º«¹úÒÆ¶¯ÔËÓªÉÌLG UplusÊý¾Ýй¶ӰÏìÔ¼29ÍòÓû§
Ðû²¼Ê±¼ä 2023-02-07
¾Ýº«ÁªÉç2ÔÂ3ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬LG UplusÉϸöÔµÄÊý¾Ýй¶ÊÂÎñ¹²Ó°ÏìÁË290000¸öÓû§¡£¡£¡£¡£¡£¡£¡£1ÔÂ10ÈÕ£¬£¬£¬£¬£¬£¬£¬¸ÃÒÆ¶¯ÔËÓªÉÌÔøÍ¸Â¶180000¸ö¿Í»§ÐÅϢй¶£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÐÕÃû¡¢³öÉúÈÕÆÚºÍµç»°ºÅÂëµÈ£¬£¬£¬£¬£¬£¬£¬µ«²»Éæ¼°²ÆÎñÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£ÉÏÖÜÎ壬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÔÚÆäÍøÕ¾ÉÏÌåÏÖ£¬£¬£¬£¬£¬£¬£¬·¢Ã÷ÁËÁíÍâ110000¸öÒÑÖÕÖ¹¶©ÔĵĿͻ§µÄÊý¾ÝÒ²Êܵ½ÁËÓ°Ïì¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬LG UplusÕýÔÚÆð¾¢ÅäºÏÕþ¸®µÄÊӲ죬£¬£¬£¬£¬£¬£¬ÒÔÈ·¶¨ÕâЩÊý¾ÝÊǺÎʱÒÔ¼°ÔõÑùй¶µÄ¡£¡£¡£¡£¡£¡£¡£
https://en.yna.co.kr/view/AEN20230203008600325
2¡¢Ñо¿Ö°Ô±Í¸Â¶GoAnywhere MFTÖеÄRCEÎó²îÕý±»Ê¹ÓÃ
¾Ý2ÔÂ4ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬FortraµÄGoAnywhere MFTÎļþ´«ÊäÓ¦ÓÃÖеÄ0 dayÕýÔÚ±»Æð¾¢Ê¹Óᣡ£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±Brian Krebs͸¶ÕâÊÇÒ»¸öÔ¶³Ì´úÂë×¢ÈëÎó²î£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÐèÒª»á¼ûÖÎÀí¿ØÖÆÌ¨²Å»ªÊ¹ÓøÃÎó²î¡£¡£¡£¡£¡£¡£¡£Òò´Ë±ØÐèÈ·±£ÏµÍ³²»ÔÚ¹«¹²ÍøÂçÉÏ£¬£¬£¬£¬£¬£¬£¬µ«Ñо¿Ö°Ô±·¢Ã÷ÁË1008̨GoAnywhereʵÀý̻¶ÔÚ»¥ÁªÍøÉÏ£¬£¬£¬£¬£¬£¬£¬Ö÷ҪλÓÚÃÀ¹ú£¬£¬£¬£¬£¬£¬£¬ÆäÖд󲿷ÖʹÓÃÁ˶˿Ú8000ºÍ8001¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚûÓÐÕë¶Ô¸ÃÎó²îµÄ²¹¶¡£¬£¬£¬£¬£¬£¬£¬µ«FortraÌṩÁË»º½â²½·¥¡£¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2023/02/warning-hackers-actively-exploiting.html
3¡¢ÃÀ¹ú¸¥ÂÞÀï´ïTMHÒ½ÔºÔÚÔâµ½ÍøÂç¹¥»÷ºóITϵͳ¹Ø±Õ
¾ÝýÌå2ÔÂ3ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬·ðÂÞÀï´ïÖÝÒ½ÔºTallahassee Memorial HealthCare(TMH)Ôâµ½ÁËÍøÂç¹¥»÷¡£¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚÉÏÖÜËÄ£¬£¬£¬£¬£¬£¬£¬ÔÚ·¢Ã÷Çå¾²ÎÊÌâºóÒ½ÔºÁ¬Ã¦¹Ø±ÕÁËÆäITϵͳÒÔ¼õÇáÓ°Ï죬£¬£¬£¬£¬£¬£¬²¢½«ÐèÒª½ôÆÈÒ½ÁÆÐ§ÀÍ(EMS)µÄ»¼Õß×ªÒÆµ½ÆäËüÒ½Ôº¡£¡£¡£¡£¡£¡£¡£TMH͸¶£¬£¬£¬£¬£¬£¬£¬ËûÃÇÕýÔÚÉó²éÿһ¸öITϵͳ£¬£¬£¬£¬£¬£¬£¬È·¶¨ËüÃǵÄÓÅÏÈÐò´Î£¬£¬£¬£¬£¬£¬£¬²¢Ê¹ËüÃÇÖðÒ»»Ö¸´ÔÚÏß¡£¡£¡£¡£¡£¡£¡£¾ÝÍâµØÃ½Ì屨µÀ£¬£¬£¬£¬£¬£¬£¬ÕâÒÉËÆÊÇÒ»ÆðÀÕË÷¹¥»÷ÊÂÎñ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/florida-hospital-takes-it-systems-offline-after-cyberattack/
4¡¢TrendMicro·¢Ã÷¶ñÒâÈí¼þTgToxicÕë¶Ô¶«ÄÏÑǵĹ¥»÷
Trend MicroÔÚ2ÔÂ3ÈÕÅû¶Á˶ñÒâÈí¼þTgToxicÕë¶Ô¶«ÄÏÑǵĹ¥»÷¡£¡£¡£¡£¡£¡£¡£¸Ã»î¶¯Ê¼ÓÚ2022Äê7Ô£¬£¬£¬£¬£¬£¬£¬Ö÷ÒªÕë¶Ǫ̂Í塢̩¹úºÍÓ¡¶ÈÄáÎ÷ÑǵÄAndroidÓû§¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õßͨ¹ý½«ÒøÐÐľÂíTgToxicǶÈë¶à¸öÐéαӦÓóÌÐò£¬£¬£¬£¬£¬£¬£¬À´´Ó½ðÈÚºÍÒøÐÐÓ¦ÓóÌÐòÖÐÇÔȡĿµÄµÄ×ʲú¡£¡£¡£¡£¡£¡£¡£TgToxicʹÓÃÁ½ÖÖÒªÁìÀ´Èƹý¼ì²âºÍÆÊÎö£¬£¬£¬£¬£¬£¬£¬»®·ÖΪ´úÂë»ìÏýºÍpayload¼ÓÃÜ¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬TgToxic¿ÉÒÔÐ®ÖÆÏµÍ³Ó¦ÓÃ×Ô¶¯ÊÚÓè×Ô¼ºÈ¨ÏÞ£¬£¬£¬£¬£¬£¬£¬²¢ÔÚÄ¿µÄʵÑéÐ¶ÔØ¶ñÒâÈí¼þʱ×èÖ¹Ð¶ÔØ¡£¡£¡£¡£¡£¡£¡£
https://www.trendmicro.com/en_us/research/23/b/tgtoxic-malware-targets-southeast-asia-android-users.html
5¡¢Î¢Èí³Æ·¨¹ú²éÀíÖÜ¿¯Ôâµ½µÄ¹¥»÷ÓëNEPTUNIUMÍÅ»ïÓйØ
ýÌå2ÔÂ5ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬Î¢Èí͸¶·¨¹ú²éÀíÖÜ¿¯£¨Charlie Hebdo£©Ôâµ½µÄ¹¥»÷ÓëÒÁÀÊNEPTUNIUMÍÅ»ïÓйء£¡£¡£¡£¡£¡£¡£1Ô³õ£¬£¬£¬£¬£¬£¬£¬×Ô³ÆHoly SoulsµÄ¹¥»÷ÕßÉù³ÆÈëÇÖÁ˸ÃÔÓÖ¾µÄÊý¾Ý¿â²¢»ñµÃÁËÁè¼Ý200000Ãû¿Í»§µÄÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬»¹Ðû²¼ÁËÒ»¸öÑù±¾×÷ΪÈëÇÖÖ¤¾Ý¡£¡£¡£¡£¡£¡£¡£Ö®ºó£¬£¬£¬£¬£¬£¬£¬Holy SoulsÒÔ20 BTC£¨Ô¼ºÏ340000ÃÀÔª£©µÄ¼ÛÇ®³öÊÛ´ó×ÚÊý¾Ý¡£¡£¡£¡£¡£¡£¡£·¨¹ú¡¶Ììϱ¨¡·Ö¤ÊµÁËй¶Êý¾ÝµÄÕæÊµÐÔ¡£¡£¡£¡£¡£¡£¡£Î¢Èí»ùÓÚ´ó×ڵĿÉÓÃÇ鱨£¬£¬£¬£¬£¬£¬£¬½«´Ë´Î¹¥»÷»î¶¯¹éÒòÓÚNEPTUNIUM£¬£¬£¬£¬£¬£¬£¬²éÀíÖÜ¿¯ÉÐδ¶Ô΢ÈíµÄÊÓ²ìЧ¹û½ÒÏþ̸ÂÛ¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/141855/apt/charlie-hebdo-data-leak-iran.html
6¡¢WithSecureÐû²¼LazarusÕë¶ÔZimbra×°±¸µÄÆÊÎö±¨¸æ
WithSecureÔÚ2ÔÂ2ÈÕÐû²¼Á˹ØÓÚLazarusʹÓÃδÐÞ¸´Zimbra×°±¸µÄ¹¥»÷»î¶¯µÄ±¨¸æ¡£¡£¡£¡£¡£¡£¡£¸Ã»î¶¯±»ÃüÃûΪNo Pineapple£¬£¬£¬£¬£¬£¬£¬Ö÷ÒªÕë¶ÔÑо¿»ú¹¹¡¢Ò½Ñ§ºÍÄÜÔ´ÐÐÒµ×éÖ¯¼°Æä¹©Ó¦Á´¡£¡£¡£¡£¡£¡£¡£ÓÃÓÚ³õʼ»á¼ûµÄÎó²îÊÇCVE-2022-27925ºÍCVE-2022-37042£¬£¬£¬£¬£¬£¬£¬ËüÃǶ¼¿ÉÓÃÀ´ÔڵײãЧÀÍÆ÷ÉÏÔ¶³ÌÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßʹÓÃÏֳɵÄwebshellºÍ×Ô½ç˵¶þ½øÖÆÎļþ£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°Ê¹ÓÃÕýµ±µÄWindowsºÍUnix¹¤¾ß¡£¡£¡£¡£¡£¡£¡£×îÖÕ£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß×°ÖÃÁËDtrackºÍ¸üа汾µÄGREASEµÈºóÃÅ¡£¡£¡£¡£¡£¡£¡£
https://labs.withsecure.com/publications/no-pineapple-dprk-targeting-of-medical-research-and-technology-sector


¾©¹«Íø°²±¸11010802024551ºÅ