WindowsÄÚ´æÐ¶ñÒâÈí¼þ£ººÚ¿ÍʵʱµÁÈ¡Êý×Ö×ʲú
°ä²¼¹¦·ò 2026-02-021. WindowsÄÚ´æÐ¶ñÒâÈí¼þ£ººÚ¿ÍʵʱµÁÈ¡Êý×Ö×ʲú
1ÔÂ31ÈÕ£¬Point WildÆìÏÂLat61Íþвµý±¨ÍŶӽüÈÕ·¢ÏÖÒ»ÖÖÒñ±ÎµÄÐÂÐÍWindows¶ñÒâÈí¼þ»î¶¯£¬¸Ã»î¶¯ÀûÓÃPulsar RATºÍStealerv37¹¤¾ß£¬Í¨¹ýÄÚ´æ×¤Áô·½Ê½Ö´ÐÐÈ«ÃæÊý×ÖÈëÇÖ¡£×êÑÐÈËÔ±Ö¸³ö£¬¹¥»÷ʼÓÚ%APPDATA%\MicrosoftĿ¼Ï°µ²ØµÄ΢ÐÍÎļþ£¬Ëæºóѡȡ"½èÁ¦´òÁ¦"¼¼Êõ½Ù³Öϵͳ¿ÉÐŹ¤¾ßÈçPowerShell£¬ÆëÈ«ÔÚÄÚ´æÖÐÖ´ÐжñÒâ´úÂ룬Ԥ·À´«Í³Ó²ÅÌÎļþ²ÐÁô£¬´Ó¶øÈƹý»ù´¡É±¶¾Èí¼þ¼ì²â¡£¸Ã¶ñÒâÈí¼þ¾ß±¸Ë«³Á·ÛËé¸öÐÔ£ºÒ»·½ÃæÍ¨¹ýDonut¹¤¾ß½«¶ñÒâ´úÂë×¢Èëexplorer.exeµÈÈÕ³£¹ý³Ì£¬¼´±ã±»À¹½ØÒ²»áÆô¶¯¼à¶½·¨Ê½ÊµÏÖÃë¼¶×Ô¶¯³ÁÆô£»ÁíÒ»·½Ãæ×Ô¶¯½ûÓù¤×÷ÖÎÀíÆ÷ºÍUAC°²È«ÌáÐÑ£¬×è¶ÏÓû§»Ø»÷Çþ·¡£ÆäÖ÷ÌâÖ¸±ê¾Û½¹ÓÚÐÅÏ¢ÇÔÈ¡£¬Pulsar RAT¿ÉÔ¶³Ì²Ù¿ØÉãÏñÍ·ºÍÂó¿Ë·çÖ´ÐÐ¼à¿Ø£¬¶øStealerv37ÔòרÃÅɨÃè¼ÓÃÜÇ®±ÒÇ®°ü¡¢¼à¿Ø¼ôÌù°å²¢´úÌæÖ§¸¶µØÖ·Ö´ÐÐ×ʽðµÁÈ¡£¬Í¬Ê±ÇÔÈ¡Chrome/Edgeä¯ÀÀÆ÷ÃÜÂë¼°Cookie¡¢NordVPNµÈVPNƾ֤¡¢¿ª·¢Õß¹¤¾ßÊý¾Ý¼°Steam/RobloxµÅ×ÎÏ·Õ˺š£ËùÓÐÔßÎïÊý¾Ý¾ùͨ¹ýDiscord/Telegramͨ·´«Ê䏸ºÚ¿Í¡£
https://hackread.com/windows-malware-pulsar-rat-live-chats-steal-data/
2. StopICE³¬10ÍòÓû§ÐÅÏ¢ÔâÁª¹ú»ú¹¹»ñÈ¡
1ÔÂ31ÈÕ£¬·´ÒÆÃñ·¨Âɾ֣¨ICE£©»î¶¯ÈËʿƽ̨StopICE½üÈÕÔâ·ê³Á´ó°²È«·ì϶£¬µ¼Ö³¬¹ý10ÍòÃûÓû§µÄÓ×ÎÒÐÅϢй¶¸øÔ̺¬Áª¹úµ÷²é¾Ö£¨FBI£©¡¢ÒÆÃñ·¨Âɾ֣¨ICE£©ºÍºÓɽ°²È«µ÷²é¾Ö£¨HSI£©ÔÚÄÚµÄÃÀ¹úÁª¹ú»ú¹¹¡£ºÚ¿ÍÐû³Æ»ñÈ¡ÁËÓû§µÄÐÕÃû¡¢µÇ¼Ãû¡¢ÃÜÂë¡¢µç»°ºÅÂë¼°¾«È·GPS×ø±ê£¬²¢½«ÕâЩÊý¾ÝÖ±½Ó·¢Ë͸øµ±¾Ö¡£Õâ´ÎÊÂÎñÒý·¢Óû§ºÍ°²È«·ÖÎöʦ¶ÔÊý¾Ý¹æÄ£¼°¾ßÌåÐÔµÄÓÇÓô£¬Ð¹Â¶µÄGPS×ø±ê¿ÉÄܶ³ö»î¶¯ÈËʿסËù»ò³£È¥µØÖ·£¬¶øµÇ¼ÐÅÏ¢Ôò¿ÉÄܱ»ÓÃÓÚ×·×ÙÓ×ÎÒ»ò½Ó¼ûÆäËû¹ØÁªÕË»§£¬¼Ó¾ç·´ICE»î¶¯ÈËÊ¿Ãæ¶ÔµÄ·çÏÕ¡£StopICEƽ̨ÓɳÛÃûÎÞµ±¾ÖÖ÷ÒåÕßл¶ûÂü¡¤°Â˹͡Ö÷µ¼ÔËÓª£¬¸Ãƽ̨¶¨Î»Îª¡°×èÖ¹ICEͻϮ¾¯±¨ÍøÂ硱£¬Í¨¹ý¶à°ü·½Ê½ÍøÂç²¢°ä²¼ICEÔÚÈ«¹úÁìÓòÄڵķ¨ÂÉÐж¯ÐÅÏ¢£¬Ô̺¬³µÁ¾Ä¿¼û¼Í¼¡¢³µÉ̱ꡢ¹¦·ò´ÁºÍµØÎ»£¬Ö¼ÔÚΪÈõÊÆÈºÌåÌṩ·¨ÂÉÔ¤¾¯¡¢Ë¾·¨ÔöÔ®¼°ÉçÇøÖ§³Ö×ÊÔ´¡£È»¶ø£¬Æ½Ì¨´æÔÚÐÅÀµ¶ÈÆÀ·ÖµÍ¡¢ËùÓÐȨ²»Ã÷µÈÕùÒé¡£
https://www.ibtimes.co.uk/stopice-hacked-names-locations-over-100k-users-were-sent-fbi-ice-hsi-1775307
3. ÃϼÓÀECÍøÕ¾¹ÊÕÏÖÂ1.4Íò¼ÇÕßÃô¸ÐÐÅϢй¶
1ÔÂ31ÈÕ£¬ÃϼÓÀ¹úÑ¡¾ÙίԱ»á£¨EC£©×¨ÓÃÃÅ»§ÍøÕ¾pr.ecs.gov.bd²úÉú³Á´ó¼¼Êõ¹ÊÕÏ£¬µ¼ÖÂÔ¼14000Ãû¼ÇÕßµÄÃô¸ÐÓ×ÎÒÊý¾Ýй¶¡£Õâ´ÎÐ¹Â¶Éæ¼°¹úÃñÉí·ÝÖ¤ºÅÂë¡¢ÊÖ»úºÅÂ뼰ýÌå´ÓÒµÈËÔ±µÄÆëÈ«ÉêÇë±í¸±±¾£¬ÕâЩ¼ÇÕß´ËǰÒÑÔÚÏß×¢²áÉêÇë¼ÇÕßÖ¤ºÍ³µÁ¾ÌùÖ½£¬ÒÔ±¸¼´½«µ½À´µÄµÚÊ®Èý½ìÈ«¹úÒé»áÑ¡¾ÙºÍÈ«Ãñ¹«Í¶Ö®Ó᣸ÃÍøÕ¾ÔÖ¼ÔÚͨ¹ýÏÖ´ú»¯¼¿Á©¼ò»¯¼ÇÕßÖ¤ÉêÇëÁ÷³Ì£¬µ«¹ÊÕ϶³öÁËÑϳÁ°²È«Òþ»¼¡£¾ßÌå¶øÑÔ£¬Óû§µÇÂ¼ÍøÕ¾ºó£¬Ê×Ò³»áµ±¼´ÏÔʾËùÓÐÉêÇëÈËµÄÆëÈ«Ãûµ¥£¬ÏµÍ³ÔÊÐíÈκÎÈ˽Ӽû²¢´ò¿ªÆëÈ«µÄÉêÇëÎļþ£¬´Ó¶øÐ¹Â¶¸öÈËÁªÏµ·½Ê½ºÍÉí·ÝÖ¤ºÅÂëµÈÃô¸ÐÐÅÏ¢¡£·ì϶±»·¢ÏÖºó£¬ÍøÕ¾Ñ¸¿ì±»½ûÓÃÒÔÔ¤·À½øÒ»²½Î´¾ÊÚȨ½Ó¼û¡£Ñ¡¾ÙίԱ»á¹«¹²¹ØÏµ²¿ÃÅÖ÷Èγºú¶û¡¤°¢Ã÷¡¤ÂíÀû¿Ë°µÊ¾£¬¸ÃÔÚÏßϵͳ±¾Ó¦ÓÚÖÜÎåÍ£Ó㬵«ÕƹÜÍøÕ¾ÖÎÀíµÄ¹ÙÔ±ÖÜÁùÏÂÎç¶ÌÔÝ¿ªÆôÁ˸ÃÍøÕ¾£¬µ¼ÖÂÊý¾Ýй¶¡£ËûÈ·ÈÏÍøÕ¾Ä¿Ç°ÒÑÏÂÏߣ¬²¢Ç¿µ÷ÔÚµ÷²éϵͳΪºÎÄÜÔÚ·ÇÔ¤ÆÚ¹¦·ò±»½Ó¼û¡£
https://www.observerbd.com/news/564449
4. Arsink°²×¿Ä¾Âí¼Ù×°50ÓàÆ·ÅÆÈ«ÇòϰȾ³¬4.5ÍòÉ豸
1ÔÂ30ÈÕ£¬Zimperium zLabs×êÑÐÈËÔ±½üÈÕ·¢ÏÖÃûΪArsinkµÄΣÏÕ°²×¿Ä¾Âí£¬¸ÃľÂí¼Ù×°³ÉWhatsApp¡¢TikTokµÈ50Óà¸ö³ÛÃûÆ·ÅÆ£¬Í¨¹ýTelegram¡¢Discord¼°MediaFireµÈ·Ç¹Ù·½Çþ·´«²¼£¬ÔÚÈ«Çò143¸ö¹ú¶ÈϰȾ³¬4.5Íǫ̀É豸£¬ÆäÖа£¼°£¨Ô¼1.3Íò£©¡¢Ó¡¶ÈÄáÎ÷ÑÇ£¨7000£©¡¢ÒÁÀ¿Ë£¨3000£©Îª³ÁÔÖÇø¡£¸ÃľÂíѡȡ¡°×¨Òµ°æ¡±ÀûÓÃÏÝÚåÕ½Êõ£¬ÒÔÌṩÕý°æÀûÓÃȱʧµÄÌØÊâÖ°ÄÜΪµö¶ü£¬ÓÕµ¼Óû§ÏÂÔØ¡£×°Öúó£¬ÀûÓõ±¼´ÒªÇóÓû§ÊÚÓè´óÁ¿È¨ÏÞ£¬Ëæºó°µ²Ø×ÔÉíͼ±ê²¢ÔÚºó¶ÜÔËÐУ¬²¿ÃŰ汾ÉõÖÁÄÚÖõڶþ¸ö¡°ÓÐÐ§ÔØºÉ¡±£¬ÊµÏÖÀëÏßϰȾ¡£ArsinkÆô¶¯¡°³ÖÐøºó¶Ü·þÎñ¡±È·±£ÓÀ²»¹Ø¹Ø£¬¾ß±¸Ô¶³Ì½ÚÔì¡¢¹àÒô¼àÌý¡¢¶ÌÐÅÇÔÈ¡¡¢ÕÕÆ¬µÁÈ¡¡¢ÁªÏµÈ˼°Í¨»°¼Í¼¶ÁÈ¡¡¢¹È¸èÕË»§ÓÊÏä½Ó¼ûµÈ¶ñÒâÖ°ÄÜ£¬¸ü¿ÉÇ¿ÔìÊÖ»ú²¦´òµç»°¡¢×·×Ù¾«È·µØÎ»£¬ÉõÖÁ¶Ô´æ´¢¿Õ¼ä½øÐÓ×°·ÛËéÐÔ²Á³ý¡±¡£ËùÓÐÇÔÈ¡Êý¾Ýͨ¹ý317¸öÊý¾Ý¿âÈë¿ÚÔ̺¬Firebase¡¢Telegram»úеÈ˼°GoogleÔÆ¶ËÓ²Å̰µ²ØÎļþ¼Ð»Ø´«ÖÁºÚ¿Í¡£
https://hackread.com/arsink-spyware-whatsapp-youtube-instagram-tiktok/
5. È«Çò½áºÏ·¨Âɵ·»Ù¹¤Òµ¼¶·¸·¨IPTV·¸×ïÍøÂç
1ÔÂ30ÈÕ£¬Å·ÖÞÐ̾¯×éÖ¯¡¢Å·ÖÞ˾·¨×éÖ¯Óë¹ú¼ÊÐ̾¯×éÖ¯½áºÏе÷£¬ÓÉÒâ´óÀû¿¨ËþÄáÑǼì²ì¹Ù°ì¹«ÊҺ͹ú¶È¾¯Ô±Ö÷µ¼µÄÈ«Çò·¨ÂÉÐж¯£¬ÔÚ11¸ö³ÇÊÐ14¸ö¹ú¶È·¢Õ¹×îн׶νø¹¥£¬³ÁµãÕë¶ÔÒâ´óÀûÃ×À¼¶¬°Â»áÆÚ¼ä·¸·¨ÌåÓýÈüÊÂת²¥ÎÊÌâ¡£Ðж¯²é»ñÈý¼Ò¹¤Òµ¼¶·¸·¨IPTV·þÎñÉÌIPTVItalia¡¢migliorIPTVºÍDarkTV£¬²ð½âÆä¸²¸Ç°ÙÍò¼¶ÖÕ¶ËÓû§µÄÐÅÏ¢¼¼Êõ»ù´¡ÉèÊ©£¬È·ÈÏ31ÃûÉæ°¸ÈËÔ±£¬ÆäÖÐ11ÈËλÓÚÒâ´óÀû£¬ÆäÓàÉ¢²¼ÔÚÓ¢¹ú¡¢Î÷°àÑÀ¡¢ÂÞÂíÄáÑÇ¡¢¿ÆË÷Îֵȵء£µ÷²éÏÔʾ£¬¸Ã·¸×ï×éÖ¯²ã¼¼û÷ÏÔ£¬Í¨¹ý¼ÓÃÜÇ®±ÒÖ§¸¶¡¢¿Õ¿Ç¹«Ë¾Ï´Ç®µÈ¼¿Á©Ìӱܼà¹Ü£¬Ã¿Ô·¸·¨»ñÀûÊý°ÙÍòÅ·Ôª¡£Æä·¸·¨½ØÈ¡²¢³Áд«ÊäSky¡¢DAZN¡¢Mediaset¡¢Amazon Prime¡¢Netflix¡¢Paramount¡¢Disney+µÈƽ̨ÄÚÈÝ£¬¼Óº¦°æÈ¨µÄͬʱִÐÐÍÆËã»úڲơ¢Ðéα×ʲúµÇ¼ÇµÈ·¸×ï״Ϊ¡£Òâ´óÀû¾¯·½Åû¶£¬½ö¸Ã¹ú¾ÍÓÐÖÁÉÙ250¼Ò¾ÏúÉ̺Í10ÍòÓû§ÊÜÓ°Ï죬ÂÞÂíÄáÑDzð³ý6̨·þÎñÆ÷£¬·ÇÖÞÒàÓÐһ̨·þÎñÆ÷±»²é·â¡£
https://www.bleepingcomputer.com/news/legal/operation-switch-off-dismantles-major-pirate-tv-streaming-services/
6. CISA½«Ivanti EPMM¸ßΣ·ì϶²ÎÓëKEVĿ¼
1ÔÂ30ÈÕ£¬ÃÀ¹úÍøÂ簲ȫºÍ»ù´¡ÉèÊ©°²È«¾Ö£¨CISA£©½üÈÕ½«Ivanti Endpoint Manager Mobile£¨EPMM£©µÄ´úÂë×¢Èë·ì϶£¨CVE-2026-1281£¬CVSSÆÀ·Ö9.8£©ÄÉÈëÒÑÖªÀûÓ÷ì϶£¨KEV£©Ä¿Â¼¡£¸Ã·ì϶ÔÊÐíδ¾Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÔ¶³ÌÖ´ÐдúÂ룬×é³ÉÑϳÁ°²È«Íþв¡£Ivanti¹«Ë¾Ö¤ÊµÒѼà²âµ½Õë¶Ô¸Ã·ì϶µÄ¹¥»÷ÐÐΪ£¬µ«°µÊ¾½öÓм«ÉÙÊý¿Í»§ÔÚ·ì϶Åû¶ʱÊܵ½ÏÖʵÀûÓá£Æ¾¾Ý°²È«²¼¸æ£¬·ì϶ԴÓÚIvanti EPMMµÄ´úÂë×¢Èëȱµã£¬¹¥»÷Õ߿ɽè´ËʵÏÖδ¾ÈÏÖ¤µÄÔ¶³Ì´úÂëÖ´ÐС£IvantiÇ¿µ÷£¬SentryºÍIvanti Neurons MDM²úÆ·²»ÊÜ´Ë·ì϶ӰÏì£¬ÔÆ·þÎñ¿Í»§Ò²Î´²¨¼°¡£Ä¿Ç°£¬¹«Ë¾Õý³ÖÐøµ÷²éÊÂÎñϸ½Ú£¬ËäÉÐδ·¢ÏÖ¿¿µÃסÈëÇÖ¼£Ï󣬵«ÒѰ䲼¼¼Êõ²¹¶¡¡¢À©´ó¿Í»§Ö§³ÖÁìÓò£¬²¢Ó밲ȫºÏ×÷ͬ°é¼°·¨Âɲ¿ÃÅ·¢Õ¹ºÏ×÷¡£Æ¾¾ÝÓµÓÐÔ¼ÊøÁ¦µÄ²Ù×÷Ö¸ÁBOD£©22-01ÒªÇó£¬Áª¹ú»ú¹¹ÐèÔÚ2026Äê2ÔÂ2ÈÕǰʵÏÖ·ì϶½¨¸´£¬ÒÔ½µµÍÂä´ó·çÏÕ¡£
https://securityaffairs.com/187488/security/u-s-cisa-adds-a-flaw-in-ivanti-epmm-to-its-known-exploited-vulnerabilities-catalog.html


¾©¹«Íø°²±¸11010802024551ºÅ