MSI BIOS¸üн¨¸´Windows²»Ö§³Ö´¦ÖÃÆ÷µÄBSOD Bug

°ä²¼¹¦·ò 2023-09-08

1¡¢MSI BIOS¸üн¨¸´Windows²»Ö§³Ö´¦ÖÃÆ÷µÄBSOD Bug


¾ÝýÌå9ÔÂ6ÈÕ±¨Â·£¬MSI°ä²¼ÁËBIOS¸üУ¬½¨¸´WindowsÍÆËã»úÔÚ×°ÖÃ8Ô·ݸüк󴥷¢À¶ÆÁËÀ»úµÄBug¡£Á½ÖÜǰ£¬ÓÐЧ»§»ã±¨³Æ×°Öøüкó»á³öÏÖÀ¶ÆÁ²¢ÏÔʾÃýÎóÐÅÏ¢¡°UNSUPPORTED_PROCESSOR¡±£¬¸üÐÂÔÚ¼¸´Î³ÁÆôºó»á×Ô¶¯»Ø¹ö¡£¸Ã¹«Ë¾°µÊ¾£¬ÕâÒ»ÎÊÌâ½öÓ°ÏìÆäÓ¢ÌØ¶û700ºÍ600ϵÁÐÖ÷°å£¬µ××ÓÔ­Òò¿É×·Òäµ½×î½ü΢´úÂë¸üи½´øµÄÓ¢ÌØ¶û»ìºÏ¼Ü¹¹µÄ¹Ì¼þÉèÖá£MSI»¹³Æ£¬±¾Öܽ«Óиü¶àºÏÓÃÓÚIntel 700ºÍ600ϵÁÐÐͺŵÄBIOS¿ÉÔÚMSI¹Ù·½ÍøÕ¾¸ßµÍÔØ£¬ËùÓÐBIOS°æ±¾½«ÓÚ9Ôµװ䲼¡£


https://www.bleepingcomputer.com/news/software/msi-bios-updates-fix-windows-unsupported-processor-bsod-bug/


2¡¢Apple´¹Î£¸üн¨¸´iPhoneºÍMacÖÐÁ½¸öÒѱ»ÀûÓ÷ì϶


AppleÔÚ9ÔÂ7ÈÕ°ä²¼ÁË´¹Î£°²È«¸üУ¬ÒÔ½¨¸´Õë¶ÔiPhoneºÍMacµÄ¹¥»÷Öб»ÀûÓõÄÁ½¸ö·ì϶¡£ÕâЩ·ì϶´æÔÚÓÚImage I/OºÍÇ®°ü¿ò¼ÜÖУ¬±ðÀëÊÇ»º³åÇøÒç¶Âí½Å£¨CVE-2023-41064£©ºÍÑéÖ¤ÎÊÌ⣨CVE-2023-41061£©¡£Citizen Labй©£¬ÕâÁ½¸ö·ì϶×÷ΪÁãµã»÷iMessage·ì϶ÀûÓÃÁ´BLASTPASSµÄÒ»²¿Ãű»ÀûÓã¬Í¨¹ýÔ̺¬¶ñÒâͼƬµÄPassKit¸½¼þ£¬½«NSO GroupµÄ¼äµýÈí¼þPegasus×°Öõ½ÔËÐÐiOS 16.6µÄiPhoneÉÏ¡£×Ô½ñÄêËêÊ×ÒÔÀ´£¬AppleÒѽ¨¸´13¸ö±»ÀûÓõÄ0 day¡£


https://securityaffairs.com/150485/hacking/apple-discloses-2-new-actively-exploited-zero-day-flaws-in-iphones-macs.html


3¡¢Group-IBÅû¶´¹µöÍÅ»ïW3LLÕë¶ÔMS 365ÕÊ»§µÄ»î¶¯


9ÔÂ6ÈÕ£¬Group-IBÅû¶Á˹ØÓÚ´¹µö¹¥»÷ÍÅ»ïW3LLµÄÔË×÷Çé¿öµÄ¾ßÌåÐÅÏ¢¡£¹¥»÷Õß´´½¨ÁËÒ»¸öµØÏÂÊг¡W3LL Store£¬ÕâÊÇÒ»¸öÓÉÖÁÉÙ500Ãû¹¥»÷Õß×é³ÉµÄ·â¹ØÉçÇø£¬ËûÃÇÄܹ»²É°ì×Ô½çËµÍøÂç´¹µö¹¤¾ß°üW3LL Panel£¨Ö¼ÔÚÈÆ¹ý MFA£©£¬ÒÔ¼°ÓÃÓÚBEC¹¥»÷µÄÆäËü16¸ö¶¨Ô칤¾ß¡£2022Äê10ÔÂÖÁ2023Äê7ÔÂÆÚ¼ä£¬W3LLµÄ´¹µö¹¤¾ß±»ÓÃÀ´Õë¶ÔÃÀ¹ú¡¢°Ä´óÀûÑǺÍÅ·Ö޵ij¬¹ý56000¸öÆóÒµMicrosoft 365ÕÊ»§¡£Æ¾¾ÝGroup-IBµÄ´ÖÂÔ¹À¼Æ£¬W3LL Store×î½ü10¸öÔµĽ»Ò×¶î¿ÉÄÜÒÑ´ïµ½50ÍòÃÀÔª¡£


https://www.group-ib.com/media-center/press-releases/w3ll-phishing-report/


4¡¢·áÌï³ÆÊý¾Ý¿â·þÎñÆ÷´æ´¢¿Õ¼ä²»¼°µ¼Ö³ö²ú³µ¼äЪ¹¤


¾Ý9ÔÂ6ÈÕ±¨Â·£¬·áÌﰵʾ×î½üÈÕ±¾³ö²ú³µ¼äµÄÔËÓªÖжÏÊÇÓÉÓÚÆäÊý¾Ý¿â·þÎñÆ÷´æ´¢¿Õ¼ä²»¼°µ¼ÖµÄ¡£8ÔÂ29ÈÕ£¬Óб¨Â·³ÆÓÉÓÚ²»Ã÷ϵͳ¹ÊÕÏ£¬·áÌïÔÚÈÕ±¾µÄ14¼ÒÆû³µ×é×°³§ÖеÄ12¼ÒÔËÓªÖжÏ£¬µ¼ÖÂÿÌìÔ¼13000Á¾µÄ²úÁ¿Ëðʧ¡£¸Ã¹«Ë¾°µÊ¾£¬¹ÊÕϲúÉúÔÚ8ÔÂ27ÈÕ´òËãµÄÏµÍ³ÊØ»¤»î¶¯ÆÚ¼ä£¬´òËãµÄÊØ»¤ÊÇÕû¶ÙÊý¾Ý¿âÖеÄÊý¾ÝºÍɾ³ýË鯬Êý¾Ý¡£È»¶ø£¬ÔÚÖ°ÎñʵÏÖ֮ǰ´æ´¢ÒÑÂú£¬Òò¶ø²úÉúÃýÎóµ¼ÖÂϵͳ¹Ø¹Ø¡£ÆäÖ÷·þÎñÆ÷ºÍ±¸·Ý»úеÔÚͳһϵͳÉÏÔËÐУ¬Ãæ¶ÔͬÑùµÄ¹ÊÕÏ£¬ÎÞ·¨½øÐÐÇл»£¬¹¤³§±»ÆÈÍ£²ú¡£8ÔÂ29ÈÕ·áÌï³ï±¸ÁËһ̨ÈÝÁ¿¸ü´óµÄ·þÎñÆ÷À´½Ó¹ÜǰÁ½Ìì´«ÊäµÄÊý¾Ý¡£


https://www.bleepingcomputer.com/news/security/toyota-says-filled-disk-storage-halted-japan-based-factories/


5¡¢Mirai±äÌåϰȾÁ®¼ÛµÄAndroidµçÊÓºÐ×ÓÖ´ÐÐDDoS¹¥»÷


9ÔÂ6ÈÕ±¨Â·£¬Dr. Web·¢ÏÖÒ»ÖÖеĽ©Ê¬ÍøÂçMirai±äÌåÆðͷϰȾÁ®¼ÛµÄAndroidµçÊÓºÐ×Ó¡£Ä¿Ç°µÄľÂíÊÇ2015Äê³õ´Î³öÏֵĺóÃÅPandoraµÄа汾¡£¸Ã»î¶¯ÖØÒªÕë¶ÔµÍ³É±¾AndroidµçÊӺУ¬ÈçTanix TX6 TV Box¡¢MX10 Pro 6KºÍH96 MAX X3£¬ËüÃǽ¨ÉèËĺ˴¦ÖÃÆ÷£¬¼´±ãÔÚÓ×¹æÄ£ÏÂÒ²ÄÜÖ´ÐÐ׳´óµÄDDoS¹¥»÷¡£Dr. Web³Æ£¬ÕâЩ¶ñÒâÈí¼þͨ¹ýʹÓù«¿ª¿ÉÓõIJâÊÔÃÜÔ¿ÊðÃûµÄ¶ñÒâ¹Ì¼þ¸üУ¬»òÕßͨ¹ýÕë¶Ô¶ÔµÁ°æÄÚÈݸÐÐËÖµÄÓû§µÄÍøÕ¾ÉϵĶñÒâÀûÓýøÐзַ¢¡£


https://news.drweb.com/show/?lng=en&i=14743


6¡¢×êÑÐÈËÔ±·¢ÏÖÕë¶ÔMac·Ö·¢Ð°æAMOSµÄ¶ñÒâ¸æ°×»î¶¯


MalwarebytesÔÚ9ÔÂ6ÈÕ³ÆÆä·¢ÏÖÁËÕë¶ÔMac·Ö·¢Atomic Stealer£¨AMOS£©µÄ¶ñÒâ¸æ°×»î¶¯¡£AMOSÓÚ4Ô³õ´Î³öÏÖ£¬ÖØÒªÕë¶Ô¼ÓÃÜ×ʲú£¬´Óä¯ÀÀÆ÷ºÍAppleÔ¿³×´®ÖлñÈ¡ÃÜÂë¡£¸Ã»î¶¯ÀûÓÃÁËGoogleËÑË÷µÄ¶ñÒâ¸æ°×£¬Í¨¹ý´¹µöÍøÕ¾ÓÕʹָ±êÏÂÔØÀûÓá£ÏÂÔØµÄÎļþ(TradingView.dmg) ¸½´øÈôºÎ´ò¿ªËüÀ´ÈƹýGateKeeperµÄ×¢Ã÷¡£¶ñÒâÈí¼þ°ó¸¿ÔÚÒ»¸öһʱÊðÃûµÄÀûÓÃÖУ¬ÕâÒâζ×ÅËü²»ÊÇAppleÖ¤Ê飬Òò¶øÎÞ·¨³·Ïú£¬payloadÊÇ×î½üÕë¶ÔOSXµÄAMOSµÄа汾¡£


https://www.malwarebytes.com/blog/threat-intelligence/2023/09/atomic-macos-stealer-delivered-via-malvertising