ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵꣻ£»£»£»£»£»Î¢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò

Ðû²¼Ê±¼ä 2021-07-05

1.ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵê


1.jpg


ÈðµäÁ¬Ëø³¬ÊÐCoop³ÆÆäÔâµ½ÁËKaseya¹©Ó¦Á´¹¥»÷£¬ £¬£¬£¬Êý°Ù¼ÒÃÅµê¹Ø±Õ¡£¡£¡£¡£¡£¡£CoopµÄ½²»°ÈËÌåÏÖÆäÓÚÉÏÖÜÎåÍíÉÏ6µã30·Ö×óÓÒ·¢Ã÷ÓÐÉÙÊýÃŵ귺ÆðÎÊÌ⣬ £¬£¬£¬µ«Ò»Ò¹Ö®ºóÆä´ó²¿·ÖÃŵ궼±»ÆÈ¹Ø±Õ£¬ £¬£¬£¬°üÀ¨ÊÕÒøÌ¨ºÍ×ÔÖú½áÕËÔÚÄÚµÄÕû¸öÖ§¸¶ÏµÍ³¶¼ÖÐÖ¹ÁË¡£¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬CoopûÓÐʹÓÃKesayaÈí¼þ£¬ £¬£¬£¬ÓÉÓÚËûÃǵÄÒ»¸öÈí¼þÌṩÉÌʹÓÃÁ˸ÃÈí¼þ¶øÊܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£Çå¾²¹«Ë¾HuntressLabs³Æ£¬ £¬£¬£¬´Ë´Î¹¥»÷»î¶¯µÄÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬ £¬£¬£¬ÖÁÉÙÓÐ200¼Ò×éÖ¯Êܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/119663/cyber-crime/coop-supermarket-kaseya-ransomware-attack.html


2.΢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò


2.jpg


΢Èíǰ³õ¼¶¹¤³ÌʦVolodymyr KvashukʹÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000ÍòÃÀÔª¡£¡£¡£¡£¡£¡£ËûµÄÍŶӵÄÖ÷ҪĿµÄÊÇÄ£ÄâMicrosoftÔÚÏß¹ºÖÃÀ´·¢Ã÷¸¶¿îÎÊÌâ¡£¡£¡£¡£¡£¡£ÕâЩÐéÄâÕÊ»§¿ÉÒÔ±»ÏµÍ³Ê¶±ð£¬ £¬£¬£¬ÔÚÍøÕ¾¹ºÖù¤¾ßʱ²»»áÊÕµ½ÈκβúÆ·£¬ £¬£¬£¬¿ÉÊǵ±¹ºÖÃXboxÀñÎ│£¬ £¬£¬£¬½«»ñµÃÒ»¸öÍêÈ«ÓÐÓõÄ25λ´úÂë¡£¡£¡£¡£¡£¡£Ëû²¢Î´½«¸ÃÎó²î֪ͨÆäÉÏ˾£¬ £¬£¬£¬¶øÊÇʹÓÃÆä׬Ǯ¡£¡£¡£¡£¡£¡£Ö®ºó£¬ £¬£¬£¬Ëû×ܹ²Ê¹ÓøÃÎó²îÇÔÈ¡²¢³öÊÛÁËÁè¼Ý152000ÕÅXboxÀñÎ│£¬ £¬£¬£¬¼ÛÖµ1010ÍòÃÀÔª¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/microsoft-engineer-stole-10m-by-selling-xbox-gift-cards-533416.shtml


3.Ñо¿Ö°Ô±Åû¶¶à¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤


3.jpg


Dr. WebÑо¿Ö°Ô±Åû¶ÁË9¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤¡£¡£¡£¡£¡£¡£ÕâЩӦÓÃαװ³ÉÎÞº¦µÄÕÕÆ¬±à¼­¡¢ÓÅ»¯¡¢½¡ÉíºÍÕ¼ÐdzÌÐò£¬ £¬£¬£¬À´ÓÕʹÊܺ¦ÕߵǼFacebookÕË»§£¬ £¬£¬£¬²¢Ê¹ÓÃÒ»¶ÎJavaScript´úÂëÐ®ÖÆÊäÈëµÄƾ֤¡£¡£¡£¡£¡£¡£ËäÈ»´Ë´Î»î¶¯ËƺõÊÇרÃÅÕë¶ÔFacebookÕÊ»§£¬ £¬£¬£¬µ«Dr.WebÖÒÑԳƣ¬ £¬£¬£¬ÕâÖÖ¹¥»÷Ò²¿ÉÒÔ¼ÓÔØÈÎºÎÆäËüÕýµ±ÍøÂçÆ½Ì¨µÄµÇÂ¼Ò³Ãæ£¬ £¬£¬£¬À´ÇÔÈ¡ÆäËüЧÀ͵ĵǼÃûºÍÃÜÂë¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/07/android-apps-with-58-million-installs.html


4.ÃÀ¹ú°ü¹Ü¹«Ë¾AJG³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬¿Í»§ÐÅϢй¶


4.jpg


ÃÀ¹úArthur J. Gallagher (AJG) ³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬¿Í»§ÐÅϢй¶¡£¡£¡£¡£¡£¡£AJGÊÇÃÀ¹úµÄÈ«Çò°ü¹Ü¾­¼ÍºÍΣº¦ÖÎÀí¹«Ë¾£¬ £¬£¬£¬×÷ΪȫÇò×î´óµÄ°ü¹Ü¾­¼ÍÉÌÖ®Ò»£¬ £¬£¬£¬ÓªÒµÆÕ±é49¸ö¹ú¼Ò/µØÇø¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ2020Äê6ÔÂ3ÈÕÖÁ2020Äê9ÔÂ26ÈÕʱ´ú£¬ £¬£¬£¬ÆäÔÚ2020Äê9ÔÂ28ÈÕÅû¶¸ÃÊÂÎñ²¢³ÆÃ»ÓÐÊý¾Ýй¶¡£¡£¡£¡£¡£¡£µ«ÔÚËæºóµÄÊӲ췢Ã÷£¬ £¬£¬£¬7376È˵ÄÃô¸ÐÐÅϢй¶£¬ £¬£¬£¬°üÀ¨Éç»áÇå¾²ºÅÂë»ò˰ºÅ¡¢¼ÝÕÕ¡¢»¤ÕÕ¡¢³öÉúÈÕÆÚ¡¢Óû§ÃûºÍÃÜÂë¡¢Ô±¹¤Ê¶ÓÖÃû¡¢²ÆÎñÕË»§»òÐÅÓÿ¨ÐÅÏ¢¡¢µç×ÓÊðÃû¡¢Ò½ÁÆÐÅÏ¢¡¢°ü¹ÜÐÅÏ¢ÒÔ¼°ÉúÎïʶ±ðÐÅÏ¢µÈ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-insurance-giant-ajg-reports-data-breach-after-ransomware-attack/


5.Unit 42Ðû²¼2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ


5.jpg


Unit 42Ðû²¼ÁË2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬ £¬£¬£¬2Ôµ½4Ô¹²·ÖÅÉÁË4969¸öеÄCVE±àºÅ£¬ £¬£¬£¬ÆäÖÐÑÏÖØµÄÎó²îΪ598¸ö£¬ £¬£¬£¬Õ¼±È15.5%£¬ £¬£¬£¬POC¿ÉÓÃÐÔΪ9.4%£»£»£»£»£»£»¸ß¼¶µÄΪ1659¸ö£¬ £¬£¬£¬Õ¼±È43.1%£¬ £¬£¬£¬POC¿ÉÓÃÐÔΪ8.1%£»£»£»£»£»£»ÖеÈΪ1592¸ö£¬ £¬£¬£¬Õ¼±È41.4%£¬ £¬£¬£¬POC¿ÉÓÃÐÔΪ7.0%¡£¡£¡£¡£¡£¡£ÔÚ¹¥»÷ÀàÐÍ·½Ã棬 £¬£¬£¬´úÂëÖ´Ðй¥»÷Õ¼±È×î´ó£¬ £¬£¬£¬Îª45.6%£»£»£»£»£»£»¶ø¹¥»÷µÄÆðÔ´µØ·½Ã棬 £¬£¬£¬ÆäÖÐ×î¶àµÄÀ´×ÔÓÚÃÀ¹ú£¬ £¬£¬£¬Æä´ÎÊǶíÂÞ˹ºÍÖйú¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/network-attack-trends-february-april-2021/


6.WatchGuardÐû²¼2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ


6.jpg


WatchGuardÐû²¼ÁË2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬ £¬£¬£¬ÔÚ2020ÄêQ1¼ì²âµ½µÄÍþвÖÐÓÐ74%ÊÇÁãÈÕÎó²î¶ñÒâÈí¼þ£¬ £¬£¬£¬µÖ´ïÁËÀúʷиߡ£¡£¡£¡£¡£¡£5ÖÖеĶñÒâÈí¼þUrsu¡¢Trojan.IFrame¡¢XML.JSLoader¡¢ZmutzyºÍZum.Androm½øÈëÁËÊ®´ó¶ñÒâÈí¼þµÄÅÅÐаñ¡£¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬´Ó3ÔÂ24ÈÕ(µÚÒ»´Î·¢Ã÷IPS¹¥»÷)µ½3ÔÂ⣬ £¬£¬£¬Õë¶ÔProxyLogin Exchange ServerÎó²îµÄ¹¥»÷ÔöÌíÁË1600%¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.watchguard.com/wgrd-resource-center/security-report-q1-2021