ÓÉÓÚCDNÎÊÌ⣬Microsoft WinGettÈí¼þ°üÖÎÀíÆ÷±¨´í
°ä²¼¹¦·ò 2022-11-09¾ÝýÌå11ÔÂ7ÈÕ±¨Â·£¬´ÓÉÏÖÜÄ©ÆðÍ·£¬WindowsÓû§·¢ÏÖµ±ËûÃdz¢ÊÔʹÓÃWinGet×°ÖûòÉý¼¶ÀûÓ÷¨Ê½Ê±£¬»áÊÕµ½·ÖÆçµÄÃýÎóÌáÐÑ¡£ÀýÈ磬winget upgrade»áÏÔʾ¡°³¢ÊÔ¸üÐÂԴʧ°Ü£ºwinget¡±£¬winget install»áÏÔʾ¡°Ö´ÐкÅÁîʱ²úÉúÒâ±íÃýÎó£º0x8a15000f£ºÔ´ËùÐèµÄÊý¾ÝÃÔʧ¡±¡£¾ÝϤ£¬¸ÃÎÊÌâÊÇÓÉÓÚAzureÄÚÈݽ»¸¶ÍøÂç(CDN)·µ»ØÒ»¸ö0×Ö½ÚµÄÊý¾Ý¿âÎļþµ¼Öµģ¬Î¢ÈíĿǰÔÚ½â¾ö¸ÃÎÊÌ⣬²¢°µÊ¾Ëü²»»áÓ°ÏìËùÓÐЧ»§¡£
https://www.bleepingcomputer.com/news/microsoft/microsoft-winget-package-manager-failing-due-to-cdn-issues/
2¡¢Citrix°ä²¼¸üУ¬½¨¸´ÆäADCºÍGatewayÖеĶà¸ö·ì϶
CitrixÓÚ11ÔÂ8ÈÕ°ä²¼°²È«¸üУ¬½¨¸´ÆäADCºÍGatewayÖеĶà¸ö·ì϶¡£Õâ´Î½¨¸´ÁËʹÓôúÌæõè¾¶»òͨ·µÄÈÏÖ¤ÈÆ¹ý·ì϶£¨CVE-2022-27510£©£¬¿É±»ÓÃÀ´½Ó¼ûGatewayÓû§£»Êý¾ÝÕæÊµÐÔÑéÖ¤²»¼°·ì϶£¨CVE-2022-27513£©£¬¿Éͨ¹ý´¹µö¹¥»÷½øÐÐÔ¶³Ì×ÀÃæÊÕÊÜ£»±£»¤»úÔìʧЧ£¨CVE-2022-27516£©£¬¿ÉÈÆ¹ýÓû§µÇ¼µÄ±©Á¦¹¥»÷±£»¤¡£½öÔÚijЩÔÚÌØ¶¨ÅäÖÃÏ£¬ÕâЩ·ì϶ÄÜÁ¦±»ÀûÓã¬Citrix½¨ÒéÖÎÀíÔ±µ±¼´½¨¸´ÕâЩ·ì϶¡£
https://support.citrix.com/article/CTX463706/citrix-gateway-and-citrix-adc-security-bulletin-for-cve202227510-cve202227513-and-cve202227516
3¡¢¼ÓÄôóMaple Leaf FoodsÔÚÔâµ½¹¥»÷ºóÔËÓªÁÙʱÖжÏ
¾Ý11ÔÂ7ÈÕ±¨Â·£¬Maple Leaf FoodsÈ·ÈÏÆä¾ÀúÁËÒ»Â·ÍøÂ簲ȫÊÂÎñ£¬µ¼ÖÂϵͳºÍÔËÓªÖжϡ£Maple Leaf FoodsÊǼÓÄôó×î´óµÄÔ¤ÔìÈâÀàºÍ¼ÒÇÝʳƷ³ö²úÉÌ£¬2021Äê½»Ò×¶îΪ33ÒÚÃÀÔª¡£¸Ã¹«Ë¾ÔÚÖÂÁ¦¸´ÔÊÜÓ°ÏìµÄϵͳ£¬È»¶øÔ¤¼ÆÈ«Ãæ½â¾ö¹ÊÕÏÎÊÌ⽫ÈÔ±ØÒª¹¦·ò£¬²¢½«µ¼Ö²¿ÃÅÔËÓªºÍ·þÎñÖжϡ£¸Ã¹«Ë¾°µÊ¾½«³ÖÐøÓë¿Í»§ºÍºÏ×÷ͬ°éºÏ×÷£¬ÒÔÏ÷¼õ¼ÓÄôóÊг¡µÄʳƷ¹©¸øÖжϡ£Ä¿Ç°£¬µ÷²éÈÔÔÚ½øÐÐÖУ¬ÉÐδȷ¶¨¹¥»÷ÊÇÈôºÎ²úÉúµÄ¡£
https://www.bleepingcomputer.com/news/security/maple-leaf-foods-suffers-outage-following-weekend-cyberattack/
4¡¢Justice Blade¹¥»÷ÓëÉ³ÌØ°¢À²®ÓйصÄIT±í°ü¹©¸øÉÌ
ýÌå11ÔÂ7Èճƣ¬Justice Blade°ä²¼ÁË´ÓIT±í°ü¹©¸øÉÌSmart Link BPO SolutionsÇÔÈ¡µÄÊý¾Ý¡£¸Ã¹«Ë¾ÓëÉ³ÌØ°¢À²®Íõ¹úºÍGCCÆäËû¹ú¶ÈµÄ¹«Ë¾ºÍµ±¾Ö»ú¹¹ºÏ×÷¡£¹¥»÷Õß³ÆÆäÇÔÈ¡ÁË´óÁ¿Êý¾Ý£¬Ô̺¬CRM¼Í¼¡¢Ó×ÎÒÐÅÏ¢¡¢µç×ÓÓʼþͨѶ¡¢ºÏͬºÍÕÊ»§Í´´¦µÈ£¬²¢°ä²¼Á˸õØÓò¸÷¹«Ë¾Ö®¼äµÄRDP»á»°ºÍOffice 365ͨѶµÄ½ØÍ¼£¬ÒÔ¼°¿ÉÄÜÓëFlyNasºÍSAMACaresÓйصöÓû§ÁÐ±í¡£×êÑÐÈËÔ±ÔøÔÚ°µÍøÉÏ·¢ÏÖÁ˶à¸öSmart Link BPO½â¾ö¹æ»®µÄƾ֤£¬¹¥»÷Õß¿ÉÀûÓÃÕâЩƾִ֤Ðй¥»÷¡£
https://securityaffairs.co/wordpress/138213/hacking/justice-blade-targets-saudi-arabia.html
5¡¢ºÚ¿ÍÍÅ»ïÀûÓÃAndroid RAT¹¥»÷Ó¡¶Å×ë¹ú·ÀÓйصÄ×éÖ¯
CyfirmaÔÚ11ÔÂ7ÈÕй©Æä×î½ü¼ì²âµ½Ò»¸öÕë¶ÔÓ¡¶È¹ú·ÀÓйØ×éÖ¯µÄ¶ñÒâAndroid APK¡£×êÑÐÅú×¢£¬¸Ã¹¥»÷×Ô2021Äê7ÔÂÒÔÀ´Ò»ÏòºÜ»îÔ¾¡£APKÎļþÊÇÓйء°Subs Naik¡±µÄµö¶ü¸±±¾¡£ÔÚÖ¸±ê×°Öúó£¬Õâ¸öÀûÓ÷¨Ê½¾Í»áÔÚÉ豸ÉÏÏÔʾΪһ¸öAdobeÔĶÁÆ÷ÀûÓÃͼ±ê¡£¹¥»÷Õß»¹ÀûÓÃÁË¿ªÔ´µÄSpymax RAT±äÌå¡£Spymax¿ÉÌṩ·ÖÆçµÄAndroid°ü¹¹½¨£¬ÆäÖÐÒ»¸ö¿É½«ËÁÒâWebÁ´½Ó×¢ÈëWebÊÓͼģ¿é¡£³É¹¦×°ÖÃÌìÉúµÄAPKºó£¬Ëü¾ÍÔì³ÉÁËÒ»¸öÕæÕýµÄAndroidÀûÓá£
https://www.cyfirma.com/outofband/unknown-nation-based-threat-actor-using-android-rat-to-target-indian-defence-personnel/
6¡¢Kaspersky°ä²¼2022ÄêµÚÈý¼¾¶ÈDDoS¹¥»÷µÄ·ÖÎö»ã±¨
11ÔÂ7ÈÕ£¬Kaspersky°ä²¼Á˹ØÓÚ2022ÄêµÚÈý¼¾¶ÈDDoS¹¥»÷µÄ·ÖÎö»ã±¨¡£ÓëÉÏÒ»¼¾¶ÈÏà±È£¬ËùÓÐÀàÐ͵ÄDDoS¹¥»÷ÊýÁ¿ÏÔÖøÔö³¤¡£ÖÇÄܹ¥»÷µÄÕ¼±È³ÖÐøÔö³¤£¬¸ß´ï53%¡£´Ë±í£¬±¾¼¾¶È¶ÔHTTP(S)µÄDDoS¹¥»÷³õ´Î³¬¹ýÁ˶ÔTCPµÄ¹¥»÷¡£ÔÚ2022ÄêQ3£¬Kaspersky¹²¼ì²âµ½57116´ÎDDoS¹¥»÷£»Ò»ÖÜÖÐ×îæÂÒµÄÊÇÐÇÆÚÎ壨15.36% µÄ¹¥»÷£©£¬×î³Á¾²µÄÊÇÐÇÆÚËÄ£¨12.99%£©£»³ÖÐø¹¦·òÉÙÓÚ4Ó×ʱµÄ¹¥»÷Õ¼¹¥»÷×ܹ¦·òµÄ60.65%£¬Õ¼¹¥»÷×ÜÊýµÄ94.29%£»UDP FloodÕ¼¹¥»÷×ÜÊýµÄ51.84%£¬SYN FloodÕ¼26.96%¡£
https://securelist.com/ddos-report-q3-2022/107860/


¾©¹«Íø°²±¸11010802024551ºÅ