΢Èí·ñ¶¨Æä3000ÍòÕË»§±»Anonymous SudanÇÔÈ¡µÄ˵·¨

°ä²¼¹¦·ò 2023-07-05

1¡¢Î¢Èí·ñ¶¨Æä3000ÍòÕË»§±»Anonymous SudanÇÔÈ¡µÄ˵·¨


¾ÝýÌå7ÔÂ3ÈÕ±¨Â·£¬Anonymous SudanÐû³ÆÒѳɹ¦ÈëÇÖ΢Èí²¢½Ó¼ûÁËÔ̺¬3000¶àÍò¸ö΢ÈíÕÊ»§¡¢µç×ÓÓʼþºÍÃÜÂëµÄ´óÐÍÊý¾Ý¿â¡£¸ÃÍŻﻹ¹«¿ªÁËÒ»·ÝÒÉËÆ±»µÁÊý¾ÝµÄÑù±¾£¬²¢ÒÔ5ÍòÃÀÔªµÄ¼ÛÖµÏúÊÛ¸ÃÊý¾Ý¿â¡£±»ÒªÇó¶Ô´ËÊÂ×ö³öÆÀÂÛʱ£¬Î¢ÈíµÄ½²»°È˶ÏÈ»·ñ¶¨ÁËÊý¾Ýй¶µÄ˵·¨£¬²¢°µÊ¾¾ÍĿǰ¶ÔÊý¾ÝµÄ·ÖÎöÅú×¢£¬ÕâÖ»ÊǶÔÊý¾ÝµÄ»ã×Ü£¬Ã»ÓÐÖ¤¾ÝÅú×¢¿Í»§µÄÊý¾Ý±»½Ó¼û»òй¶¡£Ä¿Ç°»¹²»Ã÷ÏÔ΢ÈíµÄµ÷²éÊÇ·ñÒѾ­ÊµÏÖ»òÔÚ½øÐС£ 


https://www.bleepingcomputer.com/news/security/microsoft-denies-data-breach-theft-of-30-million-customer-accounts/


2¡¢Check Point¹«¿ªÕë¶ÔÅ·ÖÞ±í½»»ú¹¹µÄ¹¥»÷»î¶¯SMUGX


Check PointÔÚ7ÔÂ3ÈÕÅû¶ÁËÕë¶ÔÅ·ÖÞ±í½»²¿ºÍ´óʹ¹ÝµÄ´¹µö»î¶¯SMUGX¡£¸Ã»î¶¯×Ô2022Äê12ÔÂÆð¾ÍÒ»Ïò»îÔ¾£¬µö¶üÎļþͨ³£ÒÔÅ·Ö޵ĹúÄÚºÍ±í½»Õþ²ßΪÖ÷Ìâ¡£SmugX¹¥»÷»î¶¯ÒÀÀµÓÚÁ½ÌõϰȾÁ´£¬¾ùѡȡHTML×ß˽¼¼Êõ£¬½«¶ñÒâpayload°µ²ØÔÚHTMLÎĵµ±àÂë×Ö·û´®ÖУ¬×îÖÕ»á×°ÖÃÔ¶³Ì½Ó¼ûľÂíPlugXµÄбäÌå¡£´Ë±í£¬¸Ã»î¶¯ÓëºÚ¿ÍÍÅ»ïRedDeltaºÍMustang PandaµÄ»î¶¯ÓгÁµþ¡£


https://research.checkpoint.com/2023/chinese-threat-actors-targeting-europe-in-smugx-campaign/


3¡¢Bishop Fox³Æ³¬¹ý30Íò¸öFortinet·À»ðǽÒ×Ôâ¹¥»÷


¾Ý7ÔÂ3ÈÕ±¨Â·£¬Bishop Fox³Æ£¬ÊýÊ®Íò¸öFortiGate·À»ðǽÒ×Ôâµ½·ì϶£¨CVE-2023-27997£©µÄÓ°Ïì¡£ÕâÊÇÒ»¸öÔ¶³Ì´úÂëÖ´Ðзì϶£¬CVSSÆÀ·Ö9.8£¬ÊÇÓÉFortiOSÖлùÓڶѵĻº³åÇøÒç³öµ¼ÖµÄ£¬ÒÑÓÚ6ÔÂ11ÈÕ±»½¨¸´¡£×êÑÐÈËԱʹÓÃShodanÀ´Ñ°ÕÒÄÇЩÏìÓ¦·½Ê½Åú×¢Óж³öµÄSSL VPN½Ó¿ÚµÄÉ豸¡£²éÎÊÏÔʾÓÐ489337¸öÉ豸£¬µ«²¢·ÇËùÓÐÉ豸¶¼ÈÝÒ×Ôâµ½CVE-2023-27997£¨Ò²³ÆXortigate£©µÄ¹¥»÷¡£¾­¹ý½øÒ»´ëÊ©²é·¢ÏÖ£¬ÆäÖÐ153414̨ÒѸüÐÂΪ°²È«µÄFortiOS°æ±¾¡£


https://www.bleepingcomputer.com/news/security/300-000-plus-fortinet-firewalls-vulnerable-to-critical-fortios-rce-bug/


4¡¢¼ÓÃÜÇ®±Òƽ̨Poly Network±»ºÚÊý°ÙÍòÃÀÔª²¢ÔÝÍ£·þÎñ


ýÌå7ÔÂ4Èճƣ¬¼ÓÃÜÇ®±Òƽ̨Poly NetworkÔâµ½¹¥»÷£¬ËðʧÊý°ÙÍòÃÀÔªµÄÊý×Ö×ʲú¡£¸Ã¹«Ë¾ÔÚÉÏÖÜÈÕÔçÉϰµÊ¾£¬ÓÉÓÚÕâ´Î¹¥»÷£¬ËüÒѾ­ÔÝÍ£·þÎñ¡£²¢Ú¹ÊÍ˵£¬ËüÔÚÓëºÏ×÷ͬ°éÆÀ¹À±»µÁµÄÄÚÈÝ£¬²¢ºôÓõÇø¿éÁ´°²È«¹«Ë¾Ô®ÊÖËûÃÇ×ö³ö»ØÓ¦¡£½ØÖÁÉÏÖÜÈÕÏÂÎ磬¸Ã¹«Ë¾°µÊ¾10¸öÇø¿éÁ´ÉϵÄ57Ïî×ʲúÊܵ½Ó°Ï죬Ô̺¬Ethereum¡¢Binance¡¯s BNB Chain¡¢MetisºÍPolygonµÈ¡£´Ë±í£¬¹¥»÷ÕßÔÚÆ½Ì¨ÉÏÖýÔìÁ˼ÛÖµÊý°ÙÒÚÃÀÔªµÄ¼ÓÃÜÇ®±Ò¡£¶øÕâЩƽ̨²¢²»¾ß±¸Á÷¶¯ÐÔ£¬ºÚ¿ÍÎÞ·¨ÕæÕý¶ÒÏÖÕâЩ×ʽð¡£


https://therecord.media/crypto-platform-poly-network-suspends-service-after-hack


5¡¢Ò½ÁÆ»ú¹¹MMCÔâµ½BianLianÀÕË÷¹¥»÷Ó°Ï쳬¹ý55Íò»¼Õß


ýÌå7ÔÂ3ÈÕ±¨Â·£¬¶ÔMurfreesboro Medical Clinic & SurgiCenter(MMC)µÄ¹¥»÷ËÆºõÔ´ÓÚÀÕË÷ÍÅ»ïBianLian¡£6ÔÂ14ÈÕ£¬MMC°µÊ¾»Ø¾øÖ§¸¶Êê½ð»òÓë¹¥»÷ÕßÁªÏµ£¬ÕâÊÇÒ»¸ö×¼ÔòÎÊÌâ¡£BianLainÔøÔÚÍøÕ¾ÉÏÁгöÁËMMC£¬³ÆÇÔÈ¡ÁË250GBµÄÎļþ£¬µ«ÊǸÃÁбíÇÄÈ»ÒþûÁË¡£Í¨³£Çé¿öÏ£¬ÓÉÓÚÖ¸±ê½»ÁËÊê½ð£¬Áбí¾Í»áÒþû£¬µ«MMC¼á³ÆÃ»Óн»ÈκÎÊê½ð¡£MMCй©£¬ÓÐ559000Ãû»¼ÕßÊܵ½¸ÃÊÂÎñµÄÓ°Ïì¡£


https://www.databreaches.net/murfreesboro-medical-clinic-surgicenter-ransomware-attack-affected-559000-patients/


6¡¢Verizon°ä²¼2023ÄêÊý¾Ýй¶µ÷²é»ã±¨(DBIR)


7ÔÂ3ÈÕ±¨Â·³Æ£¬Verizon°ä²¼ÁË2023ÄêÊý¾Ýй¶µ÷²é»ã±¨(DBIR)¡£2023ÄêDBIRÊÇ»ùÓÚ¶Ô16312ÆðÊÂÎñµÄ·ÖÎö£¬ÆäÖÐÔ¼Èý·ÖÖ®Ò»£¬¼´5199Æð£¬±»È·ÒÔΪÊý¾Ýй¶¡£Õë¶ÔÖÐÓ×ÐÍÆóÒµµÄ¹Ø¼üÖØµãÔ̺¬£¬¹¥»÷ÃæÊÕÁ²£¬ÏµÍ³ÈëÇÖ¡¢É繤¹¥»÷ºÍWebÀûÓù¥»÷Õ¼µ±½ñÖÐÓ×ÐÍÆóҵΥ¹æÐÐΪµÄ92%£»µÚÈý·½¹¥»÷ÕßÕ¼×ÜÌåÎ¥¹æÐÐΪµÄ83%£¬ÔÚSMB¹¥»÷ÖÐÉÏÉýÖÁ94%£»¾ø´óÎÞÊý(95%)µÄÎ¥¹æÐÐΪ¶¼ÊdzöÓÚ¾­¼Ã¶¯»ú£»ÈËÀàÊÇ×îÓÄ΢µÄ»·½Ú£»BEC¹¥»÷·­±¶£»ÀÕË÷Èí¼þÒÀÈ»ÊÇ×î´óµÄÍþв£»ÏµÍ³ÈëÇÖÊÇÕ¼±È×î´óµÄ¹¥»÷ÀàÐÍ¡£


https://www.welivesecurity.com/2023/07/03/verizon-2023-dbir-whats-new-top-takeaways-smbs/