BlackCatÐû³ÆÒÑ»ñÈ¡RedditµÄ80GBÊý¾Ý²¢ÀÕË÷450ÍòÃÀÔª
°ä²¼¹¦·ò 2023-06-191¡¢BlackCatÐû³ÆÒÑ»ñÈ¡RedditµÄ80GBÊý¾Ý²¢ÀÕË÷450ÍòÃÀÔª
¾ÝýÌå6ÔÂ17ÈÕ±¨Â·£¬BlackCat(ALPHV)Ðû³Æ¶ÔRedditÔâµ½µÄ¹¥»÷ÕÆ¹Ü£¬²¢°µÊ¾ÒÑÇÔÈ¡80 GB£¨Ñ¹Ëõ£©µÄÊý¾Ý¡£2ÔÂ9ÈÕ£¬Redditй©ÆäϵͳÔÚ2ÔÂ5ÈÕ±»ºÚ£¬ÓÉÓÚÒ»ÃûÔ±¹¤Ôâµ½ÁË´¹µö¹¥»÷¡£Õâµ¼Ö¹¥»÷Õß¿ÉÄܽӼûRedditµÄϵͳ£¬²¢ÇÔÈ¡ÄÚ²¿Îĵµ¡¢Ô´´úÂë¡¢Ô±¹¤ÐÅÏ¢ÒÔ¼°Óйع«Ë¾¸æ°×É̵ÄÊý¾Ý¡£BlackCatÍŻﰵʾ£¬ËûÃÇÔøÔÚ4ÔÂ13ÈÕºÍ6ÔÂ16ÈÕÁ½´ÎÊÔͼÁªÏµReddit£¬²¢ÒªÇóÆä½»450ÍòÃÀµÄÊê½ð£¬µ«Ã»ÓÐÊÕµ½»Ø¸´¡£
https://www.databreaches.net/blackcat-claims-they-hacked-reddit-and-will-leak-the-data/
2¡¢Progress½¨¸´MOVEitÖÐÓÖÒ»¸öSQLi·ì϶CVE-2023-35708
ýÌå6ÔÂ15Èճƣ¬Progress Software½¨¸´ÁËÆäMOVEit TransferÖеĵÚÈý¸öSQL×¢Èë·ì϶£¨CVE-2023-35708£©¡£¸Ã¹«Ë¾³Æ£¬ËûÃÇÒѾ½µµÍÁËMOVEit CloudµÄHTTPsÁ÷Á¿£¬²¢ÒªÇóÓû§ÔÚ´´½¨ºÍ²âÊÔ²¹¶¡Ê±½µµÍHTTPºÍHTTPsÁ÷Á¿ÒÔ±£»¤ËûÃǵÄϵͳ¡£ÔÚ×°Öò¹¶¡Ç°£¬ProgressÇ¿ÁÒ½¨ÒéÅú¸Ä·À»ðǽ¹æ¶¨ÒԻؾø¶Ë¿Ú80ºÍ443ÉϵÄMOVEit TransferµÄHTTPºÍHTTPsÁ÷Á¿£¬×÷ΪһÖÖһʱ½â¾ö²½Öè¡£ËùÓÐЧ»§¶¼±ØÐëÀûÓÃÔÚ6ÔÂ16ÈÕ°ä²¼µÄв¹¶¡¡£Õâ¸öзì϶µÄϸ½ÚÉÐδ¹«¿ª£¬µ«ÒÑÓÐ×êÑÐÈËÔ±°ä²¼PoC¡£
https://www.bleepingcomputer.com/news/security/moveit-transfer-customers-warned-of-new-flaw-as-poc-info-surfaces/
3¡¢ÀÕË÷ÍÅ»ïRhysida¹«¿ª´ÓÖÇÀû¾ü¶ÓµÄϵͳÖÐÇÔÈ¡µÄÎļþ
¾Ý6ÔÂ15ÈÕ±¨Â·£¬ÀÕË÷ÍÅ»ïRhysida¹«¿ªÁË´ÓÖÇÀû¾ü¶Ó(Ej¨¦rcito de Chile)µÄϵͳÖÐÇÔÈ¡µÄÎļþ¡£¾Ý°²È«¹«Ë¾CronUp³Æ£¬ÖÇÀû¾ü¶ÓÓÚ5ÔÂ29ÈÕÈ·ÈÏÆäϵͳÊܵ½ÁËÔÚ5ÔÂ27ÈÕ¼ì²âµ½µÄ°²È«ÊÂÎñµÄÓ°Ï죬²¿ÃÅÊý¾Ýй¶¡£¹¥»÷ÊÂÎñÅû¶µÄ¼¸Ììºó£¬±¾µØÃ½Ì屨·³Æ£¬Ò»Ãû½¾üÏÂÊ¿Òò²Î¼ÓÀÕË÷¹¥»÷¶ø±»²¶¡£RhysidaĿǰ°ä²¼ÁËԼĪ360000·ÝÖÇÀû¾ü¶ÓµÄÎļþ£¨¾Ý³Æ½öÕ¼ËùÓб»µÁÊý¾ÝµÄ30%£©¡£
https://www.bleepingcomputer.com/news/security/rhysida-ransomware-leaks-documents-stolen-from-chilean-army/
4¡¢Î¢Èíй©½üÆÚAzure¡¢OutlookºÍOneDriveÖжÏÔ´ÓÚDDoS¹¥»÷
6ÔÂ18ÈÕ±¨Â·³Æ£¬Î¢Èíй©6ÔÂÉÏÑ®ÆäAzure¡¢OutlookºÍOneDrive·þÎñÖжÏÊÇÕë¶Ô¹«Ë¾·þÎñµÄµÚ7²ãDDoS¹¥»÷µ¼Öµġ£Õâ´Î¹¥»÷±»¹éÒòÓÚ΢Èí×·×ÙΪStorm-1359µÄÍŻ¸ÃÍÅ»ï×Ô³ÆAnonymous Sudan¡£ÕâЩ¹¥»÷¿ÉÄÜÒÀÀµÓÚ½Ó¼û¶à¸öÐ鹹רÓ÷þÎñÆ÷(VPS)ÒÔ¼°×âÓõÄÔÆ»ù´¡ÉèÊ©¡¢Ê¢¿ª´úÀíºÍDDoS¹¤¾ß¡£×î³õ£¬Õâ¼ÒIT¹«Ë¾Ã»ÓÐÌṩÓйØÖжÏÊÂÎñµÄ¾ßÌåÐÅÏ¢£¬µ«ÔÚ6ÔÂ16ÈÕ°ä²¼ÁËMicrosoft¶ÔµÚ7²ãDDoS¹¥»÷µÄÏìÓ¦»ã±¨£¬Ð¹Â©ÁËÖжϵÄÔÒò¡£
https://securityaffairs.com/147605/hacking/microsoft-outages-ddos.html
5¡¢·¨ÂÉÐж¯PowerOffµ·»Ù2013ÄêÆðÍ·»îÔ¾µÄDDoS³ö×â·þÎñ
¾Ý6ÔÂ17ÈÕýÌ屨·£¬¹ú¼Ê·¨ÂÉÐж¯Operation PowerOFFµ·»ÙÁË×Ô2013ÄêÆðÍ·»îÔ¾µÄDDoS³ö×â·þÎñ (ÓÖ³Æbooter»òstresser)¡£DDoS³ö×⣨DDoS-for-hire£©·þÎñÔÊÐí×¢²áÓû§ÔÚ²»¾ß±¸Ìض¨ÖªÊ¶µÄÇé¿öÏÂÖ´ÐÐÓÐÐòµÄDDoS¹¥»÷¡£¾ÝϤ£¬²¨À¼¾¯·½¿ÛÁôÁË¸ÃÆ½Ì¨µÄÁ½ÃûÔËÓªÈËÔ±£¬²¢´ÓËûÃÇλÓÚÈðÊ¿µÄ·þÎñÆ÷ÖÐÍøÂçµ½ÁËÓмÛÖµµÄÊý¾Ý¡£Óг¬¹ý35000¸öÓû§ÕÊ»§¡¢76000¸öµÇ¼¼Í¼ºÍ³¬¹ý320000¸öÓëDDoS³ö×â·þÎñÓйصÄIPµØÖ·µÄÐÅÏ¢¡£Operation PowerOFFÊÇÒ»Ïî³Ö¾ÃÖ´Ðеķ¨ÂÉÐж¯£¬ÒѹعØÁËÊýÊ®¸öÖØÒªµÄDDoS³ö×âÆ½Ì¨¡£
https://securityaffairs.com/147564/cyber-crime/ddos-for-eye-service-seized.html
6¡¢ESET·¢ÏÖAndroid¶ñÒâÈí¼þGravityRATÐÂÒ»ÂÖ¹¥»÷»î¶¯
6ÔÂ15ÈÕ£¬ESETÅû¶ÁËAndroid¶ñÒâÈí¼þGravityRATµÄÐÂÒ»ÂÖ¹¥»÷»î¶¯¡£¸Ã»î¶¯×Ô2022Äê8ÔÂÆðÍ·»îÔ¾£¬Ê¹ÓÃľÂí»¯Ì¸ÌìÀûÓÃBingeChatºÍChaticoÏ°È¾ÒÆ¶¯É豸£¬²¢ÊÔͼ´ÓÖ¸±êÉ豸ÖÐÇÔÈ¡Êý¾Ý¡£Ä¿Ç°£¬Ê¹ÓÃChaticoµÄ»î¶¯ÒѲ»ÔÙ»îÔ¾¡£¶ñÒâÀûÓû¹Ìṩ»ùÓÚ¿ªÔ´OMEMO Instant MessengerÀûÓ÷¨Ê½µÄºÏ·¨Ì¸ÌìÖ°ÄÜ¡£Õâ¸öа汾µÄGravityRATÓµÓÐÁ½¸öÐÂÖ°ÄÜ£¬¿É½Ó¹Üɾ³ýÎļþµÄºÅÁîºÍй¶WhatsApp±¸·ÝÎļþ¡£
https://www.welivesecurity.com/2023/06/15/android-gravityrat-goes-after-whatsapp-backups/


¾©¹«Íø°²±¸11010802024551ºÅ