PayPalÒòй¶3.5Íò¿Í»§µÄСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢±»ÆðËß
Ðû²¼Ê±¼ä 2023-03-071¡¢PayPalÒòй¶3.5Íò¿Í»§µÄСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢±»ÆðËß
ýÌå3ÔÂ4Èճƣ¬PayPalÒòй¶½ü35000¿Í»§µÄСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢ÃæÁÙÕûÌåËßËÏ¡£Ô¸æAshley PillardºÍDestiny RuckerÌáÆðËßËÏ£¬³Æ¸Ã¹«Ë¾µÄÊèºöµ¼ÖÂÊý¾Ýй¶ÊÂÎñ¡£ÖµµÃ×¢ÖØµÄÊÇ£¬PayPalÔÚ2023Äê1ÔÂ19ÈÕ×îÏÈÁªÏµÓû§²¢·¢ËÍÊý¾Ýй¶֪ͨ£¬Ú¹ÊÍ˵ËûÃǵÄÕË»§ÔÚ2022Äê12ÔÂ6ÈÕÖÁ8ÈÕÔâµ½¹¥»÷¡£Æ¾Ö¤ËßËÏ£¬PayPalδÄÜʵÑé»ù±¾µÄÇå¾²²½·¥»ò×ñÊØÁª°îÉÌҵίԱ»áÖÆ¶©µÄÐÐÒµÊý¾Ý±£»¤±ê×¼ºÍÖ¸ÄÏ£¬µ¼ÖÂÐÕÃûºÍÉç»áÇå¾²ºÅÂëµÈÐÅϢй¶¡£¸ÃËßËÏÒÑÓÚÉÏÖÜËÄÔÚÃÀ¹ú¼ÓÀû¸£ÄáÑÇÖݱ±ÇøµØÒªÁìÔºÌáÆð¡£
https://www.hackread.com/paypal-sued-over-data-breach/
2¡¢Ñо¿Ö°Ô±·¢Ã÷Õë¶ÔÆóÒµ¼¶Â·ÓÉÆ÷µÄжñÒâÈí¼þHiatusRAT
Lumen Black Lotus LabsÔÚ3ÔÂ6ÈÕÅû¶ÁËÕë¶ÔÆóÒµ¼¶Â·ÓÉÆ÷µÄ¹¥»÷Ô˶¯£¬Éæ¼°À¶¡ÃÀÖÞ¡¢Å·Ö޺ͱ±ÃÀµÈµØÇø¡£¸ÃÔ˶¯±»³ÆÎªHiatus£¬Ëü»áѬȾ¼¶Â·ÓÉÆ÷²¢×°ÖÃÁ½¸ö¶ñÒâ¶þ½øÖÆÎļþ£¬Ô¶³Ì»á¼ûľÂíHiatusRATÒÔ¼°ÔÚÄ¿µÄ×°±¸Éϲ¶»ñÊý¾Ý°üµÄtcpdump±äÌå¡£¹¥»÷ÕßÖ÷ÒªÕë¶ÔÔËÐÐi386¼Ü¹¹µÄEoL DrayTek VigorÐͺÅ2960ºÍ3900£¬×èÖ¹2023Äê2ÔÂÖÐÑ®£¬Ô¼100̨·ÓÉÆ÷Òѱ»ÈëÇÖ¡£ÊÜÓ°ÏìµÄÐͺÅÊǸߴø¿í·ÓÉÆ÷£¬¿ÉÒÔÖ§³ÖÊý°ÙÃûÔ¶³ÌÔ±¹¤µÄVPNÅþÁ¬¡£Òò´ËÍÆ²â¹¥»÷ÕßѬȾĿµÄÒÔÍøÂçÊý¾Ý£¬²¢½¨ÉèÒþ²ØµÄÊðÀíÍøÂç¡£
https://thehackernews.com/2023/03/new-hiatusrat-malware-targets-business.html
3¡¢»ªÊ¢¶Ù¹«½»¹«Ë¾Pierce Transit±»LockBitÀÕË÷200ÍòÃÀÔª
¾Ý3ÔÂ3ÈÕ±¨µÀ£¬»ªÊ¢¶ÙÖݵÄÒ»¼Ò¹«¹²½»Í¨ÔËÓªÉÌPierce TransitÔâµ½LockBitµÄ¹¥»÷£¬±»ÀÕË÷200ÍòÃÀÔª¡£¹¥»÷×îÏÈÓÚ2023Äê2ÔÂ14ÈÕ×îÏÈ£¬¸Ã¹«Ë¾²»µÃ²»ÊµÑéÔÝʱ±äͨ²½·¥£¬ÒÔά³ÖÌìÌìµÄ¹«½»·þÎñ¡£2ÔÂ28ÈÕ£¬LockBitÐû²¼ÁËPierce Transit¹¥»÷ÊÂÎñµÄÏêÇ飬Éù³ÆÇÔÈ¡ÁËÌõÔ¼¡¢¿Í»§ÐÅÏ¢¡¢±£ÃÜÐæÅºÍÐżþµÈÐÅÏ¢£¬ÕâЩÊý¾ÝÏÖÔÚ¶¼ÔÚ³öÊÛ¡£ÏÖÔÚ£¬Pierce TransitµÄ´ó²¿·ÖÔËÓªÒÑÍêÈ«»Ö¸´£¬ÆäÌåÏÖÍýÏëʵÑéеÄÍøÂçÇå¾²¼à¿Ø¹¤¾ßºÍÇå¾²²½·¥¡£
https://www.malwarebytes.com/blog/news/2023/03/public-transportation-service-pierce-transit-struck-by-lockbit-ransomware
4¡¢GunAuction.comÍøÕ¾±»ºÚ56.5Íò¸öÕË»§µÄÐÅϢй¶
¾ÝýÌå3ÔÂ2ÈÕ±¨µÀ£¬ºÚ¿ÍÈëÇÖÁËGunAuction.com²¢ÇÔÈ¡ÁËÓû§µÄСÎÒ˽¼ÒÐÅÏ¢¡£2022Äêµ×£¬Ñо¿Ö°Ô±ÔÚÊôÓںڿ͵ÄÒ»¸öÉèÖùýʧµÄ·þÎñÆ÷ÉÏ·¢Ã÷ÁËÕâЩ±»µÁÊý¾Ý¡£Ð¹Â¶ÐÅÏ¢Éæ¼°ÐÕÃû¡¢×¡Ö·¡¢Ã÷ÎÄÃÜÂëºÍµç»°ºÅÂëµÈ¡£TechCrunch³ÆÆäÄܹ»ÑéÖ¤Ñù±¾Êý¾ÝµÄÕæÊµÐÔ£¬µ«Éв»ÇåÎúÕâЩÊý¾ÝÓжàС£HaveIBeenPwned±¨¸æÌåÏÖ£¬¹¥»÷±¬·¢ÔÚÈ¥Äê12Ô£¬Ó°ÏìÁË56.5Íò¸öÕË»§¡£
https://securityaffairs.com/142920/data-breach/gunauction-site-data-breach.html
5¡¢Ñо¿Ö°Ô±·¢Ã÷Booking.comÉϿɵ¼ÖÂÕÊ»§Ð®ÖƵÄÎó²î
Salt SecurityÓÚ3ÔÂ2ÈÕ³ÆÆä·¢Ã÷ÁËÔÚÏßÂÃÐÐÉçBooking.comÉϵÄÇå¾²Îó²î¡£Ñо¿Ö°Ô±·¢Ã÷µÄÎó²î¼¯ÖÐBooking.comʵÑéOAuthµÄ·½·¨ÉÏ£¬Éæ¼°OAuthÓëFacebookµÄ¼¯³É¡£¹¥»÷Õß¿ÉÓÕʹĿµÄµã»÷ÌØÖÆÁ´½Ó£¬Í¨¹ýÀÄÓÃOAuthµÇ¼»úÖÆÀ´²¶»ñÒѵÇÈÎÃü»§µÄÉí·ÝÑéÖ¤´úÂ롣Ȼºó¹¥»÷Õß»á¼ûËûÃÇ×Ô¼ºµÄÕÊ»§£¬ÔÚÓ¦ÓÃÏòÔ¤¶©·þÎñÆ÷·¢Ë͵ÄÉí·ÝÑéÖ¤ÇëÇóÖУ¬½«×Ô¼ºµÄ´úÂëÌæ»»ÎªÄ¿µÄµÄ´úÂë¡£ÀÖ³ÉʹÓÃÕâЩÎó²î¿ÉÍêÈ«¿ØÖÆÄ¿µÄÕÊ»§£¬À´ÇÔȡСÎÒ˽¼ÒÐÅÏ¢²¢Ö´ÐÐ×÷·Ï»òÔ¤¶¨µÈ²Ù×÷¡£¸ÃÎÊÌ⻹ӰÏìÁËBooking.comµÄæ¢ÃÃÍøÕ¾Kayak.com¡£
https://salt.security/blog/traveling-with-oauth-account-takeover-on-booking-com
6¡¢LookoutÐû²¼2022ÄêÒÆ¶¯ÍøÂç´¹ÂÚ¹¥»÷Ì¬ÊÆµÄÆÊÎö±¨¸æ
3ÔÂ1ÈÕ£¬LookoutÐû²¼ÁË2022ÄêÈ«ÇòÒÆ¶¯ÍøÂç´¹ÂÚÌ¬ÊÆµÄÆÊÎö±¨¸æ¡£±¨¸æ³Æ£¬2022ÄêÊÇÓÐÊ·ÒÔÀ´Òƶ¯´¹ÂÚ¹¥»÷×î¶àµÄÒ»Ä꣬ÿ¸ö¼¾¶È¶¼ÓÐÁè¼Ý30%µÄСÎÒ˽¼ÒºÍÆóÒµÓû§Ôâµ½¹¥»÷¡£Êܵ½¸ß¶Èî¿ÏµµÄÐÐÒµ£¬°üÀ¨°ü¹Ü¡¢ÒøÐС¢Ö´·¨¡¢Ò½ÁƱ£½¡ºÍ½ðÈÚ·þÎñ£¬×îÒ×Ôâµ½¹¥»÷¡£·Çµç×ÓÓʼþµÄ´¹ÂÚ¹¥»÷Ò²ÔÚ¼¤Ôö£¬ÓïÒô´¹ÂÚ¡¢¶ÌÐÅ´¹ÂںͶþάÂë´¹ÂÚÔÚ2022ÄêQ2¶ÈÔöÌíÁËÆß±¶¡£¹ØÓÚÔâµ½ÒÆ¶¯´¹ÂÚ¹¥»÷µÄÆóÒµ¶øÑÔ£¬Ëðʧ¿ÉÄÜÊÇÖØ´óµÄ¡£LookoutÅÌËãµÃ³ö£¬´ËÀ๥»÷¶ÔÒ»¸öÓµÓÐ5000ÃûÔ±¹¤µÄ×éÖ¯µÄDZÔÚÄê¶È²ÆÎñÓ°ÏìÊǽü400ÍòÃÀÔª¡£
https://www.lookout.com/form/the-global-state-of-mobile-phishing-report


¾©¹«Íø°²±¸11010802024551ºÅ