·áÌïÔÆ·þÎñÅäÖôíÎóй¶ÑÇÖ޺ʹóÑóÖÞ¿Í»§ÐÅÏ¢Ô¼ÆßÄê

Ðû²¼Ê±¼ä 2023-06-02

1¡¢·áÌïÔÆ·þÎñÅäÖôíÎóй¶ÑÇÖ޺ʹóÑóÖÞ¿Í»§ÐÅÏ¢Ô¼ÆßÄê


¾Ý5ÔÂ31ÈÕ±¨µÀ£¬·áÌïÆû³µ·¢ÏÖÁËÁíÍâÁ½¸öÅäÖôíÎóµÄÔÆ·þÎñ£¬Ð¹Â¶Á˳µÖ÷µÄ¸öÈËÐÅÏ¢Áè¼ÝÆßÄê¡£µÚÒ»¸öÔÆ·þÎñÔÚ2016Äê10ÔÂÖÁ2023Äê5ÔÂÆÚ¼äй¶ÁËÑÇÖ޺ʹóÑóÖÞ·áÌï¿Í»§µÄ¸öÈËÐÅÏ¢£¬¸ÃÆû³µÖÆÔìÉÌÉÐδ˵Ã÷Óм¸¶à¿Í»§Êܵ½´Ë´ÎʼþµÄÓ°Ïì¡£µÚ¶þ¸öÔÆ·þÎñÔÚ2015Äê2ÔÂ9ÈÕÖÁ2023Äê5ÔÂ12ÈÕÆÚ¼ä̻¶£¬°üÂÞÈÕ±¾Ô¼260000¸ö¿Í»§µÄÆû³µµ¼º½ÏµÍ³Ïà¹ØµÄÐÅÏ¢¡£ÊÜÓ°ÏìµÄ³µÁ¾ÊÇ·áÌï×ÓÆ·ÅÆÀ׿ËÈøË¹µÄ³µÐÍ¡£·áÌïÌåÏÖ£¬ËüÒѾ­ÊµÊ©ÁËÒ»¸öϵͳ£¬¿ÉÒÔ¶¨ÆÚ¼à¿ØÆäËùÓл·¾³ÖеÄÔÆÅäÖúÍÊý¾Ý¿âÉèÖã¬ÒÔ·ÀֹδÀ´ÔٴηºÆð´ËÀàÎÊÌâ¡£


https://www.bleepingcomputer.com/news/security/toyota-finds-more-misconfigured-servers-leaking-customer-info/


2¡¢ÉúÎï¼¼Êõ¹«Ë¾Enzo Biochem½ü250ÍòÈ˵ÄÁÙ´²Êý¾Ý±»µÁ


¾ÝýÌå6ÔÂ1ÈÕ±¨µÀ£¬ÉúÎï¼¼Êõ¹«Ë¾Enzo BiochemÔâµ½ÀÕË÷¹¥»÷£¬µ¼ÖÂÔ¼2470000È˵ÄÁÙ´²²âÊÔÐÅϢй¶¡£EnzoÖÆÔìºÍÏúÊÛ»ùÓÚDNAµÄ²âÊÔÒÔ¼ì²â²¡¶¾ºÍϸ¾ú¼²²¡£¬°üÂÞCOVID-19ºÍ°©Ö¢¡£¸Ã¹«Ë¾ÔÚ4ÔÂ11ÈÕ·¢ÏÖ¿Í»§ÐÕÃûºÍ²âÊÔÐÅÏ¢£¬ÒÔ¼°Ô¼600000¸öÉç»áÄþ¾²ºÅÂë±»·ÃÎÊ£¬Ä¿Ç°Ã»ÓÐÀÕË÷ÍÅ»ïÌåÏֶԴ˴ι¥»÷ÂôÁ¦¡£Enzo³ÆÒѽ«ÆäϵͳÓ뻥ÁªÍø¶Ï¿ªÁ¬½Ó£¬ÏÖÔÚÈÔÔÚÊÓ²ì´Ëʼþ¡£


https://therecord.media/clinical-test-data-of-enzio-biochem-stolen


3¡¢ÑÇÂíÑ·ÒòRingºÍAlexaÇÖ·¸ÒþË½ÃæÁÙ3000ÍòÃÀÔª· £¿î


 Ã½Ìå5ÔÂ31Èճƣ¬ÑÇÂíÑ·½«Ö§¸¶3000ÍòÃÀÔªµÄ· £¿î£¬ÒÔ½â¾öÃÀ¹úFTC¶ÔÆäRingºÍAlexaÏà¹ØµÄÇÖ·¸Òþ˽µÄÖ¸¿Ø¡£Í¶Ë߳ƣ¬RingÊÚÓèÆäÔ±¹¤ºÍ³Ð°üÉÌ·ÃÎÊ˽ÈËÊÓÆµµÄȨÏÞ£¬ÕâÇÖ·¸Á˿ͻ§µÄÒþ˽¡£Ëü»¹Ã»ÓÐʵʩ»ù±¾µÄÒþ˽ºÍÄþ¾²´ëÊ©£¬ºÚ¿Í¿ÉÈëÇÖÕÊ»§À´¿ØÖÆÏû·ÑÕßµÄÏà»úºÍÊÓÆµ¡£Æ¾¾ÝÄâÒéµÄÃüÁRing±ØÐëÏòÏû·ÑÕßÖ§¸¶580ÍòÃÀÔªµÄÍ˿ÔÚÁíÒ»Æð°¸¼þÖУ¬FTCºÍDOJÖ¸¿ØÑÇÂíÑ·Î¥·´¶ùͯÒþ˽·¨£¬Î´ÄÜÓ¦âïÊѵÄÒªÇóɾ³ýËûÃǵļÒôºÍµØÀíλÖÃÐÅÏ¢¡£Æ¾¾ÝÄâÒéµÄÃüÁÑÇÂíÑ·±ØÐëÖ§¸¶2500ÍòÃÀÔª¡£


https://www.bleepingcomputer.com/news/technology/amazon-faces-30-million-fine-over-ring-alexa-privacy-violations/


4¡¢BlackCatÉù³Æ¶ÔÖ´·¨¼¼Êõƽ̨CasepointµÄ¹¥»÷ÂôÁ¦


6ÔÂ1ÈÕ±¨µÀ³Æ£¬ÀÕË÷ÍÅ»ïBlackCatÔÚÆäÍøÕ¾ÁгöÁËCasepoint¡£CasepointÌṩÁËÒ»¸öÖ´·¨¼¼Êõƽ̨£¬±»¶à¸öÃÀ¹ú»ú¹¹Ê¹Ó㬰üÂÞSEC¡¢FBIºÍÃÀ¹ú·¨Ôº¡£¸ÃÍÅ»ï³ÆÒÑÇÔÈ¡2TBµÄÃô¸ÐÊý¾Ý£¬Éæ¼°ÂÉʦ¡¢SEC¡¢DoD¡¢FBIºÍ¾¯²ìµÈ¡£¸ÃºÚ¿ÍÍÅ»ï¹ûÈ»Á˱»ÈëÇÖ»ù´¡ÉèÊ©µÄ²¿ÃÅ×ÊÔ´µÄƾ¾ÝÒÔ¼°¾Ý³ÆÊDZ»µÁÎļþµÄһЩͼƬ£¬ÒÔ¶½´ÙCasepoint¿ªÊ¼Ì¸ÅС£BlackCat×Ô2021Äê11Ô¿ªÊ¼»îÔ¾£¬Êê½ðÒªÇó´Ó¼¸ÍòÃÀÔªµ½ÊýǧÍòÃÀÔª²»µÈ¡£


https://securityaffairs.com/146915/cyber-crime/blackcat-ransomware-casepoint.html


5¡¢Group-IB³ÆDark Pink¼ÌÐøÕë¶ÔÑÇÌ«µØÓòµÄ¾üÕþµÈÐÐÒµ


5ÔÂ31ÈÕ£¬Group-IBÅû¶ÁËDark Pink½üÆÚÐÂÒ»ÂֵĹ¥»÷»î¶¯¡£¸ÃÍÅ»ï×Ô2021ÄêÖÐÒÔÀ´Ò»Ö±»îÔ¾£¬Ö÷ÒªÕë¶ÔÑÇÌ«µØÓòµÄ×éÖ¯¡£Æ¾¾Ý×îÐÂÊÓ²ì½á¹û£¬Group-IBÈ·ÈÏÁË5¸öеı»¹¥»÷×éÖ¯£¬°üÂÞÎÄÀ³¡¢Ó¡¶ÈÄáÎ÷ÑÇ¡¢Ì©¹úºÍÔ½ÄϵÄÕþ¸®¡¢¾ü¶ÓºÍ·ÇÓªÀû×éÖ¯£¬ÒÔ¼°±ÈÀûʱµÄ½ÌÓý×éÖ¯¡£¹¥»÷ʼÓÚµöÓãÓʼþÖеÄISOÎĵµ£¬ËüʹÓÃDLL²à¼ÓÔØÀ´Æô¶¯ºóÃÅTelePowerBotºÍKamiKakaBot¡£´ËÍ⣬ֲÈ뷨ʽ´ÓÄÚ´æÖмÓÔØ£¬²»½Ó´¥´ÅÅÌ£¬ÕâÓÐÖúÓÚÈÆ¹ý¼ì²â¡£ÔÚ×î½üµÄÒ»´Î¹¥»÷ÖУ¬Dark PinkʹÓ÷þÎñWebhookͨ¹ýHTTPЭÒéй¶±»µÁÊý¾Ý¡£


https://www.group-ib.com/blog/dark-pink-episode-2/


6¡¢AT&T·¢ÏÖеÄSeroXen RATÖ÷Òª±»ÓÃÓÚ¹¥»÷ÓÎÏ·ÉçÇø


5ÔÂ30ÈÕ£¬AT&TÐû²¼Á˹ØÓÚеÄSeroXen RATµÄ·ÖÎö³ÂËß¡£¸Ã¶ñÒâÈí¼þÓÚ2022Äêµ×·ºÆð£¬´ò×ÅWin 11ºÍWin 10ºÏ·¨Ô¶³Ì·ÃÎʹ¤¾ßµÄ»Ï×Ó³öÊÛ£¬µ«ÔÚºÚ¿ÍÂÛ̳Éϱ»Ðû´«ÎªÔ¶³Ì·ÃÎÊľÂí¡£SeroXen»ùÓÚÖÖÖÖ¿ªÔ´ÏîÄ¿£¬°üÂÞQuasar RAT¡¢r77 rootkitºÍNirCmdÃüÁîÐй¤¾ß¡£Ñо¿ÈËÔ±³Æ£¬×Ô´´½¨ÒÔÀ´ÒѾ­·ºÆðÁËÊý°Ù¸öÑù±¾£¬Ö÷ÒªÕë¶ÔÓÎÏ·ÉçÇø£¬µ«Ëæ×Ÿù¤¾ßÔ½À´Ô½ÊÜ»¶Ó­£¬Ä¿±ê·¶Î§¿ÉÄÜ»áÀ©´óµ½°üÂÞ´óÐ͹«Ë¾ºÍ×éÖ¯¡£


https://cybersecurity.att.com/blogs/labs-research/seroxen-rat-for-sale