Uber°µÊ¾Ã»ÓÐЧ»§µÄÐÅÏ¢ÔÚ½üÆÚµÄ¹¥»÷ÊÂÎñÖÐй¶

°ä²¼¹¦·ò 2022-09-19
1¡¢Uber°µÊ¾Ã»ÓÐЧ»§µÄÐÅÏ¢ÔÚ½üÆÚµÄ¹¥»÷ÊÂÎñÖÐй¶

      

¾ÝýÌå9ÔÂ17ÈÕ±¨Â·£¬Uber°µÊ¾£¬Ã»ÓÐÖ¤¾ÝÅú×¢Óû§µÄÓ×ÎÒÐÅÏ¢ÒòÉÏÖÜËÄ·¢ÏֵĹ¥»÷»î¶¯Ð¹Â¶¡£¾Ý¡¶Å¦Ô¼Ê±±¨¡·±¨Â·£¬¹¥»÷ÕßÀûÓÃÒ»ÃûÔ±¹¤µÄSlackÕË»§£¬ÈëÇÖÁ˸ù«Ë¾µÄ¶à¸öÄÚ²¿ÏµÍ³£¬²¢ÌṩÁ˵ç×ÓÓʼþ¡¢ÔÆ´æ´¢ºÍ´úÂë´æ´¢¿âµÄ½ØÍ¼¡£´Ë±í£¬¹¥»÷Õß»¹Äܹ»½Ó¼û¹«Ë¾µÄHackerOne·ì϶Éͽð´òË㣬ÕâÒâζ×ÅËûÄܹ»²é¿´×êÑÐÈËÔ±Ìá½»µÄÿ¸ö·ì϶»ã±¨¡£Ä¿Ç°Éв»Ã÷ÏÔ¸ÃÊÂÎñÊÇ·ñµ¼ÖÂÆäËüÐÅÏ¢±»µÁ£¬»òÕß¹¥»÷ÕßÔÚÆäÍøÂçÖÐÍ£¶ÙÁ˶೤¹¦·ò¡£UberûÓÐй©ÓйØÕâ´Î¹¥»÷µÄϸ½Ú£¬¶ÔÈëÇÖµÄˮƽҲ²»Ã÷ÏÔ¡£


https://securityaffairs.co/wordpress/135876/data-breach/uber-data-breach-update.html


2¡¢Rockstar GameÔâµ½¹¥»÷ºóGTA 6µÄÊÓÆµºÍÔ´Âë±»µÁ

      

¾ÝýÌå9ÔÂ18Èճƣ¬ºÚ¿ÍÈëÇÖRockstar GameµÄSlack·þÎñÆ÷ºÍConfluence wikiºóÇÔÈ¡ÁËGTA 6£¨ÏÀµÁÁÔ³µÊÖ6£©µÄÓÎÏ·ÊÓÆµºÍÔ´´úÂë¡£ÃûΪteapotuberhackerµÄ¹¥»÷ÕßÔÚGTAForums°ä²¼ÁË90¶à¸öÓÎϷƬ¶ÎÊÓÆµ£¬ËüÃÇËÆºõÊÇÓÉ¿ª·¢ÈËÔ±´´½¨µÄ£¬ÓÃÓÚµ÷ÊÔÓÎÏ·Öеĸ÷ÀàÖ°ÄÜ£¬ÈçÉãÏñ»ú½Ç¶È¡¢NPC¸ú×ٺ͸±³ÇµÄµØÎ»¡£¹¥»÷Õß»¹Ðû³ÆÕ¼ÓÐGTA 5ºÍGTA 6µÄÔ´´úÂëºÍËØ²Ä×ÊÔ´£¬²¢ÊÔͼÀÕË÷Rockstar Games¡£¸ÃºÚ¿Í°µÊ¾ÆäÊÇUber¹¥»÷»î¶¯µÄÄ»ºóºÚÊÖ£¬×êÑÐÈËԱĿǰÉÐδȷ¶¨Õâһ˵·¨µÄÕýÈ·ÐÔ¡£


https://www.bleepingcomputer.com/news/security/gta-6-source-code-and-videos-leaked-after-rockstar-games-hack/


3¡¢ºÚ¿ÍÔÚ°µÍøÏúÊÛÐǰͿËÐÂ¼ÓÆÂ·Ö²¿³¬¹ý21Íò¿Í»§µÄÐÅÏ¢

      

¾Ý9ÔÂ16ÈÕ±¨Â·£¬¹¥»÷ÕßÔÚºÚ¿ÍÂÛ̳ÉÏÏúÊÛÒ»¸öÔ̺¬219675¸öÐǰͿ˿ͻ§µÄÐÅÏ¢µÄÊý¾Ý¿â¡£¸ÃÂÛ̳µÄËùÓÐÕßpompompurinÒ²²ÎÓëÁË»áÉÌÀ´Ö§³Ö±»µÁÊý¾ÝµÄÓÐЧÐÔ£¬²¢³ÆËùÌṩµÄÑù±¾Ô̺¬´óÁ¿ÕæÊµÐÔÖ¤¾Ý¡£¹¥»÷Õß×î³õÒÔ25000ÃÀÔªµÄ¼ÛÖµÏúÊÛ¶Ô±»ÈëÇÖÖÎÀíÃæ°åµÄ½Ó¼ûȨÏÞ£¬Ê¹Óû§Äܹ»Î±Ôì´ÙÏú´úÂëºÍ¸ü¸Ä»áÔ±µÈ¼¶µÈ¡£µ«ºóÀ´Ê§È¥Á˶ÔÖÎÀíÃæ°åµÄ½Ó¼ûȨÏÞ£¬Ä¿Ç°½öÏúÊÛÊý¾Ý¿âµÄÄÚÈÝ¡£ÐÂ¼ÓÆÂÐǰͿËÒÑ֪ͨÆä¿Í»§¹ØÓÚÕâ´ÎÊý¾Ýй¶ÊÂÎñ£¬²¢°µÊ¾Ã»ÓÐÈκβÆÕþÐÅϢй¶¡£


https://www.bleepingcomputer.com/news/security/hacker-sells-stolen-starbucks-data-of-219-000-singapore-customers/


4¡¢Bitdefender°ä²¼ÀÕË÷Èí¼þLockerGogaµÄÃâ·Ñ½âÃÜÆ÷

      

ýÌå9ÔÂ16Èճƣ¬°²È«¹«Ë¾Bitdefender°ä²¼ÁËÀÕË÷Èí¼þLockerGogaµÄÃâ·Ñ½âÃÜÆ÷¡£Bitdefender°µÊ¾£¬¸Ã½âÃÜÆ÷ÊÇÓë·¨ÂÉ»ú¹¹ºÏ×÷¿ª·¢µÄ£¬Ô̺¬Å·ÖÞÐ̾¯×éÖ¯¡¢NoMoreRansomÏîÄ¿¡¢ËÕÀèÊÀ¼ì²ì¹Ù°ì¹«ÊÒºÍËÕÀèÊÀÖݾ¯Ô±¾Ö¡£LockerGoga¼ÓÃܵÄÎļþ½«¾ßÓÓ×°.locked¡±ÎļþÀ©´óÃû£¬ÇÒÎÞ·¨Ê¹ÓÃͨÀýÈí¼þ´ò¿ª¡£¸Ã½âÃÜÆ÷Äܹ»É¨ÃèÕû¸öÎļþϵͳ»òÎļþ¼Ð£¬¶¨Î»¼ÓÃÜÎļþ£¬×Ô¶¯Ö´ÐнâÃÜ¡£


https://securityaffairs.co/wordpress/135843/malware/lockergoga-ransomware-decryptor.html


5¡¢Akamaiй©ÆäλÓÚÅ·ÖÞµÄij¿Í»§Ôâµ½´ó¹æÄ£DDoS¹¥»÷

      

AkamaiÔÚ9ÔÂ15ÈÕй©ÆäÅ·ÖÞµÄij¿Í»§ÔÚ½üÆÚÔâµ½ÁË´ó¹æÄ£DDoS¹¥»÷¡£9ÔÂ12ÈÕ£¬Akamai¼ì²âµ½Õë¶ÔÆäÅ·ÖÞij¿Í»§ÌáÒéµÄDDoS¹¥»÷£¬Æäʱ·¢Ë͵½Ö¸±êÍøÂçµÄÀ¬»øÁ÷Á¿´ïµ½ÁË704.8 MppsµÄ·åÖµ£¬±È7Ô·Ý×î´ó¹æÄ£µÄDDoS¹¥»÷ÓâÔ½Ô¼7%¡£¹¥»÷Õß»¹À©´óÁ˹¥»÷Ö¸±ê£¬Ö®Ç°ÖØÒª¼¯ÖÐÔÚ¹«Ë¾µÄÖØÒªÊý¾ÝÖÐÐÄ£¬ÕâÒ»´Î¹¥»÷Õß½«»ðÁ¦·ÖÉ¢µ½Å·Ö޺ͱ±ÃÀµÄÁù¸öÊý¾ÝÖÐÐĵØÎ»¡£´Ë±í£¬¸Ã¹¥»÷»¹Äܹ»ÔÚ60ÃëÄÚ´Óÿ·ÖÖÓ100¸ö»î¶¯µÄIPÉý¼¶µ½1813¸öIP¡£Akamai°µÊ¾¹¥»÷Òѱ»³É¹¦×èÖ¹¡£


https://www.akamai.com/blog/security/record-breaking-ddos-attack-in-europe


6¡¢Symantec°ä²¼¹ØÓÚWebwormµÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨

      

9ÔÂ15ÈÕ£¬Symantec°ä²¼¹ØÓÚºÚ¿ÍÍÅ»ïWebwormµÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£ÖÁÉÙ´Ó2017ÄêÆðÍ·£¬Webworm¾ÍÆðÍ·Õë¶Ô¶íÂÞ˹¡¢¸ñ³¼ªÑÇ¡¢Ãɹź͵ÈÑÇÖÞ¹ú¶ÈµÄIT·þÎñ¡¢º½¿Õº½ÌìºÍµçÁ¦ÐÐÒµµÄ×éÖ¯¡£×êÑÐÈËÔ±·¢ÏÖ£¬¸ÃÍŻ↑·¢ÁËÈýÖֽϾɵÄÔ¶³Ì½Ó¼ûľÂíµÄ¶¨Ôì°æ±¾£¬Ô̺¬Trochilus¡¢Gh0st RAT ºÍ 9002 RAT¡£ÆäÖÐһЩÒѱ»ÓÃÓÚ¹¥»÷£¬¶øÁíһЩÔò´¦ÓÚÔ¤²¿Êð»ò²âÊԽ׶Ρ£¾Ý´§Ä¦£¬ÕâÑù×ö¿ÉÄÜÊÇΪÁ˸²¸ÇÆä×ÙÓ°£¬²¢½µµÍ¿ª·¢³É±¾¡£


https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/webworm-espionage-rats