GE ³¬ÉùÉ豸©¶´°Ù³öÒ×ÔâÊÜÀÕË÷Èí¼þºÍÊý¾Ý͵ÇÔ

Ðû²¼Ê±¼ä 2024-05-20
1. GE ³¬ÉùÉ豸©¶´°Ù³öÒ×ÔâÊÜÀÕË÷Èí¼þºÍÊý¾Ý͵ÇÔ


5ÔÂ17ÈÕ £¬Ñо¿ÈËÔ±ÔÚ GE HealthCare µÄ Vivid Ultrasound ϵÁвúÎïÒÔ¼°Á½¸öÏà¹ØÈí¼þ·¨Ê½Öз¢ÏÖÁË 11 ¸öÄþ¾²Â©¶´¡£ÎÊÌâ¶àÖÖ¶àÑù £¬°üÂÞÃô¸ÐÊý¾ÝȱÉÙ¼ÓÃÜ¡¢Ê¹ÓÃÓ²±àÂëƾ¾ÝµÈµÈ¡£CVSS 3.1 ÆÀ·ÖϵͳµÄÑÏÖØˮƽ´Ó 5.7 µ½ 9.6 ²»µÈ¡£ÕýÈç Nozomi NetworksÔÚÆä³ÂËßÖÐËù½âÊ͵ÄÄÇÑù £¬ÕâЩ´íÎó¿ÉÄܻᵼÖ¾ßÓÐÍêȫȨÏÞµÄÔ¶³Ì´úÂëÖ´ÐÐ (RCE) ÒÔ¼°´ËÀàȨÏÞ¿ÉÄÜ´øÀ´µÄÈκÎÊýÁ¿µÄ¹¥»÷³¡¾°¡£È»¶ø £¬×îÑÏÖصÄÇé¿ö»¹ÐèÒªÎïÀí·ÃÎÊÏà¹ØÉ豸 £¬´Ó¶ø´ó´ó½µµÍÒ½ÁÆ»ú¹¹µÄDZÔÚ·çÏÕ¡£ÊÂʵÉÏ £¬³¬Éù²¨»úÓÃÓÚÍⲿÈËÔ±¾­³£·ÃÎʵÄÒ½ÔººÍÕïËù £¬¶øÎÒÃǵÄÑо¿±íÃ÷ £¬Ö»ÐèÒ»·ÖÖÓµÄÎïÀí·ÃÎʾÍ×ãÒÔÖ´Ðй¥»÷¡£Òò´Ë £¬ÎÒÃÇÈÏΪ²»½öÊǶñÒâµÄÄÚ²¿ÈËÔ± £¬µ«ÍâÈËÒ²¿ÉÄÜÓлú»áÍê³É¹¥»÷¡£


https://www.darkreading.com/vulnerabilities-threats/ge-ultrasound-gear-riddled-with-bugs-open-to-ransomware-data-theft


2. µç×Ó´¦·½ÌṩÉÌ MEDISECURE Êܵ½ÀÕË÷Èí¼þ¹¥»÷µÄÓ°Ïì


5ÔÂ16ÈÕ £¬°Ä´óÀûÑǵĵç×Ó´¦·½ÌṩÉÌ MediSecure ÔâÊÜÁË¿ÉÄÜÀ´×ÔµÚÈý·½¹©Ó¦É̵ÄÀÕË÷Èí¼þ¹¥»÷¡£MediSecure ÊÇÒ»¼ÒÌṩÊý×Ö½¡¿µ½â¾ö·½°¸µÄ¹«Ë¾ £¬ÌرðרעÓÚ°Ä´óÀûÑǵÄÄþ¾²µç×Ó´¦·½½»¸¶·þÎñ¡£¸Ã¹«Ë¾ÔÚÔâÊÜÍøÂç¹¥»÷ºó±»ÆȹرÕÆäÍøÕ¾ºÍµç»°Ïß· £¬µ«Ã»ÓÐÌá¼°ÀÕË÷Èí¼þ¹¥»÷¡£ÍþвÐÐΪÕß»ñµÃÁËÊýÁ¿²»ÏêµÄ¸öÈ˵ĸöÈ˺ͽ¡¿µÐÅÏ¢¡£¸Ã¹«Ë¾ÈÔÔÚ¹ú¼ÒÍøÂçÄþ¾²Ð­µ÷Ô±µÄ×ÊÖúÏÂÊÓ²ìÕâÒ»Äþ¾²Â©¶´ £¬µ«¸Ã¹«Ë¾Í¸Â¶ £¬ÔçÆÚ¼£Ïó±íÃ÷¸ÃʼþÔ´×ÔÆäµÚÈý·½¹©Ó¦ÉÌÖ®Ò»¡£


https://securityaffairs.com/163257/cyber-crime/medisecure-impacted-by-ransomware-attack.html


3. ºÚ¿ÍʹÓÃÐé¼Ù DocuSign Ä£°åÀ´Õ©Æ­×éÖ¯


5ÔÂ17ÈÕ £¬Ê¹Óÿ´ËÆÀ´×Ô DocuSign µÄµç×ÓÓʼþµÄÍøÂçµöÓã¹¥»÷¼¤Ôö £¬ÊÇÓɶíÂÞ˹°µÍøÊг¡Íƶ¯µÄ £¬¸ÃÊг¡ÓµÓÐÖÖÖÖÄ£°åºÍµÇ¼ƾ¾Ý¡£ÕâЩÆÛÕ©ÐÔµç×ÓÓʼþ¾­¹ý¾«ÐÄÉè¼Æ £¬Ö¼ÔÚÄ£·ÂºÏ·¨µÄÎĵµÇ©ÃûÇëÇó £¬ÒýÓÕºÁÎÞ½äÐĵÄÊÕ¼þÈ˵ã»÷¶ñÒâÁ´½Ó»òй¶Ãô¸ÐÐÅÏ¢¡£×î½üÕâЩ¹¥»÷µÄÔö¼Ó¿É¹éÒòÓÚ¼¸¸öÒòËØ £¬°üÂÞ¸Ãƽ̨ÔÚ¸÷¸öÐÐÒµµÄ¹ã·º½ÓÄÉ¡¢ÆäÖµµÃÐÅÀµµÄÉùÓþ £¬ÒÔ¼°×îÖØÒªµÄÊÇÍøÂç·¸×ï¼ÆıµÄÈÕÒæÅÓ´ó¡£ÔÚÕâÖÖÇé¿öÏ £¬Òì³£Ñо¿ÈËÔ±´Ó¶Ô¿Í»§µÄÒ»´Î¹¥»÷ÖлñÈ¡ÁËÐÅÏ¢ £¬²¢ÔÚµØÏÂÂÛ̳ºÍÍøÂçÉϽøÐÐÁËËÑË÷¡£×îÖÕ £¬ËÑË÷½«ËûÃÇ´øµ½Á˶íÂÞ˹Êг¡ £¬ÔÚÄÇÀïËûÃÇÕÒµ½ÁËÏàͬµÄ DocuSign Ä£°å¡£²»Á¼ÐÐΪÕßÔËÐÐÍøÂçµöÓã»î¶¯Ê± £¬»áÊÔͼͨ¹ýÈõç×ÓÓʼþ¿´ÆðÀ´À´×ԺϷ¨À´Ô´£¨ÀýÈçÆóÒµ»ò¸öÈË£©À´ÓªÔìÕæʵµÄÆø·Õ £¬ÕâÖÖÇé¿ö²¢²»º±¼û¡£½ü¼¸¸öÔÂÀ´ £¬Óб¨µÀ³Æ £¬ÓÐÈËÔÚÊÕµ½¿´ËÆÀ´×ÔÃÀ¹úÓÊÕþ·þÎñµÄ¶ÌÐźóÏÝÈëÕ©Æ­¡£


https://securityboulevard.com/2024/05/hackers-use-fake-docusign-templates-to-scam-organizations/


4. ɣ̹µÂÒøÐз¢ÉúÊý¾Ýй¶Éæ¼°µÚÈý·½¹©Ó¦ÉÌ


5ÔÂ18ÈÕ £¬Î÷°àÑÀÒøÐлú¹¹É£Ì¹µÂÒøÐÐ (Santander) Ðû²¼ £¬¸Ã»ú¹¹×î½üÔâÊÜÁËÒ»´ÎÊý¾Ýй¶ £¬Êܺ¦Õß»ñµÃÁ˶ԵÚÈý·½ÌṩÉÌÍйܵÄÊý¾Ý¿âµÄ·ÃÎÊȨÏÞ¡£Î¥¹æʼþ·¢Éúºó £¬É£Ì¹µÂÒøÐÐÁ¢¼´½ÓÄÉÐж¯ £¬Í¨¹ý×èÖ¹¶ÔÊÜËðÊý¾Ý¿âµÄ·ÃÎÊÀ´ÏÞÖÆÈëÇÖ·¶Î§¡£¸Ã¹«Ë¾ÔÚÒ»·ÝÐÂΟåÖÐÌåÏÖ £¬»¹½¨Á¢ÁËÆÛÕ©Ô¤·À¿ØÖÆ´ëÊ© £¬ÒÔ± £»¤ÊÜÎ¥¹æÓ°ÏìµÄ¿Í»§ £¬µ«Î´Ìá¼°ÌṩÉ̵ÄÃû³Æ¡£É£Ì¹µÂÒøÐеÄÒ»·ÝÉùÃ÷³Æ£º¡°Êý¾Ý¿âÖв»°üÂÞ½»Ò×Êý¾Ý £¬Ò²²»°üÂÞÈκÎÔÊÐíÔÚÕË»§ÉϽøÐн»Ò×µÄƾ֤ £¬°üÂÞÍøÉÏÒøÐÐÏêϸÐÅÏ¢ºÍÃÜÂë¡£¡±Ëü»¹Ö¸³ö £¬ÒøÐеÄÔËÓªºÍϵͳûÓÐÊܵ½Ó°Ïì £¬ÕâÒâζ×Å¿Í»§ÈÔÈ»¿ÉÒÔÑ¡Ôñ½øÐн»Òס£ÔÚ¶ÔÍøÂçʼþµÄÊÓ²ìÖÐ £¬¸Ã¹«Ë¾·¢ÏÖÓëÖÇÀû¡¢Î÷°àÑÀºÍÎÚÀ­¹ç¿Í»§Ïà¹ØµÄÐÅÏ¢ÒÔ¼°²¿ÃÅǰɣ̹µÂÒøÐÐÔ±¹¤µÄÐÅÏ¢±»·ÃÎÊ¡£


https://www.darkreading.com/cyberattacks-data-breaches/santander-falls-victim-to-data-breach-involving-third-party-provider


5. Kimsuky ºÚ¿ÍÔÚ¶Ôº«¹úµÄ¹¥»÷Öв¿ÊðÐ嵀 Linux ºóÃÅ


5ÔÂ18ÈÕ £¬³¯ÏʺڿÍ×éÖ¯ Kimsuki Ò»Ö±ÔÚʹÓÃÒ»ÖÖÃûΪ Gomir µÄРLinux ¶ñÒâÈí¼þ £¬ËüÊÇͨ¹ýľÂíÈí¼þ°²×°·¨Ê½Á÷´«µÄ GoBear ºóÃŵÄÒ»¸ö°æ±¾¡£Kimsuky ÊÇÒ»¸öÊܹú¼ÒÖ§³ÖµÄÍþвÐÐΪÕß £¬Ó볯ÏʾüÊÂÇ鱨»ú¹¹Õì²ì×Ü¾Ö (RGB) ÓÐÁªÏµ¡£2024 Äê 2 ÔÂÉÏÑ® £¬SW2 ÍþвÇ鱨¹«Ë¾µÄÑо¿ÈËÔ±³ÂËßÁËÒ»Ïî»î¶¯ £¬ÆäÖÐ Kimsuky ʹÓÃÖÖÖÖÈí¼þ½â¾ö·½°¸µÄľÂí°æ±¾£¨ÀýÈç SGA Solutions¡¢Wizvera VeraPort µÄ TrustPKI ºÍ NX_PRNMAN£© £¬ÀûÓà Troll Stealer ºÍ»ùÓÚ Go µÄ¶ñÒâÈí¼þѬȾº«¹úÄ¿±ê¡£Windows ¶ñÒâÈí¼þ GoBear¡£Broadcom ¹«Ë¾ÈüÃÅÌú¿ËµÄ·ÖÎöʦÔÚÊÓ²ìÕë¶Ôº«¹úÕþ¸®×éÖ¯µÄͬһ»î¶¯Ê±·¢ÏÖÁËÒ»ÖÖеĶñÒ⹤¾ß £¬¸Ã¹¤¾ßËƺõÊÇ GoBear ºóÃÅµÄ Linux ±äÌå¡£


https://www.bleepingcomputer.com/news/security/kimsuky-hackers-deploy-new-linux-backdoor-in-attacks-on-south-korea/


6. Singing RiverµÄÒ½ÁÆϵͳ·¢Éú´ó¹æÄ£Êý¾Ýй¶


5ÔÂ17ÈÕ £¬ÃÜÎ÷Î÷±ÈÖÝ Singing River µÄÒ»¼ÒÖ÷ÒªÒ½ÁƱ£½¡ÌṩÉÌ×î½üÅû¶ £¬2023 Äê 8 ÔµÄÒ»´ÎÍøÂç¹¥»÷Ó°ÏìÁË 895,204 È˵ÄÊý¾Ý¡£¸ÃÒ½ÁÆÍøÂç°üÂÞÅÁ˹¿¨¹ÅÀ­¡¢º£ÈªÊк͸ñ¶û·ò²¨ÌصÄÒ½ÔºÒÔ¼°¸ÃµØÓòµÄÆäËûÒ½ÁÆ»ú¹¹¡£2023 Äê 8 Ô 19 ÈÕ £¬¸Ã¹«Ë¾Ðû²¼³ÉΪÅÓ´óÀÕË÷Èí¼þ¹¥»÷µÄÊܺ¦Õß £¬µ¼ÖÂÒ½ÔºÖжϺÍDZÔÚµÄÊý¾Ý͵ÇÔ¡£½ØÖÁ 8 Ôµ× £¬¸Ã×éÖ¯Òѱ»ÁÐÈëÃÀ¹úÎÀÉúÓ빫ÖÚ·þÎñ²¿ÃñȨ°ì¹«ÊÒµÄÎ¥¹æÃÅ»§ÍøÕ¾ £¬ÊÜÓ°ÏìÈËÊýÔݶ¨Îª 501 ÈË¡£2023 Äê 9 Ô 13 ÈÕ £¬È·ÈÏÊý¾Ý±»µÁ £¬½ØÖÁͬÄê 12 Ô 18 ÈÕ £¬¾Ý±¨µÀ¸Ã©¶´ÒÑÓ°Ïì 252,890 ÈË¡£¼¸ÌìÇ°ÏòÃåÒòÖÝÕþ¸®ÌṩµÄ×îиüÐÂÏÔʾ £¬ÊÜÓ°ÏìÈËÊýÔö¼ÓÖÁ 895,204 ÈË¡£


https://meterpreter.org/massive-data-breach-at-singing-river-health-system-nearly-900000-affected/