д¹Âڻð³äMicrosoft TeamsÕë¶ÔOffice 365Óû§£»£»£»£»£»£»Åµ»ùÑÇÍþвÇ鱨ʵÑéÊÒÐû²¼2020ÄêÍþвÇ鱨±¨¸æ
Ðû²¼Ê±¼ä 2020-10-261.д¹Âڻð³äMicrosoft TeamsÕë¶ÔOffice 365Óû§
Abnormal Security·¢Ã÷д¹Âڻð³äMicrosoft TeamsÕë¶ÔOffice 365Óû§¡£¡£¡£¡£¡£¡£ÕâЩ´¹ÂÚÓʼþÊÇÒÔTeamsÖÐÓÐлΪÖ÷Ìâ·¢Ë͵쬣¬£¬£¬£¬¿´ÆðÀ´ÏñÊÇMicrosoft TeamsµÄ×Ô¶¯Í¨Öª£¬£¬£¬£¬£¬ÓÃÀ´¼û¸æÊܺ¦ÕßÓдí¹ýµÄ̸Ìì¡£¡£¡£¡£¡£¡£ÓʼþÓÕʹÊܺ¦Õßµã»÷Team»Ø¸´Á´½Ó£¬£¬£¬£¬£¬ÒÔÖØ¶¨Ïòµ½´¹ÂÚÍøÕ¾£¬£¬£¬£¬£¬À´ÇÔÈ¡Office 365Óû§µÄƾ֤¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÊӲ쵽£¬£¬£¬£¬£¬¹¥»÷ÕßÒѾʹÓøÃÔ˶¯¹¥»÷ÁË15000ÖÁ50000¸öOffice 365Óû§¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/109938/cyber-crime/microsoft-teams-phishing-attacks.html
2.EmotetÆôÓÃÐÂÄ£°å£¬£¬£¬£¬£¬Ê¹ÓðüÀ¨¶ñÒâºêµÄWordÎĵµÈö²¥
Emotet±¾ÖÜÆôÓÃÁËÒ»¸öÐÂÄ£°å£¬£¬£¬£¬£¬¸ÃÄ£°åαװ³ÉMicrosoft OfficeÐÂÎÅ£¬£¬£¬£¬£¬ÒªÇóÓû§¸üÐÂMicrosoft WordÒÔÌí¼Óй¦Ð§¡£¡£¡£¡£¡£¡£EmotetÊÇÒ»ÖÖ¶ñÒâÈí¼þ£¬£¬£¬£¬£¬»áͨ¹ý´øÓжñÒâºêµÄWordÎĵµµÄµç×ÓÓʼþÈö²¥¡£¡£¡£¡£¡£¡£ÎªÁËÓÕÆÓû§ÆôÓú꣬£¬£¬£¬£¬Emotetαװ³ÉMicrosoft OfficeÐÂÎÅ£¬£¬£¬£¬£¬ÒªÇóÓû§ÆôÓÃ±à¼ºÍÆôÓÃÄÚÈÝ£¬£¬£¬£¬£¬ÒÔÖ´ÐжñÒâºê¡£¡£¡£¡£¡£¡£ÕâЩ¶ñÒâºê½«ÏÂÔØEmotet¶ñÒâÈí¼þ£¬£¬£¬£¬£¬²¢½«Æä×°Öõ½Êܺ¦Õߵģ¥LocalAppData£¥Îļþ¼ÐÖС£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/emotet-malware-now-wants-you-to-upgrade-microsoft-word/
3.·ÒÀ¼VastaamoÐÄÖÎÁÆÖÐÐÄÔâ¹¥»÷£¬£¬£¬£¬£¬¿Í»§ÐÅÏ¢¿ÉÄܱ»µÁ
·ÒÀ¼VastaamoÐÄÖÎÁÆÖÐÐÄÔâ¹¥»÷£¬£¬£¬£¬£¬¿Í»§ÐÅÏ¢¿ÉÄܱ»µÁ¡£¡£¡£¡£¡£¡£VastaamoÊÇ·ÒÀ¼¹«¹²ÎÀÉúϵͳµÄ·Ö°üÉÌ£¬£¬£¬£¬£¬ÔÚ±±Å·¹ú¼ÒÓÐ550Íò·ÖÖ§»ú¹¹¡£¡£¡£¡£¡£¡£·ÒÀ¼ÄÚÕþ²¿³¤Maria Ohisalo³Æ£¬£¬£¬£¬£¬´Ë´ÎÊÂÎñÊÇÁîÈËÕð¾ªÇÒºÜÊÇÑÏÖØµÄÊÂÎñ£¬£¬£¬£¬£¬Õþ¸®ÕýÔÚΪ´Ë´ÎÊÂÎñµÄÊܺ¦ÕßÌṩ¿ìËÙµÄΣ»£»£»£»£»£»úÔ®Öú¡£¡£¡£¡£¡£¡£VastaamoÌåÏÖµÚÒ»´Î¹¥»÷±¬·¢ÔÚ2018Äê11Ô£¬£¬£¬£¬£¬ÆäÊý¾ÝÔÚ11ÔÂβÖÁ´ÎÄê3ÔÂÖ®¼ä±»ÇÔÈ¡¡£¡£¡£¡£¡£¡£¹ú¼ÒÊÓ²ì¾ÖÌåÏÖ£¬£¬£¬£¬£¬ÉÏÍòÃûVastaamo¿Í»§µÄСÎÒ˽¼ÒÊý¾Ý»òÒѱ»µÁ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/finland-shocked-therapy-center-hacking-client-blackmail
4.TrustwaveÐû²¼ÊÖÒÕÇ÷ÊÆÓ°ÏìÆóÒµ·À»¤Õ½ÂÔµÄÆÊÎö±¨¸æ
TrustwaveÐû²¼ÁËÒ»·Ý±¨¸æ£¬£¬£¬£¬£¬ÐÎòÁËÊÖÒÕÇ÷ÊÆ¡¢¹¥»÷Σº¦ºÍ¹æÔòÔõÑùÓ°Ïì×éÖ¯Êý¾ÝµÄ´æ´¢ºÍ±£»£»£»£»£»£»¤·½·¨¡£¡£¡£¡£¡£¡£ÊӲ췢Ã÷£¬£¬£¬£¬£¬Ëæ×ÅÊÂÇé¸ºÔØÏòÍâǨáã¡¢¶ÔÔÆÐ§À͵Ĺ¥»÷ÔöÌíÒÔ¼°ÀÕË÷Èí¼þµÄÉú³¤£¬£¬£¬£¬£¬ÆóÒµÔÚ±£»£»£»£»£»£»¤Êý¾ÝÇå¾²·½ÃæÃæÁÙÖØ´óѹÁ¦¡£¡£¡£¡£¡£¡£96%µÄÊÜ·ÃÕßÌåÏÖ£¬£¬£¬£¬£¬ËûÃÇÍýÏëÔÚδÀ´Á½ÄêÄÚ½«Ãô¸ÐÊý¾Ý×ªÒÆµ½ÔÆÉÏ£¬£¬£¬£¬£¬ÆäÖÐ52%µÄÊÜ·ÃÕßÍýÏ뽫¸ßÃô¸ÐÊý¾Ý°üÀ¨ÔÚÄÚ¡£¡£¡£¡£¡£¡£µ±±»Îʼ°ÔÚÊý×ÖתÐÍÍýÏëÖÐÈ·±£Êý¾ÝÇå¾²µÄÖ÷ÒªÐÔʱ£¬£¬£¬£¬£¬Æ½¾ùµÃ·ÖΪ4.6·Ö(Âú·ÖΪ5·Ö)¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.helpnetsecurity.com/2020/10/22/organizations-data-protection-strategy/
5.ŵ»ùÑÇÍþвÇ鱨ʵÑéÊÒÐû²¼2020ÄêÍþвÇ鱨±¨¸æ
ŵ»ùÑÇÍþвÇ鱨ʵÑéÊÒÐû²¼2020ÄêÍþвÇ鱨±¨¸æ£¬£¬£¬£¬£¬³ÆIoTѬȾÊÂÎñ¼±¾çÔöÌí¡£¡£¡£¡£¡£¡£±¨¸æÏÔʾ£¬£¬£¬£¬£¬ÔÚÒÆ¶¯ºÍWi-FiÍøÂçÉϵÄËùÓÐѬȾÖУ¬£¬£¬£¬£¬IoT×°±¸ËùÕ¼±ÈÀýΪ32.72%£¬£¬£¬£¬£¬¸ßÓÚ2019ÄêµÄ16.17%£¬£¬£¬£¬£¬ÕâÒ»Ç÷ÊÆÓëÁªÍø×°±¸¼ÌÐøÔÚ¼ÒÍ¥ºÍÆóÒµÇéÐÎÖÐÆÕ¼°ÏàÎǺϡ£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬PCsΪѬȾÖ÷ҪĿµÄ£¬£¬£¬£¬£¬Windows/pcÔÚËùÓÐѬȾÖÐÕ¼38.92%£¬£¬£¬£¬£¬±È2019ÄêµÄ35.82%ÂÔÓÐÉÏÉý¡£¡£¡£¡£¡£¡£Ä¾ÂíµÄ±ÈÀý´Ó2019ÄêµÄ34%ÉÏÉýµ½74%£¬£¬£¬£¬£¬¶øÈ䳿ºÍ²¡¶¾µÄÏà±ÈÕÕÀý¶¼ÓÐËùϽµ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://onestore.nokia.com/asset/210088
6.ÃÀ¹úBoyne ResortsѬȾWastedLocker£¬£¬£¬£¬£¬Ô¤¶©ÏµÍ³ÊÜÓ°Ïì
Boyne ResortsÔâµ½WastedLockerÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬Ó°ÏìÁËÕû¸ö¹«Ë¾µÄÔ¤¶©ÏµÍ³¡£¡£¡£¡£¡£¡£Boyne ResortsÊÇ×ܲ¿Î»ÓÚÃÀ¹úµÄ»¬Ñ©ºÍ¸ß¶û·ò¶È¼Ù´å£¬£¬£¬£¬£¬ÔÚÃÀ¹úºÍ¼ÓÄôóı»®11¼ÒÂùݣ¬£¬£¬£¬£¬²¢ÓµÓÐ11000ÃûÔ±¹¤¡£¡£¡£¡£¡£¡£×÷Ϊ´Ë¹¥»÷µÄÒ»²¿·Ö£¬£¬£¬£¬£¬¸Ã¹«Ë¾±»¼ÓÃܵÄÎļþÒѱ»ÖØÃüÃû£¬£¬£¬£¬£¬²¢Ìí¼ÓÁË.easy2lock À©Õ¹Ãû¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬Õû¸ö¹«Ë¾µÄÔ¤¶©ÏµÍ³¶¼Êܵ½¹¥»÷µÄÓ°Ï죬£¬£¬£¬£¬¿Í»§ÎÞ·¨Í¨¹ý¸÷ÂùݵÄÔÚÏßϵͳԤ¶¨¡£¡£¡£¡£¡£¡£Boyne ResortsûÓлظ´Óйش˴ι¥»÷µÄ¸ü¶àϸ½Ú£¬£¬£¬£¬£¬µ«ÆäÔ¤¶©ÏµÍ³»òÐí½«Ôٹرռ¸Ìì¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/wastedlocker-ransomware-hits-boyne-resorts-ski-resort-operator/