McGraw HillµÄ´æ´¢Í°ÉèÖùýʧй¶22TBÊý¾Ý

Ðû²¼Ê±¼ä 2022-12-21
1¡¢McGraw HillµÄAWS S3´æ´¢Í°ÉèÖùýʧй¶22TBÊý¾Ý

      

¾Ý12ÔÂ19ÈÕ±¨µÀ£¬£¬£¬£¬ £¬Ñо¿Ö°Ô±·¢Ã÷ÁËÁ½¸öÉèÖùýʧµÄAmazon Web Services S3´æ´¢Í°£¬£¬£¬£¬ £¬ÆäËùÓÐÕß±»È·¶¨ÎªMcGraw Hill¡£¡£¡£¡£ ¡£¡£¸Ãƽ̨ÊÇÃÀ¹úÈý´ó½ÌÓýÄÚÈݳöÊéÉÌÖ®Ò»£¬£¬£¬£¬ £¬Ò²±»¼ÓÄôó¸÷µØµÄ½ÌÓý»ú¹¹ÓÃÓÚÔÚÏ߿γÌ¡£¡£¡£¡£ ¡£¡£´Ë´ÎÊÂÎñ×ܹ²Ð¹Â¶ÁË1.17ÒÚ¸öÎļþ£¬£¬£¬£¬ £¬»®·ÖΪһ¸ö°üÀ¨10TBÊý¾ÝµÄ·ÇÉú²ú´æ´¢Í°£¬£¬£¬£¬ £¬ÒÔ¼°Ò»¸ö°üÀ¨12TBÊý¾ÝµÄÉú²ú´æ´¢Í°£¬£¬£¬£¬ £¬ÓÚ2022Äê6ÔÂ12ÈÕÊ״α»·¢Ã÷¡£¡£¡£¡£ ¡£¡£Ñо¿Ö°Ô±Í¸Â¶£¬£¬£¬£¬ £¬Ô¼10ÍòÃûѧÉú»áÊܵ½¸ÃÊÂÎñµÄÓ°Ï죬£¬£¬£¬ £¬ÏÖÔÚ̻¶µÄ´æ´¢Í°Òѱ»±£»£»£» £»£»£»£»£»¤ÆðÀ´¡£¡£¡£¡£ ¡£¡£


https://www.hackread.com/american-online-ed-platform-22tb-data-leak/


2¡¢DraftKingsÁè¼Ý6Íò¿Í»§µÄÐÅÏ¢ÒòÔ⵽ײ¿â¹¥»÷й¶

      

ýÌå12ÔÂ19Èճƣ¬£¬£¬£¬ £¬ÌåÓý²©²Ê¹«Ë¾DraftKingsÉÏÖÜ͸¶£¬£¬£¬£¬ £¬67995¸ö¿Í»§µÄСÎÒ˽¼ÒÐÅÏ¢ÔÚ11Ô·ݵÄÒ»´Îײ¿â¹¥»÷ÖÐй¶¡£¡£¡£¡£ ¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬£¬ £¬¹¥»÷Õß´ÓÆäËüµØ·½»ñµÃÁ˵Ǽ¿Í»§ÕÊ»§ËùÐèµÄƾ֤£¬£¬£¬£¬ £¬¿Í»§µÄÉç»áÇå¾²ºÅÂë¡¢¼ÝÕÕºÅÂëºÍ½ðÈÚÕ˺Ų¢Î´Ð¹Â¶¡£¡£¡£¡£ ¡£¡£DraftKingsÔÚ¼ì²âµ½¹¥»÷ºóÖØÖÃÁËÊÜÓ°ÏìÕÊ»§µÄÃÜÂ룬£¬£¬£¬ £¬²¢ÊµÑéÁËÌØÁíÍâڲƭ¾¯±¨¡£¡£¡£¡£ ¡£¡£OktaÔÚ9Ô·ݱ¨¸æ³Æ£¬£¬£¬£¬ £¬½ñÄêµÄÇéÐμ±¾ç¶ñ»¯£¬£¬£¬£¬ £¬ËüÔÚ2022ÄêǰÈý¸öÔ¾ͼͼÁËÁè¼Ý100ÒÚ´Îײ¿âÊÂÎñ¡£¡£¡£¡£ ¡£¡£


https://www.bleepingcomputer.com/news/security/draftkings-warns-data-of-67k-people-was-exposed-in-account-hacks/


3¡¢Î¢ÈíÔÚMacOSÖз¢Ã÷¿ÉÈÆ¹ýGatekeeperµÄÎó²îAchilles

      

12ÔÂ19ÈÕ£¬£¬£¬£¬ £¬Î¢ÈíÅû¶ÁËMacOSÖпÉÈÆ¹ýGatekeeperµÄÎó²îAchilles£¨CVE-2022-42821£©¡£¡£¡£¡£ ¡£¡£GatekeeperÊÇmacOSµÄÒ»ÏîÇå¾²¹¦Ð§£¬£¬£¬£¬ £¬»á×Ô¶¯¼ì²éÏÂÔØµÄÓ¦ÓÃÊÇ·ñ¾­Óɹ«Ö¤ºÍ¿ª·¢Ö°Ô±ÊðÃû£¨AppleÅú×¼£©¡£¡£¡£¡£ ¡£¡£AchillesÎó²î¿Éͨ¹ýÌØÖÆµÄpayloadʹÓÃÂß¼­ÎÊÌâÀ´ÉèÖÃÏÞÖÆÐÔACLȨÏÞ£¬£¬£¬£¬ £¬´Ó¶ø×èÖ¹ä¯ÀÀÆ÷ºÍ»¥ÁªÍøÏÂÔØÆ÷ΪÏÂÔØµÄZIPÎļþ´æµµµÄpayloadÉèÖÃcom.apple.quarantineÊôÐÔ¡£¡£¡£¡£ ¡£¡£Òò´Ë£¬£¬£¬£¬ £¬°üÀ¨ÔÚ´æµµpayloadÖеĶñÒâÓ¦ÓûáÔÚÄ¿µÄϵͳÉÏÆô¶¯£¬£¬£¬£¬ £¬¶ø²»ÊDZ»Gatekeeper×èÖ¹¡£¡£¡£¡£ ¡£¡£AppleÒÑÔÚ12ÔÂ13ÈÕÐû²¼µÄ¸üÐÂÖÐÐÞ¸´¸ÃÎó²î¡£¡£¡£¡£ ¡£¡£


https://www.microsoft.com/en-us/security/blog/2022/12/19/gatekeepers-achilles-heel-unearthing-a-macos-vulnerability/


4¡¢Ã°³äSentinelOne SDKµÄ¶ñÒâPyPI°üÇÔÈ¡¿ª·¢Ö°Ô±Êý¾Ý

      

ReversingLabsÔÚ12ÔÂ19ÈÕ³ÆÆä·¢Ã÷Ò»¸ö¶ñÒâPython°üð³äÇå¾²¹«Ë¾SentinelOneµÄÈí¼þ¿ª·¢¹¤¾ß°ü(SDK)¡£¡£¡£¡£ ¡£¡£¸ÃÈí¼þ°üÓëSentinelOne¹«Ë¾Ã»ÓÐÈκιØÏµ£¬£¬£¬£¬ £¬ÓÚ2022Äê12ÔÂ11ÈÕÊ×´ÎÉÏ´«µ½ PyPI£¬£¬£¬£¬ £¬ÒÔºó¸üÐÂÁË20´Î£¬£¬£¬£¬ £¬×îа汾Ϊ1.2.1£¬£¬£¬£¬ £¬ÓÚ12ÔÂ13ÈÕÉÏ´«¡£¡£¡£¡£ ¡£¡£¶ñÒâ°üÖаüÀ¨´øÓжñÒâ´úÂëµÄapi.pyÎļþ£¬£¬£¬£¬ £¬´Ë¶ñÒâ´úÂë³äµ±ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ£¬£¬£¬£¬ £¬´ÓÉè±¹ØÁ¬ÄËùÓÐÖ÷Ŀ¼µ¼³öÖÖÖÖÓ뿪·¢Ö°Ô±Ïà¹ØµÄÊý¾Ý£¬£¬£¬£¬ £¬°üÀ¨BashºÍZshÀúÊ·¼Í¼¡¢SSH ÃÜÔ¿ºÍ.gitconfigµÈÎļþ¡£¡£¡£¡£ ¡£¡£ÏÖÔÚ£¬£¬£¬£¬ £¬Î±ÔìµÄSentinelOne°üÒѱ»É¾³ý¡£¡£¡£¡£ ¡£¡£


https://blog.reversinglabs.com/blog/sentinelsneak-malicious-pypi-module-poses-as-security-sdk


5¡¢Î÷°àÑÀÒøÐÐAbancaÒòÑÓ³Ù±¨¸æÍøÂç¹¥»÷±»·£¿£¿£¿£¿£¿£¿î310ÍòÅ·Ôª

      

¾ÝýÌå12ÔÂ16ÈÕ±¨µÀ£¬£¬£¬£¬ £¬Å·ÖÞÖÐÑëÒøÐÐÌåÏÖ£¬£¬£¬£¬ £¬ÒѶÔÎ÷°àÑÀÒøÐÐAbanca´¦ÒÔ310ÍòÅ·Ôª£¨329ÍòÃÀÔª£©µÄ·£¿£¿£¿£¿£¿£¿î¡£¡£¡£¡£ ¡£¡£Ôµ¹ÊÔ­ÓÉÊǸÃÒøÐÐÑÓ³Ù±¨¸æÍøÂç¹¥»÷ÊÂÎñ£¬£¬£¬£¬ £¬ÆÈʹÆäÔÚ2019ÄêÔÝÍ£ÆäÖ÷ÒªµÄÖ§¸¶·½·¨¡£¡£¡£¡£ ¡£¡£Å·ÖÞÑëÐгƣ¬£¬£¬£¬ £¬¸ÃÒøÐеÄÊèºö¹ÊÕÏÁËÅ·ÖÞÑëÐÐ׼ȷÆÀ¹ÀAbancaµÄÉóÉ÷״̬£¬£¬£¬£¬ £¬ÒÔ¼°ÊµÊ±Ó¦¶ÔÆäËûÒøÐÐÃæÁÙµÄDZÔÚÍþвµÄÄÜÁ¦¡£¡£¡£¡£ ¡£¡£


https://www.usnews.com/news/technology/articles/2022-12-16/ecb-fines-spains-abanca-for-delay-in-reporting-cyber-hack    


6¡¢ÎÚ¿ËÀ¼Í¸Â¶UAC-0142ÍŻﴹÂÚ¹¥»÷ÆäDelta¾üÊÂÇ鱨ϵͳ

      

ÎÚ¿ËÀ¼CERT-UAÔÚ12ÔÂ18ÈÕÐû²¼Í¨¸æ£¬£¬£¬£¬ £¬ÌáÐÑAPTÍÅ»ïUAC-0142Õë¶ÔÆäDelta¾üÊÂÇ鱨ϵͳµÄ¹¥»÷»î¶¯¡£¡£¡£¡£ ¡£¡£´¹ÂÚÐÅÏ¢ÊÇ´Ó¹ú·À²¿Ò»Ãû¹ÍÔ±µÄ±»ÈëÇÖÓÊÏäºÍmessenger·¢Ë͵쬣¬£¬£¬ £¬¸ÃÐÂÎű޲ßÊÕ¼þÈ˸üÐÂDELTAϵͳÖеÄÖ¤Ê飬£¬£¬£¬ £¬Ëü»¹°üÀ¨Ò»¸ö¸½¼ÓµÄPDFÎļþ£¬£¬£¬£¬ £¬Ä£ÄâÁËZaporizhzhia¾¯Ô±¾ÖISTAR²¿·ÖµÄÕýµ±ÕªÒª¡£¡£¡£¡£ ¡£¡£ÔÚÖ´Ðд浵ÖеÄcertificates_rootCA.exeºó£¬£¬£¬£¬ £¬½«×°ÖÃÁ½¸ö¶ñÒâÈí¼þ£¬£¬£¬£¬ £¬»®·ÖΪÇÔÈ¡µç×ÓÓʼþ¡¢Êý¾Ý¿â¡¢¾ç±¾ºÍÎļþµÈÊý¾ÝµÄÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þFateGrab£¬£¬£¬£¬ £¬¼°ÇÔÈ¡ä¯ÀÀÆ÷Êý¾ÝµÄ¶ñÒâÈí¼þStealDeal¡£¡£¡£¡£ ¡£¡£


https://securityaffairs.co/wordpress/139859/intelligence/ukraine-delta-military-intelligence-attack.html