΢ÈíÐû²¼9Ô·ÝÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬£¬×ܼÆÐÞ¸´129¸öÎó²î£»£»£»£»£»£»£»Digital PointÊý¾Ý¿âÉèÖùýʧ¹ûÕæÁè¼Ý80ÍòÓû§µÄ¼Í¼

Ðû²¼Ê±¼ä 2020-09-09

1.΢ÈíÐû²¼9Ô·ÝÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬£¬×ܼÆÐÞ¸´129¸öÎó²î


1.jpg


΢ÈíÐû²¼ÁË9Ô·ÝÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬£¬×ܼÆÐÞ¸´129¸öÎó²î£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨23¸öÑÏÖØÎó²î¡£¡£¡£¡£¡£¡£Ö»¹Ü´Ë´Î¸üÐÂÖв¢Ã»ÓÐ0day£¬£¬£¬£¬£¬£¬£¬£¬µ«ÈÔÓÐÐí¶àÎó²î¿É±»Ô¶³ÌʹÓᣡ£¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄ¾ÍΪÑÏÖØµÄÈý¸öÎó²î»®·ÖΪMicrosoft ExchangeÄÚ´æËð»µÎó²î£¨CVE-2020-16875£©£¬£¬£¬£¬£¬£¬£¬£¬Ô¶³Ì¹¥»÷ÕßʹÓøÃÎó²î¿ÉÒÔ½öͨ¹ýÏòExchangeЧÀÍÆ÷·¢ËÍÌØÖÆµç×ÓÓʼþÔ¶³ÌÖ´ÐдúÂ룬£¬£¬£¬£¬£¬£¬£¬WindowsÔ¶³ÌÖ´ÐдúÂëµÄMicrosoft COMÎó²î£¨CVE-2020-0922£©£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÒÔͨ¹ýÓÕʹÓû§»á¼û´øÓжñÒâJavaScriptµÄÕ¾µãÀ´¼ÓÒÔʹÓ㬣¬£¬£¬£¬£¬£¬£¬ÒÔ¼°WindowsÎı¾Ð§ÀÍÄ£¿£¿£¿£¿éÔ¶³ÌÖ´ÐдúÂëÎó²î£¨CVE-2020-0908£©£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÒÔͨ¹ýÓÕʹÓû§»á¼û°üÀ¨¶ñÒâ¹ã¸æµÄÍøÕ¾À´¼ÓÒÔʹÓᣡ£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-september-2020-patch-tuesday-fixes-129-vulnerabilities/


2.ºÚ¿Í¿ÉÓÃÌØÖÆµÄWin10Ö÷ÌâÌᳫHashת´ï¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬ÇÔÈ¡Óû§Æ¾Ö¤


2.jpg

ºÚ¿Í¿ÉÓÃÌØÖÆµÄWin10Ö÷ÌâºÍÖ÷Ìâ°üÌᳫHashת´ï¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬ÇÔÈ¡Óû§Æ¾Ö¤¡£¡£¡£¡£¡£¡£Çå¾²Ñо¿Ô±Jimmy Bayne·¢Ã÷£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ½¨ÉèÌØÖÆµÄ.themeÎļþ£¨Win10Ö÷ÌâÉèÖÃÎļþ£©£¬£¬£¬£¬£¬£¬£¬£¬²¢½«Ö÷ÌâÉèÖøü¸ÄΪʹÓÃÔ¶³ÌÉí·ÝÑéÖ¤ËùÐèµÄ×ÊÔ´¡£¡£¡£¡£¡£¡£µ±WindowsʵÑé»á¼ûÐèÒª¾ÙÐÐÉí·ÝÑéÖ¤µÄÔ¶³Ì×ÊԴʱ£¬£¬£¬£¬£¬£¬£¬£¬Ëü½«Í¨¹ý·¢ËÍÒѵǼÕÊ»§µÄNTLMÉ¢Áк͵ǼÃûÀ´×Ô¶¯ÊµÑéµÇ¼¹²Ïí¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔʹÓÃÌØÊâ¾ç±¾ÍøÂçÆ¾Ö¤²¢¶ÔÆä¾ÙÐÐÉ¢Áд¦Öóͷ££¬£¬£¬£¬£¬£¬£¬£¬»ñµÃÃ÷ÎÄÐÎʽµÄÃÜÂë¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/windows-10-themes-can-be-abused-to-steal-windows-passwords/


3.·¨¹ú¡¢ÈÕ±¾ºÍÐÂÎ÷À¼ÖÒÑÔÕë¶ÔÈ«ÇòµÄEmotet¹¥»÷»î¶¯¼¤Ôö


3.png

À´×Ô·¨¹ú¡¢ÈÕ±¾ºÍÐÂÎ÷À¼µÄÍøÂçÇå¾²»ú¹¹Ðû²¼ÁËÇå¾²¾¯±¨£¬£¬£¬£¬£¬£¬£¬£¬ÖÒÑÔʹÓÃEmotet¶ñÒâÈí¼þ¶ÔÕâÈý¸ö¹ú¼ÒµÄ¹«Ë¾ºÍÕþ¸®»ú¹¹ÌᳫµÄÀ¬»øÓʼþ»î¶¯¼¤Ôö¡£¡£¡£¡£¡£¡£Æ¾Ö¤Èý¼Ò»ú¹¹µÄ¾¯±¨£¬£¬£¬£¬£¬£¬£¬£¬ÔÚ×î½üÕë¶Ô·¨¹ú¡¢ÈÕ±¾ºÍÐÂÎ÷À¼µÄ¹¥»÷»î¶¯ÖУ¬£¬£¬£¬£¬£¬£¬£¬ºÚ¿ÍʹÓÃÁËÏàͬµÄÕ½ÂÔ£¬£¬£¬£¬£¬£¬£¬£¬¼´Ñ¬È¾Ò»¸öÊܺ¦Õߣ¬£¬£¬£¬£¬£¬£¬£¬ÇÔÈ¡¾ÉµÄÓʼþỊ̈߳¬£¬£¬£¬£¬£¬£¬£¬È»ºó»Ö¸´ÕâЩ¾ÉµÄ¶Ô»°£¬£¬£¬£¬£¬£¬£¬£¬½«¶ñÒâÎļþÌí¼ÓΪ¸½¼þѬȾÐÂÓû§¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬£¬Emotet»¹Ê¹ÓÃÁËWindows WordÎĵµ(.doc)ºÍÊÜÃÜÂë±£»£»£»£»£»£»£»¤µÄZIP´æµµÎļþ×÷Ϊ¶ñÒâµç×ÓÓʼþ¸½¼þ¡£¡£¡£¡£¡£¡£    


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/france-japan-new-zealand-warn-of-sudden-spike-in-emotet-attacks/


4.Digital PointÊý¾Ý¿âÉèÖùýʧ¹ûÕæÁè¼Ý80ÍòÓû§µÄ¼Í¼


4.png

WebsitePlaneÑо¿Ö°Ô±ÓÚ7ÔÂ1ÈÕ·¢Ã÷£¬£¬£¬£¬£¬£¬£¬£¬ÍøÕ¾ÖÎÀíÔ±ÂÛ̳Digital PointÊý¾Ý¿âÉèÖùýʧ¹ûÕæ863412ÃûÓû§µÄ¼Í¼¡£¡£¡£¡£¡£¡£´Ë´Î×ܹ²Ð¹Â¶ÁËÁè¼Ý6200ÍòÌõÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨Óû§µÄÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢ÄÚ²¿Óû§IDºÅ£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°ÄÚ²¿¼Í¼ºÍÓû§Ìû×ÓµÄÏêϸÐÅÏ¢¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚÊÕµ½±¨¸æºóµÄÊýСʱÄÚ¶Ô¸ÃÊý¾Ý¿â½ÓÄÉÁ˱£»£»£»£»£»£»£»¤²½·¥£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÊÇÏÖÔÚ²¢Î´»ØÓ¦¸ÃÊÂÎñ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/webmaster-forum-database-exposed-data-of-800000-users/


5.Ŧ¿¨Ë¹¶û´óѧѬȾDoppelPaymerµ¼ÖÂITϵͳÖÐÖ¹ÊýÖÜ


5.jpg

Ó¢¹úŦ¿¨Ë¹¶û´óѧÌåÏÖ£¬£¬£¬£¬£¬£¬£¬£¬ÆäÔÚ8ÔÂ30ÈÕÉÏÎçÔâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂITϵͳÖÐÖ¹£¬£¬£¬£¬£¬£¬£¬£¬Ô¤¼ÆÊýÖÜÖ®ºó²Å¿É»Ö¸´¡£¡£¡£¡£¡£¡£´Ë´Î¹¥»÷µ¼Ö¸ôóѧ³ýͨѶϵͳ£¨µç×ÓÓʼþ¡¢Team¡¢CanvasºÍZoom)ÒÔÍâµÄËùÓÐϵͳ£¬£¬£¬£¬£¬£¬£¬£¬ÒªÃ´²»¿ÉÓ㬣¬£¬£¬£¬£¬£¬£¬ÒªÃ´±»ÏÞÖÆ¡£¡£¡£¡£¡£¡£ºÚ¿Í×éÖ¯DoppelPaymer³Æ´Ë´Î¹¥»÷ÓÉÆäÌᳫ£¬£¬£¬£¬£¬£¬£¬£¬²¢Ðû²¼ÁË750KbµÄ±»µÁÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬×÷ΪÆäÊý¾Ý×ß©վµãµÄÖ¤¾Ý¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/ransomware-gang-says-they-are-behind-newcastle-university-attack/


6.ÖйúÔÚ9ÔÂ8ÈյĹú¼Ê×êÑлáÌá³ö¡¶È«ÇòÊý¾ÝÇå¾²½¨Òé¡·


6.jpg

Öйú¹úÎñίԱ¼æÍⳤÍõÒã±¾ÖܶþÔÚÈ«ÇòÊý×ÖÖÎÀí×êÑлáÉÏÌåÏÖ£¬£¬£¬£¬£¬£¬£¬£¬ÎªÓ¦¶ÔÐÂÎÊÌâÐÂÌôÕ½£¬£¬£¬£¬£¬£¬£¬£¬ÖйúÔ¸Ìᳫ¡¶È«ÇòÊý¾ÝÇå¾²½¨Òé¡·£¬£¬£¬£¬£¬£¬£¬£¬½Ó´ý¸÷·½Æð¾¢¼ÓÈë¡£¡£¡£¡£¡£¡£Ìá³öÓ¦¶ÔÊý¾ÝÇ徲Σº¦Ó¦×ñÕÕÈýÏîÔ­Ôò£º±ü³Ö¶à±ßÖ÷Òå¡¢¼æ¹ËÇå¾²Éú³¤ºÍ¼áÊØ¹«ÕýÕýÒå¡£¡£¡£¡£¡£¡£²¢ÌåÏÖ£¬£¬£¬£¬£¬£¬£¬£¬ÖйúÕþ¸®ÑÏ¿á¼ùÐÐÊý¾ÝÇå¾²±£»£»£»£»£»£»£»¤ÓйØÔ­Ôò£¬£¬£¬£¬£¬£¬£¬£¬Ã»ÓÐÒ²²»»áÒªÇóÖз½ÆóҵΥ·´±ð¹úÖ´·¨ÏòÖйúÕþ¸®Ìṩ¾³ÍâÊý¾Ý¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

http://world.people.com.cn/n1/2020/0908/c1002-31853722.html