MSI BIOS¸üÐÂÐÞ¸´Windows²»Ö§³Ö´¦Öóͷ£Æ÷µÄBSOD Bug
Ðû²¼Ê±¼ä 2023-09-081¡¢MSI BIOS¸üÐÂÐÞ¸´Windows²»Ö§³Ö´¦Öóͷ£Æ÷µÄBSOD Bug
¾ÝýÌå9ÔÂ6ÈÕ±¨µÀ£¬MSIÐû²¼ÁËBIOS¸üУ¬ÐÞ¸´WindowsÅÌËã»úÔÚ×°ÖÃ8Ô·ݸüк󴥷¢À¶ÆÁËÀ»úµÄBug¡£Á½ÖÜÇ°£¬ÓÐÓû§±¨¸æ³Æ×°Öøüкó»á·ºÆðÀ¶ÆÁ²¢ÏÔʾ¹ýʧÐÅÏ¢¡°UNSUPPORTED_PROCESSOR¡±£¬¸üÐÂÔÚÒ»ÔÙÖØÆôºó»á×Ô¶¯»Ø¹ö¡£¸Ã¹«Ë¾ÌåÏÖ£¬ÕâÒ»ÎÊÌâ½öÓ°ÏìÆäÓ¢Ìضû700ºÍ600ϵÁÐÖ÷°å£¬»ù´¡Ôµ¹ÊÔÓÉ¿É×·Ëݵ½×î½ü΢´úÂë¸üи½´øµÄÓ¢Ìضû»ìÏý¼Ü¹¹µÄ¹Ì¼þÉèÖá£MSI»¹³Æ£¬±¾Öܽ«Óиü¶àÊÊÓÃÓÚIntel 700ºÍ600ϵÁÐÐͺŵÄBIOS¿ÉÔÚMSI¹Ù·½ÍøÕ¾ÉÏÏÂÔØ£¬ËùÓÐBIOS°æ±¾½«ÓÚ9ÔÂβÐû²¼¡£
https://www.bleepingcomputer.com/news/software/msi-bios-updates-fix-windows-unsupported-processor-bsod-bug/
2¡¢Apple½ôÆȸüÐÂÐÞ¸´iPhoneºÍMacÖÐÁ½¸öÒѱ»Ê¹ÓÃÎó²î
AppleÔÚ9ÔÂ7ÈÕÐû²¼Á˽ôÆÈÇå¾²¸üУ¬ÒÔÐÞ¸´Õë¶ÔiPhoneºÍMacµÄ¹¥»÷Öб»Ê¹ÓõÄÁ½¸öÎó²î¡£ÕâЩÎó²î±£´æÓÚImage I/OºÍÇ®°ü¿ò¼ÜÖУ¬»®·ÖÊÇ»º³åÇøÒç³öÎó²î£¨CVE-2023-41064£©ºÍÑéÖ¤ÎÊÌ⣨CVE-2023-41061£©¡£Citizen Lab͸¶£¬ÕâÁ½¸öÎó²î×÷ΪÁãµã»÷iMessageÎó²îʹÓÃÁ´BLASTPASSµÄÒ»²¿·Ö±»Ê¹Óã¬Í¨¹ý°üÀ¨¶ñÒâͼƬµÄPassKit¸½¼þ£¬½«NSO GroupµÄÌع¤Èí¼þPegasus×°Öõ½ÔËÐÐiOS 16.6µÄiPhoneÉÏ¡£×Ô½ñÄêÄêÍ·ÒÔÀ´£¬AppleÒÑÐÞ¸´13¸ö±»Ê¹ÓõÄ0 day¡£
https://securityaffairs.com/150485/hacking/apple-discloses-2-new-actively-exploited-zero-day-flaws-in-iphones-macs.html
3¡¢Group-IBÅû¶´¹ÂÚÍÅ»ïW3LLÕë¶ÔMS 365ÕÊ»§µÄÔ˶¯
9ÔÂ6ÈÕ£¬Group-IBÅû¶Á˹ØÓÚ´¹ÂÚ¹¥»÷ÍÅ»ïW3LLµÄÔË×÷ÇéÐεÄÏêϸÐÅÏ¢¡£¹¥»÷Õß½¨ÉèÁËÒ»¸öµØÏÂÊг¡W3LL Store£¬ÕâÊÇÒ»¸öÓÉÖÁÉÙ500Ãû¹¥»÷Õß×é³ÉµÄ¹Ø±ÕÉçÇø£¬ËûÃÇ¿ÉÒÔ¹ºÖÃ×Ô½ç˵ÍøÂç´¹ÂÚ¹¤¾ß°üW3LL Panel£¨Ö¼ÔÚÈƹý MFA£©£¬ÒÔ¼°ÓÃÓÚBEC¹¥»÷µÄÆäËü16¸ö¶¨Öƹ¤¾ß¡£2022Äê10ÔÂÖÁ2023Äê7ÔÂʱ´ú£¬W3LLµÄ´¹ÂÚ¹¤¾ß±»ÓÃÀ´Õë¶ÔÃÀ¹ú¡¢°Ä´óÀûÑǺÍÅ·ÖÞµÄÁè¼Ý56000¸öÆóÒµMicrosoft 365ÕÊ»§¡£Æ¾Ö¤Group-IBµÄ¼òªԤ¼Æ£¬W3LL Store×î½ü10¸öÔµÄÓªÒµ¶î¿ÉÄÜÒѵִï50ÍòÃÀÔª¡£
https://www.group-ib.com/media-center/press-releases/w3ll-phishing-report/
4¡¢·áÌï³ÆÊý¾Ý¿â·þÎñÆ÷´æ´¢¿Õ¼äȱ·¦µ¼ÖÂÉú²ú³µ¼äЪ¹¤
¾Ý9ÔÂ6ÈÕ±¨µÀ£¬·áÌïÌåÏÖ×î¿ËÈÕ±¾Éú²ú³µ¼äµÄÔËÓªÖÐÖ¹ÊÇÓÉÓÚÆäÊý¾Ý¿â·þÎñÆ÷´æ´¢¿Õ¼äȱ·¦µ¼Öµġ£8ÔÂ29ÈÕ£¬Óб¨µÀ³ÆÓÉÓÚ²»Ã÷ϵͳ¹ÊÕÏ£¬·áÌïÔÚÈÕ±¾µÄ14¼ÒÆû³µ×é×°³§ÖеÄ12¼ÒÔËÓªÖÐÖ¹£¬µ¼ÖÂÌìÌìÔ¼13000Á¾µÄ²úÁ¿Ëðʧ¡£¸Ã¹«Ë¾ÌåÏÖ£¬¹ÊÕϱ¬·¢ÔÚ8ÔÂ27ÈÕÍýÏëµÄϵͳά»¤Ô˶¯Ê±´ú£¬ÍýÏëµÄά»¤ÊÇÕûÀíÊý¾Ý¿âÖеÄÊý¾ÝºÍɾ³ýËéƬÊý¾Ý¡£È»¶ø£¬ÔÚʹÃüÍê³É֮ǰ´æ´¢ÒÑÂú£¬Òò´Ë±¬·¢¹ýʧµ¼ÖÂϵͳ¹Ø±Õ¡£ÆäÖ÷·þÎñÆ÷ºÍ±¸·Ý»úеÔÚͳһϵͳÉÏÔËÐУ¬ÃæÁÙͬÑùµÄ¹ÊÕÏ£¬ÎÞ·¨¾ÙÐÐÇл»£¬¹¤³§±»ÆÈÍ£²ú¡£8ÔÂ29ÈÕ·áÌï×¼±¸ÁËһ̨ÈÝÁ¿¸ü´óµÄ·þÎñÆ÷À´ÎüÊÕÇ°Á½Ìì´«ÊäµÄÊý¾Ý¡£
https://www.bleepingcomputer.com/news/security/toyota-says-filled-disk-storage-halted-japan-based-factories/
5¡¢Mirai±äÌåѬȾÁ®¼ÛµÄAndroidµçÊÓºÐ×ÓÖ´ÐÐDDoS¹¥»÷
9ÔÂ6ÈÕ±¨µÀ£¬Dr. Web·¢Ã÷Ò»ÖÖеĽ©Ê¬ÍøÂçMirai±äÌå×îÏÈѬȾÁ®¼ÛµÄAndroidµçÊÓºÐ×Ó¡£ÏÖÔڵľÂíÊÇ2015ÄêÊ״ηºÆðµÄºóÃÅPandoraµÄа汾¡£¸ÃÔ˶¯Ö÷ÒªÕë¶ÔµÍ±¾Ç®AndroidµçÊӺУ¬ÈçTanix TX6 TV Box¡¢MX10 Pro 6KºÍH96 MAX X3£¬ËüÃÇÅ䱸Ëĺ˴¦Öóͷ£Æ÷£¬×ÝÈ»ÔÚС¹æÄ£ÏÂÒ²ÄÜÖ´ÐÐÇ¿Ê¢µÄDDoS¹¥»÷¡£Dr. Web³Æ£¬ÕâЩ¶ñÒâÈí¼þͨ¹ýʹÓùûÕæ¿ÉÓõIJâÊÔÃÜÔ¿ÊðÃûµÄ¶ñÒâ¹Ì¼þ¸üУ¬»òÕßͨ¹ýÕë¶Ô¶ÔµÁ°æÄÚÈݸÐÐËȤµÄÓû§µÄÍøÕ¾ÉϵĶñÒâÓ¦ÓþÙÐзַ¢¡£
https://news.drweb.com/show/?lng=en&i=14743
6¡¢Ñо¿Ö°Ô±·¢Ã÷Õë¶ÔMac·Ö·¢Ð°æAMOSµÄ¶ñÒâ¹ã¸æÔ˶¯
MalwarebytesÔÚ9ÔÂ6ÈÕ³ÆÆä·¢Ã÷ÁËÕë¶ÔMac·Ö·¢Atomic Stealer£¨AMOS£©µÄ¶ñÒâ¹ã¸æÔ˶¯¡£AMOSÓÚ4ÔÂÊ״ηºÆð£¬Ö÷ÒªÕë¶Ô¼ÓÃÜ×ʲú£¬´Óä¯ÀÀÆ÷ºÍAppleÔ¿³×´®ÖлñÈ¡ÃÜÂë¡£¸ÃÔ˶¯Ê¹ÓÃÁËGoogleËÑË÷µÄ¶ñÒâ¹ã¸æ£¬Í¨¹ý´¹ÂÚÍøÕ¾ÓÕʹĿµÄÏÂÔØÓ¦Óá£ÏÂÔصÄÎļþ(TradingView.dmg) ¸½´øÔõÑù·¿ªËüÀ´ÈƹýGateKeeperµÄ˵Ã÷¡£¶ñÒâÈí¼þÀ¦°óÔÚÒ»¸öÔÝʱÊðÃûµÄÓ¦ÓÃÖУ¬ÕâÒâζ×ÅËü²»ÊÇAppleÖ¤Ê飬Òò´ËÎÞ·¨×÷·Ï£¬payloadÊÇ×î½üÕë¶ÔOSXµÄAMOSµÄа汾¡£
https://www.malwarebytes.com/blog/threat-intelligence/2023/09/atomic-macos-stealer-delivered-via-malvertising