¼ÓÖݾ«×Ó¿âÊý¾Ýй¶  £¬¿Í»§Ó×ÎÒÐÅÏ¢Ôâ·¸·¨½Ó¼û

°ä²¼¹¦·ò 2025-03-19

1. ¼ÓÖݾ«×Ó¿âÊý¾Ýй¶  £¬¿Í»§Ó×ÎÒÐÅÏ¢Ôâ·¸·¨½Ó¼û


3ÔÂ18ÈÕ  £¬ÃÀ¹ú¾«×Ó¾èÔù¾ÞÍ·¼ÓÖݾ«×ӿ⣨California Cryobank£©½üÆÚÏò¿Í»§·¢³öÖÒ¸æ  £¬ÆäÔâ·êÁËÊý¾Ýй¶ÊÂÎñ  £¬µ¼Ö¿ͻ§µÄÓ×ÎÒÐÅÏ¢±»Ð¹Â¶¡£¼ÓÖݾ«×Ó¿âÊÇÒ»¼ÒÌṩȫ·½Î»·þÎñµÄ¾«×Ó¿â  £¬Ô̺¬Àä¶³¾èÏ×¾«×ÓºÍרҵÉúÖ³·þÎñ  £¬ÈçÂÑ×ÓºÍÅßÌ¥Öü´æ  £¬ÊÇÃÀ¹ú×î´óµÄ¾«×Ó¿âÖ®Ò»  £¬·þÎñÁìÓò¸²¸ÇÈ«ÃÀ50¸öÖݼ°È«Çò30¶à¸ö¹ú¶È¡£2024Äê4ÔÂ21ÈÕ  £¬¸Ã»ú¹¹¼ì²âµ½ÍøÂç¿ÉÒɻ  £¬²¢µ±¼´²ÉÈ¡´ëÊ©¸ôÀëÁËÊÜÓ°ÏìµÄÍÆËã»úºÍITÍøÂç¡£¾­¹ýµ÷²é  £¬È·ÈÏÓÐδ¾­ÊÚȨµÄÒ»·½ÔÚ4ÔÂ20ÈÕÖÁ22ÈÕÆÚ¼ä½Ó¼û²¢¿ÉÄÜ»ñÈ¡Á˲¿ÃÅÍÆËã»úϵͳÉϵÄÎļþ¡£Õâ´ÎÐ¹Â¶Éæ¼°¿Í»§µÄ¶àÖÖÓ×ÎÒÊý¾Ý  £¬Ô̺¬ÐÕÃû¡¢ÒøÐÐÕË»§ÐÅÏ¢¡¢Éç»á±£Ïպš¢¼ÝÕպš¢Ö§¸¶¿¨ºÅºÍ½¡È«±£ÏÕÐÅÏ¢µÈ¡£ÎªÓ¦¶Ô´ËÊÂÎñ  £¬¼ÓÖݾ«×Ó¿âΪÊÜÓ°Ïì¿Í»§ÌṩÁËÒ»ÄêµÄÃâ·ÑÐÅÓþ¼à¿Ø·þÎñ  £¬²¢¼ÓÇ¿ÁËÊý¾Ý±£ÏպͰ²È«´ëÊ©¡£¹ÌÈ»¾èÏ×¾«×Óͨ³£ÊÇÄäÃûµÄ  £¬µ«Õâ´ÎйÃÜÊÂÎñ¶Ô´ÓǰÄäÃû¾èÏ×¾«×ÓµÄÈËÀ´Ëµ¿ÉÄÜ×é³ÉÑϳÁµÄÒþÖÔÎÊÌâ  £¬Ä¿Ç°Éв»Ã÷ÏÔ¾èÏ×ÕßµÄÐÅÏ¢ÊÇ·ñ±»µÁ¡£¼ÓÖݾ«×Ó¿âÉÐδ»ØÓ¦¹ØÓÚ¾èÔùÕßÊý¾ÝÊÇ·ñй¶µÄѯÎÊ¡£


https://www.bleepingcomputer.com/news/security/sperm-donation-giant-california-cryobank-warns-of-a-data-breach/


2. 11¹úAPTÀûÓöñÒâ.lnkÎļþÖ´ÐмäµýÓëÊý¾ÝÇÔÈ¡»î¶¯


3ÔÂ18ÈÕ  £¬×Ô 2017 ÄêÒÔÀ´  £¬ÖÁÉÙ11¸ö¹ú¶ÈÖ§³ÖµÄAPT×éÖ¯±»ÆØÀûÓöñÒâ.lnkÎļþ½øÐмäµý»î¶¯ºÍÊý¾ÝÇÔÈ¡¡£¾ÝÇ÷Ïò¿Æ¼¼ÁãÈÕ´òË㣨ZDI£©·ÖÎö  £¬×êÑÐÈËÔ±·¢ÏÖÁË1,000¸ö´ËÀàÎļþ  £¬ÕâЩÎļþÀûÓ÷ì϶ZDI-CAN-25373ÔÚÊܺ¦Õß»úеÉÏÖ´Ðаµ²Ø¶ñÒâºÅÁî¡£¸Ã·ì϶Òѱ»À´×Ô³¯ÏÊ¡¢ÒÁÀÊ¡¢¶íÂÞ˹ºÍÖйúµÄAPT×éÖ¯ÀûÓà  £¬¹¥»÷Ö¸±êÔ̺¬±±ÃÀ¡¢Å·ÖÞ¡¢ÑÇÖÞ¡¢ÄÏÃÀºÍ°Ä´óÀûÑÇÈ·µ±¾Ö¡¢½ðÈÚ¡¢µçÐÅ¡¢¾üʺÍÄÜÔ´²¿ÃÅ×éÖ¯¡£ÆäÖÐ  £¬³¯ÏʵÄAPT×éÖ¯Õ¼±È×î¸ß  £¬´ï45.5%  £¬ÇÒ70%רһÓÚ¼äµý»î¶¯¡£ZDIÒÑÏò΢ÈíÌá½»·ì϶  £¬µ«Î¢ÈíÉÐδ½â¾ö¡£¸Ã·ì϶±»ÓÃÓÚ´«µÝ¸÷Àà¶ñÒâÈí¼þ¸ºÔØ  £¬Ô̺¬MaaSºÍÉÌÆ·¶ñÒâÈí¼þ¡£ÍþвÐÐΪÕßͨ¹ý°Ñ³Öͼ±êºÍÎļþÃûÓÕÆ­Óû§´ò¿ª.lnkÎļþ  £¬²¢ÔÚÆäÖÐÌî³ä¿Õ¸ñ°µ²Ø¶ñÒâºÅÁî  £¬ÒÔÔ¤·ÀÓû§¿´µ½ÒÑÖ´ÐеIJÎÊý¡£Ò»Ð©³¯ÏÊAPT×é֯ʹÓó¬´ó.lnkÎļþÌӱܼì²â¡£´Ë·ì϶ʹµ±¾ÖºÍ×éÖ¯ÈÝÒ×Êܵ½¹¥»÷  £¬´æÔÚ¾Þ´ó·çÏÕ¡£


https://securityaffairs.com/175569/apt/nation-state-actors-and-cybercrime-gangs-abuse-malicious-lnk-files-for-espionage-and-data-theft.html


3. Î÷²¿Í¬ÃËÒøÐÐ2.2Íò¿Í»§Êý¾ÝÔâµÚÈý·½Èí¼þÈëÇÖй¶


3ÔÂ18ÈÕ  £¬×ܲ¿Î»ÓÚÑÇÀûÉ£ÄÇÖݵÄÎ÷²¿Í¬ÃËÒøÐУ¨Western Alliance Bank£©  £¬ÊÇWestern Alliance BancorporationµÄÈ«×Ê×Ó¹«Ë¾  £¬½üÈÕ֪ͨÁ˽ü22,000Ãû¿Í»§  £¬ËûÃǵÄÓ×ÎÒÐÅÏ¢ÔÚ2024Äê10ÔÂÒòµÚÈý·½¹©¸øÉ̵ݲȫÎļþ´«ÊäÈí¼þÔâµ½ÈëÇÖ¶ø±»ÇÔÈ¡¡£¹¥»÷ÕßÀûÓÃÁ˸ÃÈí¼þÖеÄÁãÈÕ·ì϶  £¬¸Ã·ì϶Óɹ©¸øÉÌÓÚ2024Äê10ÔÂ27ÈÕÅû¶¡£ÒøÐÐÔÚ2Ô·ÝÌá½»¸øÃÀ¹ú֤ȯÂòÂôίԱ»áµÄÎļþÖгõ´ÎÅû¶ÁËÕâÒ»ÊÂÎñ  £¬Ö¸³ö¹¥»÷ÕßÔÚ2024Äê10ÔÂ12ÈÕÖÁ24ÈÕÆÚ¼äÈëÇÖÁËÓÐÏÞÊýÁ¿µÄÎ÷·½Í¬ÃËϵͳ  £¬²¢ÇÔÈ¡ÁË´æ´¢ÔÚÊÜϰȾÉ豸ÉϵÄÎļþ¡£±»µÁÎļþÔ̺¬¿Í»§µÄÓ×ÎÒÐÅÏ¢  £¬ÈçÐÕÃû¡¢Éç»á°²È«ºÅÂë¡¢µ®ÉúÈÕÆÚ¡¢½ðÈÚÕË»§ºÅÂë¡¢¼ÝÊ»ÅÆÕÕºÅÂ롢˰Îñ¼ø±ðºÅÂëºÍ/»ò»¤ÕÕÐÅÏ¢¡£¹ÌÈ»ÒøÐаµÊ¾Ã»ÓÐÖ¤¾ÝÅú×¢ÕâЩÐÅÏ¢±»ÀÄÓÃÓÚڲƭ»òÉí·Ý͵ÇÔ  £¬µ«ÎªÊÜÓ°ÏìµÄÓû§ÌṩÁËÒ»ÄêµÄExperian IdentityWorks Credit 3BÉí·Ý± £»¤·þÎñÃâ·Ñ»áÔ±×ʸñ¡£´Ë±í  £¬¸ÃÒøÐÐÊÇClopÀÕË÷Èí¼þÍÅ»ïÔÚÆäйÃÜÍøÕ¾ÉÏÁгöµÄ58¼Ò¹«Ë¾Ö®Ò»  £¬µ«¸ÃÒøÐÐÔÚйÃÜ֪ͨº¯»ò2Ô·ݵÄÃÀ¹ú֤ȯÂòÂôίԱ»áÎļþÖв¢Î´Ìá¼°ÊÜËðµÄ°²È«Îļþ´«ÊäÈí¼þ¡£


https://www.bleepingcomputer.com/news/security/western-alliance-bank-notifies-21-899-customers-of-data-breach/


4. Google PlayÏÖ300Óà¶ñÒâ¸æ°×ڲƭÀûÓà  £¬ÏÂÔØ³¬6000Íò´Î


3ÔÂ18ÈÕ  £¬BitdefenderµÄÍøÂ簲ȫ×êÑÐÈËÔ±¸æ·¢ÁËÒ»¸öÔÚGoogle Play StoreÖв¿ÊðÁ˳¬¹ý300¸ö¶ñÒâÀûÓ÷¨Ê½µÄ¸æ°×ڲƭ»î¶¯  £¬ÕâЩÀûÓ÷¨Ê½µÄÏÂÔØÁ¿×ܼƳ¬¹ý6000Íò´Î  £¬Ê¹Óû§Ãæ¶ÔÇÖÈëÐÔ¸æ°×ºÍÍøÂç´¹µö¹¥»÷µÄ·çÏÕ¡£ÕâЩ¶ñÒâÀûÓ÷¨Ê½¼Ù×°³ÉÎÞº¦µÄʵÓ÷¨Ê½  £¬Èç¶þάÂëɨÃèÒÇ¡¢Óöȸú×ÙÆ÷ºÍ½¡È«ÀûÓ÷¨Ê½µÈ  £¬²¢²»ÐݸüÐÂÒÔÔ̺¬¶ñÒâ´úÂë¡£¸Ãڲƭ»î¶¯×Ô2024ÄêµÚÈý¼¾¶ÈÒÔÀ´Ò»Ïò»îÔ¾  £¬Ã»ÓзŻºµÄ¼£Ïó  £¬Ö±µ½2025Äê3Ô  £¬ÈÔÓÐеĶñÒâÀûÓÃÔÚÉ̵êÖгöÏÖ¡£ÕâЩÀûÓûᰵ²ØÍ¼±ê¡¢¸ü¸ÄÃû³ÆÒÔ·ÂÕպϷ¨·þÎñ  £¬²¢ÔÚδ¾­Óû§Ô޳ɵÄÇé¿öÏÂÏÔʾȫÆÁ¸æ°×  £¬ÉõÖÁÌáÒéÍøÂç´¹µö¹¥»÷  £¬ÓÕÆ­Óû§Ð¹Â¼ûô¸ÐÐÅÏ¢¡£×êÑÐÈËÔ±»¹¸æ·¢ÁËÕâЩ¶ñÒâÀûÓ÷¨Ê½Ìӱܼì²âµÄ¼¼ÊõÕ½Êõ  £¬ÈçÀÄÓÃÄÚÈÝÌṩÉ̺Íͨ¹ýAPIŲÓÃÆô¶¯»î¶¯µÈ¡£ÎªÁ˱ £»¤É豸  £¬½¨ÒéÔ¤·ÀÏÂÔØ²»ÓÃÒªµÄÀûÓ÷¨Ê½  £¬È·±£É豸ά³Ö¸üР £¬²¢¶¨ÆÚÔËÐжñÒâÈí¼þɨÃè¡£ÈôÊÇ·¢ÏÖÈκÎÒì³£  £¬Çëµ±¼´É¾³ý¸ÃÀûÓ÷¨Ê½¡£


https://hackread.com/scammers-ad-fraud-apps-google-play-60m-downloads/


5. Çø¿éÁ´ÓÎϷƽ̨WEMIXÔâºÚ¿Í¹¥»÷  £¬ÇÔÈ¡610ÍòÃÀÔª


3ÔÂ18ÈÕ  £¬Çø¿éÁ´ÓÎϷƽ̨WEMIXÔÚÉÏÔÂÔâ·êÁËÍøÂç¹¥»÷  £¬µ¼ÖÂ8,654,860¸öWEMIX´ú±Ò±»µÁ  £¬¼ÛÖµÔ¼6,100,000ÃÀÔª¡£ÔÚ×òÈÕµÄÐÂÎŰ䲼»áÉÏ  £¬WEMIXÊ×ϯִÐйٽðÎý»À֤ʵÁËÕâÒ»ÊÂÎñ  £¬²¢Ú¹ÊÏçËÍÆ³Ù°ä²¼¹«¿ªÉêÃ÷µÄÔ­ÒòÊÇΪÁ˱ £»¤Íæ¼ÒÃâÊܽøÒ»²½Ëðʧ¡£ËûÌáµ½  £¬ÔÚ·¢Ïֺڿ͹¥»÷ºó  £¬WEMIXµ±¼´¹Ø¹ØÁËÊÜÓ°ÏìµÄ·þÎñÆ÷²¢Æô¶¯Á˾ßÌå·ÖÎö  £¬²¢Ïò¾¯·½ÌáÆðÁËÐÌÊÂËßËÏ¡£ÓÉÓÚδȷ¶¨ÉøÈë²½ÖèÇÒ´ó²¿Ãű»µÁ×ʲúÒÑÏúÊÛ  £¬µ±¼´¹«¿ªÅû¶¿ÉÄÜÒý·¢Êг¡·¢¼±¡£WEMIXÊǺ«¹úÓÎÏ·¹«Ë¾Wemade¿ª·¢µÄ»ùÓÚÇø¿éÁ´µÄÓÎϷƽ̨  £¬ÈÚºÏÁËÇø¿éÁ´¼¼Êõ  £¬Ìṩ±ßÍæ±ß׬ģÐÍ¡¢NFTËùÓÐȨºÍDeFiÖ°ÄÜ¡£Æä×î³É¹¦µÄÓÎÏ·MIR4ÔÚGoogle PlayÉϵÄÏÂÔØÁ¿³¬¹ý500Íò´Î¡£¾Ý´§Ä¦  £¬ºÚ¿Íͨ¹ý»ñÈ¡ÓÃÓÚ¼à¿ØNFTƽ̨¡°NILE¡±·þÎñµÄÈÏÖ¤ÃÜÔ¿ÈëÇÖÁËWEMIX  £¬¸ÃÃÜÔ¿±»¿ª·¢ÈËÔ±ÉÏ´«µ½Á˹²Ïí´æ´¢¿âÖС£ºÚ¿Í²ß¶¯ÁËÁ½¸öÔµĹ¥»÷  £¬³É¹¦½øÐÐÁË13´ÎÌá¿î  £¬±»µÁ´ú±ÒѸ¿ìͨ¹ý¼ÓÃÜÇ®±ÒÂòÂôËù±»Ï´°×¡£Ä¿Ç°  £¬WEMIX´¦ÓÚÀëÏß״̬  £¬ÔÚǨáãÖÁ¸ü°²È«µÄ»·¾³  £¬²¢´òËãÔÚ3ÔÂ21ÈÕÈ«Ãæ¸´Ô­·þÎñ¡£´Ë±í  £¬Êý×Ö×ʲúÂòÂôËùͬÃ˽«WEMIXÖ¸¶¨Îª¡°Í¶×ÊÖҸ桱×ʲú²¢ÔÝÍ£´æ¿î  £¬WEMIX´òËã¶Ô´ËÌá³öÉÏËß¡£


https://www.bleepingcomputer.com/news/security/blockchain-gaming-platform-wemix-hacked-to-steal-61-million/


6. AI¹ÄÆðÒý·¢Ú¿Æ­ÐÂÇ÷Ïò£º¶ñÒâÈí¼þ½èDeepSeekµÈ¹¤¾ß´«²¼


3ÔÂ18ÈÕ  £¬ÈËΪÖÇÄܵĹįð´ßÉúÁËChatGPT¡¢DeepSeekºÍGeminiµÈ³ÛÃû¹¤¾ß  £¬µ«Í¬Ê±Ò²ÎªÚ¿Æ­ÕßÌṩÁËеĿɳËÖ®»ú¡£McAfee Labs·¢ÏÖ  £¬¶ñÒâÐÐΪÕßÕýÀûÓÃÈËΪÖÇÄܹ¤¾ßµÄ·çǰ½øÐÐSEOͶ¶¾  £¬ÓÕµ¼Óû§½Ó¼û¶ñÒâÍøÕ¾²¢ÏÂÔØ¶ñÒâÈí¼þ¡£ÒÔDeepSeek-R1ΪÀý  £¬Æä×÷Ϊ³É±¾Ð§Òæ¸ßµÄÈËΪÖÇÄÜÄ£Ðͱ¸ÊܹØ×¢  £¬µ«ÆäÊ¢ÐÐҲΪƭ×Ó´´ÔìÁË»úÓö¡£ËûÃÇÀûÓÃÓû§µÄÐ˷ܺͲ»ÄÍ·³¸ÐÇé  £¬Í¨¹ý¼ÙðµÄDeepSeek×°Ö÷¨Ê½¡¢ÍøÕ¾ºÍÀûÓ÷¨Ê½´«²¼¶ñÒâÈí¼þ  £¬Èç¼üÅ̼ͼÆ÷¡¢¼ÓÃÜÍÚ¾òÆ÷ºÍÃÜÂëÇÔÈ¡·¨Ê½¡£ÕâЩ¶ñÒâ»î¶¯Ô̺¬½«ºÏ·¨Èí¼þÓë²»±ØÒªµÄµÚÈý·½ÀûÓ÷¨Ê½°ó¸¿ÔÚһ·  £¬ÒÔ¼°Ê¹ÓÃÐéαµÄÑéÖ¤ÂëÒ³ÃæÓÕÆ­Óû§ÏÂÔØ²¢Ö´ÐжñÒâÈí¼þ¡£¼¼Êõ·ÖÎö·¢ÏÖ  £¬ÕâЩ¶ñÒâÈí¼þ×°Öúó»áÓëºÅÁîºÍ½ÚÔì·þÎñÆ÷ͨѶ  £¬ÏÂÔØ²¢Ö´ÐÐPowerShell¾ç±¾  £¬½ø¶øÆô¶¯MoneroÍÚ¿ó²Ù×÷¡£Ú¿Æ­ÕßÑ¡ÔñÃÅÂÞ±Ò¿ÉÄÜÊÇÒòÆäÄäÃûÐÔ  £¬Ê¹µÃ×ʽðÁ÷ÏòÄÑÒÔ×·×Ù¡£McAfee LabsÇ¿µ÷  £¬ÔÚÐÂÐ˼¼Êõ³´×÷ÖÜÆÚÆÚ¼ä  £¬Óû§Ó¦Î¬³Ö¾¯ÌèºÍÖªÇé  £¬²¢ÔÚ´ò¿ª»òÖ´ÐпÉÒÉÁ´½ÓºÍÎļþ֮ǰʹÓÃVirusTotalµÈ¹¤¾ß½øÐÐɨÃè  £¬ÒÔÈ·±£°²È«¡£


https://hackread.com/fake-deepseek-ai-installers-websites-apps-malware/