¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20190225
°ä²¼¹¦·ò 2019-02-25
Group-IB×êÑÐÈËÔ±·¢ÏÖ69189ÕŰͻùË¹Ì¹ÒøÐп¨µÄÐÅÏ¢ÔÚ°µÍøÉÏÏúÊÛ¡£ÕâÅúÊý¾Ý·ÖΪÁ½¸öÊý¾Ý¿â£¬×ÜÊÛ¼ÛԼΪ350ÍòÃÀÔª¡£µÚÒ»¸öÊý¾Ý¿âÊÇ1Ôµ×ÔÚJoker's StashÉϰ䲼µÄ£¬¹²Ô̺¬1535ÕÅÒøÐп¨ÐÅÏ¢£¬ÆäÖÐ96£¥µÄÒøÐп¨¶¼ÓëMeezan BankÓйء£µÚ¶þ¸öÊý¾Ý¿âÊÇ1ÔÂ30ÈÕÔÚJoker's StashÉϰ䲼µÄ£¬Ô̺¬67654ÕÅÒøÐп¨ÐÅÏ¢£¬Í¬ÑùÓÐ96£¥µÄÒøÐп¨ÓëMeezan BankÓйء£ÕâЩÊý¾Ý¿ÉÄܽ²ÁËÈ»¸ÃµØÓòÕë¶Ô½ðÈÚ»ú¹¹µÄ¹¥»÷ÕߵĻ¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/81579/cyber-crime/pakistani-banks-cards-darkweb.html2¡¢¿ÏËþ»ùÖÝÕ÷ѯÖÐÐÄǰ¹ÍÔ±ÇÔÈ¡»¼ÕßÐÅÏ¢£¬²¨¼°1.6Íò»¼Õß
ÃÀ¹ú¿ÏËþ»ùÖÝÕ÷ѯÖÐÐÄ£¨KCC£©´«µÝÁËһ·»¼ÕßÐÅϢй¶ÊÂÎñ£¬¸ÃÊÂÎñ²úÉúÔÚ2018Äê12Ô£¬Ò»Ãûǰ¹ÍÔ±´ÓËûÃǵÄÍÆËã»úϵͳÖÐÇÔÈ¡Á˲¿ÃÅ»¼ÕßÐÅÏ¢¡£¸ÃÊÂÎñÓ°ÏìÁ˳¬¹ý1.6ÍòÃû»¼Õߣ¬KCCÒѾÏòHHS´«µÝÁËÕâÆðÊÂÎñ¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬»¼ÕßµÄÐÕÃû¡¢µØÖ·¡¢µ®ÉúÈÕÆÚ¡¢µç×ÓÓʼþ¡¢µç»°ºÅÂë¡¢ÐÔ±ð¡¢Éç»á°²È«ºÅÂë¡¢»éÒöºÍ¾ÍÒµÇé¿öµÈ¡£KCC°µÊ¾½«ÎªÊÜÓ°ÏìµÄ»¼ÕßÌṩһÄêµÄÃâ·ÑÐÅÓþ¼à¿Ø·þÎñ¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/kentucky-counseling-center-notifies-more-than-16000-patients-after-insider-perp-steals-data-c03dadb73¡¢Ð¶ñÒâÈí¼þFbot£¬Ï°È¾´óÁ¿HiSilicon DVR/NVR SocÉ豸
2ÔÂ16ÈÕÒÔÀ´£¬×êÑÐÈËÔ±·¢ÏÖжñÒâÈí¼þFbotϰȾÁË´óÁ¿µÄHiSilicon DVR/NVR SocÉ豸¡£¹¥»÷ÕßÀûÓÃÁ˳§É̵ÄDVRIPºÍ̸ִÐÐÉϵÄÈõ°²È«ÐÔ£¬Í¨¹ýÉ豸µÄĬÈÏÃÜÂëÀ´Ï°È¾É豸£¬²¢³ÉÁ¢telnetºóÃźÍ×齨½©Ê¬ÍøÂçFbot¡£×êÑÐÈËÔ±ÔÚÈ«ÇòÁìÓòÄÚ¹²·¢ÏÖÁË24528¸ö±»Ï°È¾µÄIPµØÖ·¡£FbotѡȡÁËÁ½¸ö·ÖÆçµÄ¼ÓÃܺͽâÃܲãÀ´Ô¤·À´úÂë±»·ÖÎö¡£¸ü¶àIoCÖ¸±êÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/81567/malware/fbot-malware-hisilicon.html4¡¢Ð´¹µö¹¥»÷»î¶¯´«²¼BankBot£¬ÖØÒªÕë¶Ô²¨À¼ÒøÐÐ

Sucuri×êÑÐÈËÔ±·¢ÏÖÒ»¸öÕë¶Ô²¨À¼ÒøÐм°ÆäÓû§µÄ´¹µö¹¥»÷»î¶¯¡£ÕâЩ´¹µöÓʼþÖÐÔ̺¬¶ñÒâPHPÎļþµÄÁ´½Ó£¬²¢×îÖÕÏòÓû§·Ö·¢¶ñÒâÈí¼þBankBot¡£BankBot×îÔç³öÏÖÓÚ2016Äê£¬ÖØÒªÓÃÓÚÇÔÈ¡Óû§µÄÒøÐÐÐÅÏ¢£¬ÒÔ¼°Óû§µÄ¶ÌÐÅ¡¢Í¨»°¼Í¼¡¢ÁªÏµÈ˺ÍλÏàÐÅÏ¢µÈ¡£¸Ã¶ñÒâPHP´úÂëͨ¹ýHTMLÔªËØºÍJavaScript£¬»¹¼ÓÔØÁËÐéαµÄGoogle reCAPTCHAÀ´ºýŪÓû§¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/phishing-scam-malware-google-recaptcha/142142/5¡¢ÐÂÀÕË÷Èí¼þB0r0nt0K£¬ÖØÒªÏ°È¾Linux·þÎñÆ÷
×êÑÐÈËÔ±·¢ÏÖÒ»¸öеÄÀÕË÷Èí¼þB0r0nt0K£¬¸ÃÀÕË÷Èí¼þÖØÒªÕë¶ÔLinux·þÎñÆ÷£¬µ«Ò²¿ÉϰȾWindowsϵͳ¡£B0r0nt0K»áÔÚ¼ÓÃܵÄÎļþºó¸½¼Ó.rontokÀ©´óÃû£¬²¢ÒªÇó20±ÈÌØ±Ò£¨¼ÛÖµÔ¼7.5ÍòÃÀÔª£©µÄÊê½ð¡£ÔÚ¸¶¿îÍøÕ¾µÄÔ´´úÂëÖУ¬´æÔÚÀàËÆÓÚ¡°Ô½ÄϺڿ͡±µÄ×¢½â£¬Õâ¿ÉÄÜÅú×¢¹¥»÷ÕßÀ´×ÔÓÚÔ½ÄÏ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/b0r0nt0k-ransomware-wants-75-000-ransom-infects-linux-servers/6¡¢WhatsApp½¨¸´iOSÀûÓÃÖеÄFace IDºÍTouch IDÈÆ¹ý·ì϶

2Ô³õWhatsAppÔÚÆäiOSÀûÓ÷¨Ê½ÖÐÒýÈëÁËFace IDºÍTouch IDÉí·ÝÑéÖ¤£¬µ«RedditÓû§·¢ÏÖÈôÊÇÓû§Ê¹ÓÃÁËiOSÖеÄShare SheetÖ°ÄÜ£¬²¢ÇÒδ½«Ëø¶¨¾àÀëÉ趨Ϊ¡°µ±¼´¡±£¬ÔòÄܹ»ÈƹýÑ¡¶¨µÄÉí·ÝÑéÖ¤²½Öè¡£WhatsAppÒѾÔÚ×îа汾µÄiOSÀûÓÃÖн¨¸´ÁËÕâ¸ö·ì϶£¬½¨ÒéÓû§¾¡¿ì½øÐиüС£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/81520/hacking/whatsapp-auth-bypass-flaw.htmlÉêÃ÷£º±¾×ÊѶÓÉGA»Æ½ð¼×άËûÃü°²È«Ó××é·ÒëºÍÕû¶Ù


¾©¹«Íø°²±¸11010802024551ºÅ