WindowsÄÚ´æÐ¶ñÒâÈí¼þ£º£ººÚ¿ÍʵʱµÁÈ¡Êý×Ö×ʲú
°ä²¼¹¦·ò 2026-02-021. WindowsÄÚ´æÐ¶ñÒâÈí¼þ£º£ººÚ¿ÍʵʱµÁÈ¡Êý×Ö×ʲú
1ÔÂ31ÈÕ£¬£¬£¬Point WildÆìÏÂLat61Íþвµý±¨ÍŶӽüÈÕ·¢ÏÖÒ»ÖÖÒñ±ÎµÄÐÂÐÍWindows¶ñÒâÈí¼þ»î¶¯£¬£¬£¬¸Ã»î¶¯ÀûÓÃPulsar RATºÍStealerv37¹¤¾ß£¬£¬£¬Í¨¹ýÄÚ´æ×¤Áô·½Ê½Ö´ÐÐÈ«ÃæÊý×ÖÈëÇÖ¡£×êÑÐÈËÔ±Ö¸³ö£¬£¬£¬¹¥»÷ʼÓÚ%APPDATA%\MicrosoftĿ¼Ï°µ²ØµÄ΢ÐÍÎļþ£¬£¬£¬Ëæºóѡȡ"½èÁ¦´òÁ¦"¼¼Êõ½Ù³Öϵͳ¿ÉÐŹ¤¾ßÈçPowerShell£¬£¬£¬ÆëÈ«ÔÚÄÚ´æÖÐÖ´ÐжñÒâ´úÂ룬£¬£¬Ô¤·À´«Í³Ó²ÅÌÎļþ²ÐÁô£¬£¬£¬´Ó¶øÈƹý»ù´¡É±¶¾Èí¼þ¼ì²â¡£¸Ã¶ñÒâÈí¼þ¾ß±¸Ë«ÖØ·ÛËé¸öÐÔ£º£ºÒ»·½ÃæÍ¨¹ýDonut¹¤¾ß½«¶ñÒâ´úÂë×¢Èëexplorer.exeµÈÈÕ³£¹ý³Ì£¬£¬£¬¼´±ã±»À¹½ØÒ²»áÆô¶¯¼à¶½·¨Ê½ÊµÏÖÃë¼¶×Ô¶¯ÖØÆô£»ÁíÒ»·½Ãæ×Ô¶¯½ûÓù¤×÷ÖÎÀíÆ÷ºÍUAC°²È«ÌáÐÑ£¬£¬£¬×è¶ÏÓû§»Ø»÷ÇþµÀ¡£ÆäÖ÷ÌâÖ¸±ê¾Û½¹ÓÚÐÅÏ¢ÇÔÈ¡£¬£¬£¬Pulsar RAT¿ÉÔ¶³Ì²Ù¿ØÉãÏñÍ·ºÍÂó¿Ë·çÖ´ÐÐ¼à¿Ø£¬£¬£¬¶øStealerv37ÔòרÃÅɨÃè¼ÓÃÜÇ®±ÒÇ®°ü¡¢¼à¿Ø¼ôÌù°å²¢´úÌæÖ§¸¶µØÖ·Ö´ÐÐ×ʽðµÁÈ¡£¬£¬£¬Í¬Ê±ÇÔÈ¡Chrome/Edgeä¯ÀÀÆ÷ÃÜÂë¼°Cookie¡¢NordVPNµÈVPNƾ֤¡¢¿ª·¢Õß¹¤¾ßÊý¾Ý¼°Steam/RobloxµÈÓÎÏ·Õ˺š£ËùÓÐÔßÎïÊý¾Ý¾ùͨ¹ýDiscord/TelegramͨµÀ´«Ê䏸ºÚ¿Í¡£
https://hackread.com/windows-malware-pulsar-rat-live-chats-steal-data/
2. StopICE³¬10ÍòÓû§ÐÅÏ¢ÔâÁª°î»ú¹¹»ñÈ¡
1ÔÂ31ÈÕ£¬£¬£¬·´ÒÆÃñ·¨Âɾ֣¨ICE£©»î¶¯ÈËʿƽ̨StopICE½üÈÕÔâ·êÖØ´ó°²È«·ì϶£¬£¬£¬µ¼Ö³¬¹ý10ÍòÃûÓû§µÄСÎÒÐÅϢй¶¸øÔ̺¬Áª°îµ÷²é¾Ö£¨FBI£©¡¢ÒÆÃñ·¨Âɾ֣¨ICE£©ºÍºÓɽ°²È«µ÷²é¾Ö£¨HSI£©ÔÚÄÚµÄÃÀ¹úÁª°î»ú¹¹¡£º£ºÚ¿ÍÐû³Æ»ñÈ¡ÁËÓû§µÄÐÕÃû¡¢µÇ¼Ãû¡¢ÃÜÂë¡¢µç»°ºÅÂë¼°¾«È·GPS×ø±ê£¬£¬£¬²¢½«ÕâЩÊý¾ÝÖ±½Ó·¢Ë͸øµ±¾Ö¡£Õâ´ÎÊÂÎñÒý·¢Óû§ºÍ°²È«·ÖÎöʦ¶ÔÊý¾Ý¹æÄ£¼°¾ßÌåÐÔµÄÓÇÓô£¬£¬£¬Ð¹Â¶µÄGPS×ø±ê¿ÉÄܶ³ö»î¶¯ÈËʿסËù»ò³£È¥µØÖ·£¬£¬£¬¶øµÇ¼ÐÅÏ¢Ôò¿ÉÄܱ»ÓÃÓÚ×·×ÙСÎÒ»ò½Ó¼ûÆäËû¹ØÁªÕË»§£¬£¬£¬¼Ó¾ç·´ICE»î¶¯ÈËÊ¿Ãæ¶ÔµÄ·çÏÕ¡£StopICEƽ̨ÓɳÛÃûÎÞµ±¾ÖÖ÷ÒåÕßл¶ûÂü¡¤°Â˹͡Ö÷µ¼ÔËÓª£¬£¬£¬¸Ãƽ̨¶¨Î»Îª¡°×èÖ¹ICEͻϮ¾¯±¨ÍøÂ硱£¬£¬£¬Í¨¹ýÖÚ°ü·½Ê½ÍøÂç²¢°ä²¼ICEÔÚÈ«¹úÁìÓòÄڵķ¨ÂÉÐж¯ÐÅÏ¢£¬£¬£¬Ô̺¬³µÁ¾Ä¿¶Ã¼Í¼¡¢³µÉ̱ꡢ¹¦·ò´ÁºÍµØÎ»£¬£¬£¬Ö¼ÔÚΪÈõÊÆÈºÌåÌṩ·¨ÂÉÔ¤¾¯¡¢Ë¾·¨ÔöÔ®¼°ÉçÇøÖ§³Ö×ÊÔ´¡£È»¶ø£¬£¬£¬Æ½Ì¨´æÔÚÐÅÀµ¶ÈÆÀ·ÖµÍ¡¢ËùÓÐȨ²»Ã÷µÈÕùÒé¡£
https://www.ibtimes.co.uk/stopice-hacked-names-locations-over-100k-users-were-sent-fbi-ice-hsi-1775307
3. ÃϼÓÀECÍøÕ¾¹ÊÕÏÖÂ1.4Íò¼ÇÕßÃô¸ÐÐÅϢй¶
1ÔÂ31ÈÕ£¬£¬£¬ÃϼÓÀ¹úÑ¡¾ÙίԱ»á£¨EC£©×¨ÓÃÃÅ»§ÍøÕ¾pr.ecs.gov.bd²úÉúÖØ´ó¼¼Êõ¹ÊÕÏ£¬£¬£¬µ¼ÖÂÔ¼14000Ãû¼ÇÕßµÄÃô¸ÐСÎÒÊý¾Ýй¶¡£Õâ´ÎÐ¹Â¶Éæ¼°¹úÃñÉí·ÝÖ¤ºÅÂë¡¢ÊÖ»úºÅÂ뼰ýÌå´ÓÒµÈËÔ±µÄÆëÈ«ÉêÇë±í¸±±¾£¬£¬£¬ÕâЩ¼ÇÕß´ËǰÒÑÔÚÏß×¢²áÉêÇë¼ÇÕßÖ¤ºÍ³µÁ¾ÌùÖ½£¬£¬£¬ÒÔ±¸¼´½«µ½À´µÄµÚÊ®Èý½ìÈ«¹úÒé»áÑ¡¾ÙºÍÈ«Ãñ¹«Í¶Ö®Ó᣸ÃÍøÕ¾ÔÖ¼ÔÚͨ¹ýÏÖ´ú»¯¼¿Á©¼ò»¯¼ÇÕßÖ¤ÉêÇëÁ÷³Ì£¬£¬£¬µ«¹ÊÕ϶³öÁËÑÏÖØ°²È«Òþ»¼¡£¾ßÌå¶øÑÔ£¬£¬£¬Óû§µÇÂ¼ÍøÕ¾ºó£¬£¬£¬Ê×Ò³»áÁ¢¼´ÏÔʾËùÓÐÉêÇëÈËµÄÆëÈ«Ãûµ¥£¬£¬£¬ÏµÍ³ÔÊÐíÈκÎÈ˽Ӽû²¢´ò¿ªÆëÈ«µÄÉêÇëÎļþ£¬£¬£¬´Ó¶øÐ¹Â¶¸öÈËÁªÏµ·½Ê½ºÍÉí·ÝÖ¤ºÅÂëµÈÃô¸ÐÐÅÏ¢¡£·ì϶±»·¢Ïֺ󣬣¬£¬ÍøÕ¾Ñ¸ËÙ±»½ûÓÃÒÔÔ¤·À½øÒ»²½Î´¾ÊÚȨ½Ó¼û¡£Ñ¡¾ÙίԱ»á¹«¹²¹ØÏµ²¿ÃÅÖ÷Èγºú¶û¡¤°¢Ã÷¡¤ÂíÀû¿Ë°µÊ¾£¬£¬£¬¸ÃÔÚÏßϵͳ±¾Ó¦ÓÚÖÜÎåÍ£Ó㬣¬£¬µ«ÕƹÜÍøÕ¾ÖÎÀíµÄ¹ÙÔ±ÖÜÁùÏÂÎç¶ÌÔÝ¿ªÆôÁ˸ÃÍøÕ¾£¬£¬£¬µ¼ÖÂÊý¾Ýй¶¡£ËûÈ·ÈÏÍøÕ¾Ä¿Ç°ÒÑÏÂÏߣ¬£¬£¬²¢Ç¿µ÷ÕýÔÚµ÷²éϵͳΪºÎÄÜÔÚ·ÇÔ¤ÆÚ¹¦·ò±»½Ó¼û¡£
https://www.observerbd.com/news/564449
4. Arsink°²×¿Ä¾Âí¼Ù×°50ÓàÆ·ÅÆÈ«ÇòϰȾ³¬4.5ÍòÉ豸
1ÔÂ30ÈÕ£¬£¬£¬Zimperium zLabs×êÑÐÈËÔ±½üÈÕ·¢ÏÖÃûΪArsinkµÄΣÏÕ°²×¿Ä¾Âí£¬£¬£¬¸ÃľÂí¼Ù×°³ÉWhatsApp¡¢TikTokµÈ50Óà¸ö³ÛÃûÆ·ÅÆ£¬£¬£¬Í¨¹ýTelegram¡¢Discord¼°MediaFireµÈ·Ç¹Ù·½ÇþµÀ´«²¼£¬£¬£¬ÔÚÈ«Çò143¸ö¹ú¶ÈϰȾ³¬4.5Íǫ̀É豸£¬£¬£¬ÆäÖа£¼°£¨Ô¼1.3Íò£©¡¢Ó¡¶ÈÄáÎ÷ÑÇ£¨7000£©¡¢ÒÁÀ¿Ë£¨3000£©ÎªÖØÔÖÇø¡£¸ÃľÂíѡȡ¡°×¨Òµ°æ¡±ÀûÓÃÏÝÚåÕ½Êõ£¬£¬£¬ÒÔÌṩÕý°æÀûÓÃȱʧµÄÌØÊâÖ°ÄÜΪµö¶ü£¬£¬£¬ÓÕµ¼Óû§ÏÂÔØ¡£×°Öú󣬣¬£¬ÀûÓÃÁ¢¼´ÒªÇóÓû§ÊÚÓè´óÁ¿È¨ÏÞ£¬£¬£¬Ëæºó°µ²Ø×ÔÉíͼ±ê²¢ÔÚºó¶ÜÔËÐУ¬£¬£¬²¿ÃŰ汾ÉõÖÁÄÚÖõڶþ¸ö¡°ÓÐÐ§ÔØºÉ¡±£¬£¬£¬ÊµÏÖÀëÏßϰȾ¡£ArsinkÆô¶¯¡°³ÖÐøºó¶Ü·þÎñ¡±È·±£ÓÀ²»¹Ø±Õ£¬£¬£¬¾ß±¸Ô¶³Ì½ÚÖÆ¡¢¹àÒô¼àÌý¡¢¶ÌÐÅÇÔÈ¡¡¢ÕÕÆ¬µÁÈ¡¡¢ÁªÏµÈ˼°Í¨»°¼Í¼¶ÁÈ¡¡¢¹È¸èÕË»§ÓÊÏä½Ó¼ûµÈ¶ñÒâÖ°ÄÜ£¬£¬£¬¸ü¿ÉÇ¿ÖÆÊÖ»ú²¦´òµç»°¡¢×·×Ù¾«È·µØÎ»£¬£¬£¬ÉõÖÁ¶Ô´æ´¢¿Õ¼ä½øÐС°·ÛËéÐÔ²Á³ý¡±¡£ËùÓÐÇÔÈ¡Êý¾Ýͨ¹ý317¸öÊý¾Ý¿âÈë¿ÚÔ̺¬Firebase¡¢Telegram»úеÈ˼°GoogleÔÆ¶ËÓ²Å̰µ²ØÎļþ¼Ð»Ø´«ÖÁºÚ¿Í¡£
https://hackread.com/arsink-spyware-whatsapp-youtube-instagram-tiktok/
5. È«Çò½áºÏ·¨Âɵ·»Ù¹¤Òµ¼¶·¸·¨IPTV·¸×ïÍøÂç
1ÔÂ30ÈÕ£¬£¬£¬Å·ÖÞÐ̾¯×éÖ¯¡¢Å·ÖÞ˾·¨×éÖ¯Óë¹ú¼ÊÐ̾¯×éÖ¯½áºÏе÷£¬£¬£¬ÓÉÒâ´óÀû¿¨ËþÄáÑǼì²ì¹Ù°ì¹«ÊҺ͹ú¶È¾¯Ô±Ö÷µ¼µÄÈ«Çò·¨ÂÉÐж¯£¬£¬£¬ÔÚ11¸ö³ÇÊÐ14¸ö¹ú¶È·¢Õ¹×îн׶νø¹¥£¬£¬£¬ÖصãÕë¶ÔÒâ´óÀûÃ×À¼¶¬°Â»áÆÚ¼ä·¸·¨ÌåÓýÈüÊÂת²¥ÎÊÌâ¡£Ðж¯²é»ñÈý¼Ò¹¤Òµ¼¶·¸·¨IPTV·þÎñÉÌIPTVItalia¡¢migliorIPTVºÍDarkTV£¬£¬£¬²ð½âÆä¸²¸Ç°ÙÍò¼¶ÖÕ¶ËÓû§µÄÐÅÏ¢¼¼Êõ»ù´¡ÉèÊ©£¬£¬£¬È·ÈÏ31ÃûÉæ°¸ÈËÔ±£¬£¬£¬ÆäÖÐ11ÈËλÓÚÒâ´óÀû£¬£¬£¬ÆäÓàÉ¢²¼ÔÚÓ¢¹ú¡¢Î÷°àÑÀ¡¢ÂÞÂíÄáÑÇ¡¢¿ÆË÷Îֵȵء£µ÷²éÏÔʾ£¬£¬£¬¸Ã·¸×ï×éÖ¯²ã¼¶Ã÷ÏÔ£¬£¬£¬Í¨¹ý¼ÓÃÜÇ®±ÒÖ§¸¶¡¢¿Õ¿Ç¹«Ë¾Ï´Ç®µÈ¼¿Á©Ìӱܼà¹Ü£¬£¬£¬Ã¿Ô·¸·¨»ñÀûÊý°ÙÍòÅ·Ôª¡£Æä·¸·¨½ØÈ¡²¢ÖØÐ´«ÊäSky¡¢DAZN¡¢Mediaset¡¢Amazon Prime¡¢Netflix¡¢Paramount¡¢Disney+µÈƽ̨ÄÚÈÝ£¬£¬£¬¼Óº¦°æÈ¨µÄͬʱִÐÐÍÆËã»úڲơ¢Ðéα×ʲúµÇ¼ÇµÈ·¸×ï״Ϊ¡£Òâ´óÀû¾¯·½Åû¶£¬£¬£¬½ö¸Ã¹ú¾ÍÓÐÖÁÉÙ250¼Ò¾ÏúÉ̺Í10ÍòÓû§ÊÜÓ°Ï죬£¬£¬ÂÞÂíÄáÑDzð³ý6̨·þÎñÆ÷£¬£¬£¬·ÇÖÞÒàÓÐһ̨·þÎñÆ÷±»²é·â¡£
https://www.bleepingcomputer.com/news/legal/operation-switch-off-dismantles-major-pirate-tv-streaming-services/
6. CISA½«Ivanti EPMM¸ßΣ·ì϶²ÎÓëKEVĿ¼
1ÔÂ30ÈÕ£¬£¬£¬ÃÀ¹úÍøÂ簲ȫºÍ»ù´¡ÉèÊ©°²È«¾Ö£¨CISA£©½üÈÕ½«Ivanti Endpoint Manager Mobile£¨EPMM£©µÄ´úÂë×¢Èë·ì϶£¨CVE-2026-1281£¬£¬£¬CVSSÆÀ·Ö9.8£©ÄÉÈëÒÑÖªÀûÓ÷ì϶£¨KEV£©Ä¿Â¼¡£¸Ã·ì϶ÔÊÐíδ¾Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÔ¶³ÌÖ´ÐдúÂ룬£¬£¬×é³ÉÑÏÖØ°²È«Íþв¡£Ivanti¹«Ë¾Ö¤ÊµÒѼà²âµ½Õë¶Ô¸Ã·ì϶µÄ¹¥»÷ÐÐΪ£¬£¬£¬µ«°µÊ¾½öÓм«ÉÙÊý¿Í»§ÔÚ·ì϶Åû¶ʱÊܵ½ÏÖʵÀûÓá£Æ¾¾Ý°²È«²¼¸æ£¬£¬£¬·ì϶ԴÓÚIvanti EPMMµÄ´úÂë×¢Èëȱµã£¬£¬£¬¹¥»÷Õ߿ɽè´ËʵÏÖδ¾ÈÏÖ¤µÄÔ¶³Ì´úÂëÖ´ÐС£IvantiÇ¿µ÷£¬£¬£¬SentryºÍIvanti Neurons MDM²úÆ·²»ÊÜ´Ë·ì϶ӰÏ죬£¬£¬ÔÆ·þÎñ¿Í»§Ò²Î´²¨¼°¡£Ä¿Ç°£¬£¬£¬¹«Ë¾Õý³ÖÐøµ÷²éÊÂÎñϸ½Ú£¬£¬£¬ËäÉÐδ·¢ÏÖ¿¿µÃסÈëÇÖ¼£Ï󣬣¬£¬µ«ÒѰ䲼¼¼Êõ²¹¶¡¡¢À©´ó¿Í»§Ö§³ÖÁìÓò£¬£¬£¬²¢Ó밲ȫºÏ×÷ͬ°é¼°·¨Âɲ¿ÃÅ·¢Õ¹ºÏ×÷¡£Æ¾¾ÝÓµÓÐÔ¼ÊøÁ¦µÄ²Ù×÷Ö¸ÁBOD£©22-01ÒªÇ󣬣¬£¬Áª°î»ú¹¹ÐèÔÚ2026Äê2ÔÂ2ÈÕǰʵÏÖ·ì϶ÐÞ¸´£¬£¬£¬ÒÔ½µµÍÖØ´ó·çÏÕ¡£
https://securityaffairs.com/187488/security/u-s-cisa-adds-a-flaw-in-ivanti-epmm-to-its-known-exploited-vulnerabilities-catalog.html


¾©¹«Íø°²±¸11010802024551ºÅ