AflacÅû¼ûÀ¹úÍøÂç¿ÉÒɻµ¼ÖÂÐÅϢй¶
°ä²¼¹¦·ò 2025-06-241. AflacÅû¼ûÀ¹úÍøÂç¿ÉÒɻµ¼ÖÂÐÅϢй¶
6ÔÂ21ÈÕ£¬ÃÀ¹ú±£ÏÕ¹«Ë¾AflacÅû¶£¬ÆäÃÀ¹úÍøÂç¼ì²âµ½¿ÉÒɻ£¬¿ÉÄܵ¼ÖÂÉç»á±£ÏÕºÅÂë¼°ÆäËûÓ×ÎÒÐÅϢй¶¡£¸Ã¹«Ë¾³Æ´ËÊÂÎñÊÇÕë¶Ô±£ÏÕÐÐÒµµÄÍøÂç·¸×ï»î¶¯µÄÒ»²¿ÃÅ£¬²¢ÒÑÓÚÖÜÎåÉêÃ÷ÈëÇÖÔÚÊýÓ×ʱÄÚ±»³É¹¦×èÖ¹¡£AflacÔÚ²¼¸æÖÐÇ¿µ÷£¬ÔÚÏìÓ¦ÊÂÎñµÄͬʱ³ÖÐø·þÎñ¿Í»§£¬±£µ¥³Ð±£¡¢ÀíÅâÉóºË¼°ÆäËûͨÀýÒµÎñ¾ùÕý³£ÔË×÷¡£Ä¿Ç°ÊÂÎñÉó²é´¦ÓÚ³õÆÚ½×¶Î£¬ÊÜÓ°Ïì×ÜÈËÊýÉÐδȷ¶¨¡£¾µ÷²é£¬¿ÉÄÜÉæ¼°µÄÎļþÔ̺¬ÃÀ¹úµØÓò¿Í»§¡¢ÊÜÒæÈË¡¢Ô±¹¤¡¢´úÀíÈ˵ÈȺÌåµÄÀíÅâÐÅÏ¢¡¢½¡È«Êý¾Ý¡¢Éç»á±£ÏÕºÅÂë¼°ÆäËûÓ×ÎÒÉí·ÝÐÅÏ¢¡£ÎªÓ¦¶ÔÕâ´ÎÊÂÎñ£¬Aflac°ä·¢½«ÏòÖµç¿Í·þÖÐÐĵÄÊÜÓ°ÏìÈËȺÌṩ24¸öÔÂÃâ·ÑÐÅÓþ¼à¿Ø¡¢Éí·Ý͵ÇÔ·À»¤¼°Ò½ÁƶÜÅÆ·þÎñ¡£
https://www.securityweek.com/aflac-finds-suspicious-activity-on-us-network-that-may-impact-social-security-numbers-other-data/
2. ¶íÂÞ˹¶¯Îï²úÆ·ÈÏ֤ϵͳÔâÍøÂç¹¥»÷£¬Ö¹©¸øÁ´ÖжÏ
6ÔÂ20ÈÕ£¬¶íÂÞ˹¶¯Îï²úÆ·Êý×ÖÈÏ֤ϵͳMercuryƽ̨±¾ÖܳõÔâÍøÂç¹¥»÷̱»¾£¬ÕâÊǽñÄêµÚÈý´ÎͬÀàÊÂÎñÇÒ×îΪÑϳÁ¡£ÏµÍ³Ì±»¾ÆÈʹ³ö²úÉ̺͹©¸øÉ̳ÁÐÂÆôÓÃÖ½ÖÊÊÞÒ½Ö¤Ê飬µ«ÒòÎÞÊýÁãÊÛÉÌÒÀÀµ×¨Êôµç×ÓÎĵµÖÎÀíϵͳ£¬ÎÞ·¨½Ó¹ÜÖ½ÖÊÆ¾Ö¤£¬µ¼ÖÂÎïÁ÷»ìÂÒ£¬¶à¼ÒµØÓò·ÖÏúÖÐÐĻؾø½Ó¹Ü»õÎ´óÐÍÁãÊÛÉÌLenta¡¢Yandex LavkaºÍMiratorg¾ùÔâ·ê¹©¸øÁ´Öжϡ£Æ¾¾Ý¶íÂÞ˹˾·¨£¬Éæ¼°ÈâÀà¡¢ÈéÖÆÆ·µÈ¶¯Îï²úÆ·µÄÆóÒµ±ØÐëÔÚMercuryϵͳע²á²¢Ç©·¢µç×ÓÊÞÒ½Îļþ£¬¶ÌȱÈÏÖ¤¼Ó¹¤³§²»µÃ½Ó¹ÜÔÁÏÄÌ¡£ÈéҵͬÃËлáÖ¸³ö²¿ÃÅÁãÊÛÉ̻ؾø½Ó¹ÜÎÞµç×ÓÎļþµÄ²úÆ·£¬ÇÒ¼à¹Ü»ú¹¹Ö¸ÒýÍÌÍÂÒý·¢¹©¸øÉÌ»ìÂÒ¡£Õâ´Î¹ÊÕÏ»¹ÖжÏÁËÓëÆäËûµÐÔÖÊý×Ôì½Ì¨µÄÊý¾Ý»¥»»£¬´ó¹æÄ£³ö²úÆóÒµÊÜÓ°ÏìÓÈΪÑϳÁ£¬ÐÐÒµ´ú±í³ÆÏÖÓÐÓ¦¼±Ô¤°¸ÎÞ·¨Ó¦¶Ô³Ö¾ÃÖжϡ£ÊÞÒ½¼à¹Ü²¿ÃÅÔ¤¼Æ½¨¸´¹¤×÷½«³ÖÐøÖÁ±¾ÖÜÄ©£¬Ä¿Ç°ÉÐÎÞ×éÖ¯Ðû³Æ¶ÔÕâ´Î¹¥»÷ÕÆ¹Ü¡£
https://therecord.media/russia-dairy-supply-disrupted-cyberattack
3. ·¿µØ²ú¹«Ë¾Ð¹Â¶ÁËÔ̺¬17ÍòÌõÃ÷ÎÄÓ×ÎÒÉí·ÝÐÅÏ¢µÄÊý¾Ý¿â
6ÔÂ20ÈÕ£¬ÍøÂ簲ȫ×êÑÐÔ±Jeremiah FowlerÎÞÒâ·¢ÏÖÁËÒ»¸öδ¼ÓÃÜÇÒÎÞÃÜÂë±£»¤µÄÊý¾Ý¿â£¬¸ÃÊý¾Ý¿â¿ÉÄÜÊôÓÚÒ»¼Ò·¿µØ²úÖÎÀíºÍͶ×ʹ«Ë¾¡£¾Ý´§Ä¦£¬Êý¾Ý¿âËùÊô¹«Ë¾ÎªÎ»ÓÚ¼ÓÀû¸£ÄáÑÇÖÝ¡¢×¨ÃÅ´¦ÖÃÃÀ¹ú¸÷µØ·¿µØ²úÒµÎñµÄIncome Property Investments£¬µ«FowlerÎÞ·¨ÅжÏÎļþÊÇÓɸù«Ë¾»¹ÊǵÚÈý·½ÖÎÀí¡£¸ÃÊý¾Ý¿â¹æÄ£Öش󣬸ߴï116.24GB£¬Ô̺¬Ô¼170,000±Ê¼Í¼£¬ÇÒÈκÎÈ˶¼Äܹ»ÀûÓá£Â¶³öµÄÊý¾ÝÖÖÀà·±¶à£¬º¸ÇÓ×ÎÒÉí·ÝÐÅÏ¢£¨PII£©ºÍÄÚ²¿Îļþ¡£ÆäÖУ¬Ó×ÎÒÉí·ÝÐÅÏ¢Ô̺¬Ãû×Ö¡¢µ®ÉúÈÕÆÚ¡¢Éç»á°²È«ºÅÂë¡¢ÎïÀíµØÖ·¡¢µç×ÓÓʼþµØÖ·µÈ£»Óë¾ÍÒµÓйصÄÎļþÈçß³Ô𡢿ª³ý»ò´ÇÖ°¼Í¼ҲÔ̺¬ÔÚÄÚ£»ÄÚ²¿ÎļþÔòÉæ¼°ÖÎÀí¡¢°²È«¡¢ÊÂÎñ»ã±¨¡¢¾¯·½»ã±¨¡¢ÊØ»¤¡¢±¨ÏúµÈ¶à¸ö·½Ãæ¡£FowlerÔÚÊý¾ÝÑù±¾Öз¢ÏÖÁ˾ßÌå¼Í¼Æû³µÂõêÔ±¹¤PIIµÄµç×Ó±í¸ñ£¬ÇÒÕâЩÐÅϢȫÊýÒÔ´¿Îı¾´ó¾Ö³öÏÖ£¬Î´½øÐмÓÃÜ´¦Öá£ÔÚ·¢ÏÖ´ËÎÊÌâºó£¬ÓйØÈËÔ±ÏòIncome Property Investments·¢ËÍÁËÕÆ¹ÜÈεÄÅû¶֪ͨ£¬µ±Ìì¸ÃÊý¾Ý¿â¾Í±»Ï޶ȽӼû£¬ÒÔÔ¤·À½øÒ»²½µÄÐÅϢй¶·çÏÕ¡£
https://cybernews.com/security/massive-170k-database-exposed/
4. Âõ¿Â×Ò½ÁƱ£½¡ÔâINCÀÕË÷¹¥»÷ÖÂ74.3Íò»¼ÕßÊý¾Ýй¶
6ÔÂ23ÈÕ£¬Âõ¿Â×Ò½ÁƱ£½¡¹«Ë¾ÖÒ¸æ743,000Ãû»¼Õߣ¬ÆäÒ½ÁÆÏµÍ³Òò2024Äê7ÔÂÀÕË÷Èí¼þÍÅ»ïµÄ¹¥»÷¶øÔâ·êÊý¾Ýй¶¡£¸Ã¹¥»÷ÓÚ2024Äê8ÔÂ5ÈÕ±»·¢ÏÖ£¬µ«È·¶¨ÊÜÓ°ÏìÈËÔ±µÄ·¨Ò½µ÷²éÖ±ÖÁ2025Äê5ÔÂ5ÈÕ²ÅʵÏÖ£¬²¢ÓÚÉÏÖÜÎåÆðÍ·°ä²¼Í¨Öª¡£2024Äê8Ô³õ£¬¸ÃÒ½ÁÆ»ú¹¹Ôâ·êITºÍµç»°ÏµÍ³Öжϣ¬¾µ÷²é·¢ÏÖ»¼ÕßÊý¾Ý¿âÊÜÓ°Ï죬»¼ÕßǰÍùҽԺʱ±»ÒªÇóЯ´øÔ¤Ô¼ºÍÓÃÒ©ÐÅÏ¢¡£Ö»¹ÜÂõ¿Â×δ¾ßÌå×¢Ã÷¹¥»÷ÕßÉí·Ý£¬µ«ÓÐÔ±¹¤ÔÚÍøÉϰ䲼ÁËINCµÄÀÕË÷ÐÅ£¬ÕâЩÀÕË÷ÐÅ»á×Ô¶¯ÔÚÒ½Ôº´òÓ¡»úÉÏ´òÓ¡¡£ÔÚ·¢Ë͸øÊÜÓ°ÏìÓ×ÎÒµÄ֪ͨÖУ¬Âõ¿Â×ÈÏ¿ÉÊÂÎñÉæ¼°ÀÕË÷Èí¼þ¹¥»÷£¬µ«ÈÔδÌá¼°INC¡£µ÷²éÈ·¶¨£¬¹¥»÷ÕßÔÚ2024Äê7ÔÂ17ÈÕÖÁ8ÔÂ3ÈÕÆÚ¼ä¿É½Ó¼ûMcLarenºÍKarmanosµÄϵͳ¡£Âõ¿Â×Ìá½»¸øÃÀ¹úµ±¾ÖµÄÊý¾Ýй¶֪ͨÑù±¾ÏÔʾ£¬Ð¹Â¶µÄÈ«ÃûÐÅÏ¢Òѱ»É¾³ý£¬µ«ÆäËûÀàÐÍÊý¾Ý±»»ñÈ¡£¬×ÜÌåй¶ÁìÓòÉв»Ã÷È·¡£ÕâÊÇÂõ¿Â×½üÄêÀ´Ôâ·êµÄµÚ¶þÆð³Á´óÊý¾Ýй¶ÊÂÎñ£¬ÉÏÒ»´Î²úÉúÔÚ2023Äê7Ô£¬ÓÉALPHV/BlackCatÀÕË÷Èí¼þ×éÖ¯ÌáÒé£¬ÍøÂç·¸×ï·Ö×ÓÇÔÈ¡ÁË220ÍòÈ˵ÄÃô¸ÐÒ½ÁÆÊý¾Ý¡¢Ó×ÎÒÉí·ÝÐÅÏ¢ºÍÉç»á°²È«ºÅÂ룬²¢ÓÚ2023Äê10Ô½«Êý¾ÝÑù±¾ÔÚÍøÉÏй¶£¬ÆÈʹÂõ¿Â×Ö§¸¶Î´¹«¿ªµÄÊê½ð½ð¶î¡£
https://www.bleepingcomputer.com/news/security/mclaren-health-care-says-data-breach-impacts-743-000-patients/
5. ÃÀÍøÂ簲ȫ¹«Ë¾³ÆCyber FattahÐ¹Â¶É³ÌØ»î¶¯»áÃô¸ÐÊý¾Ý
6ÔÂ23ÈÕ£¬¾ÝÃÀ¹úÍøÂ簲ȫ¹«Ë¾Resecurity³Æ£¬ÓëCyber Fattah»î¶¯ÓйصÄÍþвÐÐΪÕßй¶ÁËÊýǧÌõÓëÍù½ìÉ³ÌØ»î¶¯»áÓйصļͼ¡£ÕâЩ±»µÁÊý¾ÝÒÔSQLת´¢´ó¾Öй¶£¬¹¥»÷Õßͨ¹ýδ¾ÊÚȨ½Ó¼ûphpMyAdminÇÔÈ¡ÁË´æ´¢µÄ¼Í¼¡£Resecurity½«Õâ´ÎÊÂÎñ½â¶ÁΪÒÁÀʼ°Æä´úÀíÈË·¢Õ¹µÄÒ»Ïî¸ü¿í·ºÐÅÏ¢Ðж¯µÄÒ»²¿ÃÅ£¬Ö¼ÔÚÔì×÷²»°²È«¸Ð²¢·ÛË鵨ÓòºÍƽ¡£¼øÓÚÒÔÉ«ÁÐÓëÒÁÀÊÑÏÖØ¹ØÏµ¼Ó¾ç£¬ÍþвÐÐΪÕßÊÔIJÀûÓÃÉ³ÌØ°¢À²®Íõ¹úºÍÃÀ¹úÔÚµØÓò¹ØÏµºÍ°²È«ÖеijÁÒª×÷Óã¬ÒÁÀ¿Ë¾³ÄÚһЩÓëÕæÖ÷µ³¡¢¹þÂí˹ºÍÇ×ÒÁÀʵÄ×éÖ¯Ò²ÀûÓøÃÊÂÎñ½øÐÐÓÐÕë¶ÔÐÔµÄÐû´«»î¶¯£¬½øÒ»²½·Å´óÁËÊÂÎñÓ°Ïì¡£ÕâЩÊý¾Ý¿ÉÄÜÀ´×ÔÓë2024ÄêÉ³ÌØ»î¶¯»á¹Ù·½ÍøÕ¾ÓйصÄÊý¾Ý¿â£¬·Ã¿Í¡¢»î´øÍ·¼°ÆäÍŶӿÉÔÚ¸ÃÍøÕ¾×¢²á²¢·ÖÏíÓ×ÎÒÐÅÏ¢¡£Èç´Ë¹æÄ£µÄÐ¹Â¶Éæ¼°´óÁ¿Ãô¸ÐÊý¾Ý£¬Ô̺¬Ó×ÎÒÉí·ÝÐÅÏ¢¡¢¹ú¼ÊÒøÐÐÕ˺ÅÒÔ¼°Ìå¼ìÖ¤Ã÷µÈ¡£´óÐÍÌåÓýÈüÊÂÔâºÚ¿Í¹¥»÷Òâ˼³Á´ó£¬¿ÉÄܶÔÍøÂ簲ȫ¡¢ÌåÓý³ÏÐÅÒÔ¼°È«Çò¹Û¶àµÈ¶à¸öÁìÓò²úÉú¿í·ºÓ°Ïì¡£
https://securityaffairs.com/179239/cyber-warfare-2/iran-linked-threat-actors-cyber-fattah-leak-visitors-and-athletes-data-from-saudi-games.html
6. APT28ºÚ¿ÍÀûÀûÓÃSignal¶ÔÎÚ¿ËÀ¼ÌáÒéеĶñÒâÈí¼þ¹¥»÷
6ÔÂ23ÈÕ£¬¶íÂÞ˹µ±¾ÖÖ§³ÖµÄAPT28Íþв×éÖ¯ÕýÀûÓÃSignal̸ÌìÀûÓù¥»÷ÎÚ¿ËÀ¼µ±¾ÖÖ¸±ê£¬Ê¹ÓÃÁËÁ½¸ö´Ëǰδ¼Í¼µÄ¶ñÒâÈí¼þ¼Ò×åBeardShellºÍSlimAgent¡£Õâ´Î¹¥»÷²¢·ÇSignalƽ̨×ÔÉíµÄ°²È«ÎÊÌ⣬¶øÊÇÍþвÐÐΪÕßÀûÓÃ¸ÃÆ½Ì¨½øÐÐÍøÂç´¹µö¡£2024Äê3Ô£¬ÎÚ¿ËÀ¼ÍÆËã»úºÍÓ¦¼±ÏìÓ¦²¿ÃÅ£¨CERT-UA£©³õ´Î·¢ÏÖÕâЩ¹¥»÷£¬µ«ÆäʱδÅû¶ϰȾý½éϸ½Ú¡£2025Äê5Ô£¬ÒòÓÐÈËδ¾ÊÚȨ½Ó¼ûgov.uaµç×ÓÓʼþÕÊ»§Òý·¢Ðµ÷²é£¬CERT-UA·¢ÏÖͨ¹ýSignal·¢Ë͵ÄÐÂÎű»ÓÃÓÚ´«µÝ¶ñÒâÎĵµ£¬¸ÃÎĵ·ûÓúê¼ÓÔØCovenantÄÚ´æ×¤ÁôºóÃÅ¡£Covenant×÷Ϊ¶ñÒâÈí¼þ¼ÓÔØÆ÷£¬ÏÂÔØDLLºÍÔ̺¬shellcodeµÄWAVÎļþÒÔ¼ÓÔØBeardShell¡£BeardShellÖØÒªÖ°ÄÜÊÇÏÂÔØ²¢Ö´ÐÐPowerShell¾ç±¾£¬Á˾Öй¶µ½C2·þÎñÆ÷²¢Í¨¹ýIcedrive APIͨѶ¡£´Ë±í£¬ÔÚ2024ÄêµÄ¹¥»÷ÖУ¬CERT-UA»¹·¢ÏÖÁËÃûΪSlimAgentµÄÆÁÄ»½ØÍ¼×¥È¡¹¤¾ß£¬¸Ã¹¤¾ßʹÓÃһϵÁÐWindows APIº¯Êý²¶»ñÆÁÄ»½ØÍ¼£¬²¢Ê¹ÓÃAESºÍRSA¼ÓÃÜ´æ´¢ÔÚ±¾µØ¡£CERT-UA½«´Ë»î¶¯¹é×ïÓÚAPT28£¬²¢½¨ÒéDZÔÚÖ¸±ê¼à¿ØÓйØÍøÂç½»»¥¡£
https://www.bleepingcomputer.com/news/security/apt28-hackers-use-signal-chats-to-launch-new-malware-attacks-on-ukraine/


¾©¹«Íø°²±¸11010802024551ºÅ