Bybit ÔâÊ·ÉÏ×î´ó¼ÓÃÜ»õ±Ò͵ÇÔ°¸£¬ºÚ¿ÍÉí·ÝÖ¸ÏòLazarus×éÖ¯
Ðû²¼Ê±¼ä 2025-02-241. Bybit ÔâÊ·ÉÏ×î´ó¼ÓÃÜ»õ±Ò͵ÇÔ°¸£¬ºÚ¿ÍÉí·ÝÖ¸ÏòLazarus×éÖ¯
2ÔÂ23ÈÕ£¬¼ÓÃÜ»õ±Ò½»Ò×Ëù Bybit ½üÆÚÔâÊÜÁËÒ»´ÎǰËùδÓеÄÅÓ´óÍøÂç¹¥»÷£¬µ¼Ö¼ÛÖµÔ¼ 15 ÒÚÃÀÔªµÄ¼ÓÃÜ»õ±Ò±»µÁ£¬³ÉΪʷÉÏ×î´óµÄ¼ÓÃÜ»õ±Ò͵ÇÔ°¸¡£¹¥»÷Õßͨ¹ýÀûÓÃÇ©Ãû½çÃæ£¬½« Bybit µÄ ETH ÀäÇ®°üÖеÄ×ʽðÖØ¶¨Ïòµ½Î´ÖªµØÖ·¡£¾¡¹Ü Bybit µÄÄþ¾²ÍŶÓÕýÔÚÓëÇø¿éÁ´È¡Ö¤×¨¼ÒºÍºÏ×÷»ï°é»ý¼«ÊÓ²ì´Ëʼþ£¬µ«ÉÐδ͸¶¾ßÌåµÄ¼¼Êõϸ½Ú¡£¾ÝÍÆ²â£¬¹¥»÷Õß¿ÉÄÜÀûÓÃÁË Safe.global ƽ̨Óû§½çÃæÖеÄ©¶´¡£Bybit Ê×ϯִÐйÙÏò¿Í»§±£Ö¤£¬¼´Ê¹±»µÁ×ʽðÎÞ·¨×·»Ø£¬½»Ò×ËùÒ²½«±£³Ö³¥¸¶ÄÜÁ¦£¬²¢½«ÔÚÐëҪʱʹÓùýÇÅ´û¿îÈ·±£Óû§×ʽð¿ÉÓá£Í¬Ê±£¬Bybit Ç¿µ÷ËùÓÐÆäËûÀäÇ®°ü¾ùÄþ¾²ÎÞÓÝ£¬ÔËÓª²»»áÖжϡ£ÍøÂçÄþ¾²¹«Ë¾ Elliptic ºÍ Arkham Intelligence ¾ù½«´Ë´Î¹¥»÷¹é¾ÌÓÚÓ볯ÏÊÓÐ¹ØµÄ Lazarus APT ¼¯ÍÅ£¬¸Ã×éÖ¯ÒÔʹÓÃ×Ô½ç˵¶ñÒâÈí¼þ½øÐÐÅÓ´ó¹¥»÷¶øÎÅÃû£¬²¢ÉæÏÓ¶àÆðÕë¶ÔÒøÐкͼÓÃÜ»õ±Ò½»Ò×ËùµÄ¹¥»÷ʼþ¡£¾¡¹Ü Bybit ÉÐδÕýʽȷÈϺڿÍÉí·Ý£¬µ«´Ë´ÎʼþÔÙ´Î͹ÏÔÁ˼ÓÃÜ»õ±ÒÁìÓòÃæÁÙµÄÄþ¾²ÌôÕ½¡£
https://securityaffairs.com/174514/cyber-crime/lazarus-stole-1-5b-from-bybit-cryptocurrency-heist.html
2. PayPalÐÂÐ͵ç×ÓÓʼþÕ©Æ£ºÀûÓõØÖ·ÉèÖÃÓÕÆÔ¶³Ì·ÃÎÊȨÏÞ
2ÔÂ22ÈÕ£¬½üÆÚ£¬Ò»ÖÖÀûÓÃPayPalµç×ÓÓʼþµØÖ·ÉèÖù¦Ð§µÄÕ©ÆÊÖ¶ÎÕýÔÚÁ÷ÐС£Õ©ÆÕßͨ¹ýÏòPayPalÕË»§Ìí¼Ó°üÂÞÐé¼ÙMacBook¹ºÖÃÈ·ÈÏÐÅÏ¢µÄеØÖ·£¬´¥·¢PayPal·¢ËÍÈ·ÈÏÓʼþ¡£ÕâЩ¿´ËƺϷ¨µÄÓʼþÓÉ¡°service@paypal.com¡±·¢ËÍ£¬ÓÕÆÓû§²¦´òթƵ绰ºÅÂë¡£Ò»µ©Óû§²¦´ò£¬Õ©ÆÕß»áÉù³ÆÕË»§±»ºÚ¿ÍÈëÇÖ£¬²¢ÓÕµ¼Óû§ÏÂÔØ²¢ÔËÐÐÌØ¶¨Èí¼þÒÔ»ñȡԶ³Ì·ÃÎÊȨÏÞ¡£È»¶ø£¬ÕâЩÓʼþʵ¼ÊÉÏÊÇ·¢Ë͸øÓëÕ©ÆÕß¹ØÁªµÄµç×ÓÓʼþµØÖ·£¬¸ÃµØÖ·»á×Ô¶¯½«Óʼþת·¢¸øÓʼþÁбíÖеÄËùÓгÉÔ±£¬¼´Õ©ÆÄ¿±ê¡£ÓÉÓÚPayPal²»ÏÞÖÆµØÖ·×Ö¶Î×Ö·ûÊý£¬Õ©ÆÕßÄܹ»×¢ÈëÕ©ÆÐÅÏ¢¡£ÎªÁË·À·¶´ËÀàÕ©Æ£¬Óû§Ó¦ºöÂÔ°üÂÞÐé¼Ù¹ºÖÃÈ·ÈϵÄPayPalÓʼþ£¬²¢²»Òª²¦´òÆäÖÐÌṩµÄµç»°ºÅÂ롣ͬʱ£¬PayPalÐèÒª½ÓÄÉ´ëÊ©ÏÞÖÆµØÖ·×Ö¶Î×Ö·ûÊý£¬ÒÔ·ÀÖ¹´ËÀàÕ©ÆÐÐΪµÄ·¢Éú¡£
https://www.bleepingcomputer.com/news/security/beware-paypal-new-address-feature-abused-to-send-phishing-emails/
3. CS2½ÇÖð³ÉÕ©ÆÐ°г¡£ºÓÎÏ·Íæ¼ÒÐ辯ÌèSteamÕÊ»§±»µÁ·çÏÕ
2ÔÂ22ÈÕ£¬ÍþвÐÐΪÕßÕýÀûÓ÷´¿Ö¾«Ó¢ 2 (CS2) µÄ´óÐͽÇÖð£¬ÈçIEM¿¨ÍÐά×È2025ºÍPGL¿Ë¬ÈÕ-Äɲ¨¿¨2025£¬Õë¶ÔÓÎÏ·Íæ¼Òʵʩթƣ¬ÒâͼÇÔÈ¡ËûÃǵÄSteamÕÊ»§ºÍ¼ÓÃÜ»õ±Ò¡£¾¡¹ÜCS2ÒÑÍÆ³ö¶àÄ꣬µ«ÆäÍæ¼ÒÉçÇøºÍÖ°Òµ¾ºÈü¸ñʽÒÀÈ»ÅÓ´óÇÒ»îÔ¾¡£½üÆÚ£¬CS2ÔÚSteamÉϵÄͬʱÔÚÏßÍæ¼ÒÊýÁ¿µ½´ïÁËеÄá¯Áë¡£Bitdefender Labs·¢ÏÖÁËÒ»ÏîÃûΪ¡°Streamjacking¡±µÄ¶ñÒâ»î¶¯£¬Õ©ÆÕßͨ¹ýð³äÖªÃûCS2Íæ¼Ò£¬ÔÚYouTubeÖ±²¥ÖÐÐû´«¼ÙðµÄƤ·ôºÍ¼ÓÃÜ»õ±ÒÔùÆ·¡£ËûÃÇʹÓñ»½Ù³ÖµÄºÏ·¨YouTubeÕÊ»§£¬²¢Ñ»·²¥·Å¾ÉµÄÓÎÏ·»ÃæÒÔÓªÔìÖ±²¥Æø·Õ¡£ÕâЩÊÓÆµÖеĶþάÂë»òÁ´½Ó»á½«¹ÛÖÚµ¼Ïò¶ñÒâÍøÕ¾£¬ÒªÇóËûÃÇʹÓÃSteamÕÊ»§µÇ¼ÒÔÁìÈ¡ÀñÎï»ò·¢ËͼÓÃÜ»õ±ÒÒÔ»ñÈ¡¸ß¶î»Ø±¨¡£Ò»µ©µÇ¼£¬Êܺ¦Õ߾ͻáÔÚ²»ÖªÇéµÄÇé¿öÏÂÊÚÓèÕ©ÆÕß·ÃÎÊȨÏÞ£¬µ¼ÖÂÓмÛÖµµÄƤ·ôºÍÎïÆ·±»µÁ£¬¼ÓÃÜ»õ±ÒÒ²»á±»Á¢¼´×ªÒÆÖÁÕ©ÆÕß¿ØÖƵÄÇ®°ü¡£ÓÎÏ·Íæ¼ÒÓ¦±£³Ö¾¯Ì裬ºËʵÓë¹Ù·½µç×Ó¾º¼¼×éÖ¯µÄ¹ØÏµ£¬²¢¼¤»î¶àÖØÉí·ÝÑéÖ¤¡¢ÆôÓÃSteam GuardÒÆ¶¯Éí·ÝÑéÖ¤Æ÷ÒÔ¼°¶¨ÆÚ¼ì²éµÇ¼»î¶¯¡£ÔÚYouTubeÉÏ£¬Ö»Ô¢Ä¿¹Ù·½Ö°ÒµÇòÔ±ÕÊ»§µÄÊÓÆµ£¬²¢¶ÔÆäËûƵµÀÉϵÄÖ±²¥±£³Ö»³ÒÉ¡£
https://www.bleepingcomputer.com/news/security/fake-cs2-tournament-streams-used-to-steal-crypto-steam-accounts/
4. SpyLend Android ¶ñÒâÈí¼þÔÚ Google Play ±»ÏÂÔØÁ˳¬ 10 Íò´Î
2ÔÂ21ÈÕ£¬Ò»¿îÃûΪSpyLend£¨ÓÖ³ÆFinance Simplified£©µÄAndroid¶ñÒâÈí¼þÓ¦Ó÷¨Ê½ÔÚGoogle PlayÉϱ»ÏÂÔØÁè¼Ý10Íò´Î£¬Ëüαװ³É½ðÈÚ¹¤¾ß£¬ÊµÔòÕë¶ÔÓ¡¶ÈÓû§ÊµÊ©ÂÓ¶áÐÔ´û¿î¡£¸ÃÓ¦ÓÃÊôÓÚSpyLoan¶ñÒâÈí¼þ×飬ͨ¹ýÇëÇó¹ý¶àȨÏÞÇÔÈ¡Óû§¸öÈËÊý¾Ý£¬ÈçÁªÏµÈË¡¢Í¨»°¼Ç¼¡¢¶ÌÐÅ¡¢ÕÕÆ¬¡¢É豸λÖõȡ£ÕâЩÊý¾Ý±»ÓÃÓÚɧÈÅ¡¢ÇÃÕ©ºÍÀÕË÷Óû§£¬ÌرðÊǵ±Óû§Î´ÄÜÂú×㻹¿îÌõ¿îʱ¡£¸ÃÓ¦Óû¹Éù³ÆÊÇ×¢²áµÄ·ÇÒøÐнðÈÚ¹«Ë¾£¬µ«ÊµÔò·ñÔò¡£ÎªÌӱܼì²â£¬Ëü¼ÓÔØWebView½«Óû§Öض¨Ïòµ½Íâ²¿ÍøÕ¾ÏÂÔØ´û¿îÓ¦ÓÃAPK¡£¸Ã¶ñÒâÈí¼þ»î¶¯×¨ÃÅÕë¶ÔÓ¡¶ÈÓû§£¬²¢ÇÔÈ¡°üÂÞÃô¸Ð¸öÈËÐÅÏ¢ÔÚÄڵĶàÖÖÊý¾Ý£¬ÓÃÓÚÇÃÕ©ÀÕË÷»ò½ðÈÚÆÛÕ©¡£¾¡¹Ü¸ÃÓ¦ÓÃÒÑ´ÓGoogle PlayÒÆ³ý£¬µ«ÈÔ¿ÉÄܼÌÐøÔËÐв¢ÊÕ¼¯Ãô¸ÐÐÅÏ¢¡£Èô»³ÒÉÉ豸±»Ñ¬È¾£¬ÇëÁ¢¼´É¾³ýÏà¹ØÓ¦Óã¬ÖØÖÃȨÏÞ£¬¸ü¸ÄÃÜÂ룬²¢Ö´ÐÐÉ豸ɨÃ衣ͬʱ£¬È·±£GoogleµÄPlay Protect¹¤¾ß´¦Óڻ״̬£¬ÒÔ¼ì²â²¢×èÖ¹¶ñÒâÈí¼þ¡£
https://www.bleepingcomputer.com/news/security/spylend-android-malware-downloaded-100-000-times-from-google-play/
5. CISA½«Craft CMS¸ßÑÏÖØÐÔÄþ¾²Â©¶´CVE-2025-23209¼ÓÈëKEVĿ¼
2ÔÂ21ÈÕ£¬ÃÀ¹úÍøÂçÄþ¾²ºÍ»ù´¡ÉèÊ©Äþ¾²¾Ö£¨CISA£©Òѽ«Ó°ÏìCraftÄÚÈݹÜÀíϵͳ£¨CMS£©µÄ¸ßÑÏÖØÐÔÄþ¾²Â©¶´CVE-2025-23209Ìí¼Óµ½ÆäÒÑÖª±»ÀûÓé¶´£¨KEV£©Ä¿Â¼ÖС£¸Ã©¶´µÄCVSSÆÀ·ÖΪ8.1£¬Ó°ÏìCraft CMS°æ±¾4ºÍ5£¬¾ßÌåΪ°æ±¾·¶Î§ÔÚ>= 4.0.0-RC1, < 4.13.8ºÍ>= 5.0.0-RC1, < 5.5.5Ö®¼ä¡£CISAÖ¸³ö£¬ÓÉÓÚÒ×Êܹ¥»÷µÄ°æ±¾ÒѾΣ¼°Óû§Äþ¾²ÃÜÔ¿£¬Craft CMS´æÔÚ´úÂë×¢Èë©¶´£¬ÔÊÐíÔ¶³Ì´úÂëÖ´ÐС£ÏîĿά»¤ÈËÔ±ÒÑÔÚ2024Äê12ÔÂÏÂÑ®Ðû²¼µÄ°æ±¾4.13.8ºÍ5.5.8Öнâ¾öÁ˸é¶´¡£Craft CMSÔÚGitHubÉÏÐû²¼µÄͨ¸æÖÐÌáµ½£¬ËùÓÐδÐÞ²¹ÇÒÄþ¾²ÃÜÔ¿±»Ð¹Â¶µÄ°æ±¾¶¼ÊÐÊܵ½¸ÃÄþ¾²È±ÏݵÄÓ°Ï죬²¢½¨ÒéÎÞ·¨¸üе½ÐÞ²¹°æ±¾µÄÓû§ÂÖ»»Äþ¾²ÃÜÔ¿²¢È·±£ÆäÒþ˽ÒÔ»º½âÎÊÌâ¡£´ËÍ⣬Áª°îÃñÊÂÐÐÕþ²¿ÃÅ£¨FCEB£©»ú¹¹±»½¨ÒéÔÚ2025Äê3ÔÂ13ÈÕ֮ǰӦÓÃÐëÒªµÄÐÞ¸´·¨Ê½¡£
https://thehackernews.com/2025/02/cisa-flags-craft-cms-vulnerability-cve.html
6. CISA½«Microsoft Power Pages©¶´CVE-2025-24989¼ÓÈëKEVĿ¼
2ÔÂ23ÈÕ£¬ÃÀ¹úÍøÂçÄþ¾²ºÍ»ù´¡ÉèÊ©Äþ¾²¾Ö£¨CISA£©Òѽ«Microsoft Power PagesµÄÒ»¸ö¸ßÑÏÖØÐÔ©¶´£¨±àºÅΪCVE-2025-24989£¬CVSS·ÖÊýΪ8.2£©Ìí¼Óµ½ÆäÒÑÖª±»ÀûÓé¶´£¨KEV£©Ä¿Â¼ÖС£¸Ã©¶´ÊôÓÚ²»Í×·ÃÎÊ¿ØÖÆÂ©¶´£¬ÔÊÐíδ¾ÊÚȨµÄ¹¥»÷Õßͨ¹ýÍøÂçÌáÉýȨÏÞ£¬¿ÉÄÜÈÆ¹ýÓû§×¢²á¿ØÖÆ¡£´Ë©¶´ÓÉ΢ÈíµÄRaj Kumar³ÂËߣ¬Î¢ÈíÒÑÈ·ÈÏ´Ë©¶´ÕýÔÚ±»»ý¼«ÀûÓ㬲¢Ðû²¼ÁËͨ¸æÍ¨ÖªÊÜÓ°ÏìµÄ¿Í»§¼ì²éÍøÕ¾²¢½ÓÄÉÇåÀí´ëÊ©¡£Æ¾¾Ý¾ßÓÐÔ¼ÊøÁ¦µÄ²Ù×÷Ö¸ÁBOD£©22-01£¬Áª°îÃñÊÂÐÐÕþ²¿ÃÅ£¨FCEB£©»ú¹¹±ØÐëÔÚ½ØÖ¹ÈÕÆÚǰ½â¾öÒÑ·¢Ïֵĩ¶´£¬ÒÔ±£»¤ÆäÍøÂçÃâÊܹ¥»÷¡£CISAÒªÇóÁª°î»ú¹¹ÔÚ2025Äê3ÔÂ21ÈÕ֮ǰÐÞ¸´´Ë©¶´£¬Í¬Ê±×¨¼ÒÒ²½¨Òé˽ÈË×éÖ¯Éó²é¸ÃĿ¼²¢½â¾öÆä»ù´¡ÉèÊ©ÖеÄ©¶´£¬ÒÔ½µµÍÄþ¾²·çÏÕ¡£
https://securityaffairs.com/174541/hacking/u-s-cisa-adds-microsoft-power-pages-flaw-known-exploited-vulnerabilities-catalog.html