NeopetsÍøÕ¾Ô´´úÂëºÍ³¬¹ý6900ÍòÓû§ÐÅÏ¢±»µÁ

°ä²¼¹¦·ò 2022-07-22
1¡¢NeopetsÍøÕ¾µÄÔ´´úÂëºÍ³¬¹ý6900ÍòÓû§µÄÐÅÏ¢±»µÁ

      

¾Ý7ÔÂ20ÈÕ±¨Â·£¬Ðé¹¹³èÎïÍøÕ¾NeopetsµÄÔ´´úÂëºÍ³¬¹ý6900Íò»áÔ±µÄÓ×ÎÒÐÅÏ¢±»µÁ¡£±¾Öܶþ£¬ÃûΪTarTarXµÄºÚ¿ÍÒÔ4¸ö±ÈÌØ±Ò£¨Ô¼ºÏ94,000ÃÀÔª£©µÄ¼ÛÖµÏúÊÛNeopets.comÍøÕ¾µÄÔ´´úÂëºÍÊý¾Ý¿â¡£NeopetsÍŶӰµÊ¾ËûÃÇÒѾ­»ñϤ´ËÊÂÎñ£¬²¢ÔÚÖÂÁ¦½â¾öÎÊÌâ¡£¸Ã¹«Ë¾»¹°µÊ¾£¬Ö»Óй¥»÷Õß¿ÉÄÜʵʱ½Ó¼ûÊý¾Ý¿â£¬¸ü¸ÄNeopetsµÄÃÜÂë¿ÉÄܱ­Ë®³µÐ½£¬ÓÉÓÚ¹¥»÷ÕßÄܹ»ÇáËɵز鿴ÐÂÃÜÂë¡£´Ë±í£¬RedditÓû§neo_truths³Æ£¬ÔÚ·¢ÏÖ¸ÃÍøÕ¾´æÔÚ·ì϶ºó£¬ËûÒѾ­¶ÔÊý¾Ý¿â½øÐÐÁËÖÁÉÙÒ»Äêδ¾­ÊÚȨµÄ½Ó¼û¡£


https://www.bleepingcomputer.com/news/security/neopets-data-breach-exposes-personal-data-of-69-million-members/


2¡¢×êÑÐÍŶӷ¢ÏÖÀàËÆÈðÊ¿¾üµ¶µÄLightning Framework

      

¾ÝIntezer 7ÔÂ21ÈÕ±¨Â·£¬ÐÂÄ£¿é»¯¶ñÒâÈí¼þLightning Framework¿ÉÓÃÀ´×°ÖÃrootkitºÍºóÃÅ¡£ËüÓµÓдóÁ¿Ö°ÄÜ£¬³ÉΪÕë¶ÔLinuxϵͳ¿ª·¢µÄ×ÔӵĿò¼ÜÖ®Ò»£¬±»³ÆÎªÈðÊ¿¾üµ¶¡£¸Ã¿ò¼ÜÓµÓб»¶¯ºÍ×Ô¶¯Óë¹¥»÷ÕßͨѶµÄÖ°ÄÜ£¬Ô̺¬ÔÚÖ¸±êÉ豸ÉÏ´ò¿ªSSH£¬ÒÔ¼°¶à̬¿ÉËÜÉúºÅÁîºÍ½ÚÔìÅäÖ᣶ñÒâÈí¼þµÄÖ÷ÌâÊÇÒ»¸öÏÂÔØ·¨Ê½£¨¡°kbioset¡±£©ºÍÒ»¸öÖ÷ÌâÄ£¿é£¨¡°kkdmflush¡±£©£¬»¹Ê¹ÓÃÁË·ÂðÓòÃû£¬²¢¼Ù×°³ÉSeahorse GNOME passwordºÍ¼ÓÃÜÃÜÔ¿ÖÎÀíÆ÷£¬ÒÔÈÆ¹ýϵͳµÄ¼ì²â¡£


https://www.intezer.com/blog/research/lightning-framework-new-linux-threat/


3¡¢KasperskyÅû¶»ùÓÚRustµÄÐÂÀÕË÷Èí¼þLunaµÄϸ½Ú

      

7ÔÂ20ÈÕ£¬Kaspersky·¢ÏÖ¼ÌBlackCatºÍHiveÖ®ºóµÄµÚÈý¸ö»ùÓÚRustµÄÀÕË÷Èí¼þLuna£¬Ä¿Ç°ÈÔÔÚ¿ª·¢ÖС£ËüÄܹ»ÔÚ Windows¡¢LinuxºÍESXiϵͳÉÏÔËÐУ¬ÆäÖÐLinuxºÍESXiµÄÑù±¾¶¼ÊÇʹÓÃÒ»ÑùµÄÔ´´úÂë±àÒëµÄ£¬ÓëWindowsµÄ°æ±¾Ïà±Å×ÐһЩÇá΢µÄ±ä¶¯¡£Ëü»¹Ê¹ÓÃÁËÒ»ÖÖ²»Ì«³£¼ûµÄ¼ÓÃܹ滮£¬Í¨¹ýCurve25519ºÍAESµÄ×éºÏ½øÐмÓÃÜ¡£´Ë±í£¬ÓÉÓÚ¶þ½øÔìÎļþÖÐÓ²±àÂëµÄÊê½ð¼Í¼ÖÐµÄÆ´Ð´ÃýÎó£¬×êÑÐÈËÔ±´§Ä¦ÆäÖ÷Ì⿪·¢ÈËÔ±Óë¶íÂÞ˹ÓйØ¡£


https://securelist.com/luna-black-basta-ransomware/106950/


4¡¢LinkedInÈÔÊÇ2022ÄêQ2´¹µö»î¶¯Öб»·ÂÕÕ×î¶àµÄÆ·ÅÆ

      

Check PointÔÚ7ÔÂ19ÈÕ°ä²¼ÁË2022ÄêµÚ¶þ¼¾¶ÈÆ·ÅÆÍøÂç´¹µöµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö£¬ÔÚQ2µÄ´¹µö»î¶¯ÖÐLinkedInÈÔÃûÁаñÊ×£¬ÓëQ1Ïà±È¼ÙðLinkedInµÄÕ¼±È´Ó52%½µÂäµ½45%¡£È»¶ø£¬ËüÓë±»·ÂðµÄµÚ¶þ´óÆ·ÅÆMicrosoftÖ®¼äÈÔÓµÓÐÏ൱´óµÄ¾àÀ루½öΪ13%£©¡£Æä´ÎÊÇDHL£¨12%£©¡¢Amazon(9%)¡¢Apple(3%)ºÍAdidas(2%)¡£ÆäÖУ¬¼ÙÒâLinkedInµÄ´¹µö»î¶¯ÊÔͼ·ÂÕÕ·¢Ë͸øÓû§µÄ³£¼ûÐÂÎÅ£¬Õë¶ÔMicrosoftµÄ´¹µö»î¶¯ÖØÒªÊÇÒªÇóÑéÖ¤OutlookÕÊ»§ÒÔÇÔÈ¡Óû§ÃûºÍÃÜÂë¡£


https://blog.checkpoint.com/2022/07/19/linkedin-still-number-one-brand-to-be-faked-in-phishing-attempts-while-microsoft-surges-up-the-rankings-to-number-two-spot-in-q2-report/


5¡¢¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½¹¥»÷£¬ÏµÍ³ÈÔÔÚ¸´Ô­ÖÐ

      

¾ÝýÌå7ÔÂ21ÈÕ±¨Â·£¬¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½ÁËÍøÂç¹¥»÷¡ £»¬Ìú¬µØÓò½ÌÓý¾Ö°µÊ¾£¬ÔÚÔâµ½ÍøÂç¹¥»÷ºó£¬ÆäÔÚÖÂÁ¦¸´Ô­ITϵͳ²¢± £»¤½ÌÈËÔ±¹¤¡¢Ñ§ÉúºÍ¼ÒÍ¥µÄÓ×ÎÒÐÅÏ¢¡£ÉÐδעÃ÷¹¥»÷Õß¿ÉÄܽӼûÁËÄÄЩÀàÐ͵ÄÎļþ£¨ÈôÊÇÓеϰ£©£¬»òÕßÊÇ·ñ»á¸¶·ÑÀ´³ÁнӼûϵͳ¡£½²»°È˳Æ£¬½üÄêÀ´Õë¶Ô½ÌÓý²¿ÃŵĹ¥»÷Ô½À´Ô½ÆµÈÔ£¬Regina¹«Á¢Ñ§ÌÃÔÚ½ñÄê5ÔÂÔâµ½Á˹¥»÷²¢¹Ø¹ØÁËËùÓлùÓÚ»¥ÁªÍøµÄϵͳ£¬2021Äê1ÔÂÆ¤¶ûµØÓòµÄ½ÌÓý¾ÖÔøÔâµ½¹¥»÷¡£


https://www.cbc.ca/news/canada/kitchener-waterloo/waterloo-region-district-school-board-cyber-attack-1.6526731?cmp=rss


6¡¢Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üУ¬×ܼƽ¨¸´45¸ö·ì϶ 

      

7ÔÂ20ÈÕ£¬Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üУ¬×ܼƽ¨¸´45¸ö·ì϶¡£ÆäÖнÏΪÑϳÁµÄÊÇCisco Nexus DashboardÖеÄËÁÒâºÅÁîÖ´Ðзì϶£¨CVE-2022-20857£¬CVSSÆÀ·Ö9.8£©¡¢ÈÝÆ÷Ó³Ïñ¶Áд·ì϶£¨CVE-2022-20858£©ºÍ¿çÕ¾ÒªÇóαÔì·ì϶£¨CVE-2022-20861£©¡£³ý´ËÖ®±í£¬Cisco»¹½¨¸´ÁËÆäSmall Business RV110W¡¢RV130¡¢RV130WºÍRV215W·ÓÉÆ÷ÖеÄ35¸ö·ì϶£¬ËüÃÇ¿ÉÄܵ¼ÖÂËÁÒâ´úÂëÖ´ÐкÍDoS¹¥»÷¡£


https://thehackernews.com/2022/07/cisco-releases-patches-for-critical.html