2.35ÒÚTwitterÓû§µÄÓ×ÎÒÐÅÏ¢ÔÚºÚ¿ÍÂÛ̳Éϰ䲼
°ä²¼¹¦·ò 2023-01-05
¾ÝýÌå1ÔÂ4ÈÕ±¨Â·£¬Ò»¸öÔ̺¬³¬¹ý2ÒÚTwitterÓû§µÄµç×ÓÓʼþµØÖ·µÄÊý¾Ý¼¯ÔÚºÚ¿ÍÂÛ̳BreachedÉϰ䲼£¬½öÐèÖ§¸¶8¸öÂÛ̳Ǯ±Ò»ý·Ö£¨¼ÛÖµÔ¼2ÃÀÔª£©¡£×êÑÐÈËÔ±ÒÑÈ·ÈÏÆäÖÐÁгöµÄºÜ¶àÓʼþµØÖ·µÄÓÐЧÐÔ¡£¾Ý³Æ£¬¸ÃÊý¾Ý¼¯Óë11Ô·ÝÁ÷´«µÄ4ÒÚÌõÊý¾ÝÒ»Ñù£¬µ«¾¹ýËãÕʺó²»Ô̺¬³Á¸´Ï×ÜÊýÏ÷¼õµ½Ô¼221608279Ìõ¡£Êý¾ÝÒÔRAR´æµµµÄ´ó¾Ö°ä²¼£¬ÆäÖÐÔ̺¬6¸öÎı¾Îļþ£¬×Ü´óÓ×59GB£¬Éæ¼°ÓʼþµØÖ·¡¢ÐÕÃû¡¢êdzƺ͹Ø×¢µÈÐÅÏ¢¡£
https://securityaffairs.com/140352/data-breach/twitter-data-leak-235m-users.html
2¡¢ÎÖ¶ûÎÖÔâµ½EnduranceµÄÀÕË÷¹¥»÷200GBÃô¸ÐÊý¾ÝÒÉËÆÐ¹Â¶
1ÔÂ3ÈÕ±¨Â·³Æ£¬·¨¹ú°²È«»ú¹¹Anis Haboubi·¢ÏÖºÚ¿ÍÔÚÂÛ̳ÉÏÒÔ2500ÃÀÔªµÄ¼ÛÖµÏúÊÛ´ÓÎÖ¶ûÎÖÇÔÈ¡µÄÊý¾Ý¡£2022Äê12ÔÂ31ÈÕ£¬ÂÛ̳³ÉÔ±IntelBrokerÐû³ÆÎÖ¶ûÎÖÔâµ½ÁËEnduranceµÄÀÕË÷¹¥»÷£¬¹¥»÷ÕßÇÔÈ¡ÁË200GBµÄÃô¸ÐÊý¾Ý£¬ÕâЩÊý¾Ý´Ë¿ÌÔÚÏúÊÛ¡£Âô¼ÒÚ¹ÊÍ˵£¬ËûûÓÐË÷ÒªÊê½ð£¬ÓÉÓÚËûÒÔΪ¸Ã¹«Ë¾²»»á¸¶Êê½ð¡£¾ÝϤ£¬±»µÁÊý¾ÝÔ̺¬Êý¾Ý¿â½Ó¼û¡¢CICD½Ó¼û¡¢Atlassian½Ó¼û¡¢ÓòÃû½Ó¼û¡¢WiFiµãºÍµÇ¼¡¢ÊÚȨ³ÐÔØ¡¢API¡¢PAC°²È«½Ó¼û¡¢Ô±¹¤Ãûµ¥¡¢Èí¼þÐí¿ÉÖ¤ÒÔ¼°ÃÜÔ¿ºÍϵͳÎļþ¡£Ä¿Ç°£¬Éв»Ã÷ÏÔÕâһ˵·¨µÄÕæÊµÐÔ¡£
https://securityaffairs.com/140258/hacking/volvo-cars-data-breach-2.html
3¡¢Qualys·¢ÏÖÒÔ±»µÁµÄÒøÐÐÊý¾ÝΪµö¶ü·Ö·¢BitRATµÄ»î¶¯
QualysÔÚ1ÔÂ3Èճƣ¬½üÆÚÒ»³¡ÐµĶñÒâÈí¼þ»î¶¯ÀûÓñ»µÁµÄÒøÐÐÊý¾Ý×÷Ϊµö¶ü£¬Ö¼ÔÚ·Ö·¢Ô¶³Ì½Ó¼ûľÂíBitRAT¡£¸Ã¹«Ë¾ÔÚµ÷²é´¹µö¹¥»÷ÖеÄBitRATµö¶üʱ£¬·¢ÏÖÒ»¼Ò¸çÂ×±ÈÑǺÏ×÷ÒøÐеÄIT»ù´¡ÉèÊ©Òѱ»¹¥»÷Õß½Ù³Ö£¬418777Ìõ¿Í»§Êý¾Ý±»µÁ¡£¹¥»÷Õß½«Êý¾Ýµ¼³öµ½±øÆ÷»¯µÄExcel¶ñÒâÎĵµÖУ¬ÒÔÓÕʹÊÕ¼þÈË´ò¿ªÎļþ¡£´ò¿ªÎļþ²¢ÆôÓúêºó£¬½«ÏÂÔØ²¢Ö´Ðеڶþ½×¶ÎDLL payload¡£µÚ¶þ½×¶ÎDLLʹÓø÷Àà·´µ÷ÊÔ¼¼Êõ£¬×îÖÕÔÚÖ¸±êÖ÷»úÉϼìË÷²¢Ö´ÐÐBitRAT¡£
https://blog.qualys.com/vulnerabilities-threat-research/2023/01/03/bitrat-now-sharing-sensitive-bank-data-as-a-lure
4¡¢ÃÀ¹úÌú·ºÍ»ú³µ¹«Ë¾WabtecÔâµ½LockBitµÄÀÕË÷¹¥»÷
ýÌå1ÔÂ3Èճƣ¬ÃÀ¹úÌú·ºÍ»ú³µ¹«Ë¾Wabtec Corporationй©ÆäÔâµ½ÀÕË÷¹¥»÷µ¼ÖÂÊý¾Ýй¶¡£ºÚ¿ÍÔçÔÚ2022Äê3ÔÂ15ÈÕ¾ÍÈëÇÖÁËËûÃǵÄÍøÂç²¢ÔÚϵͳÉÏ×°ÖÃÁ˶ñÒâÈí¼þ£¬WabtecÔÚ6ÔÂ26ÈÕ³ÆÔÚÍøÂçÉϼì²âµ½Òì³£»î¶¯¡£¼¸Öܺó£¬LockBit°ä²¼ÁË´ÓWabtecÇÔÈ¡µÄÊý¾ÝÑù±¾£¬²¢×îÖÕÔÚ2022Äê8ÔÂ20ÈÕ¹«¿ªÁËÈ«Êý±»µÁÊý¾Ý¡£Wabtec¶Ô¸ÃÊÂÎñµÄµ÷²éÓÚ2022Äê11ÔÂ23ÈÕʵÏÖ£¬È·ÈÏй¶ÐÅÏ¢Ô̺¬ÐÕÃû¡¢Éí·ÝÖ¤ºÅÂë¡¢Éç»á±£ÏÕºÅÂë»ò²ÆÕþ´úÂë¡¢»¤ÕÕºÅÂëºÍ¹ÍÖ÷¼ø±ðºÅÂëµÈ¡£¸Ã¹«Ë¾ÓÚ2022Äê12ÔÂ30ÈÕÆðÍ·ÏòÊÜÓ°ÏìµÄÓ×ÎÒ·¢ËÍ֪ͨ£¬µ«Î´Ð¹Â©È·ÇÐÈËÊý¡£
https://www.bleepingcomputer.com/news/security/rail-giant-wabtec-discloses-data-breach-after-lockbit-ransomware-attack/
5¡¢×êÑÐÈËÔ±Åû¶Õë¶ÔÐÅÏ¢°²È«ÁìÓòµÄFlipper Zero´¹µö»î¶¯
¾Ý1ÔÂ3ÈÕ±¨Â·£¬Dominic AlvieriÅû¶ÁËÕë¶Ô°²È«×êÑÐÈËÔ±µÄFlipper Zero´¹µö»î¶¯¡£Flipper ZeroÊÇÒ»¿î±ãЯʽ¶àÖ°ÄÜÍøÂ簲ȫ¹¤¾ß£¬ÆäÔÚÈ¥Äê³öÏÖ³ö²úÎÊÌâµ¼Ö¹©¸øÇ·È±£¬ÎÞ·¨Âú×ãÈÔÔÚÔö³¤µÄÐèÒª¡£¹¥»÷ÕßÀûÓÃÈËÃǶÔFlipper ZeroµÄÐËÖ¼°Æä¹©¸øÇ·È±£¬´´½¨É̵ê¼Ù×°ÏúÊÛËü¡£×êÑÐÈËÔ±·¢ÏÖÁËαÔìµÄÈý¸öTwitterÕË»§ºÍÁ½¸öÉ̵ꡣ½áÕËʱÂò¼Ò»á½øÈë´¹µöÒ³Ãæ£¬²¢±»ÒªÇóÊäÈëÓʼþµØÖ·¡¢ÐÕÃûºÍËÍ»õµØÖ·£¬¶øºóÑ¡ÔñʹÓÃÒÔÌ«·»»ò±ÈÌØ±Ò¸¶¿î¡£´Ë´¦ÁгöµÄÇ®°üµØÖ·Ã»ÓÐÊÕµ½Èκθ¶¿î£¬ËùÒÔҪôÊǸÃÉ̵êûÓÐÆµ½ÈκÎÈË£¬ÒªÃ´ÊÇÔÚÿ´ÎÂòÂôºó¶¼Ê¹ÓÃеÄÇ®°ü¡£
https://www.bleepingcomputer.com/news/security/ongoing-flipper-zero-phishing-attacks-target-infosec-community/
6¡¢Security Joes°ä²¼Raspberry RobinлµÄ»ã±¨
1ÔÂ3ÈÕ£¬Security Joes°ä²¼»ã±¨³ÆRaspberry RobinÆðÍ·Õë¶ÔÅ·Ö޵ĽðÈںͱ£ÏÕÐÐÒµ¡£¶ÔÒ»´Î´ËÀ๥»÷µÄȡ֤µ÷²éÏÔʾ£¬ËüʹÓÃÁËÒ»¸ö7-ZipÎļþ£¬¸ÃÎļþÊÇͨ¹ýÉ繤¹¥»÷ͨ¹ýÖ¸±êµÄä¯ÀÀÆ÷ÏÂÔØµÄ£¬Ô̺¬Ò»¸öMSI×°Ö÷¨Ê½Îļþ£¬Ö¼ÔÚ·Ö·¢¶à¸öÄ£¿é¡£ÔÚÁíÒ»¸ö°¸ÀýÖУ¬Ö¸±êÊÇͨ¹ýÍйÜÔÚ·Ö·¢¸æ°×Èí¼þµÄÓòÉϵÄÚ²ÆÐÔ¸æ°×ÏÂÔØµÄZIPÎļþ¡£´Ë±í£¬×êÑÐÈËÔ±·¢ÏÖͳһ¸öQNAP·þÎñÆ÷±»ÓÃÓÚ¶àÂÖ¹¥»÷£¬Ö¸±êµÄÊý¾Ý²»ÔÙÊÇ´¿Îı¾´ó¾Ö£¬¶øÊÇRC4¼ÓÃܵġ£
https://www.securityjoes.com/post/raspberry-robin-detected-itw-targeting-insurance-financial-institutes-in-europe


¾©¹«Íø°²±¸11010802024551ºÅ