·áÌïÔÆ·þÎñÅäÖÃÃýÎóй¶ÑÇÖ޺ʹóÑóÖÞ¿Í»§ÐÅÏ¢Ô¼ÆßÄê

°ä²¼¹¦·ò 2023-06-02

1¡¢·áÌïÔÆ·þÎñÅäÖÃÃýÎóй¶ÑÇÖ޺ʹóÑóÖÞ¿Í»§ÐÅÏ¢Ô¼ÆßÄê


¾Ý5ÔÂ31ÈÕ±¨Â·£¬·áÌïÆû³µ·¢ÏÖÁËÁí±íÁ½¸öÅäÖÃÃýÎóµÄÔÆ·þÎñ£¬Ð¹Â¶Á˳µÖ÷µÄÓ×ÎÒÐÅÏ¢³¬¹ýÆßÄê ¡£µÚÒ»¸öÔÆ·þÎñÔÚ2016Äê10ÔÂÖÁ2023Äê5ÔÂÆÚ¼äй¶ÁËÑÇÖ޺ʹóÑóÖÞ·áÌï¿Í»§µÄÓ×ÎÒÐÅÏ¢£¬¸ÃÆû³µÔì×÷ÉÌÉÐδעÃ÷Óм¸¶à¿Í»§Êܵ½Õâ´ÎÊÂÎñµÄÓ°Ïì ¡£µÚ¶þ¸öÔÆ·þÎñÔÚ2015Äê2ÔÂ9ÈÕÖÁ2023Äê5ÔÂ12ÈÕÆÚ¼ä¶³ö£¬Ô̺¬ÈÕ±¾Ô¼260000¸ö¿Í»§µÄÆû³µµ¼º½ÏµÍ³ÓйصÄÐÅÏ¢ ¡£ÊÜÓ°ÏìµÄ³µÁ¾ÊÇ·áÌï×ÓÆ·ÅÆÀ׿ËÈøË¹µÄ³µÐÍ ¡£·áÌﰵʾ£¬ËüÒѾ­Ö´ÐÐÁËÒ»¸öϵͳ£¬Äܹ»¶¨ÆÚ¼à¿ØÆäËùÓл·¾³ÖеÄÔÆÅäÖúÍÊý¾Ý¿âÉèÖã¬ÒÔÔ¤·À½«À´ÔٴγöÏÖ´ËÀàÎÊÌâ ¡£


https://www.bleepingcomputer.com/news/security/toyota-finds-more-misconfigured-servers-leaking-customer-info/


2¡¢ÉúÎï¼¼Êõ¹«Ë¾Enzo Biochem½ü250ÍòÈ˵ÄÁÙ´²Êý¾Ý±»µÁ


¾ÝýÌå6ÔÂ1ÈÕ±¨Â·£¬ÉúÎï¼¼Êõ¹«Ë¾Enzo BiochemÔâµ½ÀÕË÷¹¥»÷£¬µ¼ÖÂÔ¼2470000È˵ÄÁÙ´²²âÊÔÐÅϢй¶ ¡£EnzoÔì×÷ºÍÏúÊÛ»ùÓÚDNAµÄ²âÊÔÒÔ¼ì²â²¡¶¾ºÍϸ¾ú¼²²¡£¬Ô̺¬COVID-19ºÍ°©Ö¢ ¡£¸Ã¹«Ë¾ÔÚ4ÔÂ11ÈÕ·¢ÏÖ¿Í»§ÐÕÃûºÍ²âÊÔÐÅÏ¢£¬ÒÔ¼°Ô¼600000¸öÉç»á°²È«ºÅÂë±»½Ó¼û£¬Ä¿Ç°Ã»ÓÐÀÕË÷ÍŻﰵʾ¶ÔÕâ´Î¹¥»÷ÕÆ¹Ü ¡£Enzo³ÆÒѽ«ÆäϵͳÓ뻥ÁªÍø¶Ï¿ªÏνÓ£¬´Ë¿ÌÈÔÔÚµ÷²é´ËÊÂÎñ ¡£


https://therecord.media/clinical-test-data-of-enzio-biochem-stolen


3¡¢ÑÇÂíÑ·ÒòRingºÍAlexa¼Óº¦ÒþÖÔÃæ¶Ô3000ÍòÃÀÔª·£¿î


 Ã½Ìå5ÔÂ31Èճƣ¬ÑÇÂíÑ·½«Ö§¸¶3000ÍòÃÀÔªµÄ·£¿î£¬ÒÔ½â¾öÃÀ¹úFTC¶ÔÆäRingºÍAlexaÓйصļӺ¦ÒþÖÔµÄÖ¸¿Ø ¡£Í¶Ë߳ƣ¬RingÊÚÓèÆäÔ±¹¤ºÍ³Ð°üÉ̽Ӽû¸öÈËÊÓÆµµÄȨÏÞ£¬Õâ¼Óº¦Á˿ͻ§µÄÒþÖÔ ¡£Ëü»¹Ã»ÓÐÖ´Ðиù»ùµÄÒþÖԺͰ²È«´ëÊ©£¬ºÚ¿Í¿ÉÈëÇÖÕÊ»§À´½ÚÔìÏû·ÑÕßµÄÏà»úºÍÊÓÆµ ¡£Æ¾¾ÝÄâÒéµÄºÅÁRing±ØÐëÏòÏû·ÑÕßÖ§¸¶580ÍòÃÀÔªµÄÍË¿î ¡£ÔÚÁíһ·°¸¼þÖУ¬FTCºÍDOJÖ¸¿ØÑÇÂíÑ·Î¥·´¶ùͯÒþÖÔ·¨£¬Î´ÄÜÓ¦¸¸Ä¸µÄÒªÇóɾ³ýËûÃǵĹàÒôºÍµØÀíλÏàÐÅÏ¢ ¡£Æ¾¾ÝÄâÒéµÄºÅÁÑÇÂíÑ·±ØÐëÖ§¸¶2500ÍòÃÀÔª ¡£


https://www.bleepingcomputer.com/news/technology/amazon-faces-30-million-fine-over-ring-alexa-privacy-violations/


4¡¢BlackCatÐû³Æ¶Ô˾·¨¼¼Êõƽ̨CasepointµÄ¹¥»÷ÕÆ¹Ü


6ÔÂ1ÈÕ±¨Â·³Æ£¬ÀÕË÷ÍÅ»ïBlackCatÔÚÆäÍøÕ¾ÁгöÁËCasepoint ¡£CasepointÌṩÁËÒ»¸ö˾·¨¼¼Êõƽ̨£¬±»¶à¸öÃÀ¹ú»ú¹¹Ê¹Óã¬Ô̺¬SEC¡¢FBIºÍÃÀÍõ·¨Ôº ¡£¸ÃÍÅ»ï³ÆÒÑÇÔÈ¡2TBµÄÃô¸ÐÊý¾Ý£¬Éæ¼°ÂÉʦ¡¢SEC¡¢DoD¡¢FBIºÍ¾¯Ô±µÈ ¡£¸ÃºÚ¿ÍÍŻ﹫¿ªÁ˱»ÈëÇÖ»ù´¡ÉèÊ©µÄ²¿ÃÅ×ÊÔ´µÄÍ´´¦ÒÔ¼°¾Ý³ÆÊDZ»µÁÎļþµÄһЩͼƬ£¬ÒÔ¶½´ÙCasepointÆðÍ·½»Éæ ¡£BlackCat×Ô2021Äê11ÔÂÆðÍ·»îÔ¾£¬Êê½ðÒªÇó´Ó¼¸ÍòÃÀÔªµ½ÊýǧÍòÃÀÔª²»µÈ ¡£


https://securityaffairs.com/146915/cyber-crime/blackcat-ransomware-casepoint.html


5¡¢Group-IB³ÆDark Pink³ÖÐøÕë¶ÔÑÇÌ«µØÓòµÄ¾üÕþµÈÐÐÒµ


5ÔÂ31ÈÕ£¬Group-IBÅû¶ÁËDark Pink½üÆÚÐÂÒ»ÂֵĹ¥»÷»î¶¯ ¡£¸ÃÍÅ»ï×Ô2021ÄêÖÐÒÔÀ´Ò»Ïò»îÔ¾£¬ÖØÒªÕë¶ÔÑÇÌ«µØÓòµÄ×éÖ¯ ¡£Æ¾¾Ý×îе÷²éÁ˾Ö£¬Group-IBÈ·ÈÏÁË5¸öеı»¹¥»÷×éÖ¯£¬Ô̺¬ÎÄÀ³¡¢Ó¡¶ÈÄáÎ÷ÑÇ¡¢Ì©¹úºÍÔ½ÄÏÈ·µ±¾Ö¡¢¾ü¶ÓºÍ·ÇͶ»ú×éÖ¯£¬ÒÔ¼°±ÈÀûʱµÄ½ÌÓý×éÖ¯ ¡£¹¥»÷ʼÓÚ´¹µöÓʼþÖеÄISOÎĵµ£¬ËüʹÓÃDLL²à¼ÓÔØÀ´Æô¶¯ºóÃÅTelePowerBotºÍKamiKakaBot ¡£´Ë±í£¬Ö²È뷨ʽ´ÓÄÚ´æÖмÓÔØ£¬²»½Ó´¥´ÅÅÌ£¬ÕâÓÐÖúÓÚÈÆ¹ý¼ì²â ¡£ÔÚ×î½üµÄÒ»´Î¹¥»÷ÖУ¬Dark PinkʹÓ÷þÎñWebhookͨ¹ýHTTPºÍ̸й¶±»µÁÊý¾Ý ¡£


https://www.group-ib.com/blog/dark-pink-episode-2/


6¡¢AT&T·¢ÏÖеÄSeroXen RATÖØÒª±»ÓÃÓÚ¹¥»÷ÓÎÏ·ÉçÇø


5ÔÂ30ÈÕ£¬AT&T°ä²¼Á˹ØÓÚеÄSeroXen RATµÄ·ÖÎö»ã±¨ ¡£¸Ã¶ñÒâÈí¼þÓÚ2022Äêµ×³öÏÖ£¬´ò×ÅWin 11ºÍWin 10ºÏ·¨Ô¶³Ì½Ó¼û¹¤¾ßµÄ»Ï×ÓÏúÊÛ£¬µ«ÔÚºÚ¿ÍÂÛ̳Éϱ»Ðû´«ÎªÔ¶³Ì½Ó¼ûľÂí ¡£SeroXen»ùÓÚ¸÷À࿪ԴÏîÄ¿£¬Ô̺¬Quasar RAT¡¢r77 rootkitºÍNirCmdºÅÁîÐй¤¾ß ¡£×êÑÐÈËÔ±³Æ£¬×Ô´´½¨ÒÔÀ´ÒѾ­³öÏÖÁËÊý°Ù¸öÑù±¾£¬ÖØÒªÕë¶ÔÓÎÏ·ÉçÇø£¬µ«Ëæ×Ÿù¤¾ßÔ½À´Ô½ÊÜÓ­½Ó£¬Ö¸±êÁìÓò¿ÉÄÜ»áÀ©´óµ½Ô̺¬´óÐ͹«Ë¾ºÍ×éÖ¯ ¡£


https://cybersecurity.att.com/blogs/labs-research/seroxen-rat-for-sale