LockBit³ÆÒÑÈëÇÖXeinadin²¢Íþв°ä²¼1.5TB±»µÁÊý¾Ý

°ä²¼¹¦·ò 2023-12-25

1¡¢LockBit³ÆÒÑÈëÇÖXeinadin²¢Íþв°ä²¼1.5TB±»µÁÊý¾Ý


¾ÝýÌå12ÔÂ23ÈÕ±¨Â·£¬LockBitÐû³Æ¶Ô¹ÜÕÊʦÊÂÎñËùXeinadinÔâµ½µÄ¹¥»÷ÕÆ¹Ü£¬²¢ÍþвҪÅû¶±»µÁÊý¾Ý¡£¸ÃÍÅ»ï°µÊ¾ÍøÂçÁË1.5 TBµÄXeinadin¿Í»§Êý¾Ý£¬Ô̺¬ËùÓÐÄÚ²¿Êý¾Ý¿â¡¢¿Í»§²ÆÕþÐÅÏ¢¡¢»¤ÕÕ¡¢ÕË»§Óà¶î¡¢¿Í»§Ó×ÎÒÕË»§½Ó¼ûȨÏ޺Ϳͻ§Ë¾·¨ÐÅÏ¢µÈ¡£¸ÃÍÅ»ïÍþв£¬ÈôÊÇXeinadin²»ÔÚ12ÔÂ25ÈÕµÄ֮ǰÁªÏµËûÃÇ£¬ËûÃǽ«°ä²¼ÕâЩÊý¾Ý¡£LockBit»¹°ä²¼ÁË3ÕŽØÍ¼£¬ÏÔʾÁËÊý¾Ý¿â¹æ»®ºÍ±»ÈëÇÖ»ù´¡ÉèÊ©µÄ´æ´¢½á¹¹¡£


https://securityaffairs.com/156303/cyber-crime/lockbit-gang-xeinadin.html


2¡¢Mint Mobileй©¿Í»§ÐÅϢй¶¿ÉÄܵ¼ÖÂSIM»¥»»¹¥»÷


¾Ý12ÔÂ22ÈÕ±¨Â·£¬Òƶ¯Ðé¹¹ÍøÂçÔËÓªÉÌ(MVNO)Mint MobileÅû¶ÁËһ·¿Í»§Êý¾Ýй¶ÊÂÎñ¡£¸Ã¹«Ë¾ÓÚ22ÈÕÆðͷͨ¹ý±êÌâΪ¡°ÓйØÄúÕÊ»§µÄ³ÁÒªÐÅÏ¢¡±µÄÓʼþ֪ͨ¿Í»§£¬³ÆºÚ¿Í»ñÈ¡Á˿ͻ§ÐÅÏ¢¡£Ð¹Â¶ÐÅÏ¢Ô̺¬ÐÕÃû¡¢µç»°ºÅÂë¡¢ÓʼþµØÖ·ÒÔ¼°SIMÐòÁкźÍIMEIºÅµÈ£¬ÕâЩÐÅÏ¢×ãÒÔ±»¹¥»÷ÕßÓÃÀ´ÕßÖ´ÐÐSIM»¥»»¹¥»÷¡£¹ÌÈ»MintÉÐδÅû¶Óйع¥»÷¾ßÌåÐÅÏ¢£¬µ«7Ô·ÝÓл㱨³Æ£¬¹¥»÷ÕßÊÔͼÔÚºÚ¿ÍÂÛ̳ÉÏÏúÊÛMint MobileºÍUltra MobileµÄÊý¾Ý¡£


https://www.bleepingcomputer.com/news/security/mint-mobile-discloses-new-data-breach-exposing-customer-data/


3¡¢Akira°µÊ¾Òѹ¥»÷²¢ÇÔÈ¡ÈÕ²ú°Ä´óÀûÑÇ·Ö¹«Ë¾100GBÎļþ


ýÌå12ÔÂ22Èճƣ¬Akira°µÊ¾Òѹ¥»÷Æû³µÔì×÷ÉÌÈÕ²úÆû³µ°Ä´óÀûÑÇ·Ö¹«Ë¾Nissan Australia£¬²¢´ÓÆäϵͳÖÐÇÔÈ¡ÁËÔ¼100GBµÄÎļþ¡£¸Ã¹«Ë¾»Ø¾øÖ§¸¶Êê½ð£¬ÀÕË÷ÍÅ»ï³ÆÒªÐ¹Â¶¾Ý±»µÁÎļþ£¬Ô̺¬ÏîÄ¿Êý¾Ý¡¢¿Í»§ºÍºÏ×÷ͬ°éµÄÐÅÏ¢ÒÔ¼°±£ÃܺÍ̸µÈ¡£¹ÌÈ»¸Ã¹«Ë¾ÈÔδ¶Ô±¾Ô³õÅû¶µÄ¹¥»÷¹éÒò£¬µ«¹¥»÷ÕßµÄÈ·ÓÚ22ÈÕÔÚÆäÍøÕ¾ÉÏÔö³¤ÁËеĸüУ¬Ð¹Â©ÒÑÈëÇÖÁËÆäλÓÚ°Ä´óÀûÑǺÍÐÂÎ÷À¼µÄ²¿ÃÅϵͳ¡£ÈÕ²ú°µÊ¾£¬ÈÔÔÚµ÷²é¸ÃÊÂÎñµÄÓ°ÏìÒÔ¼°Ó×ÎÒÐÅÏ¢ÊÇ·ñÒѱ»½Ó¼û£¬²¢ÔÚÖÂÁ¦¸´Ô­ÊÜÓ°Ïìϵͳ¡£


https://www.bleepingcomputer.com/news/security/nissan-australia-cyberattack-claimed-by-akira-ransomware-gang/


4¡¢Î¢Èí·¢ÏÖAPT33ÀûÓÃеÄFalseFont¹¥»÷¹ú·À³Ð°üÉÌ


12ÔÂ22ÈÕ±¨Â·³Æ£¬Î¢Èí·¢ÏÖ£¬ÒÁÀʺڿÍÍÅ»ïAPT33£¨Ò²³ÆPeach Sandstorm£©ÔÚÀûÓÃ×î½ü·¢ÏֵĶñÒâÈí¼þFalseFont¹¥»÷È«ÇòµÄ¹ú·À³Ð°üÉÌ¡£FalseFontÊÇÒ»¸ö×Ô½ç˵ºóÃÅ£¬ÓµÓÐ¿í·ºµÄÖ°ÄÜ£¬¿ÉÔ¶³Ì½Ó¼û±»Ï°È¾µÄϵͳ¡¢Æô¶¯ÆäËüÎļþ²¢½«ÐÅÏ¢·¢Ë͵½ÆäC2·þÎñÆ÷£¬ÓÚ11Ô³õ³õ´Î±»ÔÚÒ°·¢ÏÖ¡£Î¢Èí»¹³Æ£¬FalseFontµÄ¿ª·¢ºÍʹÓÃÓëÒÔǰ¹Û²ìµ½µÄPeach Sandstorm»î¶¯Ò»Ö£¬Åú×¢Peach SandstormÔÚ³ÖÐø¸Ä½øËûÃǵļäµý¼¼Êõ¡£


https://thehackernews.com/2023/12/microsoft-warns-of-new-falsefont.html


5¡¢BidenCashÔÚºÚ¿ÍÂÛ̳¹«¿ª190ÍòÕÅÐÅÓþ¿¨µÄÐÅÏ¢


¾Ý12ÔÂ22ÈÕ±¨Â·£¬BidenCashÔÚºÚ¿ÍÂÛ̳¹«¿ª190ÍòÕÅÐÅÓþ¿¨µÄÐÅÏ¢¡£BidenCashÓÚ2022ËêÊ×ÍÆ³ö£¬×÷Ϊ°µÍøºÍÃ÷ÍøµÄÐÂÊг¡£¬ÏúÊÛͨ¹ýµçÉÌÍøÕ¾ÉϵĴ¹µö»òÇÔÈ¡·¨Ê½ÇÔÈ¡µÄÐÅÓþ¿¨ºÍ½è¼Ç¿¨¡£×îÐÂй¶µÄÐÅÏ¢Ô̺¬´¿Îı¾´ó¾ÖµÄÆëÈ«¿¨ºÅ¡¢ÓÐЧÆÚºÍCVVºÅÂ룬µ«Óë¸ÃÍøÕ¾Ö®Ç°µÄй¶·ÖÆç£¬Ëü²»Ô̺¬³Ö¿¨È˵ÄÐÕÃû»òÓʼþµØÖ·¡£Ð¹Â¶µÄÒøÐп¨¾ßÌåÐÅÏ¢×ÜÊýΪ1912969ÕÅ£¬µ«É¾³ý³Á¸´Êý¾Ýºó£¬Îª1169843ÕÅ¡£


https://www.hackread.com/bidencash-market-leaks-credit-card-details/


6¡¢Deep InstinctÅû¶UAC-0099Õë¶ÔÎÚ¿ËÀ¼µÄ¹¥»÷»î¶¯


Deep InstinctÓÚ12ÔÂ22ÈÕÅû¶ÁËUAC-0099Õë¶ÔÎÚ¿ËÀ¼µÄ¹¥»÷»î¶¯¡£¹¥»÷Á´ÀûÓÃÁËÔ̺¬HTA¡¢RARºÍLNKÎļþ¸½¼þµÄ´¹µöÓʼþ·Ö·¢LONEPAGE£¬ÕâÊÇÒ»ÖÖVBS¶ñÒâÈí¼þ£¬¿ÉÄÜÓëC2·þÎñÆ÷ͨѶ£¬¼ìË÷¼üÅ̼ͼ·¨Ê½¡¢ÇÔÈ¡·¨Ê½ºÍÆÁÄ»½ØÍ¼¶ñÒâÈí¼þµÈÆäËüpayload¡£Ê¹ÓÃHTA¸½¼þÖ»ÊÇ3ÖÖ·ÖÆçϰȾÁ´ÖеÄÒ»ÖÖ£¬Áí±íÁ½ÖÖϰȾÁ´ÀûÓõÄÊÇSFXѹËõÎļþºÍZIPÎļþ¡£ZIPÎļþÀûÓÃÁËWinRAR·ì϶£¨CVE-2023-38831£©À´´«²¼LONEPAGE¡£


https://www.deepinstinct.com/blog/threat-actor-uac-0099-continues-to-target-ukraine