·áÌïÔÆ·þÎñÅäÖÃÃýÎóй¶ÑÇÖ޺ʹóÑóÖÞ¿Í»§ÐÅÏ¢Ô¼ÆßÄê
°ä²¼¹¦·ò 2023-06-021¡¢·áÌïÔÆ·þÎñÅäÖÃÃýÎóй¶ÑÇÖ޺ʹóÑóÖÞ¿Í»§ÐÅÏ¢Ô¼ÆßÄê
¾Ý5ÔÂ31ÈÕ±¨Â·£¬·áÌïÆû³µ·¢ÏÖÁËÁí±íÁ½¸öÅäÖÃÃýÎóµÄÔÆ·þÎñ£¬Ð¹Â¶Á˳µÖ÷µÄÓ×ÎÒÐÅÏ¢³¬¹ýÆßÄê¡£µÚÒ»¸öÔÆ·þÎñÔÚ2016Äê10ÔÂÖÁ2023Äê5ÔÂÆÚ¼äй¶ÁËÑÇÖ޺ʹóÑóÖÞ·áÌï¿Í»§µÄÓ×ÎÒÐÅÏ¢£¬¸ÃÆû³µÔì×÷ÉÌÉÐδעÃ÷Óм¸¶à¿Í»§Êܵ½Õâ´ÎÊÂÎñµÄÓ°Ïì¡£µÚ¶þ¸öÔÆ·þÎñÔÚ2015Äê2ÔÂ9ÈÕÖÁ2023Äê5ÔÂ12ÈÕÆÚ¼ä¶³ö£¬Ô̺¬ÈÕ±¾Ô¼260000¸ö¿Í»§µÄÆû³µµ¼º½ÏµÍ³ÓйصÄÐÅÏ¢¡£ÊÜÓ°ÏìµÄ³µÁ¾ÊÇ·áÌï×ÓÆ·ÅÆÀ׿ËÈøË¹µÄ³µÐÍ¡£·áÌﰵʾ£¬ËüÒѾִÐÐÁËÒ»¸öϵͳ£¬Äܹ»¶¨ÆÚ¼à¿ØÆäËùÓл·¾³ÖеÄÔÆÅäÖúÍÊý¾Ý¿âÉèÖã¬ÒÔÔ¤·À½«À´ÔٴγöÏÖ´ËÀàÎÊÌâ¡£
https://www.bleepingcomputer.com/news/security/toyota-finds-more-misconfigured-servers-leaking-customer-info/
2¡¢ÉúÎï¼¼Êõ¹«Ë¾Enzo Biochem½ü250ÍòÈ˵ÄÁÙ´²Êý¾Ý±»µÁ
¾ÝýÌå6ÔÂ1ÈÕ±¨Â·£¬ÉúÎï¼¼Êõ¹«Ë¾Enzo BiochemÔâµ½ÀÕË÷¹¥»÷£¬µ¼ÖÂÔ¼2470000È˵ÄÁÙ´²²âÊÔÐÅϢй¶¡£EnzoÔì×÷ºÍÏúÊÛ»ùÓÚDNAµÄ²âÊÔÒÔ¼ì²â²¡¶¾ºÍϸ¾ú¼²²¡£¬Ô̺¬COVID-19ºÍ°©Ö¢¡£¸Ã¹«Ë¾ÔÚ4ÔÂ11ÈÕ·¢ÏÖ¿Í»§ÐÕÃûºÍ²âÊÔÐÅÏ¢£¬ÒÔ¼°Ô¼600000¸öÉç»á°²È«ºÅÂë±»½Ó¼û£¬Ä¿Ç°Ã»ÓÐÀÕË÷ÍŻﰵʾ¶ÔÕâ´Î¹¥»÷ÕÆ¹Ü¡£Enzo³ÆÒѽ«ÆäϵͳÓ뻥ÁªÍø¶Ï¿ªÏνӣ¬´Ë¿ÌÈÔÔÚµ÷²é´ËÊÂÎñ¡£
https://therecord.media/clinical-test-data-of-enzio-biochem-stolen
3¡¢ÑÇÂíÑ·ÒòRingºÍAlexa¼Óº¦ÒþÖÔÃæ¶Ô3000ÍòÃÀÔª·£¿î
ýÌå5ÔÂ31Èճƣ¬ÑÇÂíÑ·½«Ö§¸¶3000ÍòÃÀÔªµÄ·£¿î£¬ÒÔ½â¾öÃÀ¹úFTC¶ÔÆäRingºÍAlexaÓйصļӺ¦ÒþÖÔµÄÖ¸¿Ø¡£Í¶Ë߳ƣ¬RingÊÚÓèÆäÔ±¹¤ºÍ³Ð°üÉ̽Ӽû¸öÈËÊÓÆµµÄȨÏÞ£¬Õâ¼Óº¦Á˿ͻ§µÄÒþÖÔ¡£Ëü»¹Ã»ÓÐÖ´Ðиù»ùµÄÒþÖԺͰ²È«´ëÊ©£¬ºÚ¿Í¿ÉÈëÇÖÕÊ»§À´½ÚÔìÏû·ÑÕßµÄÏà»úºÍÊÓÆµ¡£Æ¾¾ÝÄâÒéµÄºÅÁRing±ØÐëÏòÏû·ÑÕßÖ§¸¶580ÍòÃÀÔªµÄÍ˿ÔÚÁíһ·°¸¼þÖУ¬FTCºÍDOJÖ¸¿ØÑÇÂíÑ·Î¥·´¶ùͯÒþÖÔ·¨£¬Î´ÄÜÓ¦¸¸Ä¸µÄÒªÇóɾ³ýËûÃǵĹàÒôºÍµØÀíλÏàÐÅÏ¢¡£Æ¾¾ÝÄâÒéµÄºÅÁÑÇÂíÑ·±ØÐëÖ§¸¶2500ÍòÃÀÔª¡£
https://www.bleepingcomputer.com/news/technology/amazon-faces-30-million-fine-over-ring-alexa-privacy-violations/
4¡¢BlackCatÐû³Æ¶Ô˾·¨¼¼Êõƽ̨CasepointµÄ¹¥»÷ÕÆ¹Ü
6ÔÂ1ÈÕ±¨Â·³Æ£¬ÀÕË÷ÍÅ»ïBlackCatÔÚÆäÍøÕ¾ÁгöÁËCasepoint¡£CasepointÌṩÁËÒ»¸ö˾·¨¼¼Êõƽ̨£¬±»¶à¸öÃÀ¹ú»ú¹¹Ê¹Óã¬Ô̺¬SEC¡¢FBIºÍÃÀÍõ·¨Ôº¡£¸ÃÍÅ»ï³ÆÒÑÇÔÈ¡2TBµÄÃô¸ÐÊý¾Ý£¬Éæ¼°ÂÉʦ¡¢SEC¡¢DoD¡¢FBIºÍ¾¯Ô±µÈ¡£¸ÃºÚ¿ÍÍŻ﹫¿ªÁ˱»ÈëÇÖ»ù´¡ÉèÊ©µÄ²¿ÃÅ×ÊÔ´µÄÍ´´¦ÒÔ¼°¾Ý³ÆÊDZ»µÁÎļþµÄһЩͼƬ£¬ÒÔ¶½´ÙCasepointÆðÍ·½»Éæ¡£BlackCat×Ô2021Äê11ÔÂÆðÍ·»îÔ¾£¬Êê½ðÒªÇó´Ó¼¸ÍòÃÀÔªµ½ÊýǧÍòÃÀÔª²»µÈ¡£
https://securityaffairs.com/146915/cyber-crime/blackcat-ransomware-casepoint.html
5¡¢Group-IB³ÆDark Pink³ÖÐøÕë¶ÔÑÇÌ«µØÓòµÄ¾üÕþµÈÐÐÒµ
5ÔÂ31ÈÕ£¬Group-IBÅû¶ÁËDark Pink½üÆÚÐÂÒ»ÂֵĹ¥»÷»î¶¯¡£¸ÃÍÅ»ï×Ô2021ÄêÖÐÒÔÀ´Ò»Ïò»îÔ¾£¬ÖØÒªÕë¶ÔÑÇÌ«µØÓòµÄ×éÖ¯¡£Æ¾¾Ý×îе÷²éÁ˾֣¬Group-IBÈ·ÈÏÁË5¸öеı»¹¥»÷×éÖ¯£¬Ô̺¬ÎÄÀ³¡¢Ó¡¶ÈÄáÎ÷ÑÇ¡¢Ì©¹úºÍÔ½ÄÏÈ·µ±¾Ö¡¢¾ü¶ÓºÍ·ÇͶ»ú×éÖ¯£¬ÒÔ¼°±ÈÀûʱµÄ½ÌÓý×éÖ¯¡£¹¥»÷ʼÓÚ´¹µöÓʼþÖеÄISOÎĵµ£¬ËüʹÓÃDLL²à¼ÓÔØÀ´Æô¶¯ºóÃÅTelePowerBotºÍKamiKakaBot¡£´Ë±í£¬Ö²È뷨ʽ´ÓÄÚ´æÖмÓÔØ£¬²»½Ó´¥´ÅÅÌ£¬ÕâÓÐÖúÓÚÈÆ¹ý¼ì²â¡£ÔÚ×î½üµÄÒ»´Î¹¥»÷ÖУ¬Dark PinkʹÓ÷þÎñWebhookͨ¹ýHTTPºÍ̸й¶±»µÁÊý¾Ý¡£
https://www.group-ib.com/blog/dark-pink-episode-2/
6¡¢AT&T·¢ÏÖеÄSeroXen RATÖØÒª±»ÓÃÓÚ¹¥»÷ÓÎÏ·ÉçÇø
5ÔÂ30ÈÕ£¬AT&T°ä²¼Á˹ØÓÚеÄSeroXen RATµÄ·ÖÎö»ã±¨¡£¸Ã¶ñÒâÈí¼þÓÚ2022Äêµ×³öÏÖ£¬´ò×ÅWin 11ºÍWin 10ºÏ·¨Ô¶³Ì½Ó¼û¹¤¾ßµÄ»Ï×ÓÏúÊÛ£¬µ«ÔÚºÚ¿ÍÂÛ̳Éϱ»Ðû´«ÎªÔ¶³Ì½Ó¼ûľÂí¡£SeroXen»ùÓÚ¸÷À࿪ԴÏîÄ¿£¬Ô̺¬Quasar RAT¡¢r77 rootkitºÍNirCmdºÅÁîÐй¤¾ß¡£×êÑÐÈËÔ±³Æ£¬×Ô´´½¨ÒÔÀ´ÒѾ³öÏÖÁËÊý°Ù¸öÑù±¾£¬ÖØÒªÕë¶ÔÓÎÏ·ÉçÇø£¬µ«Ëæ×Ÿù¤¾ßÔ½À´Ô½ÊÜÓ½Ó£¬Ö¸±êÁìÓò¿ÉÄÜ»áÀ©´óµ½Ô̺¬´óÐ͹«Ë¾ºÍ×éÖ¯¡£
https://cybersecurity.att.com/blogs/labs-research/seroxen-rat-for-sale


¾©¹«Íø°²±¸11010802024551ºÅ