2020Äê¶«¾©°ÂÔË»áÍøÂçÍþвÆÀ¹À»ã±¨£»åÚÏë¡¢»Ý±é¼°´÷¶û±íΧÉ豸ÊÜδÊðÃû¹Ì¼þ·ì϶ӰÏì
°ä²¼¹¦·ò 2020-02-241.°²È«»ú¹¹°ä²¼2020Äê¶«¾©°ÂÔË»áÍøÂçÍþвÆÀ¹À»ã±¨
ƾ¾ÝÍøÂçÍþвͬÃË£¨CTA£©°ä²¼µÄÒ»·ÝÆÀ¹À»ã±¨£¬ÈÕ±¾ÔÚÑÇÌ«µØÓòµÄ¾ºÕùµÐÊֺܿÉÄÜ»áͨ¹ýÍøÂç¹¥»÷ºÍÐéαÐÅÏ¢¶Ô×¼¼´½«ÓÚ½ñÄê7ÔÂÔÚ¶«¾©½øÐеÄÏļ¾°ÂÔ˻ᡣ»ùÓÚ¶Ô2018Ä꺫¹úƽ²ý¶¬°Â»áµÄÍøÂç¹¥»÷·ÖÎö£¬¹¥»÷ÕߺܿÉÄÜ»áÕë¶Ô°ÂÔË»áµÄ»ù´¡ÉèÊ©ÌáÒé·ÛËéÐÔµÄÍøÂç¹¥»÷ºÍDDoS¹¥»÷£¬´Ë±í£¬Óë°ÂÔË»áÓйصÄ×éÖ¯£¨ÀýÈçÊÀ½ç·´Ð˷ܼÁ»ú¹¹WADA£©Ò²¿ÉÄÜ»áÔâµ½¹¥»÷¡£RANDÒ²°ä²¼ÁËÒ»·Ý2020Äê°ÂÔË»áÍþвÆÀ¹À»ã±¨£¬¸Ã»ã±¨³ÆÓÉÓÚ°ÂÔË»áµÄÓâÔ½Ãû¶È£¬Ê¹µÃÆä³ÉΪÄÇЩ׷ÇóÕþÖζ¯»ú¡¢Í¨¹ý·¸×ïÔö³¤ÆØ¹â¶ÈµÄ¹¥»÷ÕßµÄÖ¸±ê¡£
ÔÎÄÁ´½Ó£º
https://www.darkreading.com/threat-intelligence/olympics-could-face-disruption-from-regional-powers/d/d-id/133711
2.åÚÏë¡¢»Ý±é¼°´÷¶û±íΧÉ豸ÊÜδÊðÃû¹Ì¼þ·ì϶ӰÏì
ƾ¾ÝEclypsiumµÄ×êÑУ¬Wi-FiÊÊÅäÆ÷¡¢USB¼¯Ï߯÷¡¢´¥¿Ø°åºÍÉãÏñÍ·ÖеÄδÊðÃû¹Ì¼þ·ì϶¿ÉÄÜʹÊý°ÙÍò±íΧÉè±¸Ãæ¶ÔÍøÂç¹¥»÷µÄ·çÏÕ¡£ÊÜÓ°ÏìµÄ²úÆ·Ô̺¬åÚÏë±Ê¼Ç±¾µçÄÔÖеÄTouchPadºÍTrackPoint¹Ì¼þ¡¢»ÝÆÕ±Ê¼Ç±¾µçÄÔÖеÄHP Wide Vision FHDÉãÏñÍ·¹Ì¼þÒÔ¼°´÷¶ûXPS±Ê¼Ç±¾µçÄÔÖеÄWi-FiÊÊÅäÆ÷µÈ¡£ÓÉÓÚÕâЩ²úÆ·ÔÚ½øÐй̼þ¸üÐÂʱ²»×ãÊʵ±µÄ´úÂëÊðÃûÑéÖ¤ºÍÉí·ÝÑéÖ¤£¬¹¥»÷Õß¿ÉÄÜͨ¹ý¶ñÒâ¹Ì¼þ¸üÐÂÀ´Ö´ÐÐÐÅϢй¶¡¢Ô¶³Ì´úÂëÖ´ÐÓ×¢»Ø¾ø·þÎñµÈ¹¥»÷¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/lenovo-hp-dell-peripherals-unpatched-firmware/152936/
3.¼ÓÄôó¿ý±±¿Ë²ÆÕþ²¿ÔâºÚ¿Í¹¥»÷£¬½ü36ÍòÀÏʦÐÅϢй¶
¼ÓÄôó¿ý±±¿ËÊ¡µ±¾Ö֤ʵ£¬½ü36ÍòÃûÀÏʦµÄÓ×ÎÒÐÅÏ¢¿ÉÄÜÒòºÚ¿Í¹¥»÷¶ø±»µÁ¡£¿ý±±¿Ë²ÆÕþίԱ»á¶ÔÔÚ»òÒѾµ£ÈÎÀÏʦµÄÈ˵ÄÉí·ÝµÁÓÃÇé¿ö½øÐе÷²é£¬±¾µØ²ÆÕþ²¿°ä²¼ÉêÃ÷³Æ£¬¹¥»÷Õßͨ¹ýÇÔÈ¡µÄÓû§ÕË»§ºÍÃÜÂë½Ó¼ûÁËÆä´æ´¢Ó×ÎÒÐÅÏ¢µÄÊý¾Ý¿â£¬µ¼ÖÂÕâЩÀÏʦµÄÐÅÏ¢±»µÁ¡£±¾µØµ±¾Ö°µÊ¾½«Í¨ÖªÊÜÓ°ÏìµÄÀÏʦ²¢ÎªËûÃÇÌṩÃâ·ÑµÄÐÅÓþ¼à¿Ø·þÎñ¡£
ÔÎÄÁ´½Ó£º
https://globalnews.ca/news/6582061/personal-information-quebec-teachers-data-breach/
4.haveibeenpwnedÊÕ¼Slickwraps 88.5ÍòÓû§ÕË»§
2ÔÂ16ÈÕµç×Ó²úÆ·°ü×°ÁãÊÛµêSlickwrapsÔâ·êÊý¾Ýй¶ÊÂÎñ£¬¸ÃÊÂÎñµ¼ÖÂ88.5Íò¸ö·ÖÆçµÄ¿Í»§µç×ÓÓʼþµØÖ·Ð¹Â¶£¬ÆäËüÊÜÓ°ÏìµÄÊý¾ÝÔ̺¬ÐÕÃû¡¢ÏÖʵµØÖ·¡¢µç»°ºÅÂëºÍ²É°ìº¹Çà¼Í¼µÈ¡£haveibeenpwnedÍøÕ¾ÓÚ22ÈÕÊÕ¼ÁËй¶µÄÊý¾Ý¡£Õâ´ÎÊÂÎñ²úÉúµÄÔÒòÊÇ×êÑÐÈËÔ±Lynx·¢ÏÔìäÍøÕ¾´æÔÚõè¾¶±éÀú·ì϶£¬¹¥»÷ÕßÄܹ»½Ó¼ûÆäÔ±¹¤¼òÀú¡¢9GBµÄ¿Í»§ÕÕÆ¬¡¢ZenDeskƱÎñϵͳ¡¢APIÍ´´¦ÒÔ¼°¿Í»§ÐÅÏ¢µÈ¡£Lynx»¹·¢ÏÖ¹¥»÷ÕßÒѾÇÔÈ¡ÁËÕâЩÊý¾Ý£¬²¢ÀûÓÃZenDesk·þÎñ̨ϵͳÏò¿Í»§·¢ËÍÁËÊý¾Ý±»µÁµÄ֪ͨÓʼþ¡£
ÔÎÄÁ´½Ó£º
https://haveibeenpwned.com/PwnedWebsites#Slickwraps
5.Transparent Tribe»Ø¹é£¬Õë¶ÔÓ¡¶È±í½»ºÍ¾üÊÂÈËÔ±
Cybaze-Yoroi×êÑÐÈËÔ±°ä²¼Operation Transparent Tribe×îй¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£Transparent Tribe×îÔçÓÚ2016Äê±»·¢ÏÖ£¬ÆäÖØÒªÕë¶ÔÓ¡¶ÈµÄ±í½»¹ÙºÍ¾üÊÂÈËÔ±£¬×êÑÐÈËÔ±×·×Ùµ½Æä¹¥»÷Ô´IPÀ´×ÔÓÚ°Í»ù˹̹¡£Ëæ×ÅÁ½¹ú¹ØÏµµÄÔÙ¶ÈÑÏÖØ£¬¸Ã¹¥»÷ÍÅ»ïÔÚ4ÄêÖ®ºóÓÖ³öÏÖÁËÐµĹ¥»÷»î¶¯£¬×îй¥»÷»î¶¯µÄC2¼Í¼¿É×·Òäµ½2020Äê1ÔÂ29ÈÕ£¬Æäµö¶üÎļþÓëDSOP FUND£¨¹ú·À·þÎñ¹ÙÔ±¹«»ý½ð£©Óйء£»ã±¨ÖзÖÎöÁ˸ûµÄ¾ßÌåIoCºÍYara¹æ¶¨¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/98249/apt/operation-transparent-tribe-pakistan-india.html
6.Maze°ä²¼ÆäµÁÈ¡µÄÓëPTSDË÷ÅâÓйصÄÍËÒÛÎäÊ¿Êý¾Ý
ƾ¾ÝEmsisoftµÄ·ÖÎö£¬ÀÕË÷Èí¼þMaze±³ºóµÄ·¸×ïÍÅ»ïÔÚ½ü4¸öÔÂÄÚÖÁÉÙ¹¥»÷ÁË5¼ÒÂÉʦÊÂÎñËù£¬²¢ÇÒÒѾ°ä²¼ÁËÆäµÁÈ¡µÄÓëPTSDË÷ÅâÓйصÄÍËÒÛÎäÊ¿Êý¾Ý¡£ÕâЩÎļþÔ̺¬VAÎļþ¡¢»¼Õß»¤Àí¼Í¼¡¢Ë¾·¨ÓöȺÍ̸ºÍÒþÖÔÔÞ³ÉÊéµÈ¡£ÆäÖÐÁ½¼ÒÂÉʦÊÂÎñËù±ðÀëΪµÂ¿ËÈøË¹ÖݵÄBaker WotringºÍÓ¡µÚ°²ÄÉÖݵÄWoods and Woods LLC¡£Ä¿Ç°Éв»Ã÷ÏÔËûÃǵĿͻ§ÊÇ·ñÒÑÖªÆäÃô¸ÐÐÅÏ¢±»°ä²¼µ½ÍøÉÏ¡£
ÔÎÄÁ´½Ó£º
https://www.federaltimes.com/pay-benefits/military-benefits/health-care/2020/02/19/hacker-group-targeted-law-firms-released-veterans-stolen-data-related-to-ptsd-claims/


¾©¹«Íø°²±¸11010802024551ºÅ