¼ÒµÃ±¦È·ÈϵÚÈý·½Êý¾Ýй¶µ¼ÖÂÆäÔ±¹¤ÐÅϢй¶
°ä²¼¹¦·ò 2024-04-094ÔÂ7ÈÕ£¬Home Depot ÒÑÈ·ÈÏ£¬ÆäÒ»¼Ò SaaS ¹©¸øÉÌÃýÎóµØÐ¹Â¶ÁËÒ»Óײ¿ÃÅÓÐÏÞµÄÔ±¹¤Êý¾ÝÑù±¾£¬ÕâЩÊý¾Ý¿ÉÄܻᱻÓÃÓÚÓÐÕë¶ÔÐÔµÄÍøÂç´¹µö¹¥»÷£¬Òò¶ø¸Ã¹«Ë¾Ôâ·êÁËÊý¾Ýй¶¡£Home Depot ÊÇ×î´óµÄ¼Ò¾Ó×°½¨ÁãÊÛÉÌ£¬ÔÚ±±ÃÀÕ¼ÓÐ 2,300 ¶à¼ÒÉ̵êºÍ³¬¹ý 475,000 ÃûÔ±¹¤¡£Ò»¸öÃûΪ IntelBroker µÄÍþвÐÐΪÕßÔÚºÚ¿ÍÂÛ̳ÉϹ«¿ªÁËԼĪ 10,000 Ãû¼ÒµÃ±¦Ô±¹¤µÄÊý¾Ý¡£¹ÌÈ»ÕâЩÊý¾Ý²¢²»¸ß¶ÈÃô¸Ð£¬½ö¶³ö¹«Ë¾ ID¡¢ÐÕÃûºÍµç×ÓÓʼþµØÖ·£¬µ«ÍþвÐÐΪÕß¿ÉÄÜ»áÀûÓÃÕâЩÊý¾Ý¶Ô Home Depot Ô±¹¤½øÐÐÓÐÕë¶ÔÐÔµÄÍøÂç´¹µö¹¥»÷¡£ÕâÐ©ÍøÂç´¹µö¹¥»÷¿ÉÄÜÖ¼ÔÚÍøÂç¸üÃô¸ÐµÄÐÅÏ¢£¬ÀýÈç¼ÒµÃ±¦Æ¾Ö¤£¬¶øºó½«ÆäÏúÊÛ¸øÆäËûÍþв²Î¼ÓÕß»òÓÃÓÚ·ÛËé¹«Ë¾ÍøÂçÒÔÇÔÈ¡¹«Ë¾Êý¾Ý»ò²¿ÊðÀÕË÷Èí¼þ¡£
https://www.bleepingcomputer.com/news/security/home-depot-confirms-third-party-data-breach-exposed-employee-info/
2. Solar Spider ¿ª·¢Ð¶ñÒâÈí¼þ¹¥»÷Öж«µÄ½ðÈÚÐÐÒµ
4ÔÂ8ÈÕ£¬ÍøÂ簲ȫ·þÎñ¹«Ë¾ Resecurity ÔÚ±¾Öܰ䲼µÄÒ»·Ý»ã±¨ÖÐд·£¬¸Ã¹«Ë¾·ÖÎöÁ˶àÆðÊÂÎñµÄ¼¼Êõϸ½Ú£¬ÕâЩÊÂÎñÉæ¼°Õë¶Ô½ðÈÚ¿Í»§µÄ JSOutProx ¶ñÒâÈí¼þ£¬ÈôÊÇÕë¶ÔÆóÒµ£¬ÔòÌṩÐéαµÄ SWIFT ¸¶¿î֪ͨ£»ÈôÊÇÕë¶Ô¸öÈ˹«Ãñ£¬ÔòÌṩ MoneyGram Ä£°å¡£¸ÃÍþв×éÖ¯µÄÖ¸±êÊÇÓ¡¶ÈÒÔ¼°·ÆÂɱö¡¢ÀÏÎΡ¢ÐÂ¼ÓÆÂ¡¢ÂíÀ´Î÷ÑÇ¡¢Ó¡¶ÈµÄ½ðÈÚ×éÖ¯£¬´Ë¿Ì»¹ÓÐÉ³ÌØ°¢À²®µÄ½ðÈÚ×éÖ¯¡£Resecurity Ê×ϯִÐй٠Gene Yoo °µÊ¾£¬´Ó¿ª·¢½Ç¶ÈÀ´¿´£¬×îа汾µÄ JSOutProx ÊÇÒ»¸ö¼«¶È½Ã½ÝÇÒ×éÖ¯ÓÅÁ¼µÄ·¨Ê½£¬ÔÊÐí¹¥»÷Õ߯¾¾ÝÊܺ¦ÕßµÄÌØ¶¨»·¾³¶¨ÔìÖ°ÄÜ¡£Æ¾¾Ý Visa µÄÍþв»ã±¨£¬¹¥»÷Õ߾ͻáÍøÂçÐÅÏ¢£¬ÀýÈçÖ÷Õ˺źÍÓû§Í´´¦£¬¶øºóÕë¶ÔÊܺ¦ÕßÖ´Ðи÷Àà¶ñÒâÐÐΪ¡£
https://www.darkreading.com/threat-intelligence/solar-spider-spins-up-new-malware-to-entrap-saudi-arabian-banks
3. ¹È¸è¸æ×´ÀûÓ÷¨Ê½¿ª·¢ÉÌÐéα¼ÓÃÜÇ®±ÒͶ×ÊÀûÓ÷¨Ê½Ú¿Æ
4ÔÂ8ÈÕ£¬¹È¸èÒѶÔÁ½¼ÒÀûÓ÷¨Ê½¿ª·¢ÉÌÌá¸æ×´ËÏ£¬Ö¸¿ØÆä²Î¼Ó¡°¹ú¼ÊÔÚÏßÏû·ÑÕßͶ×ÊڲƴòË㡱£¬¸Ã´òËãºýŪÓû§´Ó Google Play É̵êºÍÆäËûÆðÔ´ÏÂÔØÐéα Android ÀûÓ÷¨Ê½£¬²¢ÒÔ³Ðŵ¸ü¸ß»Ø±¨Îª»Ï×ÓÇÔÈ¡ËûÃǵÄ×ʽ𡣾ݳƣ¬ÖÁÉÙ×Ô 2019 ÄêÒÔÀ´£¬±»¸æÒÑÏò Play É̵êÉÏ´«ÁËÔ¼ 87 ¸ö¼ÓÃÜÀûÓ÷¨Ê½£¬ÒÔÖ´ÐÐÉç»á¹¤³ÌȦÌ×£¬ÒÑÓг¬¹ý 10 ÍòÓû§ÏÂÔØÕâЩÀûÓ÷¨Ê½£¬²¢µ¼ÖÂÁ˾޴óµÄ¾¼ÃËðʧ¡£ÕâÖÔìÛÕ©´òËãÒªÇóÚ¿ÆÕßͨ¹ýÉ罻ýÌå»òÔ¼»áƽ̨£¬Ê¹Óþ«ÐÄÉè¼ÆµÄÐé¹¹½ÇÉ«À´¶Ô×¼ºÁÎÞ½äÐĵÄÓ×ÎÒ£¬ÒÔ°®Çé¹ØÏµµÄÔ¶¾°ÒýÓÕËûÃdzÉÁ¢ÐÅÀµ£¬²¢Ëµ·þËûÃÇͶ×ʼÓÃÜÇ®±ÒͶ×Ê×éºÏ£¬ÕâЩͶ×Ê×éºÏÖ¼ÔÚÔڶ̹¦·òÄÚÌṩ¸ß¶îÀûÈóÖ÷ÕÅÊÇÇÔÈ¡ËûÃǵÄ×ʽð¡£
https://thehackernews.com/2024/04/google-sues-app-developers-over-fake.html
4. ÒÔÉ«ÁÐÍøÂç¼äµý²¿ÃÅÕÆ¹ÜÈËÒò×Ô¼ºµÄÒþÖÔÃýÎó¶ø±»ÆØ¹â
4ÔÂ8ÈÕ£¬ÕâÃû¼äµýÃû½Ð Yossi Sariel£¬¾Ý³ÆÊÇÒÔÉ«ÁÐ8200 ¶ÓÁеÄÕÆ¹ÜÈË£¬ÕâÊÇÒ»Ö§ÓÉÆÆ½âÐÅÏ¢°²È«×¨¼Ò×é³ÉµÄÍŶӣ¬¿ÉÓëÃÀ¹ú¹ú¶È°²È«¾Ö»òÓ¢¹úµ±¾ÖͨѶ×ܲ¿ÏàæÇÃÀ¡£´Ë¿Ì£¬ËûÒѱ»È·ÒÔΪ 2021 Äê³ö°æµÄ¡¶ÈË»úÍŶӡ·Ò»ÊéµÄ×÷Õߣ¬¸ÃÊé½²ÊöÁ˽«ÈËÀà´úÀíÓëÏȽøÈËΪÖÇÄÜÅä¶ÔµÄÖÇÄÜÓÅÊÆ¡£ÈøÀï¶û£¨Sariel£©ÒÔ¼«¶ÈÄäÃûµÄ±ÊÃû¡°YS×¼½«¡±Ð´ÁËÕâ±¾Ê飬ÔÚ¡¶ÎÀ±¨¡·½øÐе÷²éºó·¸ÁËÒ»¸öÑϳÁµÄÃýÎ󣬸õ÷²é·¢ÏÖÑÇÂíÑ·ÉÏÓÐÈøÀï¶ûµÄÊéµÄµç×Ó¸±±¾¡°ÆäÖÐÔ̺¬Ò»·âÄäÃûµç×ÓÓʼþ£¬Äܹ»ÇáËÉÄܹ»×·×Ùµ½ Sariel µÄÃû×ÖºÍ Google ÕÊ»§¡£¡±¸Ã±¨ËæºóÏòÒÔÉ«Áйú·À¾üÐÂÎÅÆðԴ֤ʵ£¬¸ÃÕË»§ÓëÈøÀï¶ûÓйأ¬²¢Ö¸³ö¶à¸öÐÂÎÅÆðÔ´ÒÑ֤ʵËûÊÇ×÷Õß¡£
https://www.theregister.com/2024/04/08/infosec_news_roundup/
5. TargusµÄÎļþ·þÎñÆ÷Ôâ·êÍøÂç¹¥»÷ÔËÓªÁÙʱÖжÏ
4ÔÂ8ÈÕ£¬Targus ÊÇÒ»¼ÒÒÆ¶¯Åä¼þ¹«Ë¾£¬ÒÔʱÉеıʼDZ¾µçÄÔ°üºÍÊÖÌáÏä¶øÎÅÃû¡£¸Ã¹«Ë¾»¹ÏúÊÛÆ½°åµçÄÔ±£»¤¿Ç¡¢À©´óÎë¡¢¼üÅÌ¡¢Êó±êºÍ¹Û¹âÅä¼þ¡£ÔÚÖÜÒ»ÍíÉÏÏò SEC Ìá½»µÄ FORM 8-K ÎļþÖУ¬Targus µÄĸ¹«Ë¾ B. Riley Financial, INC. Åû¶£¬Õâ¼Ò±Ê¼Ç±¾µçÄÔ°üÔì×÷ÉÌÓÚ 2024 Äê 4 Ô 5 ÈÕÔÚÆäÍøÂçÉϼì²âµ½¹¥»÷¡£Targus µ±¼´Æô¶¯ÁËÊÂÎñÏìÓ¦ºÍÒµÎñÂ½ÐøÐÔºÍ̸À´µ÷²é¡¢¶ôÔìºÍ²¹¾È¸ÃÊÂÎñ¡£Targus °µÊ¾£¬¸ÃÊÂÎñÒѵõ½½ÚÔ죬ËûÃÇÔÚ±í²¿ÍøÂ簲ȫר¼ÒµÄÔ®ÊÖϸ´ÔÄÚ²¿ÏµÍ³¡£¹«Ë¾Í¨³£»á¹Ø¹Ø IT ϵͳÒÔÓ¦¶ÔÍøÂç¹¥»÷£¬ÒÔÔ¤·À¹¥»÷ÊæÕ¹µ½ÆäËû·þÎñÆ÷ºÍÉ豸¡£È»¶ø£¬ÕâÒ²×èÖ¹Á˶ÔÄÚ²¿ÀûÓ÷¨Ê½ºÍÊý¾ÝµÄºÏ·¨½Ó¼û£¬ÁÙʱÖжÏÁËÒµÎñÔËÓª£¬Í¬Ê±·þÎñÆ÷ºÍ¹¤×÷վƾ¾Ý±ØÒª½øÐÐÁ˸´Ô¡£¸Ã¹«Ë¾ÉÐδй©¹«Ë¾Êý¾ÝÊÇ·ñ±»µÁ£¬µ«ÓÉÓÚºÚ¿ÍÊ×ÏÈÊÇÔÚ¹«Ë¾ÓÃÓÚ´æ´¢ÎļþºÍÊý¾ÝµÄÎļþϵͳÉÏ·¢Ïֵģ¬Òò¶øÊý¾ÝÓпÉÄܱ»Ð¹Â¶¡£
https://www.bleepingcomputer.com/news/security/targus-discloses-cyberattack-after-hackers-detected-on-file-servers/
6. ÍþвÐÐΪÕßͨ¹ý YouTube ÊÓÆµÓÎÏ··ì϶´«²¼¶ñÒâÈí¼þ
4ÔÂ8ÈÕ£¬ÍþвÐÐΪÕßÀûÓà Vidar¡¢StealC ºÍ Lumma Stealer µÈÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ¶Ô×¼¼ÒÍ¥Óû§£¬ÕâЩ¶ñÒâÈí¼þ½«¶ñÒâÈí¼þ¼Ù×°³É YouTube ÊÓÆµÖеĵÁ°æÈí¼þºÍÊÓÆµÓÎÏ·ÆÆ½â°æ¡£ÕâЩÊÓÆµËƺõÁìµ¼Óû§»ñÈ¡Ãâ·ÑÈí¼þ»òÓÎÏ·Éý¼¶¡£Ö»¹ÜÈç´Ë£¬ÃèÊöÖеÄÁ´½ÓÈԻᵼÖ¶ñÒâÈí¼þ£¬¹¥»÷Õß»á·ÛËéºÏ·¨ÕÊ»§»òרÃÅ´´½¨ÐÂÕÊ»§À´·Ö·¢¶ñÒâÈí¼þ¡£ÕâÖÖ²½ÖèÁîÈËÓÇÓô£¬ÓÉÓÚËüÕë¶ÔµÄÊÇÄêÇáÓû§£¬ÍæµÄÊǶùͯÖÐÊ¢ÐеÄÓÎÏ·£¬¶øÕâЩÓû§²»Ì«¿ÉÄܼø±ð³ö¶ñÒâÄÚÈÝ£¬ÓÉÓÚÒѾ·¢ÏÖÁ˳¬¹ý¶þÊ®¸ö´ËÀàÕÊ»§ºÍÊÓÆµ£¬²¢½«Æä»ã±¨¸øYouTube½øÐÐɾ³ý¡£
https://gbhackers.com/hackers-deliver-malware-via-youtube-video-game-cracks/


¾©¹«Íø°²±¸11010802024551ºÅ