GithubºÍ¾©¶«µÈÍøÕ¾Ôâµ½ÖÐÐÄÈ˹¥»÷£¬¶à¸öÊ¡ÊÐÇøÊÜÓ°Ï죻AMD²¿·ÖGPU²âÊÔÔ´Âë±»µÁ£¬ºÚ¿ÍÀÕË÷1ÒÚÃÀÔª

Ðû²¼Ê±¼ä 2020-03-27

1.GithubºÍ¾©¶«µÈÍøÕ¾Ôâµ½ÖÐÐÄÈ˹¥»÷£¬¶à¸öÊ¡ÊÐÇøÊÜÓ°Ïì


×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


3ÔÂ26ÈÕÓй¥»÷ÕßÕë¶ÔGithubºÍ¾©¶«µÈÍøÕ¾Ìᳫ´ó¹æÄ£ÖÐÐÄÈ˹¥»÷£¬ÏÖÔÚÊÜÓ°ÏìµÄÖ÷ÒªÊDz¿·ÖµØÇøÓû§£¬µ«Éæ¼°ËùÓÐÔËÓªÉÌ£¬ÀýÈçÖйúÒÆ¶¯¡¢ÖйúÁªÍ¨¡¢ÖйúµçÐÅÒÔ¼°½ÌÓýÍø¾ù¿É¸´ÏÖÐ®ÖÆÎÊÌ⣬¶øÍâÑóÍøÂç»á¼ûÕâЩվµã²¢Î´·ºÆðÒì³£ÇéÐΡ£´ÓÏÖÔÚÍøÉÏÅÌÎʵÄÐÅÏ¢¿ÉÒÔ¿´µ½´Ë´Î¹¥»÷Éæ¼°×î¹ãµÄÊÇGitHub.io£¬Æä´ÎÓû§»á¼û¾©¶«µÈº£ÄÚ×ÅÃûÍøÕ¾Òà»á±¨´í¡£Éó²éÖ¤ÊéÐÅÏ¢¿ÉÒÔ·¢Ã÷ÕâÐ©ÍøÕ¾µÄÖ¤Êé±»¹¥»÷ÕßʹÓõÄ×ÔÊðÃûÖ¤ÊéÈ¡´ú£¬µ¼ÖÂä¯ÀÀÆ÷ÎÞ·¨ÐÅÍдӶø×èÖ¹Óû§»á¼û¡£ÏÖÔÚÈ«Íø¾ø´ó´ó¶¼ÍøÕ¾¶¼ÒѾ­¿ªÆô¼ÓÃÜÊÖÒÕ¶Ô¿¹Ð®ÖÆ£¬Òò´ËÓû§»á¼û»á±»×èÖ¹¶ø²»»á±»Ö¸µ¼µ½´¹ÂÚÍøÕ¾ÉÏÈ¥¡£´Ë´Î¹¥»÷ËÆºõÊÇͨ¹ýÖ÷¸ÉÍøÂçÐ®ÖÆ443¶Ë¿Ú£¬ÏÖÔÚ¾­²âÊÔDNSϵͳÆÊÎöÊÇÍêÈ«Õý³£µÄ¡£


Ô­ÎÄÁ´½Ó£º

https://www.landiannews.com/archives/71707.html


2.°µÍøÍйܷþÎñÉÌDHÔâºÚ¿Í¹¥»÷£¬½ü7600¸öÍøÕ¾å´»ú


×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


°µÍø×î´óµÄÃâ·ÑÍйܷþÎñÉÌDaniel's Hosting£¨DH£©ÔÚ16¸öÔÂÄÚµÚ¶þ´ÎÔâµ½ºÚ¿Í¹¥»÷£¬¿ìÒª7600¸öÍøÕ¾å´»ú¡£¸Ã·þÎñ±³ºóµÄµÂ¹ú¿ª·¢ÕßDaniel WinzenÌåÏÖ£¬¹¥»÷ÊÂÎñ±¬·¢ÔÚ3ÔÂ10ÈÕÆÆÏþ3µã×óÓÒ£¬ºÚ¿ÍÈëÇÖÁËDHºó¶Ë²¢É¾³ýÁËËùÓÐÓëÍйÜÏà¹ØµÄÊý¾Ý¿â£¬²¢É¾³ýÁËWinzenµÄÊý¾Ý¿âÕË»§ºÍ½¨ÉèÁËÒ»¸öÐÂÕË»§¡£WinzenÌåÏÖDH·þÎñÔÚÉè¼ÆÉϲ¢Î´±£´æ±¸·Ý£¬²¢ÇÒËûÉÐδ·¢Ã÷ºÚ¿ÍÔõÑùÈëÇÖDHºó¶Ë£¬Óû§Ó¦½«ÆäDHÕÊ»§µÄÃÜÂëÊÓΪ¡°Ð¹Â¶¡±£¬ÈôÊÇÆäËûÕÊ»§Ê¹ÓÃÏàͬµÄÃÜÂ룬ÔòÓ¦¾ÙÐиü¸Ä¡£DHÔøÓÚ2018Äê11Ô±»ºÚ¿ÍÈëÇÖ£¬ÆäʱºÚ¿ÍͬÑùÆÆËðÁ˺ó¶ËÊý¾Ý¿â²¢É¾³ýÁËËùÓÐÍøÕ¾£¬ÆäʱÊÜÓ°ÏìµÄÍøÕ¾Îª6500¶à¸ö¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/dark-web-hosting-provider-hacked-again-7600-sites-down/


3.ºÚ¿ÍʹÓÃÐéαChrome¸üзַ¢ºóÃż°¼üÅ̼ͼľÂí


×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


ºÚ¿ÍÕýÔÚʹÓñ»ÈëÇֵĹ«Ë¾ÃÅ»§ÍøÕ¾ºÍÐÂÎŲ©¿Í£¨»ùÓÚWordPress CMS£©À´Èö²¥ºóÃÅ£¬²¢ÊͷżüÅ̼ͼľÂí¡¢ÐÅÏ¢ÇÔȡľÂíÆ·¼¶¶þ½×¶Îpayload¡£Æ¾Ö¤Doctor WebÑо¿Ö°Ô±µÄÆÊÎö£¬¹¥»÷ÕßʹÓÃαװ³ÉChrome¸üеÄCritical_Update.exeºÍUpdate.exe·Ö·¢ºóÃÅ£¬ÆäÏÂÔØÁ¿ÒÑÁè¼Ý2290´Î¡£ÔÚ»ñµÃÊÜÑ¬È¾ÍøÕ¾µÄÖÎÀíÔ±»á¼ûȨÏ޺󣬺ڿÍ×¢Èë¶ñÒâJavaScript´úÂ룬½«»á¼ûÕßÖØ¶¨Ïòµ½´¹ÂÚÍøÕ¾¡£ÕâÒ»¹¥»÷±³ºóµÄ×éÖ¯Ôø¼ÓÈëÈëÇÖ¹ÙÍø·Ö·¢ÐéαVSDCÊÓÆµ±à¼­Æ÷¼°Ê¹ÓÃÐéαNordVPNÍøÕ¾·Ö·¢BolikÒøÐÐľÂíµÄ¹¥»÷Ô˶¯£¬ÆäÄ¿µÄ°üÀ¨ÃÀ¹ú¡¢¼ÓÄô󡢰ĴóÀûÑÇ¡¢Ó¢¹ú¡¢ÒÔÉ«ÁкÍÍÁ¶úÆä¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/malware-disguised-as-google-updates-pushed-via-hacked-news-sites/


4.AppleÐû²¼¶à¿î²úÆ·µÄÇå¾²¸üУ¬ÐÞ¸´68¸öÎó²î


×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


AppleÔÚÆäiOSºÍmacOS¡¢Safariä¯ÀÀÆ÷¡¢watchOS¡¢tvOSºÍiTunesÉÏÐû²¼ÁË´ó×Ú²¹¶¡£¬ÆäÖÐiOSÖÐÐÞ¸´ÁË30¸öÎó²î£¬SafariÖÐÐÞ¸´ÁË11¸öÎó²î£¬macOSÖÐÐÞ¸´ÁË27¸öÎó²î¡£ÕâЩÎó²îÖÐ×îÑÏÖØµÄÎó²îÊÇWebKitÖеÄÀàÐÍ»ìÏýÎó²î£¨CVE-2020-3897£©£¬¸ÃÎó²î±£´æÓÚ¹¤¾ßת»»»º´æÖУ¬¹¥»÷Õß¿ÉÒÔʹÓôËÎó²îÔÚÄ¿½ñÀú³ÌµÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£Apple»¹Åû¶ÁËÁ½¸öÓ°ÏìiOSºÍmacOSµÄÄÚºËÎó²î¡£µÚÒ»¸öÊÇÄÚ´æ³õʼ»¯ÎÊÌ⣨CVE-2020-3914£©£¬¸ÃÎÊÌâ¿ÉÄÜÔÊÐíÓ¦ÓóÌÐò¶ÁÈ¡ÊÜÏÞµÄÄÚ´æ¡£µÚ¶þ¸öÊÇÄÚºËÖеÄÄÚ´æËð»µÎÊÌ⣨CVE-2020-9785£©£¬Ëü¿ÉÄÜÔÊÐí¶ñÒâÓ¦ÓóÌÐòÒÔÄÚºËÌØÈ¨Ö´ÐÐí§Òâ´úÂë¡£½¨ÒéÓû§¸üе½iOS 13.4¡¢Safari 13.1ºÍmacOS Catalina 10.15.3¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/apple-update-fixes-webkit-flaws-in-ios-safari/154155/


5.Ñо¿ÍŶÓÐû²¼Õë¶ÔICSµÄKwampirs RATµÄÆÊÎö±¨¸æ


×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


ReversingLabsÆÊÎöÁËKwampirs RATµÄ¹¥»÷IOC£¬ÒÔ×ÊÖú¹«Ë¾±£»¤Æä×éÖ¯ÃâÊܸöñÒâÈí¼þµÄ¹¥»÷¡£FBI×î½üÖÒÑԳƣ¬³ýÁËÕë¶ÔÈí¼þ¹©Ó¦Á´¹«Ë¾Í⣬Kwampirs¹¥»÷ÕßÏÖÔÚÒѾ­ÑÝÄð³ÉÕë¶ÔICSÆóÒµ£¬ÓÈÆäÊÇÄÜÔ´ÐÐÒµ¡£Ñо¿Ö°Ô±·¢Ã÷ÿ¸öKwampirsÑù±¾¶¼´øÓÐ200¸öC2 URLµÄÓ²±àÂëÁÐ±í£¨ÒÔÓòÃû»òIPµØµãµÄÐÎʽ£©£¬KwampirsʵÑ鰴˳Ðò»á¼ûÕâЩURL²¢Ê¹ÓõÚÒ»¸öÔ˶¯µÄULR×÷ΪC2·þÎñÆ÷¡£ReversingLabs¹²È·¶¨ÁË1586¸öURL¡£Ñù±¾µÄ±êÍ·ÏÔʾËùÓÐÑù±¾¶¼ÊÇʹÓÃVisual Studio 2010±àÒëµÄ¡£Ê±¼ä´ÁÓëËüÃǵķºÆðʱ¼äûÓйØÁª£¬Õâ¿ÉÄÜÒâζ×ÅÑù±¾ÊÇÔÚ¾ÓÐÄ´øÓв»×¼È·Ê±¼ä´ÁµÄÐéÄâ»úÖбàÒëµÄ¡£ReversingLabs½¨ÉèÁËIOCÁбí£¬¹«Ë¾¿ÉÒÔʹÓÃÕâЩIOC½¨ÉèеķÀ»ðǽºÍÈëÇÖ¼ì²â¹æÔò£¬²¢ÔÚSIEMÈÕÖ¾ÖÐËÑË÷ÊÇ·ñÔ⵽ѬȾ¡£


Ô­ÎÄÁ´½Ó£º

https://www.techrepublic.com/article/boost-security-defenses-against-kwampirs-rat-malware-with-new-list-of-iocs/


6.AMD²¿·ÖGPU²âÊÔÔ´Âë±»µÁ£¬ºÚ¿ÍÀÕË÷1ÒÚÃÀÔª


×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!


AMD¹Ù·½Ðû²¼Ò»·Ý¼ò¶ÌµÄÉùÃ÷£¬ÌåÏÖÓÐÈËÔÚ2019Äê12ÔÂÁªÏµËüÃÇ£¬Éù³ÆÓµÓÐÓëAMDÄ¿½ñºÍδÀ´²¿·ÖGPU²úÆ·µÄ²âÊÔÎļþ¡£ÔÚ×î½üÕâЩÎļþ±»ÉÏ´«µ½ÁËGitHubÖ®ÉÏ£¬¾Ý³ÆÎļþÖаüÀ¨NaviºÍArden GPUµÄ²¿·ÖÔ´Â룬ºóÕßÊÇXbox Series XÉÏGPUµÄ´úºÅ£¬¶øÇ°Õß°üÀ¨ÉÐδÐû²¼µÄNavi 20ϵÁкÍÒѾ­Ðû²¼µÄNavi 10µÄ²¿·ÖÓ²¼þÔ´´úÂë¡£AMDÏòGitHub·¢³öÁËDMCAÇëÇ󣬸ÃRepoËæºó±»³·Ï¡£¸ÃºÚ¿Í£¨×Ô³ÆÎªÅ®ÐÔ£©Éù³ÆÔÚÈ¥Äê11Ô·ݴӱ»ºÚµÄÅÌËã»úÖз¢Ã÷ÁËAMD Navi GPUµÄÓ²¼þÔ´Â룬¸ÃÅÌËã»úÓû§Ò²Ã»ÓжԴúÂë×ß©½ÓÄÉÈκÎÓÐÓò½·¥¡£ËýͬʱҲȷÈÏ£¬ÕâЩÎļþÖаüÀ¨Navi 10¡¢Navi 21ºÍArdenµÄÔ´Âë¡£Ëý²¢Ã»ÓоÍ×ß©ÎÊÌâºÍAMDÁªÏµ¡£²»¹ýAMDÔÚÉùÃ÷ÖгÆÕâЩÎļþûÓд¥¼°µ½GPU²úÆ·µÄ½¹µã¡£


Ô­ÎÄÁ´½Ó£º

https://torrentfreak.com/amd-uses-dmca-to-mitigate-massive-gpu-source-code-leak-200325/