°Ä´óÀûÑǹ«Ë¾BlueScopeÔâµ½¹¥»÷µ¼Ö²¿ÃÅÒµÎñÖжÏ£»ÈÕ±¾¹«Ë¾NikkeiÔâµ½¹¥»÷ £¬³¬¹ý1.2ÍòÈËÐÅϢй¶

°ä²¼¹¦·ò 2020-05-19

1.°Ä´óÀûÑǹ«Ë¾BlueScopeÔâµ½¹¥»÷µ¼Ö²¿ÃÅÒµÎñÖжÏ


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


°Ä´óÀûÑǹ«Ë¾BlueScopeÓÚÉÏÖÜÎåÈ·¶¨ £¬ÆäÔâµ½ÁËÍøÂç¹¥»÷²¢ÇÒÒѾ­Ó°Ïìµ½ÁËËûÃǵÄITϵͳ £¬µ¼Ö¸ù«Ë¾²¿ÃÅÒµÎñÖжÏ¡£¸Ã¹«Ë¾°µÊ¾ £¬Õâ´ÎÊÂÎñÓ°ÏìÁËÆäÔÚ°Ä´óÀûÑǵÄÔì×÷ºÍÏúÊÛÒµÎñ £¬µ«Í¨¹ýһЩ±äͨ·¨×Ó £¬¸Ã¹«Ë¾µÄÆäËûÁ÷³ÌÈÔÄܹ»Õý³£ÔËÐС£¾Ý¹«Ë¾CFO Tania Archibald˵ £¬Õâ´Î¹¥»÷ÊÇÔڸù«Ë¾µÄÃÀ¹úÒµÎñÖз¢ÏÖµÄ £¬Ö®ºó¹«Ë¾Á¢¿Ì¶Ô´ËÊÂ×ö³öÁËÏìÓ¦´ëÊ©¡£Ä¿Ç° £¬¸Ã¹«Ë¾ÔÚÖÂÁ¦½¨¸´ÊÜÓ°Ïìϵͳ £¬ÒÔ¸´Ô­Õý³£·þÎñºÍÔËÓª £¬Éл¹Ã»ÓÐÕë¶ÔÕâ´Î¹¥»÷µÄ¾ßÌåÐÅÏ¢¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/bluescope-reports-cyber-incident-affecting-australian-operations/


2.ÈÕ±¾¹«Ë¾NikkeiÔâµ½¹¥»÷ £¬³¬¹ý1.2ÍòÈËÐÅϢй¶


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ÈÕ±¾µÄÈÕ¾­¼¯ÍÅ£¨Nikkei Inc.£©5ÔÂ12ÈÕ°ä·¢ £¬ÆäÔâµ½ÁËÍøÂç¹¥»÷ £¬µ¼Ö¼¯ÍÅ12514È˵ÄÓ×ÎÒÐÅϢй¶¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬¶­Ê»á³ÉÔ±¡¢ÕýʽºÍ¼æÈËÔ±¹¤ÒÔ¼°ÈÕ¾­×ܲ¿¼°ÆäijЩ¼¯ÍŹ«Ë¾ÆäËûÈËÔ±µÄÐÕÃûºÍµç×ÓÓʼþµØÖ·¡£¸Ã¹«Ë¾°µÊ¾ £¬Ã»ÓÐй©Óë¶ÁÕߺͿͻ§ÓйصÄÐÅÏ¢ £¬Ò²Ã»ÓÐй©Æä¼ÇÕßÍøÂçµÄÐÂÎű¨Â·ÐÅÏ¢¡£¾ÝϤ £¬Õâ´Î¹¥»÷²úÉúÔÚ5ÔÂ8ÈÕ £¬¸Ã¹«Ë¾Ô±¹¤ÊÕµ½²¢´ò¿ªÁËÒ»·â´øÓв¡¶¾¸½¼þµÄµç×ÓÓʼþµ¼ÖÂÆäÍÆËã»úÊܵ½Ï°È¾¡£¸Ã¹«Ë¾°µÊ¾ £¬Ï°È¾²¡¶¾ÊÇÐÂÐͲ¡¶¾ £¬Òò¶ø´Ë¿Ì±ØÒªÆÆ·ÑһЩ¹¦·ò½øÐмì²â¡£


Ô­ÎÄÁ´½Ó£º

https://mainichi.jp/english/articles/20200513/p2a/00m/0na/002000c


3.ÃÀ¹úFinCENÖÒ¸æÄ¿Ç°´æÔÚ´ó¹æÄ£µÄÐ鹹Ǯ±ÒÚ¿Æ­»î¶¯


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ÃÀ¹ú½ðÈÚ·¸×ï·¨ÂÉÍøÂçFinCENÖÒ¸æÄ¿Ç°´æÔÚ´ó¹æÄ£µÄÐ鹹Ǯ±ÒÚ¿Æ­»î¶¯¡£FinCENÕÆ¹ÜÈËKenneth Blanco°µÊ¾ £¬Ä¿Ç°ÍøÂç·¸×ï·Ö×ÓÖØÒªÒÔÐ鹹Ǯ±ÒΪָ±ê £¬Òò¶øÓ¦³Áµã¹Ø×¢½ðÈÚÚ¿Æ­¡£FinCEN°µÊ¾ £¬×Ô2013ÄêÒÔÀ´ £¬ËûÃÇ×ܹ²ÊÕµ½Á˽ü7ÍòÆð¼ÓÃÜÇ®±ÒÚ¿Æ­»î¶¯µÄ¿ÉÒɻ»ã±¨£¨SAR£© £¬¶øÔÚCOVID-19ÆÚ¼ä £¬ÕâÖÖÍþвÔö³¤ÁË10±¶¡£ÔÚÒßÇéÆÚ¼ä £¬ÆäËûÀàÐ͵ÄÍøÂç¹¥»÷Ò²²ã³ö²»Çî £¬ºÃ±ÈÀÕË÷Èí¼þ¹¥»÷¡¢ÐéαҽÁƲúÆ·ÏúÊۺʹú±ÒͶ×ÊÚ¿Æ­µÈ¡£ÓÉÓÚCOVID-19 £¬´ó²¿ÃÅÈ˺͵±¾Ö¹ÙÔ±ÔڼҰ칫 £¬ÕâÐ©ÍøÂç×ï·¸»áͨ¹ý¹¥»÷VPNºÍÔ¶³Ì×ÀÃæºÍ̸µÈÔ¶³ÌÀûÓ÷¨Ê½Öеķì϶ £¬ÒÔÇÔÊØÐÅÏ¢¡£


Ô­ÎÄÁ´½Ó£º

https://www.ehackingnews.com/2020/05/fincen-chief-blanco-warns-of-wide-scale.html


4.ºÚ¿Í×éÖ¯RATicate'sÀûÓÃNSIS×°Ö÷¨Ê½·Ö·¢RAT


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


SophosµÄ°²È«×êÑÐÈËÔ±·¢ÏÖÁËÒ»¸öºÚ¿Í×éÖ¯RATicate's £¬¸Ã×éÖ¯ÀûÓÃNSIS×°Ö÷¨Ê½¶Ô¹¤Òµ¹«Ë¾ÌáÒé¿Í¹¥»÷ £¬ÒÔ·Ö·¢RATºÍÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ¡£¸Ã×éÖ¯ÔÚ2019Äê11ÔÂÖÁ2020Äê1ÔÂÆÚ¼äÕë¶ÔÅ·ÖÞ¡¢Öж«ºÍº«¹úµÄ¹«Ë¾×ܹ²ÌáÒéÁË5´Î¹¥»÷¡£Sophos»ã±¨×¢Ã÷ £¬ºÚ¿ÍÓÃÁ½ÖÖ·½Ê½Í¨¹ý´¹µöÈí¼þ·Ö·¢RAT £¬ÆäÒ»ÊÇÀûÓôøÓÐÓÐNSIS×°Ö÷¨Ê½µÄZIP¡¢UDFºÍIMG¸½¼þ £¬Æä¶þÊÇ´ÓÔ¶³Ì·þÎñÆ÷ÏÂÔØÓÐЧ¸ºÔØXLSºÍRTFÎĵµ¡£Sophos·¢ÏÖÕâ´Î¹¥»÷Öкڿͻ¹ÓÃÁ˺ö๤¾ß £¬Ô̺¬Lokibot £¬Betabot £¬FormbookºÍAgentTeslaµÈ¡£


Ô­ÎÄÁ´½Ó£º

https://www.ehackingnews.com/2020/05/sophos-found-group-abusing-nsis.html


5.ÐÂÐ͹¥»÷BIAS¿ÉÀûÓÃÀ¶ÑÀ¹¥»÷ÊÖ»úµÈÉ豸


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾



×êÑÐÈËÔ±·¢ÏÖÁËÀ¶ÑÀÎÞÏߺÍ̸ÖеÄÒ»¸öзì϶BIAS £¬¿É±»ÀûÓù¥»÷ÏÖ´ú»¥Á¬É豸 £¬ÀýÈçÖÇÄÜÊÖ»ú¡¢Æ½°åµçÄÔ¡¢±Ê¼Ç±¾µçÄÔºÍÖÇÄÜIoTÉ豸µÈ¡£¸Ã·ì϶ȫ³ÆÎªBluetooth Impersonation AttackS £¬Ó°ÏìÁ˾­µä°æÀ¶ÑÀºÍ̸¡£¸Ã¹¥»÷·½Ê½Õë¶ÔµÄÊÇÉ豸¼äµÄ³Ö¾ÃÃÜÔ¿ £¬µ±Á½¸öÀ¶ÑÀÉ豸³õ´ÎÅä¶Ôʱ½«ÌìÉú´ËÃÜÔ¿ £¬¶øBIASÄܹ»Ê¹¹¥»÷Õß¼ÙÒâÏÈǰÅä¶ÔÉ豸µÄÉí·Ý £¬²¢³É¹¦½øÐÐÉí·ÝÑéÖ¤²¢Ïνӵ½ÁíÒ»¸öÉ豸 £¬¶øÎÞÐè֪·֮ǰÔÚÁ½ÕßÖ®¼äµÄ³Ö¾ÃÃÜÔ¿¡£Ò»µ©¹¥»÷³É¹¦ £¬¹¥»÷Õß±ãÄܹ»½Ó¼û»ò½ÚÔìÁíÒ»¸öÉ豸¡£×êÑÐÈËÔ±²âÊÔÁËCypress¡¢¸ßͨ(Qualcomm)¡¢Æ»¹û(Apple)¡¢Ó¢Ìضû(Intel)¡¢ÈýÐÇ(Samsung)ºÍCSRµÄÀ¶ÑÀоƬ £¬·¢ÏÖ¾ù´æÔÚ´ËÎÊÌâ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/smartphones-laptops-iot-devices-vulnerable-to-new-bias-bluetooth-attack/


6.LinuxÒç¶Âí½Å·ÖÎö £¬¿ÉÏò¸¸¹ý³Ì·¢ËÍËÁÒâÐźÅ


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


LinuxÄÚºËÔÚ¹ýÂËÐźŴ¦Ö÷¨Ê½Ê± £¬¶Ô×Ó/¸¸¹ý³Ì±êʶ´¦ÖõÄÊèËÉÑéÖ¤ÖдæÔÚ·ì϶ £¬Ô­ÒòÊÇinclude/linux/sched.hÖеÄexec_idÖ»ÓÐ32λ £¬ÕûÊýÒç³ö¿ÉÄÜ»á×ÌÈÅdo_notify_parent±£»¤»úÔì¡£Òò¶ø±¾µØ¹¥»÷ÕßÄܹ»ÀûÓô˷ìÏ¶ÈÆ¹ý²é³­ £¬½«ËÁÒâÐźŷ¢Ë͵½¸¸ÌØÈ¨¹ý³Ì¡£ÀûÓÃÕûÊýÒç³ö֮ǰ¾­¹ýµÄ¹¦·òÁ¿ £¬ÒÔ¼°Ïò¸¸¹ý³Ì·¢ËÍÐźŵÄÑéÖ¤µÄȱʧ¿ÉÄÜ»á»á¶Ô²Ù×÷Ôì³É¾Þ´óµÄÍþв¡£×î¿ÉÄܵĹ¥»÷ý½éÊÇÊÔͼ¹¥»÷setuid¹ý³ÌµÄ±¾µØÓû§ £¬Ä¿Ç°ÒÑͨ¹ý5.5.18°æ±¾½¨¸´¸ÃÎÊÌâ¡£


Ô­ÎÄÁ´½Ó£º

http://blog.pi3.com.pl/?p=705