Operaä¯ÀÀÆ÷ÑÏÖØÎó²îMyFlawʹÊý°ÙÍòÓû§ÃæÁÙΣº¦

Ðû²¼Ê±¼ä 2024-01-17
1. Operaä¯ÀÀÆ÷ÑÏÖØÎó²îMyFlawʹÊý°ÙÍòÓû§ÃæÁÙΣº¦


1ÔÂ16ÈÕ £¬£¬£¬Ê¢ÐÐµÄ Opera Web ä¯ÀÀÆ÷Öз¢Ã÷ÁËÒ»¸öÑÏÖØÎó²î £¬£¬£¬¸ÃÎó²î¿ÉÄܵ¼ÖÂÔÚ Windows ºÍ Mac ²Ù×÷ϵͳÉÏÔ¶³ÌÖ´ÐдúÂë¡£¡£ ¡£¡£Guardio Labs Ñо¿ÍŶӷ¢Ã÷²¢Åû¶µÄÕâһȱÏÝ͹ÏÔÁËÔÚÏÖ´úä¯ÀÀÆ÷ÖÐÆ½ºâй¦Ð§ÓëǿʢÇå¾²ÐÔËùÃæÁÙµÄÒ»Á¬ÌôÕ½¡£¡£ ¡£¡£Guardio Ñо¿ÍŶӽ«Õâ¸öÎó²îÃüÃûΪMyFlaw £¬£¬£¬ÊÇÓÉÓÚOpera µÄ¡°My Flow¡±¹¦Ð§¶ø±£´æµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î £¬£¬£¬¸Ã¹¦Ð§¿ÉÒÔͨ¹ýä¯ÀÀÆ÷ÔÚ×ÀÃæºÍÒÆ¶¯×°±¸Ö®¼äÎÞ·ì¹²ÏíÌõ¼ÇºÍÎļþ¡£¡£ ¡£¡£ÏêϸÀ´Ëµ £¬£¬£¬My Flow µÄ»ùÓÚÍøÂçµÄ̸Ìì½çÃæÎªÈκθԶ×ãļþÌí¼ÓÁË¡°·­¿ª¡±Á´½Ó £¬£¬£¬µ¼ÖÂÖ±½Ó´Óä¯ÀÀÆ÷Ö´ÐÐËüÃÇ¡£¡£ ¡£¡£


2. Áè¼Ý178000¸öSONICWALLÏÂÒ»´ú·À»ðǽÒ×ÔâÊܺڿ͹¥»÷


1ÔÂ15ÈÕ £¬£¬£¬SonicWall ÏÂÒ»´ú·À»ðǽ (NGFW) ϵÁÐ 6 ºÍ 7 ×°±¸Êܵ½Á½¸öδ¾­Éí·ÝÑéÖ¤µÄ¾Ü¾øÐ§ÀÍÎó²îµÄÓ°Ïì £¬£¬£¬»®·ÖΪCVE-2022-22274 ºÍ CVE-2023-0656 £¬£¬£¬Õâ¿ÉÄܻᵼÖÂÔ¶³Ì´úÂëÖ´ÐС£¡£ ¡£¡£Ö»¹ÜÕë¶ÔCVE-2023-0656ȱÏݵĿ´·¨Ñé֤ʹÓÃÒѹûÕæÐû²¼ £¬£¬£¬µ«¹©Ó¦É̲¢²»ÖªµÀʹÓÃÕâЩÎó²î¾ÙÐеÄÒ°Íâ¹¥»÷¡£¡£ ¡£¡£Bishop Fox µÄÑо¿Ö°Ô±Ê¹Óà BinaryEdge Ô´Êý¾ÝÕÒµ½ÁË̻¶ÓÚ»¥ÁªÍøµÄÖÎÀí½çÃæµÄ SonicWall ·À»ðǽ¡£¡£ ¡£¡£×¨¼Ò·¢Ã÷ £¬£¬£¬76%£¨233,984 ÆäÖÐµÄ 178,637 ¸ö£©ÃæÏò»¥ÁªÍøµÄ·À»ðǽÈÝÒ×Êܵ½Ò»¸ö»òÁ½¸öÎÊÌâµÄÓ°Ïì¡£¡£ ¡£¡£×¨¼ÒÖ¸³ö £¬£¬£¬ÕâÁ½¸öÎÊÌâʵÖÊÉÏÊÇÏàͬµÄ £¬£¬£¬µ«ÓÉÓÚÖØÓÃÁËÒ×Êܹ¥»÷µÄ´úÂëģʽ £¬£¬£¬Òò´Ë¿ÉÒÔÔÚ²î±ðµÄ HTTP URI ·¾¶ÉÏʹÓᣡ£ ¡£¡£Ñо¿Ö°Ô±»¹¿ª·¢ÁËÒ»¸ö²âÊԾ籾 £¬£¬£¬¿ÉÒÔÔÚ²»µ¼ÖÂ×°±¸Íß½âµÄÇéÐÎÏÂÈ·¶¨×°±¸ÊÇ·ñÈÝÒ×Êܵ½¹¥»÷¡£¡£ ¡£¡£


3. MicrosoftÐÞ¸´KB5034441¸üÐÂʱµ¼ÖÂ0x80070643¹ýʧ


1ÔÂ15ÈÕ £¬£¬£¬Microsoft ÕýÔÚÆð¾¢ÐÞ¸´ÔÚ×°ÖÃÐÞ²¹ CVE-2024-20666 BitLocker Îó²îµÄ KB5034441 Çå¾²¸üÐÂʱµ¼Ö 0x80070643 ¹ýʧµÄÒÑÖªÎÊÌâ¡£¡£ ¡£¡£ËäÈ»Çå¾²ÎÊÌâÒÑÔÚ±¾ÔµÄÖܶþ²¹¶¡ÈÕ»ñµÃ½â¾ö £¬£¬£¬µ«ÔÚ Windows »Ö¸´ÇéÐÎ (WinRE) ·ÖÇø¹ýСµÄϵͳÉϰ²ÅÅ KB5034441 ½«»áʧ°Ü £¬£¬£¬²¢¹ýʧµØÏÔʾͨÓá° 0x80070643 - ERROR_INSTALL_FAILURE¡±¹ýʧÐÂÎÅ £¬£¬£¬¶ø²»ÊÇ׼ȷµÄ CBS_E_INSUFFICIENT_DISK_SPACE ¹ýʧ¡£¡£ ¡£¡£


4. SmartScreenÎó²î±»Ê¹ÓÃÀ´Í¶·ÅPhemedrone¶ñÒâÈí¼þ


1ÔÂ15ÈÕ £¬£¬£¬Phemedrone ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ»î¶¯Ê¹Óà Microsoft Defender SmartScreen Îó²î (CVE-2023-36025) ÔÚ·­¿ª URL ÎļþÊ±ÈÆ¹ý Windows Çå¾²ÌáÐÑ¡£¡£ ¡£¡£Phemedrone ÊÇÒ»ÖÖÐÂÐÍ¿ªÔ´ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ £¬£¬£¬¿ÉÍøÂçÍøÂçä¯ÀÀÆ÷¡¢¼ÓÃÜÇ®±ÒÇ®°üÒÔ¼° Discord¡¢Steam ºÍ Telegram µÈÈí¼þÖд洢µÄÊý¾Ý¡£¡£ ¡£¡£È»ºó £¬£¬£¬ÕâЩÊý¾Ý±»·¢Ëͻع¥»÷Õß £¬£¬£¬ÓÃÓÚÆäËû¶ñÒâ»î¶¯»ò³öÊÛ¸øÆäËûÍþвÐÐΪÕß¡£¡£ ¡£¡£Phemedrone »î¶¯ÖÐʹÓÃµÄ Microsoft Defender ȱÏÝΪ CVE-2023-36025¡£¡£ ¡£¡£


5. Tura Scandinavia ABÔâµ½ÀÕË÷Èí¼þÍÅ»ïLockBitµÄ¹¥»÷


1ÔÂ15ÈÕ £¬£¬£¬ura Scandinavia AB ·¢Ã÷×Ô¼º³ÉΪ LockBit ÀÕË÷Èí¼þ×éÖ¯µÄ¹¥»÷Ä¿µÄ £¬£¬£¬Õâ±ê¼Çןù«Ë¾ÍøÂçÇ徲ʷÉϵÄÓÖÒ»ÊÂÎñ¡£¡£ ¡£¡£ÍþвÐÐΪÕß LockBit ÀÕË÷Èí¼þ×éÖ¯ÔÚ°µÍøÉÏÐû²¼ÁËÓйش˴ÎÈëÇÖµÄÉùÃ÷¡£¡£ ¡£¡£¶ÔTura Scandinavia AB µÄËùÎ½ÍøÂç¹¥»÷Ö®ÒÔÊÇÀÖ³É £¬£¬£¬ÊÇÓÉÓÚ Tura Scandinavia ¹«Ë¾ÍøÂçÖеĶà¸öÎó²îµ¼ÖÂδ¾­ÊÚȨµÄ»á¼û¡£¡£ ¡£¡£ÁîÈËÕ𾪵ÄÊÇ £¬£¬£¬LockBitÉù³ÆÄÚ²¿Ð§ÀÍÆ÷ȱ·¦¼à¿ØÏµÍ³¡¢·À²¡¶¾Èí¼þºÍ·À»ðǽµÈ»ù±¾Çå¾²²½·¥¡£¡£ ¡£¡£ 


6. Inferno DrainerÕ©Æ­Áè¼Ý13ÍòÃûÊܺ¦Õß»ñµÃ8700ÍòÃÀÔª


1ÔÂ16ÈÕ £¬£¬£¬ÏÖÒÑÇýÖðµÄInferno Drainer±³ºóµÄÔËÓªÕßÔÚ 2022 ÄêÖÁ 2023 ÄêµÄÒ»Äêʱ¼äÄÚ½¨ÉèÁËÁè¼Ý 16,000 ¸öÆæÒìµÄ¶ñÒâÓòÃû¡£¡£ ¡£¡£¸Ã¶ñÒâÈí¼þÊÇһϵÁиüÆÕ±éµÄÀàËÆ²úÆ·µÄÒ»²¿·Ö £¬£¬£¬ÕâЩ²úÆ·ÒÔsaasģʽÌṩӦ¿Í»§ £¬£¬£¬ÒÔ»»È¡ 20% µÄÊÕÈë·Ö³É¡£¡£ ¡£¡£Inferno Drainer µÄ¿Í»§¿ÉÒÔ½«¶ñÒâÈí¼þÉÏ´«µ½×Ô¼ºµÄ´¹ÂÚÍøÕ¾ £¬£¬£¬»òÕßʹÓÿª·¢ÕßµÄЧÀÍÀ´½¨ÉèºÍÍйܴ¹ÂÚÍøÕ¾ £¬£¬£¬ÎÞÐèÌØÊâÓÃ¶È £¬£¬£¬ÔÚijЩÇéÐÎÏÂÒ²¿ÉÒÔÊÕÈ¡±»µÁ×ʲúµÄ 30%¡£¡£ ¡£¡£¡°Inferno Drainer ´¹ÂÚÍøÕ¾µÄÁíÒ»¸öµä·¶ÌØÕ÷ÊÇÓû§ÎÞ·¨Í¨¹ýʹÓÿì½Ý¼ü»òÓÒ¼üµ¥»÷Êó±êÀ´·­¿ªÍøÕ¾Ô´´úÂë¡£¡£ ¡£¡£³ý´ËÖ®Íâ £¬£¬£¬Group-IB ÌåÏÖ £¬£¬£¬Inferno Drainer µÄÀֳɿÉÄÜ»áÍÆ¶¯Ð Drainer µÄ¿ª·¢ £¬£¬£¬²¢µ¼Ö°üÀ¨ÓÕÆ­ Web3 ЭÒéµÄ¶ñÒâ¾ç±¾µÄÍøÕ¾¼¤Ôö £¬£¬£¬²¢Ö¸³ö 2024 Äê¿ÉÄܳÉΪ¡°Drainer Äꡱ¡£¡£ ¡£¡£