À×ŵ¼°´ïÆõÑǿͻ§Êý¾ÝÒòµÚÈý·½Ð¹Â¶ÔâÇÔ

Ðû²¼Ê±¼ä 2025-10-09

1. À×ŵ¼°´ïÆõÑǿͻ§Êý¾ÝÒòµÚÈý·½Ð¹Â¶ÔâÇÔ


10ÔÂ3ÈÕ£¬£¬£¬£¬£¬Ó¢¹úÀ×ŵÓë´ïÆõÑÇ¿ËÈÕÏò¿Í»§·¢³ö֪ͨ£¬£¬£¬£¬£¬³ÆÒòµÚÈý·½¹©Ó¦ÉÌÔâÊÜÍøÂç¹¥»÷£¬£¬£¬£¬£¬µ¼Ö²¿·Ö¿Í»§Ãô¸ÐÐÅϢй¶¡£¡£¡£¡£¡£¡£À×ŵ×÷ΪÄêÓªÊÕ³¬550ÒÚÃÀÔª¡¢ÓµÓÐ17ÍòÃûÔ±¹¤¡¢Äê²úÁ¿220ÍòÁ¾µÄ·¨¹úÆû³µ¾ÞÍ·£¬£¬£¬£¬£¬Æä×Ó¹«Ë¾´ïÆõÑÇÒÔʵ»Ý¿É¿¿µÄ³µÐÍÖøÃû¡£¡£¡£¡£¡£¡£´Ë´ÎÊÂÎñÔ´ÓÚδǩ×ֵĵÚÈý·½¹©Ó¦ÉÌϵͳ±»ÈëÇÖ£¬£¬£¬£¬£¬Ð¹Â¶Êý¾Ý°üÀ¨¿Í»§ÐÕÃû¡¢ÐԱ𡢵绰ºÅÂë¡¢µç×ÓÓʼþ¡¢ÓÊÕþµØµã¡¢³µÁ¾Ê¶ÓÖÃûÂë¼°¹ÒºÅºÅÂëµÈ£¬£¬£¬£¬£¬µ«ÒøÐлò²ÆÎñÐÅϢδÊܲ¨¼°¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÄÜʹÓÃÕâЩÐÅÏ¢¾ÙÐд¹ÂÚ¹¥»÷¡¢Õ©Æ­»òÉç»á¹¤³Ì¹¥»÷¡£¡£¡£¡£¡£¡£À×ŵǿµ÷£¬£¬£¬£¬£¬Ä¿µÄ¹«Ë¾ÒѸôÀëÊÂÎñ²¢É¨³ýÍþв£¬£¬£¬£¬£¬Ó¢¹úÐÅϢרԱ°ì¹«ÊÒ£¨ICO£©µÈÕþ¸®ÒÑ»ñÖªÇéÐΡ£¡£¡£¡£¡£¡£À×ŵÌåÏÖÒòÌõÔ¼ÏÞÖÆÎÞ·¨Í¸Â¶¹©Ó¦ÉÌÐÅÏ¢£¬£¬£¬£¬£¬ÇÒÊÜÓ°Ïì¿Í»§ÊýÄ¿Ôݲ»Ã÷È·¡£¡£¡£¡£¡£¡£À×ŵ½¨ÒéÊÜÓ°Ïì¿Í»§Ð¡ÐÄδÇëÇóµÄµç»°ºÍÓʼþ£¬£¬£¬£¬£¬ÇÐÎð͸¶ÃÜÂë¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/renault-and-dacia-uk-warn-of-data-breach-impacting-customers/


2. ·ðÂÞÀï´ïÒ½ÉúÓ°Ïñ¼¯Íų¬17ÍòÈËÊý¾Ýй¶


10ÔÂ6ÈÕ£¬£¬£¬£¬£¬ÃÀ¹ú·ðÂÞÀï´ïÖÝÒ½ÉúÓ°Ïñ¼¯ÍÅ£¨Doctors Imaging Group£©¿ËÈÕÅû¶һÆð´ó¹æÄ£Êý¾Ýй¶ÊÂÎñ¡£¡£¡£¡£¡£¡£¸Ã¼¯ÍÅÔÚÅÁÀ­ÌØ¿¨ºÍ¸Ç¶÷˹ά¶ûÉèÓÐЧÀÍ´¦µÄ·ÅÉä¿ÆÕïËù£¬£¬£¬£¬£¬ÓÚ2024Äê11ÔÂ5ÈÕÖÁ11ÈÕʱ´úÔâºÚ¿ÍÈëÇÖÍøÂçϵͳ£¬£¬£¬£¬£¬¹¥»÷ÕßÀֳɸ´ÖƲ¿·ÖÎļþ¡£¡£¡£¡£¡£¡£¾­ÓɽüÒ»ÄêµÄÊӲ죬£¬£¬£¬£¬¸Ã»ú¹¹ÓÚ2025Äê8ÔÂÏÂÑ®Íê³ÉÊӲ첢ת´ïÃÀ¹úÎÀÉúÓ빫ÖÚЧÀͲ¿£¨HHS£©£¬£¬£¬£¬£¬È·ÈÏ´Ë´ÎÊÂÎñÓ°ÏìÁè¼Ý17.1ÍòÈË¡£¡£¡£¡£¡£¡£Ð¹Â¶Êý¾Ýº­¸Ç»¼ÕßÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬°üÀ¨ÐÕÃû¡¢µØµã¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢½ðÈÚÕ˺𢲡ÀúºÅ¡¢¿µ½¡°ü¹ÜÐÅÏ¢¼°Ò½ÁÆË÷Åâ¼Í¼µÈ¡£¡£¡£¡£¡£¡£Ö»¹ÜÏÖÔÚÉÐÎÞÖ¤¾ÝÅú×¢ÒøÐлò²ÆÎñÐÅÏ¢±»ÇÔ£¬£¬£¬£¬£¬µ«Éç»áÇå¾²ºÅÂëµÈ½¹µãÉí·ÝÐÅÏ¢µÄй¶£¬£¬£¬£¬£¬ÒÑʹÊÜÓ°ÏìÕßÃæÁÙÉí·Ý͵ÇÔ¡¢½ðÈÚÕ©Æ­¼°¾«×¼Ò½ÁÆÕ©Æ­µÄÖØ´óΣº¦¡£¡£¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬£¬£¬¸ÃÊÂÎñδÃ÷È·ÊÇ·ñÉæ¼°ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬ÒàÎÞÒÑÖªÍøÂç·¸·¨ÍÅ»ïÐû³Æ¶Ô´ËÈÏÕæ¡£¡£¡£¡£¡£¡£Ò½ÉúÓ°Ïñ¼¯ÍÅÔÚ֪ͨÖÐÇ¿µ÷£¬£¬£¬£¬£¬ÒѽÓÄɲ½·¥¸ôÀëÊÜÓ°Ïìϵͳ²¢É¨³ýÍþв£¬£¬£¬£¬£¬µ«ÊÜÏÞÓÚÌõÔ¼Ìõ¿î¼°ÊÓ²ìÏ£Íû£¬£¬£¬£¬£¬ÔÝÎÞ·¨Åû¶ÏêϸÊÜÓ°Ïì¿Í»§ÊýÄ¿¼°ÉæÊµÚÈý·½¹©Ó¦ÉÌÉí·Ý¡£¡£¡£¡£¡£¡£¼¯ÍލÒéÊÜÓ°Ïì¿Í»§Ç×½ü¼à¿ØÐ¡ÎÒ˽¼ÒÕË»§Òì³££¬£¬£¬£¬£¬Ð¡ÐÄ´¹ÂÚÓʼþ¼°Î´ÊÚȨͨѶ£¬£¬£¬£¬£¬²¢°´ÆÚ¸üÐÂÃÜÂë¡£¡£¡£¡£¡£¡£


https://www.securityweek.com/data-breach-at-doctors-imaging-group-impacts-171000-people/


3. Rainwalk³èÎï°ü¹Üй¶158 GBÃÀ¹ú¿Í»§ºÍ³èÎïÊý¾Ý


10ÔÂ6ÈÕ£¬£¬£¬£¬£¬ÄÏ¿¨ÂÞÀ´ÄÉÖݳèÎïЧÀ͹«Ë¾Rainwalk PetÒòÊý¾Ý¿âÉèÖùýʧµ¼Ö´ó¹æÄ£Êý¾Ýй¶£¬£¬£¬£¬£¬ÍøÂçÇå¾²Ñо¿Ô±Jeremiah Fowler·¢Ã÷¸ÃδÉèÃÜÂë±£»£»£»¤»ò¼ÓÃܵÄ158GBÊý¾Ý¿âºó£¬£¬£¬£¬£¬Í¨¹ýWebsite Planet֤ʵÊÂÎñÕæÊµÐÔ¡£¡£¡£¡£¡£¡£´Ë´ÎÐ¹Â¶Éæ¼°Ô¼8.5Íò·ÝÎļþ£¬£¬£¬£¬£¬°üÀ¨³èÎï°ü¹ÜË÷Åâ¡¢ÊÞÒ½Õ˵¥µÈÃô¸Ð¼Í¼£¬£¬£¬£¬£¬Ïêϸ̻¶¿Í»§ÐÕÃû¡¢µç»°¡¢µØµã¡¢ÓÊÏä¼°²¿·ÖÐÅÓÿ¨ºÅ£¬£¬£¬£¬£¬ÒÔ¼°³èÎïÐÕÃû¡¢Æ·ÖÖ¡¢²¡Ê·¡¢Ð¾Æ¬ºÅÂëµÈÉî¶ÈÐÅÏ¢¡£¡£¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬£¬£¬Êý¾Ý¿âÔÚ±»Çå¾²¼Ó¹ÌÇ°ÔøÒ»Á¬¿É»á¼û½üÒ»¸öÔ£¬£¬£¬£¬£¬ÏÖʵ̻¶ʱ³¤¼°ÊÇ·ñÔâ¶ñÒâ»á¼ûÈÔ´ý²éÖ¤¡£¡£¡£¡£¡£¡£´Ë´ÎÊÂÎñ͹ÏÔ³èÎïÊý¾ÝÓëСÎÒ˽¼ÒÉí·ÝÐÅÏ¢£¨PII£©¹ØÁªºóµÄ¸ßΣº¦ÐÔ£¬£¬£¬£¬£¬³èÎïÐÅϢȱ·¦Ö±½ÓÖ´·¨±£»£»£»¤£¬£¬£¬£¬£¬µ«µ±ÓëPII½áÊÊʱ£¬£¬£¬£¬£¬È´³ÉÎªÍøÂç·¸·¨·Ö×ÓÑÛÖеġ°¸ß¼ÛֵĿµÄ¡±¡£¡£¡£¡£¡£¡£ÀýÈ磬£¬£¬£¬£¬·¸·¨·Ö×Ó¿ÉʹÓÃй¶µÄ΢оƬºÅÂë·¢ËÍ¡°Ðø·Ñ¡±Õ©Æ­Óʼþ£¬£¬£¬£¬£¬»òͨ¹ýαÔìÊÞÒ½Õ˵¥ÊµÑ龫׼ڲƭ£»£»£»°ü¹Ü¹«Ë¾ÒàÃæÁÙÐéαË÷Åâµ¼ÖµIJÆÎñËðʧΣº¦¡£¡£¡£¡£¡£¡£¸üÑÏËàµÄÊÇ£¬£¬£¬£¬£¬Rainwalk PetÔø½¨Òé¿Í»§Í¨¹ý·¢ËͶþάÂëÖÁVenmo»ñÈ¡Í˿£¬£¬£¬£¬ÕâÒ»Á÷³Ì±£´æ±»·¸·¨·Ö×Ó½ØÁô¸¶¿îµÄΣº¦¡£¡£¡£¡£¡£¡£


https://hackread.com/rainwalk-pet-insurance-158-gb-customer-pet-data/


4. ÷è÷ëÀÕË÷Èí¼þ¹¥»÷÷¿ËÂ×±¤Ïع«Á¢Ñ§Ð£


10ÔÂ7ÈÕ£¬£¬£¬£¬£¬¿ËÈÕ£¬£¬£¬£¬£¬¶íÂÞË¹ÍøÂç·¸·¨×éÖ¯÷è÷ëÐû³Æ¶Ô¸¥¼ªÄáÑÇÖÝ÷¿ËÂ×±¤Ïع«Á¢Ñ§Ð££¨MCPS£©µÄÀÕË÷Èí¼þ¹¥»÷ÈÏÕæ¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñµ¼ÖÂѧУÔËÓªÑÏÖØÊÜ×裬£¬£¬£¬£¬Î÷ϯ±»ÆÈʹÓÃÖ½±ÊºÍ°×°å½Ìѧ£¬£¬£¬£¬£¬»¥ÁªÍøÏµÍ³ÖÐÖ¹Ò»Öܺó»Ö¸´¡£¡£¡£¡£¡£¡£÷è÷ëÉù³ÆÇÔÈ¡ÁË305GBÃô¸ÐÊý¾Ý£¬£¬£¬£¬£¬º­¸Ç²ÆÎñ¼Í¼¡¢²¦¿îÎļþ¡¢Ô¤Ëã¼°¶ùͯҽÁƵµ°¸£¬£¬£¬£¬£¬²¢Ðû²¼Ñù±¾Í¼Æ¬×ôÖ¤¡£¡£¡£¡£¡£¡£Ñ§ÇøÈÏÕæÈË˹¿ÆÌØ¡¤ÎÖÄÉ֤ʵ¹¥»÷ÕßÉí·Ý£¬£¬£¬£¬£¬µ«Ã÷È·ÌåÏÖ¡°²»ÍýÏëÖ§¸¶Êê½ð¡±£¬£¬£¬£¬£¬×îÖÕ¾öÒ齫ȡ¾öÓÚÊÓ²ìЧ¹û¼°Îļþ¼ÓÃÜ/й¶Ö鯽¡£¡£¡£¡£¡£¡£÷è÷ë×éÖ¯×Ô2022Äêµ×ÒÔ¡°ÀÕË÷Èí¼þ¼´Ð§ÀÍ£¨RaaS£©¡±Ä£Ê½ÔËÓª£¬£¬£¬£¬£¬Í¨¹ý´¹ÂÚÓʼþÈö²¥¶ñÒâÈí¼þ£¬£¬£¬£¬£¬Á¥Êô³ÉÔ±Åó·ÖÊê½ð¡£¡£¡£¡£¡£¡£2025Ä꣬£¬£¬£¬£¬¸Ã×éÖ¯ÒÑÐû³Æ¶Ô103ÆðÈ·ÈÏÊÂÎñºÍ470Æðδ¾­Ö¤ÊµÊÂÎñÈÏÕæ£¬£¬£¬£¬£¬½ÌÓý»ú×é³ÉΪÖ÷ҪĿµÄ¡£¡£¡£¡£¡£¡£³ýMCPSÍ⣬£¬£¬£¬£¬Î÷ÐÂÄ«Î÷¸ç´óѧ¡¢²©ÌØÍÐÌØÏØ¹«Á¢Ñ§Ð£µÈÒ²Ôâ¹¥»÷¡£¡£¡£¡£¡£¡£


https://www.infosecurity-magazine.com/news/qilin-ransomware-mecklenburg/


5. µç×Ó¾ÞÍ·°²¸»ÀûÈ·ÈÏÊý¾Ýй¶£¬£¬£¬£¬£¬±»µÁÊý¾ÝÎÞ·¨¶ÁÈ¡


10ÔÂ7ÈÕ£¬£¬£¬£¬£¬µç×ÓÔª¼þ·ÖÏúḚ́²¸»Àû¿ËÈÕ֤ʵÔâÓöÊý¾Ýй¶£¬£¬£¬£¬£¬µ«Ç¿µ÷ÆäרÓÐÏúÊÛ¹¤¾ßδÊÜÓ°Ï죬£¬£¬£¬£¬ÇÒδ¾­¸Ã¹¤¾ßÎÞ·¨¶ÁÈ¡´ó²¿·Ö±»µÁÊý¾Ý¡£¡£¡£¡£¡£¡£ÊÂÎñÔ´ÓÚÍⲿÍйÜÔÆ´æ´¢ÔâδÊÚȨ»á¼û£¬£¬£¬£¬£¬¸Ã´æ´¢Ö§³ÖEMEA£¨Å·ÖÞ¡¢Öж«¡¢·ÇÖÞ£©µØÇøÄÚ²¿ÏúÊÛ¹¤¾ß¡£¡£¡£¡£¡£¡£ÍþвÐÐΪÕßÐû³ÆÇÔÈ¡1.3TBѹËõÊý¾Ý£¨Ï൱ÓÚ7-12TBԭʼÊý¾Ý£©£¬£¬£¬£¬£¬º­¸ÇEMEA¼°ÆäËûµØÇøÔËӪϸ½Ú£¬£¬£¬£¬£¬°üÀ¨ÀúÊ·ÏúÊÛµã¼Í¼¡¢Ç±ÔÚÏúÊÛʱ»ú¡¢¿Í»§ÁªÏµ·½·¨£¨ÈçÔ±¹¤ÓÊÏ䣩¼°²¿·ÖСÎÒ˽¼ÒÉí·ÝÐÅÏ¢£¨PII£©¡£¡£¡£¡£¡£¡£°²¸»ÀûÖ¸³ö£¬£¬£¬£¬£¬ÈôÊý¾ÝÊôGDPR½ç˵µÄÃô¸ÐÐÅÏ¢Ôòδй¶£¬£¬£¬£¬£¬´¿Îı¾Ñù±¾ÒÑ֤ʵ±£´æPII£¬£¬£¬£¬£¬µ«ÕûÌåÓ°ÏìÓÐÏÞ¡£¡£¡£¡£¡£¡£°²¸»ÀûÓÚ9ÔÂ26ÈÕ·¢Ã÷Îó²îºó£¬£¬£¬£¬£¬Ñ¸ËÙÔÚAzure/DatabricksÇéÐÎÖÐÂÖ»»ËùÓÐÉñÃØ£¬£¬£¬£¬£¬µ±ÍíÍê³É²Ù×÷ÇÒδ·¢Ã÷ºóÐøÎ´ÊÚȨ»î¶¯¡£¡£¡£¡£¡£¡£ÊÂÎñ½öÏÞEMEAµØÇøµ¥¸öϵͳ£¬£¬£¬£¬£¬Î´ÈÅÂÒÈ«ÇòÔËÓª¡£¡£¡£¡£¡£¡£ºÚ¿ÍÔÚ°µÍø½¨ÉèйÃÜÍøÕ¾£¬£¬£¬£¬£¬Ðû²¼Ñù±¾Ê©Ñ¹Êê½ðÖ§¸¶£¬£¬£¬£¬£¬°²¸»ÀûÃ÷È·¾Ü¾ø²¢Ç¿µ÷¡°¾­¼ÃÀûÒæÇý¶¯¡±µÄ¹¥»÷ÐÔ×Ó¡£¡£¡£¡£¡£¡£¹«Ë¾ÒÑÏòî¿Ïµ²¿·Öת´ï£¬£¬£¬£¬£¬²¢½«Ö±½ÓÁªÏµÊÜÓ°Ïì¿Í»§ºÍ¹©Ó¦ÉÌ£¬£¬£¬£¬£¬µ«ÊÜÓ°ÏìÈËÊýÉв»Ã÷È·¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/electronics-giant-avnet-confirms-breach-says-stolen-data-unreadable/


6. ClopÍÅ»ïʹÓÃOracle EBSÁãÈÕÎó²îÌᳫÊý¾Ý͵ÇÔ¹¥»÷


10ÔÂ7ÈÕ£¬£¬£¬£¬£¬¾ÝÍøÂçÇå¾²¹«Ë¾CrowdStrikeÅû¶£¬£¬£¬£¬£¬ClopÀÕË÷Èí¼þÍÅ»ï×Ô2025Äê8Ô³õÆð£¬£¬£¬£¬£¬Ò»Á¬Ê¹ÓÃOracleµç×ÓÉÌÎñÌ×¼þ£¨EBS£©µÄÒªº¦ÁãÈÕÎó²îCVE-2025-61882ʵÑéÊý¾Ý͵ÇÔ¹¥»÷¡£¡£¡£¡£¡£¡£¸ÃÎó²îλÓÚEBS²¢·¢´¦Öóͷ£×é¼þµÄBI Publisher IntegrationÄ£¿£¿£¿é£¬£¬£¬£¬£¬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õßͨ¹ýµ¥¸öHTTPÇëÇóʵÏÖÔ¶³Ì´úÂëÖ´ÐУ¬£¬£¬£¬£¬ÎÞÐèÓû§½»»¥ÇÒ¹¥»÷ÖØÆ¯ºóµÍ¡£¡£¡£¡£¡£¡£OracleÒÑÓÚÖÜÄ©Ðû²¼²¹¶¡ÐÞ¸´´ËÎó²î£¬£¬£¬£¬£¬µ«Îó²îÁ´ÌØÕ÷ʹÆäÈԾ߸ßΣÐÔ¡£¡£¡£¡£¡£¡£CrowdStrikeÆÀ¹ÀÒÔΪ£¬£¬£¬£¬£¬³ýClopÍ⣬£¬£¬£¬£¬Íþв×éÖ¯Graceful Spider¿ÉÄÜÒ²¼ÓÈëÁ˹¥»÷£¬£¬£¬£¬£¬ÇÒ²»É¨³ýÆäËûÊìϤOracle EBSµÄÍþвÐÐΪÕß¼ÓÈë¡£¡£¡£¡£¡£¡£Ê×´ÎÒÑÖª¹¥»÷±¬·¢ÓÚ8ÔÂ9ÈÕ£¬£¬£¬£¬£¬µ«ÊÓ²ìÈÔÔÚ¾ÙÐÐÖС£¡£¡£¡£¡£¡£10ÔÂ3ÈÕÎó²î¿´·¨ÑéÖ¤£¨PoC£©Åû¶ºó£¬£¬£¬£¬£¬ÍþвÐÐΪÕß¿ÉÄܼÓËÙ¿ª·¢ÎäÆ÷»¯PoC£¬£¬£¬£¬£¬Õë¶Ô̻¶ÔÚ»¥ÁªÍøµÄEBSÓ¦ÓÃÌᳫ¹¥»÷¡£¡£¡£¡£¡£¡£OracleÒѽôÆÈ±Þ²ß¿Í»§ÓÅÏÈÐÞ²¹Îó²î£¬£¬£¬£¬£¬Ç¿µ÷Ò»Á¬Ê¹ÓÃÊÜÖ§³Ö°æ±¾²¢Á¬Ã¦Ó¦ÓÃÇå¾²¸üС£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/oracle-zero-day-exploited-in-clop-data-theft-attacks-since-early-august/