Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄÓ×ÎÒÐÅÏ¢±»¹«¿ª

°ä²¼¹¦·ò 2024-01-11

1¡¢Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄÓ×ÎÒÐÅÏ¢±»¹«¿ª


¾ÝýÌå1ÔÂ9ÈÕ±¨Â·£¬Ä³ºÚ¿Í×î½ü¹«¿ªÁËÒ»¸öÊý¾Ý¿â£¬Ðû³Æ¸ÃÊý¾Ý¿âÓëHathway£¨ÒÔǰ³ÆÎª BITV Cable Networks£¬ÕýʽÃû³ÆÎª Hathway Cable & Datacom Ltd£©ÓйØ¡£Hathway ÊÇÓ¡¶Èµ±ÏȵĻ¥ÁªÍø·þÎñÌṩÉÌ (ISP) ºÍÓÐÏßµçÊÓ·þÎñÔËÓªÉÌ¡£ºÚ¿ÍÔÚÊý¾Ý¿âй¶ÂÛ̳Éϰ䷢µÄÌû×ÓÖÐй©£¬Êý¾Ýй¶ÊÂÎñ²úÉúÔÚ 2023 Äê 12 Ô£¬ÆäʱËûÃÇÀûÓà Laravel ¿ò¼ÜÀûÓ÷¨Ê½£¨ÄÚÈÝÖÎÀíϵͳ£©ÖдæÔڵݲȫ·ì϶³É¹¦Í»ÆÆÁË Hathway µÄ·ÀÓù´ëÊ©(CMS)¡£¶Ôй¶µÄÊý¾Ý·ÖÎöÏÔʾ£¬Óû§ÊýÁ¿Îª 3500 Íò¡£´Ë±í£¬ÕâЩÕÊ»§µÄºÜ´óÒ»²¿ÃÅËÆºõÊÇÐé¹¹ÕÊ»§»ò³Á¸´ÕÊ»§¡£È¥µôÕâЩ³Á¸´ÕË»§ºó£¬ÊÜÓ°ÏìÕË»§µÄÏÖʵÊýÁ¿Ï÷¼õÖÁ½ü 400 Íò¸ö£¬Ô¶µÍÓÚ×î³õÐû³ÆµÄ 4100 Íò¸öÕË»§¡£¸ÃºÚ¿ÍΪDZÔÚÊܺ¦Õß¿ª·¢Á˰µÍøËÑË÷ÒýÇæ¡£¸Ã¹¤¾ßÔÊÐíËûÃÇËÑË÷ËûÃǵĵç×ÓÓʼþµØÖ·ºÍµç»°ºÅÂ룬ÒԲ鳭ËûÃǵÄÊý¾ÝÊÇ·ñй¶¡£


2¡¢°ÍÀ­¹ç×î´óÔËÓªÉÌTigoÔâµ½Black HuntµÄÀÕË÷¹¥»÷


1ÔÂ9ÈÕ£¬Tigo Business ÔÚÉÏÖÜÔâÓöÍøÂç¹¥»÷£¬Ó°Ïì¸Ã¹«Ë¾ÒµÎñ²¿ÃŵÄÔÆºÍÍйܷþÎñºó£¬°ÍÀ­¹ç¾ü·½¾Í Black Hunt ÀÕË÷Èí¼þ¹¥»÷·¢³öÖҸ档Tigo ÊǰÍÀ­¹ç×î´óµÄÒÆ¶¯ÔËÓªÉÌ£¬Æä Tigo ÒµÎñ²¿ÃÅΪÆóÒµÌṩÊý×Ö½â¾ö¹æ»®£¬Ô̺¬ÍøÂ簲ȫÕ÷ѯ¡¢ÔƺÍÊý¾ÝÖÐÐÄÍйÜÒÔ¼°¹ãÓòÍø (WAN) ½â¾ö¹æ»®¡£Tigo Business µÄÒ»·ÝÉêÃ÷ÖÐд·¡£ÍøÉϱ¨Â·µÄ´ó²¿ÃÅÐÂÎŶ¼²»ÕýÈ·£¬Õâ´Î¹¥»÷²¢Î´Ó°ÏìÆä»¥ÁªÍø¡¢µç»°·þÎñºÍ Tigo Money µç×ÓÇ®°ü¡£¹ÌÈ» Tigo ûÓÐÌṩÓйØÍøÂç¹¥»÷µÄÈκÎϸ½Ú£¬µ«É罻ýÌåÉϵĴóÁ¿±¨Â·Åú×¢ËûÃÇÔâ·êÁË Black Hunt ÀÕË÷Èí¼þµÄ¹¥»÷¡£³¬¹ý 330 ̨·þÎñÆ÷±»¼ÓÃÜ£¬±¸·ÝÊý¾ÝÔÚ¹¥»÷ÆÚ¼äÔâµ½·ÛËé¡£¹ÌÈ»ÀÕË÷×ÖÌõÐû³ÆºÚ¿ÍÔÚ¹¥»÷¹ý³ÌÖÐÇÔÈ¡Êý¾Ý£¬µ«Ä¿Ç°»¹Ã»ÓÐÈκÎÒÑÖªµÄÀÕË÷Èí¼þй¶±»µÁÊý¾ÝµÄÊ·ý¡£


3¡¢ÍÁ¶úÆäºÚ¿Íͨ¹ýMSSQL·þÎñÆ÷´«²¼MIMICÀÕË÷Èí¼þ


1ÔÂ10ÈÕýÌ屨·£¬Securonix Íþв×êÑÐÍŶÓÒ»ÏòÔÚ¼à¿ØÔÚ½øÐеÄÍþв»î¶¯ RE#TURGENCE£¬¸Ã»î¶¯Éæ¼°¶Ô×¼ºÍÀûÓà MSSQL Êý¾Ý¿â·þÎñÆ÷À´»ñÈ¡³õʼ½Ó¼ûȨÏÞ¡£ÍþвÐÐΪÕßËÆºõÒÔÃÀ¹ú¡¢Å·Ã˺ÍÀ­¶¡ÃÀÖÞ¹ú¶ÈΪָ±ê£¬²¢ÇÒÓµÓо­¼Ã¶¯»ú¡£Í¨³£¹¥»÷»î¶¯ÒªÃ´ÏúÊÛ¶ÔÊÜϰȾÖ÷»úµÄ¡°½Ó¼ûȨ¡±£¬ÒªÃ´×îÖÕ½»¸¶ÀÕË÷Èí¼þpayload¡£ÕâЩϸ½ÚÊǹ¥»÷ÕßÔÚÒ»´Î³Á´ó OPSEC£¨²Ù×÷°²È«£©¹ÊÕÏÆÚ¼ä·¢Ïֵ쬴Ó×î³õ½Ó¼û MIMIC ÀÕË÷Èí¼þµ½ÔÚÊܺ¦ÓòÉϲ¿Êð MIMIC ÀÕË÷Èí¼þ£¬¸ÃÊÂÎñµÄ¹¦·òԼĪΪһ¸öÔ¡£¸Ã»î¶¯µÄ³õʼ½Ó¼û²¿ÃÅÓëÈ¥ÄêдµÄDB#JAMMERÀàËÆ£¬Ò²É漰ͨ¹ý±©Á¦ÆÆ½âÖÎÀíÃÜÂë½øÐÐÖ±½Ó MSSQL ½Ó¼û¡£


4¡¢Water Curupiraͨ¹ý´¹µö»î¶¯·Ö·¢PikaBot Loader


1ÔÂ9ÈÕ£¬Pikabot ÊÇÒ»ÖÖ¼ÓÔØ·¨Ê½¶ñÒâÈí¼þ£¬ÎÒÃÇÔÚ 2023 ÄêµÚÒ»¼¾¶ÈÔÚÈëÇÖ¼¯ Water Curupira ÏÂ×·×Ùµ½µÄÍþв²Î¼ÓÕßÔÚÀ¬»øÓʼþ»î¶¯Öлý¼«Ê¹ÓøöñÒâÈí¼þ£¬ËæºóÔÚ 6 Ôµ׳öÏÖÒ»´ÎÖжÏ£¬Ò»Ïò³ÖÐøµ½ 2023 Äê 9 Ô³õ. ÆäËû×êÑÐÈËÔ±´ËǰÒѰÑÎȵ½ËüÓëQakbot¼«¶ÈÀàËÆ£¬ºóÕßÓÚ2023 Äê 8 Ô±»·¨Âɲ¿ÃÅÈ¡µÞ¡£2023 Äê×îºóÒ»¸ö¼¾¶È£¬Óë Pikabot ÓйصÄÍøÂç´¹µö»î¶¯ÊýÁ¿ÓÐËùÔö³¤£¬ÓëÈ¡µÞ¹¦·òÒ»ÖÂQakbot £¬Pikabot µÄ¹¥»÷Õß·¢Õ¹ÍøÂç´¹µö»î¶¯£¬Í¨¹ýÆäÁ½¸ö×é¼þ£¨¼ÓÔØ·¨Ê½ºÍÖ÷ÌâÄ £¿é£©¶Ô×¼Êܺ¦Õߣ¬ÕâÁ½¸ö×é¼þÔÊÐíδ¾­ÊÚȨµÄÔ¶³Ì½Ó¼û£¬²¢ÔÊÐíͨ¹ýÓëÆäºÅÁîºÍ½ÚÔì (C&C) ·þÎñÆ÷³ÉÁ¢µÄÏνÓÖ´ÐÐËÁÒâºÅÁî¡£Pikabot ÊÇÒ»ÖÖ¸´ÔӵĶà½×¶Î¶ñÒâÈí¼þ£¬ÔÚͳһÎļþÖÐÓµÓмÓÔØ·¨Ê½ºÍÖ÷ÌâÄ £¿é£¬ÒÔ¼°½âÃÜµÄ shellcode£¬¿É´ÓÆä×ÊÔ´ÖнâÃÜÁíÒ»¸ö DLL Îļþ¡£


5¡¢IBM°ä²¼¹ØÓÚ¶Ô2024ÄêÍøÂ簲ȫÇ÷ÏòµÄÔ¤²â»ã±¨


´ÓÊÀ½ç´óʵ½¾­¼Ã£¬20234ÄêÊÇÄÑÒÔÔ¤²âµÄÒ»Äê¡£ÍøÂ簲ȫ²¢Ã»ÓÐÆ«ÀëÕâ¸öÖ÷Ì⣬´øÀ´ÁËһЩÒâÏë²»µ½µÄ±ä¶¯¡£2024 Äê¶ÔÓÚÍøÂç·¸×ï·Ö×ÓÀ´Ëµ½«ÊÇæÂÒµÄÒ»Ä꣬ÓÉÓÚ³ÖÐøµÄµØÔµÕþÖÎÑÏÖØ´óÊÆ¡¢ÃÀ¹úºÍÅ·Ã˵ijÁ´óÑ¡¾ÙÒÔ¼°ÊÀ½çÉÏ×î´óµÄÌåÓýÈüÊ£¨°ÍÀè°ÂÔ˻ᣩ¶¼ÔÚ¼¸¸öÔÂÄÚ½øÐС£µ½Ä¿Ç°ÎªÖ¹£¬ÍøÂç·¸×ï·Ö×Ó´Ó¶àÄêÀ´Ð¹Â¶µÄÊýÊ®ÒÚÊý¾ÝÖÐÍøÂçµÄÊý¾Ý»ñÀûµÄ·½Ê½¼«¶ÈÓÐÏÞ¡£°µÍøÉϺ±¼ûÒÔ°ÙÍò¼ÆµÄÓÐЧÆóҵƾ֤£¬²¢ÇÒÊýÁ¿»¹ÔÚ³ÖÐøÔö³¤£¬¹¥»÷ÕßÔÚ½«Éí·Ý±øÆ÷»¯£¬½«ÆäÊÓΪ½Ó¼ûÌØÈ¨ÕÊ»§µÄ°ÂÃØ¼¿Á©¡£ÀÕË÷Èí¼þ¿ÉÄÜ»áÔÚ 2024 ÄêÃæ¶ÔË¥ÍË£¬ÓÉÓÚÔ½À´Ô½¶àµÄ¹ú¶È³Ðŵ²»Ö§¸¶Êê½ð£¬Ô½À´Ô½ÉÙµÄÆóÒµÇü·þÓÚ¼ÓÃÜϵͳµÄѹÁ¦¡ª¡ªÑ¡Ôñ½«×ʽð×ªÒÆµ½³Á½¨ÏµÍ³¶ø²»ÊǽâÃÜϵͳ¡£


6¡¢Cisco Talos°ä²¼ÀÕË÷Èí¼þBabukµÄ±äÌåTortillaµÄ½âÃÜÆ÷


¾ÝýÌå1ÔÂ10ÈÕ±¨Â·£¬Talos ÓÚ 2021 Äê 11 Ô³õ´ÎÅû¶ÁËTortilla »î¶¯£¬¹¥»÷ÀûÓÃMicrosoft Exchange ·þÎñÆ÷ÖÐµÄ ProxyShell ȱµãÔÚÊܺ¦Õß»·¾³ÖÐͶ·ÅÀÕË÷Èí¼þ¡£Tortilla ÊǶà¶à ÀÕË÷Èí¼þ±äÌåÖ®Ò»£¬ÕâЩ±äÌåµÄÎļþ¼ÓÃܶñÒâÈí¼þ»ùÓÚй¶µÄ Babuk Ô´´úÂë¡£ÆäÖÐÔ̺¬ Rook¡¢Night Sky¡¢Pandora¡¢Nokoyawa¡¢Cheerscrypt¡¢AstraLocker 2.0¡¢ESXiArgs¡¢Rorschach¡¢RTM Locker ºÍ RA GroupµÈ¡£µÂ¹úÍøÂ簲ȫ¹«Ë¾°²È«×êÑг¢ÊÔÊÒ (SRLabs) °ä²¼ÁËÒ»¿îÃûΪBlack Basta Buster µÄ Black Basta ÀÕË÷Èí¼þ½âÃÜÆ÷£¬¸Ã½âÃÜÆ÷ÀûÓüÓÃÜ·ì϶²¿ÃÅ»òÈ«Êý¸´Ô­Îļþ¡£