΢ÈíÐû²¼µÄ3Ô·ݲ¹¶¡¿Éµ¼ÖÂWin10ÔÚ´òӡʱÀ¶ÆÁ£»Å²ÍþÒé»áµÄExchangeÔâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶
Ðû²¼Ê±¼ä 2021-03-121.΢ÈíÐû²¼µÄ3Ô·ݲ¹¶¡¿Éµ¼ÖÂWin10ÔÚ´òӡʱÀ¶ÆÁ

΢ÈíÐû²¼ÁËKB5000802ºÍKB5000808ÀÛ»ý¸üУ¬µ¼ÖÂWin10ϵͳÔÚ´òӡʱÀ¶ÆÁ¡£ÔÚ×°ÖÃ3Ô·ÝÇå¾²¸üк󣬶à¸öÓû§·´Ó¦ËûÃÇÔÚʹÓÃÍøÂç´òÓ¡»úʱ»á·ºÆðÀ¶ÆÁËÀ»úÕ÷Ï󣬲¢ÏÔʾ¡° APC_INDEX_MISMATCH for win32kfull.sys¡±¹ýʧ´úÂë¡£ÏÖÔÚÒÑÖªÊÜÓ°ÏìµÄ´òÓ¡»úÆ·ÅÆ°üÀ¨Kyocera¡¢RicohºÍDymo£¬Éý¼¶´òÓ¡»úÇý¶¯³ÌÐò²¢²»¿É½â¾ö´ËÎÊÌ⣬ÊÜÓ°ÏìÓû§Ö»ÄÜÐ¶ÔØKB5000802ºÍKB5000808¸üС£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/microsoft/windows-10-crashes-when-printing-due-to-microsoft-march-updates/
2.ŲÍþÒé»áµÄExchangeÔâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶

ŲÍþÒé»á£¨Storting£©µÄExchange·þÎñÆ÷Ôâµ½0day¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶¡£StortingÔÚÈ¥Äê12ÔÂÔâÊÜÍøÂç¹¥»÷ºó²»¾Ã£¬ÓÖÓÚ3ÔÂ10ÈÕÐû²¼ÆäÔâµ½ÁËÓëMicrosoft ExchangeÎó²îÏà¹ØµÄ¹¥»÷¡£¸Ã»ú¹¹³ÆÉÐδÍêÈ«Ïàʶ¹¥»÷µÄ¹æÄ££¬µ«ÒÑÈ·ÈϺڿÍÒÑÇÔÈ¡²¿·ÖÊý¾Ý¡£ÆäÒѾΪϵͳ½ÓÄÉÁ˶àÖÖ²½·¥£¬ÏÖÔÚÆÊÎöÊÂÇéÈÔÔÚ¾ÙÐÐÖС£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/norway-parliament-data-stolen-in-microsoft-exchange-attack/
3.ÒûÁϹ«Ë¾Molson CoorsÔâµ½¹¥»÷£¬ÏµÍ³ÔÝʱÖÐÖ¹

ÃÀ¹úÒûÁϹ«Ë¾Molson CoorsÓÚ3ÔÂ11ÈÕÔâµ½¹¥»÷£¬ÏµÍ³ÔÝʱÖÐÖ¹¡£Molson CoorsÒÔÆä±ê¼ÇÐÔÆ¡¾ÆÆ·ÅƶøÖøÃû£¬°üÀ¨Coors Light¡¢Miller LiteºÍMolson CanadianµÈ¡£´Ë´Î¹¥»÷µ¼Ö¸ù«Ë¾µÄϵͳÖÐÖ¹£¬Ê¹µÃ¹«Ë¾µÄ²¿·ÖÓªÒµÑÓ³Ù»òÖÐÖ¹£¬°üÀ¨ÆäÆ¡¾Æ³§µÄÔËÓª¡¢Éú²úºÍÔËÊä¡£¶à¸öÐÂÎÅȪԴ³Æ´Ë´Î¹¥»÷±¬·¢ÔÚÖܶþÇåÔ磬ΪÀÕË÷Èí¼þËùµ¼Ö£¬¸Ã¹«Ë¾Îª±ÜÃâ¶ñÒâÈí¼þ½øÒ»²½Èö²¥¶ø¹Ø±ÕÁËϵͳ¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/cyberattack-forces-brewery-shutdown-molson-coors
4.ºÚ¿Í³ÆÒÑÈëÇÖVerkada²¢ÇÔÈ¡15Íò¸öÉãÏñÍ·µÄÊý¾Ý

ºÚ¿Í³ÆÒÑÈëÇÖVerkada²¢ÇÔÈ¡ÁË15Íò¸öÉãÏñÍ·µÄʵʱ¼Ïñ¡£VerkadaÊÇÒ»¼ÒλÓÚ¹è¹ÈµÄÇå¾²Ê×´´¹«Ë¾£¬Îª¾¯Ô±¾Ö¡¢¹«Ë¾¡¢Ñ§Ð£ºÍÀÎÓüµÈ×éÖ¯Ìṩ»ùÓÚÔÆµÄÇå¾²ÉãÏñÍ··þÎñ¡£±ðµÄ£¬ºÚ¿Í»¹ÇÔÈ¡ÁËÌØË¹ÀµÄ¹¤³§ºÍ¿ÍÕ»¡¢EquinoxÌåÓý¹ÝÒÔ¼°Cloudflare°ì¹«Êҵȹ«Ë¾µÄ¼Ïñ¡£Ñо¿Ö°Ô±³ÆºÚ¿Í¶ÔVerkadaµÄÓ²¼þ¾ÙÐÐÁËÄæÏò¹¤³Ì£¬²¢·¢Ã÷Á˳¬µÈÖÎÀíÔ±ÕÊ»§µÄÓ²±àÂëÆ¾Ö¤¡£VerkadaÏÖÒÑÈϿɴ˴ι¥»÷£¬²¢ÌåÏÖÒѽûÓÃËùÓÐÄÚ²¿ÖÎÀíÔ±ÕÊ»§¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/115466/hacking/surveillance-cameras-hacked.html
5.Urban ResearchÔâµ½¹¥»÷£¬Ð¹Â¶31ÍòÓû§µÄÐÅÏ¢

ÈÕ±¾´ò°ç¹«Ë¾URBAN RESEARCHµÄ¹ÙÍøÔâµ½¹¥»÷£¬Ð¹Â¶ÁË317326ÍòÓû§µÄÐÅÏ¢¡£¹¥»÷±¬·¢ÔÚ3ÔÂ7ÈÕÍíÖÁ3ÔÂ8ÈÕÏÂÖ磬ºÚ¿Í»á¼ûÁ˸ù«Ë¾µÄ¹Ù·½ÔÚÏßÉ̳ǡ£¸Ã¹«Ë¾ÔÚ·¢Ã÷ºóÁ¬Ã¦½ÓÄÉÁËÏìÓ¦²½·¥£¬¿ÉÊǺڿͿÉÄÜÒѾÇÔÈ¡ÁËÓû§ÐÅÏ¢£¬°üÀ¨µØµã¡¢ÐÕÃû¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØµã¡¢³öÉúÈÕÆÚ¡¢ÐԱ𡢻áÔ±IDºÍ»áÔ±½×¶ÎµÈ£¬²»°üÀ¨ÈκβÆÎñÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://news.yahoo.co.jp/articles/f5a72addb68c5a8113dbbd0eb8ee2f2025785203
6.FIN8ÍÅ»ïЯBADHATCH»Ø¹é£¬Ê¹ÓÃTLS¼ÓÃÜÈÆ¹ý¼ì²â

FIN8ÍÅ»ïЯÉý¼¶µÄBADHATCH¶ñÒâÈí¼þ»Ø¹é£¬Ê¹ÓÃTLS¼ÓÃÜÈÆ¹ý¼ì²â¡£FIN8ÓÚ2016ÄêÊ×´ÎÓÉFireEye·¢Ã÷£¬ÒÔʹÓÃÍøÂç´¹ÂںͶñÒ⹤¾ß¹¥»÷POSϵͳ¶øÖøÃû£¬Ö÷ÒªÕë¶ÔÁãÊÛ¡¢ÂùݺÍÓéÀÖÒµ¡£¸Ã×éÖ¯ÔÚʱ¸ôÒ»Äê°ëµÄÐÝÏ¢ºóÔٴλîÔ¾£¬²¢Ê¹ÓÃÁ˸üǿʢµÄºóÃÅ£¬Éý¼¶ºóµÄ¹¦Ð§°üÀ¨ÆÁÄ»²¶»ñ¡¢ÊðÀíËíµÀ´«Ê䡢ƾ֤͵ÇÔºÍÎÞÎļþÖ´ÐУ¬²¢ÊÔͼʹÓÃTLS¼ÓÃÜÒþ²ØPowershellÏÂÁîÀ´ÈƹýÇå¾²¼ì²â¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/03/fin8-hackers-return-with-more-powerful.html


¾©¹«Íø°²±¸11010802024551ºÅ