSphereÊÇÓɺ¼ÖÝ·ÉÖÂÔÆÐÅÏ¢¿Æ¼¼ÓÐÏÞ¹«Ë¾¿ª·¢µÄһվʽ¿ªÔ´Ò»Á¬²âÊÔÆ½Ì¨, º¸Ç²âÊÔ¸ú×Ù¡¢½Ó¿Ú²âÊÔ¡¢ÐÔÄܲâÊÔ¡¢ ÍŶÓÐ×÷µÈ¹¦Ð§¡£¼æÈÝ JMeter¡¢Postman¡¢Swagger µÈ¿ªÔ´¡¢Ö÷Á÷±ê×¼£¬ÖúÁ¦¿ª·¢ºÍ²âÊÔÍŶÓʹÓÃÔÆµ¯ÐÔ¾ÙÐи߶ȿÉÀ©Õ¹µÄ×Ô¶¯»¯²âÊÔ¡£
¶þ¡¢ ÈÈÃÅ×ÊѶ
1. ¹¥»÷ÕßÀÄÓÃMSBuildÈÆ¹ý¼ì²âºÍÖ²Èë¶ñÒâÈí¼þ
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±Ò»ÖÜÄÚµÚ¶þ´Î·¢Ã÷ÀÄÓÃMSBuildµÄ¶ñÒâÈí¼þÔ˶¯¡£¹¥»÷Ô˶¯ÊÜÏÞʹÓÃÓÐÓõÄÕË»§À´¾ÙÐÐRDP»á¼û£¬È»ºóͨ¹ýÔ¶³ÌWindows·þÎñ£¨SCM£©À´ÔÚÍøÂçÖÐÈö²¥£¬×îºóÀÄÓÃMSbuild taskÌØÕ÷À´ÍÆËÍCobalt Strike beaconµ½ÆäËûÖ÷»ú¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbj
2. ¹¥»÷ÕßʹÓÃÀÕË÷Èí¼þ¹¥»÷ImpresaÆÏÌÑÑÀ
¡¾¸ÅÊö¡¿
ÆÏÌÑÑÀýÌ幫˾ Impresa Òò³ÉΪÀÕË÷Èí¼þ¹¥»÷µÄÊܺ¦Õß¶øµÇÉÏÐÂÎÅÍ·Ìõ¡£ÐÂÎÅÈËÊ¿³Æ£¬¸Ã³öÊ鹫˾Ôâµ½ÁËÒ»¸öÃûΪLapsus$µÄÀÕË÷Èí¼þ×éÖ¯µÄ¹¥»÷¡£¸ÃºÚ¿Í×éÖ¯ÒÔ³öÊ鹫˾µÄ·þÎñÆ÷ΪĿµÄ£¬¶Ô Impresa ÍøÕ¾¡¢ExpressoºÍSICÍøÕ¾±¬·¢Á˽¹µãÓ°Ïì¡£²¢ÌåÏÖLapsus$ ÒªÇóÊÜÓ°ÏìµÄ½ð¶îΪ500ÍòÃÀÔª£¬ÈôÊÇδ֧¸¶£¬¿ÉÄܻᵼÖÂÑÏÖØÐ§¹û£¬ÀýÈ罫±»µÁÊý¾Ý³öÊÛ¸øºÚ¿Í»ò½«ÐÅϢй¶¸ø¹«Ë¾µÄÏàÖúͬ°éºÍ¿Í»§¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbg
3. ¹¥»÷ÕßʹÓÃÐéα Telegram Ó¦ÓÃ×°ÖóÌÐòÈö²¥Purple Fox ºóÃÅ
¡¾¸ÅÊö¡¿
¹¥»÷ÕßÕýÔÚʹÓà Telegram ÐÂÎÅÓ¦ÓóÌÐòµÄÊÜѬȾװÖóÌÐòÈö²¥ Purple Fox ºóÃÅ¡£Ñо¿Ö°Ô±Ö¸³ö£¬ÓëʹÓÃÕýµ±Èí¼þÈö²¥¶ñÒâÈí¼þµÄÀàËÆÔ˶¯²î±ð£¬¸ÃÔ˶¯µÄ¼ì²âÂʺÜÊǵ͡£¾ÆÊÎö£¬×°ÖóÌÐòÊÇÒ»¸öÃûΪ“Telegram Desktop.exe”µÄ±àÒëºóµÄ AutoIt£¨Ò»ÖÖÀàËÆ BASIC µÄÃâ·ÑÈí¼þ¾ç±¾ÓïÑÔ£¬ÓÃÓÚ×Ô¶¯Ö´ÐÐ Windows GUI ºÍͨÓþ籾£©¾ç±¾¡£ Ö´Ðо籾ºó£¬Ëü»áÔÚ C:\\Users\\Username\\AppData\\Local\\Temp\\ Ͻ¨ÉèÒ»¸öÃûΪ“TextInputh”µÄÐÂÎļþ¼Ð£¬²¢É¾³ýÕýµ±µÄ Telegram ×°ÖóÌÐòºÍ¶ñÒâÏÂÔØ³ÌÐò (TextInputh.exe)¡£ Ö´ÐÐʱTextInputh.exe»áÔÚC:\\Users\\Public\\Videos\\Ŀ¼Ï½¨ÉèÒ»¸öÃûΪ“1640618495”µÄÎļþ¼Ð£¬È»ºó´ÓC2ÏÂÔØÒÔÏÂÎļþµ½Ð½¨µÄÎļþ¼ÐÖÐ
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbD
4. Á¬ËøÂùÝMcMenamins ÔÚÀÕË÷Èí¼þ¹¥»÷ºó´ó×ÚÊý¾Ý±»Ð¹Â¶
¡¾¸ÅÊö¡¿
ÂùÝÁ¬Ëøµê McMenamins ÔÚ×î½üµÄÀÕË÷Èí¼þ¹¥»÷ºóÅû¶ÁËÊý¾Ýй¶¡£¾Ý¸Ã¹«Ë¾³Æ£¬¹¥»÷ÕßÇÔÈ¡ÁËÔÚ 2010 Äê 7 Ô 1 ÈÕÖÁ 2021 Äê 12 Ô 12 ÈÕʱ´úÊܹ͵ÄСÎÒ˽¼ÒÊý¾Ý¡£±»µÁÔ±¹¤µÄÊý¾Ý¿ÉÄܰüÀ¨ÐÕÃû¡¢µØµã¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØµã¡¢³öÉúÈÕÆÚ¡¢ÖÖ×å¡¢Ãñ×å¡¢ÐԱ𡢲м²×´Ì¬¡¢Ò½ÁƼͼ¡¢¼¨Ð§ºÍ¼ÍÂɼͼ¡¢Éç»áÇå¾²ºÅÂë¡¢¿µ½¡°ü¹ÜÍýÏëÑ¡Ôñ¡¢ÊÕÈë½ð¶îºÍÍËÐݹ©¿î½ð¶î¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbv
5. ÃÀ¹úÔÚÏßÊÐËÁ PulseTV ´ó×Ú¿Í»§ÐÅÓÿ¨Êý¾Ý±»Ð¹Â¶
¡¾¸ÅÊö¡¿
ÃÀ¹úÔÚÏßÊÐËÁ PulseTVÈÔÔÚÊÓ²ìÖ§¸¶¿¨ÍøÂçºÍÖ´·¨²¿·ÖµÄÇå¾²Îó²î£¬²¢ÕýÔÚ֪ͨÖÝî¿Ïµ»ú¹¹ºÍÊÜÓ°ÏìµÄ¿Í»§¡£PulseTV ÒÔΪ£¬Ö»ÓÐÔÚ 2019 Äê 11 Ô 1 ÈÕÖÁ 2021 Äê 8 Ô 31 ÈÕʱ´úʹÓÃÐÅÓÿ¨ÔÚÍøÕ¾ÉϹºÖòúÆ·µÄ¿Í»§²Å»áÊܵ½Ó°Ïì¡£¿ÉÄÜÒÑй¶µÄÐÅÏ¢°üÀ¨£ºÈ«Ãû¡¢ÊÕ¼þµØµã¡¢µç×ÓÓʼþµØµã¡¢Ö§¸¶¿¨ºÅ¡¢Ö§¸¶¿¨ÓÐÓÃÆÚ¡¢Ö§¸¶¿¨Çå¾²Âë (CVV)
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbw
6. Broward Health ¹«¹²ÎÀÉúϵͳ´ó×ÚÓû§Êý¾ÝÔâй¶
¡¾¸ÅÊö¡¿
Broward Health ¹«¹²ÎÀÉúϵͳÅû¶ÁËÒ»ÆðÓ°ÏìÁè¼Ý 130 ÍòÈ˵Ĵó¹æÄ£Êý¾Ýй¶ÊÂÎñ¡£Æ¾Ö¤ÊӲ죬¹¥»÷Õ߯ÆËðÁËÔÊÐí»á¼ûϵͳÒÔÌṩ·þÎñµÄµÚÈý·½Ò½ÁÆÌṩÉÌ¡£´Ó¶ø¹¥»÷Õß»ñµÃÁË»¼ÕßÐÅÏ¢µÄ»á¼ûȨÏÞ£¬ÕâЩÐÅÏ¢¿ÉÄܰüÀ¨ÐÕÃû¡¢³öÉúÈÕÆÚ¡¢µØµã¡¢µç»°ºÅÂë¡¢²ÆÎñ»òÒøÐÐÕË»§ÐÅÏ¢¡¢Éç»áÇå¾²ºÅÂë¡¢°ü¹ÜÐÅÏ¢ºÍÕʺš¢°üÀ¨²¡Ê·¡¢²¡Çé¡¢ÖÎÁƺÍÕï¶ÏÔÚÄÚµÄÒ½ÁÆÐÅÏ¢£¬²¡ÀúºÅÂë¡¢¼ÝÕÕºÅÂëºÍµç×ÓÓʼþµØµã¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbE
7. ¹¥»÷ÕßʹÓÃÐÂÐͶñÒâÈí¼þRootkit¶Ô»ÝÆÕ iLO ¹Ì¼þÌᳫ¹¥»÷
¡¾¸ÅÊö¡¿
¿ËÈÕÑо¿Ö°Ô±Ê״η¢Ã÷ rootkit ²¡¶¾£¨Ò²³ÆÎª iLOBleed£©ÕýÕë¶Ô»ÝÆÕÆóÒµ·þÎñÆ÷Õö¿ª¹¥»÷£¬Äܹ»´ÓÔ¶³ÌѬȾÉèÊ©²¢²Á³ýÊý¾Ý¡£²¢ÌåÏÖÕë¶Ô iLO µÄ¶ñÒâÈí¼þºÜÊÇÄÑÒÔ·À¿Ø£¬ÓÉÓÚËüÒÔ¸ßȨÏÞÔËÐÐ(¸ßÓÚ²Ù×÷ϵͳÖеÄÈκλá¼û¼¶±ð)£¬¿ÉÒÔ×öµ½²»±»ÖÎÀíÔ±ºÍ¼ì²âÈí¼þ²ì¾õ¡£Í¨¹ý¸Ä¶¯´ËÄ£¿é£¬ÔÊÐí¶ñÒâÈí¼þÔÚÖØÐÂ×°ÖòÙ×÷ϵͳºó¼ÌÐø±£´æ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbK
8. ¹¥»÷ÕßʹÓÃAPT33ÐÂÐͶñÒâÔ¶¿ØÈí¼þLittleLooterÌᳫ¹¥»÷
¡¾¸ÅÊö¡¿
½üÆÚ£¬Ñо¿Ö°Ô±¼à²âµ½Ò»¿îÃûΪ“WhatsApp.apk”µÄÐéαÉç½»Èí¼þ£¬×ÅʵÊÇÒ»¿î¶ñÒâÇÔÃÜÈí¼þ£¬ÒÉ»óÓû§ÏÂÔØ£¬Ô¶³Ì¿ØÖÆÓû§ÊÖ»ú,²¢ÇÔÈ¡Óû§µÄÒþ˽Êý¾Ý¡£Ñо¿Ö°Ô±ÆÊÎö·¢Ã÷ÊÇAPT33×éÖ¯µÄÐÂÐÍÔ¶¿ØÈí¼þ£¬Æ¾Ö¤Æä¶ñÒâÐÐΪ½«ÆäÃüÃûΪ“LittleLooter”¡£²¢ÌåÏÖ“WhatsApp”ÊÇÈ«Çò×ÅÃûµÄͨѶÉç½»Èí¼þ£¬µ«´ËÓ¦ÓÃÖ÷ÒªÊÇÍâÑóµÄÓû§ÈºÌ壬²¢Î´ÔÚº£ÄÚÓ¦ÓÃÊг¡Éϼܣ¬Óû§ÔÚÀÖ³É×°ÖÃÐéαµÄ“WhatsApp”ºó£¬Ò²ÎÞ·¨·¿ª£¬¶ñÒâÈí¼þ»áɾ³ý×ÔÉíµÄ½çÃæµÄͼ±ê£¬²¢ÇÒÌáÐѓδװÖøÃÓ¦ÓÔ£¬µ«´Ë¶ñÒâÈí¼þ²¢Ã»ÓÐɾ³ý£¬ÔÚºǫ́ÒÀÈ»±£´æ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbM
9. ºÚ¿ÍÔÚÆ¾Ö¤Ìî³ä¹¥»÷ÖÐÇÔÈ¡ÁË17¼Ò¹«Ë¾µÄ¿Í»§ÕÊ»§
¡¾¸ÅÊö¡¿
ŦԼÖÝ×ÜÉó²é³¤°ì¹«ÊÒÒÑÏò17¼Ò´óÐÍ×éÖ¯·¢³ö¾¯±¨£¬³ÆÆäÁè¼Ý 100 Íò¿Í»§µÄÕÊ»§ÔÚÆ¾Ö¤Ìî³ä¹¥»÷ÖÐÔâµ½ºÚ¿Í¹¥»÷¡£Æ¾Ö¤Ìî³äÊÇÒ»ÖÖÍøÂç¹¥»÷ÐÎʽ£¬ºÚ¿ÍÕýÔÚ½ÓÊÜ´ó×ÚÓû§ÃûºÍÃÜÂëÊý¾Ý¿â£¬ÆäÖÐÐí´ó¶¼¾Ý¿âÔÚ×î½üµÄÊý¾Ýй¶Öб»µÁ£¬²¢Ê¹ÓÃ×Ô¶¯»¯ÒªÁ콫ÕÊ»§µÇ¼“ÈûÈë”ÆäËûÔÚÏß·þÎñ¡£¹¥»÷ÕßµÄÖ÷ҪĿµÄÊÇ»ñÈ¡¾¡¿ÉÄܶàµÄÕÊ»§µÄ»á¼ûȨÏÞ£¬ÒÔÍøÂçÓëÕâЩÕÊ»§Ïà¹ØÁªµÄСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢£¬È»ºóÕâЩÐÅÏ¢¿ÉÄÜ»áÔÚºÚ¿ÍÂÛ̳»ò°µÍøÊг¡ÉϳöÊÛ¡£
±ðµÄ£¬±»µÁµÄ˽ÈËÊý¾Ý¿ÉÄܻᱻ¹¥»÷ÕßÓÃÀ´¾ÙÐÐÉí·Ý͵ÇÔ»ò¾ÙÐв»·¨¹ºÖá£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNbX
10. ¹¥»÷ÕßʹÓùȸèÎĵµÌ¸ÂÛ¹¦Ð§ÖеÄÎó²î¾ÙÐй¥»÷
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±·¢Ã÷£¬¹¥»÷ÕßÕýÔÚʹÓà Google Docs µÄ“̸ÂÛ”¹¦Ð§ÔÚÖ÷ÒªÕë¶Ô Outlook Óû§µÄÍøÂç´¹ÂÚÔ˶¯Öз¢ËͶñÒâÁ´½Ó¡£¾Ý±¨µÀ£¬µ½ÏÖÔÚΪֹ£¬¹¥»÷ÕßÒѾʹÓùȸè»ùÓÚÔÆµÄÎÄ×Ö´¦Öóͷ£Ó¦ÓóÌÐòµÄ¹¦Ð§£¬¹¥»÷ÁËÀ´×Ô 100 ¶à¸ö²î±ð Gmail ÕÊ»§µÄ 30 ¸ö×â»§µÄ 500 ¶à¸öÊÕ¼þÏä¡£¹¥»÷Õßͨ¹ýÏò°üÀ¨“@”µÄÎĵµÌí¼Ó̸ÂÛÀ´¶¨Î» Google Docs Óû§£¬¸ÃÎĵµ»á×Ô¶¯Ïò¸ÃÈ˵ÄÊÕ¼þÏä·¢ËÍÒ»·âµç×ÓÓʼþ¡£²¢ÌåÏÖ£¬ÄÇ·âÀ´×ԹȸèµÄµç×ÓÓʼþ°üÀ¨Îı¾ºÍ¶ñÒâÁ´½Ó¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlNc7

AG¹«Ë¾ÔÆ







