Rollbar¹«Ë¾µÄϵͳÔâµ½¹¥»÷µ¼Ö¿ͻ§µÄ½Ó¼ûÁîÅÆÐ¹Â¶
°ä²¼¹¦·ò 2023-09-151¡¢Rollbar¹«Ë¾µÄϵͳÔâµ½¹¥»÷µ¼Ö¿ͻ§µÄ½Ó¼ûÁîÅÆÐ¹Â¶
¾Ý9ÔÂ13ÈÕ±¨Â·£¬Èí¼þBug¸ú×Ù¹«Ë¾RollbarµÄϵͳÔâµ½ÈëÇÖ£¬µ¼Ö²¿ÃÅÊý¾Ýй¶¡£RollbarÓÚ9ÔÂ6ÈÕÔÚÉó²éÊý¾Ý¿âÈÕ־ʱ·¢ÏÖÁËÕâÒ»ÎÊÌ⣬¸ÃÈÕÖ¾ÏÔʾ·þÎñÕÊ»§±»ÓÃÀ´µÇ¼»ùÓÚÔÆµÄBug¼à¿ØÆ½Ì¨¡£ºóÐøµ÷²é·¢ÏÖ£¬¹¥»÷ÕßÔÚ8ÔÂ9ÈÕÖÁ8ÔÂ11ÈÕ½Ó¼ûÁËÆäϵͳ£¬Éæ¼°Ãô¸ÐµÄ¿Í»§ÐÅÏ¢£¬ÀýÈçÓû§Ãû¡¢ÓʼþµØÖ·¡¢ÕÊ»§ÃûºÍÏîÄ¿ÐÅÏ¢µÈ¡£¸ü³ÁÒªµÄÊÇ£¬¹¥»÷Õß»¹¼ìË÷Á˿ͻ§ÓëRollbarÏîÄ¿½»»¥µÄÏîÄ¿½Ó¼ûÁîÅÆ¡£
https://www.bleepingcomputer.com/news/security/rollbar-discloses-data-breach-after-hackers-stole-access-tokens/
2¡¢Ó¢¹ú´óÂü³¹Ë¹Ìؾ¯¾Ö(GMP)й©²¿ÃÅÔ±¹¤µÄÐÅϢй¶
ýÌå9ÔÂ14Èճƣ¬Ó¢¹ú´óÂü³¹Ë¹Ìؾ¯Ô±¾Ö(GMP)²¿ÃÅÔ±¹¤µÄÓ×ÎÒÐÅϢй¶£¬ÔÒòÊǵÚÈý·½¹©¸øÉÌÔâµ½ÀÕË÷¹¥»÷¡£°ä²¼µÄÉêÃ÷ÖÐδÌá¼°±»¹¥»÷¹«Ë¾µÄÃû³Æ£¬µ«ËüÊÇGMPµÅ×¢¹úÆäËü»ú¹¹µÄ·þÎñ¹©¸øÉÌ¡£GMP³ÆÔ±¹¤µÄ²ÆÕþÐÅÏ¢²¢Î´Ð¹Â¶¡£Ô¼Ò»¸öÔÂǰ£¬±±°®¶ûÀ¼¾¯¾Ö(PSNI)Ò²²úÉúÁËһ·ÀàËÆµÄÊÂÎñ£¬Ð¹Â¶ÁË10000¶àÃû¾¯Ô±µÄÓ×ÎÒÉí·ÝÐÅÏ¢(PII)¡¢¾üÏκ͵ØÎ»¡£
https://securityaffairs.com/150828/data-breach/greater-manchester-police-gmp-data-breach.html
3¡¢SymantecÔÚ×°ÖÃLockBitʧ°ÜµÄ¹¥»÷Öз¢ÏÖеÄ3AM
9ÔÂ13ÈÕ£¬Symantec³ÆÆä·¢ÏÖÁËÒ»ÖÖеÄÀÕË÷Èí¼þ3AM¡£×êÑÐÈËÔ±³Æ£¬Ê¹ÓÃ3AMµÄ¹¥»÷»î¶¯ºÜÉÙ¼û£¬Æù½ñΪֹ½öÔÚ¹¥»÷ÕßδÄÜ×°ÖÃLockBitµÄÒ»´Î¹¥»÷»î¶¯Öз¢ÏÖ¹ý¸Ã¶ñÒâÈí¼þµÄ·Ö·¢¡£3AMÓÉRust¿ª·¢£¬ÔÚÆðÍ·¼ÓÃÜ֮ǰ£¬Ëü»á³¢ÊÔÖÕ³¡¶à¸ö·þÎñ£¬ÊµÏÖ¼ÓÃܺó»áɾ³ý¾íÓ°(VSS)¸±±¾¡£ÆäΪ¼ÓÃÜÎļþ¸½¼ÓµÄÀ©´óÃûÊÇ.Threeamtime£¬×êÑÐÈËÔ±ÉÐδȷ¶¨3AM±³ºóµÄ¹¥»÷ÕßÊÇ·ñÓëÒÑÖªµÄ¹¥»÷ÍÅ»ïÓйØÁª¡£
https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/3am-ransomware-lockbit
4¡¢TrendMicroÏêÊöRedLineºÍVidarÊÇÈôºÎÀûÓÃEVÖ¤Êé
TrendMicroÔÚ9ÔÂ13ÈÕÏêÊöÁËRedLineºÍVidarµÄ¹¥»÷ÕßÈôºÎÀûÓôøÓÐÀ©´óÑéÖ¤(EV)´úÂëÊðÃûµÄÖ¤Êé¡£×îе÷²éÏÔʾ£¬RedLineºÍVidar±³ºóµÄ¹¥»÷Õ߯ðͷʹÓÃÓë´«²¼ÐÅÏ¢ÇÔÈ¡·¨Ê½Ò»ÑùµÄ·½Ê½À´·Ö·¢ÀÕË÷Èí¼þpayload¡£ÔÚÕâÒ»ÌØÊâ°¸ÀýÖУ¬Ö¸±ê×î³õÊÕµ½µÄÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ´øÓÐÀ©´óÑéÖ¤£¨EV£©´úÂëÊðÃûÖ¤Ê飬²»¾ÃºóËûÃÇÆðͷͨ¹ýͬÑùµÄõè¾¶ÊÕµ½ÁËÀÕË÷Èí¼þpayload¡£Ö»¹ÜCABFÖ´ÐÐÁ˸üÑϸñµÄ°²È«´ëÊ©£¬µ«¹¥»÷ÕßÈÔÄÜ´«²¼Ê¹ÓÃEVÖ¤Êé½øÐÐÊðÃûµÄÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ¡£
https://www.trendmicro.com/en_us/research/23/i/redline-vidar-first-abuses-ev-certificates.html
5¡¢Î¢ÈíÌáÐÑStorm-0324½üÆÚÀûÓÃMS TeamsµÄ´¹µö¹¥»÷
¾ÝýÌå9ÔÂ13ÈÕ±¨Â·£¬Î¢ÈíÌáÐÑÖØÒªÓëÀÕË÷ÍÅ»ïºÏ×÷µÄStorm-0324×î½üת¶øÊ¹ÓÃMicrosoft Teams´¹µö¹¥»÷À´ÈëÇÔìóÒµÍøÂç¡£´Ó7ÔÂ·ÝÆðÍ·£¬Storm-0324±»·¢ÏÖʹÓÃTeams·¢ËÍ´¹µöµö¶ü£¬ÆäÖÐÔ̺¬Ö¸Ïò¶ñÒâSharePointÍйÜÎļþµÄÁ´½Ó¡£¶ÔÓڴ˻£¬¸ÃÍÅ»ï×îÓпÉÄÜÒÀÀµÓÚÃûΪTeamsPhisherµÄ¿ªÔ´¹¤¾ß¡£¸Ã¹¤¾ß¿ÉÄÜÈÆ¹ý¶ÔÀ´×Ô±í²¿Óû§µÄ´«ÈëÎļþµÄÏÞ¶È£¬²¢ÏòTeamsÓû§·¢ËÍ´¹µö¸½¼þ¡£Î¢Èí°µÊ¾Ê®·Ôì÷³ÁÕâЩ´¹µö»î¶¯£¬²¢ÍƳöÁ˶àÏî¸Ä½ø´ëÊ©£¬ÒÔ¸üºÃµØ·ÀÓùÕâЩ¹¥»÷¡£
https://thehackernews.com/2023/09/microsoft-warns-of-new-phishing.html
6¡¢Kaspersky°ä²¼2023ÄêÉϰëÄ깤ҵ×Ô¶¯»¯ÏµÍ³µÄ»ã±¨
9ÔÂ13ÈÕ£¬Kaspersky°ä²¼2023ÄêÉϰëÄ깤ҵ×Ô¶¯»¯ÏµÍ³µÄͳ¼Æ»ã±¨¡£2023ÄêÉϰëÄ꣬±»À¹½Ø¶ñÒâ¶ÔÏóµÄICSÍÆËã»ú±ÈÀý½Ï2022ÄêϰëÄê½µÂäÁË0.3¸ö°Ù·Öµã£¬½µÖÁ34%¡£´ÓµØÀíµØÎ»À´¿´£¬·ÇÖÞÔâµ½¹¥»÷µÄICSÍÆËã»ú×î¶à£¨Õ¼±È40.3%£©£¬¶ø±±Å·ÖÁÉÙ£¨14.7%£©¡£¹¤³ÌºÍICS¼¯³É£¨Ôö³¤2%£©¡¢Ôì×÷£¨Ôö³¤1.9%£©ºÍÄÜÔ´£¨Ôö³¤1.5%£©ÁìÓòÔâµ½¹¥»÷µÄICSÍÆËã»úÓÐËùÔö³¤¡£»¥ÁªÍø¡¢µç×ÓÓʼþ¿Í»§¶ËºÍ¿ÉÒÆ¶¯É豸ÒÀÈ»ÊÇ×éÖ¯ÔËÓª¼¼Êõ»ù´¡ÉèÊ©ÖÐÍÆËã»úµÄÖØÒªÍþвÆðÔ´¡£
https://securelist.com/threat-landscape-for-industrial-automation-systems-statistics-for-h1-2023/110605/


¾©¹«Íø°²±¸11010802024551ºÅ