Adobe°ä²¼´¹Î£°²È«¸üУ¬½¨¸´¶à¿î²úÆ·ÖÐËÁÒâ´úÂëÖ´Ðзì϶ £»ºÚ¿ÍÀûÓÃ4¸ö¶ñÒâ¼ÓÃÜÇ®±ÒÀûÓ÷ַ¢GMERA

°ä²¼¹¦·ò 2020-07-22

1.Adobe°ä²¼´¹Î£°²È«¸üУ¬½¨¸´¶à¿î²úÆ·ÖÐËÁÒâ´úÂëÖ´Ðзì϶


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


AdobeÓÚ±¾Öܶþ°ä²¼ÁË´¹Î£°²È«¸üУ¬ÒÔ½¨¸´Adobe Photoshop£¬Adobe PreludeºÍAdobe BridgeÖеÄ12¸öÑϳÁµÄ·ì϶£¬ÕâЩ·ì϶¿Éµ¼Ö¹¥»÷ÕßÔÚWindowsÉ豸ÉÏÖ´ÐÐËÁÒâ´úÂë¡£ÕâЩËÁÒâ´úÂëÖ´Ðзì϶¶¼ÊÇÓÉÓÚÔ½½çдÈëºÍÔ½½ç¶ÁÈ¡µ¼ÖµÄ£¬±ðÀëΪAdobe BridgeÖеÄÔ½½ç¶ÁÈ¡·ì϶£¨CVE-2020-9675£©ºÍÔ½½çд·ì϶£¨CVE-2020-9674ºÍCVE-2020-9676£©£¬ Adobe PhotoshopÖеÄÔ½½ç¶ÁÈ¡·ì϶£¨CVE-2020-9683ºÍCVE-2020-9686£©ºÍÔ½½çд·ì϶£¨CVE-2020-9684¡¢CVE-2020-9685ºÍCVE-2020-9687£©£¬Adobe PreludeÖеÄÔ½½ç¶ÁÈ¡·ì϶£¨CVE-2020-9677ºÍCVE-2020-9679£©ºÍÔ½½çд·ì϶£¨CVE-2020-9678ºÍCVE-2020-9680£©¡£´Ë±í£¬Õâ´Î°²È«¸üл¹½¨¸´ÁËReader MobileÖÐÓÉÓÚĿ¼±éÀúµ¼ÖµÄÐÅϢй¶ÎÊÌ⣨CVE-2020-9663£©¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/adobe-photoshop-gets-fixes-for-critical-security-vulnerabilities/


2.ºÚ¿ÍÀûÓÃ4¸ö¶ñÒâ¼ÓÃÜÇ®±ÒÀûÓ÷ַ¢GMERA£¬ÖØÒªÕë¶ÔMac OS


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ESET×êÑз¢ÏÖ£¬ÓÐ4¸öľÂí»¯µÄ¼ÓÃÜÇ®±ÒÂòÂôÀûÓÃÔÚ·Ö·¢¶ñÒâÈí¼þGMERA£¬ÖØÒªÕë¶ÔMac OS£¬Ö¼ÔÚÇÔÈ¡¼ÓÃÜÇ®±ÒÇ®°üÎļþ²¢ÍøÂçÓû§µÄä¯ÀÀÊý¾Ý¡£Õâ4¿î¼ÙðµÄÀûÓñðÀëÊÇCointrazer¡¢Cupatrade¡¢LicatradeºÍTrezarus£¬ËüÃÇÐû³ÆÊǼÓÃÜÇ®±ÒÂòÂôÀûÓÃKattanaµÄ·­°æ¡£Ò»µ©Óû§ÏÂÔØÕâЩľÂíÀûÓã¬Æä¾Í»á²¿ÊðÃûΪGMERAµÄ¶ñÒâÈí¼þ£¬ÒÔÍøÂçÊܺ¦ÕßµÄä¯ÀÀÆ÷ÐÅÏ¢£¨Ô̺¬ÆäCookieºÍä¯ÀÀº¹Çà¼Í¼£©£¬½Ó¼ûºÍÇå¿ÕÆä¼ÓÃÜÇ®±ÒÇ®°ü¡£×êÑÐÈËÔ±°µÊ¾£¬Õâ4¸öÀûÓôæÔÚ΢Ó׵IJî¾à£¬µ«ÊÇÖ°ÄÜͨ³£ÊÇÒ»ÑùµÄ¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/mac-cryptocurrency-traders-targeted-by-trojanized-apps/157557/


3.ºÚ¿Í¿ÉÀûÓÃWindows 10¹¤¾ßwsreset.exeɾ³ýËÁÒâÎļþ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


×êÑÐÈËÔ±·¢ÏÖ£¬ºÚ¿Í¿ÉÀûÓÃWindows 10¹¤¾ßwsreset.exeɾ³ýËÁÒâÎļþ£¬Ô̺¬Òñ±ÎµØÉ¾³ýɱ¶¾Èí¼þ¶ø²»±»·¢ÏÖ¡£Wsreset.exeÊǺϷ¨µÄÒÉÄѽâ´ð¹¤¾ß£¬Ëü¿ÉÒÔΪÓû§Õï¶ÏWindowsÀûÓÃÉ̵êÖеÄÎÊÌâ²¢³ÁÖÃÆä»º´æ¡£µ«ÊÇÓÉÓÚwsreset.exe´¦ÖÃWindowsÎÊÌâʱ»áÌáÉýȨÏÞÖ´ÐУ¬Òò¶ø¸Ã·ì϶ʹ¹¥»÷ÕßÄܹ»ÔÚûÓÐÌØÈ¨µÄÇé¿öÏÂɾ³ýÎļþ¡£´Ë±í£¬×êÑÐÈËÔ±»¹ÒÔAdawareΪÀý£¬Õ¹Ê¾ÁËÈôºÎÀûÓø÷ìÏ¶ÈÆ¹ýɱ¶¾Èí¼þ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/windows-10-store-wsreset-tool-lets-attackers-bypass-antivirus/


4.5¸öÔÚÏß½ø½¨ÍøÕ¾ÔÆÆ½Ì¨ÅäÖÃÃýÎó£¬Ð¹Â¶100ÍòѧÉúÊý¾Ý


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


WizCase³Æ£¬ÓÉÓÚÔÆÆ½Ì¨ÅäÖÃÃýÎó£¬5¸öÔÚÏß½ø½¨ÍøÕ¾Ð¹Â¶Á˽ü100ÍòÌõѧÉúÓ×ÎÒÐÅÏ¢Êý¾Ý¡£Õâ´Îй¶µÄÊý¾ÝÉæ¼°µ½Ñ§ÉúÒÔ¼°ËûÃǵĸ¸Ä¸ºÍ½ÌÔ±£¬Ð¹Â¶ÄÚÈÝÔ̺¬È«Ãû¡¢¼ÒÍ¥µØÖ·¡¢µç×ÓÓʼþµØÖ·¡¢IDºÅ¡¢µç»°ºÅÂë¡¢µ®ÉúÈÕÆÚºÍ¿Î³Ì¡¢Ñ§ÌÃÐÅÏ¢¡£Ð¹Â¶Êý¾ÝµÄ5¼Ò¹«Ë¾±ðÀëΪ°ÍÎ÷ÍøÕ¾Escola Digital£¬Ð¹Â©ÁË15MBÊý¾Ý£¬×ܼÆ75000±Ê¼Í¼ £»ÄÏ·ÇÍøÕ¾MyTopDog£¬Ð¹Â¶ÁË800000±Ê¼Í¼£¬Ô̺¬ÓëÆäºÏ×÷ͬ°éVodacom SchoolÓйصÄÎĵµ £»¹þÈø¿Ë˹̹µÄOkoo£¬Ð¹Â©ÁË7200±Ê¼Í¼ £»ÃÀ¹úµÄSquare PandaºÍPlayground Sessions±ðÀëй¶ÁË15000ºÍ4100±Ê¼Í¼¡£WizCaseÖҸ棬ÕâЩй¶µÄÊý¾Ý¿É±»ÓÃ×÷ºóÐøÉí·Ýڲƭ¡¢Âç´¹µö¹¥»÷¡¢¸ú×ÙºÍÀÕË÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/one-million-online-student-records/


5.ºÚ¿Íй¶Î÷°ÄÖÝÓëCOVID-19ÓйØÃô¸ÐÊý¾ÝºÍµ±¾ÖÎļþ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ºÚ¿Íй¶ÁËÎ÷°ÄÖÝÓëCOVID-19ÓйØÃô¸ÐÊý¾ÝºÍµ±¾ÖÎļþ£¬Îª¸ÃÖÝ×î´óµÄÒþÖÔй¶ÊÂÎñÖ®Ò»¡£Õâ´ÎÊÂÎñй¶ÁËÊýÊ®ÃûÎ÷°Ä´óÀûÑÇÈ˵ľßÌåÐÅÏ¢£¬Ô̺¬¸ôÀëÈËÔ±µÄµç»°ºÅÂë¡¢µØÖ·ÒÔ¼°ÈôºÎÖÎÀíÆä°¸¼þ£¬ÒÔ¼°Êýǧ·Ýµ±¾ÖÍùÀ´Í¨Ñ¶ºÍÐÂÎÅ¡£¸ÃÊÂÎñ»¹Ó°ÏìÁËÊ¥Ô¼º²¾È»¤³µ£¬Ïû·ÀºÍ´¹Î£·þÎñ²¿ÒÔ¼°Ë¾·¨²¿¡£×ÜÀíMark McGowan°µÊ¾£¬ËûÃÇÔÚ·¢ÏÖ¸ÃÎÊÌâºó¾ÍÒѾ­¹Ø¹ØÁ˱»À¹½ØµÄͨѶϵͳ£¬¶øÕâ´Î»úÃÜÊý¾Ýй¶»òÐíÓëʹÓõÚÈý·½Ñ°ºô»ú·þÎñÓйØ¡£Ä¿Ç°£¬¸ÃÊÂÎñÒÀÈ»»¹ÔÚµ÷²éÖС£


Ô­ÎÄÁ´½Ó£º

https://www.theage.com.au/national/western-australia/unforgivable-the-privacy-breach-that-exposed-sensitive-details-of-wa-s-virus-fight-20200720-p55dsm.html


6.ÁÆÑøÔºLorienÔâµ½Netwalker¹¥»÷£¬Ð¹Â¶ÊýÍò¿Í»§ÐÅÏ¢


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ÂíÀïÀ¼ÖݵÄLorien Health Services°ä·¢£¬ËüÔÚ6Ô³õÔâµ½NetwalkerÀÕË÷Èí¼þ¹¥»÷£¬Ð¹Â¶ÁË47754ÈËÐÅÏ¢¡£Ð¹Â¶Êý¾ÝÔ̺¬ÐÕÃû¡¢Éç»á°²È«ºÅÂë¡¢µ®ÉúÈÕÆÚ¡¢µØÖ·ÒÔ¼°½¡È«Õï¶ÏºÍÒ½ÖÎÐÅÏ¢£¬´Ë±íºÚ¿Í»¹½Ó¼ûÁËÔ±¹¤Êý¾Ý¡£Lorien°µÊ¾ÆäÓÚ6ÔÂ6ÈÕ¼ì²âµ½¸Ã¹¥»÷£¬¶øNetwalkerÓÚ6ÔÂÖÐÑ®ÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾¹«¿ªÁË147MB±»µÁÎļþ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/lorien-health-services-discloses-ransomware-attack-affecting-nearly-50-000/