AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶

Ðû²¼Ê±¼ä 2023-03-10

1¡¢AT&Tij¹©Ó¦É̱»ºÚµ¼ÖÂÆäÔ¼900Íò¿Í»§µÄÊý¾Ýй¶


¾Ý3ÔÂ9ÈÕ±¨µÀ  £¬AT&T֪ͨԼ900Íò¿Í»§ÆäÐÅÏ¢ÒѾ­Ð¹Â¶  £¬ÓÉÓÚËüµÄÒ»¼ÒÓªÏú¹©Ó¦ÉÌÔÚ1Ô·ÝÔâµ½Á˺ڿ͹¥»÷ ¡£Ð¹Â¶Êý¾Ý°üÀ¨¿Í»§ÐÕÃû¡¢ÎÞÏßÕʺš¢ÎÞÏߵ绰ºÅÂëºÍÓʼþµØµãµÈ  £¬ÒÔ¼°²¿·Ö¿Í»§µÄÎÞÏß·ÑÂÊÍýÏë¡¢ÓâÆÚ½ð¶îºÍ¸¶¿î½ð¶îµÈ ¡£¸Ã¹«Ë¾Ôö²¹Ëµ  £¬Æäϵͳ²¢Î´ÊÜÓ°Ïì  £¬Ð¹Â¶Êý¾ÝÖ÷ÒªÓë×°±¸Éý¼¶×ʸñÓÐ¹Ø ¡£AT&T¾Ü¾øÍ¸Â¶¹©Ó¦É̵ÄÉí·Ý  £¬µ«The RegisterÌåÏÖ  £¬µç×ÓÓʼþÓªÏú¹«Ë¾MailchimpÔÚ1Ô·ÝÔøÔâµ½¹¥»÷  £¬¹¥»÷Õß»ñµÃÁË100¶à¸ö¿Í»§ÕÊ»§µÄ»á¼ûȨÏÞ ¡£


https://www.theregister.com/2023/03/09/att_wireless_breach/


2¡¢Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£Ñ§Çø±»MedusaÀÕË÷100ÍòÃÀÔª


ýÌå3ÔÂ8ÈÕ³Æ  £¬Ã÷Äá°¢²¨Àû˹¹«Á¢Ñ§Ð£(MPS)Ñ§Çø±»MedusaÍÅ»ïÀÕË÷100ÍòÃÀÔª ¡£¸ÃÍŻォMPSÌí¼Óµ½ÆäTorÍøÕ¾ÉÏ  £¬²¢ÍþвҪÔÚ3ÔÂ17ÈÕ֮ǰÐû²¼´Ó¸ÃÑ§ÇøÇÔÈ¡µÄËùÓÐÊý¾Ý ¡£¸ÃÊÂÎñÖ®ÒÔÊÇÒýÈËעĿ  £¬ÊÇÓÉÓÚ¹¥»÷ÕßÖÆ×÷ÁËÒ»¶Îʱ³¤Ô¼51·ÖÖÓµÄÊÓÆµ  £¬ÏÔʾ´ÓMPSÇÔÈ¡µÄÊý¾Ý ¡£MPSÖÎÀí×ÅÔ¼100Ëù¹«Á¢ÖÐСѧ  £¬ËüÓÚ3ÔÂ1ÈÕÐû²¼Í¨¸æ  £¬Í¸Â¶Æä2ÔÂ21ÈÕÔâµ½¹¥»÷µ¼ÖÂϵͳÖÐÖ¹ ¡£¸Ã×éÖ¯»¹ÌåÏÖ  £¬Ëü²»ÍýÏ븶Êê½ð  £¬¶øÊÇÑ¡ÔñʹÓÃÄÚ²¿±¸·Ý»Ö¸´±»¼ÓÃܵÄÊý¾Ý ¡£


https://www.bleepingcomputer.com/news/security/ransomware-gang-posts-video-of-data-stolen-from-minneapolis-schools/


3¡¢Ó¡¶ÈHDFC Bank×Ó¹«Ë¾Áè¼Ý7200ÍòÌõ¼Í¼±»Ðû²¼ÔÚ°µÍø


¾ÝýÌå3ÔÂ8ÈÕ±¨µÀ  £¬ºÚ¿ÍKernelwareÔÚ°µÍøBreached forumÉÏÐû²¼ÁËHDB Financial ServicesÔ¼7.5 GBµÄ¿Í»§Êý¾Ý ¡£HDB Financial ServicesÊÇÓ¡¶È×î´óµÄ˽ÈËÒøÐÐHDFC BankµÄ×Ó¹«Ë¾ ¡£Ð¹Â¶ÐÅÏ¢°üÀ¨Áè¼Ý7200ÍòÌõ¼Í¼  £¬Éæ¼°2022Äê5ÔÂÖÁ2023Äê2ÔÂÉêÇë´û¿îµÄHDBÏûºÄÕß ¡£HDFC Bank·ñ¶¨ÁËÊý¾Ýй¶ÊÂÎñ  £¬µ«HDB FinancialÒÑÈ·Èϲ¢ÔÚÊÓ²ì¸ÃÇå¾²ÊÂÎñ ¡£ÖµµÃ×¢ÖØµÄÊÇ  £¬Kernelware¾ÍÊÇй¶ÁËAcerÔ¼160GBÊý¾ÝµÄºÚ¿Í ¡£


https://www.hackread.com/hackers-india-hdfc-bank-data-leak/


4¡¢VeeamÐÞ¸´Ó°ÏìÆäËùÓÐVBR°æ±¾µÄÎó²îCVE-2023-27532


3ÔÂ8ÈÕ±¨µÀ³Æ  £¬VeeamÐû²¼¸üР £¬ÐÞ¸´ÆäBackup & Replication²úÆ·ÖеÄÎó²îCVE-2023-27532 ¡£Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÔÚ»ñÈ¡´æ´¢ÔÚVeeamVBRÉèÖÃÊý¾Ý¿âÖеļÓÃÜÆ¾Ö¤ºó  £¬Ê¹ÓÃËü»á¼û±¸·Ý»ù´¡¼Ü¹¹Ö÷»ú ¡£Æ¾Ö¤Veeamͨ¸æ  £¬¸ÃÎó²î»ù´¡Ôµ¹ÊÔ­ÓÉÊÇVeeam.Backup.Service.exe£¨Ä¬ÈÏÇéÐÎÏÂÔÚTCP 9401ÉÏÔËÐУ©¿É±»Î´¾­Éí·ÝÑéÖ¤µÄÓû§ÓÃÀ´ÇëÇó¼ÓÃÜÆ¾Ö¤ ¡£Veeam»¹ÌṩÁËÔÝʱÐÞ¸´ÒªÁì  £¬Ê¹Óñ¸·Ý·þÎñÆ÷·À»ðǽ×èÖ¹Óë¶Ë¿ÚTCP 9401µÄÍⲿÅþÁ¬ ¡£


https://www.bleepingcomputer.com/news/security/veeam-fixes-bug-that-lets-hackers-breach-backup-infrastructure/


5¡¢FortinetÅû¶8220 GangʹÓÃScrubCryptµÄ¹¥»÷Ô˶¯


FortinetÔÚ3ÔÂ8ÈÕÅû¶ÁË8220 Gang×î½üµÄ¼ÓÃÜÐ®ÖÆ¹¥»÷ ¡£¹¥»÷±¬·¢ÔÚ2023Äê1ÔÂÖÁ2Ô  £¬¹¥»÷Á´Ê¼ÓÚÀÖ³ÉʹÓÃÒ×±»¹¥»÷µÄOracle WebLogic ServerÏÂÔØ°üÀ¨ScrubCryptµÄPowerShell¾ç±¾ ¡£PowerShell¾ç±¾ÒѾ­ÓɱàÂë  £¬À´ÈƹýÇå¾²¼Æ»®µÄ¼ì²â ¡£ScrubCrypt¼ÓÃÜÆ÷ÔÚºÚ¿ÍÂÛ̳ÉÏÓÐÊÛ  £¬¿ÉʹÓÃÆæÒìµÄBAT´ò°üÒªÁì±£»¤Ó¦ÓóÌÐò ¡£»ùÓÚÔ˶¯ÖÐʹÓõļÓÃÜÇ®°üµØµãºÍMonero¿ó¹¤Ê¹ÓõķþÎñÆ÷IPµØµã  £¬Ñо¿Ö°Ô±½«´Ë´ÎÔ˶¯¹éÒòÓÚ8220 Gang ¡£


https://www.fortinet.com/blog/threat-research/old-cyber-gang-uses-new-crypter-scrubcrypt


6¡¢KasperskyÐû²¼2022Äê¸ú×ÙÈí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ


3ÔÂ8ÈÕ  £¬KasperskyÐû²¼ÁË2022Äê¸ú×ÙÈí¼þ£¨Stalkerware£©Ì¬ÊÆµÄÆÊÎö±¨¸æ ¡£Êý¾ÝÏÔʾ  £¬2022ÄêÈ«ÇòÓÐ29312¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ïì  £¬Æ½¾ùÿÔÂÓÐ3333¸öÓû§Êܵ½¸ú×ÙÈí¼þµÄÓ°Ïì ¡£¸ú×ÙÈí¼þÈÔÈ»ÊÇÒ»¸öÈ«ÇòÐÔÎÊÌâ  £¬Kaspersky¼ì²âµ½176¸ö¹ú¼Ò/µØÇøÊܵ½Ó°Ïì  £¬ÆäÖжíÂÞ˹£¨8281£©¡¢°ÍÎ÷£¨4969£©ºÍÓ¡¶È£¨1807£©ÊÜÓ°Ïì×îÑÏÖØ ¡£2022Äê¼ì²âµ½182ÖÖ²î±ðµÄ¸ú×ÙÈí¼þÓ¦Óà  £¬×î³£¼ûµÄÊÇReptilicus  £¬Æä´ÎÊÇCerberusºÍKeyLog ¡£


https://securelist.com/the-state-of-stalkerware-in-2022/108985/