ºÚ¿ÍÔÚ°µÍø³öÊÛ 4900 Íò·Ý´÷¶ûµÄ¿Í»§Êý¾Ý

Ðû²¼Ê±¼ä 2024-05-11
1. ºÚ¿ÍÔÚ°µÍø³öÊÛ 4900 Íò·Ý´÷¶ûµÄ¿Í»§Êý¾Ý


5ÔÂ10ÈÕ £¬¿Æ¼¼¾ÞÍ·´÷¶û¹«Ë¾ÒÑÏòÆä¿Í»§Í¨±¨Êý¾Ýй¶Ê¼þ ¡£´Ë´Îй¶ӰÏìÁË´æ´¢¿Í»§ÐÅÏ¢¼°ÆäÔÚ´÷¶ûµÄ¹ºÖÃÀúÊ·¼Ç¼µÄ´÷¶ûÃÅ»§ÍøÕ¾ ¡£¾¡¹Ü¸Ã¹«Ë¾Ã»ÓÐ͸¶ÊÜÓ°Ïì¿Í»§µÄÊýÁ¿ £¬µ«Ê¼þÖÐ鶵ÄÊý¾Ý°üÂÞ£ºÈ«Ãû¡¢Êµ¼ÊµØÖ·¡¢´÷¶ûÓ²¼þºÍ¶©µ¥ÐÅÏ¢ £¬°üÂÞ·þÎñ±êÇ©¡¢ÉÌÆ·ÃèÊö¡¢¶©¹ºÈÕÆÚºÍÏà¹Ø±£ÐÞÐÅÏ¢ ¡£ÐèҪǿµ÷µÄÊÇ £¬ËäÈ»´÷¶û³ÂËßµÄÊý¾Ýй¶Ê¼þÓë Menelik µÄ˵·¨Ö®¼äµÄÁªÏµÉÐδµÃµ½Ö¤Êµ £¬µ«ºÚ¿Í¼á³ÆÕâȷʵÊÇͬһÆðй¶Ê¼þ £¬²¢ÌṩÁËÓйØй¶Êý¾ÝµÄ¸ü¶àÏêϸÐÅÏ¢ ¡£¾ßÌåÀ´Ëµ £¬Menelik Éù³ÆÒÑ»ñÈ¡Áè¼Ý 4900 Íò´÷¶û¿Í»§µÄ¸öÈËÐÅÏ¢ ¡£´÷¶ûÒѽÓÄɶàÏî´ëÊ©À´Ó¦¶Ô´Ë´ÎÄþ¾²Ê¼þ ¡£ËûÃÇÒÑִ֪ͨ·¨²¿ÃŲ¢Æ¸ÇëµÚÈýÒªÁìÒ½¹«Ë¾ÊÓ²ì¸Ãʼþ ¡£¾¡¹ÜËûÃÇÌåÏÖ²»ÈÏΪÓÉÓÚÓÐÏÞµÄÐÅϢ鶶ø´æÔÚÖØ´ó·çÏÕ £¬µ«°üÂÞÈ«ÃûºÍÎïÀíµØÖ·µÄÊý¾ÝµÄÏúÊÛ¶Ô¿Í»§×é³ÉÁËÏ൱´óµÄÍþв ¡£


https://www.hackread.com/dell-data-breach-hacker-sells-customer-data/


2. ²¨Òô¹«Ë¾Ö¤ÊµÔøÔâLockbit¹¥»÷±»Ë÷Òª2ÒÚÃÀÔªÊê½ð


5ÔÂ10ÈÕ £¬²¨Òô¹«Ë¾Ö¤Êµ £¬²¨Òô¹«Ë¾¾Ü¾øÖ§¸¶ 2 ÒÚÃÀÔªÊê½ð £¬ÒÔ»»È¡ºÚ¿ÍÇÔÈ¡µÄ 43GB Êý¾Ý ¡£²¨Òô¹«Ë¾ÓÚ 2023 Äê 10 ÔÂÔâµ½ LockBit ÀÕË÷Èí¼þÍÅ»ïµÄºÚ¿Í¹¥»÷ £¬¸ÃÍÅ»ïÍþвҪй¶ÆäËù˵µÄ´óÁ¿Ãô¸ÐÊý¾Ý ¡£LockBit ×îÖÕÐû²¼Á˴˴κڿ͹¥»÷µÄÊý¾Ý £¬°üÂÞ IT ¹ÜÀíÈí¼þ¡¢¼à¿ØÈÕÖ¾ºÍÉó¼Æ¹¤¾ß ¡£Æ߸öÔºó £¬Ë¾·¨²¿¶Ô Lockbit ³ïıÕßµÏÃ×ÌØÀÓÈÀïҮάÆ桤»ôÂÞÉá·ò (Dimitry Yuryevich Khoroshev) µÄδÃÜ·âÆðËßÊéÌáµ½ £¬Ò»¼Òδ͸¶ÐÕÃûµÄ¡°×ܲ¿Î»ÓÚ¸¥¼ªÄáÑÇÖݵĿç¹úº½¿ÕºÍ¹ú·À¹«Ë¾¡±ÊÇ Lockbit µÄ 2 ÒÚÃÀԪĿ±ê ¡£²¨Òô¹«Ë¾ËæºóÏò CyberScoop ֤ʵ £¬Õâ¾ÍÊÇÄǼÒδ͸¶ÐÕÃûµÄ¹«Ë¾ ¡£Khoroshev Ò²±»³ÆΪ LockBitSupp £¬ÂôÁ¦´´½¨ºÍÔËÓª LockBit ×éÖ¯ £¬¸Ã×éÖ¯ÓµÓÐ 2,000 ¶àÃûÊܺ¦ÕßºÍ 5 ÒÚÃÀÔªµÄÊê½ð ¡£½ñÄêÔçЩʱºò £¬Ö´·¨²¿ÃŲ¿ÃÅÈ¡µÞÁË Lockbit µÄÒµÎñ £¬²¢ÓÚ±¾ÖÜÔçЩʱºòÊջظü¶àÒµÎñ ¡£


https://news.hitb.org/content/boeing-confirms-lockbit-hackers-wanted-200-million-ransom-after-2023-hack


3. BIG-IP É豸ÖеÄÒªº¦Â©¶´Ê¹´óÐÍÍøÂçÈÝÒ×Êܵ½ÈëÇÖ


5ÔÂ9ÈÕ £¬Ñо¿ÈËÔ±³ÂËßÁËÒ»Öֹ㷺ʹÓõÄÍøÂçÉ豸ÖеÄÑÏÖØ©¶´ £¬¸Ã©¶´Ê¹ÊÀ½çÉÏһЩ×î´óµÄÍøÂçÈÝÒ×Êܵ½ÈëÇÖ ¡£ÕâЩ©¶´´æÔÚÓÚ BIG-IP Next Central Manager ÖÐ £¬¸Ã¹ÜÀíÆ÷ÊÇ×îÐÂÒ»´ú BIG-IP ϵÁÐÉ豸ÖеÄÒ»¸ö×é¼þ £¬×éÖ¯ÓÃÀ´¹ÜÀí½ø³öÆäÍøÂçµÄÁ÷Á¿ ¡£ÏúÊ۸òúÎïµÄ×ܲ¿Î»ÓÚÎ÷ÑÅͼµÄ F5ÌåÏÖ £¬ ¡¶²Æ¸»¡·ÔÓÖ¾×·×ÙµÄ 50 Ç¿ÆóÒµÖÐÓÐ 48 ¼ÒʹÓÃÆäÉ豸 ¡£F5½« Next Central ManagerÃèÊöΪ¡°µ¥Ò»¼¯ÖпØÖƵ㡱 £¬ÓÃÓÚ¹ÜÀíÕû¸ö BIG-IP É豸Ⱥ ¡£×÷ΪִÐиºÔØƽºâ¡¢DDoS »º½âÒÔ¼°¶Ô½ø³ö´óÐÍÍøÂçµÄÊý¾Ý½øÐмì²éºÍ¼ÓÃܵÄÉ豸 £¬BIG-IP É豸λÓÚÆäÍâΧ £¬³äµ±ÄÚ²¿Ä³Ð©×îÄþ¾²Òªº¦×ÊÔ´µÄÖ÷Òª¹ÜµÀ ¡£ÕâЩÌØÐÔʹ BIG-IP É豸³ÉΪºÚ¿Í¹¥»÷µÄÀíÏëÑ¡Ôñ ¡£2021 ÄêºÍ2022Äê £¬ºÚ¿ÍÀûÓÃÑÏÖØÆ·¼¶Îª 9.8£¨Âú·Ö 10£©µÄ©¶´»ý¼«ÆÆ»µ BIG-IP É豸 ¡£


https://arstechnica.com/security/2024/05/critical-vulnerabilities-in-big-ip-appliances-leave-big-networks-open-to-intrusion/


4. ¿¨°Í˹»ùÐû²¼ 2023 ÄêÄê¶È½ðÈÚÍþв³ÂËß


5ÔÂ10ÈÕ £¬¿¨°Í˹»ù×îÐÂÐû²¼µÄ 2023 ÄêÄê¶È½ðÈÚÍþв³ÂËßÊý¾ÝÏÔʾ £¬Óë 2022 ÄêÏà±È £¬È«ÇòÒƶ¯ÒøÐжñÒâÈí¼þÔö³¤ÁË 32% ¡£³ÂËßÇ¿µ÷Õë¶Ô Android Óû§µÄ¹¥»÷¼¤Ôö £¬ÆäÖа¢¸»º¹¡¢ÍÁ¿âÂü˹̹ºÍËþ¼ª¿Ë˹̹ÔâÓöÒøÐÐľÂíµÄ±ÈÀý×î¸ß ¡£ÖµµÃ×¢ÒâµÄÊÇ £¬ÍÁ¶úÆäÔÚÒƶ¯ÒøÐжñÒâÈí¼þ¹¥»÷·½Ãæ´¦ÓÚÁìÏÈְλ £¬Ó°ÏìÁ˽ü 3% µÄÓû§ ¡£¾¡¹Ü½ðÈÚ PC ¶ñÒâÈí¼þÊýÁ¿Ï½µÁË 11% £¬µ«À´×Ô Ramnit ºÍ Zbot µÈ¶ñÒâÈí¼þ¼Ò×åµÄÍþвÈÔÈ»´æÔÚ £¬Ö÷ÒªÕë¶ÔÏû·ÑÕß ¡£½ðÈÚÍøÂçµöÓãÈÔÈ»ÊÇÒ»¸öÖØ´óÎÊÌâ £¬Õ¼Õë¶ÔÆóÒµÓû§µÄËùÓÐÍøÂçµöÓã¹¥»÷µÄËÄ·ÖÖ®Ò»ÒÔÉÏ £¬ÒÔ¼°Õë¶Ô¼ÒÍ¥Óû§µÄ½üÈý·ÖÖ®Ò» ¡£µç×ÓÉ̵êÆ·ÅÆÊǽðÈÚÍøÂçµöÓãʵÑéµÄ×î´óÓÕ»ó £¬½ö PayPal ÍøÂçµöÓã¾ÍÕ¼ËùÓÐʵÑéµÄÒ»°ëÒÔÉÏ ¡£Óë¼ÓÃÜ»õ±ÒÏà¹ØµÄÍøÂçµöÓãºÍÕ©Æ­ÕýÔÚÔö¼Ó ¡£ 2023 Äê £¬¿¨°Í˹»ù×èÖ¹ÁËÁè¼Ý 580 Íò´Î×·×ÙÒÔ¼ÓÃÜ»õ±ÒΪÖ÷ÌâµÄÍøÂçµöÓãÁ´½ÓµÄʵÑé £¬±ÈÉÏÒ»ÄêÔö¼ÓÁË 16% ¡£ÖµµÃ×¢ÒâµÄÊÇ £¬¾ÍÍøÂçµöÓãʵÑé¶øÑÔ £¬ÑÇÂíÑ·³ÉΪ±»Ä£·Â×î¶àµÄÔÚÏßÉ̵ê £¬Æä´ÎÊÇÆ»¹ûºÍ Netflix ¡£


https://www.infosecurity-magazine.com/news/mobile-banking-malware-surges-32/


5. MIRAIͨ¹ýÀûÓÃIVANTI CONNECT SECURE©¶´½øÐÐÁ÷´«


5ÔÂ9ÈÕ £¬Juniper ÍþвʵÑéÊÒµÄÑо¿ÈËÔ±³ÂËß³Æ £¬ÍþвÐÐΪÕßÕýÔÚÀûÓÃ×î½üÅû¶µÄ Ivanti Connect Secure (ICS) ©¶´CVE-2023-46805 ºÍ CVE-2024-21887À´É¾³ýMirai ½©Ê¬ÍøÂçµÄÓÐЧ¸ºÔØ ¡£¸ÃÈí¼þ¹«Ë¾³ÂËß³Æ £¬ÍþвÐÐΪÕßÕýÔÚÀûÓà Connect Secure (ICS) ºÍ Policy Secure ÖеÄÁ½¸öÁãÈÕ©¶´£¨CVE-2023-46805¡¢CVE-2024-21887£©ÔÚÄ¿±êÍø¹ØÉÏÔ¶³ÌÖ´ÐÐÈÎÒâÃüÁî ¡£CVE-2023-46805£¨CVSS ÆÀ·Ö 8.2£©ÊÇÒ»¸öÉí·ÝÑéÖ¤ÈƹýÎÊÌâ £¬´æÔÚÓÚ Ivanti ICS 9.x¡¢22.x ºÍ Ivanti Policy Secure µÄ Web ×é¼þÖÐ ¡£Ô¶³Ì¹¥»÷Õß¿ÉÒÔ´¥·¢¸Ã©¶´ £¬Í¨¹ýÈƹý¿ØÖƼì²éÀ´·ÃÎÊÊÜÏÞ×ÊÔ´ ¡£µÚ¶þ¸ö±àºÅΪ CVE-2024-21887£¨CVSS ÆÀ·Ö 9.1£© £¬ÊÇ Ivanti Connect Secure£¨9.x¡¢22.x£©ºÍ Ivanti Policy Secure Web ×é¼þÖеÄÃüÁî×¢È멶´ ¡£¾­¹ýÉí·ÝÑéÖ¤µÄ¹ÜÀíÔ±¿ÉÒÔͨ¹ý·¢ËÍÌØÖÆÇëÇó²¢ÔÚÉ豸ÉÏÖ´ÐÐÈÎÒâÃüÁîÀ´ÀûÓøÃÎÊÌâ ¡£¹¥»÷Õß¿ÉÒÔÁ´½ÓÕâÁ½¸öȱÏÝ £¬ÏòδÐÞ²¹µÄϵͳ·¢ËÍÌØÖÆÇëÇó²¢Ö´ÐÐÈÎÒâÃüÁî ¡£ 


https://securityaffairs.com/162936/cyber-crime/ivanti-connect-secure-flaws-mirai-botnet.html


6. ÃϼÓÀ­¹ú IT ÌṩÉÌTappwareԼĪ50GÊý¾Ýй¶


5ÔÂ9ÈÕ £¬Tappware ÊÇÒ»¼ÒÖøÃûµÄ IT ·þÎñÌṩÉÌ £¬ÆäԼĪ 50GB µÄÊý¾Ý¿âÔÚºÚ¿ÍÂÛ̳ÉÏÔ⵽й¶ £¬¸ÃÊý¾Ý¿â°üÂÞ 230 ÍòÐÐÊý¾Ý £¬°üÂÞÃô¸ÐµÄ¸öÈËÐÅÏ¢ £¬ÀýÈçÓë¸Ã¹«Ë¾Ïà¹ØµÄ¸öÈ˵ÄÐÕÃû¡¢µØÖ·ºÍµç»°ºÅÂë ¡£Æ¾¾ÝÃϼÓÀ­¹úÍøÂçÄþ¾²Ç鱨 (BCSI)³ÂËß £¬Ð¹Â¶µÄÊý¾Ý½ÓÄÉ SQL ¸ñʽ £¬ÈÕÆÚΪ 2024 Äê £¬°üÂ޹㷺µÄ¸öÈËÏêϸÐÅÏ¢ £¬¶ÔÏà¹Ø¸öÈË×é³ÉÁ˾޴óµÄÒþ˽·çÏÕ ¡£¸Ã©¶´ÊÇÔÚÍøÂç·¸×ï·Ö×Ó³£ÓõĽ»Ò×±»µÁÊý¾ÝµÄƽ̨ÉϽøÐÐÀýÐмà¿Ø»î¶¯Ê±·¢ÏÖµÄ ¡£´Ë´Îй¶ֱ½ÓÍþвµ½ÊýǧÈ˵ÄÒþ˽ºÍÄþ¾² £¬¿ÉÄܵ¼ÖÂÉí·Ý͵ÇÔºÍÆÛÕ© ¡£


https://gbhackers.com/bangladesh-it-provider-database/