NeopetsÍøÕ¾Ô´´úÂëºÍÁè¼Ý6900ÍòÓû§ÐÅÏ¢±»µÁ

Ðû²¼Ê±¼ä 2022-07-22
1¡¢NeopetsÍøÕ¾µÄÔ´´úÂëºÍÁè¼Ý6900ÍòÓû§µÄÐÅÏ¢±»µÁ

      

¾Ý7ÔÂ20ÈÕ±¨µÀ£¬ £¬£¬£¬£¬ÐéÄâ³èÎïÍøÕ¾NeopetsµÄÔ´´úÂëºÍÁè¼Ý6900Íò»áÔ±µÄСÎÒ˽¼ÒÐÅÏ¢±»µÁ¡£¡£¡£¡£¡£¡£±¾Öܶþ£¬ £¬£¬£¬£¬ÃûΪTarTarXµÄºÚ¿ÍÒÔ4¸ö±ÈÌØ±Ò£¨Ô¼ºÏ94,000ÃÀÔª£©µÄ¼ÛÇ®³öÊÛNeopets.comÍøÕ¾µÄÔ´´úÂëºÍÊý¾Ý¿â¡£¡£¡£¡£¡£¡£NeopetsÍŶÓÌåÏÖËûÃÇÒѾ­»ñϤ´ËÊÂÎñ£¬ £¬£¬£¬£¬²¢ÔÚÆð¾¢½â¾öÎÊÌâ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹ÌåÏÖ£¬ £¬£¬£¬£¬Ö»Òª¹¥»÷ÕßÄܹ»ÊµÊ±»á¼ûÊý¾Ý¿â£¬ £¬£¬£¬£¬¸ü¸ÄNeopetsµÄÃÜÂë¿ÉÄÜÎÞ¼ÃÓÚÊ£¬ £¬£¬£¬£¬ÓÉÓÚ¹¥»÷Õß¿ÉÒÔÇáËɵØÉó²éÐÂÃÜÂë¡£¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬£¬RedditÓû§neo_truths³Æ£¬ £¬£¬£¬£¬ÔÚ·¢Ã÷¸ÃÍøÕ¾±£´æÎó²îºó£¬ £¬£¬£¬£¬ËûÒѾ­¶ÔÊý¾Ý¿â¾ÙÐÐÁËÖÁÉÙÒ»Äêδ¾­ÊÚȨµÄ»á¼û¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/neopets-data-breach-exposes-personal-data-of-69-million-members/


2¡¢Ñо¿ÍŶӷ¢Ã÷ÀàËÆÈðÊ¿¾üµ¶µÄLightning Framework

      

¾ÝIntezer 7ÔÂ21ÈÕ±¨µÀ£¬ £¬£¬£¬£¬ÐÂÄ£¿£¿£¿é»¯¶ñÒâÈí¼þLightning Framework¿ÉÓÃÀ´×°ÖÃrootkitºÍºóÃÅ¡£¡£¡£¡£¡£¡£Ëü¾ßÓдó×Ú¹¦Ð§£¬ £¬£¬£¬£¬³ÉΪÕë¶ÔLinuxϵͳ¿ª·¢µÄ×îÖØ´óµÄ¿ò¼ÜÖ®Ò»£¬ £¬£¬£¬£¬±»³ÆÎªÈðÊ¿¾üµ¶¡£¡£¡£¡£¡£¡£¸Ã¿ò¼Ü¾ßÓб»¶¯ºÍ×Ô¶¯Óë¹¥»÷ÕßͨѶµÄ¹¦Ð§£¬ £¬£¬£¬£¬°üÀ¨ÔÚÄ¿µÄ×°±¸ÉÏ·­¿ªSSH£¬ £¬£¬£¬£¬ÒÔ¼°¶à̬¿ÉËÜÐÔÏÂÁîºÍ¿ØÖÆÉèÖᣡ£¡£¡£¡£¡£¶ñÒâÈí¼þµÄ½¹µãÊÇÒ»¸öÏÂÔØ³ÌÐò£¨¡°kbioset¡±£©ºÍÒ»¸ö½¹µãÄ£¿£¿£¿é£¨¡°kkdmflush¡±£©£¬ £¬£¬£¬£¬»¹Ê¹ÓÃÁË·ÂðÓòÃû£¬ £¬£¬£¬£¬²¢Î±×°³ÉSeahorse GNOME passwordºÍ¼ÓÃÜÃÜÔ¿ÖÎÀíÆ÷£¬ £¬£¬£¬£¬ÒÔÈÆ¹ýϵͳµÄ¼ì²â¡£¡£¡£¡£¡£¡£


https://www.intezer.com/blog/research/lightning-framework-new-linux-threat/


3¡¢KasperskyÅû¶»ùÓÚRustµÄÐÂÀÕË÷Èí¼þLunaµÄϸ½Ú

      

7ÔÂ20ÈÕ£¬ £¬£¬£¬£¬Kaspersky·¢Ã÷¼ÌBlackCatºÍHiveÖ®ºóµÄµÚÈý¸ö»ùÓÚRustµÄÀÕË÷Èí¼þLuna£¬ £¬£¬£¬£¬ÏÖÔÚÈÔÔÚ¿ª·¢ÖС£¡£¡£¡£¡£¡£Ëü¿ÉÒÔÔÚ Windows¡¢LinuxºÍESXiϵͳÉÏÔËÐУ¬ £¬£¬£¬£¬ÆäÖÐLinuxºÍESXiµÄÑù±¾¶¼ÊÇʹÓÃÏàͬµÄÔ´´úÂë±àÒëµÄ£¬ £¬£¬£¬£¬ÓëWindowsµÄ°æÄÚÇé±ÈÓÐһЩϸ΢µÄת±ä¡£¡£¡£¡£¡£¡£Ëü»¹Ê¹ÓÃÁËÒ»ÖÖ²»Ì«³£¼ûµÄ¼ÓÃܼƻ®£¬ £¬£¬£¬£¬Í¨¹ýCurve25519ºÍAESµÄ×éºÏ¾ÙÐмÓÃÜ¡£¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬£¬ÓÉÓÚ¶þ½øÖÆÎļþÖÐÓ²±àÂëµÄÊê½ð¼Í¼ÖÐµÄÆ´Ð´¹ýʧ£¬ £¬£¬£¬£¬Ñо¿Ö°Ô±ÍƲâÆä½¹µã¿ª·¢Ö°Ô±Óë¶íÂÞ˹ÓйØ¡£¡£¡£¡£¡£¡£


https://securelist.com/luna-black-basta-ransomware/106950/


4¡¢LinkedInÈÔÊÇ2022ÄêQ2´¹ÂڻÖб»Ä£Äâ×î¶àµÄÆ·ÅÆ

      

Check PointÔÚ7ÔÂ19ÈÕÐû²¼ÁË2022ÄêµÚ¶þ¼¾¶ÈÆ·ÅÆÍøÂç´¹Â򵀮ÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬ £¬£¬£¬£¬ÔÚQ2µÄ´¹ÂڻÖÐLinkedInÈÔÃûÁаñÊ×£¬ £¬£¬£¬£¬ÓëQ1Ïà±Èð³äLinkedInµÄÕ¼±È´Ó52%Ͻµµ½45%¡£¡£¡£¡£¡£¡£È»¶ø£¬ £¬£¬£¬£¬ËüÓë±»·ÂðµÄµÚ¶þ´óÆ·ÅÆMicrosoftÖ®¼äÈÔ¾ßÓÐÏ൱´óµÄ¾àÀ루½öΪ13%£©¡£¡£¡£¡£¡£¡£Æä´ÎÊÇDHL£¨12%£©¡¢Amazon(9%)¡¢Apple(3%)ºÍAdidas(2%)¡£¡£¡£¡£¡£¡£ÆäÖУ¬ £¬£¬£¬£¬Ã°³äLinkedInµÄ´¹ÂڻÊÔͼģÄâ·¢Ë͸øÓû§µÄ³£¼ûÐÂÎÅ£¬ £¬£¬£¬£¬Õë¶ÔMicrosoftµÄ´¹ÂڻÖ÷ÒªÊÇÇëÇóÑéÖ¤OutlookÕÊ»§ÒÔÇÔÈ¡Óû§ÃûºÍÃÜÂë¡£¡£¡£¡£¡£¡£


https://blog.checkpoint.com/2022/07/19/linkedin-still-number-one-brand-to-be-faked-in-phishing-attempts-while-microsoft-surges-up-the-rankings-to-number-two-spot-in-q2-report/


5¡¢¼ÓÄôó»¬Ìú¬µØÇø½ÌÓý¾ÖÔâµ½¹¥»÷£¬ £¬£¬£¬£¬ÏµÍ³ÈÔÔÚ»Ö¸´ÖÐ

      

¾ÝýÌå7ÔÂ21ÈÕ±¨µÀ£¬ £¬£¬£¬£¬¼ÓÄôó»¬Ìú¬µØÇø½ÌÓý¾ÖÔâµ½ÁËÍøÂç¹¥»÷¡£¡£¡£¡£¡£¡£»£»£»£»£»¬Ìú¬µØÇø½ÌÓý¾ÖÌåÏÖ£¬ £¬£¬£¬£¬ÔÚÔâµ½ÍøÂç¹¥»÷ºó£¬ £¬£¬£¬£¬ÆäÕýÔÚÆð¾¢»Ö¸´ITϵͳ²¢±£»£»£»£»£»¤½ÌÖ°Ô±¹¤¡¢Ñ§ÉúºÍ¼ÒÍ¥µÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£ÉÐδ˵Ã÷¹¥»÷Õß¿ÉÄÜ»á¼ûÁËÄÄЩÀàÐ͵ÄÎļþ£¨ÈôÊÇÓеϰ£©£¬ £¬£¬£¬£¬»òÕßÊÇ·ñ»á¸¶·ÑÀ´ÖØÐ»á¼ûϵͳ¡£¡£¡£¡£¡£¡£½²»°È˳Æ£¬ £¬£¬£¬£¬½üÄêÀ´Õë¶Ô½ÌÓý²¿·ÖµÄ¹¥»÷Ô½À´Ô½ÆµÈÔ£¬ £¬£¬£¬£¬Regina¹«Á¢Ñ§Ð£ÔÚ½ñÄê5ÔÂÔâµ½Á˹¥»÷²¢¹Ø±ÕÁËËùÓлùÓÚ»¥ÁªÍøµÄϵͳ£¬ £¬£¬£¬£¬2021Äê1ÔÂÆ¤¶ûµØÇøµÄ½ÌÓý¾ÖÔøÔâµ½¹¥»÷¡£¡£¡£¡£¡£¡£


https://www.cbc.ca/news/canada/kitchener-waterloo/waterloo-region-district-school-board-cyber-attack-1.6526731?cmp=rss


6¡¢CiscoÐû²¼¶à¸ö²úÆ·µÄÇå¾²¸üУ¬ £¬£¬£¬£¬×ܼÆÐÞ¸´45¸öÎó²î 

      

7ÔÂ20ÈÕ£¬ £¬£¬£¬£¬CiscoÐû²¼¶à¸ö²úÆ·µÄÇå¾²¸üУ¬ £¬£¬£¬£¬×ܼÆÐÞ¸´45¸öÎó²î¡£¡£¡£¡£¡£¡£ÆäÖнÏΪÑÏÖØµÄÊÇCisco Nexus DashboardÖеÄí§ÒâÏÂÁîÖ´ÐÐÎó²î£¨CVE-2022-20857£¬ £¬£¬£¬£¬CVSSÆÀ·Ö9.8£©¡¢ÈÝÆ÷Ó³Ïñ¶ÁдÎó²î£¨CVE-2022-20858£©ºÍ¿çÕ¾ÇëÇóαÔìÎó²î£¨CVE-2022-20861£©¡£¡£¡£¡£¡£¡£³ý´ËÖ®Í⣬ £¬£¬£¬£¬Cisco»¹ÐÞ¸´ÁËÆäSmall Business RV110W¡¢RV130¡¢RV130WºÍRV215W·ÓÉÆ÷ÖеÄ35¸öÎó²î£¬ £¬£¬£¬£¬ËüÃÇ¿ÉÄܵ¼ÖÂí§Òâ´úÂëÖ´ÐкÍDoS¹¥»÷¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2022/07/cisco-releases-patches-for-critical.html