Çå¾²¹«Ë¾CognyteÊý¾Ý¿âÉèÖùýʧй¶Áè¼Ý50ÒÚÌõ¼Í¼£»£»£»£»£» £»ÄÜÔ´¹«Ë¾InvenergyÔâµ½REvilÀÕË÷¹¥»÷й¶4TBÊý¾Ý

Ðû²¼Ê±¼ä 2021-06-16

1.Çå¾²¹«Ë¾CognyteÊý¾Ý¿âÉèÖùýʧй¶Áè¼Ý50ÒÚÌõ¼Í¼


1.jpg


ComparitechÇå¾²Ñо¿Ö°Ô±·¢Ã÷ÁËÍøÂçÇå¾²ÆÊÎö¹«Ë¾CognyteδÊܱ£»£»£»£»£» £»¤µÄÊý¾Ý¿â¡£¡£¡£¡£¡£¡£¡£¸ÃÊý¾Ý¿â×÷ΪCognyteÍøÂçÇ鱨ЧÀ͵ÄÒ»²¿·Ö£¬£¬ £¬£¬£¬£¬ÓÃÓÚÌáÐÑÆä¿Í»§µÚÈý·½µÄÊý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£¾ßÓм¥Ð¦ÒâζµÄÊÇ£¬£¬ £¬£¬£¬£¬ÓÃÓÚ½»Ö¯¼ì²éй¶µÄСÎÒ˽¼ÒÐÅÏ¢µÄÊý¾Ý¿â×Ô¼ºÒÑй¶¡£¡£¡£¡£¡£¡£¡£¸ÃÊý¾Ý¿â×ܹ²ÓÐ5085132102Ìõ¼Í¼£¬£¬ £¬£¬£¬£¬°üÀ¨Ãû³Æ¡¢µç×ÓÓʼþµØµã¡¢ÃÜÂëºÍÊý¾ÝÔ´£¬£¬ £¬£¬£¬£¬ÓÚ2021Äê5ÔÂ29ÈÕ±»·¢Ã÷£¬£¬ £¬£¬£¬£¬ºóÓÚ6ÔÂ2ÈÕ±»±£»£»£»£»£» £»¤ÆðÀ´¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬ £¬£¬£¬£¬Éв»È·¶¨ÕâЩÊý¾ÝÔÚ̻¶ʱ´úÊÇ·ñÓб»ÈκεÚÈý·½»á¼û¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.comparitech.com/blog/information-security/breach-database-leak/


2.ÀÕË÷Èí¼þParadiseµÄÔ´´úÂëÔÚºÚ¿ÍÂÛ̳XSSÉϹûÕæ


2.jpg


Paradise RansomwareµÄ.NET°æ±¾ÍêÕûÔ´´úÂëÒÑÔÚºÚ¿ÍÂÛ̳XSSÉϹûÕæ£¬£¬ £¬£¬£¬£¬ÍøÂç·¸·¨·Ö×Ó¿ÉÒÔÓÃÆä¿ª·¢×Ô¼º¶¨ÖƵÄÀÕË÷Èí¼þ¡£¡£¡£¡£¡£¡£¡£ParadiseÓÚ2017Äê9ÔÂÊ״α»·¢Ã÷£¬£¬ £¬£¬£¬£¬Ìṩ¾ßÓÐÀÕË÷Èí¼þ¼´Ð§ÀÍ (RaaS) Ä£×ӵĶñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£Ö®ºó£¬£¬ £¬£¬£¬£¬Çå¾²¹«Ë¾EmsisoftºÍBitdefender»®·ÖÓÚ2019Äê10ÔºÍ2020Äê1ÔÂÐû²¼ÁËÁ½¸ö½âÃÜÆ÷¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±±àÒëÔ´´úÂëºó·¢Ã÷Ëü½¨ÉèÁËÈý¸ö¿ÉÖ´ÐÐÎļþ£ºÀÕË÷Èí¼þÉèÖù¹½¨Æ÷¡¢¼ÓÃÜÆ÷Ï¢ÕùÃÜÆ÷¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬ £¬£¬£¬£¬Ô´´úÂëÖеĶíÓï×¢ÊÍÇåÎúµØÕ¹Ê¾ÁË¿ª·¢Ö°Ô±µÄĸÓï¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/paradise-ransomware-source-code-released-on-a-hacking-forum/


3.Apple½ôÆÈ¸üУ¬£¬ £¬£¬£¬£¬ÐÞ¸´iOSÖÐÒѱ»ÔÚҰʹÓõÄ2¸ö0day


3.jpg


AppleÐû²¼½ôÆÈ¸üУ¬£¬ £¬£¬£¬£¬ÐÞ¸´iOS 12.5.3ÖÐÒѱ»ÔÚҰʹÓõÄ2¸ö0day¡£¡£¡£¡£¡£¡£¡£ÕâÁ½¸ö0dayΪWebKitä¯ÀÀÆ÷ÒýÇæÖеÄÄÚ´æËð»µÎó²î£¨CVE-2021-30761£©ºÍÊͷźóʹÓÃÎó²î£¨CVE-2021-30762£©£¬£¬ £¬£¬£¬£¬¾ù¿É±»ÓÃÀ´Ô¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£AppleÌåÏÖ¸ÃÎó²î¿ÉÄÜÒѱ»Æð¾¢Ê¹Ó㬣¬ £¬£¬£¬£¬µ«²¢Î´Í¸Â¶ÈκÎÓйشËÀ๥»÷µÄÏêϸÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬ £¬£¬£¬£¬´Ë´Î¸üл¹ÐÞ¸´ÁËASN.1½âÂëÆ÷ÖеÄÄÚ´æËð»µÎó²î(CVE-2021-30737)¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/06/apple-issues-urgent-patches-for-2-zero.html


4.ÄÜÔ´¹«Ë¾InvenergyÔâµ½REvilÀÕË÷¹¥»÷й¶4TBÊý¾Ý


4.jpg


REvilÍÅ»ïÉù³ÆÆä¹¥»÷ÁËÃÀ¹ú¿ç¹ú¿ÉÔÙÉúÄÜÔ´¹«Ë¾Invenergy LLCµÄÍøÂ磬£¬ £¬£¬£¬£¬²¢ÇÔÈ¡ÁË4 TBµÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚÉÏÖÜÎ峯Æä¼ì²âµ½Á˹¥»÷£¬£¬ £¬£¬£¬£¬ÔËӪδÊܵ½Ó°Ï죬£¬ £¬£¬£¬£¬Êý¾ÝҲû±»¼ÓÃÜ£¬£¬ £¬£¬£¬£¬²¢ÇÒûÓÐÖ§¸¶Ò²²»ÍýÏëÖ§¸¶ÈκÎÊê½ð¡£¡£¡£¡£¡£¡£¡£Ö®ºó£¬£¬ £¬£¬£¬£¬REvil³ÆÇÔÈ¡ÁË4 TBÊý¾Ý£¬£¬ £¬£¬£¬£¬°üÀ¨ÏîÄ¿¡¢ÌõÔ¼ºÍ±£ÃÜЭÒ飬£¬ £¬£¬£¬£¬ÒÔ¼°InvenergyÊ×´´ÈËMichael PolskyµÄСÎÒ˽¼ÒÃô¸ÐÐÅÏ¢£¬£¬ £¬£¬£¬£¬ÀýÈçÆäСÎÒ˽¼Òµç×ÓÓʼþÒÔ¼°ËûÓëµÚÒ»ÈÎÆÞ×ÓMayaØòÀëµÄϸ½Ú£¨ËûÔÚ2007ÄêµÄØòÀë±»±¨µÀΪÀúÊ·ÉÏ×îÌÚ¹óµÄØòÀë°¸Ö®Ò»£©µÈ¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/revil-claims-responsibility-for/


5.Group IBÐû²¼2020-2021ÄêÀÕË÷Èí¼þµÄÆÊÎö±¨¸æ


5.jpg


Group IBÐû²¼ÁË2020-2021ÄêÀÕË÷Èí¼þµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬ £¬£¬£¬£¬ÀÕË÷ÍŻﲻ̫ÌåÌùÄ¿µÄÐÐÒµ£¬£¬ £¬£¬£¬£¬¶øÊǸü¹Ø×¢¹æÄ£ºÍ¹æÄ££¬£¬ £¬£¬£¬£¬ÇãÏòÓÚ¹¥»÷´óÐÍÆóÒµÒÔ»ñµÃ¾¡¿ÉÄܶàµÄÊê½ð£»£»£»£»£» £»2019ÄêµÄƽ¾ùÊê½ðԼΪ8ÍòÃÀÔª£¬£¬ £¬£¬£¬£¬2020ÄêÔòԼΪ17ÍòÃÀÔª£¬£¬ £¬£¬£¬£¬¶øMaze¡¢DoppelPaymerºÍRagnarLockerµÄƽ¾ùÊê½ðÒªÇóÔÚ100ÍòÖÁ200ÍòÃÀÔªÖ®¼ä£»£»£»£»£» £»ÆóÒµÇéÐÎͨ³£²»µ«ÔËÐÐWindowsϵͳ£¬£¬ £¬£¬£¬£¬»¹ÔËÐÐLinux£¬£¬ £¬£¬£¬£¬Òò´ËһЩ¹¥»÷ÕßÔÚËûÃǵÄÎäÆ÷¿âÖÐÌí¼ÓÁËÏìÓ¦µÄ°æ±¾¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/resources/threat-research/ransomware-2021.html


6.AT&T AlienÐû²¼½©Ê¬ÍøÂçMoobot¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ


6.jpg


AT&T Alien LabsÐû²¼Óйؽ©Ê¬ÍøÂçMiraiµÄ±äÌåMoobotµÄ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£3ÔÂ⣬£¬ £¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷TendaÖеÄÔ¶³Ì´úÂëÖ´ÐÐ (RCE) Îó²îCVE-2020-10987µÄʹÓÃʵÑ鼤Ôö£¬£¬ £¬£¬£¬£¬ÕâÔÚǰ¼¸¸öÔ²¢²»³£¼û¡£¡£¡£¡£¡£¡£¡£Í¨¹ý¶ÔURL¾ÙÐÐÆÊÎö£¬£¬ £¬£¬£¬£¬È·¶¨ºÚ¿ÍÔÚʹÓÃCyberium¶ñÒâÈí¼þÍйÜÓò·Ö·¢Ðí¶à²î±ðµÄMirai±äÌ壬£¬ £¬£¬£¬£¬°üÀ¨MoobotºÍSatori¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬ £¬£¬£¬£¬¸Ã±¨¸æ»¹ÌṩÁËÓйش˴ι¥»÷µÄ»º½â²½·¥¡¢¼ì²âÒªÁìºÍIOC¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://cybersecurity.att.com/blogs/labs-research/malware-hosting-domain-cyberium-fanning-out-mirai-variants