MSI BIOS¸üÐÂÐÞ¸´Windows²»Ö§³Ö´¦Öóͷ£Æ÷µÄBSOD Bug

Ðû²¼Ê±¼ä 2023-09-08

1¡¢MSI BIOS¸üÐÂÐÞ¸´Windows²»Ö§³Ö´¦Öóͷ£Æ÷µÄBSOD Bug


¾ÝýÌå9ÔÂ6ÈÕ±¨µÀ £¬MSIÐû²¼ÁËBIOS¸üР£¬ÐÞ¸´WindowsÅÌËã»úÔÚ×°ÖÃ8Ô·ݸüк󴥷¢À¶ÆÁËÀ»úµÄBug¡£Á½ÖÜÇ° £¬ÓÐÓû§±¨¸æ³Æ×°Öøüкó»á·ºÆðÀ¶ÆÁ²¢ÏÔʾ¹ýʧÐÅÏ¢¡°UNSUPPORTED_PROCESSOR¡± £¬¸üÐÂÔÚÒ»ÔÙÖØÆôºó»á×Ô¶¯»Ø¹ö¡£¸Ã¹«Ë¾ÌåÏÖ £¬ÕâÒ»ÎÊÌâ½öÓ°ÏìÆäÓ¢Ìضû700ºÍ600ϵÁÐÖ÷°å £¬»ù´¡Ôµ¹ÊÔ­ÓÉ¿É×·Ëݵ½×î½ü΢´úÂë¸üи½´øµÄÓ¢Ìضû»ìÏý¼Ü¹¹µÄ¹Ì¼þÉèÖá£MSI»¹³Æ £¬±¾Öܽ«Óиü¶àÊÊÓÃÓÚIntel 700ºÍ600ϵÁÐÐͺŵÄBIOS¿ÉÔÚMSI¹Ù·½ÍøÕ¾ÉÏÏÂÔØ £¬ËùÓÐBIOS°æ±¾½«ÓÚ9ÔÂβÐû²¼¡£


https://www.bleepingcomputer.com/news/software/msi-bios-updates-fix-windows-unsupported-processor-bsod-bug/


2¡¢Apple½ôÆȸüÐÂÐÞ¸´iPhoneºÍMacÖÐÁ½¸öÒѱ»Ê¹ÓÃÎó²î


AppleÔÚ9ÔÂ7ÈÕÐû²¼Á˽ôÆÈÇå¾²¸üР£¬ÒÔÐÞ¸´Õë¶ÔiPhoneºÍMacµÄ¹¥»÷Öб»Ê¹ÓõÄÁ½¸öÎó²î¡£ÕâЩÎó²î±£´æÓÚImage I/OºÍÇ®°ü¿ò¼ÜÖÐ £¬»®·ÖÊÇ»º³åÇøÒç³öÎó²î£¨CVE-2023-41064£©ºÍÑéÖ¤ÎÊÌ⣨CVE-2023-41061£©¡£Citizen Lab͸¶ £¬ÕâÁ½¸öÎó²î×÷ΪÁãµã»÷iMessageÎó²îʹÓÃÁ´BLASTPASSµÄÒ»²¿·Ö±»Ê¹Óà £¬Í¨¹ý°üÀ¨¶ñÒâͼƬµÄPassKit¸½¼þ £¬½«NSO GroupµÄÌع¤Èí¼þPegasus×°Öõ½ÔËÐÐiOS 16.6µÄiPhoneÉÏ¡£×Ô½ñÄêÄêÍ·ÒÔÀ´ £¬AppleÒÑÐÞ¸´13¸ö±»Ê¹ÓõÄ0 day¡£


https://securityaffairs.com/150485/hacking/apple-discloses-2-new-actively-exploited-zero-day-flaws-in-iphones-macs.html


3¡¢Group-IBÅû¶´¹ÂÚÍÅ»ïW3LLÕë¶ÔMS 365ÕÊ»§µÄÔ˶¯


9ÔÂ6ÈÕ £¬Group-IBÅû¶Á˹ØÓÚ´¹ÂÚ¹¥»÷ÍÅ»ïW3LLµÄÔË×÷ÇéÐεÄÏêϸÐÅÏ¢¡£¹¥»÷Õß½¨ÉèÁËÒ»¸öµØÏÂÊг¡W3LL Store £¬ÕâÊÇÒ»¸öÓÉÖÁÉÙ500Ãû¹¥»÷Õß×é³ÉµÄ¹Ø±ÕÉçÇø £¬ËûÃÇ¿ÉÒÔ¹ºÖÃ×Ô½ç˵ÍøÂç´¹ÂÚ¹¤¾ß°üW3LL Panel£¨Ö¼ÔÚÈƹý MFA£© £¬ÒÔ¼°ÓÃÓÚBEC¹¥»÷µÄÆäËü16¸ö¶¨Öƹ¤¾ß¡£2022Äê10ÔÂÖÁ2023Äê7ÔÂʱ´ú £¬W3LLµÄ´¹ÂÚ¹¤¾ß±»ÓÃÀ´Õë¶ÔÃÀ¹ú¡¢°Ä´óÀûÑǺÍÅ·ÖÞµÄÁè¼Ý56000¸öÆóÒµMicrosoft 365ÕÊ»§¡£Æ¾Ö¤Group-IBµÄ¼òªԤ¼Æ £¬W3LL Store×î½ü10¸öÔµÄÓªÒµ¶î¿ÉÄÜÒѵִï50ÍòÃÀÔª¡£


https://www.group-ib.com/media-center/press-releases/w3ll-phishing-report/


4¡¢·áÌï³ÆÊý¾Ý¿â·þÎñÆ÷´æ´¢¿Õ¼äȱ·¦µ¼ÖÂÉú²ú³µ¼äЪ¹¤


¾Ý9ÔÂ6ÈÕ±¨µÀ £¬·áÌïÌåÏÖ×î¿ËÈÕ±¾Éú²ú³µ¼äµÄÔËÓªÖÐÖ¹ÊÇÓÉÓÚÆäÊý¾Ý¿â·þÎñÆ÷´æ´¢¿Õ¼äȱ·¦µ¼ÖµÄ¡£8ÔÂ29ÈÕ £¬Óб¨µÀ³ÆÓÉÓÚ²»Ã÷ϵͳ¹ÊÕÏ £¬·áÌïÔÚÈÕ±¾µÄ14¼ÒÆû³µ×é×°³§ÖеÄ12¼ÒÔËÓªÖÐÖ¹ £¬µ¼ÖÂÌìÌìÔ¼13000Á¾µÄ²úÁ¿Ëðʧ¡£¸Ã¹«Ë¾ÌåÏÖ £¬¹ÊÕϱ¬·¢ÔÚ8ÔÂ27ÈÕÍýÏëµÄϵͳά»¤Ô˶¯Ê±´ú £¬ÍýÏëµÄά»¤ÊÇÕûÀíÊý¾Ý¿âÖеÄÊý¾ÝºÍɾ³ýËéƬÊý¾Ý¡£È»¶ø £¬ÔÚʹÃüÍê³É֮ǰ´æ´¢ÒÑÂú £¬Òò´Ë±¬·¢¹ýʧµ¼ÖÂϵͳ¹Ø±Õ¡£ÆäÖ÷·þÎñÆ÷ºÍ±¸·Ý»úеÔÚͳһϵͳÉÏÔËÐÐ £¬ÃæÁÙͬÑùµÄ¹ÊÕÏ £¬ÎÞ·¨¾ÙÐÐÇл» £¬¹¤³§±»ÆÈÍ£²ú¡£8ÔÂ29ÈÕ·áÌï×¼±¸ÁËһ̨ÈÝÁ¿¸ü´óµÄ·þÎñÆ÷À´ÎüÊÕÇ°Á½Ìì´«ÊäµÄÊý¾Ý¡£


https://www.bleepingcomputer.com/news/security/toyota-says-filled-disk-storage-halted-japan-based-factories/


5¡¢Mirai±äÌåѬȾÁ®¼ÛµÄAndroidµçÊÓºÐ×ÓÖ´ÐÐDDoS¹¥»÷


9ÔÂ6ÈÕ±¨µÀ £¬Dr. Web·¢Ã÷Ò»ÖÖеĽ©Ê¬ÍøÂçMirai±äÌå×îÏÈѬȾÁ®¼ÛµÄAndroidµçÊÓºÐ×Ó¡£ÏÖÔڵľÂíÊÇ2015ÄêÊ״ηºÆðµÄºóÃÅPandoraµÄа汾¡£¸ÃÔ˶¯Ö÷ÒªÕë¶ÔµÍ±¾Ç®AndroidµçÊӺР£¬ÈçTanix TX6 TV Box¡¢MX10 Pro 6KºÍH96 MAX X3 £¬ËüÃÇÅ䱸Ëĺ˴¦Öóͷ£Æ÷ £¬×ÝÈ»ÔÚС¹æÄ£ÏÂÒ²ÄÜÖ´ÐÐÇ¿Ê¢µÄDDoS¹¥»÷¡£Dr. Web³Æ £¬ÕâЩ¶ñÒâÈí¼þͨ¹ýʹÓùûÕæ¿ÉÓõIJâÊÔÃÜÔ¿ÊðÃûµÄ¶ñÒâ¹Ì¼þ¸üР£¬»òÕßͨ¹ýÕë¶Ô¶ÔµÁ°æÄÚÈݸÐÐËȤµÄÓû§µÄÍøÕ¾ÉϵĶñÒâÓ¦ÓþÙÐзַ¢¡£


https://news.drweb.com/show/?lng=en&i=14743


6¡¢Ñо¿Ö°Ô±·¢Ã÷Õë¶ÔMac·Ö·¢Ð°æAMOSµÄ¶ñÒâ¹ã¸æÔ˶¯


MalwarebytesÔÚ9ÔÂ6ÈÕ³ÆÆä·¢Ã÷ÁËÕë¶ÔMac·Ö·¢Atomic Stealer£¨AMOS£©µÄ¶ñÒâ¹ã¸æÔ˶¯¡£AMOSÓÚ4ÔÂÊ״ηºÆ𠣬Ö÷ÒªÕë¶Ô¼ÓÃÜ×ʲú £¬´Óä¯ÀÀÆ÷ºÍAppleÔ¿³×´®ÖлñÈ¡ÃÜÂë¡£¸ÃÔ˶¯Ê¹ÓÃÁËGoogleËÑË÷µÄ¶ñÒâ¹ã¸æ £¬Í¨¹ý´¹ÂÚÍøÕ¾ÓÕʹĿµÄÏÂÔØÓ¦Óá£ÏÂÔصÄÎļþ(TradingView.dmg) ¸½´øÔõÑù·­¿ªËüÀ´ÈƹýGateKeeperµÄ˵Ã÷¡£¶ñÒâÈí¼þÀ¦°óÔÚÒ»¸öÔÝʱÊðÃûµÄÓ¦ÓÃÖÐ £¬ÕâÒâζ×ÅËü²»ÊÇAppleÖ¤Êé £¬Òò´ËÎÞ·¨×÷·Ï £¬payloadÊÇ×î½üÕë¶ÔOSXµÄAMOSµÄа汾¡£


https://www.malwarebytes.com/blog/threat-intelligence/2023/09/atomic-macos-stealer-delivered-via-malvertising