SafepayÀÕË÷Èí¼þ×éÖ¯Ðû³Æ¹¥»÷µÂ¹úXortec¹«Ë¾

Ðû²¼Ê±¼ä 2025-10-28

1. SafepayÀÕË÷Èí¼þ×éÖ¯Ðû³Æ¹¥»÷µÂ¹úXortec¹«Ë¾


10ÔÂ26ÈÕ£¬ÀÕË÷Èí¼þ×éÖ¯SafepayÉù³Æ¶ÔµÂ¹úÊÓÆµ¼à¿ØÌṩÉÌXortec GmbHÌᳫºÚ¿Í¹¥»÷£¬²¢½«ÆäÁÐÈëÊý¾ÝÐ¹Â¶ÍøÕ¾£¬ÀÕË÷Ö§¸¶×èÖ¹ÈÕÆÚΪ10ÔÂ27ÈÕ¡£Xortec×ܲ¿Î»ÓÚ·¨À¼¿Ë¸££¬ÊÇÔöÖµ·ÖÏúÉ̼°ÏµÍ³¼¯³ÉÉÌ£¬×¨×¢ÊÓÆµ¼à¿Ø¡¢IPÍøÂç¼°°²·À½â¾ö¼Æ»®£¬·þÎñB2B¿Í»§Èçϵͳ¼¯³ÉÉÌ¡¢×¨Òµ×°ÖÃÉ̼°¾­ÏúÉÌ£¬ÓªÒµÁýÕÖDACHµØÇø£¨µÂ¡¢°Â¡¢È𣩼°¹ú¼ÊÊг¡£¬ÄêÊÕÈ볬750ÍòÅ·Ôª£¬ÓÉBeyond Capital PartnersÓÚ2021ÄêÊÕ¹º£¬½¹µãÓªÒµÖ§³ÖÁãÊÛ¡¢ÎïÁ÷¡¢Òªº¦»ù´¡ÉèÊ©µÈÐÐÒµÇ徲ϵͳ¡£´Ë´Î¹¥»÷Òý·¢ÏµÍ³ÐÔΣº¦µ£ÐÄ¡£XortecÔÚÇå¾²¹©Ó¦Á´ÖÐÊÎÑÝÒªº¦½ÇÉ«£¬¹¥»÷Õß¿ÉÄÜͨ¹ýÓ²¼þ/Èí¼þÖ²ÈëºóÃÅ£¬Ð¹Â¶¿Í»§Êý¾Ý¡¢¼à¿Ø½á¹¹¼°·¢»õ¼Í¼£»¹Ì¼þ±»µÁ»ò¸Ä¶¯½«ÆÆËðÊýǧÒѰ²ÅÅϵͳµÄÐÅÍУ»ÎïÁ÷ÖÐÖ¹¿ÉÄܲ¨¼°¾­ÏúÉÌ¡¢×îÖÕÓû§¼°ÔËÊä¡¢¹«ÓÃÊÂÒµµÈÒªº¦ÐÐÒµ£¬Ðγɶà²ã¼¶Î£º¦¡£


https://securityaffairs.com/183868/malware/safepay-ransomware-group-claims-the-hack-of-professional-video-surveillance-provider-xortec.html


2. ¶¼°ØÁÖ»ú³¡Óë°¢À­²®º½¿ÕÔâEverestÀÕË÷Èí¼þ×éÖ¯¹¥»÷


10ÔÂ26ÈÕ£¬EverestÀÕË÷Èí¼þ×éÖ¯ÔÚ°µÍøÐ¹ÃÜÍøÕ¾Ðû²¼¶¼°ØÁÖ»ú³¡¡¢°¢À­²®º½¿ÕΪÐÂÊܺ¦Õߣ¬¶¼°ØÁÖ»ú³¡Ô¼153.4ÍòÌõÂÿͼͼ±»Ëø£¬º­¸ÇÐÕÃû¡¢º½°àÈÕÆÚ¡¢Éí·ÝÖ¤ºÅ¡¢×ùλºÅ¡¢ÐÐÀî±êÇ©µÈ20ÓàÏîÃô¸ÐÐÅÏ¢£»°¢À­²®º½¿ÕÔòÉæ¼°1.8ÍòÃûÔ±¹¤Ð¡ÎÒ˽¼ÒÐÅÏ¢¡£Á½×éÊý¾Ý¾ùÐèÃÜÂë½âËø£¬×éÖ¯ÒªÇóÆóÒµ6ÈÕÄÚ¡°°´Ö¸Ê¾²Ù×÷¡±£¬²»È»¹ûÕæÊý¾Ý¡£Everest½üÄêÆµÈÔÃé×¼º½¿Õ¹©Ó¦Á´£º9ÔÂÆä¹¥»÷¿ÂÁÖ˹Ó£¬Í¨¹ý̻¶µÄFTP·þÎñÆ÷ʹÓÃÒ×²ÂÆ¾Ö¤ÈëÇÖ£¬ÏÂÔØ´ó×Úº½¿Õ¹«Ë¾ÔËÓª¼°ÂÿÍÊý¾Ý¡£¸ÃÊÂÎñµ¼ÖÂÂ×¶ØÏ£Ë¼ÂÞ¡¢°ØÁÖ¡¢²¼Â³Èû¶ûµÈÅ·ÖÞ»ú³¡Öµ»úϵͳ̱»¾£¬º½°àÑÓÎó¡£¶¼°ØÁÖ»ú³¡Êý¾ÝÈôй¶£¬¿ÉÄܱ»ÓÃÓÚ×·×ÙÓοÍÐÐ×Ù¡¢Î±ÔìÉí·Ý£»°¢À­²®º½¿ÕÔ±¹¤ÐÅϢй¶ÔòÍþвÄÚ²¿ÏµÍ³Çå¾²¡£Everest×Ô2021ÄêÆðÒÑÁÐÊý°ÙÊܺ¦Õߣ¬×¨×¢ÇÔÈ¡Êý¾Ý¿â¡¢¿Í»§/Ô±¹¤¼Í¼¼°²ÆÎñÐÅÏ¢¡£


https://hackread.com/everest-ransomware-dublin-airport-passenger-data/


3. ºÉÀ¼Albert HeijnÌØÐíı»®ÉÌBunÔâÀÕË÷Èí¼þ¹¥»÷


10ÔÂ24ÈÕ£¬ºÉÀ¼×î´óAlbert HeijnÌØÐíı»®ÉÌBunÔâÓöThreeAMºÚ¿Í×éÖ¯ÀÕË÷Èí¼þ¹¥»÷£¬Ô¼3462ÃûÏÖÈμ°Ç°ÈÎÔ±¹¤µÄÃô¸ÐÐÅÏ¢±»ÇÔÈ¡²¢²¿·Öй¶¡£¾ÝRTL NieuwsÑéÖ¤£¬Ð¹Â¶Êý¾Ý×îÔç¿É×·ËÝÖÁ2017Ä꣬º­¸ÇÐÕÃû¡¢×¡Ö·¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂ루BSN£©¡¢ÒøÐÐÕ˺š¢»éÒö״̬¡¢¹ú¼®¡¢ÊðÃûµÈСÎÒ˽¼ÒÐÅÏ¢£¬ÒÔ¼°²¡¼Ù¼Í¼¡¢»¤ÕÕ¸´Ó¡¼þ¡¢Ô±¹¤ÌõÔ¼¡¢Ò½ÁÆÐÅÏ¢µÈÃô¸ÐÄÚÈÝ£¬ÉõÖÁ°üÀ¨BunÀϰåµÄ»¤ÕÕºÍ˰ÎñÎļþ¡£ThreeAM×éÖ¯Ðû³ÆÒÑÐû²¼Ô¼20%µÄ±»µÁÊý¾Ý£¬²¢ÍþвÈô²»Ö§¸¶Êê½ð½«½øÒ»²½¹ûÕæÊ£ÓàÎļþ¡£´ËÀàÐÅÏ¢Èô±»ÀÄÓ㬿ÉÄܱ»ÓÃÓÚÍøÂç´¹ÂÚ¡¢Éí·ÝڲƭµÈ·¸·¨Ô˶¯£¬¶ÔÊܺ¦ÕßÔì³Éºã¾ÃΣº¦¡£´Ë´ÎÊÂÎñÊÇAlbert HeijnÔ±¹¤Ò»ÄêÄÚµÚ¶þ´ÎÔâÓöÊý¾Ýй¶¡£2024Äê11Ô£¬Æäĸ¹«Ë¾Ahold DelhaizeµÄÃÀ¹ú·Ö¹«Ë¾Ôø±¬·¢Çå¾²ÊÂÎñ£¬Éæ¼°³¬220ÍòÈ˵Ä6TBÐÅϢй¶£¬°üÀ¨ÐÕÃû¡¢ÁªÏµ·½·¨¡¢Éí·ÝÖ¤ºÅ¡¢½ðÈÚÕË»§¡¢¿µ½¡¼Í¼¼°¾ÍÒµÐÅÏ¢¡£


https://cybernews.com/cybercrime/albert-heijn-franchisee-ransomware-attack-passports-personal-info-stolen/


4. ÈðµäµçÍøÔâÀÕË÷Èí¼þ¹¥»÷£¬280GBÊý¾ÝÃæÁÙй¶Σº¦


10ÔÂ28ÈÕ£¬ÈðµäµçÍøÔËÓªÉÌÈðµäµçÁ¦¹«Ë¾Svenska kraftn?t¿ËÈÕÔâÓöÊý¾Ýй¶ÊÂÎñ£¬ÀÕË÷Èí¼þ×éÖ¯EverestÉù³Æ¶Ô´ËÈÏÕæ²¢Íþвй¶Լ280GBµÄÄÚ²¿Êý¾Ý¡£¸ÃÊÂÎñÓ°ÏìÁ˹«Ë¾"ÓÐÏÞµÄÍⲿÎļþ´«Êä½â¾ö¼Æ»®"£¬µ«ÈðµäµçÁ¦¹©Ó¦Î´ÊÜÓ°Ïì¡£¾ÝÊ×ϯÐÅÏ¢Çå¾²¹ÙCem GocgorenÏÈÈÝ£¬¹«Ë¾ÒÑÁ¬Ã¦½ÓÄÉÐж¯²¢Ó뾯·½¡¢¹ú¼ÒÍøÂçÇå¾²²¿·ÖÇ×½üÏàÖúÊӲ졣ÏÖÔÚÆÀ¹ÀÏÔʾ£¬Òªº¦Ê¹ÃüϵͳδÊÜÓ°Ï죬µ«ÏêϸÊý¾Ýй¶¹æÄ£¼°ÑÏÖØË®Æ½ÈÔÔÚÈ·ÈÏÖС£¹«Ë¾ÔÝδ¹é×ïÓÚÌØ¶¨ÍþвÐÐΪÕߣ¬Ò²Î´Ì¸ÂÛ¹¥»÷ÄîÍ·¡£Everest×éÖ¯Ðû³Æ£¬ÈôÒªÇó²»±»Öª×㽫¹ûÕæÇÔÈ¡Êý¾Ý¡£ÈðµäµçÁ¦¹«Ë¾Ç¿µ÷£¬´Ë´ÎÊÂÎñδÖÐÖ¹µçÁ¦´«ÊäϵͳÔËÐС£×÷ΪÈÏÕæÌìϵçÁ¦´«ÊäµÄ¹úÓÐÆóÒµ£¬Æä½¹µãʹÃüÊǰü¹ÜµçÍøÎȹÌ¡£ÏÖÔÚ¹«Ë¾ÕýÈ«Á¦ÅäºÏÊӲ죬ÒÔÈ·¶¨Ãü¾Ýй¶ÏêϸӰÏì¹æÄ£¡£


https://therecord.media/sweden-power-grid-operator-data


5. DomeWatch.usÊýǧÇóÖ°ÕßÃô¸ÐÐÅϢ̻¶


10ÔÂ27ÈÕ£¬ÖÚÒéÔºÃñÖ÷µ³¹Ù·½ÔÚÏß¼òÀú¿âDomeWatch.usÒòδ¼ÓÃÜÇÒÎÞÃÜÂë±£»¤µÄÊý¾Ý¿â̻¶£¬µ¼Ö³¬7000ÃûÇóÖ°ÕßСÎÒ˽¼ÒÐÅϢй¶¡£¸ÃÊý¾Ý¿âÓÉÄäÃûÑо¿Ö°Ô±ÏòSafety Detectives±¨¸æºóÆØ¹â£¬Ð¹Â¶ÄÚÈݺ­¸ÇÐÕÃû¡¢µç»°¡¢ÓÊÏä¡¢Çå¾²ÔÊÐí״̬£¨º¬469È˳ÖÓС°×î¸ßÉñÃØ¡±ÔÊÐí£©¡¢Õþµ³¹éÊô£¨6300ÃûÃñÖ÷µ³ÈË¡¢17Ãû¹²ºÍµ³È˼°265Ãû×ÔÁ¦ÈËÊ¿£©¡¢ÆÜÉíµØ¡¢±øÒÛÇéÐμ°Ð¡ÎÒ˽¼Ò¼ò½éµÈÃô¸ÐÐÅÏ¢£¬²¿·Ö¼Í¼ʱ¼ä´ÁÏÔʾΪ2024ÖÁ2025Ä꣬ÓëÍøÕ¾Éù³ÆµÄ¡°¼òÀú½öÉúÑÄ90Ì족±£´æÃ¬¶Ü¡£´Ë´ÎÊÂÎñÒý·¢¶àÖØÇ徲Σº¦¡£Ãô¸ÐÐÅϢй¶ÏÔÖøÔöÌíڲƭÓ붨Ïò¹¥»÷¸ÅÂÊ£¬ÓÈÆäÓµÓÐÇå¾²ÔÊÐíµÄÇóÖ°Õß¿ÉÄܳÉΪ·¸·¨Ä¿µÄ£¬ÃæÁÙÉí·Ýð³ä¡¢¾«×¼ÍøÂç´¹ÂÚµÈÍþв¡£ÍŽáÈ˹¤ÖÇÄܹ¤¾ßÈçÉî¶ÈαÔìÒôƵÌìÉúÆ÷£¬Éç»á¹¤³Ì¹¥»÷Σº¦½øÒ»²½¼Ó¾ç£¬¿ÉÄÜÓÕÆ­ÓÐȨ»á¼ûÕþ¸®ÏµÍ³µÄÖ°Ô±¡£Safety DetectivesÍŶÓÒѽ«Îó²î¼û¸æÓòÃû×¢²á¼°ÊÖÒÕÁªÏµÈË£¬µ±ÈÕ¼´ÏÞÖÆ¹«ÖÚ»á¼û¡£


https://hackread.com/domewatch-leak-capitol-hill-applicants-data/


6. Memento LabsʹÓÃÌØ¹¤Èí¼þDante¹¥»÷¶í°××éÖ¯


10ÔÂ28ÈÕ£¬¶íÂÞË¹ÍøÂçÇå¾²¹«Ë¾¿¨°Í˹»ù¿ËÈÕÐû²¼±¨¸æ£¬Ö¸³öÒâ´óÀûMemento Labs£¨Ô­Hacking Team£©¿ª·¢µÄÉÌÒµÌØ¹¤Èí¼þDanteÒÉËÆ±»ÓÃÓÚ¹¥»÷¶íÂÞ˹¼°°×¶íÂÞ˹×éÖ¯¡£ÊÓ²ìÔ´ÓÚ½ñÄê3ÔÂÕë¶ÔForumTrollºÚ¿Í×éÖ¯µÄÍøÂç´¹ÂÚÐж¯£¬¹¥»÷Õßͨ¹ýαװ¶íÂÞ˹¿ÆÑ§ÂÛ̳ԼÇ뺯µÄÓʼþ£¬ÏòýÌå¡¢¸ßУ¡¢Õþ¸®»ú¹¹¼°½ðÈÚ»ú¹¹·¢Ëͺ¬ChromeÁãÈÕÎó²î£¨CVE-2025-2783£¬ÒÑÓɹȸèÐÞ¸´£©µÄ¶ñÒâÁ´½Ó¡£¿¨°Í˹»ùÔÚ×·×Ù¸ÃÊÂÎñʱ£¬ÓÚ¶àÆð¹ØÁª¹¥»÷Öз¢Ã÷DanteµÄ×Ù¼£¡£ForumTroll×éÖ¯ÒÔÐÑÄ¿¶íÓï¼°ÊìϤÍâµØÌØÉ«Öø³Æ£¬µ«²¿·Ö²Ù×÷ÖеÄÓïÑÔ¹ýʧÌåÏÖ¹¥»÷Õ߷ǶíÓïĸÓïÕß¡£Ö»¹Ü¿¨°Í˹»ùδ·¢Ã÷¿Í»§Ñ¬È¾Dante£¬Ò²Î´È·¶¨Î¯Íз½Éí·Ý¼°Memento LabsÊÇ·ñÖªÇ飬µ«´Ë´ÎΪ2023ÄêDante¹ûÕæºóÊ×´Îʵ°¸¼Í¼¡£ÖµµÃ×¢ÖØµÄÊÇ£¬½üÆÚ¹¥»÷ÖÐʹÓÃÁ˸Ã×éÖ¯×ÔÑй¤¾ßLeetAgent£¨¿É×·ËÝÖÁ2022Ä꣩£¬ÆäÓÐʱ³äµ±DanteµÄ¼ÓÔØÆ÷£¬¶øDanteµÄÊÖÒÕÖØÆ¯ºóÔ¶¸ßÓÚǰÕß¡£


https://therecord.media/memento-labs-formerly-hacking-team-dante-spyware-russia-kaspersky