ºÚ¿Í¹«¿ªµç×ÓÒÕ½çEAµÄÊý¾Ý£¬Ô̺¬FIFA 21ÓÎÏ·Ô´Â룻Python°ä²¼°²È«¸üУ¬½¨¸´PyPI´æ´¢¿âÖжà¸ö·ì϶

°ä²¼¹¦·ò 2021-08-02

1.ºÚ¿Í¹«¿ªµç×ÓÒÕ½çEAµÄÊý¾Ý£¬Ô̺¬FIFA 21ÓÎÏ·Ô´Âë


1.jpg


7ÔÂ26ÈÕÐÇÆÚÒ»£¬ºÚ¿ÍÔÚ°µÍø¹«¿ªµç×ÓÒÕ½çEAµÄÊý¾Ý£¬Ô̺¬FIFA 21ÓÎÏ·Ô´Âë¡¢FrostBiteÓÎÏ·ÒýÇæºÍµ÷ÊÔ¹¤¾ßÔ´´úÂëµÈÐÅÏ¢¡£¸ÃÊÂÎñ×î³õÓÚ6ÔÂ10ÈÕÅû¶£¬ÆäʱºÚ¿ÍÐû³ÆÇÔÈ¡Á˸ù«Ë¾780GBµÄÊý¾Ý£¬²¢Ô¸ÒâÒÔ2800ÍòÃÀÔªµÄ¼ÛÖµÏúÊÛ¡£µ«ÓÉÓÚ±»µÁÊý¾Ý´ó¶àÊÇÔ´´úÂë¶ÔÍøÂç·¸×ïÍÅ»ïÀ´ËµÃ»ÓÐÈκμÛÖµ£¬Òò¶ø²¢Î´ÕÒµ½Âò¼Ò¡£Ö®ºóºÚ¿ÍÊÔͼÀÕË÷EA£¬ÔÚ7ÔÂ14ÈÕ°ä²¼ÁË1.3GBµÄFIFAÔ´´úÂë×÷ΪÑù±¾£¬²¢ÔÚ2Öܺ󹫿ªÁËÈ«ÊýÊý¾Ý¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/hackers-leak-full-ea-data-after-failed-extortion-attempt/


2.×êÑÐÍŶӳÆDarkSide»òÒÔBlackMatterÖ®Ãû³Áлعé


2.jpg


×êÑÐÍŶӳÆÀÕË÷ÍÅ»ïDarkSide¿ÉÄÜÒѳÁж¨ÃûΪеÄBlackMatter³Áлعé¡£DarkSideÔÚ¹¥»÷ÃÀ¹ú×î´óµÄȼÁϹÜ·Colonial Pipelineºó£¬ÓÚ½ñÄê5ÔºöÈ»¹Ø¹Ø¡£ÉÏÖÜ£¬×êÑÐÈËÔ±·¢ÏÖеÄÀÕË÷Èí¼þBlackMatter¡£·ÖÎö·¢ÏÖ£¬¶þÕßʹÓõļÓÃÜ·¨Ê½ÏÕЩһÑù£¬Ô̺¬DarkSideËùÌØÓеÄ×Ô½ç˵Salsa20¾ØÕó¡£´Ë±í£¬¶þÕß¶¼Ê¹ÓÃÁËDarkSide¶ÀÓеÄRSA-1024ʵÏÖ¡¢Ñ¡È¡ÁËÒ»ÑùµÄ¼ÓÃÜËã·¨²¢ÇÒÊý¾ÝÐ¹Â¶ÍøÕ¾¶¼Ê¹ÓÃÁËÀàËÆµÄ˵»°¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/darkside-ransomware-gang-returns-as-new-blackmatter-operation/


3.RiskIQ·¢ÏÖ¶íÂÞ˹Bear Tracks³¬¹ý30¸ö»îÔ¾µÄC2


3.jpg


RiskIQµÄ×êÑÐÈËÔ±·¢ÏÖÁ˶íÂÞ˹APT29£¨ÓÖ³ÆBear Tracks£©³¬¹ý30¸ö»îÔ¾µÄC2¡£Õâ´Îµ÷²éÆðÍ·ÓÚ2021Äê6ÔÂ11ÈÕ£¬×êÑÐÈËÔ±·¢ÏÖÓë¶íÂÞ˹µÄ±í¹úµý±¨¾Ö(SVR)ÓйصÄAPT×éÖ¯Bear TracksÔÚ»ý¼«µØÀûÓöñÒâÈí¼þWellMessºÍWellMail£¬ËüÃÇÔÚÒÔÇ°ÔøÓÃÓÚÕë¶ÔÓ¢¹ú¡¢ÃÀ¹úºÍ¼ÓÄôóCOVID-19×êÑеļäµý»î¶¯¡£´Ë±í£¬RiskIQ»¹¹«¿ªÁËÕâ30¶ą̀·þÎñÆ÷µÄÆëÈ«ÐÅÏ¢£¬²¢Ô¤¼ÆAPT29»áÀûÓÃÕâЩ·þÎñÆ÷³ÖÐøÇÔȡ֪ʶ²úȨ¡£ 


Ô­ÎÄÁ´½Ó£º

https://www.riskiq.com/blog/external-threat-management/apt29-bear-tracks/


4.Python°ä²¼°²È«¸üУ¬½¨¸´PyPI´æ´¢¿âÖжà¸ö·ì϶


4.jpg


PythonÍŶӰ䲼°²È«¸üУ¬½¨¸´ÁËPython Package Index (PyPI)´æ´¢¿âÖеÄ3¸ö·ì϶¡£Õâ´Î½¨¸´µÄ·ì϶ÖУ¬×îÑϳÁµÄÒ»¸öÔÊÐí¹¥»÷ÕßÔÚPyPIµÄ»ù´¡ÉèÊ©ÉÏÔËÐкÅÁÀ´ÇÔÈ¡´úÂë¿âÖеÄÁîÅÆ»òÆäËüÃÜÂ룬²¢ÇÒÕâЩÁîÅÆ»òÃÜÂ뻹¿É±»ÓÃÀ´½Ó¼ûºÍ´Û¸ÄPyPI´úÂë¡£Áí±íÁ½¸ö·ì϶ÖУ¬Ò»¸öÔÊÐí¹¥»÷Õßɾ³ý²»ÔÚÆä½ÚÔìϵÄÏîÖ÷ÕÅÎĵµ£¬¶øÁíÒ»¸öÔÊÐí¹¥»÷Õßɾ³ý²»ÔÚÆä½ÚÔìϵÄÏîÄ¿ÖеĽÇÉ«¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/python-team-fixes-bug-that-allowed-takeover-of-pypi-repository/


5.Kaspersky°ä²¼2021ÄêQ2 DDoS¹¥»÷Ì¬ÊÆµÄ·ÖÎö»ã±¨


5.jpg


Kaspersky°ä²¼ÁË2021ÄêQ2 DDoS¹¥»÷Ì¬ÊÆµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö£¬Q2Ïà¶Ô±ÈÁ¦³Á¾²£¬ÓëÉÏÒ»¼¾¶ÈÏà±ÈDDoS¹¥»÷×ÜÊýÂÔÓнµÂ䣬Ԥ¼ÆÕâÒ»Ç÷Ïò»á³ÖÐøµ½Q3¡£´Ë±í£¬Q2 DDoS¹¥»÷³ÖÐøµÄ¹¦·òÒ²¿¿½ü³£Ì¬£¬·ÖÆçʱÆÚÖ®¼äµÄµßô¤·ù¶È²»³¬¹ý30%¡£Q2Ôâµ½DDoS¹¥»÷×î¶àµÄÊÇÃÀ¹ú£¨36%£©£¬Æä´ÎÊÇÖйú£¨10.28%£©ºÍ²¨À¼£¨6.34%£©¡£DDoS¹¥»÷×î»îÔ¾µÄÒ»ÌìÊÇ6ÔÂ2ÈÕ£¬²úÉúÁË1164´Î¹¥»÷£»×µÄÒ»´Î¹¥»÷³ÖÐøÁË776Ó×ʱ£¨³¬¹ý32Ì죩£»60%µÄDDoS¹¥»÷ʹÓÃÁËUDPºé·º£»½©Ê¬ÍøÂçC&C·þÎñÆ÷×î¶àµÄÊÇÃÀ¹ú£¨47.95%£©¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/ddos-attacks-in-q2-2021/103424/


6.Kaspersky°ä²¼2021ÄêQ2 APT¹¥»÷Ì¬ÊÆµÄ·ÖÎö»ã±¨


6.jpg


Kaspersky°ä²¼ÁË2021ÄêQ2 APT¹¥»÷Ì¬ÊÆµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö£¬×î½ü¼¸¸öÔ²úÉúÁ˶àÆð¹©¸øÁ´¹¥»÷£¬ÆäÖв»·¦¹¥»÷¼¼Êõº¬Á¿µÍµ«Í¬Ñù³É¹¦£¬ÀýÈçBountyGlad¡¢CoughingDownºÍÕë¶ÔCodecovµÄ¹¥»÷¡£APTÍÅ»ïÖØÒªÊ¹ÓÃÉç»á¹¤³Ì¹¥»÷³õ²½ÈëÇÖÖ¸±êÍøÂ磬ҲÓв¿ÃÅ×éÖ¯ÀûÓÃÁãÈÕ·ì϶¹¥»÷ÍøÂç¡£APT×éÖ¯»¹»á²»ÐÝˢк͸üÐÂËûÃǵŤ¾ß¼¯£º²»½öÔ̺¬ÐÂÆ½Ì¨£¬»¹Ô̺¬Ê¹ÓÃµÄÆäËü˵»°¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/apt-trends-report-q2-2021/103517/