ÃÀ¹ú°®´ïºÉ¹ú¼ÒʵÑéÊÒÊýǧÃûÔ±¹¤µÄÏêϸÐÅÏ¢±»¹ûÕæ

Ðû²¼Ê±¼ä 2023-11-22
1¡¢ÃÀ¹ú°®´ïºÉ¹ú¼ÒʵÑéÊÒÊýǧÃûÔ±¹¤µÄÏêϸÐÅÏ¢±»¹ûÕæ


¾ÝýÌå11ÔÂ20ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ºÚ¿ÍSiegedSecÔÚ°µÍø¹ûÕæÁ˰®´ïºÉ¹ú¼ÒʵÑéÊÒ(INL)Ô±¹¤µÄÊý¾Ý ¡£¡£¡£¡£¡£¡£INLÊÇÃÀ¹úÄÜÔ´²¿ÔËÓªµÄºËÑо¿ÖÐÐÄ£¬£¬£¬£¬£¬£¬ÓµÓÐ5700ÃûÔ­×ÓÄÜ¡¢×ÛºÏÄÜÔ´ºÍ¹ú¼ÒÇå¾²ÁìÓòµÄרҵְԱ ¡£¡£¡£¡£¡£¡£ÖÜÒ»£¬£¬£¬£¬£¬£¬SiegedSecÐû²¼ÒÑ»ñµÃINLϵͳµÄ»á¼ûȨÏÞ£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨¡°ÊýÊ®Íò¡±Ô±¹¤¡¢Óû§ºÍ¹«ÃñµÄÏêϸÐÅÏ¢ ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÐû²¼ÁËй¶ÐÅÏ¢µÄÑù±¾£¬£¬£¬£¬£¬£¬Éæ¼°Éç»áÇå¾²ºÅ¡¢Ò½ÁƱ£½¡ÐÅÏ¢ºÍÒøÐÐÕË»§µÈ ¡£¡£¡£¡£¡£¡£ÆäÖÐÒ»¸ö°üÀ¨ÏêϸԱ¹¤ÐÅÏ¢µÄÎļþÓÐ58000¶àÐÐÊý¾Ý£¬£¬£¬£¬£¬£¬º­¸ÇÔÚÖ°¡¢ÍËÐݺÍÈ¥Ö°Ô±¹¤ ¡£¡£¡£¡£¡£¡£


https://cyberscoop.com/idaho-national-laboratory-siegedsec/


2¡¢°ÍÀèÎÛË®´¦Öóͷ£»ú¹¹SIAAPÔâµ½¹¥»÷ÍⲿÅþÁ¬ÔÝʱ¶Ï¿ª


¾Ý11ÔÂ21ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬Îª°ÍÀè¼°ÆäÖܱߵØÇø900ÍòÈËÌṩÎÛË®´¦Öóͷ£Ð§À͵Ļú¹¹SIAAPÔâµ½¹¥»÷ ¡£¡£¡£¡£¡£¡£SIAAPÖÎÀí×Å·¨¹úËĸöÊ¡½ü275Ó¢ÀïµÄ¹ÜµÀ£¬£¬£¬£¬£¬£¬ËüÔÚ·¢Ã÷¹¥»÷ºóÒѹرÕËùÓÐÍⲿÅþÁ¬£¬£¬£¬£¬£¬£¬À´±ÜÃâ¹¥»÷µÄÈö²¥ ¡£¡£¡£¡£¡£¡£ÊÂÇéÖ°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬ËûÃÇÒѽÓÄɲ½·¥£¬£¬£¬£¬£¬£¬ÒÔά³Ö·¨À¼Î÷µº×¡Ãñ¹«¹²ÎÀÉúЧÀ͵ÄÒ»Á¬ÐÔ ¡£¡£¡£¡£¡£¡£Ò»·Ý½ôÆÈÏÂÁîÒÑÊÚȨ¸Ã»ú¹¹Ô¼ÇëÇå¾²¹«Ë¾²¢¹ºÖÃ×°±¸£¬£¬£¬£¬£¬£¬À´»Ö¸´»ò»¹Ô­ËûÃÇÊÂÇéËùÐèµÄϵͳ ¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬Ã»ÓкڿÍÍÅ»ïÉù³Æ¶ÔÕâ´Î¹¥»÷ÈÏÕæ ¡£¡£¡£¡£¡£¡£


https://therecord.media/paris-wastewater-agency-hit-cyberattack


3¡¢RhysidaÍÅ»ïÒÔ20 BTCµÄ¼ÛÇ®ÅÄÂô´óӢͼÊé¹ÝµÄÊý¾Ý


ýÌå11ÔÂ20Èճƣ¬£¬£¬£¬£¬£¬ÀÕË÷ÍÅ»ïRhysida½«´óӢͼÊé¹ÝÌí¼Óµ½ÆäTorÐ¹Â¶ÍøÕ¾ ¡£¡£¡£¡£¡£¡£¸ÃÍÅ»ïÉù³ÆÇÔÈ¡ÁË´ó×Ú¡°ÁîÈËÓ¡ÏóÉî¿ÌµÄÊý¾Ý¡±£¬£¬£¬£¬£¬£¬²¢ÒÔ20 BTCµÄ¼ÛÇ®¾ÙÐÐÅÄÂô ¡£¡£¡£¡£¡£¡£RhysidaÍýÏ뽫ÕâЩÊý¾ÝÂô¸øÎ¨Ò»µÄÂò¼Ò£¬£¬£¬£¬£¬£¬²¢Áô³ö7ÌìµÄʱ¼ä ¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÓÚ10ÔÂ28ÈÕ£¬£¬£¬£¬£¬£¬µ¼ÖÂITϽµµÍ¬ÐøµÄÖÐÖ¹£¬£¬£¬£¬£¬£¬Ó°ÏìÁË´óӢͼÊé¹ÝµÄÔÚÏßϵͳ¡¢Ð§ÀͺÍWi-FiµÈ ¡£¡£¡£¡£¡£¡£´óӢͼÊé¹ÝÔÚ20ÈÕ·¢Ìû֤ʵÁËÆäÈËÁ¦×ÊÔ´Îļþ±»µÁµÄÐÂÎÅ£¬£¬£¬£¬£¬£¬²¢ÌáÐÑÓû§ÖØÖÃÃÜÂëÒÔ·ÀÍòÒ» ¡£¡£¡£¡£¡£¡£»£»£»£»£»£»¹ÌåÏÖÔ¤¼ÆÔÚδÀ´¼¸ÖÜÄÚ»Ö¸´Ðí¶àЧÀÍ£¬£¬£¬£¬£¬£¬µ«²¿·ÖÖÐÖ¹¿ÉÄÜ»áÒ»Á¬ºÜ³¤Ò»¶Îʱ¼ä ¡£¡£¡£¡£¡£¡£


https://securityaffairs.com/154473/data-breach/rhysida-ransomware-gang-british-library.html


4¡¢Æû³µÁã¼þ¹«Ë¾AutoZone֪ͨÊýÍò¿Í»§ÆäÊý¾ÝÒÑй¶


11ÔÂ21ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬£¬ÃÀ¹úÆû³µÁ㲿¼þÁãÊÛÉ̺ͷÖÏúÉÌAutoZoneй¶ÁËÁè¼Ý18ÍòÈ˵ÄÊý¾Ý ¡£¡£¡£¡£¡£¡£AutoZoneÄêÊÕÈë½ü175ÒÚÃÀÔª£¬£¬£¬£¬£¬£¬Ã¿ÔÂÓÐ3500ÍòÓû§»á¼ûÆäÔÚÏßÊÐËÁ ¡£¡£¡£¡£¡£¡£AutoZoneÔÚ21ÈÕ֪ͨÃÀ¹úÕþ¸®ËüÔÚ5ÔÂ28ÈÕ±¬·¢ÁËÊý¾Ýй¶£¬£¬£¬£¬£¬£¬Ó°Ïì184995ÈË ¡£¡£¡£¡£¡£¡£8ÔÂ15ÈÕ×óÓÒ£¬£¬£¬£¬£¬£¬AutoZoneÈ·¶¨£¬£¬£¬£¬£¬£¬Î´¾­ÊÚȨµÄµÚÈý·½Ê¹ÓÃMOVEitÖеÄÎó²îÇÔÈ¡ÁËAutoZoneϵͳÖеÄijЩÊý¾Ý ¡£¡£¡£¡£¡£¡£Ö®ºó£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÓÖ»¨ÁË3¸öÔµÄʱ¼äÀ´È·¶¨ÄÄЩÊý¾Ý±»µÁ£¬£¬£¬£¬£¬£¬ÒÔ¼°ÐèҪ֪ͨÄÄЩÈË ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/auto-parts-giant-autozone-warns-of-moveit-data-breach/


5¡¢Ñо¿Ö°Ô±ÑÝʾÔõÑù´ÓSSHЧÀÍÆ÷ÊðÃû¹ýʧÖÐÌáÈ¡RSAÃÜÔ¿


ýÌå11ÔÂ19ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷£¬£¬£¬£¬£¬£¬ÔÚijЩÌõ¼þÏ£¬£¬£¬£¬£¬£¬±»¶¯¹¥»÷ÕßÓпÉÄÜ´Óµ¼ÖÂSSHÅþÁ¬ÊµÑéʧ°ÜµÄ¹ýʧÖÐÌáÈ¡RSAÃÜÔ¿ ¡£¡£¡£¡£¡£¡£ÈôÊÇʹÓÃCRT-RSAµÄÊðÃû³ÌÐòÔÚÊðÃûÅÌËãÀú³ÌÖзºÆð¹ÊÕÏ£¬£¬£¬£¬£¬£¬ÊӲ쵽¸ÃÊðÃûµÄ¹¥»÷Õß¾ÍÓпÉÄÜÅÌËã³öÊðÃûÕßµÄ˽Կ ¡£¡£¡£¡£¡£¡£Ö»¹Ü´ËÀà¹ýʧºÜÉÙ¼û£¬£¬£¬£¬£¬£¬µ«ÓÉÓÚÓ²¼þȱÏÝ£¬£¬£¬£¬£¬£¬ËüÃÇÊDz»¿É×èÖ¹µÄ ¡£¡£¡£¡£¡£¡£Ö»ÒªÓÐ×ã¹»´óµÄÊý¾Ý³Ø£¬£¬£¬£¬£¬£¬¹¥»÷Õ߾ͿÉÒÔÕÒµ½²¢Ê¹ÓÃÐí¶àʱ»ú ¡£¡£¡£¡£¡£¡£ÕâÖ»Ó°ÏìÁ˾ɰæTLS£¬£¬£¬£¬£¬£¬TLS 1.3ͨ¹ý¼ÓÃܽ¨ÉèÅþÁ¬µÄÎÕÊÖÀú³Ì½â¾öÁËÕâÒ»ÎÊÌ⣬£¬£¬£¬£¬£¬´Ó¶ø±ÜÃâÇÔÌýÕß¶ÁÈ¡ÊðÃû ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/researchers-extract-rsa-keys-from-ssh-server-signing-errors/


6¡¢Outpost24Ðû²¼¹ØÓÚÐÅÏ¢ÇÔÈ¡Èí¼þLummaµÄÆÊÎö±¨¸æ


11ÔÂ20ÈÕ£¬£¬£¬£¬£¬£¬Outpost24Ðû²¼Á˹ØÓÚÐÅÏ¢ÇÔÈ¡Èí¼þLummaµÄÆÊÎö±¨¸æ ¡£¡£¡£¡£¡£¡£Lumma£¨ÓÖÃûLummaC2£©ÓÉCÓïÑÔ¿ª·¢£¬£¬£¬£¬£¬£¬×Ô2022Äê12ÔÂÆðÔÚµØÏÂÂÛ̳ÉϳöÊÛ ¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÔÚÈÆ¹ý¼ì²âºÍ×èÖ¹×Ô¶¯ÆÊÎö·½Ãæ¾ÙÐÐÁËÖØ´ó¸üУ¬£¬£¬£¬£¬£¬°üÀ¨¿ØÖÆÁ÷±âƽ»¯»ìÏý¡¢human-mouse»î¶¯¼ì²â¡¢XOR¼ÓÃÜ×Ö·û´®¡¢Ö§³Ö¶¯Ì¬ÉèÖÃÎļþÒÔ¼°ÔÚËùÓй¹½¨ÖÐÇ¿ÖÆÊ¹ÓüÓÃÜÊÖÒÕ ¡£¡£¡£¡£¡£¡£ÆäÖÐ×îÓÐȤµÄÊÇʹÓÃÈý½Ç·¨¼ì²âhuman-mouse»î¶¯£¬£¬£¬£¬£¬£¬ÕâÏîÊÖÒÕ˼Á¿Á˹â±êÔÚ¶Ìʱ¼äÄڵIJî±ðλÖ㬣¬£¬£¬£¬£¬ÒÔ¼ì²âÈËÀà»î¶¯£¬£¬£¬£¬£¬£¬´Ó¶øÓÐÓõØÈƹýÁË´ó´ó¶¼ÎÞ·¨ÕæÊµÄ£ÄâÊó±êÒÆ¶¯µÄÆÊÎöϵͳµÄ¼ì²â ¡£¡£¡£¡£¡£¡£


https://outpost24.com/blog/lummac2-anti-sandbox-technique-trigonometry-human-detection/