Avayaϵͳ¹ÜÀíÔ±ÒòÉæÏÓ·Ç·¨Éú³É²¢ÏúÊÛVoIPÐí¿ÉÖ¤±»ÆðËß
Ðû²¼Ê±¼ä 2022-07-011¡¢Avayaϵͳ¹ÜÀíÔ±ÒòÉæÏÓ·Ç·¨Éú³É²¢ÏúÊÛVoIPÐí¿ÉÖ¤±»ÆðËß
¾Ý6ÔÂ29ÈÕ±¨µÀ£¬3ÃûÉæÏÓ³öÊÛ¼ÛÖµÁè¼Ý8800ÍòÃÀÔªµÄAvaya Holdings CorporationÈí¼þÐí¿ÉÖ¤µÄÏÓÒÉÈ˱»ÆðËߣ¬ÃæÁÙ14Ïîµç»ãÆÛÕ©ºÍÏ´Ç®µÄ×ïÃû¡£Æ¾¾Ýͨ¸æ£¬Avaya¿Í»§·þÎñÔ±¹¤Raymond Bradly PearceÀÄÓÃÆä¹ÜÀíԱȨÏÞÉú³ÉADIÈí¼þÐí¿ÉÖ¤ÃÜÔ¿£¬È»ºó³öÊÛ¸øAvayaÊÚȨ¾ÏúÉÌJason M. Hines£¬¹«Ë¾¹ºÖÃÕâЩÐí¿ÉÖ¤¿ÉÓÃÀ´½âËøAvaya IP Officeµç»°ÏµÍ³µÄ¹¦Ð§¡£¾Ý³Æ£¬Pearce»¹½Ù³ÖÁËÆäËûAvaya¹ÜÀíÔ±µÄÕË»§À´Éú³ÉÐí¿ÉÖ¤£¬ÒÔÖÆÖ¹ÒòΪÓëËûµÄÕË»§Ïà¹ØÁªµÄÃÜÔ¿Éú³ÉÁ¿Òì³£¶øÒýÆð»³ÒÉ¡£
https://www.bleepingcomputer.com/news/security/avaya-sysadmin-indicted-for-illegally-generating-selling-voip-licenses/
2¡¢ÎÖ¶ûÂê·ñÈÏÆäÔâµ½ºÚ¿ÍÍÅ»ïYanluowangµÄÀÕË÷¹¥»÷
ýÌå6ÔÂ29ÈÕ±¨µÀ³Æ£¬ÎÖ¶ûÂê·ñÈÏÆäÔâµ½ÁËYanluowangµÄÀÕË÷¹¥»÷¡£±¾ÖÜÒ»£¬ÀÕË÷ÍÅ»ïYanluowangÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾ÉÏÐû²¼ÁËÒ»¸öÌõÄ¿£¬Éù³ÆËûÃǼÓÃÜÁËÎÖ¶ûÂê40000ÖÁ50000̨É豸¡£¹¥»÷Õß͸¶£¬¹¥»÷·¢ÉúÔÚÒ»¸ö¶àÔÂǰ£¬ËûÃǼÓÃÜÁËÄ¿±êµÄÉ豸µ«Ã»ÓÐÇÔÈ¡ÈκÎÊý¾Ý£¬ÀÕË÷5500ÍòÃÀÔªµ«´ÓδÊÕµ½ÎÖ¶ûÂêµÄ»ØÓ¦£¬²¢Ðû²¼ÁË´ÓÎÖ¶ûÂêµÄWindowsÓòÖÐÌáÈ¡µÄÐÅÏ¢¡£ÎÖ¶ûÂê·ñÈÏÆäÔâµ½¹¥»÷£¬²¢ÌåÏÖÐÅÏ¢Äþ¾²ÍŶÓÕýÔÚ24/7È«Ììºò¼à¿ØËûÃǵÄϵͳ¡£
https://www.bleepingcomputer.com/news/security/walmart-denies-being-hit-by-yanluowang-ransomware-attack/
3¡¢Å²Íþ¶à¼ÒΪÃñÖÚÌá¹©ÖØÒª·þÎñµÄ´óÐ͹«Ë¾Ôâµ½DDoS¹¥»÷
¾ÝýÌå6ÔÂ29ÈÕ±¨µÀ£¬Å²Íþ¹ú¼ÒÄþ¾²¾Ö(NSM)³ÆÓë¶íÂÞ˹ÓÐ¹ØµÄºÚ¿Í¶ÔÆäÒªº¦×éÖ¯½øÐÐÁ˶à´ÎDDoS¹¥»÷¡£¸Ã»ú¹¹µÄÖ÷¹ÜSofie Nystr?mÐû²¼ÉùÃ÷£¬ÔÚ¹ýÈ¥24СʱÄÚ£¬Å²ÍþµÄÊý¸ö×éÖ¯ÒòÔâµ½¹¥»÷Öжϣ¬Ö÷ÒªÊÇһЩΪÃñÖÚÌá¹©ÖØÒª·þÎñµÄ´óÐ͹«Ë¾¡£NSM²»Ô¸Í¸Â¶ÄÄЩ×éÖ¯Ôâµ½Á˹¥»÷£¬µ«Â·Í¸ÉçÌåÏÖŲÍþÀ͹¤¼à²ì¾ÖÊÇÓ°ÏìµÄ×éÖ¯Ö®Ò»£¬ÔÚ±¾ÖÜÈý·¢ÉúÖжϡ£Ä¿Ç°£¬Å²ÍþÕÙ¿ªÁËÒ»´ÎÐÂÎÅÐû²¼»á£¬½éÉÜÁ˸þÖÊÇÈçºÎÓ¦¶ÔÕâÒ»ÎÊÌâµÄ¡£
https://therecord.media/norway-accuses-pro-russian-hackers-of-launching-wave-of-ddos-attacks/
4¡¢Intezer·¢ÏÖ¿ÉÇÔÈ¡YouTubeÕË»§µÄ¶ñÒâÈí¼þYTStealer
6ÔÂ29ÈÕ£¬IntezerÅû¶ÁËÖ¼ÔÚÇÔÈ¡YouTube´´×÷ÕßµÄÕË»§µÄжñÒâÈí¼þYTStealer¡£ÓëÆäËüÇÔÈ¡·¨Ê½µÄ²îÒìÖ®´¦ÔÚÓÚ£¬YTStealerÖ»Õë¶ÔÒ»Ïî·þÎñÇÔȡƾ¾Ý¡£·Ö·¢YTStealerÑù±¾µÄÎļþ²»Ö»°²×°YTStealer£¬»¹°²×°ÁËÆäËüÇÔÈ¡·¨Ê½£¬°üÂÞÇÔÈ¡·¨Ê½RedLineºÍVidar¡£¸Ã¶ñÒâÈí¼þÔÚÖ´ÐÐ֮ǰ»¹»á½øÐÐһЩ·´É³ºÐµÄ¼ì²é£¬Ê¹ÓÃÁËGitHubÉϵĿªÔ´¹¤¾ßChacal¡£µ±È·¶¨Ä¿±êºó£¬Ëü»á×Ðϸ¼ì²éä¯ÀÀÆ÷SQLÊý¾Ý¿âÎļþÒÔ¶¨Î»YouTubeÉí·ÝÑéÖ¤ÁîÅÆ¡£
https://www.intezer.com/blog/research/ytstealer-malware-youtube-cookies/
5¡¢AmazonÐÞ¸´PhotosÓ¦ÓÃÖпÉй¶Óû§·ÃÎÊÁîÅÆµÄ©¶´
ýÌå6ÔÂ29Èճƣ¬AmazonÐÞ¸´ÁËÆäPhotosÓ¦ÓÃÖÐÒ»¸öÑÏÖØµÄ©¶´£¬¸ÃÓ¦ÓÃÔÚGoogle PlayµÄÏÂÔØÁ¿ÒÑÁè¼Ý5000Íò´Î¡£Checkmarx·¢Ïָé¶´Ô´ÓÚÓ¦Ó÷¨Ê½×é¼þÅäÖôíÎ󣬵¼ÖÂÆäÇåµ¥ÎļþÎÞÐèÉí·ÝÑéÖ¤¼´¿É´ÓÍⲿ·ÃÎÊ¡£ÀûÓôË©¶´¿ÉÄÜ»áʹ°²×°ÔÚͬһÉè±¹ØÁ¬Ä¶ñÒâÓ¦ÓûñÈ¡ÓÃÓÚAmazon APIÉí·ÝÑéÖ¤µÄAmazon·ÃÎÊÁîÅÆ¡£Ñо¿ÈËÔ±³Æ£¬ÀÕË÷Èí¼þºÜÈÝÒ׳ÉΪDZÔڵĹ¥»÷ý½é£¬¹¥»÷ÕßÖ»ÐèÒª¶ÁÈ¡¡¢¼ÓÃܺÍÖØÐ´Ä¿±êµÄÎļþ£¬Í¬Ê±²Á³ýËûÃǵÄÀúÊ·¼Ç¼¡£´ËÍ⣬ÆäËüAmazon APIsÒ²¿ÉÄÜʹÓÃÏàͬµÄÁîÅÆ£¬ÈçPrime Video¡¢AlexaºÍKindleµÈ£¬Òò´Ë£¬·çÏÕ¿ÉÄÜÊÇÉîÔ¶µÄ¡£
https://www.bleepingcomputer.com/news/security/amazon-fixes-high-severity-vulnerability-in-android-photos-app/
6¡¢º«¹úKISAÐû²¼ÊÊÓÃÓÚv1µ½v4°æ±¾µÄHive½âÃܹ¤¾ß
6ÔÂ30ÈÕ±¨µÀ£¬º«¹úÍøÂçÄþ¾²»ú¹¹KISAÐû²¼ÁËÀÕË÷Èí¼þHiveµÄÃâ·Ñ½âÃÜÆ÷£¬ÊÊÓÃÓÚv1µ½v4°æ±¾¡£Hive×Ô2021Äê6ÔÂÒÔÀ´Ò»Ö±»îÔ¾£¬Æ¾¾ÝChainalysisµÄÊý¾Ý£¬ËüÊÇ2021ÄêÊÕÈëTop 10µÄÀÕË÷Èí¼þÍÅ»ïÖ®Ò»¡£½ñÄê2Ô£¬Kookmin´óѧµÄÑо¿ÈËÔ±·¢ÏÖÁËHiveʹÓõļÓÃÜËã·¨ÖдæÔÚÒ»¸ö©¶´£¬¿ÉÓÃÀ´ÔÚ²»ÖªµÀ¼ÓÃÜÎļþµÄ˽ԿµÄÇé¿öϽâÃÜÊý¾Ý¡£
https://securityaffairs.co/wordpress/132770/malware/hive-ransomware-decryptor.html