ºÚ¿ÍÈëÇÖ°²È«¹«Ë¾DataViper·þÎñÆ÷ÇÔÈ¡ÊýÊ®ÒÚÓû§ÐÅÏ¢ £»¶íÂÞ˹ºÚ¿ÍÈëÇÖ¶à¸öÉç½»ÍøÂçµÁÈ¡2.13ÒÚ¸öÓû§Êý¾Ý

°ä²¼¹¦·ò 2020-07-14

1.ºÚ¿ÍÈëÇÖ°²È«¹«Ë¾DataViper·þÎñÆ÷ÇÔÈ¡ÊýÊ®ÒÚÓû§ÐÅÏ¢


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ºÚ¿ÍÐû³ÆÒÑÈëÇÖÃÀ¹úÍøÂ簲ȫ¹«Ë¾DataViperµÄºó¶Ë·þÎñÆ÷£¬²¢´ÓÆäÊý¾Ýй©¼ì²â·þÎñÖÐÇÔÈ¡ÁË8200¶à¸öÊý¾Ý¿âºÍÊýÊ®ÒÚÓû§ÐÅÏ¢ ¡£ºÚ¿Í°µÊ¾£¬ËûÔÚDataViper·þÎñÆ÷ÄÚÂñ·üÁË3¸öÔ£¬²¢ÇÔÈ¡ÁËTroiaΪDataViperÊý¾Ýй¶¼à¿Ø·þÎñ³ÉÁ¢Ë÷ÒýµÄÊý¾Ý¿â ¡£Õâ´Îй¶ÁËDataViper·þÎñÖÐË÷ÒýµÄ8225¸öÊý¾Ý¿âµÄÆëÈ«Áбí£¬Ô̺¬482¸ö¿ÉÏÂÔØµÄJSONÎļþ£¬ÆäÖÐÔ̺¬ÁË´ÓDataViper·þÎñÆ÷ÇÔÈ¡µÄÊý¾ÝÑù±¾ ¡£Æä»¹ÔÚ°µÍøÉϰ䲼¸æ°×£¬ÒªÏúÊÛËûÃÇÇÔÈ¡µÄ50¸ö×î´óµÄÊý¾Ý¿â ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/hacker-breaches-security-firm-in-act-of-revenge/#ftag=RSSbaffb68


2.¶íÂÞ˹ºÚ¿ÍÈëÇÖ¶à¸öÉç½»ÍøÂ磬µÁÈ¡2.13ÒÚ¸öÓû§ÕÊ»§Êý¾Ý


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


¶íÂÞ˹ºÚ¿ÍNikulinÈëÇÖÉç½»ÍøÂçLinkedIn¡¢DropboxºÍFormspring²¢ÇÔÈ¡2.13ÒÚ¸öÓû§ÕÊ»§Êý¾Ý£¬ÏÖÒѱ»¶¨×ï ¡£NikulinÊ×ÏÈÈëÇÖÁËÈý¼ÒÉç½»¹«Ë¾µÄÍÆËã»ú£¬²¢ÔÚÆäÉÏ×°ÖöñÒâÈí¼þÒÔµÁÈ¡¹«Ë¾Ô±¹¤µÄÓû§ÃûºÍÃÜÂ룬¼Ì¶øµÁÈ¡²¢ÏúÊÛÊý¾Ý ¡£Ä¿Ç°£¬NikulinµÁÈ¡ÁË1.17ÒÚLinkedInÕÊ»§µÄ¾ßÌåÐÅÏ¢²¢ÓÃÀ´Ä±È¡ÉÌÒ·ûÒæ£¬»¹ÓдÓFormspring͵ÇÔµÄ2800ÍòÕÊ»§ÐÅÏ¢ºÍ´ÓDropbox͵ÇÔµÄ6800ÍòÕÊ»§ÐÅÏ¢²¢Î´ÓÃÀ´Ä²Àû ¡£


Ô­ÎÄÁ´½Ó£º

https://www.theregister.com/2020/07/14/russian_hacker_guilty/


3.°¢Èû°Ý½®ºÚ¿Íй¶ÑÇÃÀÄáÑǹ«ÃñÊý¾Ý¼°¾üÊ»ú¹¹Îļþ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ÐÅÏ¢°²È«×¨¼ÒSamvel MartirosyanÓÚ7ÔÂ8ÈÕ°ä·¢ÉêÃ÷£¬°¢Èû°Ý½®ºÚ¿Íй¶ÁËÔ̺¬¾üÊÂÈËÔ±ÔÚÄÚµÄÊý°ÙÃûÑÇÃÀÄáÑǹ«ÃñµÄ»¤ÕÕÊý¾ÝÒÔ¼°Óë¹²ºÍ¹ú¾üÊ»ú¹¹Îļþ ¡£¸Ãй¶ÊÂÎñÊÇÒ»ÖÖ¼«ÆäΣÏÕµÄÇé¿ö£¬ÓÉÓÚÎļþÖÐÔ̺¬ÖîÈç¾üʵ¥ÔªµÄ³µÁ¾ÊýÁ¿Ö®ÀàµÄÐÅÏ¢£¬²¢ÇÒڲƭÕßÄܹ»Ê¹Óû¤ÕÕÊý¾ÝÀ´·¢·Å´û¿î ¡£MartirosyanÒÔΪ£¬°¢Èû°Ý½®ºÚ¿ÍÖØÒªÊÇÀûÓõç×ÓÓʼþÀ´ÇÔÈ¡¹Ù·½ÐÅÏ¢ ¡£¸Ãר¼ÒÖ¸³ö£¬ÔÚ´ÓǰµÄÒ»¸öÔÂÖУ¬ºÚ¿ÍÒѾ­Áù´Îй©ÁËϰȾÁ˹Ú×´²¡¶¾µÄÑÇÃÀÄáÑǹ«ÃñµÄÓ×ÎÒÐÅÏ¢ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.ehackingnews.com/2020/07/azerbaijani-hackers-obtained.html


4.×êÑÐÈËÔ±ÔÚ°µÍøÖз¢ÏÖ³¬¹ý4500ÍòÍùÀ´Ì©¹úºÍÂíÀ´Î÷ÑÇÓοÍÐÅÏ¢


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Íþвµý±¨¹«Ë¾CybleµÄ×êÑÐÈËÔ±ÔÚ°µÍøÖз¢ÏÖÀ´×Ô¶à¸ö¹ú¶ÈµÄ³¬¹ý4500ÍòÍùÀ´Ì©¹úºÍÂíÀ´Î÷ÑÇÓοÍÐÅÏ¢£¬Ð¹Â©ÐÅÏ¢Ô̺¬³Ë¿ÍID¡¢È«Ãû¡¢ÊÖ»úºÅÂë¡¢»¤ÕÕ¾ßÌåÐÅÏ¢¡¢µØÖ·¡¢ÐÔ±ðºÍº½°à¾ßÌåÐÅÏ¢ ¡£×êÑÐÈËÔ±»ñÈ¡ÁËÕâЩÊý¾Ý²¢½øÐзÖÎö£¬Ä¿Ç°ÒѾ­ÔÚ¹«Ë¾Êý¾Ýй¶¼à¶½ºÍ֪ͨƽ̨AmiBreached.comÉÏΪÕâЩй¶ÐÅÏ¢³ÉÁ¢ÁËË÷Òý ¡£


 Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/105812/data-breach/travelers-to-thailand-malaysia-darkweb.html?utm_source=rss&utm_medium=rss&utm_campaign=travelers-to-thailand-malaysia-darkweb


5.CerberusÔÚGoogle PlayÖмÙ×°³É¼ÓÃÜÇ®±Òת»»ÀûÓÃ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


AvastµÄ×êÑÐÈËÔ±·¢ÏÖ¶ñÒâÈí¼þCerberusÔÚGoogle PlayÖмÙ×°³É¼ÓÃÜÇ®±Òת»»ÀûÓã¬ÖØÒªÕë¶ÔÎ÷°àÑÀµÄÓû§£¬Ö¼ÔÚÇÔÈ¡Óû§µÄÒøÐÐÊý¾Ý ¡£×êÑÐÈËÔ±¹Û²ìµ½¸ÃÀûÓÃÔÚ×î³õµÄ¼¸ÖÜÄÚÒÀÈ»ÎÞº¦£¬ÓÃÀ´ÎüÒýÓû§»ò¶ã±ÜGoogle Play± £»¤µÄ°²È«²é³­ ¡£µ«ÊÇ£¬¸ÃÀûÓ÷¨Ê½µÄÈ·´øÓжñÒâ¶ñÒâÈí¼þɾ³ý·¨Ê½´úÂ룬¸Ã´úÂë×î³õά³ÖÎÞЧ£¬µ«Ö®ºó»á±äΪ¼¤»î״̬ ¡£×êÑÐÈËÔ±Äܹ»¹Û²ìµ½¸ÃÀûÓ÷¨Ê½ÓëC&C·þÎñÆ÷ͨѶ£¬´Ó¶øÏÂÔØÁíÒ»¸ö¶ñÒâµÄAPKÒøÄÚÐÐ ¡£


Ô­ÎÄÁ´½Ó£º

https://latesthackingnews.com/2020/07/12/cerberus-malware-emerged-on-play-store-impersonating-cryptocurrency-converter-app/


6.Sumo Logic»ã±¨£¬¼¤ÔöµÄ°²È«¾¯±¨¸øSOCÍŶӴøÀ´ÌôÕ½


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Sumo Logic°ä²¼ÁËÒ»ÏîÈ«Çòµ÷²éµÄ»ã±¨£¬¸Ãµ÷²é·¢ÏÖ¼¤ÔöµÄ°²È«¾¯±¨¸øSOCÍŶӴøÀ´ÌôÕ½ ¡£¸Ã×êÑÐÅú×¢£¬ÔÚ´ÓǰÎåÄêÖУ¬ÓÐ70£¥µÄ°²È«¾¯±¨ÊýÁ¿Ôö³¤ÁËÒ»±¶ÒÔÉÏ£¬99£¥µÄÈ˻㱨´óÁ¿¾¯±¨µ¼ÖÂIT°²È«ÍŶÓÓöµ½ÌôÕ½£¬83£¥µÄÈË˵ËûÃǵݲȫÈËÔ±ÆðÍ·¡°¾¯±¨Î¯¶Ù¡± ¡£´Ë±í£¬±ØÒª¸üºÃµÄ¼¼ÊõÀ´ÖÎÀí°²È«¾¯±¨Á¿£¬88%µÄÈËÃæ¶Ô×ŵ±Ç°SIEMµÄÌôÕ½£¬84%µÄÈËÒÔΪÔÚÔÆ»ò»ìºÏ»·¾³ÏµÄÔÆ±¾µØSIEMÓкöàÓÅÊÆ£¬99%µÄÈ˽«ÊÜÒæÓÚ¶î±íµÄSIEM×Ô¶¯»¯ÄÜÁ¦ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/07/13/volume-of-security-alerts/?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+HelpNetSecurity+%28Help+Net+Security%29