ÑÇÖÞijÁ½¸öÊý¾ÝÖÐÐı»ºÚÉæ¼°Æ»¹û¡¢Î¢ÈíºÍÈýÐǵȹ«Ë¾

°ä²¼¹¦·ò 2023-02-22

1¡¢ÑÇÖÞijÁ½¸öÊý¾ÝÖÐÐı»ºÚÉæ¼°Æ»¹û¡¢Î¢ÈíºÍÈýÐǵȹ«Ë¾


¾ÝýÌå2ÔÂ21ÈÕ±¨Â·£¬ºÚ¿ÍÈëÇÖÁËλÓÚÑÇÖÞµÄÁ½¸öÊý¾ÝÖÐÐÄ£¬ÇÔÈ¡ÁËÆ»¹û¡¢ÓŲ½¡¢Î¢Èí¡¢ÈýÐÇ¡¢°¢Àï°Í°ÍµÈ¿Æ¼¼¹«Ë¾µÄµÇ¼ƾ֤£¬²¢Ô¶³Ì½Ó¼ûÁËÕâЩ×éÖ¯µÄ¼à¿ØÉãÏñÍ·¡£°²È«¹«Ë¾Resecurity×î³õÔÚ2021Äê9ÔÂÈ·¶¨ÁËÊý¾Ýй¶ÊÂÎñ£¬µ«ÊÇÖ±µ½2023Äê2ÔÂ20ÈÕ£¬ºÚ¿ÍMinimalman²ÅÔÚºÚ¿ÍÂÛ̳BreachforumsÉϹ«¿ªÁËÕâЩÊý¾Ý¡£¾ÝϤ£¬ÕâÁ½¸öÊý¾ÝÖÐÐͼÔÚ2023Äê1ÔÂÇ¿ÔìËùÓпͻ§¸ü¸ÄÃÜÂë¡£


https://www.hackread.com/data-centers-hack-data-leak/


2¡¢ÆÏÌÑÑÀÊÐÕþ¹©Ë®¹«Ë¾Aguas do PortoÔâµ½LockbitµÄ¹¥»÷


¾Ý2ÔÂ20ÈÕ±¨Â·£¬ÆÏÌÑÑÀÊÐÕþ¹©Ë®¹«Ë¾Aguas do PortoÔâµ½ÁËÀÕË÷ÍÅ»ïLockbitµÄ¹¥»÷¡£LockbitÒѽ«Aguas do PortoÔö³¤µ½ÆäTorÍøÕ¾µÄ±»¹¥»÷Ö¸±êÁбíÖУ¬²¢ÍþвҪй¶±»µÁÊý¾Ý£¬½ØÖ¹ÈÕÆÚΪ2023Äê3ÔÂ7ÈÕ¡£µ«ÉÐδ°ä²¼±»µÁÊý¾ÝÑù±¾×÷Ϊ¹¥»÷Ö¤¾Ý£¬Òò¶ø²»Ã÷ÏÔ¸ÃÍÅ»ïÇÔÈ¡µÄÊý¾ÝÁ¿ºÍÊý¾ÝÀàÐÍ¡£¸Ã¹©Ë®¹«Ë¾ÓÚ1ÔÂ30ÈÕ³ÆÆäÔâµ½¹¥»÷£¬²¿ÃÅ·þÎñÊܵ½Ó°Ï죬µ«¹©Ë®ºÍÎÀÉúÉèÊ©²¢Î´ÊÜÓ°Ïì¡£


https://securityaffairs.com/142477/cyber-crime/lockbit-water-utility-aguas-do-porto.html 


3¡¢ÀÕË÷ÍÅ»ï0mega¹«¿ªÃÀ¹úAviacode³¬¹ý200 GBµÄÎļþ


ýÌå2ÔÂ20Èճƣ¬0mega¹«¿ªÁËAviacode³¬¹ý200 GBµÄÎļþ¡£AviacodeÖØÒªÌṩҽÁƱàÂë·þÎñ¡¢Ò½ÁƱàÂëÉ󼯡¢±àÂë»Ø¾øÖÎÀí¡¢ÁÙ´²Îĵµ¸Ä½øÒÔ¼°Õ˵¥ºÍË÷ÅâµÄÊÕÈëÖÜÆÚÖÎÀí¡£2ÔÂ11ÈÕ£¬0mega°ä²¼Á˱»µÁÊý¾Ý£¬ÆäÖÐÔ̺¬ÓйØÔ±¹¤ºÍ³Ð°üÉ̵ÄÐÅÏ¢¡£0mega½²»°È˳Æ£¬ËûÃÇÔçÔÚ2023Äê1ÔÂ1ÈվͼÓÃÜÁËAviacode£¬µ«¸Ã¹«Ë¾´Óδ»ØÓ¦¹ýËûÃÇ¡£½ØÖÁĿǰ£¬Aviacode¼°Æäĸ¹«Ë¾GeBBS¾ùδ»ØÓ¦×êÑÐÈËÔ±¹ØÓÚ´ËÊÂÎñµÄѯÎÊ¡£


https://www.databreaches.net/aviacode-remains-silent-after-0mega-dumps-200-gb-of-their-files/


4¡¢SideCopyÕë¶ÔÓ¡¶ÈÈ·µ±¾Ö»ú¹¹·Ö·¢ºóÃÅReverseRAT


2ÔÂ21ÈÕ±¨Â·³Æ£¬°²È«¹«Ë¾ThreatMon·¢ÏÖÁËÕë¶ÔÓ¡¶Èµ±¾Ö»ú¹¹µÄÓã²æÊ½´¹µö»î¶¯£¬Ö¼ÔÚ·Ö·¢ÃûΪReverseRATµÄºóÃÅ¡£¸Ã»î¶¯±»¹éÒòÓÚSideCopyÍŻϰȾʼÓÚÒ»·âÔ̺¬ÆôÓúêµÄWordÎĵµµÄµç×ÓÓʼþ£¬¸ÃÎĵµ¼Ù×°³ÉÓ¡¶ÈͨѶ²¿¹ØÓÚAndroidÍþвºÍÔ¤·ÀµÄÕ÷ѯ¡£Ò»µ©´ò¿ªÎļþ²¢ÆôÓú꣬Ëü¾Í»á´¥·¢¶ñÒâ´úÂëµÄÖ´ÐУ¬´Ó¶øµ¼ÖÂÔÚµÄϵͳÉÏ×°ÖÃReverseRAT¡£ReverseRATµÄÖ°ÄÜÔ̺¬½ØÆÁ¡¢ÏÂÔØºÍÖ´ÐÐÎļþÒÔ¼°½«ÎļþÉÏ´«µ½C2·þÎñÆ÷µÈ¡£


https://thehackernews.com/2023/02/researchers-warn-of-reverserat-backdoor.html


5¡¢ÀûÎïÆÖNHSÒ½ÔºÐÅÈλù½ðÉÏÍòÃûÔ±¹¤µÄÓ×ÎÒÐÅϢй¶


ýÌå2ÔÂ17ÈÕ±¨Â·£¬ÀûÎïÆÖNHSÒ½ÔºÐÅÈλù½ðµÄÔ¼14000ÃûÔ±¹¤Òѱ»·î¸æ£¬ÓÉÓÚ±¨´ðÃýÎó£¬ËûÃǵÄÊý¾ÝÒÑй¶¡£¾ÝϤ£¬Ò»·ÝÔ̺¬¹¤×ÊÐÅÏ¢µÄÎļþ±»·¢Ë͸øÁËÊý°ÙÃûNHS¾­ÀíºÍ24¸ö±í²¿ÕË»§£¬Éæ¼°ÐÕÃû¡¢NI±àºÅ¡¢ÐÔ±ð¡¢ÖÖ×åºÍнˮµÈ¡£Ä¿Ç°£¬24¸ö±í²¿ÊÕ¼þÈ˾ùÒÑÊÕµ½Í¨Öª²¢È·ÈÑþ³ØýÁ˸ÃÎļþ¡£ÂÉËùµÄ˾·¨×ܼవʾ£¬ÈôÊÇÓ×ÎÒÐÅÏ¢±»·¢Ë͸øÃýÎóµÄÊÕ¼þÈË£¬·¢¼þÈËÏÔÖøÎ¥·´ÁËGDPR£¬Ô±¹¤ÓÐÀíÓÉ»ñµÃÅâ³¥¡£


https://www.infosecurity-magazine.com/news/data-leak-hits-thousands-of-nhs/


6¡¢Varonis°ä²¼¹ØÓÚÀÕË÷Èí¼þHardBit 2.0µÄ·ÖÎö»ã±¨


2ÔÂ20ÈÕ£¬Varonis°ä²¼Á˹ØÓÚÀÕË÷Èí¼þHardBit 2.0µÄ·ÖÎö»ã±¨¡£HardBitµÄµÚÒ»¸ö°æ±¾ÓÚ2022Äê10Ô±»·¢ÏÖ£¬2.0°æÓÚ2022Äê11ÔÂÍÆ³ö£¬ÒÀÈ»ÊÇĿǰʢÐеıäÌå¡£Óë´óÎÞÊýÀÕË÷Èí¼þ·ÖÆç£¬HardBitûº±¼û¾ÝÐ¹Â¶ÍøÕ¾£¬Ò²Ã»ÓÐʹÓÃË«³ÁÀÕË÷Õ½Êõ¡£¹ØÓÚ¼ÓÃܽ׶Σ¬HardBit 2.0²¢²»ÏñºÜ¶àÀÕË÷Èí¼þÄÇÑù½«¼ÓÃÜÊý¾ÝдÈëÎļþ¸±±¾²¢É¾³ýÔ­¼þ£¬¶øÊÇ´ò¿ªÎļþÓüÓÃÜÊý¾Ý¸²¸ÇÆäÄÚÈÝ¡£ÕâÖÖ²½Öèʹ×êÑÐÈËÔ±¸üÄѻָ´Ô­Ê¼Îļþ£¬²¢¿É¼Ó¿ì¼ÓÃÜ¿ìÂÊ¡£


https://www.varonis.com/blog/hardbit-2.0-ransomware