ÄÜÔ´ÐÐÒµ³Ð°üÉÌENGlobalÔâÀÕË÷Èí¼þ¹¥»÷£¬ITϵͳ½Ó¼ûÊÜÏÞ
°ä²¼¹¦·ò 2024-12-041. ÄÜÔ´ÐÐÒµ³Ð°üÉÌENGlobalÔâÀÕË÷Èí¼þ¹¥»÷£¬ITϵͳ½Ó¼ûÊÜÏÞ
12ÔÂ3ÈÕ£¬ENGlobal CorporationÊÇÒ»¼ÒÔÚÄÜÔ´ÐÐÒµÉè¼ÆºÍ½¨Ôì×Ô¶¯½ÚÔìϵͳµÄÖØÒª³Ð°üÉÌ£¬½üÈÕ֤ʵÆäÕýÃæ¶ÔÀÕË÷Èí¼þ¹¥»÷£¬¸Ã¹¥»÷¹ÊÕÏÁËÆäÕý³£ÔËÓª¡£¸Ã¹«Ë¾ÓÚ11ÔÂ25ÈÕ·¢ÏÖÕâÒ»¹¥»÷£¬²¢ËæºóÏòÃÀ¹ú֤ȯÂòÂôίԱ»áÌá½»ÁËÓйػ㱨¡£¾Ý³Æ£¬Ò»¸öÍþвÐÐΪÕß·¸·¨½Ó¼ûÁ˹«Ë¾µÄÐÅÏ¢¼¼Êõϵͳ£¬²¢¼ÓÃÜÁ˲¿ÃÅÊý¾ÝÎļþ£¬µ¼ÖÂENGlobalÏÞ¶ÈÁËÔ±¹¤¶ÔITϵͳµÄ½Ó¼û£¬½öÏÞÓÚ±ØÒªµÄÒµÎñÔËÓª¡£Ä¿Ç°£¬¹«Ë¾ÔÚ²ÉÈ¡¶àÏî´ëÊ©½â¾öÎÊÌ⣬Ô̺¬Æô¶¯ÄÚ²¿µ÷²éºÍÀñƸ±í²¿ÍøÂ簲ȫר¼Ò£¬µ«È«Ã渴ÔITϵͳ½Ó¼ûȨÏ޵Ŧ·òÉв»Ã÷ÏÔ£¬ÇÒÉÐÎÞ·¨È·¶¨ÕâÒ»ÊÂÎñÊÇ·ñ»á¶Ô¹«Ë¾²ÆÕþÒµ¼¨²úÉú³Á´óÓ°Ïì¡£ÖµÍ×ÌùÐĵÄÊÇ£¬ENGlobalÔø»ã±¨Éϸö¼¾¶ÈÊÕÈë¿¿½ü600ÍòÃÀÔª£¬½ñÄêǰ¾Å¸öÔÂÊÕÈëΪ1840ÍòÃÀÔª£¬ÇҸù«Ë¾×¨ÃÅΪÃÀ¹ú¹ú·À¹¤ÒµÌṩ½»Ô¿³××Ô¶¯»¯ºÍÒDZíϵͳ¡£ÀàËÆÉæ¼°ENGlobalºÍ֮ǰ½É×ԿصÄÀÕË÷Èí¼þ¹¥»÷¿ÉÄÜ»áй¼ûÀ¹úµ±¾ÖÉèÊ©µÄÃô¸ÐÎļþ¡¢ºÏͬºÍ´òË㣬Òý·¢ºÓɽ°²È«Êý¹ÙÔ±µÄ¾¯Ìè¡£
https://therecord.media/energy-industry-contractor-ransomware-disruption
2. µ¤Âó×î´óÍøÂçÌṩÉÌTDC NetÈí¼þ¸üÐÂÒý·¢´ó¹æÄ£µçÐÅÖжÏ
11ÔÂ28ÈÕ£¬µ¤Âó×î´óµÄÍøÂçÌṩÉÌTDC NetÔÚ11ÔÂ27ÈÕÔâ·ê´ó¹æÄ£µçÐÅÖжϣ¬ÔÒò¹é×ïÓÚÆäÖ´ÐеÄÈí¼þ¸üС£Õâ´ÎÖжϵ¼ÖÂÊýǧÃû¿Í»§ÎÞ·¨²¦´òµç»°£¬Ô̺¬´¹Î£·þÎñµç»°112£¬¸ø¿Í»§´øÀ´¼«´ó²»±ã¡£¾ÝABCÐÂÎű¨Â·£¬TDC Net²»ÒÔΪÕâ´ÎÖжÏÊÇÓÉÍøÂç¹¥»÷ÒýÆðµÄ¡£Õâ´ÎÊÂÎñ»¹µ¼ÖÂÖÁÉÙÒ»¼ÒÒ½Ôº±»ÆÈÏ÷¼õ·Ç¹Ø¼üÒ½ÁÆ·þÎñ£¬°²È«ÊýÃÅÒ²ÔÚ½ÖÉÏѲÂßÒÔѰÕÒ±ØÒªÔ®ÊÖµÄÈË¡£TDC NetÒѲÉÈ¡´ëÊ©½¨¸´ÎÊÌ⣬ÔÊÐí¿Í»§²¦´òµç»°£¬µ«ÉùÒôÖÊÁ¿ÓÐËù½µÂä¡£ÔËÓªÉ̽¨Òé¿Í»§ÔÚ²¦´ò112֮ǰÏÈÈ¡³öSIM¿¨¡£TDC NetÌá¹©ÒÆ¶¯¡¢¹âÏ˺ÍÍÏß·þÎñ£¬ÓÉTDC GroupÓÚ2019ÄêµÞÔ죬Æäº¹ÇàÄܹ»×·Òäµ½1879Ä꣬ÆäʱÑÇÀúɽ´ó¡¤¸ñÀ×¶òÄ·¡¤±´¶ûµÄ±´¶ûµç»°¹«Ë¾ÔÚµ¤Âó¿ªÉèÁË·Ö¹«Ë¾£¬1881ÄêÔڸ籾¹þ¸ù¿ªÉèÁ˵ÚÒ»¼Òµç»°»¥»»»ú¡£
https://www.datacenterdynamics.com/en/news/danish-telco-tdc-net-suffers-telecoms-outage-impacts-emergency-calls/
3. ˹ÍÐÀû¼¯ÍÅÔÚÔâ·êÀÕË÷Èí¼þ¹¥»÷ºóÔÚÃÀ¹úÉêÇëÆÆ²ú
12ÔÂ3ÈÕ£¬Ë¹ÍÐÀû¼¯ÍÅÃÀ¹ú¹«Ë¾½üÆÚÉêÇëÁËÆÆ²ú£¬ÕâÒ»¾ö¶¨ÊÇÔÚ¾ÀúÁËһϵÁгÁÃͽø¹¥Ö®ºó×ö³öµÄ¡£8Ô·ݣ¬¸Ã¼¯ÍÅÔâ·êÁËÀÕË÷Èí¼þ¹¥»÷£¬µ¼ÖÂÆäITϵͳ£¬Ô̺¬ÆóÒµ×ÊÔ´¹æ»®Æ½Ì¨£¬Ôâ·êÑϳÁ·ÛË飬ÆÈʹÕû¸ö¼¯ÍÅתΪÊÖ¶¯²Ù×÷£¬Ó°ÏìÁËÔ̺¬¹ÜÕÊÔÚÄڵĹؼüÁ÷³Ì£¬Ô¤¼ÆÒªµ½2025ËêÊ×ÄÜÁ¦È«Ã渴ԡ£ÕâÒ»ÊÂÎñ»¹µ¼ÖÂ˹ÍÐÀûÃÀ¹ú×Ó¹«Ë¾ÎÞ·¨Ïò´û·½Ìṩ²ÆÕþ»ã±¨£¬±»´û·½Ö¸¿ØÍÏÇ·ÁË7800ÍòÃÀÔªµÄÕ®Îñ¡£¶øÔÚ7Ô·ݣ¬Ë¹ÍÐÀû¼¯ÍÅÔÚ¶íÂÞ˹µÄÁ½¼ÒÄð¾Æ³§±»³ä¹«£¬ÔÒòÊǸü¯Íż°ÆäÊ×´´ÈËÓÈÀл·òÀÕ±»Ö¸¶¨Îª¡°¼«¶Ë·Ö×Ó¡±£¬ÕâÓëËûÃÇÔÚÎÚ¿ËÀ¼Õ½ÕùÆÚ¼äΪÎÚ¿ËÀ¼ÄÑÃñ·¢Õ¹µÄÈË·Ö÷ÒåÔöÔ®¹¤×÷ºÍÓйØÓªÏú»î¶¯Óйء£´Ë±í£¬Ë¹ÍÐÀû¼¯ÍÅ»¹Óë¶íÂÞ˹¹úÓÐÆóÒµ¾Í·üÌØ¼ÓÉ̱êȨ·¢Õ¹Á˳¤´ï23ÄêµÄ·¨Í¥·Ü¶·£¬ºÄ×ÊÊýǧÍòÃÀÔª¡£¹«Ë¾Ê×´´ÈËл·òÀÕÒ²ÒòÆ·ÆÀÆÕ¾©ÕþȨ¶ø±»ÆÈÌÓÀë¶íÂÞ˹£¬²¢ÔÚÈðÊ¿»ñµÃ°ü±ÓºÍÓ¢¹ú¹«ÃñÉí·Ý¡£ÕâЩÊÂÎñ¹²Í¬µ¼ÖÂÁË˹ÍÐÀû¼¯ÍÅÃÀ¹ú¹«Ë¾µÄÆÆ²úÉêÇë¡£
https://www.bleepingcomputer.com/news/security/vodka-maker-stoli-files-for-bankruptcy-in-us-after-ransomware-attack/
4. CloudflareÓòÃûÔâÀÄÓãºÍøÂç´¹µöÓë¶ñÒâ»î¶¯¼¤Ôö
12ÔÂ3ÈÕ£¬CloudflareµÄ¡°pages.dev¡±ºÍ¡°workers.dev¡±ÓòÃûÒòÆäÆ·ÅÆÅµÑÔ¡¢·þÎñ¿¿µÃסÐԺ͵ÍʹÓóɱ¾£¬ÕýÔ½À´Ô½¶àµØ±»ÍøÂç·¸×ï·Ö×ÓÀÄÓÃÓÚÍøÂç´¹µöºÍÆäËû¶ñÒâ»î¶¯¡£¾ÝÍøÂ簲ȫ¹«Ë¾Fortra»ã±¨£¬Óë2023ÄêÏà±È£¬ÕâЩÓòÃûµÄÀÄÓÃÂÊÉÏÉýÁË100%ÖÁ250%¡£Cloudflare Pages×÷Ϊǰ¶Ë¿ª·¢ÈËԱƽ̨£¬±»ÓÃÓÚÍйÜÖÐÑëÍøÂç´¹µöÒ³Ãæ£¬½«Êܺ¦Õß³Á¶¨Ïòµ½¶ñÒâÍøÕ¾£¬Èç¼ÙðµÄMicrosoft Office365µÇÂ¼Ò³Ãæ¡£FortraÖ¸³ö£¬Õë¶ÔCloudflare PagesµÄÍøÂç´¹µö¹¥»÷Ôö³¤ÁË198%£¬Ô¤¼Æµ½Äêµ×¹¥»÷×ÜÊý½«³¬¹ý1600Æð¡£Í¬Ê±£¬Cloudflare WorkersÎÞ·þÎñÆ÷ÍÆËãÆ½Ì¨Ò²±»ÀÄÓã¬Ô̺¬½øÐÐDDoS¹¥»÷¡¢²¿ÊðÍøÂç´¹µöÍøÕ¾¡¢×¢ÈëÓк¦¾ç±¾ºÍ±©Á¦ÆÆ½âÃÜÂëµÈ¡£Fortra»ã±¨³Æ£¬Õë¶ÔCloudflare WorkersµÄÍøÂç´¹µö¹¥»÷¼¤Ôö104%£¬Ô¤¼Æµ½Äêµ××ÜÊý½«´ïµ½½ü6000Æð¡£Óû§Ó¦ÑéÖ¤URLµÄÕæÊµÐÔ²¢¼¤»îË«³É·ÖÉí·ÝÑéÖ¤µÈ°²È«´ëÊ©£¬ÒÔ·À±¸ÕâЩÀÄÓÃÐÐΪ¡£
https://www.bleepingcomputer.com/news/security/cloudflares-developer-domains-increasingly-abused-by-threat-actors/
5. WhatsUp GoldÑϳÁÔ¶³Ì´úÂëÖ´Ðзì϶£¬¼±Ðè¸üа²È«²¹¶¡
12ÔÂ3ÈÕ£¬Progress WhatsUp Gold±»·¢ÏÖ´æÔÚÒ»¸ö±àºÅΪCVE-2024-8785µÄÑϳÁÔ¶³Ì´úÂëÖ´Ðзì϶£¬¸Ã·ì϶ÓÉTenableÔÚ2024Äê8ÔÂÖÐÑ®·¢ÏÖ£¬CVSS v3.1ÆÀ·Ö¸ß´ï9.8¡£·ì϶´æÔÚÓÚNmAPI.exe¹ý³ÌÖУ¬ÓÉÓÚ´«ÈëÊý¾ÝÑéÖ¤²»¼°£¬¹¥»÷Õ߿ɷ¢ËÍÌØÔìÒªÇóÅú¸Ä»ò¸²¸ÇWindows×¢²á±íÏ½ø¶ø½ÚÔìWhatsUp GoldµÄÅäÖÃÎļþ¶ÁÈ¡µØÎ»¡£¹¥»÷Õß¿Éͨ¹ýnetTcpBindingŲÓÃUpdateFailoverRegistryValues²Ù×÷£¬¸ü¸Ä×¢²á±íÖµ»ò´´½¨ÐÂÖµ£¬Ê¹·þÎñ³ÁÆôʱ´ÓÔ¶³Ì¹²Ïí¶ÁÈ¡ÅäÖÃÎļþ£¬Ö´ÐÐËÁÒâÔ¶³Ì¿ÉÖ´ÐÐÎļþ¡£¸Ã·ì϶ÎÞÐèÉí·ÝÑéÖ¤£¬ÇÒNmAPI.exe·þÎñ¿Éͨ¹ýÍøÂç½Ó¼û£¬·çÏÕ¼«´ó¡£Progress SoftwareÓÚ9ÔÂ24ÈÕ°ä²¼ÁËÔ̺¬½¨¸´´Ë·ì϶ÔÚÄڵݲȫ¸üУ¬½¨ÒéϵͳÖÎÀíÔ±¾¡¿ìÉý¼¶µ½°æ±¾24.0.1¡£½üÆÚ£¬WhatsUp GoldÒÑÂŴγÉΪºÚ¿Í¹¥»÷Ö¸±ê£¬ÀûÓù«¿ª·ì϶»ñÈ¡³õ²½½Ó¼ûȨÏÞ»òÊÕÊÜÖÎÀíÔ¹ØÊ»§£¬Òò¶øÊµÊ±ÀûÓð²È«¸üÐÂÖÁ¹Ø³ÁÒª¡£
https://www.bleepingcomputer.com/news/security/exploit-released-for-critical-whatsup-gold-rce-flaw-patch-now/
6. µÂ·¨Âɲ¿Ãŵ·»ÙCrimenetworkÍøÂç·¸×ïÊг¡£¬¿ÛÁôÖÎÀíÔ±
12ÔÂ3ÈÕ£¬µÂ¹ú·¨Âɲ¿Ãŵ·»ÙÁ˵ÂÓïµØÓò×î´óµÄÍøÂç·¸×ïÊг¡Crimenetwork£¬²¢¿ÛÁôÁËÆäÖÎÀíÔ±£¬×ïÃûÊÇÐÖú··Âô¶¾Æ·¡¢ÇÔÈ¡Êý¾ÝºÍÌṩ·¸·¨·þÎñ¡£¸ÃÊг¡³ÉÁ¢ÓÚ2012Ä꣬¹Ø¹ØÊ±Õ¼Óг¬¹ý100Ãû×¢²áÂô¼ÒºÍ10ÍòÓû§£¬ÆäÖдóÎÞÊýλÓÚµÂÓï¹ú¶È¡£Óû§Äܹ»Ê¹ÓñÈÌØ±Ò»òÄÑÒÔ×·×ٵļÓÃÜÇ®±ÒÃÅÂÞ±ÒÖ§¸¶ÉÌÆ·ºÍ·þÎñ£¬ÂòÂôÁ¿¾Þ´ó£¬Æ½Ì¨´ÓÖÐ׬ȡÌá³É¡¢Ô¶©ÔķѺ͸æ°×ÊÕÈë¡£±»²¶µÄÖÎÀíÔ±ÊÇÒ»Ãû29ËêµÄÏÓÒÉÈË£¬Ãæ¶Ô¶àÏîÖ¸¿Ø¡£´Ë±í£¬µÂ¹ú·¨Âɲ¿ÃÅ»¹ÖÒ¸æ³Æ£¬ÒÑ»ñµÃÓйظÃÍøÂç·¸×ïÆ½Ì¨×¢²á»áÔ±µÄÐÅÏ¢£¬½«À´¿ÉÄÜ»á¿ÛÁô¸ü¶àÏÓÒÉÈË¡£Õâ´ÎÐж¯Êǵ¹ú½üÆÚ·´ÍøÂç·¸×ï×´¶¯µÄÒ»²¿ÃÅ£¬»¹Éæ¼°ÆäËû³ÛÃû°¸¼þ£¬Èç²é·âDstat.cc DDoSÉó²éƽ̨ºÍ²é»ñ47¼Ò¼ÓÃÜÇ®±ÒÂòÂô·þÎñ»ú¹¹¡£
https://www.bleepingcomputer.com/news/security/police-seizes-largest-german-online-crime-marketplace-arrests-admin/


¾©¹«Íø°²±¸11010802024551ºÅ