Èðµä¹«¹²ÎÀÉú¾ÖSmiNetÉÏÖÜÔâÂŴι¥»÷ÁÙʱ¹Ø¹Ø£»Á½¸öеÄÍÅ»ïPrometheusºÍGrief²ÎÓëÊýÊ®ÒÚÀÕË÷Êг¡

°ä²¼¹¦·ò 2021-06-01

1.Èðµä¹«¹²ÎÀÉú¾ÖSmiNetÉÏÖÜÔâÂŴι¥»÷ÁÙʱ¹Ø¹Ø


1.jpg


Èðµä¹«¹²ÎÀÉú¾Ö (Folkh?lsomyndigheten)µÄ´«È¾²¡ÏµÍ³SmiNetÔâµ½ÂŴι¥»÷£¬ÁÙʱ¹Ø¹Ø¡£SmiNetÊÇÓÃÓÚ´æ´¢COVID-19ϰȾͳ¼ÆÊý¾ÝµÄµç×ӻ㱨£¬ÔÚÔâµ½ÂŴι¥»÷ºóÓÚÉÏÖÜËĹعØÒÔ½øÐе÷²é£¬²¢ÓÚÉÏÖÜÎåÍíÉϳÁÐÂÉÏÏß¡£µ«ÊÇÓÉÓÚϵͳ¹Ø¹Ø£¬¸Ã»ú¹¹×ÔÉÏÖÜÈýÏÂÎç4µãÆðÍ·ÎÞ·¨»ã±¨COVID-19ͳ¼ÆÊý¾Ý£¬Ö±µ½±¾ÖÜËÄ6ÔÂ3ÈÕÄÜÁ¦¸´Ô­Õý³£¡£Ä¿Ç°£¬µ÷²éÈÔÔÚ½øÐÐÖУ¬ÉÐδ·¢ÏÖº±¼û¾Ýй¶µÄ»ã±¨¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/swedish-health-agency-shuts-down-sminet-after-hacking-attempts/


2.Á½¸öеÄÍÅ»ïPrometheusºÍGrief²ÎÓëÊýÊ®ÒÚÀÕË÷Êг¡


2.jpg


Á½¸öÐÂÐ˵ĵÄÀÕË÷ÍÅ»ïPrometheusºÍGrief²ÎÓëÊýÊ®ÒÚÀÕË÷Êг¡¡£PrometheusÓÚ½üÈÕ¹«¿ªÁËÄ«Î÷¸çµ±¾ÖµÄÊý¾Ý£¬¿ÉÄÜÊǵÚÒ»¸öÔÚÀ­¶¡ÃÀÖÞÖØÒª¹ú¶È½øÐÐÈç´Ë´ó¹æÄ£»î¶¯µÄÍŻÆä»¹¹«¿ªÁË27ÃûÊܺ¦×éÖ¯µÄÊý¾Ý£¬Ô̺¬¼ÓÄɹú¶ÈÌìÈ»Æø¹«Ë¾¡¢Ëþ¶ûÈøÐÄѪ¹ÜÖÐÐÄÒÔ¼°·¨¹ú¡¢Å²Íþ¡¢ÈðÊ¿¡¢ºÉÀ¼¡¢°ÍÎ÷¡¢ÂíÀ´Î÷ÑǺͰ¢ÁªÇõµÈ¹úµÄ¹«Ë¾¡£GriefÔò³ÆÆäÒѹ¥»÷ÁË5¸ö×éÖ¯£¬ÆäÖÐ1¸öÔÚÄ«Î÷¸ç¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118446/cyber-crime/prometheus-grief-ransomware.html


3.×êÑÐÈËÔ±ÑÝʾÈôºÎÈÆ¹ýMicrosoft PatchGuardµÄ¹¥»÷


3.jpg


×êÑÐÈËÔ±Kento OkiÑÝʾÁËÈôºÎÈÆ¹ýMicrosoft PatchGuardµÄ¹¥»÷¡£PatchGuardÒ²³ÆÎªÄں˲¹¶¡±£»¤£¬ÓÚ2005Äê±»ÒýÈëWindows²Ù×÷ϵͳ¡£Kento³ÆPatchGuardÖдæÔÚÒ»¸ö·ì϶£¬¿É±»ÓÃÀ´½«Î´ÊðÃûµÄ¶ñÒâ´úÂë×¢Èëµ½Windows²Ù×÷ϵͳÄÚºËÖУ¬²¢¹«¿ªÁËÕâ´Î¹¥»÷µÄ¼¼Êõϸ½ÚÒÔ¼°¸ÅÏëÑéÖ¤ (PoC) ´úÂ롣Ŀǰ£¬Î¢Èí²¢Î´½¨¸´¸Ã·ì϶£¬²¢ÇÒÆäÔÚÒÔǰ»¹½«ÆäËüPatchGuardÈÆ¹ý·ì϶ÏóÕ÷Ϊ·Ç°²È«ÎÊÌâ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118427/hacking/microsoft-patchguard-kpp-bypass.html


4.Cisco TalosÅû¶Accusoft ImageGearÖеĶà¸ö·ì϶


4.jpg


Cisco TalosÅû¶ÁËAccusoft ImageGearÖеĶà¸ö·ì϶¡£ImageGearÊÇÒ»¸öÎĵµÍ¼Ïñ¿ª·¢¹¤¾ß°ü£¬ÔÊÐíÓû§´´½¨¡¢±à×ë¡¢×¢½âºÍת»»¸÷ÀàͼÏñ¡£Õâ´ÎÅû¶µÄ·ì϶Ô̺¬Ô½½çд·ì϶£¨CVE-2021-21793¡¢CVE-2021-21794ºÍ(CVE-2021-21824£©¡¢»º³åÇøÒç¶Âí½Å(CVE-2021-21795¡¢CVE-2021-21808ºÍCVE-2021-21821£©ÒÔ¼°Ô¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2021-21833£©µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/06/vuln-spotlight-accusoft-.html    


5.Check Point°ä²¼2021ÄêÑÇÌ«µØÓòÍøÂç¹¥»÷·ÖÎö»ã±¨


5.jpg


Check Point°ä²¼ÁË2021ÄêÑÇÌ«µØÓòÍøÂç¹¥»÷µÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö£¬Óë2020Äê5ÔÂÏà±È£¬ÑÇÌ«µØÓò (APAC) µÄÍøÂç¹¥»÷ÊýÁ¿Í¬±ÈÔö³¤ÁË168%£¬¶øÔÚ2021Äê4ÔÂÖÁ5ÔÂÆÚ¼ä¾ÍÔö³¤ÁË53%¡£Ôö·ù×î´óµÄ¶ñÒâÈí¼þÀàÐÍÊÇÀÕË÷Èí¼þºÍÔ¶³Ì½Ó¼ûľÂí (RAT)£¬Óë½ñÄêËêÊ×Ïà±È£¬¶¼Ôö³¤ÁË26%£¬¶øÒøÐÐľÂíºÍÐÅÏ¢ÇÔÈ¡¹¤¾ßÒ²Ôö³¤ÁË10%¡£ÍøÂç¹¥»÷´ÎÊýÔö·ù×î´óµÄǰ5¸ö¹ú¶È/µØÓòÊÇÈÕ±¾£¨40%£©¡¢ÐÂ¼ÓÆÂ£¨30%£©¡¢Ó¡¶ÈÄáÎ÷ÑÇ£¨25%£©¡¢ÂíÀ´Î÷ÑÇ£¨22%£©ºÍÖйų́Í壨17%£©¡£


Ô­ÎÄÁ´½Ó£º

https://blog.checkpoint.com/2021/05/27/check-point-research-asia-pacific-experiencing-a-168-year-on-year-increase-in-cyberattacks-in-may-2021/


6.Kaspersky°ä²¼2021ÄêQ1 Non-mobileÍþÐ²Ì¬ÊÆ»ã±¨


6.jpg


Kaspersky°ä²¼ÁË2021ÄêQ1 Non-mobileÍþÐ²Ì¬ÊÆµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö£¬µÚÒ»¼¾¶ÈÖÐ×î¶àµÄ½ðÈÚ¶ñÒâÈí¼þÊÇZeuS/Zbot£¨30.8%£©¡¢CliptoShuffler(15.9%)ºÍTrickster (7.5%)£¬ÊÜ´ËÀ๥»÷×î¶àµÄ¹ú¶ÈΪÍÁ¿âÂü˹̹£¨6.3%£©¡¢Ëþ¼ª¿Ë˹̹£¨5.3%£©ºÍ°¢¸»º¹£¨4.8%£©¡£´Ë±í£¬KasperskyÔÚQ1¹²¼ì²âµ½ÁË7¸öеÄÀÕË÷Èí¼þºÍ4354ÖÖбäÌ壬ÊÜ´ËÀ๥»÷×î¶àµÄ¹ú¶ÈΪÃϼÓÀ­¹ú£¨2.31%£©¡¢°£Èû¶í±ÈÑÇ£¨0.62%£©ºÍÏ£À°£¨0.49%£©¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/it-threat-evolution-q1-2021-non-mobile-statistics/102425/