ŲÍþÕþ¸®Í¸Â¶Æä12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷

Ðû²¼Ê±¼ä 2023-07-26

1¡¢Å²ÍþÕþ¸®Í¸Â¶Æä12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷


¾ÝýÌå7ÔÂ25ÈÕ±¨µÀ£¬£¬£¬£¬Å²ÍþÕþ¸®12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷¡£¡£ ¡£¡£¡£¡£¸Ã¹¥»÷²¢Î´Ó°ÏìŲÍþÔ׺â°ì¹«ÊÒ¡¢¹ú·À²¿¡¢Ë¾·¨²¿ºÍÍâ½»²¿¡£¡£ ¡£¡£¡£¡£Å²ÍþÇå¾²ÓëЧÀÍ×éÖ¯(DSS)ÔÚ·¢Ã÷¹¥»÷ÊÂÎñºó֪ͨÁ˹ú¼ÒÇå¾²¾Ö(NSM)£¬£¬£¬£¬ÏÖÔÚÊÓ²ìÕýÔÚ¾ÙÐÐÖС£¡£ ¡£¡£¡£¡£Å²ÍþÊý¾Ý±£»£»£» £»£»£»£»¤¾ÖÅú×¢£¬£¬£¬£¬ºÚ¿Í¿ÉÄÜÒѾ­»á¼û²¢ÇÔÈ¡ICTϵͳÖеÄÃô¸ÐÊý¾Ý¡£¡£ ¡£¡£¡£¡£Ö»¹Ü±»¹¥»÷µÄƽ̨ÔÚÒ»Ñùƽ³£ÔË×÷ÖÐʩչ×ÅÖ÷Òª×÷Ó㬣¬£¬£¬µ«´Ë´Î¹¥»÷²»»áµ¼ÖÂÊÂÇé»î¶¯×èÖ¹£¬£¬£¬£¬Õþ¸®²¿·Ö½«¼ÌÐøÕý³£ÊÂÇé¡£¡£ ¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬¹¥»÷ÕßËÆºõʹÓÃÁËIvanti Endpoint Manager Mobile(EPMM)½â¾ö¼Æ»®ÖеÄÎó²î£¬£¬£¬£¬ÏÖÔÚÎó²îÒѱ»ÐÞ¸´¡£¡£ ¡£¡£¡£¡£


https://securityaffairs.com/148778/hacking/norwegian-ministries-cyber-attack.html


2¡¢ÑÅÂí¹þ¼ÓÄôó·Ö¹«Ë¾Ôâµ½Black ByteºÍAkiraµÄ¹¥»÷


¾Ý7ÔÂ25ÈÕ±¨µÀ£¬£¬£¬£¬ÑÅÂí¹þ¼ÓÄôó·Ö¹«Ë¾ÈÏ¿ÉÆäÔâµ½Ò»´ÎÍøÂç¹¥»÷£¬£¬£¬£¬µ¼ÖÂÁËδ¾­ÊÚȨµÄ»á¼ûºÍÊý¾Ýй¶¡£¡£ ¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖÆäѸËÙ½ÓÄɲ½·¥×èÖ¹¹¥»÷£¬£¬£¬£¬²¢Í¨ÖªÁËÊÜÓ°ÏìµÄСÎÒ˽¼Ò¡£¡£ ¡£¡£¡£¡£6ÔÂ14ÈÕ£¬£¬£¬£¬¸Ã¹«Ë¾±»ÁÐÈëBlack ByteÀÕË÷ÍÅ»ïµÄ±»¹¥»÷ÕßÁбí¡£¡£ ¡£¡£¡£¡£ÉÏÖÜÎ壬£¬£¬£¬¸Ã¹«Ë¾ÓÖ·ºÆðÔÚAkiraÀÕË÷ÍÅ»ïµÄÍøÕ¾ÉÏ¡£¡£ ¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ£¬£¬£¬£¬×éÖ¯±»Á½¸ö²î±ðµÄÀÕË÷ÍÅ»ïÁгöµÄÇéÐÎÔ½À´Ô½³£¼û£¬£¬£¬£¬ÕâÊǽñÄêµÄÒ»¸öÖ÷ÒªÇ÷ÊÆ¡£¡£ ¡£¡£¡£¡£


https://therecord.media/yamaha-confirms-cyberattack-after-multiple-ransomware-gangs-claim


3¡¢Ñо¿Ö°Ô±·¢Ã÷TETRAÎÞÏßµç±ê×¼ÖеÄÎó²îTETRA:BURST


ýÌå7ÔÂ25Èճƣ¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷Á˵ØÃ漯ȺÎÞÏßµç(TETRA)±ê×¼Öб»Í³³ÆÎªTETRA:BURSTµÄ5¸öÎó²î¡£¡£ ¡£¡£¡£¡£ÕâЩÎó²î»®·ÖΪCVE-2022-24400¡¢CVE-2022-24401¡¢CVE-2022-24402¡¢CVE-2022-24403ºÍCVE-2022-24404¡£¡£ ¡£¡£¡£¡£ÆäÖÐ×îÑÏÖØµÄÊÇCVE-2022-24401£¬£¬£¬£¬ÕâÊÇÒ»ÖÖoracle½âÃܹ¥»÷£¬£¬£¬£¬¿ÉÒÔÔÚ²»ÖªµÀ¼ÓÃÜÃÜÔ¿µÄÇéÐÎÏÂй¶Îı¾¡¢ÓïÒô»òÊý¾ÝͨѶ¡£¡£ ¡£¡£¡£¡£Æä´ÎÊÇCVE-2022-24402£¬£¬£¬£¬Ëü¿É±»ÓÃÀ´×¢Èë¼à¿Ø¹¤Òµ×°±¸µÄÊý¾ÝÁ÷Á¿¡£¡£ ¡£¡£¡£¡£Ñо¿Ö°Ô±ÍýÏëÔÚ¼´½«¾ÙÐеÄBlack Hat USA 2023ÉÏÅû¶¹ØÓÚÎó²îµÄ¸ü¶àÐÅÏ¢¡£¡£ ¡£¡£¡£¡£


https://www.midnightblue.nl/tetraburst


4¡¢Ivanti½ôÆÈ¸üÐÂÐÞ¸´EPMMÖб»Ê¹ÓõÄÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î


7ÔÂ25ÈÕ±¨µÀ³Æ£¬£¬£¬£¬IvantiÐû²¼½ôÆÈ¸üУ¬£¬£¬£¬ÐÞ¸´ÆäEndpoint Manager Mobile(EPMM)ÒÆ¶¯×°±¸ÖÎÀíÈí¼þ£¨ÒÔǰ³ÆMobileIron Core£©Öб»Ê¹ÓõÄÎó²î¡£¡£ ¡£¡£¡£¡£ÕâÊÇÒ»¸öÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î£¨CVE-2023-35078£©£¬£¬£¬£¬Î´¾­ÊÚȨµÄÓû§¿ÉÔÚδÉí·ÝÑéÖ¤µÄÇéÐÎÏ»á¼ûÓ¦ÓóÌÐòµÄ¹¦Ð§»ò×ÊÔ´¡£¡£ ¡£¡£¡£¡£CISA³Æ£¬£¬£¬£¬¹¥»÷Õß»¹¿ÉÒÔʹÓøÃÎó²î¾ÙÐÐÆäËüÉèÖøü¸Ä£¬£¬£¬£¬°üÀ¨½¨ÉèEPMMÖÎÀíÕÊ»§¡£¡£ ¡£¡£¡£¡£Õâ¼ÒÈí¼þ¹«Ë¾ÌåÏÖ£¬£¬£¬£¬¸ÃÎó²îÒѱ»Æð¾¢Ê¹Ó㬣¬£¬£¬µ«Ã»ÓÐ͸¶Óйع¥»÷ÐÔ×Ó»ò¹¥»÷ÕßÉí·ÝµÄ¸ü¶àϸ½Ú¡£¡£ ¡£¡£¡£¡£


https://thehackernews.com/2023/07/ivanti-releases-urgent-patch-for-epmm.html


5¡¢¹ú¼ÊÂÉËùOrrickй¶Óû§Êý¾ÝÓ°ÏìÁè¼Ý15Íò¸ö¿Í»§


¾Ý7ÔÂ24ÈÕ±¨µÀ£¬£¬£¬£¬¹ú¼ÊÂÉËùOrrickÕýÔÚÏò½ü153000ÈËת´ïÒ»ÆðÇå¾²ÊÂÎñ£¬£¬£¬£¬¸ÃÊÂÎñµ¼Ö¶à¸ö¿Í»§Îļþй¶¡£¡£ ¡£¡£¡£¡£OrrickÔÚÉùÃ÷ÖгÆ£¬£¬£¬£¬ËûÃÇÔÚ3ÔÂ13ÈÕ·¢Ã÷Á˹¥»÷ÕßÕë¶ÔÆäÉúÑIJ¿·Ö¿Í»§¶ËÎļþµÄÎļþ´æ´¢×°±¸µÄ¹¥»÷¡£¡£ ¡£¡£¡£¡£ÊÓ²ìÈ·¶¨£¬£¬£¬£¬Î´¾­ÊÚȨµÄ¹¥»÷ÕßÔÚ2ÔÂ28ÈÕÖÁ3ÔÂ7ÈÕ»á¼ûÁ˰üÀ¨¿µ½¡ÐÅÏ¢ºÍСÎÒ˽¼ÒÉí·ÝÐÅÏ¢µÄ¿Í»§Îļþ¡£¡£ ¡£¡£¡£¡£¸ÃÊÂÎñ²¢Î´µ¼ÖÂÈκοͻ§Ð§ÀÍ»òÔËÓªÖÐÖ¹£¬£¬£¬£¬Ò²Ã»Óз¢Ã÷Óë´Ë´Î¹¥»÷Ïà¹ØµÄÀÕË÷Èí¼þ¡£¡£ ¡£¡£¡£¡£


https://www.bankinfosecurity.com/law-firm-hack-affects-victims-earlier-breach-again-a-22633


6¡¢ºÚ¿ÍÍÅ»ïSiegedSec¹ûÕæ½ü1GBÓë±±Ô¼Ïà¹ØµÄÎļþ


ýÌå7ÔÂ25ÈÕ±¨µÀ£¬£¬£¬£¬ºÚ¿ÍÍÅ»ïSiegedSecÉù³Æ¹¥»÷Á˱±Ô¼£¬£¬£¬£¬²¢Ð¹Â¶Á˽ü1 GBµÄÊý¾Ý¡£¡£ ¡£¡£¡£¡£SiegedSec³ÆÒÑÈëÇÖ±±Ô¼COIÃÅ»§ÍøÕ¾£¬£¬£¬£¬ËæÐ§¹ûÕæÁËÊý°Ù·Ý¹©±±Ô¼¹ú¼ÒºÍÏàÖúͬ°éʹÓõÄÃô¸ÐÎļþ¡£¡£ ¡£¡£¡£¡£ÆäÖк¬ÖÁÉÙ70Ãû±±Ô¼¹ÙÔ±µÄÐÕÃû¡¢ÓʼþµØµã¡¢µç»°ºÅÂë¡¢°ì¹«µØµãºÍ¾üÏεÈ¡£¡£ ¡£¡£¡£¡£¾Ý³Æ£¬£¬£¬£¬¶Ô±±Ô¼COIÃÅ»§ÍøÕ¾µÄ¹¥»÷±ê¼Ç×ÅSiegedSecÕ½ÊõµÄÒ»Ö±Éý¼¶¡£¡£ ¡£¡£¡£¡£Ö»¹Ü±±Ô¼¹ÙÔ±ÉÐδ֤ʵ´Ë´ÎÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬µ«Ð¹Â¶µÄÎļþ°üÀ¨Á˱±Ô¼¹ú¼Ò¼°ÆäÏàÖúͬ°éµÄÖ÷ÒªÐÅÏ¢£¬£¬£¬£¬Òý·¢Á˶ÔÇå¾²Ó°ÏìµÄµ£ÐÄ¡£¡£ ¡£¡£¡£¡£


https://www.hackread.com/siegedsec-hacktivist-hack-nato-data-leak/