¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20190225

°ä²¼¹¦·ò 2019-02-25
1¡¢½ü7ÍòÕŰͻùË¹Ì¹ÒøÐп¨ÐÅÏ¢ÔÚ°µÍøÏúÊÛ £¬ÊÛ¼Û½ü350ÍòÃÀÔª

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

Group-IB×êÑÐÈËÔ±·¢ÏÖ69189ÕŰͻùË¹Ì¹ÒøÐп¨µÄÐÅÏ¢ÔÚ°µÍøÉÏÏúÊÛ  ¡£ÕâÅúÊý¾Ý·ÖΪÁ½¸öÊý¾Ý¿â £¬×ÜÊÛ¼ÛԼΪ350ÍòÃÀÔª  ¡£µÚÒ»¸öÊý¾Ý¿âÊÇ1Ôµ×ÔÚJoker's StashÉϰ䲼µÄ £¬¹²Ô̺¬1535ÕÅÒøÐп¨ÐÅÏ¢ £¬ÆäÖÐ96£¥µÄÒøÐп¨¶¼ÓëMeezan BankÓÐ¹Ø  ¡£µÚ¶þ¸öÊý¾Ý¿âÊÇ1ÔÂ30ÈÕÔÚJoker's StashÉϰ䲼µÄ £¬Ô̺¬67654ÕÅÒøÐп¨ÐÅÏ¢ £¬Í¬ÑùÓÐ96£¥µÄÒøÐп¨ÓëMeezan BankÓÐ¹Ø  ¡£ÕâЩÊý¾Ý¿ÉÄܽ²ÁËÈ»¸ÃµØÓòÕë¶Ô½ðÈÚ»ú¹¹µÄ¹¥»÷ÕߵĻ  ¡£

   

Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/81579/cyber-crime/pakistani-banks-cards-darkweb.html

2¡¢¿ÏËþ»ùÖÝÕ÷ѯÖÐÐÄǰ¹ÍÔ±ÇÔÈ¡»¼ÕßÐÅÏ¢ £¬²¨¼°1.6Íò»¼Õß

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ÃÀ¹ú¿ÏËþ»ùÖÝÕ÷ѯÖÐÐÄ£¨KCC£©´«µÝÁËһ·»¼ÕßÐÅϢй¶ÊÂÎñ £¬¸ÃÊÂÎñ²úÉúÔÚ2018Äê12Ô £¬Ò»Ãûǰ¹ÍÔ±´ÓËûÃǵÄÍÆËã»úϵͳÖÐÇÔÈ¡Á˲¿ÃÅ»¼ÕßÐÅÏ¢  ¡£¸ÃÊÂÎñÓ°ÏìÁ˳¬¹ý1.6ÍòÃû»¼Õß £¬KCCÒѾ­ÏòHHS´«µÝÁËÕâÆðÊÂÎñ  ¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬»¼ÕßµÄÐÕÃû¡¢µØÖ·¡¢µ®ÉúÈÕÆÚ¡¢µç×ÓÓʼþ¡¢µç»°ºÅÂë¡¢ÐÔ±ð¡¢Éç»á°²È«ºÅÂë¡¢»éÒöºÍ¾ÍÒµÇé¿öµÈ  ¡£KCC°µÊ¾½«ÎªÊÜÓ°ÏìµÄ»¼ÕßÌṩһÄêµÄÃâ·ÑÐÅÓþ¼à¿Ø·þÎñ  ¡£

  

Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/kentucky-counseling-center-notifies-more-than-16000-patients-after-insider-perp-steals-data-c03dadb7

3¡¢Ð¶ñÒâÈí¼þFbot £¬Ï°È¾´óÁ¿HiSilicon DVR/NVR SocÉ豸

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

2ÔÂ16ÈÕÒÔÀ´ £¬×êÑÐÈËÔ±·¢ÏÖжñÒâÈí¼þFbotϰȾÁË´óÁ¿µÄHiSilicon DVR/NVR SocÉ豸  ¡£¹¥»÷ÕßÀûÓÃÁ˳§É̵ÄDVRIPºÍ̸ִÐÐÉϵÄÈõ°²È«ÐÔ £¬Í¨¹ýÉ豸µÄĬÈÏÃÜÂëÀ´Ï°È¾É豸 £¬²¢³ÉÁ¢telnetºóÃźÍ×齨½©Ê¬ÍøÂçFbot  ¡£×êÑÐÈËÔ±ÔÚÈ«ÇòÁìÓòÄÚ¹²·¢ÏÖÁË24528¸ö±»Ï°È¾µÄIPµØÖ·  ¡£FbotѡȡÁËÁ½¸ö·ÖÆçµÄ¼ÓÃܺͽâÃܲãÀ´Ô¤·À´úÂë±»·ÖÎö  ¡£¸ü¶àIoCÖ¸±êÇë²Î¿¼ÒÔÏÂÁ´½Ó  ¡£

  

Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/81567/malware/fbot-malware-hisilicon.html

4¡¢Ð´¹µö¹¥»÷»î¶¯´«²¼BankBot £¬ÖØÒªÕë¶Ô²¨À¼ÒøÐÐ

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

Sucuri×êÑÐÈËÔ±·¢ÏÖÒ»¸öÕë¶Ô²¨À¼ÒøÐм°ÆäÓû§µÄ´¹µö¹¥»÷»î¶¯  ¡£ÕâЩ´¹µöÓʼþÖÐÔ̺¬¶ñÒâPHPÎļþµÄÁ´½Ó £¬²¢×îÖÕÏòÓû§·Ö·¢¶ñÒâÈí¼þBankBot  ¡£BankBot×îÔç³öÏÖÓÚ2016Äê £¬ÖØÒªÓÃÓÚÇÔÈ¡Óû§µÄÒøÐÐÐÅÏ¢ £¬ÒÔ¼°Óû§µÄ¶ÌÐÅ¡¢Í¨»°¼Í¼¡¢ÁªÏµÈ˺ÍλÏàÐÅÏ¢µÈ  ¡£¸Ã¶ñÒâPHP´úÂëͨ¹ýHTMLÔªËØºÍJavaScript £¬»¹¼ÓÔØÁËÐéαµÄGoogle reCAPTCHAÀ´ºýŪÓû§  ¡£

 

 Ô­ÎÄÁ´½Ó£º

https://threatpost.com/phishing-scam-malware-google-recaptcha/142142/

5¡¢ÐÂÀÕË÷Èí¼þB0r0nt0K £¬ÖØÒªÏ°È¾Linux·þÎñÆ÷

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

×êÑÐÈËÔ±·¢ÏÖÒ»¸öеÄÀÕË÷Èí¼þB0r0nt0K £¬¸ÃÀÕË÷Èí¼þÖØÒªÕë¶ÔLinux·þÎñÆ÷ £¬µ«Ò²¿ÉϰȾWindowsϵͳ  ¡£B0r0nt0K»áÔÚ¼ÓÃܵÄÎļþºó¸½¼Ó.rontokÀ©´óÃû £¬²¢ÒªÇó20±ÈÌØ±Ò£¨¼ÛÖµÔ¼7.5ÍòÃÀÔª£©µÄÊê½ð  ¡£ÔÚ¸¶¿îÍøÕ¾µÄÔ´´úÂëÖÐ £¬´æÔÚÀàËÆÓÚ¡°Ô½ÄϺڿ͡±µÄ×¢½â £¬Õâ¿ÉÄÜÅú×¢¹¥»÷ÕßÀ´×ÔÓÚÔ½ÄÏ  ¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/b0r0nt0k-ransomware-wants-75-000-ransom-infects-linux-servers/

6¡¢WhatsApp½¨¸´iOSÀûÓÃÖеÄFace IDºÍTouch IDÈÆ¹ý·ì϶

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

2Ô³õWhatsAppÔÚÆäiOSÀûÓ÷¨Ê½ÖÐÒýÈëÁËFace IDºÍTouch IDÉí·ÝÑéÖ¤ £¬µ«RedditÓû§·¢ÏÖÈôÊÇÓû§Ê¹ÓÃÁËiOSÖеÄShare SheetÖ°ÄÜ £¬²¢ÇÒδ½«Ëø¶¨¾àÀëÉ趨Ϊ¡°µ±¼´¡± £¬ÔòÄܹ»ÈƹýÑ¡¶¨µÄÉí·ÝÑéÖ¤²½Öè  ¡£WhatsAppÒѾ­ÔÚ×îа汾µÄiOSÀûÓÃÖн¨¸´ÁËÕâ¸ö·ì϶ £¬½¨ÒéÓû§¾¡¿ì½øÐиüР ¡£

 

 Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/81520/hacking/whatsapp-auth-bypass-flaw.html

ÉêÃ÷£º±¾×ÊѶÓÉGA»Æ½ð¼×άËûÃü°²È«Ó××é·­ÒëºÍÕû¶Ù