ÐŰ²±êίÐû²¼¡¶»¥ÁªÍøÆ½Ì¨¼°²úÆ··þÎñÒþ˽ЭÒéÒªÇó¡·µÄÕ÷ÇóÒâ¼û¸å

Ðû²¼Ê±¼ä 2022-06-01
1¡¢ÐŰ²±êίÐû²¼¡¶»¥ÁªÍøÆ½Ì¨¼°²úÆ··þÎñÒþ˽ЭÒéÒªÇó¡·µÄÕ÷ÇóÒâ¼û¸å


5ÔÂ26ÈÕ £¬ÌìÏÂÐÅÏ¢Çå¾²±ê×¼»¯ÊÖÒÕίԱ»áÐû²¼ÁË¡¶ÐÅÏ¢Çå¾²ÊÖÒÕ »¥ÁªÍøÆ½Ì¨¼°²úÆ··þÎñÒþ˽ЭÒéÒªÇó¡·µÄÕ÷ÇóÒâ¼û¸å¡£¸ÃÒªÇó»®¶¨ÁË»¥ÁªÍøÆ½Ì¨¼°²úÆ··þÎñÒþ˽ЭÒéÌåÀý³ÌÐò¡¢ÏêϸÄÚÈÝ¡¢Ðû²¼ÐÎʽ £¬ÔöÌíÒþ˽ЭÒéµÄ¿É¶ÁÐÔ¡¢Í¸Ã÷ÐÔ £¬ÒÔ¼°´¦Öóͷ£Òþ˽ЭÒéÏà¹ØµÄÕùÒé¾À·×µÈ·½ÃæµÄÒªÇó¡£ÊÊÓÃÓڹ淶СÎÒ˽¼ÒÐÅÏ¢´¦Öóͷ£ÕßÖÆ¶©¡¢Ðû²¼Òþ˽ЭÒéµÄÀú³Ì £¬Ò²ÊÊÓÃÓÚÖ÷¹Üî¿Ïµ²¿·Ö¡¢µÚÈý·½ÆÀ¹À»ú¹¹µÈ¶ÔÒþ˽ЭÒé¾ÙÐмàÊÓ¡¢ÖÎÀíºÍÆÀ¹À¡£Òâ¼û¿ÉÓÚ½ñÄê7ÔÂ25ÈÕǰ·´Ïìµ½ÐŰ²±êÎ¯ÃØÊé´¦¡£


https://www.tc260.org.cn/front/postDetail.html?id=20220526180528


2¡¢¸ç˹´ïÀè¼ÓµÄ¹«¹²ÎÀÉúϵͳÔâµ½HiveÍÅ»ïµÄÀÕË÷¹¥»÷


¾ÝýÌ屨µÀ £¬5ÔÂ31ÈÕÔçÉÏ £¬¸ç˹´ïÀè¼Ó¹«¹²ÎÀÉú·þÎñ»ú¹¹£¨³ÆÎª¸ç˹´ïÀè¼ÓÉç»á°ü¹Ü»ù½ð»òCCCS£©ÍøÂçÉϵÄËùÓÐϵͳ¶¼Ôâµ½ÁËHiveÀÕË÷¹¥»÷ £¬²¢´¦ÓÚÀëÏß״̬¡£CCCSÏÖÔÚÕýÆð¾¢»Ö¸´ÊÜÓ°ÏìµÄϵͳºÍ·þÎñ £¬µ«µ½ÏÖÔÚΪֹ £¬»¹ÎÞ·¨È·¶¨ÐèÒª¶à³¤Ê±¼ä¡£²»¾Ãǰ £¬¸ç˹´ïÀè¼ÓµÄ¶à¸öÕþ¸®»ú¹¹Ôâµ½ÁËContiµÄ¹¥»÷ £¬²¢Ðû²¼¹ú¼Ò½øÈë½ôÆÈ״̬¡£AdvIntel¸ß¶ÈÈ·¶¨ContiÓëHIVEÓйØÁª £¬ÇÒÁ½¸öÍÅ»ïµÄÏàÖúÒÑÁè¼Ý°ëÄê £¬ÖÁÉÙ´Ó2021Äê11Ô¾Í×îÏÈÁË¡£


https://www.bleepingcomputer.com/news/security/costa-rica-s-public-health-agency-hit-by-hive-ransomware/


3¡¢Spid3rÍÅ»ïÉù³ÆÒÑÈëÇÖ°×¶íÂÞ˹¶à¸öÕþ¸®»ú¹¹µÄÍøÕ¾


¾Ý5ÔÂ30ÈÕ±¨µÀ £¬AnonymousµÄÁ¥Êô×éÖ¯Spid3rÉù³ÆÈëÇÖÁ˰׶íÂÞ˹Õþ¸®µÄÍøÕ¾¡£¸ÃÍÅ»ïÔÚTwitterÉÏÐû²¼ÁËÓë°×¶íÂÞ˹Õþ¸®ÓйصÄÖÖÖÖÍøÕ¾µÄ½ØÍ¼ £¬°üÀ¨½»Í¨²¿¡¢Ë¾·¨²¿ºÍ¾­¼Ã²¿ £¬²¢ÅäÎijÆËûÃǶ԰׶íÂÞ˹Õþ¸®ÌᳫÁË´ó¹æÄ£¹¥»÷ £¬¸Ã¹ú×î´óµÄÕþ¸®ÍøÕ¾¾ùÒÑÀëÏß¡£±ðµÄ £¬Æä½ÌÓý²¿¡¢¹ú¼ÒÖ´·¨ÐÅÏ¢ÖÐÐÄ¡¢ÄÚÕþ²¿¡¢¹ú¼Òº£¹ØÎ¯Ô±»á¡¢¹ú¼ÒίԱ»áµÄÍøÕ¾Ò²·ºÆðÁËÎÊÌâ¡£ÏÖÔÚ £¬´ó²¿·ÖÊÜÓ°ÏìµÄÍøÕ¾ÒÑÖØÐÂÉÏÏß¡£ 


https://www.infosecurity-magazine.com/news/anonymous-claims-attacks-against/


4¡¢Ñо¿Ö°Ô±·¢Ã÷¿Éͨ¹ýµç»°Ð®ÖÆWhatsAppÕÊ»§µÄÔ˶¯


ýÌå5ÔÂ30ÈÕ±¨µÀ £¬CloudSEK·¢Ã÷ÁËÒ»³¡ÕýÔÚ¾ÙÐеÄWhatsAppÕË»§Ð®ÖÆÔ˶¯¡£¸ÃÔ˶¯µÄÕ½ÂԺܼòÆÓ £¬¹¥»÷Õß´òµç»°¸øÄ¿µÄ £¬ÓÕÆ­ËûÃDz¦´òÒÔ405»ò67¿ªÍ·µÄµç»°ºÅÂë¡£¼¸·ÖÖÓºóËûÃǵÄWhatsAppÕÊ»§»á±»×¢Ïú £¬¹¥»÷Õß¾ÍÄܽÓÊÜËûÃÇ¡£×Åʵ £¬ÕâЩºÅÂëÊÇJioºÍAirtelÔÚÒÆ¶¯Óû§Ã¦Ê±¾ÙÐкô½Ð×ªÒÆµÄ·þÎñÇëÇó £¬µ±Óû§²¦´òºóÏÖʵÉÏ»á×ªÒÆµ½¹¥»÷ÕߵĺÅÂë £¬²¢Ñ¸ËÙÆô¶¯WhatsApp×¢²áÀú³ÌÒÔ»ñȡĿµÄµÄºÅÂë £¬È»ºóÒªÇóͨ¹ýµç»°·¢ËÍOPT¡£ÏÖÔÚ £¬ÕâÖÖ¹¥»÷½öÕë¶ÔÓ¡¶È¡£


https://securityaffairs.co/wordpress/131807/hacking/whatsapp-otp-scam.html


5¡¢Group-IB³Æ2021Äê57%µÄÍøÂç·¸·¨Ô˶¯ÓëÕ©Æ­ÓйØ


Group-IBÔÚ5ÔÂ26ÈÕ·ÖÏíÁËÆä¶ÔÖÖÖÖÕ©Æ­¼Æ»®µÄÑо¿Ð§¹û¡£Group-IB³Æ £¬Õ©Æ­Õ¼ËùÓо­¼ÃÄîÍ·µÄÍøÂç·¸·¨µÄ57% £¬´ËÀ๥»÷ÍÅ»ïµÄÊýĿԾÉýÖÁ390¸ö £¬´´ÏÂÀúʷиß £¬ÊÇÈ¥Ä꣨½ü110¸ö£©µÄ3.5±¶¡£ÓÉÓÚSaaS£¨Õ©Æ­¼´·þÎñ£© £¬2021ÄêµÄÒ»¸öÕ©Æ­ÍÅ»ïÖеijÉÔ±ÊýÄ¿±È2020ÄêÔöÌíÁË10±¶ £¬ÏÖÔÚµÖ´ï100ÈË¡£¹¥»÷Õ߸üϲ»¶Ê¹Óô¹ÂÚ¹¥»÷ (18%)¡¢Õ©Æ­ºÍڲƭ(57%)ÒÔ¼°¶ñÒâÈí¼þºÍÉùÓþ¹¥»÷ (25%) µÈÒªÁì¡£ÔÚÖж«¡¢ÑÇÌ«µØÇøºÍÅ·ÖÞ £¬Ã¿ÔÂð³äÆ·ÅÆµÄÕ©Æ­»®·ÖÔöÌíÁË150%¡¢83%ºÍ89%¡£


https://www.group-ib.com/media/digital-risk-summit-2022/


6¡¢ÆÕ»ªÓÀµÀÐû²¼¹ØÓÚ2022ÄêÈ«Çò¾­¼Ã·¸·¨µÄÊӲ챨¸æ


¾ÝýÌå5ÔÂ30ÈÕ±¨µÀ £¬ÆÕ»ªÓÀµÀÐû²¼ÁË2022ÄêÈ«Çò¾­¼Ã·¸·¨µÄÊӲ챨¸æ¡£¸Ã±¨¸æÖ÷ÒªÕ¹ÏÖÁËÓ¢¹úµÄÊÓ²ìЧ¹û £¬ÆäÖÐÖ¸³ö £¬Ó¢¹ú64%µÄÆóÒµÔÚÒÑÍù24¸öÔÂÄÚÂÄÀú¹ýڲƭµÈ½ðÈÚ·¸·¨ £¬±È2020Ä꣨56%£©ºÍ2018Ä꣨50%£©¶¼¶à £¬Ò²¸ßÓÚÈ«Çò£¨46%£©µÄƽ¾ùˮƽ¡£ÍøÂç·¸·¨ÊÇ×î³£¼ûµÄڲƭÀàÐÍ £¬ÆäÕ¼±È´Ó2020ÄêµÄ42%Ͻµµ½2022ÄêµÄ32% £¬¶ø¹©Ó¦Á´ÊÂÎñÕ¼19%¡£ÔÚÓ¢¹ú £¬51%µÄڲƭÔ˶¯¶¼¿ÉÒÔ×·Ëݵ½Íⲿ¸÷·½ £¬ÆäÖÐÅÅÃûǰÈýµÄ×ï¿ý×ï¿ýÊǿͻ§¡¢ºÚ¿ÍºÍ¹©Ó¦ÉÌ¡£


https://www.pwc.co.uk/services/forensic-services/insights/global-economic-crime-survey-2022-uk-findings.html