°Ä´óÀûÑǹ«Ë¾BlueScopeÔâµ½¹¥»÷µ¼Ö²¿ÃÅÒµÎñÖжϣ»ÈÕ±¾¹«Ë¾NikkeiÔâµ½¹¥»÷£¬³¬¹ý1.2ÍòÈËÐÅϢй¶
°ä²¼¹¦·ò 2020-05-191.°Ä´óÀûÑǹ«Ë¾BlueScopeÔâµ½¹¥»÷µ¼Ö²¿ÃÅÒµÎñÖжÏ
°Ä´óÀûÑǹ«Ë¾BlueScopeÓÚÉÏÖÜÎåÈ·¶¨£¬ÆäÔâµ½ÁËÍøÂç¹¥»÷²¢ÇÒÒѾӰÏìµ½ÁËËûÃǵÄITϵͳ£¬µ¼Ö¸ù«Ë¾²¿ÃÅÒµÎñÖжϡ£¸Ã¹«Ë¾°µÊ¾£¬Õâ´ÎÊÂÎñÓ°ÏìÁËÆäÔÚ°Ä´óÀûÑǵÄÔì×÷ºÍÏúÊÛÒµÎñ£¬µ«Í¨¹ýһЩ±äͨ·¨×Ó£¬¸Ã¹«Ë¾µÄÆäËûÁ÷³ÌÈÔÄܹ»Õý³£ÔËÐС£¾Ý¹«Ë¾CFO Tania Archibald˵£¬Õâ´Î¹¥»÷ÊÇÔڸù«Ë¾µÄÃÀ¹úÒµÎñÖз¢Ïֵģ¬Ö®ºó¹«Ë¾ÂíÉ϶ԴËÊÂ×ö³öÁËÏìÓ¦´ëÊ©¡£Ä¿Ç°£¬¸Ã¹«Ë¾ÔÚÖÂÁ¦½¨¸´ÊÜÓ°Ïìϵͳ£¬ÒÔ¸´ÔÕý³£·þÎñºÍÔËÓª£¬Éл¹Ã»ÓÐÕë¶ÔÕâ´Î¹¥»÷µÄ¾ßÌåÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/bluescope-reports-cyber-incident-affecting-australian-operations/
2.ÈÕ±¾¹«Ë¾NikkeiÔâµ½¹¥»÷£¬³¬¹ý1.2ÍòÈËÐÅϢй¶
ÈÕ±¾µÄÈÕ¾¼¯ÍÅ£¨Nikkei Inc.£©5ÔÂ12ÈÕ°ä·¢£¬ÆäÔâµ½ÁËÍøÂç¹¥»÷£¬µ¼Ö¼¯ÍÅ12514È˵ÄÓ×ÎÒÐÅϢй¶¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬¶Ê»á³ÉÔ±¡¢ÕýʽºÍ¼æÈËÔ±¹¤ÒÔ¼°ÈÕ¾×ܲ¿¼°ÆäijЩ¼¯ÍŹ«Ë¾ÆäËûÈËÔ±µÄÐÕÃûºÍµç×ÓÓʼþµØÖ·¡£¸Ã¹«Ë¾°µÊ¾£¬Ã»ÓÐй©Óë¶ÁÕߺͿͻ§ÓйصÄÐÅÏ¢£¬Ò²Ã»ÓÐй©Æä¼ÇÕßÍøÂçµÄÐÂÎű¨Â·ÐÅÏ¢¡£¾ÝϤ£¬Õâ´Î¹¥»÷²úÉúÔÚ5ÔÂ8ÈÕ£¬¸Ã¹«Ë¾Ô±¹¤ÊÕµ½²¢´ò¿ªÁËÒ»·â´øÓв¡¶¾¸½¼þµÄµç×ÓÓʼþµ¼ÖÂÆäÍÆËã»úÊܵ½Ï°È¾¡£¸Ã¹«Ë¾°µÊ¾£¬Ï°È¾²¡¶¾ÊÇÐÂÐͲ¡¶¾£¬Òò¶ø´Ë¿Ì±ØÒªÆÆ·ÑһЩ¹¦·ò½øÐмì²â¡£
ÔÎÄÁ´½Ó£º
https://mainichi.jp/english/articles/20200513/p2a/00m/0na/002000c
3.ÃÀ¹úFinCENÖÒ¸æÄ¿Ç°´æÔÚ´ó¹æÄ£µÄÐ鹹Ǯ±Òڿƻ
ÃÀ¹ú½ðÈÚ·¸×ï·¨ÂÉÍøÂçFinCENÖÒ¸æÄ¿Ç°´æÔÚ´ó¹æÄ£µÄÐ鹹Ǯ±Òڿƻ¡£FinCENÕÆ¹ÜÈËKenneth Blanco°µÊ¾£¬Ä¿Ç°ÍøÂç·¸×ï·Ö×ÓÖØÒªÒÔÐ鹹Ǯ±ÒΪָ±ê£¬Òò¶øÓ¦³Áµã¹Ø×¢½ðÈÚÚ¿Æ¡£FinCEN°µÊ¾£¬×Ô2013ÄêÒÔÀ´£¬ËûÃÇ×ܹ²ÊÕµ½Á˽ü7ÍòÆð¼ÓÃÜÇ®±ÒڿƻµÄ¿ÉÒɻ»ã±¨£¨SAR£©£¬¶øÔÚCOVID-19ÆÚ¼ä£¬ÕâÖÖÍþвÔö³¤ÁË10±¶¡£ÔÚÒßÇéÆÚ¼ä£¬ÆäËûÀàÐ͵ÄÍøÂç¹¥»÷Ò²²ã³ö²»ÇºÃ±ÈÀÕË÷Èí¼þ¹¥»÷¡¢ÐéαҽÁƲúÆ·ÏúÊۺʹú±ÒͶ×ÊڿƵȡ£ÓÉÓÚCOVID-19£¬´ó²¿ÃÅÈ˺͵±¾Ö¹ÙÔ±ÔڼҰ칫£¬ÕâÐ©ÍøÂç×ï·¸»áͨ¹ý¹¥»÷VPNºÍÔ¶³Ì×ÀÃæºÍ̸µÈÔ¶³ÌÀûÓ÷¨Ê½Öеķì϶£¬ÒÔÇÔÊØÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://www.ehackingnews.com/2020/05/fincen-chief-blanco-warns-of-wide-scale.html
4.ºÚ¿Í×éÖ¯RATicate'sÀûÓÃNSIS×°Ö÷¨Ê½·Ö·¢RAT
SophosµÄ°²È«×êÑÐÈËÔ±·¢ÏÖÁËÒ»¸öºÚ¿Í×éÖ¯RATicate's£¬¸Ã×éÖ¯ÀûÓÃNSIS×°Ö÷¨Ê½¶Ô¹¤Òµ¹«Ë¾ÌáÒé¿Í¹¥»÷£¬ÒÔ·Ö·¢RATºÍÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ¡£¸Ã×éÖ¯ÔÚ2019Äê11ÔÂÖÁ2020Äê1ÔÂÆÚ¼äÕë¶ÔÅ·ÖÞ¡¢Öж«ºÍº«¹úµÄ¹«Ë¾×ܹ²ÌáÒéÁË5´Î¹¥»÷¡£Sophos»ã±¨×¢Ã÷£¬ºÚ¿ÍÓÃÁ½ÖÖ·½Ê½Í¨¹ý´¹µöÈí¼þ·Ö·¢RAT£¬ÆäÒ»ÊÇÀûÓôøÓÐÓÐNSIS×°Ö÷¨Ê½µÄZIP¡¢UDFºÍIMG¸½¼þ£¬Æä¶þÊÇ´ÓÔ¶³Ì·þÎñÆ÷ÏÂÔØÓÐЧ¸ºÔØXLSºÍRTFÎĵµ¡£Sophos·¢ÏÖÕâ´Î¹¥»÷Öкڿͻ¹ÓÃÁ˺ö๤¾ß£¬Ô̺¬Lokibot£¬Betabot£¬FormbookºÍAgentTeslaµÈ¡£
ÔÎÄÁ´½Ó£º
https://www.ehackingnews.com/2020/05/sophos-found-group-abusing-nsis.html
5.ÐÂÐ͹¥»÷BIAS¿ÉÀûÓÃÀ¶ÑÀ¹¥»÷ÊÖ»úµÈÉ豸
×êÑÐÈËÔ±·¢ÏÖÁËÀ¶ÑÀÎÞÏߺÍ̸ÖеÄÒ»¸öзì϶BIAS£¬¿É±»ÀûÓù¥»÷ÏÖ´ú»¥Á¬É豸£¬ÀýÈçÖÇÄÜÊÖ»ú¡¢Æ½°åµçÄÔ¡¢±Ê¼Ç±¾µçÄÔºÍÖÇÄÜIoTÉ豸µÈ¡£¸Ã·ì϶ȫ³ÆÎªBluetooth Impersonation AttackS£¬Ó°ÏìÁ˾µä°æÀ¶ÑÀºÍ̸¡£¸Ã¹¥»÷·½Ê½Õë¶ÔµÄÊÇÉ豸¼äµÄ³Ö¾ÃÃÜÔ¿£¬µ±Á½¸öÀ¶ÑÀÉ豸³õ´ÎÅä¶Ôʱ½«ÌìÉú´ËÃÜÔ¿£¬¶øBIASÄܹ»Ê¹¹¥»÷Õß¼ÙÒâÏÈǰÅä¶ÔÉ豸µÄÉí·Ý£¬²¢³É¹¦½øÐÐÉí·ÝÑéÖ¤²¢Ïνӵ½ÁíÒ»¸öÉ豸£¬¶øÎÞÐè֪·֮ǰÔÚÁ½ÕßÖ®¼äµÄ³Ö¾ÃÃÜÔ¿¡£Ò»µ©¹¥»÷³É¹¦£¬¹¥»÷Õß±ãÄܹ»½Ó¼û»ò½ÚÔìÁíÒ»¸öÉ豸¡£×êÑÐÈËÔ±²âÊÔÁËCypress¡¢¸ßͨ(Qualcomm)¡¢Æ»¹û(Apple)¡¢Ó¢Ìضû(Intel)¡¢ÈýÐÇ(Samsung)ºÍCSRµÄÀ¶ÑÀоƬ£¬·¢ÏÖ¾ù´æÔÚ´ËÎÊÌâ¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/smartphones-laptops-iot-devices-vulnerable-to-new-bias-bluetooth-attack/
6.LinuxÒç¶Âí½Å·ÖÎö£¬¿ÉÏò¸¸¹ý³Ì·¢ËÍËÁÒâÐźÅ
LinuxÄÚºËÔÚ¹ýÂËÐźŴ¦Ö÷¨Ê½Ê±£¬¶Ô×Ó/¸¸¹ý³Ì±êʶ´¦ÖõÄÊèËÉÑéÖ¤ÖдæÔÚ·ì϶£¬ÔÒòÊÇinclude/linux/sched.hÖеÄexec_idÖ»ÓÐ32룬ÕûÊýÒç³ö¿ÉÄÜ»á×ÌÈÅdo_notify_parent±£»¤»úÔì¡£Òò¶ø±¾µØ¹¥»÷ÕßÄܹ»ÀûÓô˷ìÏ¶ÈÆ¹ý²é³£¬½«ËÁÒâÐźŷ¢Ë͵½¸¸ÌØÈ¨¹ý³Ì¡£ÀûÓÃÕûÊýÒç³ö֮ǰ¾¹ýµÄ¹¦·òÁ¿£¬ÒÔ¼°Ïò¸¸¹ý³Ì·¢ËÍÐźŵÄÑéÖ¤µÄȱʧ¿ÉÄÜ»á»á¶Ô²Ù×÷Ôì³É¾Þ´óµÄÍþв¡£×î¿ÉÄܵĹ¥»÷ý½éÊÇÊÔͼ¹¥»÷setuid¹ý³ÌµÄ±¾µØÓû§£¬Ä¿Ç°ÒÑͨ¹ý5.5.18°æ±¾½¨¸´¸ÃÎÊÌâ¡£
ÔÎÄÁ´½Ó£º
http://blog.pi3.com.pl/?p=705


¾©¹«Íø°²±¸11010802024551ºÅ