ºÚ¿ÍDataÔÚ°µÍøÏúÊÛÔ¼3.5ÒÚÌõAsk.FMÓû§µÄ¼Í¼
°ä²¼¹¦·ò 2022-09-22
¾ÝýÌå9ÔÂ20ÈÕ±¨Â·£¬ÃûΪDataµÄºÚ¿ÍÔÚ°µÍøÏúÊÛÉç½»ÍøÕ¾Ask.FM(ASKfm)µÄÓû§Êý¾Ý¡£Data°µÊ¾£¬Âò¼ÒÄܹ»»ñµÃ607¸ö´æ´¢¿âÒÔ¼°ËûÃǵÄGitlab¡¢Jira¡¢ConfluenceÊý¾Ý¿â£¬Êý¾Ý¿âÖÐÓÐÔ¼3.5Òڱʼͼ£¬ÆäÖÐÔ¼4500ÍòÌõʹÓõ¥µãµÇ¼½øÐеǼ¡£¾ÝϤ£¬¹¥»÷ÕßÔÚ2019Äê³õ´Î½Ó¼û·þÎñÆ÷£¬ÔÚ2020Äê3ÔÂ14ÈÕ»ñÈ¡ÁËÊý¾Ý¿â¡£Data»¹ÌṩÁ˹¥»÷µÄ¼¼Êõϸ½Ú£¬²¢°µÊ¾Ask.FMÒÀÈ»ºÜ´àÈõ¡£
https://www.databreaches.net/ask-fm-user-database-with-350m-user-records-has-shown-up-for-sale/
2¡¢Malwarebytes×èÖ¹Óû§½Ó¼ûÍйÜÔÚGoogleµÄ·þÎñ
¾Ý9ÔÂ21ÈÕ±¨Â·£¬Malwarebytes½â¾öÁËÒ»¸öÎÊÌ⣬¸ÃÎÊÌâ»á×èÖ¹Óû§½Ó¼ûÍйÜÔÚGoogleÉϵÄÍøÕ¾ºÍ·þÎñ£¬Ô̺¬GoogleËÑË÷ºÍYoutube¡£MalwarebytesÔÚÍÆÎÄÖÐÚ¹ÊÍ˵£¬ÕâÊÇÓÉÓ°Ï칫˾°²È«²úÆ·ÖеÄWeb¹ýÂË×é¼þÄ£¿éµÄÎÊÌâµ¼Öµġ£¸Ã¹«Ë¾ÌṩÁËÒ»ÖÖ½â¾ö²½Ö裬Óû§Äܹ»´ò¿ªMalwarebytes²¢¹Ø¹ØÊµÊ±±£»¤¿¨ÖеÄWeb±£»¤Ñ¡ÏîÀ´½ûÓÃÃýÎóÄ£¿é¡£ÔÚÒ»Ó×ʱºó£¬¸Ã¹©¸øÉÌй©Òѽâ¾öÎÊÌ⣬ËùÓÐЧ»§µÄÈí¼þ½«×ÔÐиüв¢½¨¸´Îó±¨ÎÊÌâ¡£
https://www.bleepingcomputer.com/news/technology/malwarebytes-mistakenly-blocks-google-youtube-for-malware/
3¡¢ÀÕË÷ÍÅ»ïHivÐû³Æ¶ÔŦԼÅÜÂíлá(NYRA)µÄ¹¥»÷ÕÆ¹Ü
ýÌå9ÔÂ20ÈÕ±¨Â·£¬ÀÕË÷ÍÅ»ïHiveÐû³Æ¶ÔŦԼÅÜÂíлá(NYRA)µÄ¹¥»÷ÕÆ¹Ü¡£NYRAÊÇŦԼÈý¸ö×î´óµÄ´¿ÖÖÅÜÂí³¡µÄÔËÓªÉÌ£¬´ËÇ°ÔøÅû¶ÆäÓÚ2022Äê6ÔÂ30ÈÕÔâµ½¹¥»÷£¬Ó°ÏìÁËITÔËÓªºÍÍøÕ¾¡£´Ë±í£¬Óû§µÄÉç»á°²È«ºÅÂë¡¢¼ÝÊ»ÅÆÕÕ¼ø±ðºÅÂë¡¢½¡È«¼Í¼ºÍ½¡È«±£ÏÕÐÅÏ¢¿ÉÄÜÒѾй¶¡£¹¥»÷ÕßÓÚ9ÔÂ19ÈÕÔÚÆäÍøÕ¾°ä²¼Á˾ݳÆÊÇ´ÓNYRAÇÔÈ¡µÄËùÓÐÎļþ£¬×êÑÐÈËÔ±´§Ä¦Êê½ð½»ÉæÒѾʵÏÖ¡£NYRA½«ÎªÊÜÓ°ÏìÓû§ÌṩΪÆÚ24¸öÔµÄExperianÉí·Ý±£»¤·þÎñ¡£
https://www.bleepingcomputer.com/news/security/hive-ransomware-claims-attack-on-new-york-racing-association/
4¡¢2K GamesÓÎϷƽ̨Ôâµ½¹¥»÷²¢±»ÓÃÀ´·Ö·¢RedLine
ýÌå9ÔÂ20Èճƣ¬ÃÀ¹úÊÓÆµÓÎÏ·¿¯ÐÐÉÌ2K GamesÔâµ½¹¥»÷£¬±»ÓÃÀ´·Ö·¢¶ñÒâÈí¼þRedLine¡£±¾ÖܶþÆðÍ·£¬ºÜ¶à2K¿Í»§ÊÕµ½À´×ÔSupportϵͳµÄµç×ÓÓʼþ£¬ÓʼþÔ̺¬Ò»¸öÃûΪ2K Launcher.zipµÄ¸½¼þ£¬¸ÃÎļþÍйÜÔÚ2ksupport.zendesk.comÉÏ£¬¼Ù×°³ÉÁËÒ»¸öеÄÓÎÏ·Æô¶¯Æ÷¡£ÏÂÔØµÄ´æµµÔ̺¬107 MBµÄ¿ÉÖ´ÐÐÎļþ2K Launcher.exe£¬VirusTotalºÍAny.Run°µÊ¾£¬ÕâÊÇÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þRedLine¡£Ä¿Ç°£¬2KËÆºõÒѽ«ÆäSupportϵͳ¹Ø¹Ø£¬Óû§ÎÞ·¨Ê¹ÓõǼʹ´¦½Ó¼ûÆäƱ֤¡£
https://www.bleepingcomputer.com/news/security/2k-game-support-hacked-to-email-redline-info-stealing-malware/
5¡¢×êÑÐÈËÔ±Åû¶OracleÔÆ»ù´¡ÉèÊ©Öеķì϶AttachMe
×êÑÐÈËÔ±ÔÚ9ÔÂ20ÈÕÅû¶ÁËOracleÔÆ»ù´¡ÉèÊ©(OCI)ÖеÄÒ»¸öзì϶AttachMe¡£×êÑÐÈËÔ±³Æ£¬Ö»Óй¥»÷ÕßÕ¼ÓÐÆäOracleÔÆ±êʶ·û(OCID)£¬¾ÍÄܹ»¶ÔÈκÎδ¸½¼ÓµÄ´æ´¢¾í»òÔʺܶ฽¼þµÄ¸½¼Ó´æ´¢¾í½øÐжÁд£¬À´ÇÔÈ¡Ãô¸ÐÊý¾Ý»òͨ¹ý¿ÉÖ´ÐÐÎļþÌáÒé¸ü¾ß·ÛËéÐԵĹ¥»÷¡£¸Ã·ì϶¿ÉÄܵ¼ÖÂȨÏÞÌáÉýºÍ¿ç×â»§½Ó¼û£¬Ò²ÌåÏÖÁËÔÆ×â»§¸ôÀëÔÚÔÆ»ù´¡ÉèÊ©ÖеijÁÒªÐÔ¡£ÔÚÊÕµ½·ì϶»ã±¨ºóµÄ24Ó×ʱÄÚ£¬OracleΪËùÓÐOCIÓû§½¨¸´Á˸÷ì϶£¬¶øÎÞÐèÓû§²ÉÈ¡ÈκδëÊ©¡£
https://www.wiz.io/blog/attachme-oracle-cloud-vulnerability-allows-unauthorized-cross-tenant-volume-access
6¡¢¼ÓÃÜÇ®±Ò¹«Ë¾WintermuteÔâµ½¹¥»÷ËðʧԼ1.6ÒÚÃÀÔª
9ÔÂ20ÈÕ±¨Â·³Æ£¬¼ÓÃÜÇ®±Ò¹«Ë¾WintermuteÒѱ»ºÚ¿ÍÈëÇÖ£¬²¢ÔÚDeFiÒµÎñÖÐËðʧÁË1.622ÒÚÃÀÔª¡£¸Ã¹«Ë¾²¢Î´ÌṩÇÔÈ¡×ʽðµÄ¾ßÌåÐÅÏ¢£¬µ«×êÑÐÈËÔ±ÒÔΪ£¬¹¥»÷Õß¿ÉÄÜÀûÓÃÁËProfanityÖеķì϶¡£WintermuteÊǼÓÃÜÇ®±Òƽ̨µÄ¡°×öÊÐÉÌ¡±£¬ÒÀÈ»Óг¥¸¶ÄÜÁ¦£¬³ÖÓÐÁ½±¶ÓÚ±»µÁÊý¶îµÄ¹ÉȨ¡£²»Í⣬Ԥ¼Æ½ÓÏÂÀ´µÄ¼¸Ìì·þÎñ»áÖжϣ¬ÓÉÓÚ¸ÃÆ½Ì¨ÈÔÔÚÖÂÁ¦¸´ÔÒµÎñ¡£¹«Ë¾CEO Gaevoy°µÊ¾£¬Ô¸Ò⽫´ËÊÂÊÓΪ°×ñÊÂÎñ£¬ÕâÒâζ×ÅËûÃÇÔ¸ÒâÌṩÉͽðÇÒûÓÐÈκÎ˾·¨ºó¹û£¬µ«²»ÖªÂ·¹¥»÷ÕßÊÇ·ñ»á½«±»µÁ×ʽ𷵻¹¸øWintermute¡£
https://therecord.media/cryptocurrency-company-wintermute-says-hackers-stole-160-million/


¾©¹«Íø°²±¸11010802024551ºÅ