Adobe°ä²¼´¹Î£²¹¶¡£¬½¨¸´Æä3¿î²úÆ·ÖеÄ35¸ö·ì϶ £»ÀÕË÷Èí¼þShade±³ºó×éÖ¯ÊÕÊÖ£¬·Å³ö75Íò¸ö½âÃÜÃÜÔ¿

°ä²¼¹¦·ò 2020-04-29

1.Adobe°ä²¼´¹Î£²¹¶¡£¬½¨¸´Æä3¿î²úÆ·ÖеÄ35¸ö·ì϶


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Èí¼þ¹«Ë¾AdobeÓÚ4ÔÂ28ÈÕ°ä²¼´¹Î£·ì϶²¹¶¡£¬×ܹ²½¨¸´ÁË35¸ö·ì϶£¬ÕâЩ·ì϶ӰÏìµÄ²úÆ·ÓÐAdobe Illustrator¡¢Adobe BridgeºÍµçÉÌÆ½Ì¨Magento¡£Õâ´Î°²È«¸üн¨¸´ÁËWindows°æ±¾Illustrator 2020ÖеÄ5¸ö´úÂëÖ´Ðзì϶£¬Adobe Bridge 10.0.1¼°¸üÔç°æ±¾ÖеÄ17¸ö·ì϶£¨14¸ö¿Éµ¼Ö´úÂëÖ´Ðзì϶£¬3¸öÓйØÐÅϢй¶ÎÊÌ⣩£¬Ã³Ò×°æ±¾ºÍ¿ªÔ´°æ±¾µÄMagento CMSÖеÄ13¸ö·ì϶¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2020/04/adobe-software-updates.html


2.ÀÕË÷Èí¼þShade±³ºó×éÖ¯ÊÕÊÖ£¬·Å³ö75Íò¸ö½âÃÜÃÜÔ¿


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ÀÕË÷Èí¼þShade±³ºó×éÖ¯ÓÚÖÜÄ©°ä·¢ÊÕÊÖ£¬²¢ÔÚGitHubÉϰ䲼Á˳¬¹ý75Íò¸ö½âÃÜÃÜÔ¿¡£¸Ã×éÖ¯°µÊ¾ÆäÔÚÈ¥ÄêÄêµ×¾ÍÖÕ³¡Á˹¥»÷Ðж¯£¬´Ë¿Ì°ä²¼ÁË75Íò¸ö½âÃÜÃÜÔ¿£¬Ò²ÒÑÏú»ÙÁËÇÔÈ¡µÄÈ«ÊýÊý¾Ý£¬½«À´»¹»á°ä²¼½âÃÜÈí¼þ¡£¾­ÑéÖ¤£¬Õâ´Î°ä²¼µÄ½âÃÜÃÜÔ¿¿ÉÒÔΪËùÓб»ÀÕË÷Èí¼þShade¼ÓÃܵÄÎļþ½âÃÜ¡£ShadeÊÇ×îÔçµÄÀÕË÷Èí¼þÖ®Ò»£¬ÓÚ2014ÄêµÚÒ»´Î±»·¢ÏÖ£¬Ö±µ½ÊÕÊÖ֮ǰһÏòÔÚ²»ÐÝÌáÒé¹¥»÷£¬Ä¿Ç°Éв»Ã÷ÏÔ¸Ã×éÖ¯ÒòºÎÊÕÊÖ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/shade-troldesh-ransomware-shuts-down-and-releases-all-decryption-keys/


3.ºÚ¿ÍÀûÓÃWordPressÖ÷ÌâOneToneÖеÄXSS·ì϶´´½¨ºóÃÅ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


¾ÝÍøÂ簲ȫ¹«Ë¾Sucuri±¨Â·£¬WordPressµÄÖ÷ÌâOneToneÖдæÔÚXSS·ì϶£¬¶øºÚ¿ÍÔÚ±¾Ô³õÆðÍ·ÀûÓô˷ì϶£¬ÇÔÈ¡Á÷Á¿ºÍ´´½¨ºóÃÅ¡£ºÚ¿ÍÊÇͨ¹ýXSS·ì϶עÈë¶ñÒâ´úÂëʵÏÖ¹¥»÷µÄ£¬¸Ã´úÂëÓµÓÐÁ½¸öÖ°ÄÜ£¬Ò»Êǽ«Óû§³Á¶¨Ïòµ½ischeck[.]xyzÍйܵÄÁ÷Á¿·Ö·¢ÏµÍ³£¬µÚ¶þ¸öÔòÊÇ´´½¨ºóÃÅ¡£¶ø´´½¨ºóÃŹ²ÓÐÁ½ÖÖ·½Ê½£¬Ò»ÖÖÊÇÔÚWordPressÖÐÔö³¤ÖÎÀíÔ¹ØÊ»§£¨Óû§ÃûΪsystem£©£¬ÁíÒ»ÖÖÊÇÔÚ·þÎñÆ÷¶Ë´´½¨ÖÎÀíÔ±¼¶´ËÍâcookieÎļþ£¨ÃûΪTho3faeKµÄcookieÎļþ£©¡£Ä¿Ç°¸Ã·ì϶ÒÀȻδ±»½¨¸´¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/hackers-are-creating-backdoor-accounts-and-cookie-files-on-wordpress-sites-running-onetone/


4.ºÚ¿Í¼ÙÒâ¿ìµÝ¹«Ë¾ÌáÒé´¹µö¹¥»÷£¬·Ö·¢RATµÈ¶ñÒâÈí¼þ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


¿¨°Í˹»ù£¨Kaspersky£©×êÑÐÈËÔ±·¢ÏÖÁËÐÂÒ»ÂÖ´¹µö¹¥»÷£¬ºÚ¿Í¼ÙÒâ¿ìµÝ¹«Ë¾£¨ÈçFedEx¡¢UPSºÍDHL£©·¢ËÍÒÔCOVID-19ΪÖ÷ÌâµÄÓʼþ£¬À´·Ö·¢¶ñÒâÈí¼þ¡£ºÚ¿Í¼Ù×°³ÉDHL£¬ÌáÐÑÓû§¶Ô¸½¼þÖеÄÔËÊäÎĵµ½øÐиüÕý£¬ÒÔ´ËÀ´×°ÖÃBsymem¶ñÒâÈí¼þ¡ £»¹¼Ù×°³ÉUPS£¬ÌáÐÑÊÕ¼þÈË´ò¿ª¸½¼þ²é¿´½Ó¹Ü°ü¹üµÄ×¢Ã÷£¬¸Ã¸½¼þÆäʵÊǶñÒâÈí¼þµÄ¿ÉÖ´ÐÐÎļþ£¬Êܺ¦Õߵ㿪ºó½«ÏÂÔØºÍ×°ÖÃRAT Remcos¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fake-fedex-and-ups-delivery-issues-used-in-covid-19-phishing/


5.ÃÀ¹úCivicSmart¹«Ë¾ÔâÀÕË÷Èí¼þ¹¥»÷£¬ÄÚ²¿Îļþй¶


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ÃÀ¹úÖÇÄÜÍ£³µÊÕ·ÑϵͳÔì×÷ÉÌCivicSmartÔâµ½ÁËÀÕË÷Èí¼þSodinokibi¹¥»÷£¬Æä159 GBµÄÊý¾Ý±»µÁ£¬Ô̺¬Ô±¹¤ÐÅÏ¢¡¢Ó빩¸øÉ̵ĺÏͬ¡¢ÒøÐжÔÕʵ¥ÒÔ¼°¿Í»§ÐÅÓþ¿¨ºÅÂë¡£Õâ¸öÐÂÎÅÊǺڿͰ䲼ÔÚÍøÉϵÄ£¬ËüÖ¸ÁËÈ»Êܺ¦Õß²¢Ð¹Â¶Á˱»µÁÎļþÒÔÊÔͼÀÕË÷Êê½ð£¬ÕâÅú×¢CivicSmart¿ÉÄÜûÓÐÖ§¸¶×ã¹»µÄÊê½ð¡£ÒÔÉ«Áа²È«¹«Ë¾Under Breach ÔÚ3Ô¾ͰÑÎȵ½ÁËÕâ´Î¹¥»÷£¬µ«ÊDz¢Î´ÓèÒÔÅû¶¡£Ö®ºóCivicSmart¹«Ë¾Ö§¸¶ÁË×ã¹»µÄÊê½ð²¢½¨¸´ÁË·ì϶£¬ºÚ¿ÍÒ²Ïú»ÙÁ˱»µÁÊý¾Ý¡£


Ô­ÎÄÁ´½Ó£º

https://statescoop.com/smart-parking-meter-vendor-data-stolen-ransomware-attack/


6.¼ÓÄôóParkviewÒ½ÔºÔâÀÕË÷Èí¼þMeditech¹¥»÷ÖÂϵͳ̱»¾


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


¼ÓÄôóµÄParkviewÒ½ÔºÓÚÉÏÖÜÎåÈ·ÈÏ£¬ÆäÔâµ½ÁËÍøÂç¹¥»÷£¬²¢ÇҸù¥»÷ÒѾ­Ó°Ïìµ½ÁËÒ½ÔºµÄ»ù´¡ÉèÊ©¡£¹¥»÷²úÉúÔÚ4ÔÂ21ÈÕ£¬¾Ý¹¤×÷ÈËԱ˵£¬Ò½ÔºÓÃÓÚ´æ´¢»¼ÕßÐÅÏ¢µÄϵͳMeditech±»ÀÕË÷Èí¼þ¹¥»÷£¬µ¼ÖÂÎÞ·¨Ê¹Ó᣸ÃÔºµÄ½²»°ÈËÒ²ÒÑÈ·ÈÏ£¬Ò½ÔºÄ¿Ç°ÔÚʹÓÃÖ½ÖʵļͼϵͳÀ´¸ú×ÙºÍÒ½Öλ¼Õß¡£¸ÃÔº°µÊ¾£¬Ä¿Ç°ÊÂÎñÈÔÔÚµ÷²é°ø±ß£¬¶øÕâ´Î¹¥»÷²»»á¶Ô»¼Õß²úÉúÈκÎÓ°Ïì¡£


Ô­ÎÄÁ´½Ó£º

https://www.fox21news.com/top-stories/it-incident-under-investigation-at-parkview-medical-center/