¶àÂ׶දÎïÔ°ÔâÍøÂç¹¥»÷£¬Óοͼ°Ô±¹¤ÐÅÏ¢´óй¶
Ðû²¼Ê±¼ä 2025-03-061. ¶àÂ׶දÎïÔ°ÔâÍøÂç¹¥»÷£¬Óοͼ°Ô±¹¤ÐÅÏ¢´óй¶
3ÔÂ6ÈÕ£¬¶àÂ׶දÎïÔ°±¾ÖÜÐû²¼Á˹ØÓÚ2024Äê1ÔÂÔâÊÜÍøÂç¹¥»÷µÄ֪ͨ¡£¸Ã¶¯Îï԰ÿÄê½Ó´ýÁè¼Ý120ÍòÃûÓοͣ¬ÓµÓÐÁè¼Ý5000ÖÖ¶¯Îï¡£´Ë´Î¹¥»÷µ¼ÖÂ2000ÄêÖÁ2023Äê4ÔÂʱ´úÿλÓο͵ÄÐÅÏ¢±»Ð¹Â¶£¬ºÚ¿Í¸´ÖÆÁ˰üÀ¨ÐÕÃû¡¢µØµã¡¢µç»°ºÅÂëºÍµç×ÓÓʼþµØµãÔÚÄÚµÄÉúÒâÊý¾Ý¡£¹ØÓÚÔÚ2022Äê1ÔÂÖÁ2023Äê4ÔÂʱ´úʹÓÃÐÅÓÿ¨ÉúÒâµÄ¿ÍÈ˺ͻáÔ±£¬ºÚ¿Í»¹ÇÔÈ¡ÁË¿¨ºÅµÄºóËÄλÊý×ÖºÍÓÐÓÃÆÚ¡£¾Ý³Æ£¬AkiraÀÕË÷Èí¼þ×éÖ¯¶Ô´Ë´Î¹¥»÷ÈÏÕæ£¬²¢Éù³ÆÇÔÈ¡ÁË133GBµÄÊý¾Ý£¬°üÀ¨ÉñÃØÐæÅºÍСÎÒ˽¼ÒÎļþµÈ¡£³ýÁËÓοÍÐÅÏ¢£¬¶¯ÎïÔ°»¹Ê§È¥ÁËÊýÊ®ÄêµÄÒ°Éú¶¯Îï±£»¤Ñо¿Ð§¹û£¬ÃæÁÙ¼«´óÌôÕ½¡£±ðµÄ£¬¶¯ÎïÔ°»¹Í¨ÖªÁËÊÜÓ°ÏìµÄÏÖÈκÍǰÈÎÔ±¹¤¡¢×ÔÔ¸Õߺ;èÔùÕߣ¬²¢ÌṩÐÅÓÃ¼à¿Ø·þÎñ¡£¶¯ÎïÔ°ÖÒÑÔDZÔÚÊܺ¦ÕßҪСÐÄÍøÂç´¹ÂÚºÍÍøÂçÕ©Æ£¬²¢°´ÆÚ¼ì²é²ÆÎñÕË»§±¨±í¡£¶àÂ׶දÎïÔ°ÒÑÏò°²¼òªʡÐÅÏ¢ºÍÒþ˽רԱ°ì¹«ÊÒ±¨¸æÁËÕâÒ»ÊÂÎñ£¬¸Ã°ì¹«ÊÒÒÑÕö¿ªÊӲ졣
https://therecord.media/toronto-zoo-warns-decades-cyberattack
2. BadBoxÔâÖØ»÷£¬¹È¸èÒÆ³ý24¿î¶ñÒâÓ¦Óò¢×è¶Ï50Íò×°±¸Í¨Ñ¶
3ÔÂ5ÈÕ£¬BadBox Android ¶ñÒâÈí¼þ½©Ê¬ÍøÂç½üÆÚÔÙ´ÎÊܵ½¹¥»÷£¬Google Play ÒÑɾ³ý24¸öÏà¹Ø¶ñÒâÓ¦Ó㬲¢×è¶ÏÁË50Íǫ̀ÊÜѬȾװ±¸µÄͨѶ¡£¸Ã½©Ê¬ÍøÂçÖ÷ÒªÕë¶ÔµÍ±¾Ç®Android×°±¸£¬ÈçÁ÷ýÌåºÐ¡¢Æ½°åµçÄÔ¡¢ÖÇÄܵçÊÓºÍÖÇÄÜÊÖ»ú£¬Í¨¹ýԤװ¶ñÒâÈí¼þ»òÏÂÔØ¶ñÒâÓ¦ÓÃѬȾװ±¸¡£Ñ¬È¾ºóµÄ×°±¸»á±»Äð³ÉסլÊðÀí£¬ÓÃÓÚÌìÉúÐéα¹ã¸æÓ¡Ïó¡¢Öض¨ÏòÓû§µ½µÍÖÊÁ¿ÍøÕ¾¡¢½¨ÉèÐéαÕË»§²¢Ö´ÐÐÆ¾Ö¤Ìî³ä¹¥»÷¡£Ö»¹ÜÈ¥ÄêµÂ¹úÕþ¸®ÒÑ×èµ²¸Ã¶ñÒâÈí¼þ£¬µ«ÆäѬȾÊýÄ¿ÈÔѸËÙÔöÌí£¬ÒÑÓ°ÏìÁè¼Ý100Íǫ̀װ±¸£¬±é²¼222¸ö¹ú¼Ò£¬Ö÷Òª¼¯ÖÐÔÚ°ÍÎ÷¡¢ÃÀ¹ú¡¢Ä«Î÷¸çºÍ°¢¸ùÍ¢¡£HUMANµÄSatoriÍþвÇ鱨ÍŶÓÍŽá¶à¼ÒÏàÖúͬ°éÕö¿ªÁË×îÐÂµÄÆÆËðÐж¯£¬³ÆÎª¡°BadBox 2.0¡±¡£ËûÃÇÈëÇÖÁËBADBOX 2.0µÄÓòÃû£¬×èÖ¹ÁË50¶àÍǫ̀װ±¸ÓëÍþвÐÐΪÕßµÄÏÂÁîºÍ¿ØÖÆ·þÎñÆ÷ͨѶ£¬Ê¹¶ñÒâÈí¼þ½øÈëÐÝÃß״̬¡£±ðµÄ£¬¹È¸è´ÓGoogle PlayÖÐÒÆ³ýÁË24¿î×°ÖÃBadBox¶ñÒâÈí¼þµÄÓ¦Ó㬲¢ÖÕÖ¹ÁËÏà¹Ø¹ã¸æÚ²ÆµÄÐû²¼ÉÌÕË»§¡£È»¶ø£¬ÓÉÓÚÈ«ÇòÏúÊÛµÄδ¾Play ProtectÈÏÖ¤µÄAndroid×°±¸ÎÞ·¨±»¹È¸èÏû¶¾£¬BadBox 2.0²¢Î´±»ÍêÈ«ìî³ý¡£ÏûºÄÕßÓ¦ÉóÉ÷¹ºÖûùÓÚAOSPµÄAndroid×°±¸£¬×èֹʹÓÃԤװ¶ñÒâÈí¼þµÄÓ²¼þ¡£
https://www.bleepingcomputer.com/news/security/badbox-malware-disrupted-on-500k-infected-android-devices/
3. »ÝÌØÂüÒ½ÔºÔâÍøÂç¹¥»÷£¬µç×Óϵͳ̱»¾
3ÔÂ5ÈÕ£¬Î»ÓÚ»ªÊ¢¶ÙÖݿƶû·¨¿Ë˹µÄ»ÝÌØÂüÒ½ÔººÍÒ½ÁÆÕïËù£¨WHMC£©½üÆÚÔâÊÜÁËÍøÂç¹¥»÷£¬µ¼ÖÂÆäÄÚ²¿µç×ÓϵͳÏÝÈë̱»¾×´Ì¬¡£Ò½ÔºÔÚ2025Äê2ÔÂ28ÈÕÊ×´Îͨ¹ýFacebookÒ³ÃæÐû²¼Á˹ØÓÚ´ËÊÂÎñµÄ¾¯±¨£¬Ö¸³öÆäµç×ÓϵͳÔâµ½ÁËδ֪·¸·¨ÕßµÄÈëÇÖ£¬²¢Í¸Â¶Ò»¼ÒÍøÂçÇå¾²¹«Ë¾ÕýÔÚÆð¾¢Ó¦¶ÔÕâÒ»ÎÊÌâ¡£Ö»¹ÜÃæÁÙÄæ¾³£¬Ò½ÔºÈÔÈ»¼á³Ö¿ª·Å£¬²¢ÔÊÐí¼ÌÐø¹Ø×¢ÊÂ̬Éú³¤£¬Í¬Ê±ÔÚÉ罻ýÌåºÍ¹Ù·½ÍøÕ¾ÉÏÐû²¼×îÐÂÐÂÎÅ¡£ÔÚ3ÔÂ4ÈյĸüÐÂÖУ¬Ò½ÔºÖ¸³öÄÚ²¿µç×ÓϵͳÈÔδ»Ö¸´£¬Òò´Ë£¬ÔÚ3ÔÂ5ÈÕÔ¤Ô¼¾ÍÕïµÄ»¼Õß¿ÉÄÜ»áÔâÓöÑÓÎó¡£Ö»¹ÜÃæÁÙÌôÕ½£¬Ò½ÔºÈÔÇ¿µ÷Æä½«¼ÌÐøÎª»¼ÕßÌṩ·þÎñ¡£ÏÖÔÚ£¬Ò½ÔºÉÐδ͸¶¸ü¶à¹ØÓÚ´Ë´ÎÍøÂç¹¥»÷µÄϸ½Ú£¬µ«ÌåÏÖÕýÔÚÈ¡µÃ½â¾öÕâÒ»ÎÊÌâµÄÏ£Íû¡£
https://databreaches.net/2025/03/05/whitman-hospital-medical-clinics-in-colfax-suffers-cyber-attack/
4. LinkedInÍøÂç´¹ÂÚÕ©ÆÐ±äÖÖÈö²¥ConnectWise RAT
3ÔÂ5ÈÕ£¬Cofense µÄÍøÂçÇå¾²Ñо¿Ö°Ô±½üÆÚ·¢Ã÷ÁËÒ»¸öʹÓÃαÔì LinkedIn µç×ÓÓʼþ·Ö·¢¶ñÒâÈí¼þµÄÐÂÍøÂç´¹ÂÚÕ©ÆÔ˶¯¡£Óë³£¼ûµÄ LinkedIn Ö÷ÌâÍøÂç´¹ÂÚ¹¥»÷²î±ð£¬´ËÔ˶¯Ö¼ÔÚÈö²¥Ò»ÖÖÃûΪ ConnectWise RAT µÄÔ¶³Ì»á¼ûľÂí¡£¸ÃÚ²ÆÐÔµç×ÓÓʼþÄ£Äâ LinkedIn InMail ÐÂÎŵÄ֪ͨ£¬Ê¹ÓÃÁË LinkedIn µÄÆ·ÅÆ£¬µ«Ê¹ÓÃÁ˹ýʱµÄÄ£°å¡£ÓʼþÉù³ÆÀ´×ÔÐé¹¹µÄÏúÊÛ×ܼ࣬ҪÇó¶Ô·½Ìṩ±¨¼Û£¬ÒÔÓªÔì½ôÆÈ¸Ð¡£ÓʼþÖеÄСÎÒ˽¼Ò×ÊÁÏͼƬÊôÓÚÕæÊµÐ¡ÎÒ˽¼Ò£¬µ«¹«Ë¾Ãû³ÆÊÇÐé¹¹µÄ¡£µã»÷ÓʼþÖеİ´Å¥»á´¥·¢ ConnectWise RAT ×°ÖóÌÐòµÄÏÂÔØ£¬ÇÒ×èÖ¹ÁËÖ±½ÓÌáÐÑÓû§ÏÂÔØ»òÔËÐÐÎļþµÄ³£¼ûÕ½ÂÔ¡£Ö»¹ÜÓʼþδͨ¹ýÉí·ÝÑéÖ¤¼ì²é£¬µ«ÈÔÈÆ¹ýÁËÏÖÓÐÇå¾²²½·¥¡£¸Ã¹¥»÷Ô˶¯×Ô 2024 Äê 5 ÔÂÆð¾ÍÒÑ×îÏÈ£¬ÓʼþÄ£°å¼á³ÖÒ»Ö£¬µ«ÎÞ·¨È·ÈÏÔçÆÚ°æ±¾ÊÇ·ñÒ²Èö²¥ÁË ConnectWise RAT¡£´Ë´ÎÔ˶¯Í¹ÏÔÁËÍøÂç·¸·¨·Ö×ÓÒ»Ö±ÑݱäµÄÕ½ÂÔÒÔ¼°Éæ¼° LinkedIn µÄÖØ´óÍøÂç´¹ÂÚ¹¥»÷µÄÍþв£¬ÐèÒª½ÌÓýÔ±¹¤×ÐϸÉó²éµç×ÓÓʼþ·¢¼þÈË£¬Êʵ±ÉèÖõç×ÓÓʼþÉí·ÝÑéÖ¤ÐÒ飬²¢È·±£ÉèÖÃÇå¾²µç×ÓÓʼþÍø¹ØÒÔÓÐÓùýÂ˺Í×èÖ¹¿ÉÒɵç×ÓÓʼþ¡£
https://hackread.com/scammers-fake-linkedin-inmail-deliver-connectwise-trojan/
5. ð³äBianLianÍÅ»ïµÄÐéαÀÕË÷ÐÅÕ©ÆÃÀ¹ú¹«Ë¾¸ß¹Ü
3ÔÂ4ÈÕ£¬½üÆÚ£¬Õ©ÆÕßð³ä BianLian ÀÕË÷Èí¼þÍŻͨ¹ýÃÀ¹úÓÊÕþÏòÃÀ¹ú¹«Ë¾Ê×ϯִÐйÙÓʼÄÐéαÀÕË÷ÐÅ¡£ÕâЩÐżþÉù³ÆÀ´×ÔλÓÚ²¨Ê¿¶ÙµÄ¡°BIANLIAN GROUP¡±£¬²¢º¬ÓÐÕë¶Ô¹«Ë¾ÐÐÒµµÄÁ¿Éí¶¨ÖÆµÄÉæÏÓ±»µÁÊý¾Ý¡£ÐÅÖÐÉù³ÆÒÑ»ñȡϵͳ»á¼ûȨÏÞ£¬²¢µ¼³ö´ó×ÚÃô¸ÐÊý¾ÝÎļþ£¬ÒªÇóÖ§¸¶25ÍòÖÁ50ÍòÃÀÔªµÄ±ÈÌØ±ÒÊê½ðÒÔ·ÀÊý¾Ýй¶£¬²»È»½«ÔÚ10ÌìÄÚ¹ûÕæ¡£È»¶ø£¬¾ Guidepoint Security¡¢BleepingComputer ¼° Arctic Wolf µÈ»ú¹¹ÆÊÎö£¬ÕâЩÀÕË÷ÐÅʵΪȦÌ×£¬Ö¼ÔÚÏÅ»£¸ß¹ÜÖ§¸¶Êê½ð£¬ÎÞÏÖʵΥ¹æÖ¤¾Ý¡£ÐÅÖÐËä°üÀ¨ÕæÊµµÄTorÊý¾ÝÐ¹Â¶ÍøÕ¾¼°Õýµ±µÄй¶ÃÜÂëÒÔÔöÌí¿ÉÐŶȣ¬µ«¾È·Èϲ¢·ÇÀ´×Ô BianLian ÀÕË÷Èí¼þ×éÖ¯¡£Ö»¹ÜÔÆÔÆ£¬ÓÉÓÚÓʼþÆÕ±éÈö²¥£¬ITºÍÇå¾²ÖÎÀíÔ±ÈÔÐè֪ͨ¸ß¹ÜÏà¹ØÈ¦Ì×£¬×èÖ¹ÆÌÕÅ×ÊÔ´¡£´ËȦÌ×Ϊµç×ÓÓʼþÀÕË÷ȦÌ×µÄÑݱ䣬ĿµÄÓÉСÎÒ˽¼ÒתÏò¹«Ë¾¸ß¹Ü¡£ÏÖÔÚ£¬BianLian ÀÕË÷Èí¼þÐж¯ÉÐδ»ØÓ¦ÊÇ·ñ¼ÓÈë´ËÊ¡£
https://www.bleepingcomputer.com/news/security/fake-bianlian-ransom-notes-mailed-to-us-ceos-in-postal-mail-scam/
6. YouTubeÖÒÑÔ£ºÕ©ÆÕßʹÓÃAIÌìÉúCEOÊÓÆµ¾ÙÐÐÍøÂç´¹ÂÚ¹¥»÷
3ÔÂ5ÈÕ£¬YouTubeÖÒÑԳƣ¬Õ©ÆÕßÕýʹÓÃAIÌìÉúµÄÊ×ϯִÐйÙÊÓÆµ¾ÙÐÐÍøÂç´¹ÂÚ¹¥»÷£¬ÒÔÇÔÈ¡´´×÷Õ߯¾Ö¤¡£¹¥»÷Õßͨ¹ýµç×ÓÓʼþ·ÖÏíÉù³Æ¹ØÓÚÇ®±Ò»¯Õþ²ßת±äµÄ˽ÈËÊÓÆµ¡£YouTubeÇ¿µ÷£¬ËûÃǾø²»»áͨ¹ý˽ÈËÊÓÆµÁªÏµÓû§·ÖÏíÐÅÏ¢¡£ÕâЩ´¹ÂÚÓʼþÖеÄÁ´½Ó»áÖ¸µ¼Óû§µ½Ò»¸öαÔìµÄµÇÂ¼Ò³Ãæ£¬ÒªÇóÊäÈëÕË»§Æ¾Ö¤ÒÔÈ·ÈϸüеÄYouTubeÏàÖúͬ°éÍýÏëÌõ¿î£¬ÊµÔòΪÁËÇÔÈ¡ÕâЩÐÅÏ¢¡£Õ©ÆÕß»¹Íþв³Æ£¬²»È·ÈÏ×ñÊØÐ¹æÔò½«µ¼ÖÂÕË»§ÊÜÏÞÆßÌ죬ÒÔ´ËÖÆÔì½ôÆÈ¸Ð¡£×Ô2024Äê1ÔÂβÒÔÀ´£¬YouTubeÓû§Ò»Ö±ÊÕµ½´ËÀàÓʼþ£¬¶øYouTubeÍŶÓÒÑÓÚ2ÔÂÖÐÑ®×îÏÈÊӲ졣Ðí¶à´´×÷ÕßÒѳÉΪÊܺ¦Õߣ¬ÆäƵµÀ±»Ð®ÖÆÓÃÓÚÖ±²¥¼ÓÃÜÇ®±ÒÕ©Æ¡£YouTubeÌṩÁË×èÖ¹ºÍ±¨¸æ´ËÀàÍøÂç´¹ÂÚÓʼþµÄÌáÐÑ£¬²¢×Ô8ÔÂÆðÍÆ³öÐÂÖ§³ÖÖúÊÖ£¬×ÊÖúÓû§ÔÚ±»ºÚºó»Ö¸´²¢±£»¤ÕË»§¡£
https://www.bleepingcomputer.com/news/security/youtube-warns-of-ai-generated-video-of-its-ceo-used-in-phishing-attacks/


¾©¹«Íø°²±¸11010802024551ºÅ