MetaºÍÃÀ¹úÁ½¼ÒÒ½ÁÆ»ú¹¹±»ÆðËßÍøÂ综ÕßÐÅϢͶ·Å¹ã¸æ

Ðû²¼Ê±¼ä 2022-08-01
1¡¢MetaºÍÃÀ¹úÁ½¼ÒÒ½ÁÆ»ú¹¹±»ÆðËßÍøÂ综ÕßÐÅϢͶ·Å¹ã¸æ

      

¾ÝýÌå7ÔÂ30ÈÕ±¨µÀ£¬£¬ £¬£¬£¬£¬¼ÓÖݱ±Çø¶ÔMeta¡¢UCSFÒ½ÁÆÖÐÐĺÍDignity¿µ½¡Ò½ÁÆ»ù½ð»áÌáÆðÕûÌåËßËÏ£¬£¬ £¬£¬£¬£¬Ö¸¿ØËûÃDz»·¨ÍøÂçÓйػ¼ÕßµÄÒ½ÁÆÊý¾Ý²¢ÓÃÓÚ¶¨ÏòͶ·Å¹ã¸æ¡£¡£¡£¡£ ¡£¡£·¨ÔºÎļþÏÔʾ£¬£¬ £¬£¬£¬£¬»¼ÕßÔÚFacebookºÍÓÊÏäÖÐÊÕµ½ÁËÓÐÕë¶ÔÐÔµÄ¹ã¸æ£¬£¬ £¬£¬£¬£¬ÕâЩ¹ã¸æÔÚûÓпÆÑ§Ö§³ÖµÄÇéÐÎÏÂÐû´«¼²²¡ºÍÒ½ÁÆÐ§ÀÍ¡£¡£¡£¡£ ¡£¡£Meta PixelÊÇÒ»¶Î´úÂ룬£¬ £¬£¬£¬£¬¿ÉÒÔ×¢ÈëÈκÎÍøÕ¾£¬£¬ £¬£¬£¬£¬ÒÔ¾ÙÐÐ·Ã¿ÍÆÊÎö¡¢Êý¾ÝÍøÂçºÍ¶¨ÏòͶ·Å¹ã¸æ¡£¡£¡£¡£ ¡£¡£Æ¾Ö¤Í¶Ëߣ¬£¬ £¬£¬£¬£¬±»·¢Ã÷ʹÓÃÁËMeta PixelµÄ33¼ÒÒ½Ôº½öÔÚ2020Äê¾Í¹²ÊÕÖÎÁË2600¶àÍòÃû»¼Õß¡£¡£¡£¡£ ¡£¡£


https://www.bleepingcomputer.com/news/security/meta-us-hospitals-sued-for-using-healthcare-data-to-target-ads/


2¡¢ShinyHuntersÍÅ»ïµÄÖ÷Òª³ÉÔ±ÔÚÀ­°ÍÌØ¹ú¼Ê»ú³¡±»²¶ 

      

ýÌå7ÔÂ31Èճƣ¬£¬ £¬£¬£¬£¬Èû°Í˹µÙ°²¡¤À­ÎÚ¶û£¨ÓÖÃûSezyo£©ÓÚ2022Äê6ÔÂ1ÈÕÔÚÀ­°ÍÌØ¹ú¼Ê»ú³¡±»²¶¡£¡£¡£¡£ ¡£¡£ËûÊÇShinyHuntersÍÅ»ïµÄÖ÷Òª³ÉÔ±Ö®Ò»£¬£¬ £¬£¬£¬£¬ÔøÈëÇÖÁËÊý°Ù¸öÃÀ¹ú×éÖ¯¡£¡£¡£¡£ ¡£¡£³ýÁËÀ­ÎÚ¶û£¬£¬ £¬£¬£¬£¬ÉÐÓÐÆäËû4Ãû·¨¹úסÃñÓ¦Áª°îÊÓ²ì¾ÖµÄÒªÇó½ÓÊÜÁËÎÊѶ¡£¡£¡£¡£ ¡£¡£ÃÀ¹úÏÖÔÚÒªÇóÒÔÍøÂçڲƭºÍÍøÂç·¸·¨µÄÖ¸¿Ø½«ÏÓÒÉÈËÒý¶Éµ½ÃÀ¹ú£¬£¬ £¬£¬£¬£¬È»¶øÀ­ÎÚ¶ûµÄ״ʦ¾Ü¾øÁËÕâÒ»ÒªÇ󣬣¬ £¬£¬£¬£¬³Æ¸Ã°¸¼þÊôÓÚ·¨¹úͳÁì¹æÄ££¬£¬ £¬£¬£¬£¬ÓÉÓÚÎ¥·¨ÐÐΪÊÇÓÉ·¨¹ú¹úÃñÔÚ·¨¹ú¾ÙÐеÄ¡£¡£¡£¡£ ¡£¡£·¨¹úL'Obs±¨µÀ£¬£¬ £¬£¬£¬£¬ÏÓÒÉÈ˱»²¶ºóÒ»Ö±±»¹ØÑºÔÚTifletÀÎÓü£¬£¬ £¬£¬£¬£¬²¢ÃæÁÙ×Å116ÄêµÄî¿Ïµ¡£¡£¡£¡£ ¡£¡£


https://www.hackread.com/alleged-shinyhunters-hacker-group-member-arrested/


3¡¢AdrasteaÉù³ÆÒÑÈëÇÖÅ·ÖÞµ¼µ¯ÖÆÔìÉÌMBDA²¢ÇÔÈ¡60GBÊý¾Ý

      

¾Ý7ÔÂ31ÈÕ±¨µÀ£¬£¬ £¬£¬£¬£¬AdrasteaÉù³ÆÒÑÈëÇÖMBDA²¢ÇÔÈ¡60 GBÊý¾Ý¡£¡£¡£¡£ ¡£¡£MBDAÊÇÅ·ÖÞµÄÒ»¼Ò¿ç¹úµ¼µ¯¿ª·¢É̺ÍÖÆÔìÉÌ£¬£¬ £¬£¬£¬£¬ÓÉ·¨¹ú¡¢Ó¢¹úºÍÒâ´óÀûÖ÷ÒªµÄµ¼µ¯ÏµÍ³¹«Ë¾£¨A¨¦rospatiale¨CMatra¡¢BAE SystemsºÍFinmeccanica£©ºÏ²¢¶ø³É¡£¡£¡£¡£ ¡£¡£AdrasteaÌåÏÖ£¬£¬ £¬£¬£¬£¬ËûÃÇÔÚ¹«Ë¾µÄ»ù´¡ÉèÊ©Öз¢Ã÷ÁËÑÏÖØÎó²î£¬£¬ £¬£¬£¬£¬²¢ÒÑÏÂÔØÉæ¼°¾üÊÂÏîÄ¿¡¢ÉÌÒµ»î¶¯¡¢ÌõԼЭÒéÒÔ¼°ÓëÆäËü¹«Ë¾Í¨Ñ¶ÐÅÏ¢µÄ60 GBÊý¾Ý¡£¡£¡£¡£ ¡£¡£×÷Ϊ¹¥»÷µÄÖ¤¾Ý£¬£¬ £¬£¬£¬£¬AdrasteaÐû²¼ÁËÒ»¸öÁ´½Ó£¬£¬ £¬£¬£¬£¬°üÀ¨ÓëÏîÄ¿ºÍͨѶÏà¹ØµÄÄÚ²¿Îļþ¡£¡£¡£¡£ ¡£¡£ÏÖÔÚ£¬£¬ £¬£¬£¬£¬Éв»ÇåÎú¹ØÓڴ˴ι¥»÷µÄϸ½ÚÐÅÏ¢¡£¡£¡£¡£ ¡£¡£


https://securityaffairs.co/wordpress/133881/data-breach/mbda-alleged-data-breach.html


4¡¢SharpTongueʹÓöñÒâä¯ÀÀÆ÷À©Õ¹ÇÔȡĿµÄµÄÓʼþÊý¾Ý

      

¾ÝVolexityÔÚ7ÔÂ28ÈÕ±¨µÀ£¬£¬ £¬£¬£¬£¬³¯ÏʺڿÍÍÅ»ïSharpTongueÔÚ»ùÓÚChromiumµÄä¯ÀÀÆ÷Éϰ²ÅŶñÒâÀ©Õ¹³ÌÐò£¬£¬ £¬£¬£¬£¬Ö¼ÔÚ´ÓGmailºÍAOLÇÔÈ¡µç×ÓÓʼþÊý¾Ý¡£¡£¡£¡£ ¡£¡£¾ÝϤ£¬£¬ £¬£¬£¬£¬¸ÃÍÅ»ïÓëÒ»¸ö³ÆÎªKimsukyµÄÍÅ»ïÓÐËùÖØµþ¡£¡£¡£¡£ ¡£¡£SharpTongueÖ÷ÒªÕë¶ÔΪÃÀ¹ú¡¢Å·Ö޺ͺ«¹úµÄ×éÖ¯ÊÂÇ飬£¬ £¬£¬£¬£¬´ÓÊÂÉæ¼°³¯ÏÊ¡¢ºËÎÊÌâ¡¢ÎäÆ÷ϵͳµÈ¶Ô³¯ÏʾßÓÐÕ½ÂÔÒâÒåµÄÎÊÌâµÄÄ¿µÄ¡£¡£¡£¡£ ¡£¡£Ôڴ˴λÖУ¬£¬ £¬£¬£¬£¬¹¥»÷ÕßÊ×ÏÈ´Ó±»Ñ¬È¾µÄÍøÕ¾ÊÖ¶¯ÇÔȡװÖÃÀ©Õ¹ËùÐèµÄÎļþ£¬£¬ £¬£¬£¬£¬Ò»µ©Àֳɹ¥»÷Ä¿µÄWindowsϵͳ£¬£¬ £¬£¬£¬£¬¾Í»áÌæ»»ä¯ÀÀÆ÷µÄÊ×Ñ¡ÏîºÍÇå¾²Ê×Ñ¡Ï£¬ £¬£¬£¬£¬ÔÙͨ¹ýVBS¾ç±¾ÊÖ¶¯×°ÖöñÒâÀ©Õ¹SHARPEXT¡£¡£¡£¡£ ¡£¡£


https://www.volexity.com/blog/2022/07/28/sharptongue-deploys-clever-mail-stealing-browser-extension-sharpext/


5¡¢Ó¢¹úWooton UpperѧУÔâµ½Hive¹¥»÷±»ÀÕË÷50ÍòÓ¢°÷

      

ýÌå7ÔÂ28Èճƣ¬£¬ £¬£¬£¬£¬Ó¢¹ú±´µÂ¸£µÂ¿¤µÄWooton Upper SchoolÔâµ½¹¥»÷ºó£¬£¬ £¬£¬£¬£¬±»ÀÕË÷500000Ó¢°÷¡£¡£¡£¡£ ¡£¡£¹¥»÷Ô´ÓÚHive£¬£¬ £¬£¬£¬£¬¸ÃÍÅ»ïÒÑÏòѧÉúºÍ¼Ò³¤·¢ËÍÐÂÎÅ£¬£¬ £¬£¬£¬£¬³ÆËûÃÇÔÚÊýÖÜǰÈëÇÖÁËWoottonµÄϵͳ£¬£¬ £¬£¬£¬£¬²¢Ïë·¨¼ÓÃÜÁËWoottonËùÓеÄЧÀÍÆ÷£¬£¬ £¬£¬£¬£¬°üÀ¨½ð²®ÀûѧԺ(Kimberley College)£¬£¬ £¬£¬£¬£¬ÇÔÈ¡Á˼Òͥסַ¡¢ÒøÐÐÏêϸÐÅÏ¢¡¢Ò½ÁƼͼºÍѧÉúµÄÐÄÀíÆÀ¹ÀµÈÐÅÏ¢¡£¡£¡£¡£ ¡£¡£¸ÃѧУÈÏÕæÈËÒÑÈ·ÈÏÔâµ½ÁËÍøÂç¹¥»÷£¬£¬ £¬£¬£¬£¬ËûÃÇÕýÔÚÖÆ¶©ÍýÏëÀ´ÖØÐÞÆäITϵͳ¡£¡£¡£¡£ ¡£¡£ÏÖÔÚÎÞ·¨È·¶¨»Ö¸´ËùÐèʱ¼ä£¬£¬ £¬£¬£¬£¬µÚÈý·½½¨ÒéΪ7µ½10¸öÊÂÇéÈÕ¡£¡£¡£¡£ ¡£¡£


https://www.infosecurity-magazine.com/news/ransomware-group-500000-school/


6¡¢ENISAÐû²¼¹ØÓÚ2021ÄêÖØ´óµçÐÅÇå¾²ÊÂÎñµÄ»ã×ܱ¨¸æ

      

7ÔÂ28ÈÕ±¨µÀ£¬£¬ £¬£¬£¬£¬ENISAÐû²¼¹ØÓÚ2021ÄêÖØ´óµçÐÅÇå¾²ÊÂÎñµÄ»ã×ܱ¨¸æ¡£¡£¡£¡£ ¡£¡£±¨¸æ°üÀ¨ÁËÀ´×Ô26¸öÅ·Ã˳ÉÔ±¹ú(MS)ºÍ2¸öEFTA¹ú¼ÒµÄÕþ¸®Ìá½»µÄ168ÆðÊÂÎñ±¨¸æµÄÏà¹ØÊý¾Ý£¬£¬ £¬£¬£¬£¬Óû§ËðʧµÄ×Üʱ¼ä£¨Í¨¹ý¶Ôÿ¸öÊÂÎñµÄÓû§Êý³ËÒÔСʱÊýµÃ³ö£©Îª51.06ÒÚ¸öÓû§Ð¡Ê±¡£¡£¡£¡£ ¡£¡£2021ÄêÉϱ¨µÄÊÂÎñÖÐÓÐ4.16%Éæ¼°OTTͨѶЧÀÍ£»£»£»£»£»±»±ê¼ÇΪ¶ñÒâÊÂÎñÊýÄ¿´Ó2020ÄêµÄ4%ÉÏÉýµ½2021ÄêµÄ8%£»£»£»£»£»ÏµÍ³¹ÊÕÏÈÔÔÚÓ°Ïì·½ÃæÕ¼ÓÐÖ÷µ¼Ö°Î»£¬£¬ £¬£¬£¬£¬ÔÚ2021ÄêÔì³ÉÁË3.63ÒÚÓû§Ð¡Ê±µÄËðʧ£¬£¬ £¬£¬£¬£¬¶ø2020ÄêΪ4.19ÒÚ¡£¡£¡£¡£ ¡£¡£


https://securityaffairs.co/wordpress/133756/reports/telecom-security-incidents-2021-enisa.html