Ôì´¬³§Beneteau³ÆÆäÔâµ½ÈëÇÖ£¬ÏµÍ³ÈÔÔÚ¸´ÔÖУ»SolarWinds¸ß¹Ü³ÆÆäÔâµ½µÄ¹©¸øÁ´¹¥»÷Ô´ÓÚÈõ¿ÚÁîй¶
°ä²¼¹¦·ò 2021-03-03
·¨¹ú´¬Ö»Ôì×÷ÉÌGroupe Beneteau³ÆÆäÔâµ½ÈëÇÖ£¬ÏµÍ³ÈÔÔÚ¸´ÔÖС£¸Ã¹«Ë¾³ÉÁ¢ÓÚ1884Ä꣬×ܲ¿Î»ÓÚ·¨¹úÍúµÂ£¬ÔÚ·¨¹ú¡¢ÃÀ¹ú¡¢²¨À¼¡¢Òâ´óÀûºÍÖйú¾ùÓзֹ«Ë¾¡£ÉÏÖÜ£¬Beneteau°ä·¢ÆäÔâµ½¹¥»÷£¬Îª´ËÆäÒѾ¶Ï¿ªËùÓÐÐÅϢϵͳµÄÏνӣ¬ÒÔÔ¤·À¶ñÒâÈí¼þ´«²¼¡£¸Ã¹«Ë¾°µÊ¾ÆäÊý¸ö³ö²ú²¿Ãŵijö²ú»î¶¯±»ÆÈÖÕ³¡£¬³ö¸ñÊÇλÓÚ·¨¹úµÄ²¿ÃÅ¡£Ä¿Ç°£¬¸Ã¼¯ÍÅÔÚ³ÖÐø½øÐе÷²é£¬ÒÔ½«ÆäITϵͳ¸´Ôµ½Õý³£ÇÒ°²È«µÄÔËӪģʽ¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/boat-building-giant-beneteau-says-cyberattack-disrupted-production
2.ƱÎñƽ̨TicketcounterµÄ190Íò¸öÓû§µÄÐÅϢй¶

TicketcounterÔâµ½¹¥»÷£¬190Íò¸öÓû§µÄÐÅϢй¶¡£TicketcounterÊǺÉÀ¼µç×ÓÆ±Îñƽ̨£¬ËüÏúÊÛÖîÈ綯ÎïÔ°¡¢¹«Ô°¡¢²©Îï¹ÝºÍ¸÷Àà»î¶¯µÄÔÚÏßÃÅÆ±¡£2ÔÂ21ÈÕ£¬ºÚ¿ÍÔÚ°µÍøÏúÊÛ±»µÁµÄTicketcounterÊý¾Ý¿â£¬ÆäÖÐÔ̺¬Óû§ÐÕÃû¡¢µç×ÓÓʼþµØÖ·¡¢µç»°ºÅÂë¡¢IPµØÖ·ºÍ¹þÏ£ÃÜÂëµÈÐÅÏ¢¡£Ö®ºó£¬ºÚ¿ÍºÜ¿ìɾ³ýÁË´ËÊý¾Ý¿â£¬²¢ÏòTicketcounterÀÕË÷7¸ö±ÈÌØ±Ò£¨Ô¼ºÏ33.7ÍòÃÀÔª£©¡£Ôڸù«Ë¾»Ø¾ø¸¶¿îºó£¬ºÚ¿ÍÔÙ´ÎÔÚ°µÍøÉϹ«¿ª¸ÃÊý¾Ý¿â¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/european-e-ticketing-platform-ticketcounter-extorted-in-data-breach/
3.ÐÂÄÏÍþ¶ûÊ¿Öݽ»Í¨¾ÖÔâµ½¹¥»÷£¬Êý¾Ý²¢ÔÚClopÍøÕ¾¹«¿ª

°Ä´óÀûÑÇÐÂÄÏÍþ¶ûÊ¿ÖݵÄÔËÊäϵͳÔâµ½¹¥»÷£¬µ¼ÖÂÊý¾Ýй¶¡£¸ÃÔËÊäÏµÍ³ÕÆ¹ÜÐÂÄÏÍþ¶ûÊ¿ÖݵĹ«¹²Æû³µ¡¢¶ÉÂÖ¡¢ÇøÓòº½¿ÕÔËÓªÉ̺ͻõÎïÔËÊä¡£ÐÂÄÏÍþ¶ûÊ¿Öݽ»Í¨¾Ö£¨Transport for NSW£©Åû¶£¬Õâ´ÎÊý¾Ýй¶ԴÓÚÆä°²È«Îļþ¹²ÏíϵͳAccellion FTAÔâµ½¹¥»÷¡£Ä¿Ç°¸Ã»ú¹¹ÔÚµ÷²é´ËÊÂÎñ£¬ÒÔÈ·¶¨ÊÜÓ°ÏìÊý¾ÝµÄÁìÓò¡£´Ë±í£¬ºÚ¿ÍÒÑÔÚClopÍøÕ¾Éϰ䲼±»µÁÊý¾ÝµÄ½ØÍ¼£¬ÆäÖÐÔ̺¬»úÃÜÎļþ¡¢Á쵼ίԱ»áÎļþºÍ¸÷Ààµç×ÓÓʼþ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/nsw-transport-agency-extorted-by-ransomware-gang-after-accellion-attack/
4.Sophos·¢ÏÖGootloaderÀûÓÃSEO·Ö·¢¶àÖÖ¶ñÒâÈí¼þ

Sophos·¢ÏÖGootkit½»¸¶Æ½Ì¨GootloaderÀûÓÃSEO·Ö·¢¶àÖÖ¶ñÒâÈí¼þ¡£GootloaderÊÇ»ùÓÚJavascriptµÄϰȾ¿ò¼Ü£¬ÔÚÕâ´Î¸Ä½øÖ®ºóÄܹ»·Ö·¢¸ü¿í·ºµÄ¶ñÒâÈí¼þ£¬Ô̺¬ÀÕË÷Èí¼þ¡£¸Ã¿ò¼ÜʹÓÃÁËËÑË÷ÒýÇæÓÅ»¯£¨SEO£©¼¼ÊõÀ´¶¾»¯GoogleËÑË÷Á˾ֲ¢´«²¼Ö¸Ïò¶ñÒâÈí¼þµÄÁ´½Ó¡£Sophos¹À¼Æ£¬Gootloader¿ÉËæ¼¾½ÚÔìÔ¼400̨»î¶¯·þÎñÆ÷£¬À´ÍйÜÒѱ»ÈëÇֵĺϷ¨ÍøÕ¾¡£¸Ã»î¶¯ÖØÒªÕë¶Ôº«¹ú¡¢µÂ¹ú¡¢·¨¹úºÍÕû¸ö±±ÃÀµØÓò¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/115144/cyber-crime/gootkit-gootloader-evolution.html
5.UHSÐû³ÆÈ¥ÄêµÄRyukÀÕË÷¹¥»÷Ôì³É6700ÍòÃÀÔªµÄËðʧ

Universal Health Services£¨UHS£©Ðû³ÆÈ¥Äê9ÔµÄRyukÀÕË÷¹¥»÷¸øÆäÔì³ÉÁË6700ÍòÃÀÔªµÄËðʧ¡£UHSµÄ×Ó¹«Ë¾±é¼°ÃÀ¹ú38¸öÖÝ£¬Õ¼ÓÐ26¼Ò¼¹ØïÒ½ÔºÒÔ¼°42¼ÒÃÅÕïÉèÊ©ºÍÃÅÕï·þÎñÖÐÐÄ£¬Òò¶øÍøÂç¹¥»÷µÄÓ°ÏìÉîÔ¶¡£¸Ã¹«Ë¾°µÊ¾£¬´ó²¿ÃÅÓ°ÏìÓëÆä¼¹Øï·þÎñÓйأ¬ÀýÈçÒò»¼Õ߻Ï÷¼õÒÔ¼°ÓйصÄÕʵ¥ÑÓ³¤¶øµ¼ÖµĽ»Ò×ÊÕÈëµÄËðʧ¡£´Ë±í£¬IT·þÎñÌṩÉÌCognizantºÍÂÁ³ö²úÉÌNorsk HydroÈ¥ÄêÒ²Åû¶ÁËÀàËÆµÄÊÂÎñ£¬Ëðʧ±ðÀë¸ß´ï7000ÍòÃÀÔªºÍ4000ÍòÃÀÔª¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/universal-health-services-lost-67-million-due-to-ryuk-ransomware-attack/
6.SolarWinds¸ß¹Ü³ÆÆäÔâµ½µÄ¹©¸øÁ´¹¥»÷Ô´ÓÚÈõ¿ÚÁîй¶

Èí¼þ¹«Ë¾SolarWindsµÄÒ»Ãû¸ß¹Ü³ÆÆäÔâµ½¹©¸øÁ´¹¥»÷µÄµ××ÓÔÒòÊÇÒ»ÃûʵϰÉúʹÓÃÁËÈõÃÜÂë¡£³õ´ëÊ©²éÏÔʾ£¬×Ô2018Äê6ÔÂ17ÈÕÒÔÀ´£¬ÅäÖÃÃýÎóµÄGitHub´æ´¢¿âй¶ÁËÃÜÂësolarwinds123£¬¸ÃÎÊÌâÒÑÔÚ2019Äê11ÔÂ22ÈÕ½â¾ö£¬¶ø×î³õµÄ¹¥»÷¿ÉÄܲúÉúÓÚ2019Äê9ÔÂ4ÈÕ¡£¸Ã¹«Ë¾µÄCEO°µÊ¾£¬Õâ¿ÉÄÜÊÇÒ»ÃûʵϰÉúÓÚ2017ÄêÔÚËûµÄһ̨·þÎñÆ÷ÉÏʹÓõÄÃÜÂ룬²¢Ë½Ï½«ÃÜÂë°ä²¼µ½ÁËÆäÄÚ²¿Github¸öÈËÕÊ»§ÉÏ¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/115134/security/solarwinds-intern-solarwinds123-password-leak.html


¾©¹«Íø°²±¸11010802024551ºÅ