ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©¸øÁ´¹¥»÷¹Ø¹ØÊý°Ù¼ÒÃŵꣻ΢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨·ì϶ÏúÊÛXboxÀñÎ│»ñÀû1000Íò
°ä²¼¹¦·ò 2021-07-051.ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©¸øÁ´¹¥»÷¹Ø¹ØÊý°Ù¼ÒÃŵê

ÈðµäÁ¬Ëø³¬ÊÐCoop³ÆÆäÔâµ½ÁËKaseya¹©¸øÁ´¹¥»÷£¬Êý°Ù¼ÒÃÅµê¹Ø¹Ø¡£CoopµÄ½²»°È˰µÊ¾ÆäÓÚÉÏÖÜÎåÍíÉÏ6µã30·Ö×óÓÒ·¢ÏÖÓÐÉÙÊýÃŵê³öÏÖÎÊÌ⣬µ«Ò»Ò¹Ö®ºóÆä´ó²¿ÃÅÃŵ궼±»ÆÈ¹Ø¹Ø£¬Ô̺¬ÊÕÒøÌ¨ºÍ×ÔÖ÷½áÕËÔÚÄÚµÄÕû¸öÖ§¸¶ÏµÍ³¶¼ÖжÏÁË¡£´Ë±í£¬CoopûÓÐʹÓÃKesayaÈí¼þ£¬ÓÉÓÚËûÃǵÄÒ»¸öÈí¼þÌṩÉÌʹÓÃÁ˸ÃÈí¼þ¶øÊܵ½Ó°Ïì¡£°²È«¹«Ë¾HuntressLabs³Æ£¬Õâ´Î¹¥»÷»î¶¯µÄµ÷²éÈÔÔÚ½øÐÐÖУ¬ÖÁÉÙÓÐ200¼Ò×éÖ¯Êܵ½Ó°Ïì¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/119663/cyber-crime/coop-supermarket-kaseya-ransomware-attack.html
2.΢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨·ì϶ÏúÊÛXboxÀñÎ│»ñÀû1000Íò

΢ÈíǰµÍ¼¶¹¤³ÌʦVolodymyr KvashukÀûÓõçÉÌÆ½Ì¨·ì϶ÏúÊÛXboxÀñÎ│»ñÀû1000ÍòÃÀÔª¡£ËûµÄÍŶӵÄÖØÒªÖ¸±êÊÇ·ÂÕÕMicrosoftÔÚÏ߲ɰìÀ´·¢ÏÖ¸¶¿îÎÊÌâ¡£ÕâЩÐé¹¹ÕÊ»§Äܹ»±»ÏµÍ³¼ø±ð£¬ÔÚÍøÕ¾²É°ìÆ÷²Äʱ²»»áÊÕµ½ÈκβúÆ·£¬µ«Êǵ±²É°ìXboxÀñÎ│£¬½«»ñµÃÒ»¸öÆëÈ«ÓÐЧµÄ25λ´úÂë¡£Ëû²¢Î´½«¸Ã·ì϶֪ͨÆäÉϼ¶£¬¶øÊÇÀûÓÃÆä»ñÀû¡£Ö®ºó£¬Ëû×ܹ²ÀûÓø÷ì϶ÇÔÈ¡²¢ÏúÊÛÁ˳¬¹ý152000ÕÅXboxÀñÎ│£¬¼ÛÖµ1010ÍòÃÀÔª¡£
ÔÎÄÁ´½Ó£º
https://news.softpedia.com/news/microsoft-engineer-stole-10m-by-selling-xbox-gift-cards-533416.shtml
3.×êÑÐÈËÔ±Åû¶¶à¸öAndroidľÂíÇÔÈ¡FacebookÓû§Í´´¦

Dr. Web×êÑÐÈËÔ±Åû¶ÁË9¸öAndroidľÂíÇÔÈ¡FacebookÓû§Í´´¦¡£ÕâЩÀûÓüÙ×°³ÉÎÞº¦µÄÕÕÆ¬±à×ë¡¢ÓÅ»¯¡¢½¡ÉíºÍÕ¼ÐÇ·¨Ê½£¬À´ÓÕʹÊܺ¦ÕߵǼFacebookÕË»§£¬²¢ÀûÓÃÒ»¶ÎJavaScript´úÂë½Ù³ÖÊäÈëµÄƾ֤¡£¹ÌÈ»Õâ´Î»î¶¯ËƺõÊÇרÃÅÕë¶ÔFacebookÕÊ»§£¬µ«Dr.WebÖÒ¸æ³Æ£¬ÕâÖÖ¹¥»÷Ò²Äܹ»¼ÓÔØÈÎºÎÆäËüºÏ·¨ÍøÂçÆ½Ì¨µÄµÇÂ¼Ò³Ãæ£¬À´ÇÔÈ¡ÆäËü·þÎñµÄµÇ¼ÃûºÍÃÜÂë¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/07/android-apps-with-58-million-installs.html
4.ÃÀ¹ú±£ÏÕ¹«Ë¾AJG³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬¿Í»§ÐÅϢй¶

ÃÀ¹úArthur J. Gallagher (AJG) ³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬¿Í»§ÐÅϢй¶¡£AJGÊÇÃÀ¹úµÄÈ«Çò±£ÏÕ¾¼ÍºÍ·çÏÕÖÎÀí¹«Ë¾£¬×÷ΪȫÇò×î´óµÄ±£ÏÕ¾¼ÍÉÌÖ®Ò»£¬ÒµÎñ±é¼°49¸ö¹ú¶È/µØÓò¡£¹¥»÷²úÉúÔÚ2020Äê6ÔÂ3ÈÕÖÁ2020Äê9ÔÂ26ÈÕÆÚ¼ä£¬ÆäÔÚ2020Äê9ÔÂ28ÈÕÅû¶¸ÃÊÂÎñ²¢³ÆÃ»º±¼û¾Ýй¶¡£µ«ÔÚËæºóµÄµ÷²é·¢ÏÖ£¬7376È˵ÄÃô¸ÐÐÅϢй¶£¬Ô̺¬Éç»á°²È«ºÅÂë»ò˰ºÅ¡¢¼ÝÕÕ¡¢»¤ÕÕ¡¢µ®ÉúÈÕÆÚ¡¢Óû§ÃûºÍÃÜÂë¡¢Ô±¹¤¼ø±ðºÅ¡¢²ÆÕþÕË»§»òÐÅÓþ¿¨ÐÅÏ¢¡¢µç×ÓÊðÃû¡¢Ò½ÁÆÐÅÏ¢¡¢±£ÏÕÐÅÏ¢ÒÔ¼°ÉúÎï¼ø±ðÐÅÏ¢µÈ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/us-insurance-giant-ajg-reports-data-breach-after-ransomware-attack/
5.Unit 42°ä²¼2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÏòµÄ·ÖÎö»ã±¨

Unit 42°ä²¼ÁË2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÏòµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö£¬2Ôµ½4Ô¹²·ÖÅäÁË4969¸öеÄCVE±àºÅ£¬ÆäÖÐÑϳÁµÄ·ì϶Ϊ598¸ö£¬Õ¼±È15.5%£¬POC¿ÉÓÃÐÔΪ9.4%£»¸ß¼¶µÄΪ1659¸ö£¬Õ¼±È43.1%£¬POC¿ÉÓÃÐÔΪ8.1%£»ÖеÈΪ1592¸ö£¬Õ¼±È41.4%£¬POC¿ÉÓÃÐÔΪ7.0%¡£ÔÚ¹¥»÷ÀàÐÍ·½Ã棬´úÂëÖ´Ðй¥»÷Õ¼±È×î´ó£¬Îª45.6%£»¶ø¹¥»÷µÄ·¢Ô´´¦ËùÃæ£¬ÆäÖÐ×î¶àµÄÀ´×ÔÓÚÃÀ¹ú£¬Æä´ÎÊǶíÂÞ˹ºÍÖйú¡£
ÔÎÄÁ´½Ó£º
https://unit42.paloaltonetworks.com/network-attack-trends-february-april-2021/
6.WatchGuard°ä²¼2021ÄêµÚÒ»¼¾¶È»¥ÁªÍø°²È«·ÖÎö»ã±¨

WatchGuard°ä²¼ÁË2021ÄêµÚÒ»¼¾¶È»¥ÁªÍø°²È«·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö£¬ÔÚ2020ÄêQ1¼ì²âµ½µÄÍþвÖÐÓÐ74%ÊÇÁãÈÕ·ì϶¶ñÒâÈí¼þ£¬´ïµ½Á˺¹Çàиߡ£5ÖÖеĶñÒâÈí¼þUrsu¡¢Trojan.IFrame¡¢XML.JSLoader¡¢ZmutzyºÍZum.Androm½øÈëÁËÊ®´ó¶ñÒâÈí¼þµÄÅÅÐаñ¡£´Ë±í£¬´Ó3ÔÂ24ÈÕ(µÚÒ»´Î·¢ÏÖIPS¹¥»÷)µ½3Ôµף¬Õë¶ÔProxyLogin Exchange Server·ì϶µÄ¹¥»÷Ôö³¤ÁË1600%¡£
ÔÎÄÁ´½Ó£º
https://www.watchguard.com/wgrd-resource-center/security-report-q1-2021


¾©¹«Íø°²±¸11010802024551ºÅ