AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶

Ðû²¼Ê±¼ä 2023-03-10

1¡¢AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶


¾Ý3ÔÂ9ÈÕ±¨µÀ£¬£¬£¬AT&T֪ͨԼ900Íò¿Í»§ÆäÐÅÏ¢ÒѾ­Ð¹Â¶£¬£¬£¬ÓÉÓÚËüµÄÒ»¼ÒÓªÏú¹©Ó¦ÉÌÔÚ1Ô·ÝÔâµ½Á˺ڿ͹¥»÷¡£¡£¡£¡£¡£¡£Ð¹Â¶Êý¾Ý°üÀ¨¿Í»§ÐÕÃû¡¢ÎÞÏßÕʺš¢ÎÞÏߵ绰ºÅÂëºÍÓʼþµØµãµÈ£¬£¬£¬ÒÔ¼°²¿·Ö¿Í»§µÄÎÞÏß·ÑÂÊÍýÏë¡¢ÓâÆÚ½ð¶îºÍ¸¶¿î½ð¶îµÈ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ôö²¹Ëµ£¬£¬£¬Æäϵͳ²¢Î´ÊÜÓ°Ï죬£¬£¬Ð¹Â¶Êý¾ÝÖ÷ÒªÓë×°±¸Éý¼¶×ʸñÓйء£¡£¡£¡£¡£¡£AT&T¾Ü¾øÍ¸Â¶¹©Ó¦É̵ÄÉí·Ý£¬£¬£¬µ«The RegisterÌåÏÖ£¬£¬£¬µç×ÓÓʼþÓªÏú¹«Ë¾MailchimpÔÚ1Ô·ÝÔøÔâµ½¹¥»÷£¬£¬£¬¹¥»÷Õß»ñµÃÁË100¶à¸ö¿Í»§ÕÊ»§µÄ»á¼ûȨÏÞ¡£¡£¡£¡£¡£¡£


https://www.theregister.com/2023/03/09/att_wireless_breach/


2¡¢Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£Ñ§Çø±»MedusaÀÕË÷100ÍòÃÀÔª


ýÌå3ÔÂ8Èճƣ¬£¬£¬Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£(MPS)Ñ§Çø±»MedusaÍÅ»ïÀÕË÷100ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¸ÃÍŻォMPSÌí¼Óµ½ÆäTorÍøÕ¾ÉÏ£¬£¬£¬²¢ÍþвҪÔÚ3ÔÂ17ÈÕ֮ǰÐû²¼´Ó¸ÃÑ§ÇøÇÔÈ¡µÄËùÓÐÊý¾Ý¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñÖ®ÒÔÊÇÒýÈËעĿ£¬£¬£¬ÊÇÓÉÓÚ¹¥»÷ÕßÖÆ×÷ÁËÒ»¶Îʱ³¤Ô¼51·ÖÖÓµÄÊÓÆµ£¬£¬£¬ÏÔʾ´ÓMPSÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£¡£¡£MPSÖÎÀí×ÅÔ¼100Ëù¹«Á¢ÖÐСѧ£¬£¬£¬ËüÓÚ3ÔÂ1ÈÕÐû²¼Í¨¸æ£¬£¬£¬Í¸Â¶Æä2ÔÂ21ÈÕÔâµ½¹¥»÷µ¼ÖÂϵͳÖÐÖ¹¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯»¹ÌåÏÖ£¬£¬£¬Ëü²»ÍýÏ븶Êê½ð£¬£¬£¬¶øÊÇÑ¡ÔñʹÓÃÄÚ²¿±¸·Ý»Ö¸´±»¼ÓÃܵÄÊý¾Ý¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/ransomware-gang-posts-video-of-data-stolen-from-minneapolis-schools/


3¡¢Ó¡¶ÈHDFC Bank×Ó¹«Ë¾Áè¼Ý7200ÍòÌõ¼Í¼±»Ðû²¼ÔÚ°µÍø


¾ÝýÌå3ÔÂ8ÈÕ±¨µÀ£¬£¬£¬ºÚ¿ÍKernelwareÔÚ°µÍøBreached forumÉÏÐû²¼ÁËHDB Financial ServicesÔ¼7.5 GBµÄ¿Í»§Êý¾Ý¡£¡£¡£¡£¡£¡£HDB Financial ServicesÊÇÓ¡¶È×î´óµÄ˽ÈËÒøÐÐHDFC BankµÄ×Ó¹«Ë¾¡£¡£¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢°üÀ¨Áè¼Ý7200ÍòÌõ¼Í¼£¬£¬£¬Éæ¼°2022Äê5ÔÂÖÁ2023Äê2ÔÂÉêÇë´û¿îµÄHDBÏûºÄÕß¡£¡£¡£¡£¡£¡£HDFC Bank·ñ¶¨ÁËÊý¾Ýй¶ÊÂÎñ£¬£¬£¬µ«HDB FinancialÒÑÈ·Èϲ¢ÔÚÊÓ²ì¸ÃÇå¾²ÊÂÎñ¡£¡£¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬Kernelware¾ÍÊÇй¶ÁËAcerÔ¼160GBÊý¾ÝµÄºÚ¿Í¡£¡£¡£¡£¡£¡£


https://www.hackread.com/hackers-india-hdfc-bank-data-leak/


4¡¢VeeamÐÞ¸´Ó°ÏìÆäËùÓÐVBR°æ±¾µÄÎó²îCVE-2023-27532


3ÔÂ8ÈÕ±¨µÀ³Æ£¬£¬£¬VeeamÐû²¼¸üУ¬£¬£¬ÐÞ¸´ÆäBackup & Replication²úÆ·ÖеÄÎó²îCVE-2023-27532¡£¡£¡£¡£¡£¡£Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÔÚ»ñÈ¡´æ´¢ÔÚVeeamVBRÉèÖÃÊý¾Ý¿âÖеļÓÃÜÆ¾Ö¤ºó£¬£¬£¬Ê¹ÓÃËü»á¼û±¸·Ý»ù´¡¼Ü¹¹Ö÷»ú¡£¡£¡£¡£¡£¡£Æ¾Ö¤Veeamͨ¸æ£¬£¬£¬¸ÃÎó²î»ù´¡Ôµ¹ÊÔ­ÓÉÊÇVeeam.Backup.Service.exe£¨Ä¬ÈÏÇéÐÎÏÂÔÚTCP 9401ÉÏÔËÐУ©¿É±»Î´¾­Éí·ÝÑéÖ¤µÄÓû§ÓÃÀ´ÇëÇó¼ÓÃÜÆ¾Ö¤¡£¡£¡£¡£¡£¡£Veeam»¹ÌṩÁËÔÝʱÐÞ¸´ÒªÁ죬£¬£¬Ê¹Óñ¸·ÝЧÀÍÆ÷·À»ðǽ×èÖ¹Óë¶Ë¿ÚTCP 9401µÄÍⲿÅþÁ¬¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/veeam-fixes-bug-that-lets-hackers-breach-backup-infrastructure/


5¡¢FortinetÅû¶8220 GangʹÓÃScrubCryptµÄ¹¥»÷»î¶¯


FortinetÔÚ3ÔÂ8ÈÕÅû¶ÁË8220 Gang×î½üµÄ¼ÓÃÜÐ®ÖÆ¹¥»÷¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ2023Äê1ÔÂÖÁ2Ô£¬£¬£¬¹¥»÷Á´Ê¼ÓÚÀÖ³ÉʹÓÃÒ×±»¹¥»÷µÄOracle WebLogic ServerÏÂÔØ°üÀ¨ScrubCryptµÄPowerShell¾ç±¾¡£¡£¡£¡£¡£¡£PowerShell¾ç±¾ÒѾ­ÓɱàÂ룬£¬£¬À´ÈƹýÇå¾²¼Æ»®µÄ¼ì²â¡£¡£¡£¡£¡£¡£ScrubCrypt¼ÓÃÜÆ÷ÔÚºÚ¿ÍÂÛ̳ÉÏÓÐÊÛ£¬£¬£¬¿ÉʹÓÃÆæÒìµÄBAT´ò°üÒªÁì±£»£»£»£»¤Ó¦ÓóÌÐò¡£¡£¡£¡£¡£¡£»£»£»£»ùÓڻÖÐʹÓõļÓÃÜÇ®°üµØµãºÍMonero¿ó¹¤Ê¹ÓõÄЧÀÍÆ÷IPµØµã£¬£¬£¬Ñо¿Ö°Ô±½«´Ë´Î»î¶¯¹éÒòÓÚ8220 Gang¡£¡£¡£¡£¡£¡£


https://www.fortinet.com/blog/threat-research/old-cyber-gang-uses-new-crypter-scrubcrypt


6¡¢KasperskyÐû²¼2022Äê¸ú×ÙÈí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ


3ÔÂ8ÈÕ£¬£¬£¬KasperskyÐû²¼ÁË2022Äê¸ú×ÙÈí¼þ£¨Stalkerware£©Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£Êý¾ÝÏÔʾ£¬£¬£¬2022ÄêÈ«ÇòÓÐ29312¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ï죬£¬£¬Æ½¾ùÿÔÂÓÐ3333¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ïì¡£¡£¡£¡£¡£¡£¸ú×ÙÈí¼þÈÔÈ»ÊÇÒ»¸öÈ«ÇòÐÔÎÊÌ⣬£¬£¬Kaspersky¼ì²âµ½176¸ö¹ú¼Ò/µØÇøÊܵ½Ó°Ï죬£¬£¬ÆäÖжíÂÞ˹£¨8281£©¡¢°ÍÎ÷£¨4969£©ºÍÓ¡¶È£¨1807£©ÊÜÓ°Ïì×îÑÏÖØ¡£¡£¡£¡£¡£¡£2022Äê¼ì²âµ½182ÖÖ²î±ðµÄ¸ú×ÙÈí¼þÓ¦Ó㬣¬£¬×î³£¼ûµÄÊÇReptilicus£¬£¬£¬Æä´ÎÊÇCerberusºÍKeyLog¡£¡£¡£¡£¡£¡£


https://securelist.com/the-state-of-stalkerware-in-2022/108985/