ÓÉÓÚCDNÎÊÌ⣬£¬£¬£¬£¬£¬ £¬Microsoft WinGettÈí¼þ°ü¹ÜÀíÆ÷±¨´í

Ðû²¼Ê±¼ä 2022-11-09
1¡¢ÓÉÓÚCDNÎÊÌ⣬£¬£¬£¬£¬£¬ £¬Microsoft WinGettÈí¼þ°ü¹ÜÀíÆ÷±¨´í

¾ÝýÌå11ÔÂ7ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬´ÓÉÏÖÜÄ©×îÏÈ£¬£¬£¬£¬£¬£¬ £¬WindowsÓû§·¢Ã÷µ±ËûÃÇʵÑéʹÓÃWinGet×°ÖûòÉý¼¶Ó¦ÓóÌÐòʱ£¬£¬£¬£¬£¬£¬ £¬»áÊÕµ½²î±ðµÄ¹ýʧÌáÐÑ¡£¡£¡£ ¡£¡£¡£¡£¡£ÀýÈ磬£¬£¬£¬£¬£¬ £¬winget upgrade»áÏÔʾ¡°ÊµÑé¸üÐÂԴʧ°Ü£ºwinget¡±£¬£¬£¬£¬£¬£¬ £¬winget install»áÏÔʾ¡°Ö´ÐÐÏÂÁîʱ±¬·¢ÒâÍâ¹ýʧ£º0x8a15000f£ºÔ´ËùÐèµÄÊý¾Ýɥʧ¡±¡£¡£¡£ ¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬ £¬¸ÃÎÊÌâÊÇÓÉÓÚAzureÄÚÈݽ»¸¶ÍøÂç(CDN)·µ»ØÒ»¸ö0×Ö½ÚµÄÊý¾Ý¿âÎļþµ¼ÖµÄ£¬£¬£¬£¬£¬£¬ £¬Î¢ÈíÏÖÔÚÕýÔÚ½â¾ö¸ÃÎÊÌ⣬£¬£¬£¬£¬£¬ £¬²¢ÌåÏÖËü²»»áÓ°ÏìËùÓÐÓû§¡£¡£¡£ ¡£¡£¡£¡£¡£

https://www.bleepingcomputer.com/news/microsoft/microsoft-winget-package-manager-failing-due-to-cdn-issues/

2¡¢CitrixÐû²¼¸üУ¬£¬£¬£¬£¬£¬ £¬ÐÞ¸´ÆäADCºÍGatewayÖеĶà¸öÎó²î

CitrixÓÚ11ÔÂ8ÈÕÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬ £¬ÐÞ¸´ÆäADCºÍGatewayÖеĶà¸öÎó²î¡£¡£¡£ ¡£¡£¡£¡£¡£´Ë´ÎÐÞ¸´ÁËʹÓÃÌæ»»Â·¾¶»òͨµÀµÄÈÏÖ¤ÈÆ¹ýÎó²î£¨CVE-2022-27510£©£¬£¬£¬£¬£¬£¬ £¬¿É±»ÓÃÀ´»á¼ûGatewayÓû§£»£»£»Êý¾ÝÕæÊµÐÔÑé֤ȱ·¦Îó²î£¨CVE-2022-27513£©£¬£¬£¬£¬£¬£¬ £¬¿Éͨ¹ý´¹ÂÚ¹¥»÷¾ÙÐÐÔ¶³Ì×ÀÃæ½ÓÊÜ£»£»£»±£»£»£»¤»úÖÆÊ§Ð§£¨CVE-2022-27516£©£¬£¬£¬£¬£¬£¬ £¬¿ÉÈÆ¹ýÓû§µÇ¼µÄ±©Á¦¹¥»÷±£»£»£»¤¡£¡£¡£ ¡£¡£¡£¡£¡£½öÔÚijЩÔÚÌØ¶¨ÉèÖÃÏ£¬£¬£¬£¬£¬£¬ £¬ÕâЩÎó²î²Å»ª±»Ê¹Ó㬣¬£¬£¬£¬£¬ £¬Citrix½¨ÒéÖÎÀíÔ±Á¬Ã¦ÐÞ¸´ÕâЩÎó²î¡£¡£¡£ ¡£¡£¡£¡£¡£

https://support.citrix.com/article/CTX463706/citrix-gateway-and-citrix-adc-security-bulletin-for-cve202227510-cve202227513-and-cve202227516

3¡¢¼ÓÄôóMaple Leaf FoodsÔÚÔâµ½¹¥»÷ºóÔËÓªÔÝʱÖÐÖ¹

¾Ý11ÔÂ7ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬Maple Leaf FoodsÈ·ÈÏÆäÂÄÀúÁËÒ»ÆðÍøÂçÇå¾²ÊÂÎñ£¬£¬£¬£¬£¬£¬ £¬µ¼ÖÂϵͳºÍÔËÓªÖÐÖ¹¡£¡£¡£ ¡£¡£¡£¡£¡£Maple Leaf FoodsÊǼÓÄôó×î´óµÄÔ¤ÖÆÈâÀàºÍ¼ÒÇÝʳÎïÉú²úÉÌ£¬£¬£¬£¬£¬£¬ £¬2021ÄêÓªÒµ¶îΪ33ÒÚÃÀÔª¡£¡£¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÕýÔÚÆð¾¢»Ö¸´ÊÜÓ°ÏìµÄϵͳ£¬£¬£¬£¬£¬£¬ £¬È»¶øÔ¤¼ÆÖÜÈ«½â¾ö¹ÊÕÏÎÊÌ⽫ÈÔÐèҪʱ¼ä£¬£¬£¬£¬£¬£¬ £¬²¢½«µ¼Ö²¿·ÖÔËÓªºÍЧÀÍÖÐÖ¹¡£¡£¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ½«¼ÌÐøÓë¿Í»§ºÍÏàÖúͬ°éÏàÖú£¬£¬£¬£¬£¬£¬ £¬ÒÔïÔÌ­¼ÓÄôóÊг¡µÄʳÎ﹩ӦÖÐÖ¹¡£¡£¡£ ¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬ £¬ÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬£¬£¬£¬£¬£¬ £¬ÉÐδȷ¶¨¹¥»÷ÊÇÔõÑù±¬·¢µÄ¡£¡£¡£ ¡£¡£¡£¡£¡£

https://www.bleepingcomputer.com/news/security/maple-leaf-foods-suffers-outage-following-weekend-cyberattack/

4¡¢Justice Blade¹¥»÷ÓëÉ³ÌØ°¢À­²®Ïà¹ØµÄITÍâ°ü¹©Ó¦ÉÌ

ýÌå11ÔÂ7Èճƣ¬£¬£¬£¬£¬£¬ £¬Justice BladeÐû²¼ÁË´ÓITÍâ°ü¹©Ó¦ÉÌSmart Link BPO SolutionsÇÔÈ¡µÄÊý¾Ý¡£¡£¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓëÉ³ÌØ°¢À­²®Íõ¹úºÍGCCÆäËû¹ú¼ÒµÄ¹«Ë¾ºÍÕþ¸®»ú¹¹ÏàÖú¡£¡£¡£ ¡£¡£¡£¡£¡£¹¥»÷Õß³ÆÆäÇÔÈ¡ÁË´ó×ÚÊý¾Ý£¬£¬£¬£¬£¬£¬ £¬°üÀ¨CRM¼Í¼¡¢Ð¡ÎÒ˽¼ÒÐÅÏ¢¡¢µç×ÓÓʼþͨѶ¡¢ÌõÔ¼ºÍÕÊ»§Æ¾Ö¤µÈ£¬£¬£¬£¬£¬£¬ £¬²¢Ðû²¼Á˸õØÇø¸÷¹«Ë¾Ö®¼äµÄRDP»á»°ºÍOffice 365ͨѶµÄ½ØÍ¼£¬£¬£¬£¬£¬£¬ £¬ÒÔ¼°¿ÉÄÜÓëFlyNasºÍSAMACaresÓйصöÓû§Áбí¡£¡£¡£ ¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÔøÔÚ°µÍøÉÏ·¢Ã÷Á˶à¸öSmart Link BPO½â¾ö¼Æ»®µÄƾ֤£¬£¬£¬£¬£¬£¬ £¬¹¥»÷Õß¿ÉʹÓÃÕâЩƾִ֤Ðй¥»÷¡£¡£¡£ ¡£¡£¡£¡£¡£

https://securityaffairs.co/wordpress/138213/hacking/justice-blade-targets-saudi-arabia.html

5¡¢ºÚ¿ÍÍÅ»ïʹÓÃAndroid RAT¹¥»÷Ó¡¶ÈÓë¹ú·ÀÏà¹ØµÄ×éÖ¯

CyfirmaÔÚ11ÔÂ7ÈÕ͸¶Æä×î½ü¼ì²âµ½Ò»¸öÕë¶ÔÓ¡¶È¹ú·ÀÏà¹Ø×éÖ¯µÄ¶ñÒâAndroid APK¡£¡£¡£ ¡£¡£¡£¡£¡£Ñо¿Åú×¢£¬£¬£¬£¬£¬£¬ £¬¸Ã¹¥»÷×Ô2021Äê7ÔÂÒÔÀ´Ò»Ö±ºÜ»îÔ¾¡£¡£¡£ ¡£¡£¡£¡£¡£APKÎļþÊÇÓйء°Subs Naik¡±µÄÓÕ¶ü¸±±¾¡£¡£¡£ ¡£¡£¡£¡£¡£ÔÚÄ¿µÄ×°Öú󣬣¬£¬£¬£¬£¬ £¬Õâ¸öÓ¦ÓóÌÐò¾Í»áÔÚ×°±¸ÉÏÏÔʾΪһ¸öAdobeÔĶÁÆ÷Ó¦ÓÃͼ±ê¡£¡£¡£ ¡£¡£¡£¡£¡£¹¥»÷Õß»¹Ê¹ÓÃÁË¿ªÔ´µÄSpymax RAT±äÌå¡£¡£¡£ ¡£¡£¡£¡£¡£Spymax¿ÉÌṩ²î±ðµÄAndroid°ü¹¹½¨£¬£¬£¬£¬£¬£¬ £¬ÆäÖÐÒ»¸ö¿É½«í§ÒâWebÁ´½Ó×¢ÈëWebÊÓͼģ¿£¿£¿£¿£¿é¡£¡£¡£ ¡£¡£¡£¡£¡£ÀÖ³É×°ÖÃÌìÉúµÄAPKºó£¬£¬£¬£¬£¬£¬ £¬Ëü¾ÍÄð³ÉÁËÒ»¸öÕæÕýµÄAndroidÓ¦Óᣡ£¡£ ¡£¡£¡£¡£¡£

https://www.cyfirma.com/outofband/unknown-nation-based-threat-actor-using-android-rat-to-target-indian-defence-personnel/

6¡¢KasperskyÐû²¼2022ÄêµÚÈý¼¾¶ÈDDoS¹¥»÷µÄÆÊÎö±¨¸æ

11ÔÂ7ÈÕ£¬£¬£¬£¬£¬£¬ £¬KasperskyÐû²¼Á˹ØÓÚ2022ÄêµÚÈý¼¾¶ÈDDoS¹¥»÷µÄÆÊÎö±¨¸æ¡£¡£¡£ ¡£¡£¡£¡£¡£ÓëÉÏÒ»¼¾¶ÈÏà±È£¬£¬£¬£¬£¬£¬ £¬ËùÓÐÀàÐ͵ÄDDoS¹¥»÷ÊýÄ¿ÏÔÖøÔöÌí¡£¡£¡£ ¡£¡£¡£¡£¡£ÖÇÄܹ¥»÷µÄÕ¼±ÈÒ»Á¬ÔöÌí£¬£¬£¬£¬£¬£¬ £¬¸ß´ï53%¡£¡£¡£ ¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬ £¬±¾¼¾¶È¶ÔHTTP(S)µÄDDoS¹¥»÷Ê×´ÎÁè¼ÝÁ˶ÔTCPµÄ¹¥»÷¡£¡£¡£ ¡£¡£¡£¡£¡£ÔÚ2022ÄêQ3£¬£¬£¬£¬£¬£¬ £¬Kaspersky¹²¼ì²âµ½57116´ÎDDoS¹¥»÷£»£»£»Ò»ÖÜÖÐ×îæµµÄÊÇÐÇÆÚÎ壨15.36% µÄ¹¥»÷£©£¬£¬£¬£¬£¬£¬ £¬×îÇå¾²µÄÊÇÐÇÆÚËÄ£¨12.99%£©£»£»£»Ò»Á¬Ê±¼äÉÙÓÚ4СʱµÄ¹¥»÷Õ¼¹¥»÷×Üʱ¼äµÄ60.65%£¬£¬£¬£¬£¬£¬ £¬Õ¼¹¥»÷×ÜÊýµÄ94.29%£»£»£»UDP FloodÕ¼¹¥»÷×ÜÊýµÄ51.84%£¬£¬£¬£¬£¬£¬ £¬SYN FloodÕ¼26.96%¡£¡£¡£ ¡£¡£¡£¡£¡£

https://securelist.com/ddos-report-q3-2022/107860/