°ÍÎ÷HariexpressÊý¾Ý¿âÅäÖÃÃýÎóй¶17.5ÒÚÌõÓû§¼Í¼

°ä²¼¹¦·ò 2021-10-15

°ÍÎ÷HariexpressÊý¾Ý¿âÅäÖÃÃýÎóй¶17.5ÒÚÌõÓû§¼Í¼


°ÍÎ÷HariexpressÊý¾Ý¿âÅäÖÃÃýÎóй¶17.5ÒÚÌõÓû§¼Í¼.png


Safety DetectivesÔÚ10ÔÂ13ÈÕÅû¶£¬°ÍÎ÷µçÉ̼¯³Éƽ̨Hariexpressй¶Á˳¬¹ý610 GBÊý¾Ý ¡£Õâ´ÎÊÂÎñÊÇÓÉÓÚElasticsearch·þÎñÆ÷ÅäÖÃÃýÎóµ¼ÖµÄ£¬ÆäÖÐÔ̺¬Á˳¬¹ý1751023279ÌõÓû§¼Í¼ ¡£¾Ý×êÑÐÈËÔ±³Æ£¬ËûÃÇÔÚ5ÔÂ12ÈÕ·¢ÏÖÁËй¶µÄÊý¾Ý£¬¾­¹ý¶ÈÎöµ±Ê¹ØâЩÊý¾ÝÒѹ«¿ªÁËÒ»¸ö¶àÔ ¡£Ö±ÖÁĿǰ¸ÃÊý¾Ý¿âÈÔδµÃµ½±£»¤£¬HariexpressҲδ¶Ô´ËÊÂ×÷³ö»ØÓ¦ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/brazilian-marketplace-integrator-hariexpress-records/


°Ä´óÀûÑǵ±¾Ö½«²Éȡɾ³ý±»µÁÎļþµÄ·½Ê½½â¾öÊý¾ÝÎÊÌâ


°Ä´óÀûÑǵ±¾Ö½«²Éȡɾ³ý±»µÁÎļþµÄ·½Ê½½â¾öÊý¾ÝÎÊÌâ.png


°Ä´óÀûÑǵ±¾ÖÔÚ10ÔÂ15ÈÕ°ä²¼ÁËÒ»ÏîеÄÀÕË÷Èí¼þÐж¯´òË㣬ÊǰĴóÀûÑÇΪÆÚÊ®ÄêµÄ¡¶2020ÄêÍøÂ簲ȫսÊõ¡·ÖеÄÒ»²¿ÃÅ ¡£ÎªÁ˸üÓÐÁ¦µØ½ø¹¥ÀÕË÷Èí¼þ¹¥»÷»î¶¯£¬°Ä´óÀûÑǵ±¾Ö°ä²¼ÁË¡¶2021Äê¼à¶½·¨½¨¸Ä°¸¡· ¡£ÆäÖл®¶¨°Ä´óÀûÑÇÁª¹ú¾¯Ô±ºÍÐÌʵý±¨Î¯Ô±»áÓÐȨɾ³ýÓë·¸×ï»î¶¯ÓйصÄÊý¾Ý£¬ÕâÔÊÐí·¨Âɲ¿ÃÅɾ³ýÔÚÀÕË÷Èí¼þ¹¥»÷ÆÚ¼ä±»µÁ²¢´æ´¢ÔÚ¹¥»÷Õß·þÎñÆ÷ÉϵÄÊý¾Ý£¬ÒÔÔ¤·ÀÊý¾Ýй¶ÎÊÌâ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/australia-to-tackle-ransomware-data-breaches-by-deleting-stolen-files/


ÔËÓªÉÌVerizonµÄ²¿ÃÅÓû§Ôâµ½ÈëÇÖ£¬ÉõÖÁ±»µÁË¢ÐÅÓþ¿¨


ÔËÓªÉÌVerizonµÄ²¿ÃÅÓû§Ôâµ½ÈëÇÖ£¬ÉõÖÁ±»µÁË¢ÐÅÓþ¿¨.png


VerizonÆìϵÄÔËÓªÉÌVisible°ä²¼ÉêÃ÷£¬ÈÏ¿ÉÔÚ´Óǰ¼¸Ì첿ÃÅÓû§µÄÕË»§Ôâµ½ÈëÇÖ ¡£Æäʱ£¬ÓÐЧ»§·´Ó³ËûÃǵÄÕË»§ÓпÉÒɻ£¬Ò»Ð©ÈË»¹°µÊ¾ËûÃǵÄÐÅÓþ¿¨Òѱ»µÁË¢£¬²¢ÇÒÎÞ·¨½Ó¼ûÕË»§²¢³ÁÖÃÃÜÂë ¡£Visible°µÊ¾£¬Æäϵͳ¾ùδÔâµ½ºÚ¿ÍÈëÇÖ£¬»¹½¨ÒéÓû§²é³­Ê¹ÓÃÁËÒ»ÑùÍ´´¦µÄÆäËü·þÎñ£¬ÕⰵʾÓû§¿ÉÄÜÊÇÔâµ½ÁËÍ´´¦Ìî³ä¹¥»÷ ¡£µ«´óÁ¿VisibleÓû§Ìá³ö£¬¶Ìȱ2FAÑéÖ¤ÊǹؼüÔ­Òò ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/verizon-digital-carrier-visible-customer-accounts-were-hacked/


Sophos·¢ÏÖCryptoRomÕë¶ÔÅ·ÃÀiPhoneÓû§µÄÚ¿Æ­¹¥»÷


Sophos·¢ÏÖCryptoRomÕë¶ÔÅ·ÃÀiPhoneÓû§µÄÚ¿Æ­¹¥»÷.png


Sophos×êÑÐÈËÔ±ÔÚ±¾ÖÜÈýÅû¶ÁËеĹú¼ÊÚ¿Æ­ÍÅ»ïCryptoRom ¡£CryptoRomµÄÖ¸±êÖØÒªÊÇʹÓÃÔ¼»áÀûÓã¨Ô̺¬TinderºÍBumble£©µÄiPhoneÓû§£¬¹¥»÷ÁìÓòÒѾ­´ÓÑÇÖÞÀ©´óµ½ÁËÃÀ¹úºÍÅ·ÖÞ ¡£¹¥»÷ÕßÊ×ÏÅ×Õʹָ±êÏÂÔØÒ»¸öαÔìµÄµÄ¼ÓÃÜÇ®±ÒÂòÂôÀûÓ㬶øºóÇÔȡָ±êµÄ¼ÓÃÜÇ®±Ò£¬²¢×°ÖöñÒâÈí¼þÀ´Ô¶³Ì½ÚÔìÆäÊÖ»ú ¡£×êÑÐÅú×¢£¬¹¥»÷ÕßÒѾ­Í¨¹ýÕâÖÖ·½Ê½×¬È¡ÁËÊý°ÙÍòÃÀÔª ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/international-cryptocurrency-scam-ring-targets-european-dating-app-users/


Kaspersky°ä²¼APT×éÖ¯IronHusky¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨


Kaspersky°ä²¼APT×éÖ¯IronHusky¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨.png


KasperskyÔÚ10ÔÂ12ÈÕ°ä²¼Á˹ØÓÚAPT×éÖ¯IronHusky¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨ ¡£2021Äê8ÔÂÏÂÑ®ºÍ9ÔÂÉÏÑ®£¬×êÑÐÈËÔ±¼ì²âµ½ÔÚ¶à¸öWindows·þÎñÆ÷ÉÏÀûÓÃÁËWin32kÇý¶¯·¨Ê½ÖеĿªÊͺóʹÓ÷ì϶CVE-2021-40449µÄ¹¥»÷»î¶¯ ¡£¸Ã»î¶¯»¹ÀûÓÃÁ˶ñÒâÈí¼þMysterySnail£¬Æä´úÂëµÄÀàËÆÐÔºÍC2µÄ³ÁÓÃʹµÃ×êÑÐÈËÔ±½«Õâ´Î»î¶¯Óë2012ÄêµÄAPT×éÖ¯IronHusky¹ØÁªÆðÀ´ ¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/mysterysnail-attacks-with-windows-zero-day/104509/



CISAºÍFBI½áºÏ°ä²¼¹ØÓÚË®ÎñÏµÍ³ÍøÂçÍþвµÄ°²È«²¼¸æ


CISAºÍFBI½áºÏ°ä²¼¹ØÓÚË®ÎñÏµÍ³ÍøÂçÍþвµÄ°²È«²¼¸æ.png


ÃÀ¹úCISA¡¢FBI¡¢EPAºÍNSAÔÚ10ÔÂ14ÈÕ°ä²¼Á˽áºÏÍøÂ簲ȫ²¼¸æ(CSA) £¬¾ßÌå˵ÁËÈ»ÃÀ¹úË®Îñϵͳ(WWS)ÐÐÒµËùÃæ¶ÔµÄÍøÂçÍþв ¡£²¼¸æÇ¿µ÷ÁËÔÚ½øÐеÄÕë¶ÔWWSÐÐÒµµÄITºÍOTÍøÂ硢ϵͳºÍÉ豸µÄ¹¥»÷»î¶¯£¬¸Ã»î¶¯¿ÉÄÜ»áÓ°ÏìÓйع«Ë¾Ìṩ¾»Ë®¡¢ÒûÓÃË®ºÍÓÐЧ´¦Ö÷ÏË®µÄÄÜÁ¦ ¡£CISA»¹°ä²¼ÁËWWSÐÐÒµµÄÍøÂç·çÏÕºÍ×ÊÔ´ÐÅϢͼ£¬Ö¸³öÁ˸ÃÐÐÒµÃæ¶ÔµÄÐÅÏ¢¼¼ÊõºÍÔËÓª¼¼Êõ·çÏÕ ¡£


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/10/14/ongoing-cyber-threats-us-water-and-wastewater-systems-sector