ºÚ¿ÍÔÚ°µÍø¹«¿ªÓ¡¶ÈBigBasketÔ¼2000Íò¸ö?Óû§µÄÐÅÏ¢£»Threatpost°ä²¼ÃûΪ2021£ºÀÕË÷Èí¼þµÄÑݱäµÄ»ã±¨
°ä²¼¹¦·ò 2021-04-261.ºÚ¿ÍÔÚ°µÍø¹«¿ªÓ¡¶ÈBigBasketÔ¼2000Íò¸öÓû§µÄÐÅÏ¢

BigBasketÊÇÓ¡¶ÈµÄÔÚÏßÔÓ»õÅäËÍ·þÎñ£¬¿ÉÔÚÓû§ÔÚÏ߲ɰìÎïÆ·Ö®ºó½«ÆäÔËË͵½¼ÒÖС£4ÔÂ25ÈÕÔ糿£¬³ÛÃûй¶Êý¾ÝÂô¼ÒShinyHunterÔÚ°µÍøÉϰ䲼ÁËÒ»¸ö¾Ý³ÆÊÇ´ÓBigBasketµÁÈ¡µÄÊý¾Ý¿â£¬ÆäÖÐÓг¬¹ý2000Íò¸öÓû§µÄ¼Í¼£¬Ô̺¬µç×ÓÓʼþµØÖ·¡¢SHA1¹þÏ£ÃÜÂë¡¢µØÖ·¡¢µç»°ºÅÂëºÍÆäËûÀàÐ͵ÄÐÅÏ¢µÈ¡£´Ë±í£¬¸ÃºÚ¿Í³ÆÆäÒѾʹÓÃSHA1Ëã·¨ÆÆ½âÁË200Íò¸öÃÜÂ룬ÆäÖÐ70ÍòÃû¿Í»§Ê¹ÓÃÁË¡°password¡±×÷ΪÃÜÂë¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/hacker-leaks-20-million-alleged-bigbasket-user-records-for-free/
2.Threatpost°ä²¼ÃûΪ2021£ºÀÕË÷Èí¼þµÄÑݱäµÄ»ã±¨

Threatpost°ä²¼ÁËÃûΪ2021£ºÀÕË÷Èí¼þµÄÑݱäµÄ·ÖÎö»ã±¨¡£¸Ã»ã±¨Ô̺¬ÁËÀÕË÷Èí¼þµÄÐÂÇ÷Ïò¡¢ÀÕË÷Èí¼þ¾¼ÃºÚĻһÀÀ¡¢ÍøÂç±£ÏÕÍÆ¶¯ÀÕË÷Èí¼þÖ§¸¶¼¤Ôö¡¢Íþвµ÷²é:ÀÕË÷Èí¼þ¹¥»÷µÄ¼ÛÖµ¡¢48Ó×ʱÀÕË÷Èí¼þ¹¥»÷ÈÕÖ¾ºÍÔ¤·ÀÀÕË÷Èí¼þµÄʵÓÃÖ¸Äϵȶà¸ö²¿ÃÅ¡£»ã±¨Ö¸³ö£¬¶ÔóÒס¢Ñ§Ìú͵±¾Ö»ú¹¹µÄ¹öÑ©ÇòʽµÄ¹¥»÷´Ë¿ÌÊÇÖØÒªµÄÍøÂ簲ȫÎÊÌâ¡£²¢ÇÒËæ×ÅÀÕË÷Èí¼þ¹¥»÷ÐÔÖʵIJ»Ðݱ䶯£¬°²È«ÔËάҲ±äµÃÔ½·¢¸´ÔÓ£¬ÀýÈçSunCryptµÈÍÅ»ïÌáÒ黨¾ø·þÎñ(DoS)¹¥»÷À´¸øÊܺ¦Õßʩѹ¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/ebook-2021-ransomware-emerging-risks/165477/
3.Ivanti°ä²¼ÓйضþάÂ밲ȫÍþÐ²Ì¬ÊÆµÄ·ÖÎö»ã±¨

Ivanti°ä²¼ÁËÓйضþάÂ밲ȫÍþÐ²Ì¬ÊÆµÄ·ÖÎö»ã±¨¡£¸Ã×êÑÐÔÚ½ñÄê2Ô¶ÔÃÀ¹ú¡¢Ó¢¹ú¡¢·¨¹ú¡¢µÂ¹ú¡¢ÖйúºÍÈÕ±¾µÄ4100¶àÃûÏû·ÑÕß½øÐÐÁ˵÷²é¡£»ã±¨ÏÔʾ£¬ÓÐ57£¥µÄÊÜ·ÃÕßÐû³Æ¶þάÂëµÄʹÓÃÓÐËùÔö³¤£¬83£¥µÄÊÜ·ÃÕßÔò°µÊ¾ËûÃÇÔÚÈ¥ÄêµÚÒ»´ÎʹÓöþάÂë½øÐи¶¿î»òÂòÂô¡£´Ë±í£¬»ã±¨Ö¸³öºÚ¿ÍÄܹ»Í¨¹ý¶þάÂ뵼ֵݲȫ·çÏÕÔ̺¬Ôö³¤ÁªÏµÈËÁÐ±í¡¢´òµç»°¡¢·¢ËͶÌÐÅ¡¢±àдµç×ÓÓʼþ¡¢¸¶¿î¡¢ÏÔʾÓû§µÄµØÎ»¡¢¹Ø×¢É罻ýÌåÕÊ»§ºÍÔö³¤Ê×Ñ¡µÄWi-FiÍøÂç¡£
ÔÎÄÁ´½Ó£º
https://www.ivanti.com/blog/the-global-pandemic-has-led-to-unprecedented-qr-code-security-challenges
4.ºÚ¿ÍαÔìMicrosoft DirectX 12ÍøÕ¾·Ö·¢¶ñÒâÈí¼þ

ºÚ¿Í´´½¨ÁËÒ»¸öÐéαµÄMicrosoft DirectX 12ÏÂÔØÍøÕ¾£¬À´·Ö·¢ÇÔÈ¡¼ÓÃÜÇ®±ÒÇ®°üºÍÃÜÂëµÄ¶ñÒâÈí¼þ¡£¸ÃÍøÕ¾»¹ÓÐÁªÏµ±í¸ñ¡¢ÒþÖÔȨÕþ²ß¡¢ÃâÔðÉêÃ÷ºÍDMCAÇÖÈ¨Ò³Ãæ£¬µ«ÊÇÍøÕ¾ºÍ·Ö·¢µÄ·¨Ê½¾ùûÓкϷ¨Æ¾¾Ý¡£µ±Óû§µã»÷ÏÂÔØ°´Å¥Ê±»á±»³Á¶¨Ïòµ½Ò»¸ö±í²¿Ò³Ã棬À´ÏÂÔØ¶ñÒâÈí¼þ¡£¸Ã¶ñÒâÈí¼þÊÔͼ»ñÈ¡Êܺ¦ÕßµÄCookie¡¢Îļþ¡¢ÓйØÏµÍ³µÄÐÅÏ¢¡¢ÒÑ×°Öõķ¨Ê½ºÍµ±Ç°×ÀÃæµÄÆÁÄ»½ØÍ¼£¬ÒÔ¼°WindowsÈí¼þµÄ¸÷Àà¼ÓÃÜÇ®±ÒÇ®°ü£¬ÀýÈçLedger Live¡¢Waves.ExchangeºÍCoinomiµÈ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/fake-microsoft-directx-12-site-pushes-crypto-stealing-malware/
5.FacebookÅû¶½üÆÚ2¸ö°ÍÀÕ˹̹ºÚ¿ÍÍÅ»ïµÄ¼äµý»î¶¯

Facebook½üÆÚ·¢ÏÖÁË2¸ö±ðÀëÔÚ2019ÄêºÍ2020ÄêÆðÍ·»îÔ¾µÄ°ÍÀÕ˹̹ºÚ¿ÍÍÅ»ïµÄ¼äµý»î¶¯¡£ÕâÁ½¸ö×éÖ¯Ö®¼äËÆºõûÓÐÁªÏµ£¬µ«ËüÃǵÄÖ÷ÕÅËÆºõÏà·´¡£ËûÃǾùÀûÓÃÁËiOS¼äµýÈí¼þ£¬²¢ÒÔFacebookµÈÉ罻ýÌåÆ½Ì¨ÎªÆðµã£¬ÓëÖ¸±ê³ÉÁ¢ÁªÏµ²¢ÌáÒéÉç»á¹¤³Ì¹¥»÷£¬ÓÕʹËûÃǽøÈë´¹µöÒ³ÃæºÍÆäËû¶ñÒâÍøÕ¾¡£×êÑÐÈËÔ±´§¶ÈÆäÖÐÖ®Ò»Óë°ÍÀÕ˹̹°²È«»ú¹¹Óйأ¬ÔÚÍÁ¶úÆä¡¢ÒÁÀ¿Ë¡¢Àè°ÍÄÛºÍÀû±ÈÑÇÒ²Óй¥»÷»î¶¯¡£ÁíÒ»×éÓëArid ViperÓйأ¬ÖØÒªÕë¶Ô·¨ËþºÕÕþµ³³ÉÔ±¡¢µ±¾Ö¹ÙÔ±¡¢°²È«¶ÓÁкÍѧÉú¡£
ÔÎÄÁ´½Ó£º
https://www.wired.com/story/palestine-hacking-ios-custom-spyware/
6.Ìṩ¶©Æ±ÏµÍ³µÄRadixxÔâµ½¹¥»÷£¬Ó°Ïì20¶à¼Òº½¿Õ¹«Ë¾

Sabre CorporationµÄ×Ó¹«Ë¾RadixxÔÚ4ÔÂ22ÈÕ°ä·¢£¬Radixx Res?ÔÚ4ÔÂ20ÈÕÔâµ½Á˹¥»÷£¬Ó°ÏìÁËÆäԤԼϵͳ¡£RadixxÖØÒªÎªÁ®¼Ûº½¿Õ¹«Ë¾Ìṩ»úƱ¶©Æ±ÏµÍ³£¬Õâ´ÎÊÂÎñÓ°ÏìÁË20¼Òº½¿Õ¹«Ë¾£¬Ô̺¬ÈÕ±¾Peach AviationºÍZIPAIR¡¢±ÈÀûʱº½¿Õ¡¢ÖÇÀûSky AirlinesºÍ¼ÓÄôóAir TransatµÈ¹«Ë¾£¬µ¼ÖÂËûÃǵij˿ÍÎÞ·¨Í¨¹ýº½¿Õ¹«Ë¾µÄÍøÕ¾À´Ô¤Ô¼¡¢¸ü¸Ä¡¢É¾³ýºÍÈ·ÈÏ»úƱ¡£
ÔÎÄÁ´½Ó£º
https://www.databreaches.net/malware-attack-on-radixx-res-disrupts-20-airlines-ticket-reservation-systems/


¾©¹«Íø°²±¸11010802024551ºÅ