Î÷°àÑÀÇå¾²³§ÉÌProsegurÔâµ½ÀÕË÷Èí¼þRyuk¹¥»÷£»¿¨°Í˹»ùÐÞ¸´Web Protection¹¦Ð§ÖеĶà¸öÎó²î
Ðû²¼Ê±¼ä 2019-11-29
Î÷°àÑÀÇå¾²³§ÉÌProsegurÔÚÒ»·ÝÉùÃ÷ÖÐÐû²¼ÔâÀÕË÷Èí¼þ¹¥»÷£¬Õû¸ö¹«Ë¾µÄÍøÂç¶¼Òѹرա£Ö»¹ÜûÓлñµÃ¹Ù·½È·ÈÏ£¬µ«BleepingComputerÏàʶµ½¸Ã¹¥»÷Ó°ÏìÁËProsegurÔÚÅ·ÖÞµÄËùÓÐËùÔÚ¡£ÔÚTwitterÉϵĸüÐÂÖУ¬ProsegurÈ·Èϵ¼ÖÂÆä·þÎñÖÐÖ¹µÄ¶ñÒâÈí¼þÊÇRyuk£¬²¢½«ÊÂÎñ±ê¼ÇΪ¡°Ò»Ñùƽ³£ÐÔ¹¥»÷¡±¡£¸Ã¹«Ë¾ÌåÏÖÒѽÓÄÉ×îºéÁ÷ƽµÄÇå¾²²½·¥×èÖ¹¸Ã¶ñÒâÈí¼þÔÚÆäÄÚ²¿¼°¿Í»§¶ËÍøÂçÖÐÈö²¥¡£×÷ΪԤ·À²½·¥£¬¸Ã¹«Ë¾½«¼ÌÐøÏÞÖÆÍ¨Ñ¶£¬Ö±µ½È·ÈÏÆäϵͳÒÑÇå½à£¬²¢ÕýÔÚÆð¾¢ÒÔ×î¿ìµÄËÙÂʻָ´ÊÜÓ°ÏìµÄ·þÎñ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ryuk-ransomware-forces-prosegur-security-firm-to-shut-down-network/2¡¢GPHealthÒ½ÁÆÖÐÐÄ»¼ÕßÊý¾Ý±»ÀÕË÷Èí¼þ¼ÓÃÜ
Great Plains HealthÒ½ÁÆÖÐÐÄÔÚ±¾ÖܳõÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬Ô±¹¤±»ÆÈʹÓÃÖ½ºÍ±Ê¾ÙÐа칫¡£¸ÃÊÂÎñ±¬·¢ÔÚÖÜÒ»ÍíÉÏ7µã×óÓÒ£¬ÖܶþGPHealthÐû²¼×÷·Ï´ó×ڷǽôÆÈ»¼ÕßµÄÔ¤Ô¼ºÍÁ÷³Ì£¬µ«²»Ó°ÏìÊÖÊõºÍÒ½ÁÆÓ°ÏñÅÄÉã¡£GPHealthÊ×ϯִÐйÙMel McNeaÌåÏÖûÓÐÀíÓÉÏÓÒÉ»¼ÕßÊý¾ÝÔâµ½»á¼û£¬µ«¸Ã¹«Ë¾½«¾ÙÐÐÖÜÈ«µÄÉó²é¡£¸Ã¹«Ë¾»¹ÌåÏÖÕýÔÚÓëÖ´·¨²¿·ÖÏàÖú¾ÙÐÐÊӲ졣ÏÖÔÚÉв»ÇåÎú¹¥»÷ÖÐʹÓõÄÀÕË÷Èí¼þÀàÐÍÒÔ¼°¸Ã¹«Ë¾ÊÇ·ñÖ§¸¶ÁËÊê½ð¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ransomware-locks-medical-records-at-great-plains-health/3¡¢Á¬Ëø²ÍÌüOn The Border¿Í»§Ö§¸¶ÐÅÏ¢±»µÁ
Á¬Ëø²ÍÌüOn The Border֪ͨ¿Í»§ÆäÖ§¸¶ÐÅÏ¢¿ÉÄÜÒѱ»ºÚ¿ÍÇÔÈ¡¡£¸Ã¹«Ë¾ÓÚ11ÔÂ14ÈÕ·¢Ã÷ÁË´ËÊÂÎñ£¬¹«Ë¾ÊÓ²ìÒÔΪÓÐ27¸öÖݵIJÍÌüÊܵ½Ó°Ïì¡£ÏÖÔÚµÄÖ¤¾ÝÅú×¢ÕâЩ²ÍÌüÔÚ2019Äê4ÔÂ10ÈÕÖÁ2019Äê8ÔÂ10ÈÕÖ®¼äѬȾÁ˶ñÒâÈí¼þ£¬¿ÉÄܱ»ÇԵĿͻ§ÐÅÏ¢°üÀ¨ÐÕÃû¡¢ÐÅÓÿ¨ºÅ¡¢ÓÐÓÃÆÚ¡¢ÑéÖ¤ÂëµÈ£¬µ«²»°üÀ¨³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¼°Éí·ÝID¡£ÓµÓÐOn The BorderµÄ˽ÈËͶ×ʹ«Ë¾Argonne Capital GroupÒ²ÓµÓпì²ÍÁ¬ËøµêKrystal£¬¸ÃÁ¬Ëøµê½üÆÚÒ²Ôâµ½Ö§¸¶ÐÅϢ͵ÇÔÊÂÎñ£¬ÏÖÔÚ»¹²»ÇåÎúÕâÁ½ÆðÊÂÎñÖ®¼äÊÇ·ñ±£´æ¹ØÁª¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/malware-found-payment-system-used-border-restaurants4¡¢¿¨°Í˹»ùÐÞ¸´Web Protection¹¦Ð§ÖеĶà¸öÎó²î
¿¨°Í˹»ùÐÞ¸´ÁËһЩÎó²î£¬ÕâЩÎó²îÓ°ÏìÁËÆäɱ¶¾Èí¼þ¡¢InternetÇå¾²¡¢Çå¾²ÔÆµÈ²úÆ·ÖеÄWeb Protection¹¦Ð§¡£Æ¾Ö¤Ñо¿Ö°Ô±Wladimir PalantµÄÐÎò£¬¿¨°Í˹»ùWeb Protection¹¦Ð§ÐèÒªÓëÖ÷Ó¦ÓóÌÐò¾ÙÐÐͨѶ£¬²¢ÇÒʹÓÃÒ»¸öWebÓò²»ÖªµÀµÄÃÜÔ¿À´È·±£Ç徲ͨѶ¡£È»¶øÓÉÓÚ±£´æÎó²î£¬ÍøÕ¾¿ÉÒÔºÜÈÝÒ׵ػñÈ¡´ËÃÜÔ¿£¬²¢ÏñWeb ProtectionÒ»ÑùÓëKasperskyÓ¦ÓóÌÐò½¨ÉèÅþÁ¬ºÍ·¢ËÍÏÂÁî¡£ÈôÊÇûÓÐ×°Öÿ¨°Í˹»ùµÄä¯ÀÀÆ÷²å¼þ£¬¿¨°Í˹»ù½«Ö±½Ó½«Æä¾ç±¾×¢Èëµ½ÍøÒ³ÖС£¸ÃÎó²î£¨CVE-2019-15685£©¿ÉÓÃÓÚ¾²Ä¬½ûÓÃ¹ã¸æ×èµ²ºÍ¸ú×Ù±£»¤¹¦Ð§¡£ÔÚ7Ô·ݿ¨°Í˹»ùÐÞ¸´´ËÎó²îºó£¬Ñо¿Ö°Ô±·¢Ã÷ÓÖÒýÈëÁËеÄÎÊÌ⣬°üÀ¨¿Éµ¼ÖÂɱ¶¾Èí¼þÍß½âµÄÎó²î£¨CVE-2019-15686£©ÒÔ¼°ÐÅϢй¶µÄÎó²î£¨CVE-2019-15687£©¡£¿¨°Í˹»ùÔÚ11ÔÂ28ÈÕÐû²¼ÁËеÄÐÞ¸´²¹¶¡¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/kaspersky-patches-several-vulnerabilities-web-protection-features
5¡¢·¸·¨ÍÅ»ïRevengeHotelsÖ÷ÒªÕë¶ÔÈ«ÇòÂùÝ
¿¨°Í˹»ùÐû²¼¹ØÓÚ·¸·¨ÍÅ»ïRevengeHotelsµÄÕë¶ÔÐÔ¶ñÒâÔ˶¯µÄÆÊÎö±¨¸æ¡£¸ÃÍÅ»ïÖ÷ÒªÕë¶ÔÂùݡ¢ÂÃÉá¡¢±ö¹ÝºÍÂÃÓι«Ë¾£¬¿¨°Í˹»ùÒÑÈ·ÈÏÁè¼Ý20¼ÒÂùݳÉΪÊܺ¦Õߣ¬ÕâЩÂùݻ®·ÖλÓÚ°ÍÎ÷µÄ8¸öÖݺͰ¢¸ùÍ¢¡¢²£ÀûάÑÇ¡¢ÖÇÀûµÈ¹ú¼Ò¡£¸Ã·¸·¨ÍÅ»ïÖ¼ÔÚÇÔÈ¡´æ´¢ÔÚÂùÝϵͳÖÐÒÔ¼°´ÓBooking.comµÈÔÚÏßÂÃÐÐÉçÇÔÈ¡µÄ¿Í»§ÐÅÓÿ¨Êý¾Ý¡£¸ÃÍÅ»ï×Ô2015ÄêÒÔÀ´Ò»Ö±»îÔ¾£¬µ«ÆäÔ˶¯ÔÚ2019ÄêµÖ´ïáÛ·å¡£Ö÷ÒªµÄ¹¥»÷ǰÑÔÊÇͨ¹ýµç×ÓÓʼþ·¢Ë͵ĶñÒâWord¡¢Excel»òPDFÎĵµ£¬ËüÃǰüÀ¨RevengeRAT¡¢NjRAT¡¢NanoCoreRAT¡¢888 RATµÈ¶ñÒâÈí¼þ¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/revengehotels/95229/
6¡¢ºÉÀ¼NCSCÖÒÑÔ3ÖÖÀÕË÷Èí¼þÒÑѬȾȫÇò1800¼ÒÆóÒµ
ºÉÀ¼¹ú¼ÒÍøÂçÇå¾²ÖÐÐÄ£¨NCSC£©µÄÉñÃØ±¨¸æÏÔʾ£¬È«ÇòÖÁÉÙÓÐ1800¼Ò¹«Ë¾Êܵ½3ÖÖÀÕË÷Èí¼þµÄÓ°Ïì¡£ÕâÈýÖÖÀÕË÷Èí¼þ»®·ÖÊÇLockerGoga¡¢MegaCortexºÍRyuk£¬ËüÃDz¿·ÖÒÀÀµÓÚÏàͬµÄ»ù´¡ÉèÊ©£¬ÕâÅú×¢ËüÃÇ»ñÈ¡ÆóÒµÍøÂç»á¼ûȨÏ޵ķ½·¨¿ÉÄÜÓëÒ»¸ö¼òµ¥ÈëÇÖÕßÓйء£NCSCûÓÐÔÚ±¨¸æÖÐÌṩÊÜÓ°Ï칫˾µÄÃû³Æ£¬µ«ÌåÏÖ¹¥»÷ÕßµÄÄ¿µÄÊÇÊÕÈëȪԴ´ïÊý°ÙÍò»òÊýÊ®ÒÚÃÀÔªµÄ´óÐÍÆóÒµ¡£Êܺ¦ÕßÀ´×ÔÆû³µ¡¢ÐÞ½¨¡¢»¯Ñ§¡¢Ò½ÁÆ¡¢Ê³ÎïºÍÓéÀֵȸ÷¸öÁìÓò£¬ÖÁÉÙÓÐÒ»¸öÒªº¦»ù´¡ÉèÊ©ÁìÓòµÄÆóÒµÔâµ½¹¥»÷¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/dutch-govt-warns-of-3-ransomware-infecting-1-800-businesses/


¾©¹«Íø°²±¸11010802024551ºÅ