AppleÐû²¼¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´AppleAVDÖÐÒѱ»Ê¹ÓõÄÎó²î
Ðû²¼Ê±¼ä 2022-05-175ÔÂ16ÈÕ£¬£¬£¬£¬£¬£¬£¬AppleÐû²¼½ôÆÈ¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´Ó°ÏìÁËMacºÍApple WatchµÄ0 day¡£¡£¡£¡£¡£¡£ÕâÊDZ£´æÓÚAppleAVDÖеÄÔ½½çдÈëÎó²î£¨CVE-2022-22675£©£¬£¬£¬£¬£¬£¬£¬¿É±»ÓÃÀ´Ê¹ÓÃÄÚºËȨÏÞÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£AppleµÄͨ¸æÌåÏÖ£¬£¬£¬£¬£¬£¬£¬¸ÃÎó²î¿ÉÄÜÒѱ»Æð¾¢Ê¹Ó㬣¬£¬£¬£¬£¬£¬ÒѾͨ¹ýˢнçÏß¼ì²éÀ´ÐÞ¸´¡£¡£¡£¡£¡£¡£ÕâÊÇApple¹«Ë¾ÔÚ2022ÄêÐÞ¸´µÄµÚ6¸ö0 day£¬£¬£¬£¬£¬£¬£¬Ö®Ç°»¹ÐÞ¸´ÁËCVE-2022-22587¡¢CVE-2022-22594ºÍCVE-2022-22620µÈÎó²î¡£¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/131346/security/apple-sixth-zero-day-2022.html
2¡¢Ñо¿Ö°Ô±·¢Ã÷LinuxºóÃÅBPFdoor¿ÉÈÆ¹ýÍâµØ·À»ðǽ
¾ÝýÌå5ÔÂ12ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±ÔÚ½üÆÚ·¢Ã÷ÁËÒ»ÖÖÃûΪBPFdoorµÄLinux/Unix ºóÃÅ£¬£¬£¬£¬£¬£¬£¬ÎåÄê¶àÀ´Ò»Ö±Ã»Óб»·¢Ã÷¡£¡£¡£¡£¡£¡£¸ÃºóÃÅÖ÷ÒªÕë¶ÔLinuxºÍSolarisϵͳ£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓÃÆä¿ÉÒÔÈÆ¹ýÍâµØ·À»ðǽ£¬£¬£¬£¬£¬£¬£¬Ô¶³ÌÅþÁ¬µ½Linux shellÒÔ»ñµÃ¶ÔÄ¿µÄ×°±¸µÄÍêÈ«»á¼ûȨÏÞ¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÔÚÃÀ¹ú¡¢º«¹ú¡¢ÖйúÏã¸Û¡¢ÍÁ¶úÆä¡¢Ó¡¶È¡¢Ô½ÄϺÍÃåµéµÈµØÇø·¢Ã÷ÁËBPFdoorµÄ»î¶¯£¬£¬£¬£¬£¬£¬£¬²¢¼ì²âµ½ÁË11̨SpeedtestЧÀÍÆ÷ÒÑѬȾBPFdoor£¬£¬£¬£¬£¬£¬£¬Éв»ÇåÎúËüÃÇÊÇÔõÑù±»ÈëÇֵġ£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/bpfdoor-stealthy-linux-malware-bypasses-firewalls-for-remote-access/
3¡¢Fortinet·¢Ã÷ÒÁÀÊAPT34Õë¶ÔÔ¼µ©µÄ´¹ÂÚ¹¥»÷»î¶¯
FortinetÔÚ5ÔÂ11ÈÕÅû¶ÁËÒÁÀÊAPT34£¨ÓÖ³ÆOilrig£©½üÆÚµÄÓã²æÊ½´¹ÂڻµÄÏêÇé¡£¡£¡£¡£¡£¡£´Ë´Î»î¶¯Ö÷ÒªÕë¶ÔÔ¼µ©µÄÍâ½»¹ÙÔ±£¬£¬£¬£¬£¬£¬£¬Î±×°³Éͳһ»ú¹¹µÄIT²¿·ÖµÄͬÊ·¢ËÍ´¹ÂÚÓʼþ¡£¡£¡£¡£¡£¡£ÓʼþÖеĶñÒâExcel¸½¼þÖаüÀ¨VBAºê´úÂ룬£¬£¬£¬£¬£¬£¬Ö¼ÔÚ½¨ÉèÒ»¸ö¶ñÒâ¿ÉÖ´ÐÐÎļþ¡¢Ò»¸öÉèÖÃÎļþºÍÒ»¸öÊðÃûÇÒÇå½àµÄDLL¡£¡£¡£¡£¡£¡£¶ñÒâÈí¼þʹÓÃDGA¹¤¾ßÓëC2×ÓÓò¾ÙÐÐͨѶ£¬£¬£¬£¬£¬£¬£¬ÇһÖÐʹÓõÄһЩÓòÊÔͼαװ³É°¢Ë¹Àû¿µ¡¢»ã·áÒøÐкÍ˼¿ÆµÈ×ÅÃû¹«Ë¾¡£¡£¡£¡£¡£¡£
https://www.fortinet.com/blog/threat-research/please-confirm-you-received-our-apt
4¡¢Ã°³äµÄPixelmon NFTÍøÕ¾»á·Ö·¢Ð¶ñÒâÈí¼þVidar
ýÌå5ÔÂ15Èճƣ¬£¬£¬£¬£¬£¬£¬Ò»¸öð³äµÄPixelmon NFTÍøÕ¾»á·Ö·¢ÇÔȡƾ֤µÄжñÒâÈí¼þVidar¡£¡£¡£¡£¡£¡£¹¥»÷Õ߸´ÖÆÁËÕýµ±µÄpixelmon.clubÍøÕ¾£¬£¬£¬£¬£¬£¬£¬²¢ÔÚpixelmon[.]pwÉϽ¨ÉèÁËαÔìµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¸ÃÍøÕ¾»á·Ö·¢Îļþsetup.zip£¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨Ò»¸öWindows¿ì½Ý·½·¨Îļþsetup.lnk£¬£¬£¬£¬£¬£¬£¬Ëü½«Ö´ÐÐPowerShellÏÂÁîÒÔ´Ópixelmon[.]pwÏÂÔØsystem32.hta¡£¡£¡£¡£¡£¡£¾ÓɲâÊÔ£¬£¬£¬£¬£¬£¬£¬System32.hta»áÏÂÔØVidar¡£¡£¡£¡£¡£¡£Vidar»á´Óä¯ÀÀÆ÷ºÍÓ¦ÓóÌÐòÖÐÇÔÈ¡ÃÜÂ룬£¬£¬£¬£¬£¬£¬²¢ÔÚÅÌËã»úÉÏËÑË÷ÌØÃüÃû³ÆµÄÎļþ£¬£¬£¬£¬£¬£¬£¬·¢Ë͸ø¹¥»÷Õß¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/fake-pixelmon-nft-site-infects-you-with-password-stealing-malware/
5¡¢¶íÂÞ˹¶à¸ö×éÖ¯µÄÐÅÏ¢Êý¾ÝÒѱ»¹ûÕæÔÚDDoSecrets
¾Ý5ÔÂ14ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬AnonymousÌᳫµÄOpRussia»î¶¯ÔÚ½üÒ»ÖÜÓÖÈëÇÖÁ˶íÂÞ˹µÄ¶à¸ö×éÖ¯¡£¡£¡£¡£¡£¡£¹¥»÷Õßͨ¹ýDDoSecrets¹ûÕæÁ˱»µÁÊý¾Ý£¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨£ºSOCAR EnergoresourceµÄ130 GB£¬£¬£¬£¬£¬£¬£¬°üÀ¨½ü116500·âÓʼþ£»£»£»£»°¢ÇÕ˹¿ËÊÐÕþ¸®µÄ8.5 GB£¬£¬£¬£¬£¬£¬£¬°üÀ¨7000¶à·âÓʼþ£»£»£»£»¶íÂÞ˹Áª°îÓæÒµºÍº£ÑóÑо¿Ëù¼«µØ·Ö²¿466 GBµÄÓʼþ£»£»£»£»JSC UMMCµÄ¿Ú°¶ºÍÌú·ÏîĿЧÀ͵Ä106 GB£¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨½ü77500·âÓʼþ¡£¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/131264/hacktivism/anonymous-oprussia-updates.html
6¡¢CybleÐû²¼¹ØÓÚ¶ñÒâÈí¼þ¹¤¾ß°üEternityµÄÆÊÎö±¨¸æ
5ÔÂ12ÈÕ£¬£¬£¬£¬£¬£¬£¬CybleÐû²¼Á˹ØÓÚ¶ñÒâÈí¼þ¹¤¾ß°üEternityµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£ÕâÊÇÒ»¸öеĶñÒâÈí¼þ¼´Ð§ÀÍ£¨MaaS£©£¬£¬£¬£¬£¬£¬£¬¿ÉÓÃÀ´Æ¾Ö¤Ëù¾ÙÐеĹ¥»÷ʹÓòî±ðµÄÄ£¿£¿£¿£¿£¿é¾ÙÐж¨ÖÆ£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÐÅÏ¢ÇÔÈ¡³ÌÐò¡¢ÍÚ¿óÈí¼þ¡¢clipper¡¢ÀÕË÷Èí¼þ¡¢È䳿ÒÔ¼°DDoS bot¡£¡£¡£¡£¡£¡£ÆäÖÐÊÛ¼Û260ÃÀÔªÒ»ÄêµÄÐÅÏ¢ÇÔÈ¡Èí¼þ¿ÉÇÔÈ¡20¶à¸öä¯ÀÀÆ÷ÖеÄÊý¾Ý£»£»£»£»×îÌÚ¹óµÄÊÇ490ÃÀÔªEternityÀÕË÷Èí¼þÄ£¿£¿£¿£¿£¿é£¬£¬£¬£¬£¬£¬£¬¾Ý³ÆÊÇFUD£¨ÍêÈ«ÎÞ·¨¼ì²âµ½£©µÄ¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬£¬ÒѾÔÚÒ°¼ì²âµ½¸Ã¶ñÒâÈí¼þµÄÑù±¾µÄÈö²¥ºÍʹÓᣡ£¡£¡£¡£¡£
https://blog.cyble.com/2022/05/12/a-closer-look-at-eternity-malware/


¾©¹«Íø°²±¸11010802024551ºÅ