NitroRansomwareÒªÇóʹÓÃDiscord NitroÀñÎïÖ§¸¶Êê½ð£»ÃÀ¹úÖÆ²Ã28¸öÓë¶íÂÞ˹¹¥»÷Ô˶¯ÓйصļÓÃÜÇ®±ÒµØµã

Ðû²¼Ê±¼ä 2021-04-20

1.NitroRansomwareÒªÇóʹÓÃDiscord NitroÀñÎïÖ§¸¶Êê½ð


1.jpg


ÃûΪNitroRansomwareµÄÐÂÀÕË÷Èí¼þÒªÇóÊܺ¦ÕßʹÓÃDiscord NitroÀñÎï´úÂë×÷ΪÊê½ð¡£¸ÃÀÕË÷Èí¼þαװ³É¿ÉÒÔÌìÉúÃâ·ÑNitroÀñÎï´úÂëµÄÓ¦Ó㬻á¼ÓÃÜÊܺ¦ÕßÎļþ²¢Ìí¼Ó.givemenitroÀ©Õ¹Ãû£¬È»ºó½«Æä×ÀÃæ¸ÄΪÉúÆøµÄDiscord±ê¼Ç¡£Ö®ºó£¬ÆäÒªÇóÊܺ¦ÕßÔÚÈý¸öСʱÄÚÌṩÃâ·ÑµÄNitroÀñÎï´úÂ룬²»È»½«É¾³ýÊܺ¦ÕߵļÓÃÜÎļþ¡£DiscordµÄ¸½¼Ó³ÌÐòNitroÐèÿÔÂÆÆ·Ñ9.9ÃÀÔª¶©ÔÄ£¬¹ºÖÃʱ¿ÉÒÔ×ÔÓÃÒ²¿ÉÒÔ×÷ΪÀñÎïÔùÓèËûÈË¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/discord-nitro-gift-codes-now-demanded-as-ransomware-payments/


2.ÃÀ¹úÖÆ²Ã28¸öÓë¶íÂÞ˹¹¥»÷Ô˶¯ÓйصļÓÃÜÇ®±ÒµØµã


2.jpg


ÃÀ¹úÕþ¸®ÔÚ±¾ÖÜÖÆ²ÃÁË28¸ö¼ÓÃÜÇ®±ÒµØµã£¬¾Ý³ÆÕâЩµØµãÓëÉæ¼°¶íÂÞË¹ÍøÂç¹¥»÷»ò×ÌÈÅÑ¡¾ÙÔ˶¯µÄ×éÖ¯ºÍСÎÒ˽¼ÒÓйØ¡£ÃÀ¹úÕþ¸®»¹ÌåÏÖ£¬ÕâЩÔ˶¯ÊÇÓɶíÂÞ˹Áª°îÇå¾²¾Ö£¨FSB£©ºÍ¶íÂÞ˹Ö÷ÒªÇ鱨¾Ö£¨GRU£©¿ªÕ¹µÄ£¬²¢ÇÒÒѾ­»ñµÃÁËÁù¼ÒÓë¶íÂÞ˹ÓÐÏàÖúµÄ¹«Ë¾µÄ×ÊÖú¡£±ðµÄ£¬ÃûΪSESµÄ°Í»ù˹̹¹«Ë¾Ïò»¥ÁªÍøÑо¿»ú¹¹(IRA)ÌṩÐéαÉí·ÝÀ´ÌÓ±ÜÃÀ¹úµÄÖÆ²Ã£¬Æä¼ÓÃÜÇ®±ÒµØµãÒÑͨ¹ý26900±ÊÉúÒâÊÕµ½Á˼ÛÖµÁè¼Ý250ÍòÃÀÔªµÄÊý×ÖÇ®±Ò¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-sanctions-cryptocurrency-addresses-linked-to-russian-cyberactivities/


3.FireEyeµÄÍŶÓÑÝʾÔõÑùÆÆ½âÓ¦Óò¢Ð®ÖÆÖÇÄܵç±í


3.png


FireEyeµÄMandiantÍŶÓÑÝʾÁËÔõÑùÉøÍ¸µ½±±ÃÀµÄ¹«ÓÃÊÂÒµÍøÂç²¢ÈëÇÖÆä¹¤Òµ¿ØÖÆÏµÍ³£¬À´Ð®ÖÆÆäÖÇÄܵç±í¡£ÔÚ¹¥»÷µÄµÚÒ»½×¶Î£¬MandiantÍŶӽÓÄÉÁËTEMP.VelesÔÚTRITON¹¥»÷ʱ´úʹÓõÄÊÖÒÕÀ´ÆÆËðOTÍøÂ硣ʵÏÖÁ˶ÔÊÂÇéÕ¾µÄ¿ØÖƺóʹÓÿªÔ´¹¥»÷ÐÔÇå¾²¹¤¾ß£¨OST£©À´»ñµÃÓòÖÎÀíԱȨÏÞ£¬×îºó·¢³ö¶Ï¿ªÖÇÄܵç±íµÄÏÂÁî¡£¶àÄêÀ´£¬È«Çò¹¤Òµ×é֯ʹÓõÄICS/SCADAϵͳÊܵ½µÄ¹¥»÷ÊýĿѸËÙÔöÌí£¬ÆäÖÐ×îÑÏÖØµÄÊÇ2015ÄêÊǶÔÎÚ¿ËÀ¼µçÍøµÄ¹¥»÷ºÍ2017ÄêTriton¶ÔÉ³ÌØÊ¯»¯³§µÄ¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/117001/ics-scada/ot-network-hack-smart-meters.html


4.°ÍÎ÷¹ú¼ÒͼÊé¹ÝÁ¬ÔâÁ½´ÎÀÕË÷Èí¼þ¹¥»÷£¬Êý¾Ýй¶


4.jpg


°ÍÎ÷¹ú¼ÒͼÊé¹ÝÁ¬ÔâÁ½´ÎÀÕË÷Èí¼þ¹¥»÷£¬²¿·ÖÊý¾Ýй¶¡£µÚÒ»´Î¹¥»÷±¬·¢ÔÚÖÜÈÕ£¨4ÔÂ11ÈÕ£©£¬°ÍÎ÷¹ú¼ÒͼÊé¹ÝÔÚ·¢Ã÷¹¥»÷ºóÁ¬Ã¦¹Ø±ÕÁË·þÎñÆ÷£¬ÒÔ±ÜÃâ¶ñÒâÈí¼þµÄÈö²¥ºÍÐµĹ¥»÷¡£¿ÉÊÇ£¬ÉÏÖܶþ£¨4ÔÂ13ÈÕ£©¸ÃÍøÕ¾Ôٴα»¼¤»î²¢Ôâµ½Á˵ڶþ´Î¹¥»÷£¬²¢±»¼û¸æ²¿·ÖÊý¾ÝÒѱ»ÇÔÈ¡¡£ÏÖÔÚ£¬¸ÃͼÊé¹ÝÒѽ«´ËÊÂ֪ͨÕþ¸®×éÖ¯£¬²¢ÍŽáÇå¾²°ì¹«ÊÒ¶Ô´ËÊÂÕö¿ªÁËÊӲ졣


Ô­ÎÄÁ´½Ó£º

https://olhardigital.com.br/en/2021/04/16/safety/national-library-website-victim-ransomware-attack/


5.McAfeeÐû²¼2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ


5.jpg


McAfeeÐû²¼ÁË2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£±¨¸æ³Æ£¬2020ÄêQ4ƽ¾ùÿ·ÖÖӿɼì²âµ½648¸öÍþв£¬±ÈQ3ÔöÌíÁË10£¥£¬±ÈQ2ÔöÌíÁË40£¥£¬Ê¼ÖÕ³ÊÒ»Á¬ÉÏÉýÇ÷ÊÆ¡£±¨¸æ»¹Ö¸³ö2020ÄêϰëÄêÔÚÒ°Íâ·¢Ã÷µÄ¹¥»÷ÊýÄ¿¼¤ÔöµÄÖ÷ÒªÔµ¹ÊÔ­ÓÉÊÇÒÔCOVIDΪÖ÷ÌâµÄ¹¥»÷ºÍPowerShellľÂíµÄ¼¤Ôö£¬ÒÔ¼°SolarWindsÎó²îºÍSunburst¶ñÒâÈí¼þµÄÒ»Á¬ÉìÕÅ¡£Ïà±ÈÓÚQ3 £¬Q4µÄPowerShellÊýÄ¿ÔöÌíÁË208%£¬Õë¶ÔofficeµÄ¶ñÒâÈí¼þÊýÄ¿ÔöÌíÁË199%¡£


Ô­ÎÄÁ´½Ó£º

https://www.mcafee.com/enterprise/en-us/lp/threats-reports/apr-2021.html


6.Check PointÐû²¼2020ÄêÒÆ¶¯Çå¾²µÄÆÊÎö±¨¸æ


6.jpg


Check Point ResearchÐû²¼ÁË2020ÄêÒÆ¶¯Çå¾²µÄÆÊÎö±¨¸æ¡£¸Ã±¨¸æÊ×´Î½ÒÆÆÁËÕë¶ÔÆóÒµÒÆ¶¯×°±¸µÄ×îÐÂÍþв£¬´Ó¶ñÒâÓ¦Óõ½ÀÕË÷Èí¼þ¹¥»÷£¬ÒÔ¼°Ê¹ÓÃÆóÒµÒÆ¶¯×°±¸ÖÎÀíµÄ¹¥»÷¡£±¨¸æÖ¸³ö£¬2020Ä꣬97%µÄ×éÖ¯ÃæÁÙʹÓÃÁ˶àÖÖ¹¥»÷ǰÑÔµÄÒÆ¶¯Çå¾²Íþв£»46%µÄ×éÖ¯ÖÐÓÐÖÁÉÙÒ»ÃûÔ±¹¤ÏÂÔØÁ˶ñÒâµÄÒÆ¶¯Ó¦ÓóÌÐò£»È«ÇòÖÁÉÙÓÐ40%µÄÒÆ¶¯×°±¸×Ô¼º¾ÍÈÝÒ×Êܵ½ÍøÂç¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://pages.checkpoint.com/mobile-security-report-2021.html