΢Èí°ä²¼µÄ3Ô·ݲ¹¶¡¿Éµ¼ÖÂWin10ÔÚ´òӡʱÀ¶ÆÁ£»Å²ÍþÒé»áµÄExchangeÔâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶

°ä²¼¹¦·ò 2021-03-12

1.΢Èí°ä²¼µÄ3Ô·ݲ¹¶¡¿Éµ¼ÖÂWin10ÔÚ´òӡʱÀ¶ÆÁ


1.jpg


΢Èí°ä²¼ÁËKB5000802ºÍKB5000808ÀÛ»ý¸üУ¬µ¼ÖÂWin10ϵͳÔÚ´òӡʱÀ¶ÆÁ¡£ÔÚ×°ÖÃ3Ô·ݰ²È«¸üк󣬶à¸öÓû§·´Ó³ËûÃÇÔÚʹÓÃÍøÂç´òÓ¡»úʱ»á³öÏÖÀ¶ÆÁËÀ»ú¾°Ï󣬲¢ÏÔʾ¡° APC_INDEX_MISMATCH for win32kfull.sys¡±ÃýÎó´úÂ롣ĿǰÒÑÖªÊÜÓ°ÏìµÄ´òÓ¡»úÆ·ÅÆÔ̺¬Kyocera¡¢RicohºÍDymo£¬Éý¼¶´òÓ¡»úÇý¶¯·¨Ê½²¢²»Äܽâ¾ö´ËÎÊÌ⣬ÊÜÓ°ÏìÓû§Ö»ÄÜÐ¶ÔØKB5000802ºÍKB5000808¸üС£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/windows-10-crashes-when-printing-due-to-microsoft-march-updates/


2.ŲÍþÒé»áµÄExchangeÔâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶


2.jpg


ŲÍþÒé»á£¨Storting£©µÄExchange·þÎñÆ÷Ôâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶¡£StortingÔÚÈ¥Äê12ÔÂÔâ·êÍøÂç¹¥»÷ºó²»¾Ã£¬ÓÖÓÚ3ÔÂ10ÈÕ°ä·¢ÆäÔâµ½ÁËÓëMicrosoft Exchange·ì϶ÓйصĹ¥»÷¡£¸Ã»ú¹¹³ÆÉÐδÆëÈ«Ïàʶ¹¥»÷µÄÁìÓò£¬µ«ÒÑÈ·ÈϺڿÍÒÑÇÔÈ¡²¿ÃÅÊý¾Ý¡£ÆäÒѾ­ÎªÏµÍ³²ÉÈ¡Á˶àÖÖ´ëÊ©£¬Ä¿Ç°·ÖÎö¹¤×÷ÈÔÔÚ½øÐÐÖС£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/norway-parliament-data-stolen-in-microsoft-exchange-attack/


3.ÒûÁϹ«Ë¾Molson CoorsÔâµ½¹¥»÷£¬ÏµÍÂäÙʱÖжÏ


3.jpg


ÃÀ¹úÒûÁϹ«Ë¾Molson CoorsÓÚ3ÔÂ11ÈÕÔâµ½¹¥»÷£¬ÏµÍÂäÙʱÖжÏ¡£Molson CoorsÒÔÆä±êÖ¾ÐÔÆ¡¾ÆÆ·ÅƶøÎÅÃû£¬Ô̺¬Coors Light¡¢Miller LiteºÍMolson CanadianµÈ¡£Õâ´Î¹¥»÷µ¼Ö¸ù«Ë¾µÄϵͳÖжÏ£¬Ê¹µÃ¹«Ë¾µÄ²¿ÃÅÒµÎñÑÓ³¤»òÖжÏ£¬Ô̺¬ÆäÆ¡¾Æ³§µÄÔËÓª¡¢³ö²úºÍÔËÊä¡£¶à¸öÐÂÎÅÆðÔ´³ÆÕâ´Î¹¥»÷²úÉúÔÚÖܶþÔ糿£¬ÎªÀÕË÷Èí¼þËùµ¼Ö£¬¸Ã¹«Ë¾ÎªÔ¤·À¶ñÒâÈí¼þ½øÒ»²½´«²¼¶ø¹Ø¹ØÁËϵͳ¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/cyberattack-forces-brewery-shutdown-molson-coors


4.ºÚ¿Í³ÆÒÑÈëÇÖVerkada²¢ÇÔÈ¡15Íò¸öÉãÏñÍ·µÄÊý¾Ý


4.jpg


ºÚ¿Í³ÆÒÑÈëÇÖVerkada²¢ÇÔÈ¡ÁË15Íò¸öÉãÏñÍ·µÄʵʱ¼Ïñ¡£VerkadaÊÇÒ»¼ÒλÓÚ¹è¹ÈµÄ°²È«²Ý´´¹«Ë¾£¬Îª¾¯Ô±¾Ö¡¢¹«Ë¾¡¢Ñ§ÌúͼàÓüµÈ×éÖ¯Ìṩ»ùÓÚÔÆµÄ°²È«ÉãÏñÍ··þÎñ¡£´Ë±í£¬ºÚ¿Í»¹ÇÔÈ¡ÁËÌØË¹À­µÄ¹¤³§ºÍ²Ö¿â¡¢EquinoxÌåÓý¹ÝÒÔ¼°Cloudflare°ì¹«Êҵȹ«Ë¾µÄ¼Ïñ¡£×êÑÐÈËÔ±³ÆºÚ¿Í¶ÔVerkadaµÄÓ²¼þ½øÐÐÁËÄæÏò¹¤³Ì£¬²¢·¢ÏÖÁ˳¬µÈÖÎÀíÔ¹ØÊ»§µÄÓ²±àÂëÍ´´¦¡£VerkadaÏÖÒÑÈÏ¿ÉÕâ´Î¹¥»÷£¬²¢°µÊ¾ÒѽûÓÃËùÓÐÄÚ²¿ÖÎÀíÔ¹ØÊ»§¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115466/hacking/surveillance-cameras-hacked.html


5.Urban ResearchÔâµ½¹¥»÷£¬Ð¹Â¶31ÍòÓû§µÄÐÅÏ¢


5.jpg


ÈÕ±¾·þ×°¹«Ë¾URBAN RESEARCHµÄ¹ÙÍøÔâµ½¹¥»÷£¬Ð¹Â¶ÁË317326ÍòÓû§µÄÐÅÏ¢¡£¹¥»÷²úÉúÔÚ3ÔÂ7ÈÕÍíÖÁ3ÔÂ8ÈÕÏÂÎ磬ºÚ¿Í½Ó¼ûÁ˸ù«Ë¾µÄ¹Ù·½ÔÚÏßÉ̳Ç¡£¸Ã¹«Ë¾ÔÚ·¢ÏÖºóµ±¼´²ÉÈ¡ÁËÏìÓ¦´ëÊ©£¬µ«ÊǺڿͿÉÄÜÒѾ­ÇÔÈ¡ÁËÓû§ÐÅÏ¢£¬Ô̺¬µØÖ·¡¢ÐÕÃû¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØÖ·¡¢µ®ÉúÈÕÆÚ¡¢ÐԱ𡢻áÔ±IDºÍ»áÔ±½×¶ÎµÈ£¬²»Ô̺¬ÈκβÆÕþÐÅÏ¢¡£


Ô­ÎÄÁ´½Ó£º

https://news.yahoo.co.jp/articles/f5a72addb68c5a8113dbbd0eb8ee2f2025785203


6.FIN8ÍÅ»ïЯBADHATCH»Ø¹é£¬ÀûÓÃTLS¼ÓÃÜÈÆ¹ý¼ì²â


6.jpg


FIN8ÍÅ»ïЯÉý¼¶µÄBADHATCH¶ñÒâÈí¼þ»Ø¹é£¬ÀûÓÃTLS¼ÓÃÜÈÆ¹ý¼ì²â¡£FIN8ÓÚ2016Äê³õ´ÎÓÉFireEye·¢ÏÖ£¬ÒÔÀûÓÃÍøÂç´¹µöºÍ¶ñÒ⹤¾ß¹¥»÷POSϵͳ¶øÎÅÃû£¬ÖØÒªÕë¶ÔÁãÊÛ¡¢¾ÆµêºÍÓéÀÖÒµ¡£¸Ã×éÖ¯ÔÚʱ¸ôÒ»Äê°ëµÄÐÝÏ¢ºóÔٴλîÔ¾£¬²¢Ê¹ÓÃÁ˸ü׳´óµÄºóÃÅ£¬Éý¼¶ºóµÄÖ°ÄÜÔ̺¬ÆÁÄ»²¶»ñ¡¢´úÀíËí·´«Ê䡢ƾ֤͵ÇÔºÍÎÞÎļþÖ´ÐУ¬²¢ÊÔIJÀûÓÃTLS¼ÓÃܰµ²ØPowershellºÅÁîÀ´Èƹý°²È«¼ì²â¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/03/fin8-hackers-return-with-more-powerful.html