AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶

Ðû²¼Ê±¼ä 2023-03-10

1¡¢AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶


¾Ý3ÔÂ9ÈÕ±¨µÀ£¬ £¬£¬£¬£¬£¬£¬AT&T֪ͨԼ900Íò¿Í»§ÆäÐÅÏ¢ÒѾ­Ð¹Â¶£¬ £¬£¬£¬£¬£¬£¬ÓÉÓÚËüµÄÒ»¼ÒÓªÏú¹©Ó¦ÉÌÔÚ1Ô·ÝÔâµ½Á˺ڿ͹¥»÷¡£¡£¡£¡£¡£Ð¹Â¶Êý¾Ý°üÀ¨¿Í»§ÐÕÃû¡¢ÎÞÏßÕʺš¢ÎÞÏߵ绰ºÅÂëºÍÓʼþµØµãµÈ£¬ £¬£¬£¬£¬£¬£¬ÒÔ¼°²¿·Ö¿Í»§µÄÎÞÏß·ÑÂÊÍýÏë¡¢ÓâÆÚ½ð¶îºÍ¸¶¿î½ð¶îµÈ¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ôö²¹Ëµ£¬ £¬£¬£¬£¬£¬£¬Æäϵͳ²¢Î´ÊÜÓ°Ï죬 £¬£¬£¬£¬£¬£¬Ð¹Â¶Êý¾ÝÖ÷ÒªÓë×°±¸Éý¼¶×ʸñÓйØ¡£¡£¡£¡£¡£AT&T¾Ü¾øÍ¸Â¶¹©Ó¦É̵ÄÉí·Ý£¬ £¬£¬£¬£¬£¬£¬µ«The RegisterÌåÏÖ£¬ £¬£¬£¬£¬£¬£¬µç×ÓÓʼþÓªÏú¹«Ë¾MailchimpÔÚ1Ô·ÝÔøÔâµ½¹¥»÷£¬ £¬£¬£¬£¬£¬£¬¹¥»÷Õß»ñµÃÁË100¶à¸ö¿Í»§ÕÊ»§µÄ»á¼ûȨÏÞ¡£¡£¡£¡£¡£


https://www.theregister.com/2023/03/09/att_wireless_breach/


2¡¢Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£Ñ§Çø±»MedusaÀÕË÷100ÍòÃÀÔª


ýÌå3ÔÂ8Èճƣ¬ £¬£¬£¬£¬£¬£¬Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£(MPS)Ñ§Çø±»MedusaÍÅ»ïÀÕË÷100ÍòÃÀÔª¡£¡£¡£¡£¡£¸ÃÍŻォMPSÌí¼Óµ½ÆäTorÍøÕ¾ÉÏ£¬ £¬£¬£¬£¬£¬£¬²¢ÍþвҪÔÚ3ÔÂ17ÈÕ֮ǰÐû²¼´Ó¸ÃÑ§ÇøÇÔÈ¡µÄËùÓÐÊý¾Ý¡£¡£¡£¡£¡£¸ÃÊÂÎñÖ®ÒÔÊÇÒýÈËעĿ£¬ £¬£¬£¬£¬£¬£¬ÊÇÓÉÓÚ¹¥»÷ÕßÖÆ×÷ÁËÒ»¶Îʱ³¤Ô¼51·ÖÖÓµÄÊÓÆµ£¬ £¬£¬£¬£¬£¬£¬ÏÔʾ´ÓMPSÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£¡£MPSÖÎÀí×ÅÔ¼100Ëù¹«Á¢ÖÐСѧ£¬ £¬£¬£¬£¬£¬£¬ËüÓÚ3ÔÂ1ÈÕÐû²¼Í¨¸æ£¬ £¬£¬£¬£¬£¬£¬Í¸Â¶Æä2ÔÂ21ÈÕÔâµ½¹¥»÷µ¼ÖÂϵͳÖÐÖ¹¡£¡£¡£¡£¡£¸Ã×éÖ¯»¹ÌåÏÖ£¬ £¬£¬£¬£¬£¬£¬Ëü²»ÍýÏ븶Êê½ð£¬ £¬£¬£¬£¬£¬£¬¶øÊÇÑ¡ÔñʹÓÃÄÚ²¿±¸·Ý»Ö¸´±»¼ÓÃܵÄÊý¾Ý¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/ransomware-gang-posts-video-of-data-stolen-from-minneapolis-schools/


3¡¢Ó¡¶ÈHDFC Bank×Ó¹«Ë¾Áè¼Ý7200ÍòÌõ¼Í¼±»Ðû²¼ÔÚ°µÍø


¾ÝýÌå3ÔÂ8ÈÕ±¨µÀ£¬ £¬£¬£¬£¬£¬£¬ºÚ¿ÍKernelwareÔÚ°µÍøBreached forumÉÏÐû²¼ÁËHDB Financial ServicesÔ¼7.5 GBµÄ¿Í»§Êý¾Ý¡£¡£¡£¡£¡£HDB Financial ServicesÊÇÓ¡¶È×î´óµÄ˽ÈËÒøÐÐHDFC BankµÄ×Ó¹«Ë¾¡£¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢°üÀ¨Áè¼Ý7200ÍòÌõ¼Í¼£¬ £¬£¬£¬£¬£¬£¬Éæ¼°2022Äê5ÔÂÖÁ2023Äê2ÔÂÉêÇë´û¿îµÄHDBÏûºÄÕß¡£¡£¡£¡£¡£HDFC Bank·ñ¶¨ÁËÊý¾Ýй¶ÊÂÎñ£¬ £¬£¬£¬£¬£¬£¬µ«HDB FinancialÒÑÈ·Èϲ¢ÔÚÊÓ²ì¸ÃÇå¾²ÊÂÎñ¡£¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬ £¬£¬£¬£¬£¬£¬Kernelware¾ÍÊÇй¶ÁËAcerÔ¼160GBÊý¾ÝµÄºÚ¿Í¡£¡£¡£¡£¡£


https://www.hackread.com/hackers-india-hdfc-bank-data-leak/


4¡¢VeeamÐÞ¸´Ó°ÏìÆäËùÓÐVBR°æ±¾µÄÎó²îCVE-2023-27532


3ÔÂ8ÈÕ±¨µÀ³Æ£¬ £¬£¬£¬£¬£¬£¬VeeamÐû²¼¸üУ¬ £¬£¬£¬£¬£¬£¬ÐÞ¸´ÆäBackup & Replication²úÆ·ÖеÄÎó²îCVE-2023-27532¡£¡£¡£¡£¡£Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÔÚ»ñÈ¡´æ´¢ÔÚVeeamVBRÉèÖÃÊý¾Ý¿âÖеļÓÃÜÆ¾Ö¤ºó£¬ £¬£¬£¬£¬£¬£¬Ê¹ÓÃËü»á¼û±¸·Ý»ù´¡¼Ü¹¹Ö÷»ú¡£¡£¡£¡£¡£Æ¾Ö¤Veeamͨ¸æ£¬ £¬£¬£¬£¬£¬£¬¸ÃÎó²î»ù´¡Ôµ¹ÊÔ­ÓÉÊÇVeeam.Backup.Service.exe£¨Ä¬ÈÏÇéÐÎÏÂÔÚTCP 9401ÉÏÔËÐУ©¿É±»Î´¾­Éí·ÝÑéÖ¤µÄÓû§ÓÃÀ´ÇëÇó¼ÓÃÜÆ¾Ö¤¡£¡£¡£¡£¡£Veeam»¹ÌṩÁËÔÝʱÐÞ¸´ÒªÁ죬 £¬£¬£¬£¬£¬£¬Ê¹Óñ¸·ÝЧÀÍÆ÷·À»ðǽ×èÖ¹Óë¶Ë¿ÚTCP 9401µÄÍⲿÅþÁ¬¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/veeam-fixes-bug-that-lets-hackers-breach-backup-infrastructure/


5¡¢FortinetÅû¶8220 GangʹÓÃScrubCryptµÄ¹¥»÷»î¶¯


FortinetÔÚ3ÔÂ8ÈÕÅû¶ÁË8220 Gang×î½üµÄ¼ÓÃÜÐ®ÖÆ¹¥»÷¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ2023Äê1ÔÂÖÁ2Ô£¬ £¬£¬£¬£¬£¬£¬¹¥»÷Á´Ê¼ÓÚÀÖ³ÉʹÓÃÒ×±»¹¥»÷µÄOracle WebLogic ServerÏÂÔØ°üÀ¨ScrubCryptµÄPowerShell¾ç±¾¡£¡£¡£¡£¡£PowerShell¾ç±¾ÒѾ­ÓɱàÂ룬 £¬£¬£¬£¬£¬£¬À´ÈƹýÇå¾²¼Æ»®µÄ¼ì²â¡£¡£¡£¡£¡£ScrubCrypt¼ÓÃÜÆ÷ÔÚºÚ¿ÍÂÛ̳ÉÏÓÐÊÛ£¬ £¬£¬£¬£¬£¬£¬¿ÉʹÓÃÆæÒìµÄBAT´ò°üÒªÁì±£»£»£»£»£»¤Ó¦ÓóÌÐò¡£¡£¡£¡£¡£»£»£»£»£»ùÓڻÖÐʹÓõļÓÃÜÇ®°üµØµãºÍMonero¿ó¹¤Ê¹ÓõÄЧÀÍÆ÷IPµØµã£¬ £¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±½«´Ë´Î»î¶¯¹éÒòÓÚ8220 Gang¡£¡£¡£¡£¡£


https://www.fortinet.com/blog/threat-research/old-cyber-gang-uses-new-crypter-scrubcrypt


6¡¢KasperskyÐû²¼2022Äê¸ú×ÙÈí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ


3ÔÂ8ÈÕ£¬ £¬£¬£¬£¬£¬£¬KasperskyÐû²¼ÁË2022Äê¸ú×ÙÈí¼þ£¨Stalkerware£©Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£Êý¾ÝÏÔʾ£¬ £¬£¬£¬£¬£¬£¬2022ÄêÈ«ÇòÓÐ29312¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ï죬 £¬£¬£¬£¬£¬£¬Æ½¾ùÿÔÂÓÐ3333¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ïì¡£¡£¡£¡£¡£¸ú×ÙÈí¼þÈÔÈ»ÊÇÒ»¸öÈ«ÇòÐÔÎÊÌ⣬ £¬£¬£¬£¬£¬£¬Kaspersky¼ì²âµ½176¸ö¹ú¼Ò/µØÇøÊܵ½Ó°Ï죬 £¬£¬£¬£¬£¬£¬ÆäÖжíÂÞ˹£¨8281£©¡¢°ÍÎ÷£¨4969£©ºÍÓ¡¶È£¨1807£©ÊÜÓ°Ïì×îÑÏÖØ¡£¡£¡£¡£¡£2022Äê¼ì²âµ½182ÖÖ²î±ðµÄ¸ú×ÙÈí¼þÓ¦Ó㬠£¬£¬£¬£¬£¬£¬×î³£¼ûµÄÊÇReptilicus£¬ £¬£¬£¬£¬£¬£¬Æä´ÎÊÇCerberusºÍKeyLog¡£¡£¡£¡£¡£


https://securelist.com/the-state-of-stalkerware-in-2022/108985/