Fortinet¹Ì¼þ¸üн¨¸´Fortigate SSL-VPNÖеÄRCE
°ä²¼¹¦·ò 2023-06-131¡¢Fortinet¹Ì¼þ¸üн¨¸´Fortigate SSL-VPNÖеÄRCE
¾ÝýÌå6ÔÂ12ÈÕ±¨Â·£¬Fortinet°ä²¼ÁËFortigate¹Ì¼þ¸üУ¬½¨¸´ÁËSSL VPNÉ豸ÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2023-27997£©¡£×êÑÐÈËÔ±³Æ£¬¼´±ãÆôÓÃÁËMFA£¬¸Ã·ì϶Ҳ»á±»¶ñÒâ´úÀíÓÃÀ´Í¨¹ýVPN½øÐÐ×ÌÈÅ¡£Æù½ñΪֹ£¬ËùÓа汾³ÇÊÐÊܵ½¸Ã·ì϶µÄÓ°Ï졣ĿǰÉÐδÅû¶¹ØÓÚÕâÒ»·ì϶µÄ¾ßÌåÐÅÏ¢¡£¾Ý×îÐÂ×ÊѶ£¬¸Ã·ì϶¿ÉÄÜÒѱ»ÓÃÓÚÕë¶Ôµ±¾Ö»ú¹¹¡¢Ôì×÷ÐÐÒµºÍ¹Ø¼ü»ù´¡ÉèÊ©µÄ¹¥»÷¡£
https://securityaffairs.com/147353/hacking/fortinet-fortigate-rce.html
2¡¢Microsoft AzureÃÅ»§ÍøÕ¾ÁÙʱÖжϲ¢Î´Ð¹Â©µ××ÓÔÒò
¾Ý6ÔÂ9ÈÕ±¨Â·£¬Microsoft AzureÃÅ»§ÍøÕ¾ÁÙʱÖжϡ£Óû§½Ó¼ûʱ»áÏÔʾ¡°GA»Æ½ð¼×·þÎñĿǰ²»³ÉÓá£ÎÒÃÇÔÚÖÂÁ¦¾¡¿ì¸´ÔËùÓзþÎñ¡£ÇëÉÔºóÔÙ»ØÀ´²é¿´¡£¡±µ«ÊÇÒÆ¶¯ÀûÓÃËÆºõ²»ÊÜÓ°Ïì¡£Óë´Ëͬʱ£¬ºÚ¿ÍÍÅ»ïAnonymous SudanÐû³Æ¶Ô¸ÃÍøÕ¾½øÐÐÁËDDoS¹¥»÷£¬²¢¹«¿ªÁËÒ»ÕÅÎÞ·¨Õý³£¹¤×÷µÄÒ³Ãæ½ØÍ¼¡£Î¢ÈíÉÐδȷÈÏÕâЩÖжÏÊÇ·ñÊÇÓÉDDoS¹¥»÷µ¼Öµġ£½ØÖÁ6ÔÂ9ÈÕÏÂÎç1:32 ET£¬AzureÍøÕ¾ÔÙ´ÎÉÏÏß²¢²»±äÔËÐС£¾Ý6ÔÂ12ÈÕ×îб¨Â·£¬Î¢Èíй©µ¼ÖÂÖжϵijõ²½ÔÒòÊÇÍøÂçÁ÷Á¿¼¤Ôö¡£
https://www.bleepingcomputer.com/news/microsoft/microsofts-azure-portal-down-following-new-claims-of-ddos-attacks/
3¡¢°Ä´óÀûÑÇÂÉËùHWL EbsworthÔâµ½ALPHV¹¥»÷¾Ü¸¶Êê½ð
6ÔÂ9ÈÕ±¨Â·³Æ£¬°Ä´óÀûÑÇ×î´óµÄÂÉʦÊÂÎñËùÖ®Ò»HWL EbsworthÈ·ÈÏÆäÔâµ½ºÚ¿Í¹¥»÷¡£ÀÕË÷ÍÅ»ïALPHV£¨Ò²³ÆBlackCat£©ÔÚÆäÍøÕ¾°ä²¼ÁË1.45 TBµÄÊý¾Ý£¬Ðû³ÆÔ̺¬ÓÚ½ñÄê4Ô´ӸÃÂÉËùµÄϵͳÖÐÇÔÈ¡µÄ³¬¹ýÒ»°ÙÍò·ÝÎļþ¡£²¢ÍþвÈôÊDz»½»Êê½ð£¬½«Ð¹Â¶¸ü¶àÎļþ¡£ÂÉËù½²»°È˰µÊ¾£¬ËûÃDz»»áÂú×ã¸ÃÍÅ»ïµÄÒªÇ󣬼´±ãÕâÒâζ×ÅËûºÍËûµÄ¿Í»§½«²»µÃ²»½ÓÊÜÊý¾Ýй¶µÄºó¹û¡£ÓÉÓÚ¸ÃÂÉËùÒ²Ó빫¹²²¿ÃÅÓÐÒµÎñÍùÀ´£¬Òò¶øÈËÃDz»°²Ð¹Â¶µÄÎļþÔ̺¬Óë¹ú¶ÈÊÂÎñÓйصÄÃô¸Ð»ò»úÃÜÐÅÏ¢¡£
https://www.bleepingcomputer.com/news/security/blackcat-ransomware-fails-to-extort-australian-commercial-law-giant/
4¡¢Intellihartx±»ClopÀÕË÷¹¥»÷Ô¼49ÍòÓû§µÄÐÅϢй¶
ýÌå6ÔÂ12Èճƣ¬¼¼Êõ¹«Ë¾IntellihartxÔâµ½ClopµÄÀÕË÷¹¥»÷£¬Ð¹Â¶ÁË489830Óû§µÄÓ×ÎҺͽ¡È«ÐÅÏ¢¡£IntellihartxÊÇÒ»¼ÒΪҽԺÌṩ»¼ÕßÓà¶î½â¾ö·þÎñµÄ¹«Ë¾¡£¹¥»÷²úÉúÔÚ½ñÄêÔçЩʱ³½£¬¹¥»÷ÕßÀûÓÃÁËGoAnywhere·ì϶£¨CVE-2023-0669£©¡£Ð¹Â¶µÄÐÅÏ¢Éæ¼°ÐÕÃû¡¢µØÖ·¡¢Ò½ÁÆÕ˵¥ºÍ±£ÏÕÐÅÏ¢ÒÔ¼°Éç»á°²È«ºÅÂëµÈ¡£¸Ã¹«Ë¾½«ÎªÊÜÓ°ÏìÓû§ÌṩExperianµÄΪÆÚÒ»ÄêµÄÃâ·ÑÐÅÓþ¼à¿Ø·þÎñ¡£
https://securityaffairs.com/147380/data-breach/intellihartx-data-breach.html
5¡¢·¨¹ú¹æÄ£×î´óµÄ°¬¿Ë˹ÂíÈü´óѧ±»¹¥»÷ϵÍÂäÙʱÎÞ·¨½Ó¼û
ýÌå6ÔÂ8ÈÕ±¨Â·³Æ£¬·¨¹ú°¬¿Ë˹-ÂíÈü´óѧ£¨Aix-Marseille University£©Ôâµ½ÍøÂç¹¥»÷£¬ÏµÍÂäÙʱÎÞ·¨½Ó¼û¡£ËüÊǴ˿̷¨¹úºÍ·¨ÓïµØÓò¹æÄ£×î´óµÄ´óѧ£¬Æäº¹Çà¿É×·ÒäÖÁ1409Äê¡£ÕâËù´óѧ³Æ¹¥»÷À´×Ô±í¹ú£¬Æä°²Õûϵͳ´¥·¢Á˾¯±¨£¬Òò¶øËûÃÇ¿ÉÄÜÔÚÔì³É¸ü´óµÄÓ°Ïì֮ǰ½«ÏµÍ³¹Ø¹Ø¡£Ä¿Ç°£¬¹¥»÷µÄÐÔÖÊÉÐδ֤ʵ£¬Ò²²»ÖªÂ·ÊÇ·ñ´æÔÚÊý¾Ýй¶¡£¸ÃУ´òËã´ÓÉÏÖÜËÄÆðÍ·Ö𲽸´Ô·þÎñ£¬µ«Ã»ÓÐ×¢Ã÷±ØÒª¶à¾Ã£¬Ñ§ÉúºÍÔ±¹¤ÈÔÎÞ·¨²Î¼ÓÒÀÀµÓÚ½Ó¼ûѧÌÃÍøÂçÉϵŤ¾ßµÄ½ÌÓý»î¶¯¡£
https://therecord.media/aix-marseille-university-cyberattack-france
6¡¢ESET¹«¿ª¹ØÓÚAsylum Ambuscade¹¥»÷»î¶¯µÄ¸ü¶àϸ½Ú
6ÔÂ8ÈÕ£¬ESET¹«¿ªÁ˹ØÓÚAsylum Ambuscade¹¥»÷»î¶¯µÄ¸ü¶àϸ½Ú¡£Asylum AmbuscadeÖÁÉÙ´Ó2020ÄêÆðÍ·»îÔ¾£¬ÖØÒªÕë¶Ô·ÖÆçµØÓòÒøÐпͻ§ºÍ¼ÓÃÜÇ®±ÒÂòÂôËù¡£¸ÃÍÅ»ïµÄ´ó²¿ÃÅÖ²È뷨ʽ¶¼ÊÇÓþ籾˵»°¿ª·¢µÄ£¬ÀýÈçAutoHotkey¡¢JavaScript¡¢Lua¡¢PythonºÍVBS¡£ESET°µÊ¾£¬ÔÚ2023ÄêµÄ»î¶¯Öз¢ÏÖÁËÐµĹ¥»÷ÔØÌ壬Ô̺¬Äܹ»½«Óû§³Á¶¨Ïòµ½ÔËÐжñÒâJavaScript´úÂëµÄÍøÕ¾µÄGoogle Ads¡£´Ë±í£¬¹¥»÷ÕßÓÚ3ÔÂ·ÝÆðÍ··Ö·¢Ð¹¤¾ßNodebot£¬ÕâËÆºõÊÇAhkbotµÄNode.js¶Ë¿Ú¡£
https://www.welivesecurity.com/2023/06/08/asylum-ambuscade-crimeware-or-cyberespionage/


¾©¹«Íø°²±¸11010802024551ºÅ