ChromeÐÞ¸´±»Ê¹ÓÃÎó²îCVE-2022-3075
Ðû²¼Ê±¼ä 2022-09-05
GoogleÔÚ9ÔÂ2ÈÕÐû²¼½ôÆÈ¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´Chromeä¯ÀÀÆ÷ÖÐÒѱ»Ê¹ÓõÄÎó²î£¨CVE-2022-3075£©¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²îÊÇMojoÖеÄÊý¾ÝÑé֤ȱ·¦µ¼Öµģ¬£¬£¬£¬£¬£¬£¬MojoÊÇÒ»×éÔËÐÐʱ¿â£¬£¬£¬£¬£¬£¬£¬¿ÉÓÃÓÚ¿çí§ÒâÀú³Ì¼äºÍÀú³ÌÄÚ½çÏßת´ïÐÂÎÅ¡£¡£¡£¡£¡£¡£¡£ä¯ÀÀÆ÷½«×Ô¶¯¼ì²é¸üУ¬£¬£¬£¬£¬£¬£¬²¢ÔÚÏÂ´ÎÆô¶¯ºó×Ô¶¯×°Öᣡ£¡£¡£¡£¡£¡£Ö»¹Ü¸ÃÎó²îÒѱ»ÆÕ±éʹÓ㬣¬£¬£¬£¬£¬£¬µ«Google²¢Î´·ÖÏí¹ØÓÚÕâЩ¹¥»÷µÄϸ½ÚÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£ÕâÊÇGoogle×Ô½ñÄêÄêÍ·ÒÔÀ´ÐÞ¸´µÄµÚ6¸öChromeÁãÈÕÎó²î¡£¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/09/google-release-urgent-chrome-update-to.html
2¡¢Defender½«ChromeºÍEdgeµÈÓ¦ÓÃÎó±¨ÎªWin32/Hive.ZY
¾ÝýÌå9ÔÂ4ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬Ã¿´ÎÔÚWindowsÖз¿ªGoogle Chrome¡¢Microsoft Edge¡¢DiscordºÍÆäËüElectronÓ¦ÓóÌÐòʱ£¬£¬£¬£¬£¬£¬£¬Microsoft Defender¶¼»á¹ýʧµØ½«ÕâЩӦÓóÌÐò¼ì²âΪ"Win32/Hive.ZY"¡£¡£¡£¡£¡£¡£¡£ÎÊÌâ×îÏÈÓÚÉÏÖÜÈÕÔçÉÏ£¬£¬£¬£¬£¬£¬£¬Æäʱ΢ÈíÍÆ³öÁËDefenderÊðÃû¸üР1.373.1508.0£¬£¬£¬£¬£¬£¬£¬ÐÂÔöÁËÁ½¸öÍþв¼ì²â£¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨Behavior:Win32/Hive.ZY¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬Î¢ÈíÒÑÐû²¼DefenderÇå¾²ÖÇÄܸüа汾1.373.1537.0£¬£¬£¬£¬£¬£¬£¬¸Ã¸üÐÂËÆºõ½â¾öÁËWin32/Hive.ZYÎó±¨ÎÊÌâ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/microsoft/microsoft-defender-falsely-detects-win32-hivezy-in-google-chrome-electron-apps/
3¡¢¶íÂÞ˹Yandex Taxi±»ºÚµ¼ÖÂĪ˹¿Æ´ó¹æÄ£½»Í¨¹£Èû
¾Ý9ÔÂ2ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬¶íÂÞ˹µÄ´ò³µÓ¦ÓóÌÐòYandex Taxi±»ºÚ£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂĪ˹¿Æ·ºÆð´ó¹æÄ£½»Í¨Óµ¶Â¡£¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ9ÔÂ1ÈÕ£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß½«ÊýÊ®Á¾³ö×â³µÅÉÍùÁËĪ˹¿ÆÖ÷Òª½ÖµÀÖ®Ò»Kutuzovsky Prospekt¡£¡£¡£¡£¡£¡£¡£´Ë´Î¶Â³µÔ¼ÄªÒ»Á¬ÁËÈý¸öСʱ£¬£¬£¬£¬£¬£¬£¬YandexµÄÇå¾²ÍŶÓѸËÙ½â¾öÁ˸ÃÎÊÌ⣬£¬£¬£¬£¬£¬£¬²¢ÔÊÐí½«Ë¢ÐÂËã·¨ÒÔ·ÀÓù´ËÀ๥»÷¡£¡£¡£¡£¡£¡£¡£ºÚ¿ÍÍÅ»ïAnonymous¶Ô´Ë´Î¹¥»÷ÈÏÕæ£¬£¬£¬£¬£¬£¬£¬²¢ÌåÏÖ¸ÃÐж¯ÊÇÓëIT Army of UkraineÏàÖú¾ÙÐеġ£¡£¡£¡£¡£¡£¡£
https://www.hackread.com/anonymous-russian-yandex-taxi-app-hacked/
4¡¢ÃÀ¹ú¹ú˰¾Öй¶Լ12ÍòÄÉ˰È˵ÄÐÕÃûºÍÊÕÈëµÈÐÅÏ¢
ýÌå9ÔÂ3Èճƣ¬£¬£¬£¬£¬£¬£¬ÃÀ¹ú¹ú˰¾ÖÒâÍâй¶ÁËÔ¼120000ÃûÄÉ˰È˵ÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£±»Ó°ÏìµÄÄÉ˰ÈËÔÚÄÉ˰É걨±íÖÐÌá½»ÁË990-T±í¸ñ£¬£¬£¬£¬£¬£¬£¬¸Ã±í¸ñÓÃÓÚ±¨¸æÖ§¸¶¸øÃâ˰×éÖ¯µÄÎÞ¹ØÓªÒµÊÕÈ룬£¬£¬£¬£¬£¬£¬ÀýÈç·ÇÓªÀû×éÖ¯»òIRAºÍSEPÍËÐÝÕË»§¡£¡£¡£¡£¡£¡£¡£¹ØÓÚͨË×ÄÉ˰ÈËÀ´Ëµ£¬£¬£¬£¬£¬£¬£¬¸Ã±í¸ñÊDZ£Ãܵ쬣¬£¬£¬£¬£¬£¬µ«¹ØÓÚ·ÇÓªÀû×éÖ¯À´Ëµ£¬£¬£¬£¬£¬£¬£¬¸Ã±í¸ñ±ØÐèÔÚÈýÄêÄÚ¹©¹«ÖÚ²éÔÄ¡£¡£¡£¡£¡£¡£¡£ÉÏÖÜÎ壬£¬£¬£¬£¬£¬£¬ÃÀ¹ú¹ú˰¾Ö·¢Ã÷³ýÁË´ÈÉÆ»ú¹¹µÄ990-T±í¸ñÊý¾ÝÍ⣬£¬£¬£¬£¬£¬£¬»¹ÒâÍâµØ¹ûÕæÁËÄÉ˰ÈËIRAµÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬Éæ¼°ÐÕÃû¡¢ÁªÏµÐÅÏ¢ºÍ±¨¸æµÄÊÕÈëµÈ¡£¡£¡£¡£¡£¡£¡£¸Ã»ú¹¹ÌåÏÖ̻¶µÄÊý¾ÝÒѱ»É¾³ý£¬£¬£¬£¬£¬£¬£¬²¢½«ÔÚδÀ´¼¸ÖÜÄÚ֪ͨÊÜÓ°ÏìµÄ¹«Ãñ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/irs-data-leak-exposes-personal-info-of-120-000-taxpayers/
5¡¢´ò°ç¹«Ë¾DamartÔâµ½HiveµÄ¹¥»÷²¢±»ÀÕË÷200ÍòÃÀÔª
9ÔÂ2ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬£¬£¬·¨¹ú´ò°ç¹«Ë¾DamartÔâµ½ºÚ¿ÍÍÅ»ïHiveµÄ¹¥»÷²¢±»ÀÕË÷200ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¡£8ÔÂ15ÈÕ£¬£¬£¬£¬£¬£¬£¬DamartÔÚÆäÔÚÏßÊÐËÁµÄÖ÷Ò³ÉÏÐû²¼Á˹ØÓÚÍýÏëÍâά»¤µÄÐÂÎÅ¡£¡£¡£¡£¡£¡£¡£8ÔÂ24ÈÕ£¬£¬£¬£¬£¬£¬£¬DamartµÄÏúÊÛÍøÂçÖÐÖ¹£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÁË92¼ÒÃŵꡣ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ¹¥»÷ÕßÒÑÈëÇÖActive Directory²¢¼ÓÃÜÁËһЩϵͳ£¬£¬£¬£¬£¬£¬£¬Ð§ÀÍÖÊÁ¿Ï½µÊÇÒòÆäΪÁ˱£»£»£»£»£»£»£»¤ÏµÍ³¶ø¹Ø±ÕÁËËüÃÇ¡£¡£¡£¡£¡£¡£¡£Hive²¢Î´ÔÚÆäÊý¾Ý¹ûÕæÍøÕ¾ÉÏÁгöDamart£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾Ò²Ò»ÔÙ·ñ¶¨ÆäÊý¾Ý±»µÁ¡£¡£¡£¡£¡£¡£¡£Val¨¦ry MarchiveÖ¸³ö£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß²¢²»¿ÏÒâÓëÆäĸ¹«Ë¾Damartex¾ÙÐÐ̸Åв¢ÆÚÍû»ñµÃËùÓÐÊê½ð¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/damart-clothing-store-hit-by-hive-ransomware-2-million-demanded/
6¡¢ÈýÐÇ͸¶ÆäÃÀ¹ú·Ö¹«Ë¾µÄÄÚÍø±»ÈëÇÖÇÒ¿Í»§ÐÅϢй¶
º«¹úÈýÐǹ«Ë¾ÔÚ9ÔÂ2ÈÕ͸¶£¬£¬£¬£¬£¬£¬£¬Æä²¿·Ö¿Í»§µÄÐÅÏ¢Ô⵽δ¾ÊÚȨµÄ»á¼û¡£¡£¡£¡£¡£¡£¡£2022Äê7ÔÂÏÂÑ®£¬£¬£¬£¬£¬£¬£¬ÈýÐÇλÓÚÃÀ¹ú·Ö¹«Ë¾µÄ²¿·Öϵͳ±»ÈëÇÖ¡£¡£¡£¡£¡£¡£¡£2022Äê8ÔÂ4ÈÕǰºó£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±Í¨¹ýÊÓ²ìÈ·¶¨²¿·Ö¿Í»§µÄСÎÒ˽¼ÒÐÅÏ¢Êܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£¡£ÈýÐÇÌåÏÖ£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»»á¼ûÐÕÃû¡¢ÁªÏµ·½·¨¡¢Éú³Ýͳ¼ÆÐÅÏ¢¡¢³öÉúÈÕÆÚºÍ²úÆ·×¢²áÊý¾ÝµÈÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬µ«Ã¿¸ö¿Í»§ÊÜÓ°ÏìµÄÐÅÏ¢¿ÉÄÜ»áÓÐËù²î±ð¡£¡£¡£¡£¡£¡£¡£ÕâÊÇÈýÐǽñÄ걬·¢µÄµÚ¶þ´ÎÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÔÚ3Ô·ÝÔøÔâµ½Lapsus$µÄ¹¥»÷£¬£¬£¬£¬£¬£¬£¬²¢Ð¹Â¶Á˰üÀ¨Galaxy×°±¸Ô´´úÂëÔÚÄÚµÄ190 GBÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/09/samsung-admits-data-breach-that-exposed.html


¾©¹«Íø°²±¸11010802024551ºÅ