PharMericaÔâµ½Money MessageµÄ¹¥»÷Ó°Ïì580ÍòÈË

Ðû²¼Ê±¼ä 2023-05-16

1¡¢PharMericaÔâµ½Money MessageµÄ¹¥»÷Ó°Ïì580ÍòÈË


¾Ý5ÔÂ13ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ÃÀ¹ú¹ú¼ÒÒ©·¿ÍøÂçPharMerica¼°Æäĸ¹«Ë¾BrightSpring HealthÔâµ½ÁËMoney MessageµÄÀÕË÷¹¥»÷¡£¡£¡£¡£3ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬PharMericaÔÚϵͳÖз¢Ã÷¿ÉÒɻ£¬£¬£¬£¬£¬£¬ÊÓ²ìÈ·¶¨3ÔÂ12ÈÕµ½3ÔÂ13ÈÕʱ´ú±£´æÎ´¾­ÊÚȨµÄ»á¼û£¬£¬£¬£¬£¬£¬µ¼Ö²¿·ÖÐÅϢй¶¡£¡£¡£¡£ÕâÓëMoney MessageÉù³ÆµÄ¹¥»÷±¬·¢ÔÚ3ÔÂ28ÈÕÓÐÊÕÖ§¡£¡£¡£¡£5ÔÂ12ÈÕ£¬£¬£¬£¬£¬£¬PharMericaÌá½»µÄÊý¾Ýй¶±¨¸æ³Æ¹²ÓÐ5815591ÈËÊܵ½Ó°Ïì¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢Éæ¼°ÐÕÃû¡¢µØµã¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢Ò©ÎïºÍ¿µ½¡°ü¹ÜÐÅÏ¢¡£¡£¡£¡£


https://www.databreaches.net/ransomware-attack-on-pharmerica-affected-5-8-million-patients/


2¡¢ÃÀ¹ú½»Í¨²¿(USDOT)ϵͳÔâµ½¹¥»÷½ü24ÍòÔ±¹¤ÐÅϢй¶


ýÌå5ÔÂ13Èճƣ¬£¬£¬£¬£¬£¬ÃÀ¹ú½»Í¨²¿(USDOT)²¿·ÖÔ±¹¤µÄСÎÒ˽¼ÒÐÅϢй¶¡£¡£¡£¡£Ð¹Â¶Ô´ÓÚ´¦Öóͷ£TRANServe½»Í¨¸£ÀûµÄϵͳÔâµ½¹¥»÷£¬£¬£¬£¬£¬£¬USDOTÌåÏÖûÓÐÈκν»Í¨Ç徲ϵͳÊܵ½Ó°Ïì¡£¡£¡£¡£¸Ã²¿·ÖÕýÔÚÊÓ²ìÕâÒ»ÊÂÎñ£¬£¬£¬£¬£¬£¬²¢¹Ø±ÕÁ˽»Í¨¸£ÀûϵͳµÄ»á¼û£¬£¬£¬£¬£¬£¬Ö±µ½Ëü»Ö¸´¡£¡£¡£¡£¸ÃÊÂÎñÓ°ÏìÁË114000ÃûÏÖÔ±¹¤ºÍ123000ÃûǰԱ¹¤¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÕßÉí·Ý£¬£¬£¬£¬£¬£¬Ò²²»ÇåÎúÊÇ·ñÓÐСÎÒ˽¼ÒÐÅÏ¢±»ºÚ¿ÍʹÓᣡ£¡£¡£


https://www.yahoo.com/news/data-237-000-us-government-232707971.html


3¡¢·Ñ³ÇÎÊѯ±¨Ôâµ½ÍøÂç¹¥»÷µ¼ÖÂÔËÓªÔÝʱÖÐÖ¹


¾ÝýÌå5ÔÂ15ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬·Ñ³ÇÎÊѯ±¨£¨Philadelphia Inquirer£©Ôâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬±¬·¢ÁË27ÄêÀ´×îÑÏÖØµÄÔËÓªÖÐÖ¹¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ5ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬µ¼Ö¸ñ¨ÖÜÈÕµÄÓ¡Ë¢°æÎÞ·¨Ó¡Ë¢£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÕýÔÚÆð¾¢»Ö¸´Ó¡Ë¢ÓªÒµ¡£¡£¡£¡£¿ÉÊÇÐÂÎÅÓªÒµµÄÍøÕ¾ÖÜÈÕÈÔÔÚÔËÐУ¬£¬£¬£¬£¬£¬µ«¸üÐÂËÙÂʱÈÕý³£ÇéÐÎÏÂÂý¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬Ô±¹¤ÔÚÖÜÁùÔçÉÏ·¢Ã÷¸Ã±¨µÄÄÚÈÝÖÎÀíϵͳÎÞ·¨Õý³£ÊÂÇéʱ£¬£¬£¬£¬£¬£¬Ê״η¢Ã÷Á˴˴ι¥»÷¡£¡£¡£¡£¸Ã±¨ÉçÕýÔÚ¶Ô¹¥»÷¹æÄ£ºÍÏêϸĿµÄ¾ÙÐÐÊӲ죬£¬£¬£¬£¬£¬Ô±¹¤ÖÁÉÙÔÚ±¾Öܶþ֮ǰÎÞ·¨Ôڰ칫ÊҰ칫¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/philadelphia-inquirer-operations-disrupted-after-cyberattack/


4¡¢SentinelLabs·¢Ã÷¶à¸ö»ùÓÚBabukÔ´´úÂëµÄÀÕË÷Èí¼þ


SentinelLabsÔÚ5ÔÂ11ÈÕ͸¶£¬£¬£¬£¬£¬£¬Ô½À´Ô½¶àµÄÀÕË÷Èí¼þ½ÓÄÉй¶µÄBabukÔ´´úÂëÀ´¿ª·¢Õë¶ÔVMware ESXiЧÀÍÆ÷µÄLinux¼ÓÃܳÌÐò¡£¡£¡£¡£Ñо¿Ö°Ô±ÔÚ2022ÄêϰëÄêÖÁ2023ÄêÉϰëÄê·¢Ã÷ÁË9ÖÖ»ùÓÚBabukµÄÀÕË÷Èí¼þ±äÌå¡£¡£¡£¡£ÕâЩÀÕË÷Èí¼þ°üÀ¨Play(.FinDom)¡¢Mario(.emario)¡¢Conti POC(.conti)¡¢REvilÓÖÃûRevix(.rhkrc)¡¢Cylance ransomware¡¢Dataf Locker¡¢RorschachÓÖÃûBabLock¡¢Lock4ºÍRTM Locker¡£¡£¡£¡£


https://www.sentinelone.com/labs/hypervisor-ransomware-multiple-threat-actor-groups-hop-on-leaked-babuk-code-to-build-esxi-lockers/


5¡¢Brightly³ÆÆäSchoolDudeƽ̨Óû§µÄÐÅÏ¢ºÍƾ֤й¶


ýÌå5ÔÂ15ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬Î÷ÃÅ×ÓµÄ×Ó¹«Ë¾Brightly Software³ÆÆäSchoolDudeƽ̨Óû§µÄÐÅÏ¢ºÍƾ֤й¶¡£¡£¡£¡£Æ¾Ö¤Êý¾Ýй¶֪ͨ£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÓÚ4ÔÂ20ÈÕÈëÇÖÁËBrightlyµÄϵͳ£¬£¬£¬£¬£¬£¬²¢ÓÚ4ÔÂ28ÈÕ±»·¢Ã÷£¬£¬£¬£¬£¬£¬Ó°ÏìÁË2964292ÃûSchoolDudeµÄÓû§¡£¡£¡£¡£´Ë´ÎÊÂÎñй¶ÁËÐÕÃû¡¢ÓʼþµØµã¡¢ÕÊ»§ÃÜÂëºÈµç»°ºÅÂëµÈ¡£¡£¡£¡£BrightlyÖØÖÃÁËËùÓÐSchoolDudeÓû§µÄÃÜÂ룬£¬£¬£¬£¬£¬²¢½¨ÒéÓû§ÊµÊ±¸ü¸ÄʹÓÃÁËÏàͬÃÜÂëµÄÆäËüÕÊ»§µÄÃÜÂë¡£¡£¡£¡£


https://www.securityweek.com/brightly-software-notifying-3-million-schooldude-users-of-data-breach/


6¡¢KasperskyÐû²¼2023ÄêÀÕË÷Èí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ


5ÔÂ11ÈÕ£¬£¬£¬£¬£¬£¬KasperskyÐû²¼ÁË2023ÄêÀÕË÷Èí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£×î¾ßÓ°ÏìÁ¦µÄÀÕË÷×éÖ¯ÔÚÒÑÍùÒ»Ä걬·¢×ª±ä£¬£¬£¬£¬£¬£¬2022ÄêÉϰëÄêÊÇLockBit¡¢REvilºÍConti£¬£¬£¬£¬£¬£¬2022ϰëÄêÊÇLockBit¡¢BlackBastaºÍBlackCat£¬£¬£¬£¬£¬£¬2023ÄêQ1ÊÇLockBit¡¢Vice SocietyºÍBlackCat¡£¡£¡£¡£2022ÄêÀÕË÷Èí¼þµÄÕ¼½ÏÁ¿Ö®2021ÄêÂÔÓÐϽµ£¬£¬£¬£¬£¬£¬´Ó51.9%Ͻµµ½39.8%¡£¡£¡£¡£Kaspersky¶Ô2023ÄêµÄÕ¹ÍûÊǸü¶àµÄǶÈëʽ¹¦Ð§¡¢ÀÄÓÃDriverÒÔ¼°½ÓÄÉÆäËü¶ñÒâÈí¼þ¼Ò×åµÄ´úÂë¡£¡£¡£¡£


https://securelist.com/new-ransomware-trends-in-2023/109660/