·¨¹úP?le emploiÅûÂ¶Éæ¼°Ô¼1000ÍòÈ˵ÄÊý¾Ýй¶ÊÂÎñ

°ä²¼¹¦·ò 2023-08-28

1¡¢·¨¹úP?le emploiÅûÂ¶Éæ¼°Ô¼1000ÍòÈ˵ÄÊý¾Ýй¶ÊÂÎñ


¾Ý8ÔÂ26ÈÕ±¨Â·£¬·¨¹úµËØÖʧҵµÇ¼ÇºÍ²ÆÕþÔöÔ®»ú¹¹P?le emploi´«µÝÁËһ·Êý¾Ýй¶ÊÂÎñ£¬Éæ¼°Ô¼1000ÍòÈË¡£¸Ã»ú¹¹³ÆÆä·þÎñÌṩÉ̵ÄϵͳÔâµ½¹¥»÷£¬2022Äê2ÔÂ×¢²áµÄÇóÖ°ÕßÒÔ¼°¾ÍÒµÖÐÐĵÄǰÓû§¿ÉÄÜÊܵ½Ó°Ïì¡£Ö»¹ÜûÓÐй©¾ßÌåÈËÊý£¬µ«Le Parisien¹À¼ÆÔ̺¬1000ÍòÈË¡£´Ë±í£¬°²È«¹«Ë¾EmsisoftÔÚÆäMOVEitÒ³ÃæÖÐÁгöÁËP?le emploi£¬µ«ÊÇÀÕË÷ÍÅ»ïClopÉÐδ¹«¿ª¸Ã»ú¹¹µÄÈκÎÊý¾Ý¡£


https://securityaffairs.com/149890/breaking-news/pole-emploi-data-breach.html


2¡¢ÍйܺÍÔÆ·þÎñÌṩÉÌLeasewebÔâµ½¹¥»÷ϵÍÂäÙʱ¹Ø¹Ø


¾ÝýÌå8ÔÂ26ÈÕ±¨Â·£¬ÍйܺÍÔÆ·þÎñÌṩÉÌLeaseweb³ÆÆäÔÚÖÂÁ¦¸´Ô­Ôâµ½ÈëÇÖºó¹Ø¹ØµÄϵͳ¡£8ÔÂ22ÈÕ£¬¸Ã¹«Ë¾ÔÚµ÷²é¿Í»§ÃÅ»§ÍøÕ¾µÄå´»úÎÊÌâʱ£¬·¢ÏÔìä»ù´¡ÉèÊ©µÄijЩ²¿ÃÅ´æÔÚÒì³£»î¶¯¡£ÎªÁËÓ¦¶ÔÕâÒ»ÊÂÎñ£¬¸Ã¹«Ë¾¹Ø¹ØÁ˲¿ÃÅÊÜÓ°ÏìµÄϵͳ£¬²¢¶Ô¸ÃÊÂÎñ·¢Õ¹Á˵÷²é¡£Leaseweb³Æ£¬Ä¿Ç°ËüÒѾ­³É¹¦¶ôÔìÁËÕâÒ»ÊÂÎñ£¬²¢¸üÐÂÁ˰²È«´ëÊ©£¬ÒÔÔ¤·ÀÔٴβúÉúÀàËÆÊÂÎñ¡£


https://securityaffairs.com/149897/hacking/leaseweb-cyber-attack.html


3¡¢Krollй©ÆäÔ±¹¤Ôâµ½SIM»¥»»¹¥»÷²¿Ãſͻ§ÐÅϢй¶


8ÔÂ25ÈÕ±¨Â·³Æ£¬Õ÷ѯ¹«Ë¾KrollµÄÒ»ÃûÔ±¹¤³ÉÔâµ½Á˸´ÔÓµÄSIM»¥»»¹¥»÷£¬µ¼Ö²¿ÃÅÐÅϢй¶¡£¸ÃÊÂÎñ²úÉúÓÚ8ÔÂ19ÈÕ£¬ºÚ¿Í³É¹¦ÈëÇÖÁËKrollÔ±¹¤µÄT-MobileÕÊ»§²¢ÇÔÈ¡Á˵绰ºÅÂ룬¶øºó»ñµÃÁËÔ̺¬BlockFi¡¢FTXºÍGenesisµÈÆÆ²úÉêÇëÈËÓйØÐÅÏ¢µÄijЩÎļþµÄ½Ó¼ûȨÏÞ¡£FTXºÍBlockFi¹«¿ªÁË´ËÊÂÎñ£¬²¢°µÊ¾Kroll½«Ö±½Ó֪ͨÊÜÓ°ÏìµÄÓ×ÎÒ¡£¾ÝϤ£¬²¿ÃÅÓû§ÒÑÔâµ½Á˼ÙÒâFTXµÄ´¹µö¹¥»÷¡£


https://www.bleepingcomputer.com/news/security/kroll-data-breach-exposes-info-of-ftx-blockfi-genesis-creditors/


4¡¢¶ñÒâÈí¼þWhiffy Recon¿Éͨ¹ýWiFiÈ·¶¨Ö¸±êµÄµØÀíµØÎ»

 

SecureworksÔÚ8ÔÂ23ÈÕ³ÆÆä·¢ÏÖ½©Ê¬ÍøÂçSmoke Loade·Ö·¢Ð¶ñÒâÈí¼þWhiffy ReconµÄ»î¶¯¡£Whiffy ReconʹÓÃ×ó½üµÄWi-Fi½ÓÈëµã×÷ΪGoogleµØÀí¶¨Î»APIµÄÊý¾Ýµã£¬¶Ô±»Ï°È¾ÏµÍ³µÄµØÎ»½øÐÐÈý½ÇÕÉÁ¿¡£¸Ã¶ñÒâÈí¼þÊ×ÏȲ鳭·þÎñÃû³ÆWLANSVC£¬ÈôÊDz»´æÔÚ£¬Ôò»á½«½©Ê¬·¨Ê½×¢²áµ½C2·þÎñÆ÷²¢Ìø¹ýɨÃ貿ÃÅ¡£¶ÔÓÚ´æÔڸ÷þÎñµÄϵͳ£¬Ëü»áÿ·ÖÖÓÔËÐÐÒ»´ÎWiFiɨÃ裬ÀûÓÃWindows WLAN APIÀ´ÍøÂçËùÐèÊý¾Ý£¬²¢ÏòGoogleµÄµØÀí¶¨Î»API·¢ËÍÔ̺¬JSONÌåʽµÄWiFi½ÓÈëµãÐÅÏ¢µÄHTTPS POSTÒªÇó¡£Ä¿Ç°£¬Éв»È·¶¨¹¥»÷Õߵ͝»ú¡£


https://www.secureworks.com/blog/smoke-loader-drops-whiffy-recon-wi-fi-scanning-and-geolocation-malware


5¡¢²¨À¼Ìú·»ù´¡ÉèÊ©Ôâµ½´ó¹æÄ£¹¥»÷²¿ÃÅ»ð³µÔËÐÐÔÝÍ£


ýÌå8ÔÂ27ÈÕ±¨Â·£¬²¨À¼µÄ°²È«»ú¹¹ÔÚµ÷²éһ·Õë¶Ô¹ú¶ÈÌú·ϵͳµÄ¹¥»÷ÊÂÎñ¡£¹¥»÷²úÉúÔÚÉÏÖÜÁù£¬¹¥»÷Õß·¢ËÍÒ»¸öÐźŴ¥·¢ÁË´¹Î£×´Ì¬£¬µ¼ÖÂʲÇÐÇàÊÐ×ó½üµÄ»ð³µÍ£ÔË¡£¾ÝϤ£¬Õâ´Î¹¥»÷µ¼ÖÂÖÁÉÙ20Áлð³µÍ£ÔË£¬½»Í¨Ì±»¾ÊýÓ×ʱ¡£Wired±¨Â·³Æ£¬¹¥»÷Õßͨ¹ýÎÞÏßµçÆµÂÊÏòÖ¸±êÁгµ·¢³öµ¥Ò»µÄ¡°radio-stop¡±ºÅÁî¡£ÓÉÓÚ²¨À¼Ìú·ϵͳÖÐʹÓõÄÎÞÏßµçϵͳ²»×ã¼ÓÃÜ»òÉí·ÝÑéÖ¤£¬Òò¶øºÜÈÝÒ×±»¼ÙÒâ¡£


https://tickernews.co/hackers-bring-down-polands-train-network-in-massive-cyber-attack/


6¡¢Barracuda ESGÉ豸CVE-2023-2868·ì϶µÄ²¹¶¡ÎÞЧ


ýÌå8ÔÂ25Èճƣ¬ÒÑ´ò²¹¶¡µÄBarracuda ESGÉ豸ÒÀÈ»ÈÝÒ×Ôâµ½ÀûÓÃCVE-2023-2868·ì϶µÄ¹¥»÷¡£¸Ã·ì϶ÓÚ2022Äê10Ô³õ´Î±»ÀûÓ㬿ÉÓÃÓÚÔÚESGÉ豸ÖÐ×°ÖúóÃŲ¢ÇÔÊØÐÅÏ¢£¬ÒÑÓÚ5ÔÂ20ÈÕ±»½¨¸´¡£FBIÌáÐÑ£¬Õë¶Ô¸Ã·ì϶µÄ²¹¶¡ÊÇÎÞЧµÄ£¬Ä¿Ç°¹¥»÷ÕßÈÔÔÚ»ý¼«ÀûÓø÷ì϶ִÐй¥»÷¡£¸Ã»ú¹¹Ç¿ÁÒ½¨ÒéÓû§µ±¼´¸ôÀëºÍ¸ü»»ËùÓÐÊÜÓ°ÏìµÄESGÉ豸£¬²¢µ±¼´É¨ÃèËùÓÐÓëËùÌṩµÄIoCÁбíÓйØÁªµÄÍøÂç¡£


https://thehackernews.com/2023/08/urgent-fbi-warning-barracuda-email.html