RazerÊý¾Ý¿â¶³öµ¼ÖÂÆäÔ¼10ÍòÓû§ÐÅϢй¶£»¿¨°Í˹»ù°ä²¼APT×éÖ¯Õë¶ÔLinuxµÄ¹¥»÷·ÖÎö»ã±¨
°ä²¼¹¦·ò 2020-09-141.RazerÊý¾Ý¿â¶³öµ¼ÖÂÆäÔ¼10ÍòÓû§ÐÅϢй¶

8ÔÂ19ÈÕ£¬×êÑÐÔ±Bob Diachenko·¢ÏÖÓÎÏ·Ó²¼þÔì×÷ÉÌRazerµÄÔÚÏßÉ̵êµÄÊý¾Ý¿â¶³ö£¬µ¼ÖÂÆäÔ¼10ÍòÓû§ÐÅϢй¶¡£Õâ´Îй¶µÄÐÅÏ¢Ô̺¬¿Í»§µÄÐÕÃû¡¢µç×ÓÓʼþµØÖ·¡¢µç»°ºÅÂë¡¢¶©µ¥ºÅ¡¢¶©µ¥Ã÷ϸÒÔ¼°Õʵ¥ºÍËÍ»õµØÖ·µÈ¡£RazerÓÚÔÚ9ÔÂ9ÈÕ½¨¸´Á˸ÃÊý¾Ý¿â·þÎñÆ÷£¬²¢°µÊ¾¸ÃÊÂÎñÖв¢Ã»ÓÐÆäËûÃô¸ÐÊý¾Ýй¶£¬ÀýÈçÐÅÓþ¿¨ºÅ»òÃÜÂëµÈÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/razer-data-leak-exposes-personal-information-of-gamers/
2.MailfireÊý¾Ý¿â¶³ö£¬Ð¹Â¶882GBµÄÈÕÖ¾Îļþ

vpnMentor×êÑÐÈËÔ±ÓÚ8Ôµ×ÔÚÍøÂçÉÏ·¢ÏÖÁ˶³öµÄÊý¾Ý¿â£¬ÆäÊôÓÚÔ¼»áÍøÕ¾Mailfire¡£¸ÃÊý¾Ý¿âÖд洢Á˳¬¹ý882GBµÄÈÕÖ¾Îļþ£¬ÆäÓëͨ¹ýMailfireµÄ·þÎñ·¢Ë͵ÄÍÆËÍ֪ͨÓйأ¬ÈÕÖ¾»áËæ×ÅÐÂ֪ͨµÄ·¢ËÍʵʱ¸üС£¸ÃÈÕÖ¾Îļþ×ܹ²Ô̺¬´Óǰ96¸öÓ×ʱÄÚ·¢Ë͵Ä6600ÍòÌõÓ×ÎÒ֪ͨ£¬ÒÔ¼°ÊýÊ®ÍòÓû§µÄÓ×ÎÒ¾ßÌåÐÅÏ¢£¬ÆäÖÐÔ̺¬Ô̺¬ÐÕÃû¡¢´ºÇï¡¢ÐԱ𡢵ç×ÓÓʼþµØÖ·¡¢µØÀíµØÎ»ºÍIPµØÖ·µÈ¡£¸ÃÊý¾Ý¿âÓÚ9ÔÂ3ÈÕ±»½¨¸´¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/leaky-server-exposes-users-of-dating-site-network/
3.΢Èí°µÊ¾¹ú¶ÈÖ§³ÖµÄºÚ¿ÍÒѶÔ×¼2020ÄêÃÀ¹ú´óÑ¡

΢Èí°µÊ¾£¬Óɹú¶ÈÔÞÖúµÄºÚ¿Í×éÖ¯ÒѶÔ×¼²Î¼Ó2020ÄêÃÀ¹ú×Üͳ´óÑ¡µÄ×éÖ¯ºÍÓ×ÎÒ¡£ÆäÖУ¬¶íÂÞË¹ÍøÂç¼äµý×éÖ¯APT28ÔøÔÚ2016Äê×Üͳ´óÑ¡ÆÚ¼ä¹¥»÷ÁË200¶à¸öÓë´óÑ¡ÓйصÄ×éÖ¯ºÍÓ×ÎÒ£¬Æä¹¤×÷³ÁµãÊÇÇÔȡָ±êµÄÍ´´¦²¢·ÛËéÆäÕÊ»§¡£¶øÒÁÀʺڿÍNewsBeefÔÚ2020Äê5ÔÂÖÁ6Ô±»·¢ÏÖÊÔͼµÇÂ¼ÌØÀÊÆÕ¾ºÑ¡¸±ÊÖºÍÃÀ¹úµ±¾Ö¹ÙÔ±µÄÕË»§¡£Î¢Èí°µÊ¾£¬ÔÚÈ¥Äê7ÔÂÆä·¢ÏÖÓɵ±¾ÖÖ§³ÖµÄºÚ¿Í×éÖ¯µÄ¹¥»÷ºó£¬ÏòÊÜÓ°Ïì×éÖ¯·¢³öÁË781´ÎÖҸ档
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/microsoft-state-backed-hackers-are-targeting-the-2020-us-elections/
4.ºÚ¿ÍÒÔTwitter°²È«ÏìÓ¦Îı¾Îªµö¶üÌáÒé´¹µö¹¥»÷

First Look Media×êÑÐÈËÔ±·¢ÏÖ£¬ºÚ¿ÍÒÔTwitter°²È«ÏìÓ¦Îı¾Îªµö¶üÌáÒé´¹µö¹¥»÷¡£½üÒ»Äê×óÓÒ£¬TwitterÒ»Ïò´¦ÓÚ¸÷ÀàÕùÒéÖ®ÖС£ºÚ¿ÍÔòÀûÓÃTwitterÍŶӶÔÕâЩÊÂÎñµÄ°²È«ÏìÓ¦ÖеÄÎÄÕý±¾ÌáÒé´¹µö¹¥»÷¡£ºÚ¿Í·¢Ë͵Ĵ¹µöÓʼþÓë¹Ù·½ÍÆÎÄÏÕЩһÑù£¬Ò»µ©Óû§È·ÐÅÆäºÏ·¨²¢µã»÷È·ÈÏÄúµÄÉí·Ýºó£¬±ã»á±»³Á¶¨Ïòµ½ÍøÂç´¹µöÍøÒ³£¬²¢±»ÇÔÈ¡µÇ¼ʹ´¦¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/twitter-phishing-scam-latest-security-response/
5.ÃÀ¹ú¹«Ë¾ArtechÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ÆäÊý¾Ý»òÒÑй¶

ÃÀ¹úITÈËÔ±ÅäÖù«Ë¾Artech Information SystemsÅû¶ÆäÓÚ2020Äê1Ô³õÔâµ½ÁËREvilÀÕË÷Èí¼þ¹¥»÷£¬ÆäÊý¾Ý»òÒÑй¶¡£¾µ÷²é£¬ArtechÈ·¶¨ÓÚ1ÔÂ5ÈÕÖÁ1ÔÂ8ÈÕÖ®¼äÓÐδ¾ÊÚȨµÄµÚÈý·½½Ó¼ûÁËijЩϵͳ¡£Óë´Ëͬʱ£¬ÀÕË÷Èí¼þÍÅ»ïREvil£¨Sodinokibi£©°ä²¼ÁË337MBÊý¾Ý£¬²¢Ðû³ÆÊǴӸù«Ë¾·þÎñÆ÷ÇÔÈ¡µÄÎļþ¡£½ØÖÁĿǰ£¬ArtechÉÐδ¶Ô´ËÊÂÎñ½øÐÐÖÃÆÀ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/us-staffing-firm-artech-discloses-ransomware-attack-data-breach/
6.¿¨°Í˹»ù°ä²¼APT×éÖ¯Õë¶ÔLinuxµÄ¹¥»÷·ÖÎö»ã±¨

¿¨°Í˹»ùÈ«Çò×êÑÐÓë·ÖÎöÍŶӣ¨GReAT£©°ä²¼ÁËAPT×éÖ¯Õë¶ÔLinuxµÄ¹¥»÷·ÖÎö»ã±¨¡£¸Ã»ã±¨Ö¸³ö£¬APT¼¯ÌåÔ½À´Ô½¶àµØ¶Ô»ùÓÚLinuxµÄÉ豸ִÐÐÓÐÕë¶ÔÐԵĹ¥»÷£¬Ô̺¬Turla¡¢Lazarus¡¢Barium¡¢Sofacy¡¢Lamberts¡¢EquationµÈAPT×éÖ¯£¬²¢¿ª·¢Á˸ü¶àÕë¶ÔLinuxµÄ¹¤¾ß¡£¿¨°Í˹»ù°µÊ¾£¬¹ÌÈ»Õë¶Ô»ùÓÚLinuxµÄϵͳµÄ¹¥»÷²»³£¼û£¬µ«ÓкܶàÓйصĶñÒâÈí¼þ£¬Ô̺¬webshell¡¢ºóÃÅ·¨Ê½¡¢rootkitÉõÖÁ¶¨Ôì·ì϶ÀûÓ÷¨Ê½¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/an-overview-of-targeted-attacks-and-apts-on-linux/98440/


¾©¹«Íø°²±¸11010802024551ºÅ