GithubºÍ¾©¶«µÈÍøÕ¾Ôâµ½ÖÐÐÄÈ˹¥»÷  £¬¶à¸öÊ¡ÊÐÇøÊÜÓ°Ï죻AMD²¿·ÖGPU²âÊÔÔ´Âë±»µÁ  £¬ºÚ¿ÍÀÕË÷1ÒÚÃÀÔª

Ðû²¼Ê±¼ä 2020-03-27

1.GithubºÍ¾©¶«µÈÍøÕ¾Ôâµ½ÖÐÐÄÈ˹¥»÷  £¬¶à¸öÊ¡ÊÐÇøÊÜÓ°Ïì


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


3ÔÂ26ÈÕÓй¥»÷ÕßÕë¶ÔGithubºÍ¾©¶«µÈÍøÕ¾Ìᳫ´ó¹æÄ£ÖÐÐÄÈ˹¥»÷  £¬ÏÖÔÚÊÜÓ°ÏìµÄÖ÷ÒªÊDz¿·ÖµØÇøÓû§  £¬µ«Éæ¼°ËùÓÐÔËÓªÉÌ  £¬ÀýÈçÖйúÒÆ¶¯¡¢ÖйúÁªÍ¨¡¢ÖйúµçÐÅÒÔ¼°½ÌÓýÍø¾ù¿É¸´ÏÖÐ®ÖÆÎÊÌâ  £¬¶øÍâÑóÍøÂç»á¼ûÕâЩվµã²¢Î´·ºÆðÒì³£ÇéÐΡ£´ÓÏÖÔÚÍøÉÏÅÌÎʵÄÐÅÏ¢¿ÉÒÔ¿´µ½´Ë´Î¹¥»÷Éæ¼°×î¹ãµÄÊÇGitHub.io  £¬Æä´ÎÓû§»á¼û¾©¶«µÈº£ÄÚ×ÅÃûÍøÕ¾Òà»á±¨´í¡£Éó²éÖ¤ÊéÐÅÏ¢¿ÉÒÔ·¢Ã÷ÕâÐ©ÍøÕ¾µÄÖ¤Êé±»¹¥»÷ÕßʹÓõÄ×ÔÊðÃûÖ¤ÊéÈ¡´ú  £¬µ¼ÖÂä¯ÀÀÆ÷ÎÞ·¨ÐÅÈδӶø×èÖ¹Óû§»á¼û¡£ÏÖÔÚÈ«Íø¾ø´ó´ó¶¼ÍøÕ¾¶¼ÒѾ­¿ªÆô¼ÓÃÜÊÖÒÕ¶Ô¿¹Ð®ÖÆ  £¬Òò´ËÓû§»á¼û»á±»×èÖ¹¶ø²»»á±»Ö¸µ¼µ½´¹ÂÚÍøÕ¾ÉÏÈ¥¡£´Ë´Î¹¥»÷ËÆºõÊÇͨ¹ýÖ÷¸ÉÍøÂçÐ®ÖÆ443¶Ë¿Ú  £¬ÏÖÔÚ¾­²âÊÔDNSϵͳÆÊÎöÊÇÍêÈ«Õý³£µÄ¡£


Ô­ÎÄÁ´½Ó£º

https://www.landiannews.com/archives/71707.html


2.°µÍøÍйܷþÎñÉÌDHÔâºÚ¿Í¹¥»÷  £¬½ü7600¸öÍøÕ¾å´»ú


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


°µÍø×î´óµÄÃâ·ÑÍйܷþÎñÉÌDaniel's Hosting£¨DH£©ÔÚ16¸öÔÂÄÚµÚ¶þ´ÎÔâµ½ºÚ¿Í¹¥»÷  £¬¿ìÒª7600¸öÍøÕ¾å´»ú¡£¸Ã·þÎñ±³ºóµÄµÂ¹ú¿ª·¢ÕßDaniel WinzenÌåÏÖ  £¬¹¥»÷ÊÂÎñ±¬·¢ÔÚ3ÔÂ10ÈÕÆÆÏþ3µã×óÓÒ  £¬ºÚ¿ÍÈëÇÖÁËDHºó¶Ë²¢É¾³ýÁËËùÓÐÓëÍйÜÏà¹ØµÄÊý¾Ý¿â  £¬²¢É¾³ýÁËWinzenµÄÊý¾Ý¿âÕË»§ºÍ½¨ÉèÁËÒ»¸öÐÂÕË»§¡£WinzenÌåÏÖDH·þÎñÔÚÉè¼ÆÉϲ¢Î´±£´æ±¸·Ý  £¬²¢ÇÒËûÉÐδ·¢Ã÷ºÚ¿ÍÔõÑùÈëÇÖDHºó¶Ë  £¬Óû§Ó¦½«ÆäDHÕÊ»§µÄÃÜÂëÊÓΪ¡°Ð¹Â¶¡±  £¬ÈôÊÇÆäËûÕÊ»§Ê¹ÓÃÏàͬµÄÃÜÂë  £¬ÔòÓ¦¾ÙÐиü¸Ä¡£DHÔøÓÚ2018Äê11Ô±»ºÚ¿ÍÈëÇÖ  £¬ÆäʱºÚ¿ÍͬÑùÆÆËðÁ˺ó¶ËÊý¾Ý¿â²¢É¾³ýÁËËùÓÐÍøÕ¾  £¬ÆäʱÊÜÓ°ÏìµÄÍøÕ¾Îª6500¶à¸ö¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/dark-web-hosting-provider-hacked-again-7600-sites-down/


3.ºÚ¿ÍʹÓÃÐéαChrome¸üзַ¢ºóÃż°¼üÅ̼ͼľÂí


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


ºÚ¿ÍÕýÔÚʹÓñ»ÈëÇֵĹ«Ë¾ÃÅ»§ÍøÕ¾ºÍÐÂÎŲ©¿Í£¨»ùÓÚWordPress CMS£©À´Èö²¥ºóÃÅ  £¬²¢ÊͷżüÅ̼ͼľÂí¡¢ÐÅÏ¢ÇÔȡľÂíÆ·¼¶¶þ½×¶Îpayload¡£Æ¾Ö¤Doctor WebÑо¿Ö°Ô±µÄÆÊÎö  £¬¹¥»÷ÕßʹÓÃαװ³ÉChrome¸üеÄCritical_Update.exeºÍUpdate.exe·Ö·¢ºóÃÅ  £¬ÆäÏÂÔØÁ¿ÒÑÁè¼Ý2290´Î¡£ÔÚ»ñµÃÊÜÑ¬È¾ÍøÕ¾µÄ¹ÜÀíÔ±»á¼ûȨÏÞºó  £¬ºÚ¿Í×¢Èë¶ñÒâJavaScript´úÂë  £¬½«»á¼ûÕßÖØ¶¨Ïòµ½´¹ÂÚÍøÕ¾¡£ÕâÒ»¹¥»÷±³ºóµÄ×éÖ¯Ôø¼ÓÈëÈëÇÖ¹ÙÍø·Ö·¢ÐéαVSDCÊÓÆµ±à¼­Æ÷¼°Ê¹ÓÃÐéαNordVPNÍøÕ¾·Ö·¢BolikÒøÐÐľÂíµÄ¹¥»÷»î¶¯  £¬ÆäÄ¿µÄ°üÀ¨ÃÀ¹ú¡¢¼ÓÄô󡢰ĴóÀûÑÇ¡¢Ó¢¹ú¡¢ÒÔÉ«ÁкÍÍÁ¶úÆä¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/malware-disguised-as-google-updates-pushed-via-hacked-news-sites/


4.AppleÐû²¼¶à¿î²úÆ·µÄÇå¾²¸üР £¬ÐÞ¸´68¸öÎó²î


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


AppleÔÚÆäiOSºÍmacOS¡¢Safariä¯ÀÀÆ÷¡¢watchOS¡¢tvOSºÍiTunesÉÏÐû²¼ÁË´ó×Ú²¹¶¡  £¬ÆäÖÐiOSÖÐÐÞ¸´ÁË30¸öÎó²î  £¬SafariÖÐÐÞ¸´ÁË11¸öÎó²î  £¬macOSÖÐÐÞ¸´ÁË27¸öÎó²î¡£ÕâЩÎó²îÖÐ×îÑÏÖØµÄÎó²îÊÇWebKitÖеÄÀàÐÍ»ìÏýÎó²î£¨CVE-2020-3897£©  £¬¸ÃÎó²î±£´æÓÚ¹¤¾ßת»»»º´æÖÐ  £¬¹¥»÷Õß¿ÉÒÔʹÓôËÎó²îÔÚÄ¿½ñÀú³ÌµÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£Apple»¹Åû¶ÁËÁ½¸öÓ°ÏìiOSºÍmacOSµÄÄÚºËÎó²î¡£µÚÒ»¸öÊÇÄÚ´æ³õʼ»¯ÎÊÌ⣨CVE-2020-3914£©  £¬¸ÃÎÊÌâ¿ÉÄÜÔÊÐíÓ¦ÓóÌÐò¶ÁÈ¡ÊÜÏÞµÄÄÚ´æ¡£µÚ¶þ¸öÊÇÄÚºËÖеÄÄÚ´æËð»µÎÊÌ⣨CVE-2020-9785£©  £¬Ëü¿ÉÄÜÔÊÐí¶ñÒâÓ¦ÓóÌÐòÒÔÄÚºËÌØÈ¨Ö´ÐÐí§Òâ´úÂë¡£½¨ÒéÓû§¸üе½iOS 13.4¡¢Safari 13.1ºÍmacOS Catalina 10.15.3¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/apple-update-fixes-webkit-flaws-in-ios-safari/154155/


5.Ñо¿ÍŶÓÐû²¼Õë¶ÔICSµÄKwampirs RATµÄÆÊÎö±¨¸æ


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


ReversingLabsÆÊÎöÁËKwampirs RATµÄ¹¥»÷IOC  £¬ÒÔ×ÊÖú¹«Ë¾±£»¤Æä×éÖ¯ÃâÊܸöñÒâÈí¼þµÄ¹¥»÷¡£FBI×î½üÖÒÑÔ³Æ  £¬³ýÁËÕë¶ÔÈí¼þ¹©Ó¦Á´¹«Ë¾Íâ  £¬Kwampirs¹¥»÷ÕßÏÖÔÚÒѾ­ÑÝÄð³ÉÕë¶ÔICSÆóÒµ  £¬ÓÈÆäÊÇÄÜÔ´ÐÐÒµ¡£Ñо¿Ö°Ô±·¢Ã÷ÿ¸öKwampirsÑù±¾¶¼´øÓÐ200¸öC2 URLµÄÓ²±àÂëÁÐ±í£¨ÒÔÓòÃû»òIPµØÖ·µÄÐÎʽ£©  £¬KwampirsʵÑ鰴˳Ðò»á¼ûÕâЩURL²¢Ê¹ÓõÚÒ»¸ö»î¶¯µÄULR×÷ΪC2·þÎñÆ÷¡£ReversingLabs¹²È·¶¨ÁË1586¸öURL¡£Ñù±¾µÄ±êÍ·ÏÔʾËùÓÐÑù±¾¶¼ÊÇʹÓÃVisual Studio 2010±àÒëµÄ¡£Ê±¼ä´ÁÓëËüÃǵķºÆðʱ¼äûÓйØÁª  £¬Õâ¿ÉÄÜÒâζ×ÅÑù±¾ÊÇÔÚ¾ÓÐÄ´øÓв»×¼È·Ê±¼ä´ÁµÄÐéÄâ»úÖбàÒëµÄ¡£ReversingLabs½¨ÉèÁËIOCÁбí  £¬¹«Ë¾¿ÉÒÔʹÓÃÕâЩIOC½¨ÉèеķÀ»ðǽºÍÈëÇÖ¼ì²â¹æÔò  £¬²¢ÔÚSIEMÈÕÖ¾ÖÐËÑË÷ÊÇ·ñÔ⵽ѬȾ¡£


Ô­ÎÄÁ´½Ó£º

https://www.techrepublic.com/article/boost-security-defenses-against-kwampirs-rat-malware-with-new-list-of-iocs/


6.AMD²¿·ÖGPU²âÊÔÔ´Âë±»µÁ  £¬ºÚ¿ÍÀÕË÷1ÒÚÃÀÔª


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


AMD¹Ù·½Ðû²¼Ò»·Ý¼ò¶ÌµÄÉùÃ÷  £¬ÌåÏÖÓÐÈËÔÚ2019Äê12ÔÂÁªÏµËüÃÇ  £¬Éù³ÆÓµÓÐÓëAMDÄ¿½ñºÍδÀ´²¿·ÖGPU²úÆ·µÄ²âÊÔÎļþ¡£ÔÚ×î½üÕâЩÎļþ±»ÉÏ´«µ½ÁËGitHubÖ®ÉÏ  £¬¾Ý³ÆÎļþÖаüÀ¨NaviºÍArden GPUµÄ²¿·ÖÔ´Âë  £¬ºóÕßÊÇXbox Series XÉÏGPUµÄ´úºÅ  £¬¶øÇ°Õß°üÀ¨ÉÐδÐû²¼µÄNavi 20ϵÁкÍÒѾ­Ðû²¼µÄNavi 10µÄ²¿·ÖÓ²¼þÔ´´úÂë¡£AMDÏòGitHub·¢³öÁËDMCAÇëÇó  £¬¸ÃRepoËæºó±»³·Ï¡£¸ÃºÚ¿Í£¨×Ô³ÆÎªÅ®ÐÔ£©Éù³ÆÔÚÈ¥Äê11Ô·ݴӱ»ºÚµÄÅÌËã»úÖз¢Ã÷ÁËAMD Navi GPUµÄÓ²¼þÔ´Âë  £¬¸ÃÅÌËã»úÓû§Ò²Ã»ÓжԴúÂë×ß©½ÓÄÉÈκÎÓÐÓò½·¥¡£ËýͬʱҲȷÈÏ  £¬ÕâЩÎļþÖаüÀ¨Navi 10¡¢Navi 21ºÍArdenµÄÔ´Âë¡£Ëý²¢Ã»ÓоÍ×ß©ÎÊÌâºÍAMDÁªÏµ¡£²»¹ýAMDÔÚÉùÃ÷ÖгÆÕâЩÎļþûÓд¥¼°µ½GPU²úÆ·µÄ½¹µã¡£


Ô­ÎÄÁ´½Ó£º

https://torrentfreak.com/amd-uses-dmca-to-mitigate-massive-gpu-source-code-leak-200325/