ÈÕ±¾¾ü¹¤ÆóÒµ´¨Æé³Á¹¤Ôâµ½¹¥»÷£¬»ò½«µ¼ÖÂÊý¾Ýй¶£»Á¢ÌÕÍð¹ú¶È¹«¹²ÎÀÉúÖÐÐÄϰȾEmotet£¬ÏµÍÂäÙʱ¹Ø¹Ø
°ä²¼¹¦·ò 2020-12-31
ÈÕ±¾¾ü¹¤ÆóÒµ´¨Æé³Á¹¤Ôâµ½¹¥»÷£¬»ò½«µ¼ÖÂÊý¾Ýй¶¡£´¨Æé³Á¹¤£¨Kawasaki£©³Æ£¬2020Äê6ÔÂ11ÈÕÓÐδ¾ÊÚȨµÄµÚÈý·½´ÓÌ©¹ú´¦Ê´¦½Ó¼ûÁËÈÕ±¾µÄ·þÎñÆ÷£¬ÔÚ·¢ÏÖ¸ÃÎÊÌâºóÁ½¸öÕ¾µãÖ®¼äµÄËùÓÐͨѶ¶¼±»ÖÕ³¡¡£Ëæºó£¬¸Ã¹«Ë¾ÓÖ·¢ÏÖÁËÆäËûº£±íÕ¾µã£¨Ó¡¶ÈÄáÎ÷ÑÇ¡¢·ÆÂɱöºÍÃÀ¹ú£©Î´¾ÊÚȨ½Ó¼ûÈÕ±¾·þÎñÆ÷µÄÇé¿ö£¬²¢¶Â½ØÍ¨Ñ¶¡£´¨Æé³ÆÕâ´Î¹¥»÷ʹÓÃÁËÏȽø¼¼Êõ¶øÃ»ÓÐÁôÏÂÈκκۼ£ºÍÖ¤¾Ý£¬µ«¹«Ë¾Êý¾Ý»òÐíÒѾй¶¡£ËùÓб»ÖÕÖ¹µÄͨѶÓÚ11ÔÂ30ÈÕ¸´ÔÕý³£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/112765/data-breach/kawasaki-heavy-industries-cyber-attack.html
2.Á¢ÌÕÍð¹ú¶È¹«¹²ÎÀÉúÖÐÐÄϰȾEmotet£¬ÏµÍÂäÙʱ¹Ø¹Ø

Á¢ÌÕÍð¹ú¶È¹«¹²ÎÀÉúÖÐÐÄ£¨NVSC£©ºÍ¼¸¸ö³ÇÊеÄÄÚÍøÏ°È¾Á˶ñÒâÈí¼þEmotet£¬ÏµÍÂäÙʱ¹Ø¹Ø¡£NVSC³Æ£¬ºÚ¿Íͨ¹ý»Ø¸´µÄÓʼþ·Ö·¢¶ñÒâÈí¼þ£¬Ê¹ÓÃÁËÊÜÃÜÂë±£»¤¸½¼þ²¢½«ÃÜÂë·ÅÔÚÓʼþÕýÎÄÄÚ£¬ÒÔÈÆ¹ýɱ¶¾Èí¼þµÄ¼ì²â¡£ÊÜϰȾµÄÍÆËã»ú±ÉÈËÔØ¶ñÒâÈí¼þºó»áµ±¼´·¢ËÍÐéαµç×ÓÓʼþ»ò½øÐÐÆäËû¶ñÒâ»î¶¯¡£NVSCµç×ÓÓʼþϵͳÒÑÔÚ±¾ÖܶþÆðÍ·ÁÙʱ¹Ø¹Ø£¬ÒÔ×èÖ¹¸Ã²¡¶¾µÄ½øÒ»²½´«²¼¡£ÕâÊǽñÄêµÚ¶þ´ÎÕë¶Ô¿¹ÌÕÍðµÄ´óÐÍEmotet¹¥»÷»î¶¯£¬µÚÒ»´Î²úÉúÓÚ10Ô·ݡ£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/emotet-malware-hits-lithuanias-national-public-health-center/
3.¼ÓÃÜÇ®±Òƽ̨VoyagerµÄDNSÅäÖÃÔâµ½´Û¸Ä£¬ÂòÂôÔÝÍ£

¼ÓÃÜÇ®±Òƽ̨VoyagerµÄDNSÅäÖÃÔâµ½´Û¸Ä£¬µ¼ÖÂÂòÂôÔÝÍ£¡£Voyager Digital LLCÊÇÒ»ÖÖ¼ÓÃÜÇ®±Ò¾¼Íƽ̨£¬ÔÊÐíͶ×ÊÕß½øÐÐ×ʲúÂòÂô¡£12ÔÂ28ÈÕ¸ÃÆ½Ì¨ºöÈ»¹Ø¹Ø£¬²¢°ä·¢µ±Ç°ÔÚ½øÐÐÊØ»¤¡£VoyagerËæºóй©ÆäÔâµ½Á˹¥»÷£¬DNSÅäÖÃÔâµ½´Û¸Ä£¬²¢Î´Í¸Â©ÓйØÕâ´Î¹¥»÷µÄ¸ü¶à¾ßÌåÐÅÏ¢¡£VoyagerÀûÓÃÔÚ³ÁÐÂÉÏÏߺóµÇ³öÁËËùÓÐЧ»§£¬²¢½¨ÒéËûÃdzÁÖÃÃÜÂë²¢ÅäÖÃ2FA¡£´Ë±í£¬Voyager°µÊ¾¹¥»÷δ³É¹¦£¬Óû§ËùÓÐ×ʽðºÍ¼ÓÃÜÇ®±Ò¶¼Êǰ²È«µÄ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/voyager-cryptocurrency-broker-halted-trading-due-to-cyberattack/
4.ºÚ¿ÍÔÚ°µÍøÐ¹Â¶½ðÈÚ¹«Ë¾StaircaseµÄÃô¸ÐÊý¾Ý

ºÚ¿ÍÔÚ°µÍøÐ¹Â¶°Â¿ËÀ¼½ðÈÚ¹«Ë¾StaircaseµÄÃô¸ÐÊý¾Ý¡£±¾Ô³õStaircaseÔâµ½NetWalkerµÄ¹¥»÷£¬²¢±»ÀÕË÷Ô¼15ÍòÃÀÔª¡£Òòδ°´Ê±Ö§¸¶Êê½ð£¬Ä¿Ç°ºÚ¿ÍÒÑÔÚ¶à¸öµÚÈý·½Îļþ¹²ÏíÍøÕ¾ÉϹ«¿ªµÁ×ßµÄÊý¾Ý¡£¸Ã¹«Ë¾³Æ£¬Ä¿Ç°Òѽ«Õâ´Îй©ÊÂÎñ·î¸æÆä¿Í»§£¬²¢ÔÚÐÖú±¾µØ¾¯·½¶Ô´ËʽøÐе÷²é¡£
ÔÎÄÁ´½Ó£º
https://www.stuff.co.nz/business/industries/123831316/hackers-publish-client-data-stripped-from-auckland-financial-services-company-on-dark-web
5.NZBGeekÒòÔâµ½¹¥»÷ÍøÕ¾å´»ú£¬Óû§Êý¾Ý±»µÁ

NZBGeekÒòÔâµ½¹¥»÷µ¼ÖÂÍøÕ¾å´»ú£¬Óû§Êý¾Ý±»µÁ¡£NZBGeekÊÇÒ»¸öÌṩË÷Òý·þÎñºÍÎļþ¹²ÏíµÄ¸öÈËÉçÇø£¬ÌṩÁ˳¬¹ý50Íò¸öNZBË÷Òý¡£¸Ã¹«Ë¾Ð¹Â©£¬ºÚ¿ÍÀûÓÃSQL·ì϶ºÍ»ùÓÚJavascriptµÄ¼üÅ̼ͼ·¨Ê½ÇÔÈ¡ÁËÊý¾Ý¿âµÄ¸±±¾£¬ÆäÖÐÔ̺¬Óû§Ãû¡¢ÃÜÂë¡¢µç×ÓÓʼþµØÖ·ºÍ×îºóÏνӵÄIPµØÖ·¡£´Ë±í£¬ÔÚ²úÉú¹¥»÷ʱËûÃǵÄË÷ÒýÆ÷ºÍAPI·þÎñÆ÷ÉϵÄÓ²ÅÌÇý¶¯Æ÷¾ù³öÏÖÁ˹ÊÕÏ£¬µ¼ÖÂÍøÕ¾å´»ú¡£¸Ã¹«Ë¾ÔÚµ÷²é´ËÊÂÎñ£¬Ä¿Ç°³ýAPI±í£¬ËùÓÐϵͳÈÔ´¦ÓÚÀëÏß״̬¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/usenet-indexer-nzbgeek-hacked-database-stolen/
6.WasabiÔÆ´æ´¢·þÎñÒòDNS½âÎöÎÊÌâµ¼ÖÂÖжÏ13¸öÓ×ʱ

WasabiÔÆ´æ´¢·þÎñÒòDNS½âÎöÎÊÌâµ¼ÖÂÖжÏ13¸öÓ×ʱ¡£12ÔÂ28ÈÕÏÂÎç2:30 ESTÓû§·¢ÏÖÎÞ·¨½Ó¼ûwasabisys.comÉϵĴ洢Ͱ£¬WasabiÔÚÖжϻ㱨ÖгÆÊÇÓÉÓÚDNS½âÎöÎÊÌâµ¼Ö¡£¾ÝϤ£¬¸Ãƽ̨Óû§ÉÏ´«Á˶ñÒâÈí¼þ£¬ÆäÓòÃû³Æ×¢²áÉÌ·¢ÏÖºóÏëҪͨ¹ýµç×ÓÓʼþ֪ͨWasabi£¬È´°Ñ»ã±¨×ª·¢µ½ÁËÃýÎóµÄµØÖ·£¬Ê¹µÃWasabiδµÃµ½Í¨Öª¡£¶ø¸Ã×¢²áÉÌÒòδµÃµ½»Ø¸´¶øÔÝÍ£Á˸ÃÓò£¬WasabiÔÚµÃÖª¸ÃÊÂÎñºóɾ³ýÁËÍйܶñÒâÈí¼þ²¢ÒªÇó³Áм¤¸ÃËÀÓò£¬Æ½Ì¨ÔÚ12ÔÂ29ÈÕÏÂÎç12:57 ESTÖÕÓڵõ½¸´Ô¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/wasabi-cloud-storage-service-knocked-offline-for-hosting-malware/


¾©¹«Íø°²±¸11010802024551ºÅ