Barracuda¶½´ÙÆóÒµ¸ü»»ÊÜÓ°ÏìESG¼´±ã×°ÖÃÈκΰ汾²¹¶¡

°ä²¼¹¦·ò 2023-06-09

1¡¢Barracuda¶½´ÙÆóÒµ¸ü»»ÊÜÓ°ÏìESG¼´±ã×°ÖÃÈκΰ汾²¹¶¡


¾ÝýÌå6ÔÂ7ÈÕ±¨Â· £¬Barracuda¶½´ÙÆóҵʵʱ¸ü»»ÊÜÓ°ÏìµÄµç×ÓÓʼþ°²È«Íø¹Ø(ESG)É豸 £¬ÎÞÂÛËûÃÇ×°ÖÃÁËʲô°æ±¾¼¶´ËÍâ²¹¶¡¡£·ì϶±»×·×ÙΪCVE-2023-2868 £¬´æÔÚÓÚµç×ÓÓʼþ¸½¼þɸѡÄ£¿éÖÐ £¬ÓÚ5ÔÂ19ÈÕ±»·¢ÏÖ £¬¸Ã¹«Ë¾ÓÚ5ÔÂ20ÈÕºÍ21ÈÕ°ä²¼ÁËÁ½¸ö²¹¶¡À´½¨¸´¸ÃÎÊÌâ¡£¾Ýµ÷²é £¬¸Ã·ì϶Òѱ»ÀûÓà £¬¹¥»÷ÊÂÎñÖÁÉÙÄܹ»×·Òäµ½2022Äê10Ô¡£×êÑÐÈËÔ±ÁªÏµBarracudaµÄ½²»°ÈË £¬Ñ¯ÎʹØÓÚΪʲô±ØÒªÈ«Ãæ¸ü»»ESGµÄ¸ü¶àϸ½Úʱ £¬Ã»Óе±¼´µÃµ½»Ø¸´¡£


https://securityaffairs.com/147211/hacking/barracuda-esg-cve-2023-2868-replacement.html


2¡¢Î¢ÈíOneDriveÔâµ½DDoS¹¥»÷È«ÇòÓû§ÎÞ·¨½Ó¼û·þÎñ


¾Ý6ÔÂ8ÈÕ±¨Â· £¬Î¢ÈíÔÚµ÷²éµ¼ÖÂÈ«ÇòÁìÓòÄÚµÄOneDriveÎÞ·¨½Ó¼ûÔÆÎļþÍйܷþÎñµÄÎÊÌâ¡£Óû§ÔÚ³¢ÊÔ´ò¿ªOneDriveÍøÕ¾Ê± £¬»á¿´µ½¡°±§À¢ £¬³öÏÖÃýÎ󡱺͡°´ËÒ³ÃæÄ¿Ç°ÎÞ·¨Õý³£¹¤×÷¡±µÄÃýÎóÐÂÎÅ¡£¹ÌÈ»¸Ã¹«Ë¾Ã»ÓÐÌṩÈκθÉÓÚµ¼ÖÂÖжÏÎÊÌâµÄϸ½ÚÐÅÏ¢ £¬µ«Anonymous SudanÐû³Æ¶Ô´ËÊÂÕÆ¹Ü¡£Î¢Èí³Æ £¬ÖжÏÖ»Ó°ÏìÁËonedrive.live.comÓò £¬Ê¹ÓÃ×ÀÃæ¿Í»§¶Ë¡¢Í¬²½¿Í»§¶Ë»òOffice¿Í»§¶Ë½Ó¼ûOneDrive·þÎñ²»ÊÜÓ°Ïì¡£¸ÃÍÅ»ïÔÚ±¾ÖÜ»¹DDoS¹¥»÷Á˶à¸öMicrosoft·þÎñ £¬ÈçOutlookºÍSharePointµÈ¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-onedrive-down-worldwide-following-claims-of-ddos-attacks/


3¡¢È«Çò×î´óµÄÀ­Á´Ôì×÷ÉÌYKKµÄÔâµ½LockBitµÄÀÕË÷¹¥»÷


ýÌå6ÔÂ8ÈÕ³Æ £¬ÈÕ±¾À­Á´¹«Ë¾YKKй© £¬ÆäλÓÚÃÀ¹úµÄϵͳÔÚ×î½ü¼¸ÖÜÔâµ½¹¥»÷¡£ËüÊÇÊÀ½çÉÏ×î´óµÄÀ­Á´Ôì×÷ÉÌ £¬ÄêÊÕÈ볬¹ý60ÒÚÃÀÔª¡£¸Ã¹«Ë¾³Æ £¬ËûÃÇʵʱ¶ôÔìÁ˹¥»÷ £¬¸ÃÊÂÎñ²¢Î´¶ÔÔËÓªºÍ·þÎñ²úÉúÄÚÈÝÐÔÓ°Ïì £¬Ò²Ã»ÓÐÖ¤¾ÝÅú×¢Ó×ÎҺͲÆÕþÐÅÏ¢ÒÔ¼°ÖªÊ¶²úȨÊܵ½Ó°Ïì¡£LockBitÓÚ6ÔÂ2ÈÕÔÚÆäÍøÕ¾ÉÏÁгöÁËYKK £¬²¢ÍþвҪÔÚ6ÔÂ16ÈÕ֮ǰй¶´Ó¸Ã¹«Ë¾ÇÔÈ¡µÄÊý¾Ý¡£


https://therecord.media/ykk-zipper-manufacturer-cyberattack-us-operations


4¡¢ÈÕ±¾ÔìÒ©¹«Ë¾ÎÀ²Ä(Eisai)й©Æä²¿ÃÅ·þÎñÆ÷Òѱ»¼ÓÃÜ


6ÔÂ8ÈÕ±¨Â·³Æ £¬¶«¾©µÄÔìÒ©¹«Ë¾ÎÀ²Ä(Eisai)Åû¶ÆäÔâµ½ÁËÀÕË÷¹¥»÷ £¬²¿ÃÅ·þÎñÆ÷Òѱ»¼ÓÃÜ¡£¹¥»÷²úÉúÔÚ6ÔÂ3ÈÕÉîÒ¹ £¬ÕâÊǹ¥»÷Õß²¿Êð¼ÓÃÜÆ÷µÄ³£¼û¹¦·ò £¬ÓÉÓÚITÍŶÓÔÚÖÜÄ©ÈËÊÖ²»¼° £¬ÎÞ·¨ÓÐЧӦ¶ÔÒì³£Çé¿ö¡£¸Ã¹«Ë¾°µÊ¾ £¬ÆäÔÚ¹úÄÚ±íµÄ¼¸¸öϵͳ £¬Ô̺¬ÎïÁ÷ϵͳ £¬Òѱ»ÆÈÏÂÏß²¢ÖÕ³¡·þÎñ £¬Ö±µ½µ÷²éʵÏÖ¡£µ«ÊÇ £¬¹«Ë¾ÍøÕ¾ºÍÓʼþͨѶÒÀÈ»¿ÉÓá£Ä¿Ç°»¹Ã»ÓÐÀÕË÷ÍÅ»ïÐû³Æ¶ÔÕâ´Î¹¥»÷ÕÆ¹Ü¡£


https://therecord.media/eisai-japan-pharmaceutical-giant-ransomware


5¡¢Ð¶ñÒâÈí¼þFractureiserÖØÒªÕë¶ÔMinecraftµÄÍæ¼Ò


6ÔÂ7ÈÕ £¬×êÑÐÈËÔ±Åû¶ÁËеĶñÒâÈí¼þFractureiserÕë¶ÔMinecraftµÄÍæ¼ÒµÄ¹¥»÷»î¶¯¡£¹¥»÷ʼÓÚ¼¸¸öCurseForgeºÍBukkitÕÊ»§±»ÈëÇÖ £¬²¢±»ÓÃÀ´Ïò²å¼þºÍÄ£×é×¢Èë¶ñÒâ´úÂë¡£¶øºóËüÃDZ»Ê¢ÐеÄmodpackѡȡ £¬ÀýÈçÏÂÔØÁ¿³¬¹ý460ÍòµÄBetter Minecraft¡£ÊÜÓ°ÏìµÄÍæ¼ÒÔ̺¬ÔÚ´ÓǰÈýÖÜÄÚ´ÓCurseForgeºÍdev.bukkit.orgÏÂÔØÄ£×é»ò²å¼þµÄÈË £¬µ«Ï°È¾µÄˮƽ»¹Óдý³ä·ÖÏàʶ¡£×êÑÐÈËÔ±ÌáÐÑÍæ¼Ò±ÉÈËÔØÄ£×éʱҪ¸ñ±íÓ×ÐÄ £¬ÓÉÓÚÕâ¸öFractureiser»î¶¯ÈÔÔÚ½øÐÐÖС£


https://www.bleepingcomputer.com/news/security/new-fractureiser-malware-used-curseforge-minecraft-mods-to-infect-windows-linux/


6¡¢Kaspersky°ä²¼2023ÄêµÚÒ»¼¾¶ÈITÍþÐ²Ì¬ÊÆµÄ»ã±¨


6ÔÂ7ÈÕ £¬Kaspersky°ä²¼ÁË2023ÄêµÚÒ»¼¾¶ÈITÍþÐ²Ì¬ÊÆµÄ»ã±¨¡£»ã±¨Ö¸³ö £¬ÓÐÕë¶ÔÐԵĹ¥»÷·½Ãæ £¬Ô̺¬BlueNoroffÒýÈëÁËÈÆ¹ýMotWµÄв½Öè¡¢Roaming MantisÖ´ÐÐÁËеÄDNS changerÒÔ¼°Óë¶íÎÚì¶ÜÓйصÄÐÂAPT×éÖ¯BadMagic³öÏÖ¡£ÔÚÆäËü¶ñÒâÈí¼þ·½Ãæ £¬PrilexÕë¶Ô·Ç½Ó´¥Ê½ÐÅÓþ¿¨ÂòÂô¡¢ºÚ¿ÍʹÓÃαÔìµÄTorä¯ÀÀÆ÷ÇÔÈ¡¼ÓÃÜÇ®±Ò¡¢ÓëChatGPTÓйصÄÍþвÔö³¤ÒÔ¼°Í¨¹ýËÑË÷ÒýÇæ½øÐжñÒâ¸æ°×»î¶¯µÈ¡£


https://securelist.com/it-threat-evolution-q1-2023/109838/