ÐŰ²±êί°ä²¼¡¶»¥ÁªÍøÆ½Ì¨¼°²úÆ··þÎñÒþÖÔºÍ̸ҪÇó¡·µÄÕ÷Ç󶨼û¸å

°ä²¼¹¦·ò 2022-06-01
1¡¢ÐŰ²±êί°ä²¼¡¶»¥ÁªÍøÆ½Ì¨¼°²úÆ··þÎñÒþÖÔºÍ̸ҪÇó¡·µÄÕ÷Ç󶨼û¸å


5ÔÂ26ÈÕ£¬È«¹úÐÅÏ¢°²È«³ß¶È»¯¼¼ÊõίԱ»á°ä²¼ÁË¡¶ÐÅÏ¢°²È«¼¼Êõ »¥ÁªÍøÆ½Ì¨¼°²úÆ··þÎñÒþÖÔºÍ̸ҪÇó¡·µÄÕ÷Ç󶨼û¸å¡£¸ÃÒªÇó»®¶¨ÁË»¥ÁªÍøÆ½Ì¨¼°²úÆ··þÎñÒþÖÔºÍ̸¼ÙÔ취ʽ¡¢¾ßÌåÄÚÈÝ¡¢°ä²¼´ó¾Ö£¬Ôö³¤ÒþÖÔºÍ̸µÄ¿É¶ÁÐÔ¡¢Í¨Ã÷ÐÔ£¬ÒÔ¼°´¦ÖÃÒþÖÔºÍ̸ÓйصÄÕùÒé¾À·×µÈ·½ÃæµÄÒªÇ󡣺ÏÓÃÓڹ淶Ó×ÎÒÐÅÏ¢´¦ÖÃÕßÔì¶©¡¢°ä²¼ÒþÖÔºÍ̸µÄ¹ý³Ì£¬Ò²ºÏÓÃÓÚÖ÷¹Ü¼à¹Ü²¿ÃÅ¡¢µÚÈý·½ÆÀ¹À»ú¹¹µÈ¶ÔÒþÖÔºÍ̸½øÐмල¡¢ÖÎÀíºÍÆÀ¹À¡£¶¨¼û¿ÉÓÚ½ñÄê7ÔÂ25ÈÕǰ·´À¡µ½ÐŰ²±êÎ¯ÃØÊé´¦¡£


https://www.tc260.org.cn/front/postDetail.html?id=20220526180528


2¡¢¸ç˹´ïÀè¼ÓµÄ¹«¹²ÎÀÉúϵͳÔâµ½HiveÍÅ»ïµÄÀÕË÷¹¥»÷


¾ÝýÌ屨·£¬5ÔÂ31ÈÕÔçÉÏ£¬¸ç˹´ïÀè¼Ó¹«¹²ÎÀÉú·þÎñ»ú¹¹£¨³ÆÎª¸ç˹´ïÀè¼ÓÉç»á±£ÏÕ»ù½ð»òCCCS£©ÍøÂçÉϵÄËùÓÐϵͳ¶¼Ôâµ½ÁËHiveÀÕË÷¹¥»÷£¬²¢´¦ÓÚÀëÏß״̬¡£CCCS´Ë¿ÌÕýÖÂÁ¦¸´Ô­ÊÜÓ°ÏìµÄϵͳºÍ·þÎñ£¬µ«µ½Ä¿Ç°ÎªÖ¹£¬»¹ÎÞ·¨È·¶¨±ØÒª¶à³¤¹¦·ò¡£²»¾Ãǰ£¬¸ç˹´ïÀè¼ÓµÄ¶à¸öµ±¾Ö»ú¹¹Ôâµ½ÁËContiµÄ¹¥»÷£¬²¢°ä·¢¹ú¶È½øÈ봹Σ״̬¡£AdvIntel¸ß¶ÈÈ·¶¨ContiÓëHIVEÓйØÁª£¬ÇÒÁ½¸öÍÅ»ïµÄºÏ×÷Òѳ¬¹ý°ëÄ꣬ÖÁÉÙ´Ó2021Äê11ÔÂ¾ÍÆðÍ·ÁË¡£


https://www.bleepingcomputer.com/news/security/costa-rica-s-public-health-agency-hit-by-hive-ransomware/


3¡¢Spid3rÍÅ»ïÐû³ÆÒÑÈëÇÖ°×¶íÂÞ˹¶à¸öµ±¾Ö»ú¹¹µÄÍøÕ¾


¾Ý5ÔÂ30ÈÕ±¨Â·£¬AnonymousµÄ´ÓÊô×éÖ¯Spid3rÐû³ÆÈëÇÖÁ˰׶íÂÞ˹µ±¾ÖµÄÍøÕ¾¡£¸ÃÍÅ»ïÔÚTwitterÉϰ䲼ÁËÓë°×¶íÂÞ˹µ±¾ÖÓйصĸ÷ÀàÍøÕ¾µÄ½ØÍ¼£¬Ô̺¬½»Í¨²¿¡¢Ë¾·¨²¿ºÍ¾­¼Ã²¿£¬²¢ÅäÎijÆËûÃǶ԰׶íÂÞ˹µ±¾ÖÌáÒéÁË´ó¹æÄ£¹¥»÷£¬¸Ã¹ú×î´óÈ·µ±¾ÖÍøÕ¾¾ùÒÑÀëÏß¡£´Ë±í£¬Æä½ÌÓý²¿¡¢¹ú¶È˾·¨ÐÅÏ¢ÖÐÐÄ¡¢ÄÚÕþ²¿¡¢¹ú¶Èº£¹ØÎ¯Ô±»á¡¢¹ú¶ÈίԱ»áµÄÍøÕ¾Ò²³öÏÖÁËÎÊÌ⡣Ŀǰ£¬´ó²¿ÃÅÊÜÓ°ÏìµÄÍøÕ¾ÒѳÁÐÂÉÏÏß¡£ 


https://www.infosecurity-magazine.com/news/anonymous-claims-attacks-against/


4¡¢×êÑÐÈËÔ±·¢ÏÖ¿Éͨ¹ýµç»°½Ù³ÖWhatsAppÕÊ»§µÄ»î¶¯


ýÌå5ÔÂ30ÈÕ±¨Â·£¬CloudSEK·¢ÏÖÁËÒ»³¡ÔÚ½øÐеÄWhatsAppÕË»§½Ù³Ö»î¶¯¡£¸Ã»î¶¯µÄÕ½ÊõºÜµ¥Ò»£¬¹¥»÷Õß´òµç»°¸øÖ¸±ê£¬ÓÕÆ­ËûÃDz¦´òÒÔ405»ò67¿ªÍ·µÄµç»°ºÅÂë¡£¼¸·ÖÖÓºóËûÃǵÄWhatsAppÕÊ»§»á±»×¢Ïú£¬¹¥»÷Õß¾ÍÄÜÊÕÊÜËûÃÇ¡£Æäʵ£¬ÕâЩºÅÂëÊÇJioºÍAirtelÔÚÒÆ¶¯Óû§Ã¦Ê±½øÐкô½Ð×ªÒÆµÄ·þÎñÒªÇ󣬵±Óû§²¦´òºóÏÖʵÉÏ»á×ªÒÆµ½¹¥»÷ÕߵĺÅÂ룬²¢Ñ¸¿ìÆô¶¯WhatsApp×¢²á¹ý³ÌÒÔ»ñȡָ±êµÄºÅÂ룬¶øºóÒªÇóͨ¹ýµç»°·¢ËÍOPT¡£Ä¿Ç°£¬ÕâÖÖ¹¥»÷½öÕë¶ÔÓ¡¶È¡£


https://securityaffairs.co/wordpress/131807/hacking/whatsapp-otp-scam.html


5¡¢Group-IB³Æ2021Äê57%µÄÍøÂç·¸×ï»î¶¯ÓëÚ¿Æ­ÓйØ


Group-IBÔÚ5ÔÂ26ÈÕ·ÖÏíÁËÆä¶Ô¸÷ÀàÚ¿Æ­¹æ»®µÄ×êÑÐÁ˾Ö¡£Group-IB³Æ£¬Ú¿Æ­Õ¼ËùÓо­¼Ã¶¯»úµÄÍøÂç·¸×ïµÄ57%£¬´ËÀ๥»÷ÍÅ»ïµÄÊýÁ¿Ô¾ÉýÖÁ390¸ö£¬´´Ïº¹Çàиߣ¬ÊÇÈ¥Ä꣨½ü110¸ö£©µÄ3.5±¶¡£ÓÉÓÚSaaS£¨Ú¿Æ­¼´·þÎñ£©£¬2021ÄêµÄÒ»¸öÚ¿Æ­ÍÅ»ïÖеijÉÔ±ÊýÁ¿±È2020ÄêÔö³¤ÁË10±¶£¬´Ë¿Ì´ïµ½100ÈË¡£¹¥»÷Õ߸üϲ»¶Ê¹Óô¹µö¹¥»÷ (18%)¡¢Ú¿Æ­ºÍڲƭ(57%)ÒÔ¼°¶ñÒâÈí¼þºÍÃûÓþ¹¥»÷ (25%) µÈ²½Öè¡£ÔÚÖж«¡¢ÑÇÌ«µØÓòºÍÅ·ÖÞ£¬Ã¿Ô¼ÙÒâÆ·ÅÆµÄÚ¿Æ­±ðÀëÔö³¤ÁË150%¡¢83%ºÍ89%¡£


https://www.group-ib.com/media/digital-risk-summit-2022/


6¡¢ÆÕ»ªÓÀ·°ä²¼¹ØÓÚ2022ÄêÈ«Çò¾­¼Ã·¸×ïµÄµ÷²é»ã±¨


¾ÝýÌå5ÔÂ30ÈÕ±¨Â·£¬ÆÕ»ªÓÀ·°ä²¼ÁË2022ÄêÈ«Çò¾­¼Ã·¸×ïµÄµ÷²é»ã±¨¡£¸Ã»ã±¨ÖØÒª½ÒʾÁËÓ¢¹úµÄµ÷²éÁ˾Ö£¬ÆäÖÐÖ¸³ö£¬Ó¢¹ú64%µÄÆóÒµÔÚ´Óǰ24¸öÔÂÄÚ¾­Àú¹ýڲƭµÈ½ðÈÚ·¸×±È2020Ä꣨56%£©ºÍ2018Ä꣨50%£©¶¼¶à£¬Ò²¸ßÓÚÈ«Çò£¨46%£©µÄ¾ùÔÈˮƽ¡£ÍøÂç·¸×ïÊÇ×î³£¼ûµÄڲƭÀàÐÍ£¬ÆäÕ¼±È´Ó2020ÄêµÄ42%½µÂäµ½2022ÄêµÄ32%£¬¶ø¹©¸øÁ´ÊÂÎñÕ¼19%¡£ÔÚÓ¢¹ú£¬51%µÄڲƭ»î¶¯¶¼Äܹ»×·Òäµ½±í²¿¸÷·½£¬ÆäÖÐÅÅÃûǰÈýµÄ×ï¿ý»öÊ×Êǿͻ§¡¢ºÚ¿ÍºÍ¹©¸øÉÌ¡£


https://www.pwc.co.uk/services/forensic-services/insights/global-economic-crime-survey-2022-uk-findings.html