NeopetsÍøÕ¾Ô´´úÂëºÍ³¬¹ý6900ÍòÓû§ÐÅÏ¢±»µÁ
°ä²¼¹¦·ò 2022-07-22
¾Ý7ÔÂ20ÈÕ±¨Â·£¬Ðé¹¹³èÎïÍøÕ¾NeopetsµÄÔ´´úÂëºÍ³¬¹ý6900Íò»áÔ±µÄÓ×ÎÒÐÅÏ¢±»µÁ¡£±¾Öܶþ£¬ÃûΪTarTarXµÄºÚ¿ÍÒÔ4¸ö±ÈÌØ±Ò£¨Ô¼ºÏ94,000ÃÀÔª£©µÄ¼ÛÖµÏúÊÛNeopets.comÍøÕ¾µÄÔ´´úÂëºÍÊý¾Ý¿â¡£NeopetsÍŶӰµÊ¾ËûÃÇÒѾ»ñϤ´ËÊÂÎñ£¬²¢ÔÚÖÂÁ¦½â¾öÎÊÌâ¡£¸Ã¹«Ë¾»¹°µÊ¾£¬Ö»Óй¥»÷Õß¿ÉÄÜʵʱ½Ó¼ûÊý¾Ý¿â£¬¸ü¸ÄNeopetsµÄÃÜÂë¿ÉÄܱˮ³µÐ½£¬ÓÉÓÚ¹¥»÷ÕßÄܹ»ÇáËɵز鿴ÐÂÃÜÂë¡£´Ë±í£¬RedditÓû§neo_truths³Æ£¬ÔÚ·¢ÏÖ¸ÃÍøÕ¾´æÔÚ·ì϶ºó£¬ËûÒѾ¶ÔÊý¾Ý¿â½øÐÐÁËÖÁÉÙÒ»Äêδ¾ÊÚȨµÄ½Ó¼û¡£
https://www.bleepingcomputer.com/news/security/neopets-data-breach-exposes-personal-data-of-69-million-members/
2¡¢×êÑÐÍŶӷ¢ÏÖÀàËÆÈðÊ¿¾üµ¶µÄLightning Framework
¾ÝIntezer 7ÔÂ21ÈÕ±¨Â·£¬ÐÂÄ£¿é»¯¶ñÒâÈí¼þLightning Framework¿ÉÓÃÀ´×°ÖÃrootkitºÍºóÃÅ¡£ËüÓµÓдóÁ¿Ö°ÄÜ£¬³ÉΪÕë¶ÔLinuxϵͳ¿ª·¢µÄ×ÔӵĿò¼ÜÖ®Ò»£¬±»³ÆÎªÈðÊ¿¾üµ¶¡£¸Ã¿ò¼ÜÓµÓб»¶¯ºÍ×Ô¶¯Óë¹¥»÷ÕßͨѶµÄÖ°ÄÜ£¬Ô̺¬ÔÚÖ¸±êÉ豸ÉÏ´ò¿ªSSH£¬ÒÔ¼°¶à̬¿ÉËÜÉúºÅÁîºÍ½ÚÔìÅäÖ᣶ñÒâÈí¼þµÄÖ÷ÌâÊÇÒ»¸öÏÂÔØ·¨Ê½£¨¡°kbioset¡±£©ºÍÒ»¸öÖ÷ÌâÄ£¿é£¨¡°kkdmflush¡±£©£¬»¹Ê¹ÓÃÁË·ÂðÓòÃû£¬²¢¼Ù×°³ÉSeahorse GNOME passwordºÍ¼ÓÃÜÃÜÔ¿ÖÎÀíÆ÷£¬ÒÔÈÆ¹ýϵͳµÄ¼ì²â¡£
https://www.intezer.com/blog/research/lightning-framework-new-linux-threat/
3¡¢KasperskyÅû¶»ùÓÚRustµÄÐÂÀÕË÷Èí¼þLunaµÄϸ½Ú
7ÔÂ20ÈÕ£¬Kaspersky·¢ÏÖ¼ÌBlackCatºÍHiveÖ®ºóµÄµÚÈý¸ö»ùÓÚRustµÄÀÕË÷Èí¼þLuna£¬Ä¿Ç°ÈÔÔÚ¿ª·¢ÖС£ËüÄܹ»ÔÚ Windows¡¢LinuxºÍESXiϵͳÉÏÔËÐУ¬ÆäÖÐLinuxºÍESXiµÄÑù±¾¶¼ÊÇʹÓÃÒ»ÑùµÄÔ´´úÂë±àÒëµÄ£¬ÓëWindowsµÄ°æ±¾Ïà±Å×ÐһЩÇá΢µÄ±ä¶¯¡£Ëü»¹Ê¹ÓÃÁËÒ»ÖÖ²»Ì«³£¼ûµÄ¼ÓÃܹ滮£¬Í¨¹ýCurve25519ºÍAESµÄ×éºÏ½øÐмÓÃÜ¡£´Ë±í£¬ÓÉÓÚ¶þ½øÔìÎļþÖÐÓ²±àÂëµÄÊê½ð¼Í¼ÖÐµÄÆ´Ð´ÃýÎó£¬×êÑÐÈËÔ±´§Ä¦ÆäÖ÷Ì⿪·¢ÈËÔ±Óë¶íÂÞ˹Óйء£
https://securelist.com/luna-black-basta-ransomware/106950/
4¡¢LinkedInÈÔÊÇ2022ÄêQ2´¹µö»î¶¯Öб»·ÂÕÕ×î¶àµÄÆ·ÅÆ
Check PointÔÚ7ÔÂ19ÈÕ°ä²¼ÁË2022ÄêµÚ¶þ¼¾¶ÈÆ·ÅÆÍøÂç´¹µöµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö£¬ÔÚQ2µÄ´¹µö»î¶¯ÖÐLinkedInÈÔÃûÁаñÊ×£¬ÓëQ1Ïà±È¼ÙðLinkedInµÄÕ¼±È´Ó52%½µÂäµ½45%¡£È»¶ø£¬ËüÓë±»·ÂðµÄµÚ¶þ´óÆ·ÅÆMicrosoftÖ®¼äÈÔÓµÓÐÏ൱´óµÄ¾àÀ루½öΪ13%£©¡£Æä´ÎÊÇDHL£¨12%£©¡¢Amazon(9%)¡¢Apple(3%)ºÍAdidas(2%)¡£ÆäÖУ¬¼ÙÒâLinkedInµÄ´¹µö»î¶¯ÊÔͼ·ÂÕÕ·¢Ë͸øÓû§µÄ³£¼ûÐÂÎÅ£¬Õë¶ÔMicrosoftµÄ´¹µö»î¶¯ÖØÒªÊÇÒªÇóÑéÖ¤OutlookÕÊ»§ÒÔÇÔÈ¡Óû§ÃûºÍÃÜÂë¡£
https://blog.checkpoint.com/2022/07/19/linkedin-still-number-one-brand-to-be-faked-in-phishing-attempts-while-microsoft-surges-up-the-rankings-to-number-two-spot-in-q2-report/
5¡¢¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½¹¥»÷£¬ÏµÍ³ÈÔÔÚ¸´ÔÖÐ
¾ÝýÌå7ÔÂ21ÈÕ±¨Â·£¬¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½ÁËÍøÂç¹¥»÷¡£»¬Ìú¬µØÓò½ÌÓý¾Ö°µÊ¾£¬ÔÚÔâµ½ÍøÂç¹¥»÷ºó£¬ÆäÔÚÖÂÁ¦¸´ÔITϵͳ²¢±£»¤½ÌÈËÔ±¹¤¡¢Ñ§ÉúºÍ¼ÒÍ¥µÄÓ×ÎÒÐÅÏ¢¡£ÉÐδעÃ÷¹¥»÷Õß¿ÉÄܽӼûÁËÄÄЩÀàÐ͵ÄÎļþ£¨ÈôÊÇÓеϰ£©£¬»òÕßÊÇ·ñ»á¸¶·ÑÀ´³ÁнӼûϵͳ¡£½²»°È˳ƣ¬½üÄêÀ´Õë¶Ô½ÌÓý²¿ÃŵĹ¥»÷Ô½À´Ô½ÆµÈÔ£¬Regina¹«Á¢Ñ§ÌÃÔÚ½ñÄê5ÔÂÔâµ½Á˹¥»÷²¢¹Ø¹ØÁËËùÓлùÓÚ»¥ÁªÍøµÄϵͳ£¬2021Äê1ÔÂÆ¤¶ûµØÓòµÄ½ÌÓý¾ÖÔøÔâµ½¹¥»÷¡£
https://www.cbc.ca/news/canada/kitchener-waterloo/waterloo-region-district-school-board-cyber-attack-1.6526731?cmp=rss
6¡¢Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üУ¬×ܼƽ¨¸´45¸ö·ì϶
7ÔÂ20ÈÕ£¬Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üУ¬×ܼƽ¨¸´45¸ö·ì϶¡£ÆäÖнÏΪÑϳÁµÄÊÇCisco Nexus DashboardÖеÄËÁÒâºÅÁîÖ´Ðзì϶£¨CVE-2022-20857£¬CVSSÆÀ·Ö9.8£©¡¢ÈÝÆ÷Ó³Ïñ¶Áд·ì϶£¨CVE-2022-20858£©ºÍ¿çÕ¾ÒªÇóαÔì·ì϶£¨CVE-2022-20861£©¡£³ý´ËÖ®±í£¬Cisco»¹½¨¸´ÁËÆäSmall Business RV110W¡¢RV130¡¢RV130WºÍRV215W·ÓÉÆ÷ÖеÄ35¸ö·ì϶£¬ËüÃÇ¿ÉÄܵ¼ÖÂËÁÒâ´úÂëÖ´ÐкÍDoS¹¥»÷¡£
https://thehackernews.com/2022/07/cisco-releases-patches-for-critical.html


¾©¹«Íø°²±¸11010802024551ºÅ