¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20181030

Ðû²¼Ê±¼ä 2018-10-30
1¡¢AvastÅû¶Õë¶ÔÓ¢ÐÛͬÃËÍæ¼ÒµÄÍøÂç´¹ÂÚÔ˶¯

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


AvastÑо¿ÍŶÓÔÚ2018ÄêÏÄÈÕÄ©ÊӲ쵽Õë¶ÔÓ¢ÐÛͬÃËÍæ¼ÒµÄÒ»¸öÐÂÍøÂç´¹ÂÚÔ˶¯ ¡£¹¥»÷ÕßÖ÷ÒªÕë¶ÔÎ÷Å·µØÇø£¬´ó´ó¶¼¹¥»÷±¬·¢ÔÚ·¨¹ú£¬Æä´ÎÊǵ¹úºÍÎ÷°àÑÀ ¡£¸Ã´¹ÂÚÍøÕ¾ÍйÜÔÚÃâ·ÑµÄÍйܷþÎñÉÌ000webhostÉÏ£¬ÒÔ½ÚÔ¼¿ªÖ§£¬²¢ÇÒ´¹ÂÚÍøÕ¾Í¨³£²»»áÕ¼ÓÃÌ«¶à´ÅÅ̿ռäºÍ±¬·¢½Ï¶àµÄÁ÷Á¿£¬Òò´Ë¹¥»÷ÕßÍùÍù»áÑ¡ÔñʹÓÃÃâ·ÑµÄÍйܷþÎñ ¡£¸Ã´¹ÂÚÒ³ÃæÖÆ×÷µÃÊ®·ÖϸÄ壬ͼÏñÖÊÁ¿Ò²Ã»ÓнµµÍ£¬²¢ÔÚÓû§µã»÷µÇ¼ʱ½«Æ¾Ö¤·¢ËÍÖÁ¹¥»÷Õß ¡£

   

Ô­ÎÄÁ´½Ó£º

https://blog.avast.com/league-of-legends-gamers-targeted-by-phishing-scam-avast


2¡¢Ñо¿Ö°Ô±·¢Ã÷EmotetʹÓÃDKIMÈÆ¹ýÓʼþ¹ýÂ˲½·¥

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


2018Äê7ÔÂUS-CERTÔøÐû²¼¹ØÓÚÒøÐÐľÂíEmotetµÄ¾¯±¨£¬²¢Ìá³öÁËÏìÓ¦µÄ·À»¤²½·¥½¨Ò飬ÆäÖÐÒ»ÏÒéÊÇʹÓûùÓÚÓòµÄÐÂÎÅÈÏÖ¤¡¢±¨¸æºÍÒ»ÖÂÐÔ£¨DMARC£©£¬¸Ã»úÖÆ¿ÉÒÔÅжϵç×ÓÓʼþÊÇ·ñÀ´×ÔÕæÊµµÄµØµã ¡£È»¶ø²»ÐÒµÄÊÇ£¬¹¥»÷ÕßËÆºõÒ²ÔĶÁÁËUS-CERTµÄ¾¯±¨£¬Emotetͨ¹ýÒ»ÖÖÓòÐ®ÖÆÊÖÒÕÀ´ÈƹýDMARC¿ØÖÆ»úÖÆ ¡£ÔÚTrickbot¨CEmotet¶ñÒâÔ˶¯ÖУ¬ÕâÊÇͨ¹ýн¨ÉèµÄ×ÓÓò_domainkeyʵÏÖµÄ ¡£
  Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/malware-distributors-adopt-dkim-to-bypass-mail-filters/


3¡¢ÃÀ¼ÓÖÝÔ¼2800ÃûŮͯ¾üµÄСÎÒ˽¼ÒÐÅÏ¢Ôâй¶

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


ÃÀ¹úÄϼÓÖݵİÂÀ¼ÖÎÏØÅ®Í¯¾ü×éÖ¯£¨GSOC£©Ôâµ½ºÚ¿Í¹¥»÷£¬¸Ã×éÖ¯µÄµç×ÓÓʼþÕË»§Ôâµ½µÚÈý·½Î´ÊÚȨ»á¼û£¬Ô¼2800ÃûŮͯ¾ü³ÉÔ±µÄСÎÒ˽¼ÒÐÅÏ¢¿ÉÄÜй¶ ¡£±»µÁµÄÐÅÏ¢°üÀ¨ÐÕÃû¡¢³öÉúÈÕÆÚ¡¢¼Òͥסַ¡¢°ü¹ÜºÅÂëºÍÒ½ÁÆÐÅÏ¢ ¡£ÕâЩÐÅÏ¢¿ÉÄܻᱻÓÃÓÚºóÐøµÄÉç½»¹¤³Ì¹¥»÷ºÍÉí·Ý͵ÇÔµÈ ¡£¸ÃÕË»§ÔÚ9ÔÂ30ÈÕÖÁ10ÔÂ1ÈÕÖ»±»Ð®ÖÆÁË1Ìì ¡£

  

Ô­ÎÄÁ´½Ó£º

https://abc30.com/4561129/


4¡¢Æ±Îñ¹«Ë¾PaylogicÔâºÚ¿ÍÈëÇÖ£¬Ô¼6.4ÍòÓû§µÄСÎÒ˽¼ÒÐÅÏ¢±»µÁ

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


ƱÎñ¹«Ë¾PaylogicÐû³ÆÆäƱÎñϵͳÔâºÚ¿ÍÈëÇÖ£¬¼ÓÈëTomorrowland 2014ÒôÀÖ½ÚµÄÔ¼6.4ÍòÃûµç×ÓÎèÇú·ÛË¿µÄСÎÒ˽¼ÒÐÅÏ¢±»µÁ ¡£TomorrowlandÊÇÔÚ±ÈÀûʱСÕòBoom¾ÙÐеĵç×ÓÒôÀÖ½Ú£¬ÊÇÌìÏÂÉÏ×î´óµÄÒôÀÖ½ÚÖ®Ò» ¡£Ð¹Â¶µÄÐÅÏ¢°üÀ¨Óû§µÄÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢ÐÔ±ð¡¢ÄêËêºÍÓÊÕþ±àÂëµÈ£¬µ«²»°üÀ¨Ö§¸¶ÐÅÏ¢¡¢ÃÜÂëºÍÓû§µØµã ¡£PaylogicÔÚÉùÃ÷Öв¢Ã»ÓÐ͸¶¹¥»÷µÄÏêϸϸ½Ú ¡£

  

Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/crooks-stole-data-of-64-000-tomorrowland-festival-goers-523493.shtml


5¡¢¼ÓÃÜÇ®±ÒÉúÒâËùMapleChangeÔâºÚ¿Í¹¥»÷£¬Ëðʧ913¸ö±ÈÌØ±Ò

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


¼ÓÃÜÇ®±ÒÉúÒâËùMapleChange³ÆÆäÔâµ½ºÚ¿Í¹¥»÷£¬¹²Ëðʧ913¸ö±ÈÌØ±Ò£¨¼ÛÖµÔ¼600ÍòÃÀÔª£© ¡£¸Ãƽ̨¾Ý³ÆÊǼÓÄôóµÄÒ»¸öСÐÍÉúÒâËù ¡£MapleChangeÔÚTwitterÉϳƾ­ÓÉÏêϸµÄÊӲ죬¸ÃÉúÒâËùÎÞÁ¦¶ÔÓû§¾ÙÐÐÅ⸶£¬½«²»µÃ²»¹Ø±Õ£¬°üÀ¨¹Ø±ÕÆäTwitterÕË»§ºÍÍøÕ¾ ¡£ÕâÒ»ÊÂÎñѸËÙÒý·¢Á˶àÈËÏÓÒÉ£¬ÒÔΪ¸ÃСÐÍÉúÒâËù¿ÉÄÜÖ»ÊÇÒ»¸öȦÌ×£¬¸ÃÊÂÎñ¿ÉÄÜ»áÒý·¢ºóÐøµÄÐÌÊÂÊÓ²ì ¡£

  

Ô­ÎÄÁ´½Ó£º

https://ethereumworldnews.com/maplechange-crypto-exchange-hacked-for-913-bitcoin-btc-exit-scam-likely/


6¡¢Ñо¿ÍŶÓÐû²¼¹ØÓÚÀ¬»øÓʼþµÄ¸½¼þÎļþÀàÐÍµÄÆÊÎö±¨¸æ

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


Ç÷ÊÆ¿Æ¼¼Ñо¿ÍŶÓÐû²¼¹ØÓÚÀ¬»øÓʼþµÄ¸½¼þÎļþÀàÐÍµÄÆÊÎö±¨¸æ£¬2017Äê×î³£¼ûµÄ¶ñÒ⸽¼þµÄÎļþÀàÐÍÊÇ.XLS¡¢.PDF¡¢.JS¡¢.VBS¡¢.DOCX¡¢.DOC¡¢.WSF¡¢.XLSX¡¢.EXEºÍ.HTML£¬µ«ÍøÂç·¸·¨·Ö×ÓÒѾ­À©´óÁËËûÃǵĹæÄ££¬ÐµĶñÒ⸽¼þÎļþÀàÐͰüÀ¨.ARJ¡¢.Z¡¢.IQY¡¢.PUBÒÔ¼°Windows 10ÖеÄÐÂÎļþÀàÐÍSettingContents-ms ¡£

  

Ô­ÎÄÁ´½Ó£º

https://blog.trendmicro.com/trendlabs-security-intelligence/same-old-yet-brand-new-new-file-types-emerge-in-malware-spam-attachments/


ÉùÃ÷£º±¾×ÊѶÓÉ×ðÁú¿­Ê±Î¬ËûÃüÇ徲С×é·­ÒëºÍÕûÀí