NitroRansomwareÒªÇóʹÓÃDiscord NitroÀñÎïÖ§¸¶Êê½ð£»ÃÀ¹úÔì²Ã28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜÇ®±ÒµØÖ·

°ä²¼¹¦·ò 2021-04-20

1.NitroRansomwareÒªÇóʹÓÃDiscord NitroÀñÎïÖ§¸¶Êê½ð


1.jpg


ÃûΪNitroRansomwareµÄÐÂÀÕË÷Èí¼þÒªÇóÊܺ¦ÕßʹÓÃDiscord NitroÀñÎï´úÂë×÷ΪÊê½ð¡£¸ÃÀÕË÷Èí¼þ¼Ù×°³ÉÄܹ»ÌìÉúÃâ·ÑNitroÀñÎï´úÂëµÄÀûÓ㬻á¼ÓÃÜÊܺ¦ÕßÎļþ²¢Ôö³¤.givemenitroÀ©´óÃû£¬¶øºó½«Æä×ÀÃæ¸ÄΪÉúÆøµÄDiscord±êÖ¾¡£Ö®ºó£¬ÆäÒªÇóÊܺ¦ÕßÔÚÈý¸öÓ×ʱÄÚÌṩÃâ·ÑµÄNitroÀñÎï´úÂ룬²»È»½«É¾³ýÊܺ¦ÕߵļÓÃÜÎļþ¡£DiscordµÄ¸½¼Ó·¨Ê½NitroÐèÿÔÂÆÆ·Ñ9.9ÃÀÔª¶©ÔÄ£¬²É°ìʱÄܹ»×ÔÓÃÒ²Äܹ»×÷ΪÀñÎïÔùËÍËûÈË¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/discord-nitro-gift-codes-now-demanded-as-ransomware-payments/


2.ÃÀ¹úÔì²Ã28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜÇ®±ÒµØÖ·


2.jpg


ÃÀ¹úµ±¾ÖÔÚ±¾ÖÜÔì²ÃÁË28¸ö¼ÓÃÜÇ®±ÒµØÖ·£¬¾Ý³ÆÕâЩµØÖ·ÓëÉæ¼°¶íÂÞË¹ÍøÂç¹¥»÷»ò×ÌÈÅÑ¡¾Ù»î¶¯µÄ×éÖ¯ºÍÓ×ÎÒÓйØ¡£ÃÀ¹úµ±¾Ö»¹°µÊ¾£¬ÕâЩ»î¶¯ÊÇÓɶíÂÞ˹Áª¹ú°²È«¾Ö£¨FSB£©ºÍ¶íÂÞË¹ÖØÒªµý±¨¾Ö£¨GRU£©·¢Õ¹µÄ£¬²¢ÇÒÒѾ­µÃµ½ÁËÁù¼ÒÓë¶íÂÞ˹ÓкÏ×÷µÄ¹«Ë¾µÄÔ®ÊÖ¡£´Ë±í£¬ÃûΪSESµÄ°Í»ù˹̹¹«Ë¾Ïò»¥ÁªÍø×êÑлú¹¹(IRA)ÌṩÐéαÉí·ÝÀ´ÌÓ±ÜÃÀ¹úµÄÔì²Ã£¬Æä¼ÓÃÜÇ®±ÒµØÖ·ÒÑͨ¹ý26900±ÊÂòÂôÊÕµ½Á˼ÛÖµ³¬¹ý250ÍòÃÀÔªµÄÊý×ÖÇ®±Ò¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-sanctions-cryptocurrency-addresses-linked-to-russian-cyberactivities/


3.FireEyeµÄÍŶÓÑÝʾÈôºÎÆÆ½âÀûÓò¢½Ù³ÖÖÇÄܵç±í


3.png


FireEyeµÄMandiantÍŶÓÑÝʾÁËÈôºÎÉøÈëµ½±±ÃÀµÄ¹«ÓÃÊÂÒµÍøÂç²¢ÈëÇÔì乤ҵ½ÚÔìϵͳ£¬À´½Ù³ÔìäÖÇÄܵç±í¡£ÔÚ¹¥»÷µÄµÚÒ»½×¶Î£¬MandiantÍŶÓѡȡÁËTEMP.VelesÔÚTRITON¹¥»÷ÆÚ¼äʹÓõļ¼ÊõÀ´·ÛËéOTÍøÂ硣ʵÏÖÁ˶Թ¤×÷Õ¾µÄ½ÚÔìºóʹÓÿªÔ´¹¥»÷ÐÔ°²È«¹¤¾ß£¨OST£©À´»ñµÃÓòÖÎÀíԱȨÏÞ£¬×îºó·¢³ö¶Ï¿ªÖÇÄܵç±íµÄºÅÁî¡£¶àÄêÀ´£¬È«Çò¹¤Òµ×é֯ʹÓõÄICS/SCADAϵͳÊܵ½µÄ¹¥»÷ÊýÁ¿Ñ¸¿ìÔö³¤£¬ÆäÖÐ×îÑϳÁµÄÊÇ2015ÄêÊǶÔÎÚ¿ËÀ¼µçÍøµÄ¹¥»÷ºÍ2017ÄêTriton¶ÔÉ³ÌØÊ¯»¯³§µÄ¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/117001/ics-scada/ot-network-hack-smart-meters.html


4.°ÍÎ÷¹ú¶ÈͼÊé¹ÝÁ¬ÔâÁ½´ÎÀÕË÷Èí¼þ¹¥»÷£¬Êý¾Ýй¶


4.jpg


°ÍÎ÷¹ú¶ÈͼÊé¹ÝÁ¬ÔâÁ½´ÎÀÕË÷Èí¼þ¹¥»÷£¬²¿ÃÅÊý¾Ýй¶¡£µÚÒ»´Î¹¥»÷²úÉúÔÚÖÜÈÕ£¨4ÔÂ11ÈÕ£©£¬°ÍÎ÷¹ú¶ÈͼÊé¹ÝÔÚ·¢ÏÖ¹¥»÷ºóµ±¼´¹Ø¹ØÁË·þÎñÆ÷£¬ÒÔÔ¤·À¶ñÒâÈí¼þµÄ´«²¼ºÍÐµĹ¥»÷¡£µ«ÊÇ£¬ÉÏÖܶþ£¨4ÔÂ13ÈÕ£©¸ÃÍøÕ¾Ôٴα»¼¤»î²¢Ôâµ½Á˵ڶþ´Î¹¥»÷£¬²¢±»·î¸æ²¿ÃÅÊý¾ÝÒѱ»ÇÔÈ¡¡£Ä¿Ç°£¬¸ÃͼÊé¹ÝÒѽ«´ËÊÂ֪ͨµ±¾Ö×éÖ¯£¬²¢½áºÏ°²È«°ì¹«ÊÒ¶Ô´ËÊ·¢Õ¹Á˵÷²é¡£


Ô­ÎÄÁ´½Ó£º

https://olhardigital.com.br/en/2021/04/16/safety/national-library-website-victim-ransomware-attack/


5.McAfee°ä²¼2020ϰëÄêÍþÐ²Ì¬ÊÆµÄ·ÖÎö»ã±¨


5.jpg


McAfee°ä²¼ÁË2020ϰëÄêÍþÐ²Ì¬ÊÆµÄ·ÖÎö»ã±¨¡£»ã±¨³Æ£¬2020ÄêQ4¾ùÔÈÿ·ÖÖӿɼì²âµ½648¸öÍþв£¬±ÈQ3Ôö³¤ÁË10£¥£¬±ÈQ2Ôö³¤ÁË40£¥£¬Ê¼ÖճʳÖÐøÉÏÉýÇ÷Ïò¡£»ã±¨»¹Ö¸³ö2020ÄêϰëÄêÔÚÒ°±í·¢ÏֵĹ¥»÷ÊýÁ¿¼¤ÔöµÄÖØÒªÔ­ÒòÊÇÒÔCOVIDΪÖ÷ÌâµÄ¹¥»÷ºÍPowerShellľÂíµÄ¼¤Ôö£¬ÒÔ¼°SolarWinds·ì϶ºÍSunburst¶ñÒâÈí¼þµÄ³ÖÐøÊæÕ¹¡£Ïà±Å×ÚQ3 £¬Q4µÄPowerShellÊýÁ¿Ôö³¤ÁË208%£¬Õë¶ÔofficeµÄ¶ñÒâÈí¼þÊýÁ¿Ôö³¤ÁË199%¡£


Ô­ÎÄÁ´½Ó£º

https://www.mcafee.com/enterprise/en-us/lp/threats-reports/apr-2021.html


6.Check Point°ä²¼2020ÄêÒÆ¶¯°²È«µÄ·ÖÎö»ã±¨


6.jpg


Check Point Research°ä²¼ÁË2020ÄêÒÆ¶¯°²È«µÄ·ÖÎö»ã±¨¡£¸Ã»ã±¨³õ´Î¸æ·¢ÁËÕë¶ÔÆóÒµÒÆ¶¯É豸µÄ×îÐÂÍþв£¬´Ó¶ñÒâÀûÓõ½ÀÕË÷Èí¼þ¹¥»÷£¬ÒÔ¼°ÀûÓÃÆóÒµÒÆ¶¯É豸ÖÎÀíµÄ¹¥»÷¡£»ã±¨Ö¸³ö£¬2020Ä꣬97%µÄ×éÖ¯Ãæ¶ÔÀûÓÃÁ˶àÖÖ¹¥»÷ý½éµÄÒÆ¶¯°²È«Íþв£»46%µÄ×éÖ¯ÖÐÓÐÖÁÉÙÒ»ÃûÔ±¹¤ÏÂÔØÁ˶ñÒâµÄÒÆ¶¯ÀûÓ÷¨Ê½£»È«ÇòÖÁÉÙÓÐ40%µÄÒÆ¶¯É豸×ÔÉí¾ÍÈÝÒ×Êܵ½ÍøÂç¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://pages.checkpoint.com/mobile-security-report-2021.html