AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶
Ðû²¼Ê±¼ä 2023-03-101¡¢AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶
¾Ý3ÔÂ9ÈÕ±¨µÀ£¬£¬£¬£¬AT&T֪ͨԼ900Íò¿Í»§ÆäÐÅÏ¢ÒѾй¶£¬£¬£¬£¬ÓÉÓÚËüµÄÒ»¼ÒÓªÏú¹©Ó¦ÉÌÔÚ1Ô·ÝÔâµ½Á˺ڿ͹¥»÷¡£¡£¡£¡£¡£¡£Ð¹Â¶Êý¾Ý°üÀ¨¿Í»§ÐÕÃû¡¢ÎÞÏßÕʺš¢ÎÞÏߵ绰ºÅÂëºÍÓʼþµØµãµÈ£¬£¬£¬£¬ÒÔ¼°²¿·Ö¿Í»§µÄÎÞÏß·ÑÂÊÍýÏë¡¢ÓâÆÚ½ð¶îºÍ¸¶¿î½ð¶îµÈ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ôö²¹Ëµ£¬£¬£¬£¬Æäϵͳ²¢Î´ÊÜÓ°Ï죬£¬£¬£¬Ð¹Â¶Êý¾ÝÖ÷ÒªÓë×°±¸Éý¼¶×ʸñÓйء£¡£¡£¡£¡£¡£AT&T¾Ü¾øÍ¸Â¶¹©Ó¦É̵ÄÉí·Ý£¬£¬£¬£¬µ«The RegisterÌåÏÖ£¬£¬£¬£¬µç×ÓÓʼþÓªÏú¹«Ë¾MailchimpÔÚ1Ô·ÝÔøÔâµ½¹¥»÷£¬£¬£¬£¬¹¥»÷Õß»ñµÃÁË100¶à¸ö¿Í»§ÕÊ»§µÄ»á¼ûȨÏÞ¡£¡£¡£¡£¡£¡£
https://www.theregister.com/2023/03/09/att_wireless_breach/
2¡¢Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£Ñ§Çø±»MedusaÀÕË÷100ÍòÃÀÔª
ýÌå3ÔÂ8Èճƣ¬£¬£¬£¬Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£(MPS)Ñ§Çø±»MedusaÍÅ»ïÀÕË÷100ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¸ÃÍŻォMPSÌí¼Óµ½ÆäTorÍøÕ¾ÉÏ£¬£¬£¬£¬²¢ÍþвҪÔÚ3ÔÂ17ÈÕ֮ǰÐû²¼´Ó¸ÃÑ§ÇøÇÔÈ¡µÄËùÓÐÊý¾Ý¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñÖ®ÒÔÊÇÒýÈËעĿ£¬£¬£¬£¬ÊÇÓÉÓÚ¹¥»÷ÕßÖÆ×÷ÁËÒ»¶Îʱ³¤Ô¼51·ÖÖÓµÄÊÓÆµ£¬£¬£¬£¬ÏÔʾ´ÓMPSÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£¡£¡£MPSÖÎÀí×ÅÔ¼100Ëù¹«Á¢ÖÐСѧ£¬£¬£¬£¬ËüÓÚ3ÔÂ1ÈÕÐû²¼Í¨¸æ£¬£¬£¬£¬Í¸Â¶Æä2ÔÂ21ÈÕÔâµ½¹¥»÷µ¼ÖÂϵͳÖÐÖ¹¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯»¹ÌåÏÖ£¬£¬£¬£¬Ëü²»ÍýÏ븶Êê½ð£¬£¬£¬£¬¶øÊÇÑ¡ÔñʹÓÃÄÚ²¿±¸·Ý»Ö¸´±»¼ÓÃܵÄÊý¾Ý¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/ransomware-gang-posts-video-of-data-stolen-from-minneapolis-schools/
3¡¢Ó¡¶ÈHDFC Bank×Ó¹«Ë¾Áè¼Ý7200ÍòÌõ¼Í¼±»Ðû²¼ÔÚ°µÍø
¾ÝýÌå3ÔÂ8ÈÕ±¨µÀ£¬£¬£¬£¬ºÚ¿ÍKernelwareÔÚ°µÍøBreached forumÉÏÐû²¼ÁËHDB Financial ServicesÔ¼7.5 GBµÄ¿Í»§Êý¾Ý¡£¡£¡£¡£¡£¡£HDB Financial ServicesÊÇÓ¡¶È×î´óµÄ˽ÈËÒøÐÐHDFC BankµÄ×Ó¹«Ë¾¡£¡£¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢°üÀ¨Áè¼Ý7200ÍòÌõ¼Í¼£¬£¬£¬£¬Éæ¼°2022Äê5ÔÂÖÁ2023Äê2ÔÂÉêÇë´û¿îµÄHDBÏûºÄÕß¡£¡£¡£¡£¡£¡£HDFC Bank·ñ¶¨ÁËÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬µ«HDB FinancialÒÑÈ·Èϲ¢ÔÚÊÓ²ì¸ÃÇå¾²ÊÂÎñ¡£¡£¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬£¬Kernelware¾ÍÊÇй¶ÁËAcerÔ¼160GBÊý¾ÝµÄºÚ¿Í¡£¡£¡£¡£¡£¡£
https://www.hackread.com/hackers-india-hdfc-bank-data-leak/
4¡¢VeeamÐÞ¸´Ó°ÏìÆäËùÓÐVBR°æ±¾µÄÎó²îCVE-2023-27532
3ÔÂ8ÈÕ±¨µÀ³Æ£¬£¬£¬£¬VeeamÐû²¼¸üУ¬£¬£¬£¬ÐÞ¸´ÆäBackup & Replication²úÆ·ÖеÄÎó²îCVE-2023-27532¡£¡£¡£¡£¡£¡£Î´¾Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÔÚ»ñÈ¡´æ´¢ÔÚVeeamVBRÉèÖÃÊý¾Ý¿âÖеļÓÃÜÆ¾Ö¤ºó£¬£¬£¬£¬Ê¹ÓÃËü»á¼û±¸·Ý»ù´¡¼Ü¹¹Ö÷»ú¡£¡£¡£¡£¡£¡£Æ¾Ö¤Veeamͨ¸æ£¬£¬£¬£¬¸ÃÎó²î»ù´¡Ôµ¹ÊÔÓÉÊÇVeeam.Backup.Service.exe£¨Ä¬ÈÏÇéÐÎÏÂÔÚTCP 9401ÉÏÔËÐУ©¿É±»Î´¾Éí·ÝÑéÖ¤µÄÓû§ÓÃÀ´ÇëÇó¼ÓÃÜÆ¾Ö¤¡£¡£¡£¡£¡£¡£Veeam»¹ÌṩÁËÔÝʱÐÞ¸´ÒªÁ죬£¬£¬£¬Ê¹Óñ¸·ÝЧÀÍÆ÷·À»ðǽ×èÖ¹Óë¶Ë¿ÚTCP 9401µÄÍⲿÅþÁ¬¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/veeam-fixes-bug-that-lets-hackers-breach-backup-infrastructure/
5¡¢FortinetÅû¶8220 GangʹÓÃScrubCryptµÄ¹¥»÷»î¶¯
FortinetÔÚ3ÔÂ8ÈÕÅû¶ÁË8220 Gang×î½üµÄ¼ÓÃÜÐ®ÖÆ¹¥»÷¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ2023Äê1ÔÂÖÁ2Ô£¬£¬£¬£¬¹¥»÷Á´Ê¼ÓÚÀÖ³ÉʹÓÃÒ×±»¹¥»÷µÄOracle WebLogic ServerÏÂÔØ°üÀ¨ScrubCryptµÄPowerShell¾ç±¾¡£¡£¡£¡£¡£¡£PowerShell¾ç±¾ÒѾÓɱàÂ룬£¬£¬£¬À´ÈƹýÇå¾²¼Æ»®µÄ¼ì²â¡£¡£¡£¡£¡£¡£ScrubCrypt¼ÓÃÜÆ÷ÔÚºÚ¿ÍÂÛ̳ÉÏÓÐÊÛ£¬£¬£¬£¬¿ÉʹÓÃÆæÒìµÄBAT´ò°üÒªÁì±£»£»£»£»£»¤Ó¦ÓóÌÐò¡£¡£¡£¡£¡£¡£»£»£»£»£»ùÓڻÖÐʹÓõļÓÃÜÇ®°üµØµãºÍMonero¿ó¹¤Ê¹ÓõÄЧÀÍÆ÷IPµØµã£¬£¬£¬£¬Ñо¿Ö°Ô±½«´Ë´Î»î¶¯¹éÒòÓÚ8220 Gang¡£¡£¡£¡£¡£¡£
https://www.fortinet.com/blog/threat-research/old-cyber-gang-uses-new-crypter-scrubcrypt
6¡¢KasperskyÐû²¼2022Äê¸ú×ÙÈí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ
3ÔÂ8ÈÕ£¬£¬£¬£¬KasperskyÐû²¼ÁË2022Äê¸ú×ÙÈí¼þ£¨Stalkerware£©Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£Êý¾ÝÏÔʾ£¬£¬£¬£¬2022ÄêÈ«ÇòÓÐ29312¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ï죬£¬£¬£¬Æ½¾ùÿÔÂÓÐ3333¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ïì¡£¡£¡£¡£¡£¡£¸ú×ÙÈí¼þÈÔÈ»ÊÇÒ»¸öÈ«ÇòÐÔÎÊÌ⣬£¬£¬£¬Kaspersky¼ì²âµ½176¸ö¹ú¼Ò/µØÇøÊܵ½Ó°Ï죬£¬£¬£¬ÆäÖжíÂÞ˹£¨8281£©¡¢°ÍÎ÷£¨4969£©ºÍÓ¡¶È£¨1807£©ÊÜÓ°Ïì×îÑÏÖØ¡£¡£¡£¡£¡£¡£2022Äê¼ì²âµ½182ÖÖ²î±ðµÄ¸ú×ÙÈí¼þÓ¦Ó㬣¬£¬£¬×î³£¼ûµÄÊÇReptilicus£¬£¬£¬£¬Æä´ÎÊÇCerberusºÍKeyLog¡£¡£¡£¡£¡£¡£
https://securelist.com/the-state-of-stalkerware-in-2022/108985/


¾©¹«Íø°²±¸11010802024551ºÅ