Ò½ÁÆÈí¼þ¹«Ë¾ESOÔâµ½ÀÕË÷¹¥»÷ £¬270ÍòÈËÊܵ½Ó°Ïì

°ä²¼¹¦·ò 2023-12-26
1¡¢Ò½ÁÆÈí¼þ¹«Ë¾ESOÔâµ½ÀÕË÷¹¥»÷ £¬270ÍòÈËÊܵ½Ó°Ïì


¾Ý12ÔÂ21ÈÕ±¨Â· £¬Ò½ÁÆ»ú¹¹µÄÊý¾ÝºÍÈí¼þÌṩÉÌESO SolutionsÒÑÆðÍ·Ïò270ÍòÈË·¢ËÍÊý¾Ýй¶֪ͨ ¡£¸ÃÊÂÎñ²úÉúÓÚ9ÔÂ28ÈÕ £¬ESOÔâµ½ÁËÀÕË÷¹¥»÷ £¬ÆÈʹÆäÁÙʱ¹Ø¹ØÏµÍ³ ¡£Ö»¹Ü¹¥»÷Õß½Ó¼û²¢¼ÓÃÜÁËÄÚ²¿ÏµÍ³ £¬µ«¸Ã¹«Ë¾°µÊ¾ÒÑʹÓñ¸·Ý¸´Ô­ÁËÕâЩϵͳ ¡£¹ÌÈ»ÀÕË÷¹¥»÷ÍÅ»ïµÄÉí·ÝÈÔδȷ¶¨ £¬µ«ESOµÄÉêÃ÷Åú×¢¸Ã¹«Ë¾¿ÉÄÜÒѽ»Êê½ðÀ´È·±£É¾³ý±»µÁÊý¾Ý ¡£


https://www.infosecurity-magazine.com/news/eso-hit-ransomware-27m-impacted/


2¡¢¡¶ÏÀµÁÁÔ³µÊÖ5¡·£¨GTA 5£©µÄÔ´´úÂë±»¹«¿ªÔÚ¶à¸öÇþ·


¾ÝýÌå12ÔÂ25ÈÕ±¨Â· £¬¡¶ÏÀµÁÁÔ³µÊÖ5¡·£¨GTA 5£©µÄÔ´´úÂëÔÚÊ¥µ®Ò¹±»Ð¹Â¶ £¬Õâ¾àÀëLapsus$ÈëÇÖRockstar Games²¢ÇÔÈ¡¹«Ë¾Êý¾ÝÒѾ­´ÓǰÁËÒ»Äê¶à ¡£ÏÂÔØÔ´´úÂëµÄÁ´½Ó±»·ÖÏíµ½¶à¸öÇþ· £¬Ô̺¬DiscordÒÔ¼°Telegram ¡£ÔÚTelegramÉÏ £¬ÃûΪPhilµÄÓû§°ä²¼Á˱»µÁÔ´´úÂëµÄÁ´½Ó £¬²¢·ÖÏíÁËÆäÖÐÒ»¸öÎļþ¼ÐµÄ½ØÍ¼ ¡£DiscordÉϵÄй¶Õß°µÊ¾ £¬ËûÃÇÔÚ8Ô·ݾÍÊÕµ½ÁËÔ´´úÂë ¡£ËûÃǵ͝»úÊǽø¹¥¡¶GTA 5¡·¸Ä×°³¡¾°ÖеÄÚ¿Æ­ÐÐΪ £¬ºÜ¶àÈ˱»Ðû³ÆÕ¼ÓÐÔ´´úÂëµÄÈ˺ýŪ ¡£


https://www.bleepingcomputer.com/news/security/gta-5-source-code-reportedly-leaked-online-a-year-after-rockstar-hack/


3¡¢Å·ÃË·¨ÂÉ»ú¹¹³Æ443¸öµçÉÌÆ½Ì¨Ôâµ½¶ñÒâ¾ç±¾µÄ¹¥»÷


ýÌå12ÔÂ24ÈÕ³Æ £¬Å·ÖÞÐ̾¯×éÖ¯ºÍENISAºÏ×÷·¢Õ¹ÁËÒ»Ïî½áºÏ·¨ÂÉÐж¯ £¬·¢ÏÖ443¸öµçÉÌÆ½Ì¨Ï°È¾ÁËskimmer ¡£SkimmerÊÇÔö³¤µ½½áÕËÒ³Ãæ»ò´ÓÔ¶³Ì×ÊÔ´¼ÓÔØµÄÒ»Ó×¶ÎJavaScript´úÂë £¬Ö¼ÔÚÀ¹½ØºÍÇÔȡ֧¸¶¿¨ºÅ¡¢ÓÐЧÆÚ¡¢ÑéÖ¤Âë¡¢ÐÕÃûºÍËÍ»õµØÖ· £¬¹¥»÷ÕßÀûÓõçÉÌÆ½Ì¨ºÍÄÚÈÝÖÎÀíϵͳÖеķì϶À´×¢Èë¶ñÒâ¾ç±¾ ¡£Group-IB°ä²¼µÄÆäËüÐÅÏ¢ÏÔʾ £¬Õâ´ÎÐж¯·¢ÏÖÁË23¸ö·ÖÆçµÄJavaScriptÐá̽¹¤¾ß £¬Ô̺¬ATMZOW¡¢health_check¡¢FirstKiss¡¢FakeGA¡¢AngryBeaver¡¢InterºÍR3ninµÈ ¡£


https://securityaffairs.com/156340/security/europol-and-enisa-spotted-443-e-stores-compromised-with-digital-skimming.html


4¡¢GoogleÒÑɾ³ý3¸ö¼ÙÒâVPNµÄ¶ñÒâChromeÀ©´ó·¨Ê½


ýÌå12ÔÂ22ÈÕ±¨Â· £¬3¸ö¼ÙÒâVPNµÄ¶ñÒâChromeÀ©´ó±»ÒÑÏÂÔØÁË150Íò´Î ¡£ËüÃÇ×÷Ϊä¯ÀÀÆ÷½Ù³Ö¹¤¾ß¡¢Ïֽ𷵻¹ºÚ¿Í¹¤¾ßºÍÊý¾ÝÇÔÈ¡¹¤¾ß £¬°µ²ØÔÚ¡¶ÏÀµÁÁÔ³µÊÖ¡·¡¢¡¶´Ì¿ÍÐÅÌõ¡·ºÍ¡¶·ÂÕÕÈËÉú4¡·µÈÈȵãÓÎÏ·µÄµÁ°æ×°Ö÷¨Ê½½øÐд«²¼ £¬¶øÕâЩµÁ°æÓÎÏ·¶¼ÊÇ´ÓtorrentÍøÕ¾·Ö·¢µÄ ¡£¾ßÌåÀ´Ëµ £¬¶ñÒâÀ©´óÊÇnetPlus£¨100Íò´Î×°Öã©¡¢netSaveºÍnetWin£¨50Íò´Î£© £¬´óÎÞÊýϰȾ²úÉúÔÚ¶íÂÞ˹ÒÔ¼°ÎÚ¿ËÀ¼¡¢¹þÈø¿Ë˹̹ºÍ°×¶íÂÞ˹µÈ¹ú¶È ¡£Ä¿Ç° £¬GoogleÒÑÔÚChromeÍøÉÏÀûÓõêÖÐɾ³ýÁËÕâЩ¶ñÒâÀ©´ó ¡£


https://www.bleepingcomputer.com/news/security/fake-vpn-chrome-extensions-force-installed-15-million-times/


5¡¢×êÑÐÍŶÓÅû¶Õë¶ÔÓ¡¶Èµ±¾Ö»ú¹¹µÄRusticWebÐж¯


SEQRITEÓÚ12ÔÂ21ÈÕÅû¶Á˶ÔÓ¡¶ÈµÄ´úºÅΪ¡°Operation RusticWeb¡±µÄ´¹µö¹¥»÷»î¶¯ ¡£¸Ã»î¶¯ÓÚ10Ô·ݳõ´Î±»¼ì²âµ½ £¬ÖØÒªÕë¶ÔÓ¡¶Èµ±¾Ö»ú¹¹ºÍ¹ú·À²¿ÃÅ £¬Ö¼ÔÚ·Ö·¢»ùÓÚRustµÄ¶ñÒâÈí¼þ £¬À´½øÐеý±¨ÍøÂç ¡£ÐµĻùÓÚRustµÄpayloadºÍ¼ÓÃܵÄPowerShellºÅÁî±»ÓÃÀ´½«»úÃÜÎĵµÐ¹Â¶µ½»ùÓÚWebµÄ·þÎñÒýÇæ £¬¶ø²»ÊÇרÓõÄC2·þÎñÆ÷ ¡£´Ë±í £¬¸ÃÍÅ»ïÓëTransparent TribeºÍSideCopyÔÚÕ½ÊõÉÏ´æÔÚ³Áµþ ¡£

https://thehackernews.com/2023/12/operation-rusticweb-rust-based-malware.html


6¡¢ThreatFabric°ä²¼AndroidľÂíChameleonµÄ»ã±¨


12ÔÂ21ÈÕ £¬ThreatFabric°ä²¼Á˹ØÓÚAndroidľÂíChameleonа汾µÄ·ÖÎö»ã±¨ ¡£¸Ã¶ñÒâÈí¼þ×Ô2023ËêÊׯðÍ·»îÔ¾ £¬×î³õÖØÒªÕë¶Ô°Ä´óÀûÑǺͲ¨À¼µÄÊÖ»úÒøÐÐÀûÓà £¬´Ë¿ÌÆäÓ°ÏìÁìÓòÀ©´óµ½ÁËÓ¢¹úºÍÒâ´óÀû ¡£Ð°汾ChameleonÓÐÁ½ÏîÒýÈËÖõÖ÷ÕÅÐÂÖ°ÄÜ£ºËüÄܹ»ÈƹýÉúÎï¼ø±ðÌáÐÑ £¬»¹Äܹ»ÏÔʾHTMLÒ³Ãæ £¬ÒÔ±ãÔÚʹÓÃAndroid 13µÄ"Restricted Settings"Ö°ÄܵÄÉ豸ÉÏÆôÓÃÎÞ×è°­·þÎñ ¡£


https://www.threatfabric.com/blogs/android-banking-trojan-chameleon-is-back-in-action