AflacÅû¼ûÀ¹úÍøÂç¿ÉÒɻµ¼ÖÂÐÅϢй¶

°ä²¼¹¦·ò 2025-06-24

1. AflacÅû¼ûÀ¹úÍøÂç¿ÉÒɻµ¼ÖÂÐÅϢй¶


6ÔÂ21ÈÕ£¬ÃÀ¹ú±£ÏÕ¹«Ë¾AflacÅû¶£¬ÆäÃÀ¹úÍøÂç¼ì²âµ½¿ÉÒɻ£¬¿ÉÄܵ¼ÖÂÉç»á±£ÏÕºÅÂë¼°ÆäËûÓ×ÎÒÐÅϢй¶¡£¸Ã¹«Ë¾³Æ´ËÊÂÎñÊÇÕë¶Ô±£ÏÕÐÐÒµµÄÍøÂç·¸×ï»î¶¯µÄÒ»²¿ÃÅ£¬²¢ÒÑÓÚÖÜÎåÉêÃ÷ÈëÇÖÔÚÊýÓ×ʱÄÚ±»³É¹¦×èÖ¹¡£AflacÔÚ²¼¸æÖÐÇ¿µ÷£¬ÔÚÏìÓ¦ÊÂÎñµÄͬʱ³ÖÐø·þÎñ¿Í»§£¬±£µ¥³Ð±£¡¢ÀíÅâÉóºË¼°ÆäËûͨÀýÒµÎñ¾ùÕý³£ÔË×÷¡£Ä¿Ç°ÊÂÎñÉó²é´¦ÓÚ³õÆÚ½×¶Î£¬ÊÜÓ°Ïì×ÜÈËÊýÉÐδȷ¶¨¡£¾­µ÷²é£¬¿ÉÄÜÉæ¼°µÄÎļþÔ̺¬ÃÀ¹úµØÓò¿Í»§¡¢ÊÜÒæÈË¡¢Ô±¹¤¡¢´úÀíÈ˵ÈȺÌåµÄÀíÅâÐÅÏ¢¡¢½¡È«Êý¾Ý¡¢Éç»á±£ÏÕºÅÂë¼°ÆäËûÓ×ÎÒÉí·ÝÐÅÏ¢¡£ÎªÓ¦¶ÔÕâ´ÎÊÂÎñ£¬Aflac°ä·¢½«ÏòÖµç¿Í·þÖÐÐĵÄÊÜÓ°ÏìÈËȺÌṩ24¸öÔÂÃâ·ÑÐÅÓþ¼à¿Ø¡¢Éí·Ý͵ÇÔ·À»¤¼°Ò½ÁƶÜÅÆ·þÎñ¡£


https://www.securityweek.com/aflac-finds-suspicious-activity-on-us-network-that-may-impact-social-security-numbers-other-data/


2. ¶íÂÞ˹¶¯Îï²úÆ·ÈÏ֤ϵͳÔâÍøÂç¹¥»÷£¬Ö¹©¸øÁ´ÖжÏ


6ÔÂ20ÈÕ£¬¶íÂÞ˹¶¯Îï²úÆ·Êý×ÖÈÏ֤ϵͳMercuryƽ̨±¾ÖܳõÔâÍøÂç¹¥»÷̱»¾£¬ÕâÊǽñÄêµÚÈý´ÎͬÀàÊÂÎñÇÒ×îΪÑϳÁ¡£ÏµÍ³Ì±»¾ÆÈʹ³ö²úÉ̺͹©¸øÉ̳ÁÐÂÆôÓÃÖ½ÖÊÊÞÒ½Ö¤Ê飬µ«ÒòÎÞÊýÁãÊÛÉÌÒÀÀµ×¨Êôµç×ÓÎĵµÖÎÀíϵͳ£¬ÎÞ·¨½Ó¹ÜÖ½ÖÊÆ¾Ö¤£¬µ¼ÖÂÎïÁ÷»ìÂÒ£¬¶à¼ÒµØÓò·ÖÏúÖÐÐĻؾø½Ó¹Ü»õÎ´óÐÍÁãÊÛÉÌLenta¡¢Yandex LavkaºÍMiratorg¾ùÔâ·ê¹©¸øÁ´ÖжÏ¡£Æ¾¾Ý¶íÂÞ˹˾·¨£¬Éæ¼°ÈâÀà¡¢ÈéÖÆÆ·µÈ¶¯Îï²úÆ·µÄÆóÒµ±ØÐëÔÚMercuryϵͳע²á²¢Ç©·¢µç×ÓÊÞÒ½Îļþ£¬¶ÌȱÈÏÖ¤¼Ó¹¤³§²»µÃ½Ó¹ÜÔ­ÁÏÄÌ¡£ÈéҵͬÃËЭ»áÖ¸³ö²¿ÃÅÁãÊÛÉ̻ؾø½Ó¹ÜÎÞµç×ÓÎļþµÄ²úÆ·£¬ÇÒ¼à¹Ü»ú¹¹Ö¸ÒýÍÌÍÂÒý·¢¹©¸øÉÌ»ìÂÒ¡£Õâ´Î¹ÊÕÏ»¹ÖжÏÁËÓëÆäËûµÐÔÖÊý×Ôì½Ì¨µÄÊý¾Ý»¥»»£¬´ó¹æÄ£³ö²úÆóÒµÊÜÓ°ÏìÓÈΪÑϳÁ£¬ÐÐÒµ´ú±í³ÆÏÖÓÐÓ¦¼±Ô¤°¸ÎÞ·¨Ó¦¶Ô³Ö¾ÃÖжÏ¡£ÊÞÒ½¼à¹Ü²¿ÃÅÔ¤¼Æ½¨¸´¹¤×÷½«³ÖÐøÖÁ±¾ÖÜÄ©£¬Ä¿Ç°ÉÐÎÞ×éÖ¯Ðû³Æ¶ÔÕâ´Î¹¥»÷ÕÆ¹Ü¡£


https://therecord.media/russia-dairy-supply-disrupted-cyberattack


3. ·¿µØ²ú¹«Ë¾Ð¹Â¶ÁËÔ̺¬17ÍòÌõÃ÷ÎÄÓ×ÎÒÉí·ÝÐÅÏ¢µÄÊý¾Ý¿â


6ÔÂ20ÈÕ£¬ÍøÂ簲ȫ×êÑÐÔ±Jeremiah FowlerÎÞÒâ·¢ÏÖÁËÒ»¸öδ¼ÓÃÜÇÒÎÞÃÜÂë±£»¤µÄÊý¾Ý¿â£¬¸ÃÊý¾Ý¿â¿ÉÄÜÊôÓÚÒ»¼Ò·¿µØ²úÖÎÀíºÍͶ×ʹ«Ë¾¡£¾Ý´§Ä¦£¬Êý¾Ý¿âËùÊô¹«Ë¾ÎªÎ»ÓÚ¼ÓÀû¸£ÄáÑÇÖÝ¡¢×¨ÃÅ´¦ÖÃÃÀ¹ú¸÷µØ·¿µØ²úÒµÎñµÄIncome Property Investments£¬µ«FowlerÎÞ·¨ÅжÏÎļþÊÇÓɸù«Ë¾»¹ÊǵÚÈý·½ÖÎÀí¡£¸ÃÊý¾Ý¿â¹æÄ£Öش󣬸ߴï116.24GB£¬Ô̺¬Ô¼170,000±Ê¼Í¼£¬ÇÒÈκÎÈ˶¼Äܹ»ÀûÓá£Â¶³öµÄÊý¾ÝÖÖÀà·±¶à£¬º­¸ÇÓ×ÎÒÉí·ÝÐÅÏ¢£¨PII£©ºÍÄÚ²¿Îļþ¡£ÆäÖУ¬Ó×ÎÒÉí·ÝÐÅÏ¢Ô̺¬Ãû×Ö¡¢µ®ÉúÈÕÆÚ¡¢Éç»á°²È«ºÅÂë¡¢ÎïÀíµØÖ·¡¢µç×ÓÓʼþµØÖ·µÈ£»Óë¾ÍÒµÓйصÄÎļþÈçß³Ô𡢿ª³ý»ò´ÇÖ°¼Í¼ҲÔ̺¬ÔÚÄÚ£»ÄÚ²¿ÎļþÔòÉæ¼°ÖÎÀí¡¢°²È«¡¢ÊÂÎñ»ã±¨¡¢¾¯·½»ã±¨¡¢ÊØ»¤¡¢±¨ÏúµÈ¶à¸ö·½Ãæ¡£FowlerÔÚÊý¾ÝÑù±¾Öз¢ÏÖÁ˾ßÌå¼Í¼Æû³µÂõêÔ±¹¤PIIµÄµç×Ó±í¸ñ£¬ÇÒÕâЩÐÅϢȫÊýÒÔ´¿Îı¾´ó¾Ö³öÏÖ£¬Î´½øÐмÓÃÜ´¦Öá£ÔÚ·¢ÏÖ´ËÎÊÌâºó£¬ÓйØÈËÔ±ÏòIncome Property Investments·¢ËÍÁËÕÆ¹ÜÈεÄÅû¶֪ͨ£¬µ±Ìì¸ÃÊý¾Ý¿â¾Í±»Ï޶ȽӼû£¬ÒÔÔ¤·À½øÒ»²½µÄÐÅϢй¶·çÏÕ¡£


https://cybernews.com/security/massive-170k-database-exposed/


4. Âõ¿­Â×Ò½ÁƱ£½¡ÔâINCÀÕË÷¹¥»÷ÖÂ74.3Íò»¼ÕßÊý¾Ýй¶


6ÔÂ23ÈÕ£¬Âõ¿­Â×Ò½ÁƱ£½¡¹«Ë¾ÖÒ¸æ743,000Ãû»¼Õߣ¬ÆäÒ½ÁÆÏµÍ³Òò2024Äê7ÔÂÀÕË÷Èí¼þÍÅ»ïµÄ¹¥»÷¶øÔâ·êÊý¾Ýй¶¡£¸Ã¹¥»÷ÓÚ2024Äê8ÔÂ5ÈÕ±»·¢ÏÖ£¬µ«È·¶¨ÊÜÓ°ÏìÈËÔ±µÄ·¨Ò½µ÷²éÖ±ÖÁ2025Äê5ÔÂ5ÈÕ²ÅʵÏÖ£¬²¢ÓÚÉÏÖÜÎåÆðÍ·°ä²¼Í¨Öª¡£2024Äê8Ô³õ£¬¸ÃÒ½ÁÆ»ú¹¹Ôâ·êITºÍµç»°ÏµÍ³ÖжÏ£¬¾­µ÷²é·¢ÏÖ»¼ÕßÊý¾Ý¿âÊÜÓ°Ï죬»¼ÕßǰÍùҽԺʱ±»ÒªÇóЯ´øÔ¤Ô¼ºÍÓÃÒ©ÐÅÏ¢¡£Ö»¹ÜÂõ¿­Â×δ¾ßÌå×¢Ã÷¹¥»÷ÕßÉí·Ý£¬µ«ÓÐÔ±¹¤ÔÚÍøÉϰ䲼ÁËINCµÄÀÕË÷ÐÅ£¬ÕâЩÀÕË÷ÐÅ»á×Ô¶¯ÔÚÒ½Ôº´òÓ¡»úÉÏ´òÓ¡¡£ÔÚ·¢Ë͸øÊÜÓ°ÏìÓ×ÎÒµÄ֪ͨÖУ¬Âõ¿­Â×ÈÏ¿ÉÊÂÎñÉæ¼°ÀÕË÷Èí¼þ¹¥»÷£¬µ«ÈÔδÌá¼°INC¡£µ÷²éÈ·¶¨£¬¹¥»÷ÕßÔÚ2024Äê7ÔÂ17ÈÕÖÁ8ÔÂ3ÈÕÆÚ¼ä¿É½Ó¼ûMcLarenºÍKarmanosµÄϵͳ¡£Âõ¿­Â×Ìá½»¸øÃÀ¹úµ±¾ÖµÄÊý¾Ýй¶֪ͨÑù±¾ÏÔʾ£¬Ð¹Â¶µÄÈ«ÃûÐÅÏ¢Òѱ»É¾³ý£¬µ«ÆäËûÀàÐÍÊý¾Ý±»»ñÈ¡£¬×ÜÌåй¶ÁìÓòÉв»Ã÷È·¡£ÕâÊÇÂõ¿­Â×½üÄêÀ´Ôâ·êµÄµÚ¶þÆð³Á´óÊý¾Ýй¶ÊÂÎñ£¬ÉÏÒ»´Î²úÉúÔÚ2023Äê7Ô£¬ÓÉALPHV/BlackCatÀÕË÷Èí¼þ×éÖ¯ÌáÒé£¬ÍøÂç·¸×ï·Ö×ÓÇÔÈ¡ÁË220ÍòÈ˵ÄÃô¸ÐÒ½ÁÆÊý¾Ý¡¢Ó×ÎÒÉí·ÝÐÅÏ¢ºÍÉç»á°²È«ºÅÂ룬²¢ÓÚ2023Äê10Ô½«Êý¾ÝÑù±¾ÔÚÍøÉÏй¶£¬ÆÈʹÂõ¿­Â×Ö§¸¶Î´¹«¿ªµÄÊê½ð½ð¶î¡£


https://www.bleepingcomputer.com/news/security/mclaren-health-care-says-data-breach-impacts-743-000-patients/


5. ÃÀÍøÂ簲ȫ¹«Ë¾³ÆCyber FattahÐ¹Â¶É³ÌØ»î¶¯»áÃô¸ÐÊý¾Ý


6ÔÂ23ÈÕ£¬¾ÝÃÀ¹úÍøÂ簲ȫ¹«Ë¾Resecurity³Æ£¬ÓëCyber Fattah»î¶¯ÓйصÄÍþвÐÐΪÕßй¶ÁËÊýǧÌõÓëÍù½ìÉ³ÌØ»î¶¯»áÓйصļͼ¡£ÕâЩ±»µÁÊý¾ÝÒÔSQLת´¢´ó¾Öй¶£¬¹¥»÷Õßͨ¹ýδ¾­ÊÚȨ½Ó¼ûphpMyAdminÇÔÈ¡ÁË´æ´¢µÄ¼Í¼¡£Resecurity½«Õâ´ÎÊÂÎñ½â¶ÁΪÒÁÀʼ°Æä´úÀíÈË·¢Õ¹µÄÒ»Ïî¸ü¿í·ºÐÅÏ¢Ðж¯µÄÒ»²¿ÃÅ£¬Ö¼ÔÚÔì×÷²»°²È«¸Ð²¢·ÛË鵨ÓòºÍƽ¡£¼øÓÚÒÔÉ«ÁÐÓëÒÁÀÊÑÏÖØ¹ØÏµ¼Ó¾ç£¬ÍþвÐÐΪÕßÊÔIJÀûÓÃÉ³ÌØ°¢À­²®Íõ¹úºÍÃÀ¹úÔÚµØÓò¹ØÏµºÍ°²È«ÖеijÁÒª×÷Óã¬ÒÁÀ­¿Ë¾³ÄÚһЩÓëÕæÖ÷µ³¡¢¹þÂí˹ºÍÇ×ÒÁÀʵÄ×éÖ¯Ò²ÀûÓøÃÊÂÎñ½øÐÐÓÐÕë¶ÔÐÔµÄÐû´«»î¶¯£¬½øÒ»²½·Å´óÁËÊÂÎñÓ°Ïì¡£ÕâЩÊý¾Ý¿ÉÄÜÀ´×ÔÓë2024ÄêÉ³ÌØ»î¶¯»á¹Ù·½ÍøÕ¾ÓйصÄÊý¾Ý¿â£¬·Ã¿Í¡¢»î´øÍ·¼°ÆäÍŶӿÉÔÚ¸ÃÍøÕ¾×¢²á²¢·ÖÏíÓ×ÎÒÐÅÏ¢¡£Èç´Ë¹æÄ£µÄÐ¹Â¶Éæ¼°´óÁ¿Ãô¸ÐÊý¾Ý£¬Ô̺¬Ó×ÎÒÉí·ÝÐÅÏ¢¡¢¹ú¼ÊÒøÐÐÕ˺ÅÒÔ¼°Ìå¼ìÖ¤Ã÷µÈ¡£´óÐÍÌåÓýÈüÊÂÔâºÚ¿Í¹¥»÷Òâ˼³Á´ó£¬¿ÉÄܶÔÍøÂ簲ȫ¡¢ÌåÓý³ÏÐÅÒÔ¼°È«Çò¹Û¶àµÈ¶à¸öÁìÓò²úÉú¿í·ºÓ°Ïì¡£


https://securityaffairs.com/179239/cyber-warfare-2/iran-linked-threat-actors-cyber-fattah-leak-visitors-and-athletes-data-from-saudi-games.html


6. APT28ºÚ¿ÍÀûÀûÓÃSignal¶ÔÎÚ¿ËÀ¼ÌáÒéеĶñÒâÈí¼þ¹¥»÷


6ÔÂ23ÈÕ£¬¶íÂÞ˹µ±¾ÖÖ§³ÖµÄAPT28Íþв×éÖ¯ÕýÀûÓÃSignal̸ÌìÀûÓù¥»÷ÎÚ¿ËÀ¼µ±¾ÖÖ¸±ê£¬Ê¹ÓÃÁËÁ½¸ö´Ëǰδ¼Í¼µÄ¶ñÒâÈí¼þ¼Ò×åBeardShellºÍSlimAgent¡£Õâ´Î¹¥»÷²¢·ÇSignalƽ̨×ÔÉíµÄ°²È«ÎÊÌ⣬¶øÊÇÍþвÐÐΪÕßÀûÓÃ¸ÃÆ½Ì¨½øÐÐÍøÂç´¹µö¡£2024Äê3Ô£¬ÎÚ¿ËÀ¼ÍÆËã»úºÍÓ¦¼±ÏìÓ¦²¿ÃÅ£¨CERT-UA£©³õ´Î·¢ÏÖÕâЩ¹¥»÷£¬µ«ÆäʱδÅû¶ϰȾý½éϸ½Ú¡£2025Äê5Ô£¬ÒòÓÐÈËδ¾­ÊÚȨ½Ó¼ûgov.uaµç×ÓÓʼþÕÊ»§Òý·¢Ðµ÷²é£¬CERT-UA·¢ÏÖͨ¹ýSignal·¢Ë͵ÄÐÂÎű»ÓÃÓÚ´«µÝ¶ñÒâÎĵµ£¬¸ÃÎĵ·ûÓúê¼ÓÔØCovenantÄÚ´æ×¤ÁôºóÃÅ¡£Covenant×÷Ϊ¶ñÒâÈí¼þ¼ÓÔØÆ÷£¬ÏÂÔØDLLºÍÔ̺¬shellcodeµÄWAVÎļþÒÔ¼ÓÔØBeardShell¡£BeardShellÖØÒªÖ°ÄÜÊÇÏÂÔØ²¢Ö´ÐÐPowerShell¾ç±¾£¬Á˾Öй¶µ½C2·þÎñÆ÷²¢Í¨¹ýIcedrive APIͨѶ¡£´Ë±í£¬ÔÚ2024ÄêµÄ¹¥»÷ÖУ¬CERT-UA»¹·¢ÏÖÁËÃûΪSlimAgentµÄÆÁÄ»½ØÍ¼×¥È¡¹¤¾ß£¬¸Ã¹¤¾ßʹÓÃһϵÁÐWindows APIº¯Êý²¶»ñÆÁÄ»½ØÍ¼£¬²¢Ê¹ÓÃAESºÍRSA¼ÓÃÜ´æ´¢ÔÚ±¾µØ¡£CERT-UA½«´Ë»î¶¯¹é×ïÓÚAPT28£¬²¢½¨ÒéDZÔÚÖ¸±ê¼à¿ØÓйØÍøÂç½»»¥¡£


https://www.bleepingcomputer.com/news/security/apt28-hackers-use-signal-chats-to-launch-new-malware-attacks-on-ukraine/