ÎÚ¿ËÀ¼CERT-UA¼ì²âµ½Õë¶ÔÕþ¸®»ú¹¹×°ÖÃRemcosµÄ´¹Âڻ
Ðû²¼Ê±¼ä 2023-02-10
¾ÝýÌå2ÔÂ8ÈÕ±¨µÀ£¬£¬£¬£¬£¬ÎÚ¿ËÀ¼ÅÌËã»úÓ¦¼±ÏìӦС×é(CERT-UA)·¢Ã÷Õë¶ÔÕþ¸®»ú¹¹×°ÖÃRemcosµÄÐÂÒ»ÂÖ´¹Âڻ¡£¡£¡£¡£¡£¡£¡£ÓʼþÉù³ÆÀ´×ÔÎÚ¿ËÀ¼µçÐŹ«Ë¾Ukrtelecom£¬£¬£¬£¬£¬²¢´øÓÐÓÕ¶üRARÎĵµ¡£¡£¡£¡£¡£¡£¡£°üÀ¨Á½¸öÎļþÖУ¬£¬£¬£¬£¬Ò»¸öÊÇÁè¼Ý600MBµÄÊÜÃÜÂë±£»£»£»£»£»£»¤µÄRAR£¬£¬£¬£¬£¬ºÍÒ»¸öÓÃÓÚ·¿ªRARÎļþÃÜÂëµÄÎı¾Îļþ¡£¡£¡£¡£¡£¡£¡£RARÎĵµÖаüÀ¨Ò»¸ö¿ÉÖ´ÐÐÎļþ¡°court letter, information on debt.pdf.exe¡±£¬£¬£¬£¬£¬Ö´Ðкó»á×°ÖÃRemcos¡£¡£¡£¡£¡£¡£¡£CERT-UA½«¸Ã»î¶¯¹éÒòÓÚUAC-0050¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/141959/cyber-warfare-2/cert-ua-remcos-attacks.html
2¡¢RedditÔâµ½´¹ÂÚ¹¥»÷µ¼ÖÂÄÚ²¿ÎļþºÍÔ´´úÂëй¶
ýÌå2ÔÂ9Èճƣ¬£¬£¬£¬£¬RedditÔâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬ÓªÒµÏµÍ³±»ÈëÇÖ£¬£¬£¬£¬£¬ÄÚ²¿ÎļþºÍÔ´´úÂëй¶¡£¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚÉÏÖÜÈÕÍí¼ä£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬£¬£¬ºÚ¿ÍʹÓÃÁËÕë¶ÔRedditÔ±¹¤µÄÓÕ¶ü£¬£¬£¬£¬£¬ÓÃÒ»¸öÉϰ¶Ò³ÃæÃ°³äÆäÄÚÍøÍøÕ¾£¬£¬£¬£¬£¬ÊÔͼÇÔȡԱ¹¤Æ¾Ö¤ºÍË«ÒòËØÈÏÖ¤ÁîÅÆ¡£¡£¡£¡£¡£¡£¡£ÔÚÀÖ³ÉÇÔȡһÃûÔ±¹¤µÄƾ֤ºó£¬£¬£¬£¬£¬¹¥»÷Õß»ñµÃÁ˶ÔһЩÄÚ²¿Îĵµ¡¢´úÂëÒÔ¼°Ò»Ð©ÄÚ²¿ÏÔÊ¾Ãæ°åºÍӪҵϵͳµÄ»á¼ûȨÏÞ¡£¡£¡£¡£¡£¡£¡£ËäÈ»RedditûÓйûÕæ¹ØÓÚ´¹ÂÚ¹¥»÷µÄÈκÎϸ½Ú£¬£¬£¬£¬£¬µ«Ìáµ½Á˵ÄÀàËÆÓÚÕë¶ÔRiot GamesµÄ¹¥»÷¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/hackers-breach-reddit-to-steal-source-code-and-internal-data/
3¡¢ºÚ¿ÍIntelBroker¹ûÕæWeee!Ô¼110Íò¿Í»§µÄСÎÒ˽¼ÒÐÅÏ¢
2ÔÂ8ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬ÑÇÒáºÍÎ÷°àÑÀÒáËͲÍЧÀÍWeee!Ô¼110Íò¿Í»§µÄСÎÒ˽¼ÒÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£±¾ÖÜÒ»£¬£¬£¬£¬£¬ÃûΪIntelBrokerµÄºÚ¿ÍÔÚ°µÍøBreachedÉÏ·¢Ìû³Æ£¬£¬£¬£¬£¬2023Äê2Ô£¬£¬£¬£¬£¬SayweeeµÄ1100Íò¿Í»§µÄÊý¾Ý¿â±»µÁ¡£¡£¡£¡£¡£¡£¡£Weee! ÔÚÉùÃ÷ÖÐÌåÏÖ£¬£¬£¬£¬£¬´Ë´ÎÊÂÎñÓ°ÏìÁËÔÚ2021Äê7ÔÂ12ÈÕÖÁ2022Äê7ÔÂ12ÈÕÖ®¼ä϶©µ¥µÄ¿Í»§£¬£¬£¬£¬£¬¿ÉÊǸ¶¿îÐÅϢûÓÐй¶¡£¡£¡£¡£¡£¡£¡£ËäÈ»¹¥»÷ÕßÌåÏÖÉæ¼°1100Íò¿Í»§£¬£¬£¬£¬£¬µ«Have I Been Pwned³ÆÐ¹Â¶Êý¾Ý½ö°üÀ¨110Íò¸öΨһµÄÓʼþµØµã£¬£¬£¬£¬£¬ÌØÁíÍâ¼Í¼ºÜ¿ÉÄÜÊÇÓÉÓÚͳһ¿Í»§ÏÂÁ˶à¸ö¶©µ¥µ¼Öµġ£¡£¡£¡£¡£¡£¡£
hackread.com/weee-grocery-service-hacked/
4¡¢AmerisourceBergenµÄ×Ó¹«Ë¾Ôâµ½LorenzÀÕË÷¹¥»÷
¾Ý2ÔÂ8ÈÕ±¨µÀ£¬£¬£¬£¬£¬Ò©Æ··ÖÏúÉÌAmerisourceBergen³ÆºÚ¿ÍÈëÇÖÁËÆä×Ó¹«Ë¾µÄITϵͳ¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ðû²¼ÉùÃ÷³ÆÈëÇÖÒѱ»×èÖ¹£¬£¬£¬£¬£¬ËûÃÇÕýÔÚÊÓ²ì¸ÃÊÂÎñÊÇ·ñµ¼ÖÂÃô¸ÐÊý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£LorenzÔÚÆäÍøÕ¾Ðû²¼Á˾ݳƴÓAmerisourceBergenºÍMWI Animal Health£¨Ô¤¼ÆÊDZ»ÈëÇÖµÄ×Ó¹«Ë¾£©ÇÔÈ¡µÄËùÓÐÎļþ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß½«Ðû²¼ÈÕÆÚÉèÖÃΪ2022Äê11ÔÂ1ÈÕ£¬£¬£¬£¬£¬ËµÃ÷×ÝÈ»ÎļþÊǸոÕÐû²¼µÄ£¬£¬£¬£¬£¬µ«Î¥¹æÐÐΪ¿ÉÄܱ¬·¢ÔÚ¼¸¸öÔÂǰ¡£¡£¡£¡£¡£¡£¡£ËäȻй¶µÄÎļþ¿´ËÆÕæÊµ£¬£¬£¬£¬£¬µ«AmerisourceBergenÉÐδȷÈÏÕâЩÎļþÊÇ´ÓÆäϵͳÖÐÇÔÈ¡µÄ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/drug-distributor-amerisourcebergen-confirms-security-breach/
5¡¢Check PointÐû²¼2022ÄêÍøÂç¹¥»÷»î¶¯µÄ»ØÊ×±¨¸æ
2ÔÂ8ÈÕ£¬£¬£¬£¬£¬Check PointÐû²¼Á˹ØÓÚ2022ÄêÍøÂç¹¥»÷»î¶¯µÄ»ØÊ×±¨¸æ¡£¡£¡£¡£¡£¡£¡£±¨¸æ»ØÊ×Á˶¯µ´µÄ2022Ä꣬£¬£¬£¬£¬¸ÃÄêÍøÂç¹¥»÷µÖ´ïÀúÊ·×î¸ßˮƽ¡£¡£¡£¡£¡£¡£¡£ÓëÉÏÒ»ÄêÏà±È£¬£¬£¬£¬£¬2022ÄêµÄÍøÂç¹¥»÷ÔöÌíÁË38%£¬£¬£¬£¬£¬Ã¿¸ö×é֯ƽ¾ùÿÖÜÔâµ½1168´Î¹¥»÷¡£¡£¡£¡£¡£¡£¡£½ÌÓýºÍÑо¿ÈÔÈ»ÊÇÔâµ½¹¥»÷×î¶àµÄÐÐÒµ£¬£¬£¬£¬£¬µ«Õë¶ÔÒ½ÁƱ£½¡ÐÐÒµµÄ¹¥»÷ͬ±ÈÔöÌíÁË74%¡£¡£¡£¡£¡£¡£¡£¸Ã±¨¸æ»¹Ç¿µ÷Á˹æÄ£¸üС¡¢¸üÎÞаµÄºÚ¿ÍºÍÀÕË÷ÍÅ»ïÔÚʹÓûìÏýÊÂÇ鳡ºÏʹÓõÄÕýµ±Ð×÷¹¤¾ß·½ÃæËùʩչµÄ×÷Óᣡ£¡£¡£¡£¡£¡£
https://blog.checkpoint.com/2023/02/08/check-point-2023-security-report-cyberattacks-reach-an-all-time-high-in-response-to-geo-political-conflict-and-the-rise-of-disruption-and-destruction-malware/
6¡¢ESETÐû²¼¹ØÓÚ2022ÄêT3ÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ
ESETÔÚ2ÔÂ8ÈÕÐû²¼¹ØÓÚ2022ÄêT3ÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬Õë¶Ô̻¶µÄRDPЧÀ͵ı©Á¦¹¥»÷ÔÚ2022Äê·ºÆðÁËÖè½µ£¬£¬£¬£¬£¬Ï½µÔµ¹ÊÔÓɳýÁËÕ½ÕùÍ⣬£¬£¬£¬£¬»¹¿ÉÄÜÊÇÔ¶³ÌÊÂÇéµÄïÔÌ¡¢¹«Ë¾IT²¿·ÖµÄÉèÖúͶԲߵÄË¢ÐÂÒÔ¼°Windows 11ÖÐÄÚÖõı©Á¦×èµ²¹¦Ð§¡£¡£¡£¡£¡£¡£¡£×ÝÈ»RDP¹¥»÷ÓÐËùϽµ£¬£¬£¬£¬£¬ÃÜÂëÍÆ²âÈÔÈ»ÊÇ2022ÄêT3×îÊܽӴýµÄÍøÂç¹¥»÷ÔØÌå¡£¡£¡£¡£¡£¡£¡£ÔÚ¼ÓÃÜÇ®±ÒÇÔÈ¡³ÌÐòºÍ¼ÓÃܿ󹤵ȹŰå¶ñÒâÈí¼þïÔ̵Äͬʱ£¬£¬£¬£¬£¬Óë¼ÓÃÜÇ®±ÒÏà¹ØµÄÕ©ÆÕýÔÚÔÙÆð¡£¡£¡£¡£¡£¡£¡£Androidƽ̨ÉϵÄÌØ¹¤Èí¼þÒ²ÔÚÕâÒ»ÄêÖÐÓÐËùÔöÌí¡£¡£¡£¡£¡£¡£¡£
https://www.welivesecurity.com/2023/02/08/eset-threat-report-t3-2022/