ÔËÓªÉÌDP WorldÔâµ½¹¥»÷µ¼Ö°ĴóÀûÑǶà¸ö¿Ú°¶¹Ø±Õ

Ðû²¼Ê±¼ä 2023-11-14

1¡¢ÔËÓªÉÌDP WorldÔâµ½¹¥»÷µ¼Ö°ĴóÀûÑǶà¸ö¿Ú°¶¹Ø±Õ


¾ÝýÌå11ÔÂ13ÈÕ±¨µÀ£¬ÎïÁ÷¹«Ë¾DP World AustraliaÔâµ½¹¥»÷£¬µ¼Ö°ĴóÀûÑǵÄ4¸öÖ÷Òª¿Ú°¶¹Ø±Õ¡£DP World´¦ÖðĴóÀûÑÇ40%µÄ¼¯×°ÏäóÒ×£¬ÉùÃ÷³Æ£¬11ÔÂ10ÈÕµÄÍøÂç¹¥»÷Ó°ÏìÁËÆä¿Ú°¶µÄ½·»õÔËÒµÎñ¡£×ÔÉÏÖÜÎåÒÔÀ´£¬Ô¼30000¸ö¼¯×°ÏäһֱûÓб»Òƶ¯£¬¶øÇÒÕ¼ÂúÁË¿ÉÓõĴ洢¿Õ¼ä£¬Ô¤¼ÆËðʧ´ïÊý°ÙÍòÃÀÔª¡£Ä¿Ç°£¬ÔËÓªÕýÔÚÖð²½»Ö¸´£¬ÉÐÎÞ¹¥»÷ÍÅ»ïÉù³Æ¶Ô´ËÊÂÂôÁ¦¡£


https://www.bleepingcomputer.com/news/security/dp-world-cyberattack-blocks-thousands-of-containers-in-ports/


2¡¢¹¥»÷ÕßÔÚDollyÖ§¸¶²¿ÃÅÊê½ðºóÈÔÑ¡Ôñ¹ûȻ͵ȡµÄÊý¾Ý


ýÌå11ÔÂ10Èճƣ¬ÔÚDolly.comÖ§¸¶²¿ÃÅÊê½ðºó£¬¹¥»÷ÕßÈÔȻѡÔñ¹ûȻ͵ȡµÄÊý¾Ý¡£Dolly.comÔÚ8ÔÂÄ©»ò9Ô³õµÄij¸öʱºòÔâµ½ÈëÇÖ£¬ÐÅÓÿ¨ÏêϸÐÅÏ¢ºÍDolly.comÄÚ²¿ÏµÍ³µÄ¹ÜÀíԱƾ֤µÈÃô¸ÐÊý¾Ýй¶¡£¹¥»÷Õߺ͸ù«Ë¾Ö®¼äµÄÒ»·âÈÕÆÚΪ9ÔÂ7ÈÕµÄÓʼþÏÔʾ£¬DollyͬÒâÖ§¸¶Êê½ð¡£Æ¾¾Ý¹¥»÷ÕßµÄ˵·¨£¬¸Ã¹«Ë¾È·ÊµÖ§¸¶ÁËÊê½ð£¬µ«²¢²»×ãÒÔÂú×ãËûÃǵÄÒªÇ󡣸ÃÍÅ»ïûÓÐÍË»ØÊê½ð£¬¶øÇÒ¹ûÈ»ÁËй¶Êý¾Ý¡£Î¨Ò»ÖµµÃÇìÐÒµÄÊÇ£¬¿ÉÏÂÔØµÄÎļþÔÚÐû²¼Ò»Öܺó±»É¾³ý¡£


https://securityaffairs.com/153975/cyber-crime/dolly-com-pays-ransom.html


3¡¢¼ÓÃܽ»Òׯ½Ì¨PoloniexÔâµ½¹¥»÷ËðʧÁè¼Ý1ÒÚÃÀÔª


¾Ý11ÔÂ13ÈÕ±¨µÀ£¬ºÚ¿Í´Ó¼ÓÃÜ»õ±Ò½»Òׯ½Ì¨PoloniexÇÔÈ¡ÁËÁè¼Ý1ÒÚÃÀÔª¡£¸Ãƽ̨ÔÚÉ罻ýÌåÉÏ֤ʵ£¬ÕýÔÚÊÓ²ìÕâÆðʼþ£¬²¢¼Æ»®È«¶îÅâ³¥ÊÜÓ°ÏìµÄ¿Í»§¡£PoloniexÌåÏÖ½«ÏòºÚ¿ÍÖ§¸¶±»µÁ×ʽðµÄ5%×÷ΪÉͽð£¬Ï£ÍûÆä¹é»¹×ʽð¡£Poloniex³ÆËûÃǵÄÍŶÓÒÑÀÖ³Éʶ±ð²¢¶³½áÁËÓëºÚ¿ÍµØÖ·Ïà¹ØµÄ²¿ÃÅ×ʲú¡£Ä¿Ç°£¬ËðʧÔڿɿط¶Î§ÄÚ£¬PoloniexµÄÓªÒµÊÕÈë¿ÉÒÔÃÖ²¹ÕâЩËðʧ¡£Äþ¾²¹«Ë¾Slow MistÌåÏÖËðʧԼΪ1.3ÒÚÃÀÔª£¬Beosin¹«Ë¾Ô¤¼ÆËðʧΪ1.14ÒÚÃÀÔª¡£


https://therecord.media/poloniex-cryptocurrency-platform-millions-stolen


4¡¢Medusa³ÆÒÑÈëÇÖ¼ÓÄôó½ðÈڿƼ¼¹«Ë¾Moneris²¢ÀÕË÷600ÍòÃÀÔª


11ÔÂ14ÈÕ±¨µÀ£¬ÀÕË÷ÍÅ»ïMedusaÔÚÖÜÒ»Éù³ÆËûÃǹ¥»÷ÁËMoneris£¬²¢¸ø¸Ã¹«Ë¾9ÌìµÄʱ¼äÖ§¸¶600ÍòÃÀÔªµÄÊê½ð¡£MonerisÊǼÓÄôóÁ½¼Ò×î´óµÄÒøÐд´½¨µÄÒ»¼Ò¿Æ¼¼¹«Ë¾£¬ËüÌåÏÖÒÑÀֳɵÖÓùÁË×î½üµÄÀÕË÷¹¥»÷¡£Òªº¦Êý¾ÝûÓб»·ÃÎÊ£¬Ò²Ã»ÓÐÊê½ðÒªÇó¡£Moneris·¢ÑÔÈË˵£¬È·ÊµÓÐÍⲿÈËÔ±ÊÔͼÈëÇÖMonerisµÄϵͳ£¬µ«ËûÃǵÄÍŶӶÔÕâһʼþ½øÐÐÁËÈ«ÃæµÄÉó¼ÆºÍ·ÖÎö£¬µÃ³öµÄ½áÂÛÊÇûÓд¥·¢ÆäÊý×Ö¶ªÊ§·À»¤Õþ²ß¡£MonerisÔøÔÚ9Ô·ݷ¢ÉúϵͳÖжÏ£¬Ó°ÏìÁ˼ÓÄôó¸÷µØµÄÊýÊ®¼ÒÆóÒµ¡£


https://therecord.media/moneris-canada-ransomware-attack-prevented


5¡¢Ñо¿ÈËÔ±·¢ÏÖÀûÓÃGoogle Ads·Ö·¢Ä¾Âí»¯CPU-ZµÄ»î¶¯


MalwarebytesÔÚ11ÔÂ8ÈÕÅû¶Á˹¥»÷ÕßÀÄÓÃGoogle Ads·Ö·¢Ä¾Âí»¯CPU-ZµÄ»î¶¯¡£Ä¾Âí»¯CPU-ZµÄ¶ñÒâ¹È¸è¹ã¸æÍйÜÔںϷ¨WindowsÐÂÎÅÍøÕ¾WindowsReportµÄ¿Ë¡¸±±¾ÉÏ£¬·ÃÎÊÕßµã»÷¹ã¸æºó»á±»Öض¨Ïòµ½¶ñÒâÍøÕ¾¡£¶ñÒâÍøÕ¾ÉÏÍйܾ­¹ýÊý×ÖÇ©ÃûµÄCPU-Z°²×°·¨Ê½£¨MSIÎļþ£©£¬ÆäÖаüÂÞ¶ñÒâÈí¼þ¼ÓÔØ·¨Ê½FakeBatµÄPowerShell½Å±¾¡£¼ÓÔØ·¨Ê½´ÓÔ¶³ÌURL»ñÈ¡Redline Stealer payload£¬²¢ÔÚÄ¿±ê¼ÆËã»úÉÏÆô¶¯Ëü¡£


https://www.malwarebytes.com/blog/threat-intelligence/2023/11/malvertiser-copies-pc-news-site-to-deliver-infostealer


6¡¢BlackberryÐû²¼¹ØÓÚBiBi-Linux WiperµÄ·ÖÎö³ÂËß


11ÔÂ10ÈÕ£¬BlackberryÐû²¼Á˹ØÓÚBiBi-Linux WiperµÄ·ÖÎö³ÂËß¡£Ñо¿ÈËÔ±Ö®Ç°ÔøÔÚÕë¶ÔÒÔÉ«Áй«Ë¾µÄ¹¥»÷Öз¢ÏÖÁËÐÂÐͲÁ³ý¶ñÒâÈí¼þBiBi-Linux Wiper£¬Ö®ºóBlackBerry·¢ÏÖÁËÒ»¸öÕë¶ÔWindowsϵͳµÄ±äÌ壬²¢³ÆÎªBiBi-Windows Wiper¡£¸Ã±äÌå¾Ý³Æ±àÒëÓÚ10ÔÂ21ÈÕ£¬ÓëLinux±äÌåµÄÏàËÆÖ®´¦ÊǶàÏ̹߳¦Ð§£¬ËüÔËÐÐ12¸öÏ̺߳Í8¸ö´¦ÖÃÆ÷Äںˡ£Õâ¸öWindows±äÌå֤ʵÁË¿ª·¢²Á³ý·¨Ê½µÄ¹¥»÷ÕßÈÔÔÚ¼ÌÐø¹¹½¨¶ñÒâÈí¼þ£¬²¢±íÃ÷¹¥»÷·¶Î§À©´óµ½ÁËÖÕ¶ËÓû§¼ÆËã»úºÍÓ¦Ó÷þÎñÆ÷¡£


https://blogs.blackberry.com/en/2023/11/bibi-wiper-used-in-the-israel-hamas-war-now-runs-on-windows