AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶

Ðû²¼Ê±¼ä 2023-03-10

1¡¢AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶


¾Ý3ÔÂ9ÈÕ±¨µÀ£¬ £¬£¬£¬£¬£¬£¬£¬AT&T֪ͨԼ900Íò¿Í»§ÆäÐÅÏ¢ÒѾ­Ð¹Â¶£¬ £¬£¬£¬£¬£¬£¬£¬ÓÉÓÚËüµÄÒ»¼ÒÓªÏú¹©Ó¦ÉÌÔÚ1Ô·ÝÔâµ½Á˺ڿ͹¥»÷¡£¡£¡£¡£Ð¹Â¶Êý¾Ý°üÀ¨¿Í»§ÐÕÃû¡¢ÎÞÏßÕʺš¢ÎÞÏߵ绰ºÅÂëºÍÓʼþµØµãµÈ£¬ £¬£¬£¬£¬£¬£¬£¬ÒÔ¼°²¿·Ö¿Í»§µÄÎÞÏß·ÑÂÊÍýÏë¡¢ÓâÆÚ½ð¶îºÍ¸¶¿î½ð¶îµÈ¡£¡£¡£¡£¸Ã¹«Ë¾Ôö²¹Ëµ£¬ £¬£¬£¬£¬£¬£¬£¬Æäϵͳ²¢Î´ÊÜÓ°Ï죬 £¬£¬£¬£¬£¬£¬£¬Ð¹Â¶Êý¾ÝÖ÷ÒªÓë×°±¸Éý¼¶×ʸñÓйء£¡£¡£¡£AT&T¾Ü¾øÍ¸Â¶¹©Ó¦É̵ÄÉí·Ý£¬ £¬£¬£¬£¬£¬£¬£¬µ«The RegisterÌåÏÖ£¬ £¬£¬£¬£¬£¬£¬£¬µç×ÓÓʼþÓªÏú¹«Ë¾MailchimpÔÚ1Ô·ÝÔøÔâµ½¹¥»÷£¬ £¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß»ñµÃÁË100¶à¸ö¿Í»§ÕÊ»§µÄ»á¼ûȨÏÞ¡£¡£¡£¡£


https://www.theregister.com/2023/03/09/att_wireless_breach/


2¡¢Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£Ñ§Çø±»MedusaÀÕË÷100ÍòÃÀÔª


ýÌå3ÔÂ8Èճƣ¬ £¬£¬£¬£¬£¬£¬£¬Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£(MPS)Ñ§Çø±»MedusaÍÅ»ïÀÕË÷100ÍòÃÀÔª¡£¡£¡£¡£¸ÃÍŻォMPSÌí¼Óµ½ÆäTorÍøÕ¾ÉÏ£¬ £¬£¬£¬£¬£¬£¬£¬²¢ÍþвҪÔÚ3ÔÂ17ÈÕ֮ǰÐû²¼´Ó¸ÃÑ§ÇøÇÔÈ¡µÄËùÓÐÊý¾Ý¡£¡£¡£¡£¸ÃÊÂÎñÖ®ÒÔÊÇÒýÈËעĿ£¬ £¬£¬£¬£¬£¬£¬£¬ÊÇÓÉÓÚ¹¥»÷ÕßÖÆ×÷ÁËÒ»¶Îʱ³¤Ô¼51·ÖÖÓµÄÊÓÆµ£¬ £¬£¬£¬£¬£¬£¬£¬ÏÔʾ´ÓMPSÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£MPSÖÎÀí×ÅÔ¼100Ëù¹«Á¢ÖÐСѧ£¬ £¬£¬£¬£¬£¬£¬£¬ËüÓÚ3ÔÂ1ÈÕÐû²¼Í¨¸æ£¬ £¬£¬£¬£¬£¬£¬£¬Í¸Â¶Æä2ÔÂ21ÈÕÔâµ½¹¥»÷µ¼ÖÂϵͳÖÐÖ¹¡£¡£¡£¡£¸Ã×éÖ¯»¹ÌåÏÖ£¬ £¬£¬£¬£¬£¬£¬£¬Ëü²»ÍýÏ븶Êê½ð£¬ £¬£¬£¬£¬£¬£¬£¬¶øÊÇÑ¡ÔñʹÓÃÄÚ²¿±¸·Ý»Ö¸´±»¼ÓÃܵÄÊý¾Ý¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/ransomware-gang-posts-video-of-data-stolen-from-minneapolis-schools/


3¡¢Ó¡¶ÈHDFC Bank×Ó¹«Ë¾Áè¼Ý7200ÍòÌõ¼Í¼±»Ðû²¼ÔÚ°µÍø


¾ÝýÌå3ÔÂ8ÈÕ±¨µÀ£¬ £¬£¬£¬£¬£¬£¬£¬ºÚ¿ÍKernelwareÔÚ°µÍøBreached forumÉÏÐû²¼ÁËHDB Financial ServicesÔ¼7.5 GBµÄ¿Í»§Êý¾Ý¡£¡£¡£¡£HDB Financial ServicesÊÇÓ¡¶È×î´óµÄ˽ÈËÒøÐÐHDFC BankµÄ×Ó¹«Ë¾¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢°üÀ¨Áè¼Ý7200ÍòÌõ¼Í¼£¬ £¬£¬£¬£¬£¬£¬£¬Éæ¼°2022Äê5ÔÂÖÁ2023Äê2ÔÂÉêÇë´û¿îµÄHDBÏûºÄÕß¡£¡£¡£¡£HDFC Bank·ñ¶¨ÁËÊý¾Ýй¶ÊÂÎñ£¬ £¬£¬£¬£¬£¬£¬£¬µ«HDB FinancialÒÑÈ·Èϲ¢ÔÚÊÓ²ì¸ÃÇå¾²ÊÂÎñ¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬ £¬£¬£¬£¬£¬£¬£¬Kernelware¾ÍÊÇй¶ÁËAcerÔ¼160GBÊý¾ÝµÄºÚ¿Í¡£¡£¡£¡£


https://www.hackread.com/hackers-india-hdfc-bank-data-leak/


4¡¢VeeamÐÞ¸´Ó°ÏìÆäËùÓÐVBR°æ±¾µÄÎó²îCVE-2023-27532


3ÔÂ8ÈÕ±¨µÀ³Æ£¬ £¬£¬£¬£¬£¬£¬£¬VeeamÐû²¼¸üУ¬ £¬£¬£¬£¬£¬£¬£¬ÐÞ¸´ÆäBackup & Replication²úÆ·ÖеÄÎó²îCVE-2023-27532¡£¡£¡£¡£Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÔÚ»ñÈ¡´æ´¢ÔÚVeeamVBRÉèÖÃÊý¾Ý¿âÖеļÓÃÜÆ¾Ö¤ºó£¬ £¬£¬£¬£¬£¬£¬£¬Ê¹ÓÃËü»á¼û±¸·Ý»ù´¡¼Ü¹¹Ö÷»ú¡£¡£¡£¡£Æ¾Ö¤Veeamͨ¸æ£¬ £¬£¬£¬£¬£¬£¬£¬¸ÃÎó²î»ù´¡Ôµ¹ÊÔ­ÓÉÊÇVeeam.Backup.Service.exe£¨Ä¬ÈÏÇéÐÎÏÂÔÚTCP 9401ÉÏÔËÐУ©¿É±»Î´¾­Éí·ÝÑéÖ¤µÄÓû§ÓÃÀ´ÇëÇó¼ÓÃÜÆ¾Ö¤¡£¡£¡£¡£Veeam»¹ÌṩÁËÔÝʱÐÞ¸´ÒªÁ죬 £¬£¬£¬£¬£¬£¬£¬Ê¹Óñ¸·ÝЧÀÍÆ÷·À»ðǽ×èÖ¹Óë¶Ë¿ÚTCP 9401µÄÍⲿÅþÁ¬¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/veeam-fixes-bug-that-lets-hackers-breach-backup-infrastructure/


5¡¢FortinetÅû¶8220 GangʹÓÃScrubCryptµÄ¹¥»÷»î¶¯


FortinetÔÚ3ÔÂ8ÈÕÅû¶ÁË8220 Gang×î½üµÄ¼ÓÃÜÐ®ÖÆ¹¥»÷¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ2023Äê1ÔÂÖÁ2Ô£¬ £¬£¬£¬£¬£¬£¬£¬¹¥»÷Á´Ê¼ÓÚÀÖ³ÉʹÓÃÒ×±»¹¥»÷µÄOracle WebLogic ServerÏÂÔØ°üÀ¨ScrubCryptµÄPowerShell¾ç±¾¡£¡£¡£¡£PowerShell¾ç±¾ÒѾ­ÓɱàÂ룬 £¬£¬£¬£¬£¬£¬£¬À´ÈƹýÇå¾²¼Æ»®µÄ¼ì²â¡£¡£¡£¡£ScrubCrypt¼ÓÃÜÆ÷ÔÚºÚ¿ÍÂÛ̳ÉÏÓÐÊÛ£¬ £¬£¬£¬£¬£¬£¬£¬¿ÉʹÓÃÆæÒìµÄBAT´ò°üÒªÁì±£»£»£»¤Ó¦ÓóÌÐò¡£¡£¡£¡£»£»£»ùÓڻÖÐʹÓõļÓÃÜÇ®°üµØµãºÍMonero¿ó¹¤Ê¹ÓõÄЧÀÍÆ÷IPµØµã£¬ £¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±½«´Ë´Î»î¶¯¹éÒòÓÚ8220 Gang¡£¡£¡£¡£


https://www.fortinet.com/blog/threat-research/old-cyber-gang-uses-new-crypter-scrubcrypt


6¡¢KasperskyÐû²¼2022Äê¸ú×ÙÈí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ


3ÔÂ8ÈÕ£¬ £¬£¬£¬£¬£¬£¬£¬KasperskyÐû²¼ÁË2022Äê¸ú×ÙÈí¼þ£¨Stalkerware£©Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£Êý¾ÝÏÔʾ£¬ £¬£¬£¬£¬£¬£¬£¬2022ÄêÈ«ÇòÓÐ29312¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ï죬 £¬£¬£¬£¬£¬£¬£¬Æ½¾ùÿÔÂÓÐ3333¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ïì¡£¡£¡£¡£¸ú×ÙÈí¼þÈÔÈ»ÊÇÒ»¸öÈ«ÇòÐÔÎÊÌ⣬ £¬£¬£¬£¬£¬£¬£¬Kaspersky¼ì²âµ½176¸ö¹ú¼Ò/µØÇøÊܵ½Ó°Ï죬 £¬£¬£¬£¬£¬£¬£¬ÆäÖжíÂÞ˹£¨8281£©¡¢°ÍÎ÷£¨4969£©ºÍÓ¡¶È£¨1807£©ÊÜÓ°Ïì×îÑÏÖØ¡£¡£¡£¡£2022Äê¼ì²âµ½182ÖÖ²î±ðµÄ¸ú×ÙÈí¼þÓ¦Ó㬠£¬£¬£¬£¬£¬£¬£¬×î³£¼ûµÄÊÇReptilicus£¬ £¬£¬£¬£¬£¬£¬£¬Æä´ÎÊÇCerberusºÍKeyLog¡£¡£¡£¡£


https://securelist.com/the-state-of-stalkerware-in-2022/108985/