ÎÖ´ï·áÆÏÌÑÑÀ¹«Ë¾Ôâµ½¹¥»÷ 4G/5GµÈЧÀÍÔÝʱÖÐÖ¹
Ðû²¼Ê±¼ä 2022-02-11ÎÖ´ï·áÆÏÌÑÑÀ¹«Ë¾Ôâµ½¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬4G/5GµÈЧÀÍÔÝʱÖÐÖ¹
¾ÝýÌå2ÔÂ8ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬£¬ÎÖ´ï·áÆÏÌÑÑÀ¹«Ë¾Ôâµ½¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂ4G/5GÊý¾ÝÍøÂç¡¢Àο¿ÓïÒô¡¢µçÊÓ¡¢¶ÌÐźÍÓïÒô/Êý×ÖÓ¦´ðµÈЧÀÍÖÐÖ¹¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬£¬Ö»ÓÐ3GÍøÂç¿ÉÓã¨×î´ó3MB/Ã룩£¬£¬£¬£¬£¬£¬£¬£¬¶ø»Ö¸´ÆäËüЧÀÍÈÔÐè½Ï³¤Ê±¼ä¡£¡£¡£¡£¡£¡£¡£ÎÖ´ï·áÔڸùúÓµÓÐÁè¼Ý400ÍòÊÖ»úÓû§£¬£¬£¬£¬£¬£¬£¬£¬¼°340Íò¼ÒÍ¥ºÍÆóÒµÓû§£¬£¬£¬£¬£¬£¬£¬£¬Òò´Ë´Ë´Î¹¥»÷±¬·¢ÁË´ó¹æÄ£Ó°Ïì¡£¡£¡£¡£¡£¡£¡£ÎÖ´ï·á²¢Î´Í¸Â¶¹¥»÷ϸ½Ú£¬£¬£¬£¬£¬£¬£¬£¬µ«Ñо¿Ö°Ô±ÆÊÎö³ÆÕâÊÇÒ»´ÎÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/vodafone-portugal-4g-and-5g-services-down-after-cyberattack/
APT×éÖ¯KimsukyʹÓÃGold DragonºóÃŹ¥»÷º«¹úµÄ×éÖ¯
2ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬º«¹úASECÆÊÎöÍŶӹûÕæÁËAPT×éÖ¯Kimsuky½üÆÚ»î¶¯µÄϸ½Ú¡£¡£¡£¡£¡£¡£¡£KimsukyÊdz¯ÏʵĺڿÍ×éÖ¯£¬£¬£¬£¬£¬£¬£¬£¬Ò²³ÆÎªTA406£¬£¬£¬£¬£¬£¬£¬£¬×Ô2017ÄêÒÔÀ´Ò»Ö±¼ÓÈëÍøÂçÌØ¹¤»î¶¯¡£¡£¡£¡£¡£¡£¡£´Ë´Î»î¶¯×îÏÈÓÚ2022Äê1ÔÂ24ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚÈÔÔÚ¾ÙÐÐÖУ¬£¬£¬£¬£¬£¬£¬£¬KimsukyʹÓÃxRAT£¨»ùÓÚQuasar RATµÄ¿ªÔ´RAT£©ºÍGold DragonµÄбäÌå¶Ôº«¹úµÄ×éÖ¯¾ÙÐÐÓÐÕë¶ÔÐԵĹ¥»÷¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±³ÆÓʼþ¸½¼þÈÔÊÇKimsuky·Ö·¢¶ñÒâÈí¼þµÄÖ÷ÒªÇþµÀ£¬£¬£¬£¬£¬£¬£¬£¬Òò´Ë½¨ÒéÓû§²»Òª·¿ªÎ´ÖªÈªÔ´µÄÓʼþ¡£¡£¡£¡£¡£¡£¡£
https://asec.ahnlab.com/en/31089/
MoleratsʹÓÃеÄNimbleMamba¹¥»÷Öж«µÄ¹Ù·½»ú¹¹
2ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Proofpoint³ÆMolerats£¨ÓÖÃûTA402£©ÒѾ×îÏÈÁËÐÂÒ»ÂֵĹ¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£¸ÃºÚ¿ÍÍÅ»ï»òÐíÓë°ÍÀÕ˹̹Óйأ¬£¬£¬£¬£¬£¬£¬£¬Ê¹ÓÃÁËеĶñÒâÈí¼þNimbleMamba£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Öж«µÄÕþ¸®¡¢Íâ½»»ú¹¹ÒÔ¼°¹úÓк½¿Õ¹«Ë¾¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ£¬£¬£¬£¬£¬£¬£¬£¬NimbleMamba¿ÉÄÜÊǸÃ×é֮֯ǰʹÓõÄLastConnµÄÌæ»»Æ·£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇҴ˴λ¾ßÓÐÖØ´óµÄ¹¥»÷Á´£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓÃÁ˵ØÀíΧÀ¸ºÍURLÖØ¶¨Ïòµ½Õýµ±Õ¾µã£¬£¬£¬£¬£¬£¬£¬£¬À´ÈƹýÇå¾²¼ì²â¡£¡£¡£¡£¡£¡£¡£
https://www.proofpoint.com/us/blog/threat-insight/ugg-boots-4-sale-tale-palestinian-aligned-espionage
Kaspersky½üÆÚ·¢Ã÷Õë¶ÔÅ·ÖÞµØÇøµÄSMSishing»î¶¯
KasperskyÔÚ2ÔÂ7ÈÕÐû²¼±¨¸æ£¬£¬£¬£¬£¬£¬£¬£¬ÆÊÎöÁËRoaming MantisÕë¶ÔÅ·ÖÞµØÇøµÄ»î¶¯¡£¡£¡£¡£¡£¡£¡£¸ÃÍÅ»ïÓÚ2018Äê3ÔÂÊ״ηºÆð£¬£¬£¬£¬£¬£¬£¬£¬ÆäʱµÄÄ¿µÄÖ÷ÒªÊÇÑÇÖÞÓû§£¬£¬£¬£¬£¬£¬£¬£¬Ê¹ÓÃsmishingÒÔAPKÎļþµÄÃûÌ÷ַ¢¶ñÒâAndroidÓ¦Óᣡ£¡£¡£¡£¡£¡£¶øÔÚ×îеĻÖУ¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓÃÁËÒ»ÖÖÃûΪWrobaµÄľÂíÀ´¹¥»÷·¨¹úºÍµÂ¹úµÄÓû§¡£¡£¡£¡£¡£¡£¡£´Ë´Î»î¶¯Í¨¹ý¶ÌÐÅ·¢ËÍαװ³É·¢»õÐÅÏ¢µÄ¶ñÒâÁ´½Ó£¬£¬£¬£¬£¬£¬£¬£¬½«Ä¿µÄÖØ¶¨Ïòµ½ÇÔÈ¡AppleµÇ¼ƾ֤µÄ´¹ÂÚÒ³Ãæ¡£¡£¡£¡£¡£¡£¡£
https://securelist.com/roaming-mantis-reaches-europe/105596/
Ñо¿ÍŶӷ¢Ã÷CapraRATÕë¶ÔÓ¡¶ÈÍâ½»ºÍ¾üÊ»ú¹¹µÄ¹¥»÷
ýÌå2ÔÂ7ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬£¬£¬£¬Trend Micro·¢Ã÷ʹÓÃCapraRAT¹¥»÷Ó¡¶ÈÍâ½»ºÍ¾üÊ»ú¹¹µÄ»î¶¯¡£¡£¡£¡£¡£¡£¡£CapraRATÊÇAndroid RAT£¬£¬£¬£¬£¬£¬£¬£¬ÓëÁíÒ»ÖÖWindows¶ñÒâÈí¼þCrimsonRATµÄ¸ß¶È½»Ö¯£¬£¬£¬£¬£¬£¬£¬£¬ºóÕßÓë°Í»ù˹̹Earth Karkaddan£¨Ò²³ÆÎªAPT36£©Óйء£¡£¡£¡£¡£¡£¡£CapraRATαװ³ÉYouTube£¬£¬£¬£¬£¬£¬£¬£¬¾ÝϤÊÇÒ»¸öÃûΪAndroRATµÄ¿ªÔ´RATµÄˢа棬£¬£¬£¬£¬£¬£¬£¬¾ßÓжàÖÖÊý¾Ýй¶¹¦Ð§£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨»ñȡĿµÄλÖᢵ绰ÈÕÖ¾ºÍÁªÏµÐÅÏ¢µÈ¡£¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/02/new-caprarat-android-malware-targets.html
CISA½¨ÒéÖÎÀíÔ±ÐÞ¸´SAPÖÐͳ³ÆÎªICMADµÄ¶à¸öÎó²î
CISAÔÚ2ÔÂ8ÈÕÐû²¼Ç徲ͨ¸æ£¬£¬£¬£¬£¬£¬£¬£¬½¨ÒéÖÎÀíÔ±ÐÞ¸´SAPÖеĶà¸öÎó²î¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷ÁËÓ°ÏìʹÓÃICMµÄSAPÓ¦ÓõÄÎó²î£¬£¬£¬£¬£¬£¬£¬£¬ËûÃÇͳ³ÆÎªICMAD£¨Internet Communication Manager Advanced Desync£©£¬£¬£¬£¬£¬£¬£¬£¬»®·ÖÊÇCVE-2022-22536£¨CVSSÆÀ·ÖΪ10£©¡¢CVE-2022-22532ºÍCVE-2022-22533¡£¡£¡£¡£¡£¡£¡£CISA³Æ£¬£¬£¬£¬£¬£¬£¬£¬ÕâЩÎó²î¿ÉÄܻᵼÖÂÊý¾Ýй¶¡¢½ðÈÚڲơ¢Òªº¦Ê¹ÃüÓªÒµÁ÷³ÌÖÐÖ¹¡¢ÀÕË÷¹¥»÷ÒÔ¼°ËùÓÐÔËÓª×èÖ¹µÄΣº¦¡£¡£¡£¡£¡£¡£¡£
https://www.cisa.gov/uscert/ncas/current-activity/2022/02/08/critical-vulnerabilities-affecting-sap-applications-employing
Çå¾²¹¤¾ß
Pwndora
Pwndora ÊÇÒ»¸öÖØ´óÇÒ¿ìËÙµÄ IPv4 µØµã¹æÄ£É¨ÃèÆ÷£¬£¬£¬£¬£¬£¬£¬£¬¼¯³ÉÁ˶àÏ̡߳£¡£¡£¡£¡£¡£¡£
https://github.com/alechilczenko/pwndora
Mandiant Azure AD Investigator
´Ë´æ´¢¿â°üÀ¨Ò»¸ö PowerShell Ä£¿£¿£¿£¿£¿£¿£¿£¿é£¬£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚ¼ì²â¿ÉÄÜÊÇ UNC2452 ºÍÆäËûÍþв¼ÓÈëÕ߻ָ±êµÄ¹¤¼þ¡£¡£¡£¡£¡£¡£¡£
https://github.com/mandiant/Mandiant-Azure-AD-Investigator
LDAP Relay Scan
ÓÃÓÚ¼ì²éÓò¿ØÖÆÆ÷ÒÔ»ñÈ¡ÓÐ¹Ø NTLM Éí·ÝÑéÖ¤ÖÐ¼ÌµÄ LDAP ЧÀÍÆ÷±£»£»£»£»£»£»¤µÄ¹¤¾ß¡£¡£¡£¡£¡£¡£¡£
https://github.com/zyn3rgy/LdapRelayScan
Incident Response Collection Protocol
һϵÁÐ PowerShell ¾ç±¾£¬£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚ×Ô¶¯»¯È˹¤ÖÆÆ·ÍøÂç²¢ÐÖúÏìÓ¦ÕßÔÚ»ùÓÚʵÑéÊÒºÍÏÖ³¡ÇéÐÎÖжԶ˵ã¾ÙÐзÖÀà¡£¡£¡£¡£¡£¡£¡£
https://github.com/hackjalstead/IRCP
Çå¾²ÆÊÎö
²¨À¼½¨ÉèÍøÂçÇå¾²¾üʵ¥Î»
https://www.securityweek.com/poland-launches-cybersecurity-military-unit
Adobe ÐÞ²¹ Illustrator ÖÐµÄ 13 ¸öÎó²î
https://www.securityweek.com/adobe-patches-13-vulnerabilities-illustrator
ÃÀ¹ú²é»ñÔÚ 2016 Äê Bitfinex ºÚ¿Í¹¥»÷Öб»µÁµÄ¼ÛÖµ 36 ÒÚÃÀÔª¼ÓÃÜÇ®±Ò
https://securityaffairs.co/wordpress/127805/cyber-crime/bitfinex-stolen-funds-seizure.html
¶íÂÞ˹¾Ð²¶ÁËijºÚ¿Í×éÖ¯
https://www.bleepingcomputer.com/news/security/russia-arrests-third-hacking-group-reportedly-seizes-carding-forums/
΢ÈíĬÈϽûÓà Office Ó¦ÓóÌÐòÖÐµÄ Internet ºêÒÔ×èÖ¹¶ñÒâÈí¼þ¹¥»÷
https://thehackernews.com/2022/02/microsoft-disables-internet-macros-in.html
¹È¸èÐÞ¸´ÁË Android ÉϵÄÔ¶³ÌȨÏÞÌáÉý¹ýʧ
https://www.bleepingcomputer.com/news/security/google-fixes-remote-escalation-of-privileges-bug-on-android/
΢ÈíÐû²¼2Ô·ÝÖܶþ²¹¶¡
https://www.bleepingcomputer.com/news/microsoft/microsoft-february-2022-patch-tuesday-fixes-48-flaws-1-zero-day/


¾©¹«Íø°²±¸11010802024551ºÅ