ThreeAMºÚ¿Í×é֯й¶Carolina ArthritisÒ½ÁÆÊý¾Ý
°ä²¼¹¦·ò 2024-10-291. ThreeAMºÚ¿Í×é֯й¶Carolina ArthritisÒ½ÁÆÊý¾Ý
10ÔÂ25ÈÕ£¬ºÚ¿Í×éÖ¯ThreeAM½«Æä¹¥»÷Ö¸±êCarolina ArthritisµÄÒ½ÁÆÊý¾ÝÔö³¤µ½Ð¹ÃÜÍøÕ¾ÉÏ£¬²¢ÔÚ¼¸Ó×ʱÄÚй¶ÁËËùÓÐÇÔÈ¡µÄÊý¾Ý£¬¶øÃ»ÓдÍÓë¸ÃÒ½ÁÆ»ú¹¹¸¶¿îÆÚÏÞ»òÖҸ档ThreeAMÐû³ÆÔÚ9ÔÂ27ÈÕ¹¥»÷Á˸ûú¹¹£¬²¢¼ÓÃÜÁËÆäÎļþ¡£±»ÇÔÈ¡µÄÊý¾ÝÔ̺¬ÊÜHIPAA±£»¤µÄ½¡È«ÐÅÏ¢£¬ÈçÓ×ÎÒÐÅÏ¢¡¢²¡Ê·¡¢Ò½ÁƼͼºÍ²é³Á˾ֵȡ£ThreeAMÔøÓëCarolina ArthritisµÄ¹þÀï˹²©Ê¿½øÐн»É棬µ«Î´ÄÜ´ï³ÉºÍ̸¡£ThreeAMÔÚÎļþÖз¢ÏÖÁËÒ½ÉúµÄÍËÐÝÕË»§±¨±í£¬²¢¶Ô´Ë°µÊ¾²»Âú¡£´Ë±í£¬Ð¹Â¶µÄÎļþ»¹Ô̺¬Carolina ArthritisµÄÄÚ²¿ÒµÎñ¼Í¼£¬ÈçÔ±¹¤Êý¾Ý¡¢¹¤×ʵ¥¡¢Ë°ÎñÐÅÏ¢¡¢401kºÍÆäËû¸£ÀûÐÅÏ¢£¬ÒÔ¼°ÍÆËã»úÓû§ÃûºÍÃÜÂë¡£±ØÒªÉó²é20¶àÄêµÄÎļþÄÜÁ¦È·¶¨±ØÒªÍ¨ÖªËÒÔ¼°Éæ¼°ÄÄЩÀàÐ͵ÄÐÅÏ¢¡£Carolina Arthritisδ¶ÔѯÎÊ×÷³ö»ØÓ¦£¬Éв»Ã÷ÏÔÕâ´Î¹¥»÷ÊÇ·ñ¶Ô»¼Õß»¤Àí²úÉúÁËÓ°Ï죬ÒÔ¼°ËûÃÇÊÇ·ñÓÐÈκοÉÄܱ»¼ÓÃܵϼÕßÎļþµÄ¿ÉÓñ¸·Ý¡£
https://databreaches.net/2024/10/25/carolina-arthritis-hit-by-threeam-ransomware-attack/
2. ÃÀ¹úÁÙÖÕ¹ØÇÐÒ©·¿OPPCÔâ·ê´ó¹æÄ£Êý¾Ýй¶
10ÔÂ25ÈÕ£¬ÃÀ¹úÁÙÖÕ¹ØÇÐÒ©·¿OnePoint Patient Care£¨OPPC£©Ôâ·êÁËÊý¾Ýй¶ÊÂÎñ£¬µ¼ÖÂÔ¼80ÍòÈ˵ÄÓ×ÎÒÐÅÏ¢±»Ð¹Â¶¡£OPPCÊÇÒ»¼ÒÌṩÁÙÖÕ¹ØÇк͹ÃÏ¢Ò½ÖηþÎñµÄÒ©µê£¬ÓëÒ½ÁƱ£½¡ÌṩÉ̺Ï×÷£¬Îª»¼ÕßÌṩ¶¨ÔìÒ©ÎïºÍÖ§³Ö¡£2024Äê8ÔÂ8ÈÕ£¬OPPCÔÚÆäÍÆËã»úÍøÂçÉϼì²âµ½¿ÉÒɻ£¬²¢µ±¼´Æô¶¯ÄÚ²¿µ÷²é£¬Í¬Ê±ÀñƸ·¨Ò½°²È«¹«Ë¾½øÒ»´ëÊ©²é¡£8ÔÂ15ÈÕ£¬OPPCÈ·ÈÏÔÚ8ÔÂ6ÈÕÖÁ8ÈÕÆÚ¼ä£¬ÓÐÈËδ¾ÊÚȨ½Ó¼ûÁËÆäϵͳ²¢»ñÈ¡ÁËÓ×ÎÒÐÅÏ¢£¬Ô̺¬ÐÕÃû¡¢¾ÓסÐÅÏ¢¡¢Ò½ÁƼͼ¡¢Õï¶Ï¡¢´¦·½ÏêÇéÒÔ¼°²¿ÃÅÊý¾ÝµÄÉç»á°²È«ºÅÂë¡£OPPCÒÑÏòÃÀ¹úÎÀÉúÓ빫¼Ò·þÎñ²¿»ã±¨Õâ´Î°²È«ÊÂÎñ£¬²¢½¨ÒéÊÜÓ°ÏìµÄÓ×ÎÒ¼à¿ØÐÅÓþ»ã±¨ºÍ±¨±íÖÐÊÇ·ñ´æÔÚ¿ÉÒɻ£¬²¢Ïò·¨Âɲ¿ÃŻ㱨ÈκÎÚ²ÆÐÐΪ¡£¾ÝϤ£¬Õâ´Îй¶ÊÂÎñÓëInc RansomÀÕË÷Èí¼þ×éÖ¯Óйأ¬¸Ã×éÖ¯ÔÚÆäTorйÃÜÍøÕ¾´ó½«OPPCÔö³¤µ½Êܺ¦ÕßÃûµ¥ÖУ¬µ«OPPCûÓÐÖ§¸¶Êê½ð£¬µ¼ÖÂÊý¾Ý±»Ð¹Â¶¡£Inc Ransom×Ô2023ÄêÆðÍ·»îÔ¾£¬ÒÑÐû³Æ¶ÔÖÁÉÙ65¸ö×éÖ¯µÄÈëÇÖÊÂÎñÕÆ¹Ü¡£
https://securityaffairs.com/170247/data-breach/onepoint-patient-care-data-breach.html
3. ºÉÀ¼¾¯·½¡°Âí¸ñŬ˹Ðж¯¡±³Á´´RedlineºÍMetaÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ
10ÔÂ28ÈÕ£¬ºÉÀ¼¾¯·½ÔÚ¡°Âí¸ñŬ˹Ðж¯¡±Öгɹ¦²é·âÁËRedlineºÍMetaÕâÁ½¿îÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þµÄÍøÂç»ù´¡ÉèÊ©£¬²¢ÖÒ¸æÍøÂç·¸×ï·Ö×ÓËûÃǵÄÊý¾ÝÒѱ»·¨Âɲ¿ÃŰÑÎÕ¡£ÕâÁ½¿î¶ñÒâÈí¼þ»á´ÓÊÜϰȾÉ豸ÉϵÄä¯ÀÀÆ÷ÇÔÈ¡Ô̺¬Æ¾Ö¤¡¢ä¯ÀÀº¹Çà¼Í¼¡¢Ãô¸ÐÎĵµµÈÔÚÄڵĶàÖÖÐÅÏ¢£¬¶øºóÏúÊÛ»òÓÃÓÚÍøÂç¹¥»÷¡£Õâ´ÎÐж¯µÃµ½ÁËÔ̺¬ÃÀ¹úÁª¹úµ÷²é¾Ö¡¢Å·ÖÞ˾·¨×éÖ¯µÈ¹ú¼Ê·¨ÂÉͬ°éµÄÖ§³Ö¡£¾¯·½²»½ö»ñµÃÁËÕâÁ½¿î¶ñÒâÈí¼þµÄÔ´´úÂ룬»¹°ÑÎÕÁË¿ÉÓÃÓڲ龿ʹÓøöñÒâÈí¼þµÄÍøÂç·¸×ï·Ö×ÓµÄÖ¤¾Ý¡£´Ë±í£¬ºÉÀ¼¾¯·½»¹Ñ¡È¡ÔÚºÚ¿ÍÂÛ̳ÉÏ´´½¨Õ˺Ų¢·¢ËÍÖ±½ÓÐÂÎŵķ½Ê½£¬ÖÒ¸æÍþвÐÐΪÕßËûÃÇÕýÊܵ½Ç×êǼල¡£ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þÒѳÉΪÆóÒµÃæ¶ÔµÄ¾Þ´óÎÊÌ⣬RedlineºÍMetaµÈ¶ñÒâÈí¼þÒѵ¼Ö´óÁ¿Ãô¸ÐÊý¾Ý±»ÇÔÈ¡£¬²¢±»ÓÃÓÚÍøÂç¹¥»÷¡£ÕâЩ±»µÁƾ֤Òѱ»ÓÃÀ´·¢ÆðһЩ×îÑϳÁµÄÎ¥¹æÐÐΪ£¬¶ÔÍøÂ簲ȫ×é³ÉÑϳÁÍþв¡£
https://www.bleepingcomputer.com/news/legal/redline-meta-infostealer-malware-operations-seized-by-police/
4. TeamTNTÀûÓÃDocker·ì϶ÌáÒéкڿͻ
10ÔÂ28ÈÕ£¬³ôÃûÔ¶ÑïµÄºÚ¿Í×éÖ¯TeamTNT½üÆÚÌáÒéÁËÒ»Ïîеĺڿͻ£¬¸Ã×éÖ¯ÀûÓö³öµÄDockerÊØ»¤·¨Ê½²¿Êð¶ñÒâÈí¼þ£¬²¢Í¨¹ýÊÜϰȾµÄ·þÎñÆ÷ºÍDocker Hub½øÐй¥»÷´«²¼¡£Aqua NautilusµÄÍøÂ簲ȫ×êÑÐÈËÔ±·¢ÏÖ£¬TeamTNT£¨±ðÃûAdept Libra£©Í¨¹ýÈëÇÖÒ»¸öºÏ·¨µÄDocker HubÕË»§ÍйܶñÒâÈí¼þ£¬ÉÏ´«ÁËÔ¼30¸ö¾µÏñ£¬Ô̺¬ÓÃÓÚ´«²¼¶ñÒâÈí¼þµÄ»ù´¡ÉèÊ©¾µÏñºÍרһÓÚ¼ÓÃÜÇ®±ÒÍÚ¾ò»òÍÆËãÄÜÁ¦³ö×âµÄÓ°Ïì¾µÏñ¡£TeamTNTʹÓÃDocker Gatling GunɨÃè´óÁ¿IPµØÖ·£¬²éÕÒÔÚÌØ¶¨¶Ë¿ÚÉÏÔËÐеÄDockerÊØ»¤·¨Ê½·ì϶£¬²¢²¿Êð¶ñÒâÈÝÆ÷ºÍ¾ç±¾¡£ÎªÁËÌӱܼì²â£¬TeamTNTʹÓÃÏȽøµÄSliver¶ñÒâÈí¼þ£¬»ìÈëºÏ·¨¹ý³Ì£¬ÇÔȡƾ֤²¢É¨ÃèÍøÂçѰÕÒÆäËûÖ¸±ê¡£ËûÃǵÄ×îÖÕÖ¸±êÊǽٳÖ×ÊÔ´½øÐмÓÃÜÇ®±ÒÍÚ¾ò»òÏúÊÛÊÜϰȾϵͳµÄ½Ó¼ûȨÏÞ£¬Ê¹ÓöàÖÖÍÚ¿óÈí¼þ½øÐÐÓÅ»¯²Ù×÷¡£Õâ´Î»î¶¯Õ¹Ê¾ÁËTeamTNTµÄÊÊÓ¦ºÍ·¢Õ¹ÄÜÁ¦£¬¸÷×éÖ¯±ØÐëά³Ö¾¯Ìè²¢¼ÓÇ¿ÍøÂ簲ȫʵ¼Ê£¬ÒÔ·À±¸¸Ã×éÖ¯µÄ¹¥»÷·çÏÕ¡£
https://hackread.com/teamtnt-exploits-ips-malware-attack-docker-clusters/
5. Hot Topic¹Ë¿ÍÊý¾ÝÔâй¶£¬°µÍø¾ªÏÖ3.5ÒÚÌõÓ×ÎÒÐÅÏ¢
10ÔÂ25ÈÕ£¬ÒÔÉ«ÁÐÍøÂ簲ȫ¹«Ë¾Hudson Rock·¢ÏÖ£¬ÔÚ°µÍøÉÏÓÐÒ»¸ö¾Ý³ÆÔ̺¬3.5ÒÚÌõHot Topic¹Ë¿ÍÓ×ÎÒºÍÖ§¸¶Êý¾ÝµÄÖØ´óÊý¾Ý¿âÔÚ±»¹«¿ªÏúÊÛ¡£¸ÃÊý¾Ý¿â¾Ý³ÆÓÉÃûΪSatanicµÄÍþв×éÖ¯°ä²¼£¬Ô̺¬Óû§µÄ¾ßÌåÓ×ÎÒÐÅÏ¢ºÍÖ§¸¶Ï¸½Ú£¬Éæ¼°Hot Topic¡¢TorridºÍBoxLunchÈý¼ÒÁãÊÛÆóÒµ¡£¹ÌÈ»Hot TopicÉÐδ¹«¿ªÈÏ¿ÉÊý¾Ýй¶£¬µ«Ëæ×Ű²È«×êÑÐÈËÔ±·¢ÏÖµÄÖ¤¾ÝÔ½À´Ô½¶à£¬¸ÃÊÂÎñµÄÕæÊµÐÔÔ½À´Ô½¸ß¡£Hudson RockÖÒ¸æ³Æ£¬Õ⽫¸øÓû§´øÀ´ÑϳÁ°²È«Òþ»¼£¬ÈçÉí·Ý͵ÇÔ¡¢½ðÈÚڲƵȡ£¾Ýµ÷²é£¬Õâ´ÎÊý¾Ýй¶¿ÉÄÜÔ´ÓÚinfo-stealerľÂíϰȾ£¬¸ÃľÂíÈëÇÖÁËΪHot TopicµÈÁãÊÛÉÌÌṩÊý¾Ýͳһ·þÎñµÄµÚÈý·½¹«Ë¾Ô±¹¤µÄÍÆËã»ú£¬¶ø²»×ã¶à³É·ÖÉí·ÝÑéÖ¤£¨MFA£©»úÔì¿ÉÄÜÊǵ¼Ö¸ÃÊÂÎñ²úÉúµÄÖ÷Ìâ³É·ÖÖ®Ò»¡£´Ë±í£¬Hot TopicÔÚȨÏÞÖÎÀíÉÏÒ²´æÔÚ¾Þ´óÎÊÌ⣬ÒòÔ±¹¤Æ¾Ö¤µ¼ÖµÄй¶ÊÂÎñÓ°ÏìÃæ½«»á¼«¶È¹ã¡£SatanicÍþв×éÖ¯µ«Ô¸ÒÔ2ÍòÃÀÔªµÄ¼ÛÖµÏúÊÛ¸ÃÊý¾Ý¿â£¬»òÏòHot TopicÀÕË÷1ÍòÃÀԪɾ³ý¸ÃÌû×Ó¡£
https://cybernews.com/security/hackers-put-350m-hot-topic-customers-records-for-sale/
6. ·¨¹úFree¹«Ë¾ÔâÍøÂç¹¥»÷£¬¿Í»§Ó×ÎÒÐÅÏ¢ÒÉÔâй¶
10ÔÂ28ÈÕ£¬·¨¹ú»¥ÁªÍø·þÎñÌṩÉÌFree£¬×÷Ϊ·¨¹úµÚ¶þ´óISP£¬Õ¼Óг¬¹ý2290ÍòÓû§£¬½üÈÕÅû¶ÁËÒ»Â·ÍøÂç¹¥»÷ÊÂÎñ¡£¾Ý³Æ£¬ÍþвÐÐΪÕß»ñµÃÁËFreeÄÚ²¿ÖÎÀí¹¤¾ßµÄ½Ó¼ûȨÏÞ£¬²¢µÁÈ¡ÁËһЩ¶©ÔÄÕßµÄÓ×ÎÒÊý¾Ý¡£¸Ã¹«Ë¾ÔÚ10ÔÂ26ÈÕÏò·¨ÐÂÉç֤ʵÁËÕâÒ»ÐÂÎÅ£¬Ö¸³ö²¿ÃÅÓû§ÕË»§ÓйصÄÓ×ÎÒÊý¾Ý±»Î´¾ÊÚȨ½Ó¼û£¬µ«ÃÜÂë¡¢ÒøÐп¨ÐÅÏ¢ºÍͨѶÄÚÈÝδÊÜÓ°Ïì¡£¹«Ë¾ÒÑÌáÆðÐÌÊÂËßËÏ£¬²¢Í¨ÖªÁËÓйؼà¹Ü»ú¹¹¡£Âô¼ÒÔÚÍøÂç·¸×ïÂÛ̳ÉÏÁгöÁËÁ½¸öÊý¾Ý¿â£¬Ô̺¬´óÁ¿¿Í»§ÕË»§ºÍIBAN¾ßÌåÐÅÏ¢£¬²¢°ä²¼ÁËÊý¾ÝÑù±¾ºÍ½ØÍ¼¡£Ð¹Â¶µÄ¿Í»§Êý¾ÝÔ̺¬Ãû×Ö¡¢ÐÕÊÏ¡¢µç»°ºÅÂë¡¢ÆëÈ«ÓÊÕþµØÖ·¡¢µ®ÉúÈÕÆÚ¡¢µç×ÓÓʼþµÈ¡£Ö»¹ÜÍøÂç·¸×ï·Ö×ÓÐû³ÆÕâ´ÎÊý¾Ýй¶ӰÏìÁËFree MobileºÍFreebox¿Í»§£¬µ«¹«Ë¾°µÊ¾ÒѲÉÈ¡´ëÊ©ÔìÖ¹¹¥»÷²¢¼ÓÇ¿ÐÅϢϵͳ±£»¤¡£
https://securityaffairs.com/170333/data-breach/free-suffered-a-cyber-attack.html


¾©¹«Íø°²±¸11010802024551ºÅ