΢ÈíµÄAzure BlobÉèÖùýʧÒÑй¶2.4 TBÃô¸ÐÐÅÏ¢

Ðû²¼Ê±¼ä 2022-10-21
1¡¢Î¢ÈíµÄAzure BlobÉèÖùýʧÒÑй¶2.4 TBÃô¸ÐÐÅÏ¢

      

¾ÝýÌå10ÔÂ19ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬SOCRadar¼ì²âµ½ÓÉ΢Èíά»¤µÄAzure Blob´æ´¢ÉèÖùýʧй¶¿Í»§ÐÅÏ¢ ¡£¡£¡£¡£¡£¡£SOCRadarÉù³Æ·¢Ã÷΢ÈíµÄЧÀÍÆ÷й¶ÁË2.4TBµÄÊý¾Ý£¬£¬£¬£¬£¬£¬°üÀ¨Áè¼Ý335000·âµç×ÓÓʼþ¡¢133000¸öÏîÄ¿ºÍ548000¸ö̻¶µÄÓû§£¬£¬£¬£¬£¬£¬ÉÐÓÐSOWÎĵµ¡¢²úÆ·±¨¼Û¡¢POCºÍPOEÎļþµÈ ¡£¡£¡£¡£¡£¡£Ð¹Â¶Êý¾ÝÓë111¸ö¹ú¼ÒµÄ65000¶à¸ö×éÖ¯Óйأ¬£¬£¬£¬£¬£¬´æ´¢ÁË2017ÄêÖÁ2022Äê8ÔµÄÐÅÏ¢ ¡£¡£¡£¡£¡£¡£Î¢ÈíÔÚ9ÔÂ24ÈÕÊÕµ½Ð¹Â¶Í¨Öªºó±£»£» £»£»£»¤Á˸ÃЧÀÍÆ÷£¬£¬£¬£¬£¬£¬²¢Ôö²¹ËüÒÔΪSOCRadarÇ¿µ÷Á˸ÃÊÂÎñµÄ¹æÄ£ºÍÊý×Ö ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/microsoft-data-breach-exposes-customers-contact-info-emails/


2¡¢Vice SocietyÉù³ÆÒÑÇÔÈ¡·¨¹úijҽԺµÄ150 GBÎļþ

      

¾Ý10ÔÂ19ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬·¨¹úÒ»¼Ò˽Á¢¸¾²úÒ½ÔºH?pital Pierre Rouqu¨¨s¨CLes BluetsÔâµ½¹¥»÷ ¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÓÚ10ÔÂ9ÈÕ£¬£¬£¬£¬£¬£¬¸ÃÒ½ÔºÔÚÆäÍøÕ¾Ö÷Ò³ÉÏÅû¶Á˴˴ι¥»÷£¬£¬£¬£¬£¬£¬²¢ÌåÏÖÓʼþϵͳÎÞ·¨Õý³£ÊÂÇé ¡£¡£¡£¡£¡£¡£Vice SocietyÉù³ÆËûÃÇÒѹ¥»÷¸ÃÒ½Ôº£¬£¬£¬£¬£¬£¬²¢¼ÓÃÜÁËÒ½ÔºµÄËùÓÐÎļþºÍ±¸·Ý£¬£¬£¬£¬£¬£¬Ö»¹ÜÒ½ÔºÌåÏÖ´ó´ó¶¼Ò½ÁƼͼÈÔÈ»¿ÉÒÔ»á¼û ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬ËûÃÇ»¹´ÓÒ½ÔºµÄϵͳÖÐÏÂÔØÁËÁè¼Ý150 GBµÄÎļþ ¡£¡£¡£¡£¡£¡£


https://www.databreaches.net/french-maternity-hospital-hit-by-ransomware-attack-by-vice-society-attackers-claim-to-have-150-gb-of-files/ 


3¡¢Orca SecurityÅû¶Azure SFXÎó²îFabriXssµÄϸ½Ú

      

10ÔÂ19ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬Orca Security·¢Ã÷ÁËService Fabric Explorer(SFX)ÖеÄÎó²îFabriXss(CVE-2022-35829) ¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿É±»ÓÃÀ´»ñµÃÍêÕûµÄÖÎÀíԱȨÏÞ²¢Ð®ÖÆAzure Service Fabric¼¯Èº£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±Í¸Â¶£¬£¬£¬£¬£¬£¬DeployerÀàÐ͵ÄÓû§ÈôÊÇÓµÓÐͨ¹ý¿ØÖÆÃæ°å¡°½¨ÉèÐÂÓ¦ÓóÌÐò¡±µÄ¼òµ¥È¨ÏÞ£¬£¬£¬£¬£¬£¬¾Í¿ÉÒÔʹÓÃÕâ¸öȨÏÞ½¨Éè¶ñÒâÓ¦ÓóÌÐòÃû³Æ£¬£¬£¬£¬£¬£¬²¢ÀÄÓÃÖÎÀíԱȨÏÞÀ´Ö´ÐÐÖÖÖÖŲÓúͲÙ×÷ ¡£¡£¡£¡£¡£¡£Orca Security»¹¹ûÕæÁËFabriXssµÄPoC¼°ÆäËüÊÖÒÕϸ½Ú£¬£¬£¬£¬£¬£¬Î¢ÈíÔÚ10ÔÂ11ÈÕµÄÖܶþ²¹¶¡ÖÐÐÞ¸´Á˸ÃÎó²î ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/microsoft-azure-sfx-bug-let-hackers-hijack-service-fabric-clusters/


4¡¢Cybernews½üÆÚ·¢Ã÷Ô¼200Íò¸ö¹ûÕæµÄ.gitÎļþ¼Ð

      

CybernewsÔÚ10ÔÂ20ÈÕ³ÆÆä·¢Ã÷ÁË´ó×Ú¹ûÕæµÄ.gitÎļþ¼Ð ¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÔÚ×î³£¼ûµÄWeb¶Ë¿Ú80ºÍ443Éϼì²âµ½1931148¸öIPµØµã£¬£¬£¬£¬£¬£¬ÕâЩIPµØµã¾ßÓпɹ©¹«ÖÚ»á¼ûµÄ.gitÎļþ¼Ð½á¹¹µÄʵʱЧÀÍÆ÷ ¡£¡£¡£¡£¡£¡£ÆäÖУ¬£¬£¬£¬£¬£¬Áè¼Ý31%µÄ¹ûÕæ.gitÎļþ¼ÐλÓÚÃÀ¹ú£¬£¬£¬£¬£¬£¬Æä´ÎÊÇÖйú(8%)ºÍµÂ¹ú(6.5%) ¡£¡£¡£¡£¡£¡£ÔÚÉîÈëÍÚ¾òʱ£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ԼĪ6.3%µÄ.gitÉèÖÃÎļþµÄ°²ÅÅÆ¾Ö¤¾ÍÔÚÉèÖÃÎļþÖÐ ¡£¡£¡£¡£¡£¡£


https://cybernews.com/security/millions-git-folders-exposed/


5¡¢°ÍÎ÷Ö´·¨»ú¹¹Ðû²¼ÒѾв¶ÓëLapsus$ÓйصÄÏÓÒÉÈË

      

10ÔÂ19ÈÕ£¬£¬£¬£¬£¬£¬°ÍÎ÷Áª°î¾¯Ô±Ðû²¼°ÍÒÁÑÇÖݵķÑÀ­µÂÉ£ËþÄɾв¶ÁËÒ»ÃûÏÓÒÉÈË£¬£¬£¬£¬£¬£¬¾ÝÐÅËûÊÇLapsus$ÍÅ»ïµÄ³ÉÔ± ¡£¡£¡£¡£¡£¡£´Ë´Î»î¶¯ÊÇ2022Äê8ÔÂÆô¶¯µÄÖ´·¨Ðж¯Operation Dark CloudµÄÒ»²¿·Ö£¬£¬£¬£¬£¬£¬¸ÃÐж¯Ö¼ÔÚÍøÂç×ÔÈ¥Äêµ×ÒÔÀ´Õë¶Ô°ÍÎ÷Õþ¸®»ú¹¹µÄ¶à´ÎÍøÂç¹¥»÷±³ºóµÄ·¸·¨×éÖ¯µÄ»î¶¯ÐÅÏ¢ ¡£¡£¡£¡£¡£¡£¾¯·½ÊÓ²ìÈ·¶¨µÄ×ïÐÐÊÇ·¸·¨×éÖ¯·¸·¨¡¢ÈëÇÖÅÌËã»ú×°±¸¡¢ÖÐÖ¹»òÈÅÂҵ籨¡¢ÎÞÏߵ籨»òµç»°Ð§ÀÍ£¬£¬£¬£¬£¬£¬×èÖ¹»ò×è°­»Ö¸´ ¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2022/10/brazilian-police-arrest-suspected.html  


6¡¢Check PointÐû²¼¹ØÓÚBlack BastaµÄÆÊÎö±¨¸æ

      

10ÔÂ20ÈÕ£¬£¬£¬£¬£¬£¬Check PointÐû²¼Á˹ØÓÚBlack BastaµÄÆÊÎö±¨¸æ ¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬×Ô2022Äê5ÔÂÒÔÀ´£¬£¬£¬£¬£¬£¬ÒÑÓÐÁè¼Ý89ÆðBlack Basta¹¥»÷»î¶¯£¬£¬£¬£¬£¬£¬¸ÃÍÅ»ïÖ÷ÒªÕë¶ÔÃÀ¹úºÍµÂ¹ú£¬£¬£¬£¬£¬£¬ÆäÍøÕ¾ÉÏÁгöµÄ49%µÄ±»¹¥»÷Ä¿µÄÀ´×ÔÃÀ¹ú£¬£¬£¬£¬£¬£¬ÔÚijЩÇéÐÎÏÂÊê½ðÒªÇóÁè¼Ý100ÍòÃÀÔª ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬±¨¸æ»¹ÐÎòÁËBlack Basta»î¶¯µÄÄÚ²¿ÔË×÷£¬£¬£¬£¬£¬£¬²¢ÌØÊâ¹Ø×¢·Ö·¢½×¶Î£»£» £»£»£»Ú¹ÊÍÁ˸ÃÍÅ»ïÕë¶ÔÄ£ÄâÆ÷ºÍɳÏä×Ô¶¯»¯¼ì²âºÍÆÊÎöµÄ´ó×ÚÈÆ¹ýºÍ·´ÆÊÎöÊÖÒÕ£»£» £»£»£»¸ÅÊöÁËBlack BastaÔõÑù¼ÓÃÜϵͳÖеÄÎļþÒÔ¼°ÔõÑùºáÏòÒÆ¶¯ ¡£¡£¡£¡£¡£¡£


https://research.checkpoint.com/2022/black-basta-and-the-unnoticed-delivery/