ºÚ¿ÍÔÚ°µÍø¹ûÕæÓ¡¶ÈBigBasketÔ¼2000Íò¸ö?Óû§µÄÐÅÏ¢£»£»£»ThreatpostÐû²¼ÃûΪ2021£ºÀÕË÷Èí¼þµÄÑݱäµÄ±¨¸æ

Ðû²¼Ê±¼ä 2021-04-26

1.ºÚ¿ÍÔÚ°µÍø¹ûÕæÓ¡¶ÈBigBasketÔ¼2000Íò¸öÓû§µÄÐÅÏ¢


1.jpg


BigBasketÊÇÓ¡¶ÈµÄÔÚÏßÔÓ»õÅäËÍЧÀÍ£¬£¬£¬£¬¿ÉÔÚÓû§ÔÚÏß¹ºÖÃÎïÆ·Ö®ºó½«ÆäÔËË͵ּÒÖС£ ¡£¡£4ÔÂ25ÈÕÇåÔ磬£¬£¬£¬ÖøÃûй¶Êý¾ÝÂô¼ÒShinyHunterÔÚ°µÍøÉÏÐû²¼ÁËÒ»¸ö¾Ý³ÆÊÇ´ÓBigBasket͵ȡµÄÊý¾Ý¿â£¬£¬£¬£¬ÆäÖÐÓÐÁè¼Ý2000Íò¸öÓû§µÄ¼Í¼£¬£¬£¬£¬°üÀ¨µç×ÓÓʼþµØµã¡¢SHA1¹þÏ£ÃÜÂë¡¢µØµã¡¢µç»°ºÅÂëºÍÆäËûÀàÐ͵ÄÐÅÏ¢µÈ¡£ ¡£¡£±ðµÄ£¬£¬£¬£¬¸ÃºÚ¿Í³ÆÆäÒѾ­Ê¹ÓÃSHA1Ëã·¨ÆÆ½âÁË200Íò¸öÃÜÂ룬£¬£¬£¬ÆäÖÐ70ÍòÃû¿Í»§Ê¹ÓÃÁË¡°password¡±×÷ΪÃÜÂë¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hacker-leaks-20-million-alleged-bigbasket-user-records-for-free/


2.ThreatpostÐû²¼ÃûΪ2021£ºÀÕË÷Èí¼þµÄÑݱäµÄ±¨¸æ


2.jpg


ThreatpostÐû²¼ÁËÃûΪ2021£ºÀÕË÷Èí¼þµÄÑݱäµÄÆÊÎö±¨¸æ¡£ ¡£¡£¸Ã±¨¸æ°üÀ¨ÁËÀÕË÷Èí¼þµÄÐÂÇ÷ÊÆ¡¢ÀÕË÷Èí¼þ¾­¼ÃÄÚĻһÀÀ¡¢ÍøÂç°ü¹ÜÍÆ¶¯ÀÕË÷Èí¼þÖ§¸¶¼¤Ôö¡¢ÍþвÊÓ²ì:ÀÕË÷Èí¼þ¹¥»÷µÄ¼ÛÇ®¡¢48СʱÀÕË÷Èí¼þ¹¥»÷ÈÕÖ¾ºÍ×èÖ¹ÀÕË÷Èí¼þµÄÊÊÓÃÖ¸Äϵȶà¸ö²¿·Ö¡£ ¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬¶ÔÉÌÒµ¡¢Ñ§Ð£ºÍÕþ¸®»ú¹¹µÄ¹öÑ©ÇòʽµÄ¹¥»÷ÏÖÔÚÊÇÖ÷ÒªµÄÍøÂçÇå¾²ÎÊÌâ¡£ ¡£¡£²¢ÇÒËæ×ÅÀÕË÷Èí¼þ¹¥»÷ÐÔ×ÓµÄһֱת±ä£¬£¬£¬£¬Çå¾²ÔËάҲ±äµÃÔ½·¢Öش󣬣¬£¬£¬ÀýÈçSunCryptµÈÍÅ»ïÌᳫ¾Ü¾øÐ§ÀÍ(DoS)¹¥»÷À´¸øÊܺ¦Õßʩѹ¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/ebook-2021-ransomware-emerging-risks/165477/


3.IvantiÐû²¼ÓйضþάÂëÇå¾²ÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ


3.jpg


IvantiÐû²¼ÁËÓйضþάÂëÇå¾²ÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£ ¡£¡£¸ÃÑо¿ÔÚ½ñÄê2Ô¶ÔÃÀ¹ú¡¢Ó¢¹ú¡¢·¨¹ú¡¢µÂ¹ú¡¢ÖйúºÍÈÕ±¾µÄ4100¶àÃûÏûºÄÕß¾ÙÐÐÁËÊӲ졣 ¡£¡£±¨¸æÏÔʾ£¬£¬£¬£¬ÓÐ57£¥µÄÊÜ·ÃÕßÉù³Æ¶þάÂëµÄʹÓÃÓÐËùÔöÌí£¬£¬£¬£¬83£¥µÄÊÜ·ÃÕßÔòÌåÏÖËûÃÇÔÚÈ¥ÄêµÚÒ»´ÎʹÓöþάÂë¾ÙÐи¶¿î»òÉúÒâ¡£ ¡£¡£±ðµÄ£¬£¬£¬£¬±¨¸æÖ¸³öºÚ¿Í¿ÉÒÔͨ¹ý¶þάÂëµ¼ÖµÄÇ徲Σº¦°üÀ¨Ìí¼ÓÁªÏµÈËÁÐ±í¡¢´òµç»°¡¢·¢ËͶÌÐÅ¡¢±àдµç×ÓÓʼþ¡¢¸¶¿î¡¢ÏÔʾÓû§µÄλÖᢹØ×¢É罻ýÌåÕÊ»§ºÍÌí¼ÓÊ×Ñ¡µÄWi-FiÍøÂç¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.ivanti.com/blog/the-global-pandemic-has-led-to-unprecedented-qr-code-security-challenges


4.ºÚ¿ÍαÔìMicrosoft DirectX 12ÍøÕ¾·Ö·¢¶ñÒâÈí¼þ


4.jpg


ºÚ¿Í½¨ÉèÁËÒ»¸öÐéαµÄMicrosoft DirectX 12ÏÂÔØÍøÕ¾£¬£¬£¬£¬À´·Ö·¢ÇÔÈ¡¼ÓÃÜÇ®±ÒÇ®°üºÍÃÜÂëµÄ¶ñÒâÈí¼þ¡£ ¡£¡£¸ÃÍøÕ¾ÉÐÓÐÁªÏµ±í¸ñ¡¢Òþ˽ȨÕþ²ß¡¢ÃâÔðÉùÃ÷ºÍDMCAÇÖÈ¨Ò³Ãæ£¬£¬£¬£¬¿ÉÊÇÍøÕ¾ºÍ·Ö·¢µÄ³ÌÐò¾ùûÓÐÕýµ±ÒÀ¾Ý¡£ ¡£¡£µ±Óû§µã»÷ÏÂÔØ°´Å¥Ê±»á±»Öض¨Ïòµ½Ò»¸öÍâ²¿Ò³Ãæ£¬£¬£¬£¬À´ÏÂÔØ¶ñÒâÈí¼þ¡£ ¡£¡£¸Ã¶ñÒâÈí¼þÊÔͼ»ñÈ¡Êܺ¦ÕßµÄCookie¡¢Îļþ¡¢ÓйØÏµÍ³µÄÐÅÏ¢¡¢ÒÑ×°ÖõijÌÐòºÍÄ¿½ñ×ÀÃæµÄÆÁÄ»½ØÍ¼£¬£¬£¬£¬ÒÔ¼°WindowsÈí¼þµÄÖÖÖÖ¼ÓÃÜÇ®±ÒÇ®°ü£¬£¬£¬£¬ÀýÈçLedger Live¡¢Waves.ExchangeºÍCoinomiµÈ¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fake-microsoft-directx-12-site-pushes-crypto-stealing-malware/


5.FacebookÅû¶½üÆÚ2¸ö°ÍÀÕ˹̹ºÚ¿ÍÍÅ»ïµÄÌØ¹¤»î¶¯


5.jpg


Facebook½üÆÚ·¢Ã÷ÁË2¸ö»®·ÖÔÚ2019ÄêºÍ2020Äê×îÏÈ»îÔ¾µÄ°ÍÀÕ˹̹ºÚ¿ÍÍÅ»ïµÄÌØ¹¤»î¶¯¡£ ¡£¡£ÕâÁ½¸ö×éÖ¯Ö®¼äËÆºõûÓÐÁªÏµ£¬£¬£¬£¬µ«ËüÃǵÄÄ¿µÄËÆºõÏà·´¡£ ¡£¡£ËûÃǾùʹÓÃÁËiOSÌØ¹¤Èí¼þ£¬£¬£¬£¬²¢ÒÔFacebookµÈÉ罻ýÌåÆ½Ì¨ÎªÆðµã£¬£¬£¬£¬ÓëÄ¿µÄ½¨ÉèÁªÏµ²¢ÌᳫÉç»á¹¤³Ì¹¥»÷£¬£¬£¬£¬ÓÕʹËûÃǽøÈë´¹ÂÚÒ³ÃæºÍÆäËû¶ñÒâÍøÕ¾¡£ ¡£¡£Ñо¿Ö°Ô±ÍÆ¶ÏÆäÖÐÖ®Ò»Óë°ÍÀÕ˹̹Çå¾²»ú¹¹ÓйØ£¬£¬£¬£¬ÔÚÍÁ¶úÆä¡¢ÒÁÀ­¿Ë¡¢Àè°ÍÄÛºÍÀû±ÈÑÇÒ²Óй¥»÷»î¶¯¡£ ¡£¡£ÁíÒ»×éÓëArid ViperÓйØ£¬£¬£¬£¬Ö÷ÒªÕë¶Ô·¨ËþºÕÕþµ³³ÉÔ±¡¢Õþ¸®¹ÙÔ±¡¢Çå¾²²½¶ÓºÍѧÉú¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.wired.com/story/palestine-hacking-ios-custom-spyware/


6.Ìṩ¶©Æ±ÏµÍ³µÄRadixxÔâµ½¹¥»÷£¬£¬£¬£¬Ó°Ïì20¶à¼Òº½¿Õ¹«Ë¾


6.jpg


Sabre CorporationµÄ×Ó¹«Ë¾RadixxÔÚ4ÔÂ22ÈÕÐû²¼£¬£¬£¬£¬Radixx Res?ÔÚ4ÔÂ20ÈÕÔâµ½Á˹¥»÷£¬£¬£¬£¬Ó°ÏìÁËÆäÔ¤¶©ÏµÍ³¡£ ¡£¡£RadixxÖ÷ҪΪÁ®¼Ûº½¿Õ¹«Ë¾Ìṩ»úƱ¶©Æ±ÏµÍ³£¬£¬£¬£¬´Ë´ÎÊÂÎñÓ°ÏìÁË20¼Òº½¿Õ¹«Ë¾£¬£¬£¬£¬°üÀ¨ÈÕ±¾Peach AviationºÍZIPAIR¡¢±ÈÀûʱº½¿Õ¡¢ÖÇÀûSky AirlinesºÍ¼ÓÄôóAir TransatµÈ¹«Ë¾£¬£¬£¬£¬µ¼ÖÂËûÃǵÄÂÿÍÎÞ·¨Í¨¹ýº½¿Õ¹«Ë¾µÄÍøÕ¾À´Ô¤¶©¡¢¸ü¸Ä¡¢É¾³ýºÍÈ·ÈÏ»úƱ¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.databreaches.net/malware-attack-on-radixx-res-disrupts-20-airlines-ticket-reservation-systems/