ÈÕ±¾¾ü¹¤ÆóÒµ´¨ÆéÖØ¹¤Ôâµ½¹¥»÷£¬ £¬£¬»ò½«µ¼ÖÂÊý¾Ýй¶£»£»£»Á¢ÌÕÍð¹ú¼Ò¹«¹²ÎÀÉúÖÐÐÄѬȾEmotet£¬ £¬£¬ÏµÍ³ÔÝʱ¹Ø±Õ

Ðû²¼Ê±¼ä 2020-12-31
1.ÈÕ±¾¾ü¹¤ÆóÒµ´¨ÆéÖØ¹¤Ôâµ½¹¥»÷£¬ £¬£¬»ò½«µ¼ÖÂÊý¾Ýй¶


1.png


ÈÕ±¾¾ü¹¤ÆóÒµ´¨ÆéÖØ¹¤Ôâµ½¹¥»÷£¬ £¬£¬»ò½«µ¼ÖÂÊý¾Ýй¶¡£¡£¡£´¨ÆéÖØ¹¤£¨Kawasaki£©³Æ£¬ £¬£¬2020Äê6ÔÂ11ÈÕÓÐδ¾­ÊÚȨµÄµÚÈý·½´ÓÌ©¹úЧÀÍ´¦»á¼ûÁËÈÕ±¾µÄЧÀÍÆ÷£¬ £¬£¬ÔÚ·¢Ã÷¸ÃÎÊÌâºóÁ½¸öÕ¾µãÖ®¼äµÄËùÓÐͨѶ¶¼±»×èÖ¹¡£¡£¡£Ëæºó£¬ £¬£¬¸Ã¹«Ë¾ÓÖ·¢Ã÷ÁËÆäËûÍâÑóÕ¾µã£¨Ó¡¶ÈÄáÎ÷ÑÇ¡¢·ÆÂɱöºÍÃÀ¹ú£©Î´¾­ÊÚȨ»á¼ûÈÕ±¾Ð§ÀÍÆ÷µÄÇéÐΣ¬ £¬£¬²¢ÇжÏͨѶ¡£¡£¡£´¨Æé³Æ´Ë´Î¹¥»÷ʹÓÃÁËÏȽøÊÖÒÕ¶øÃ»ÓÐÁôÏÂÈκκۼ£ºÍÖ¤¾Ý£¬ £¬£¬µ«¹«Ë¾Êý¾Ý»òÐíÒѾ­Ð¹Â¶¡£¡£¡£ËùÓб»ÖÕÖ¹µÄͨѶÓÚ11ÔÂ30ÈÕ»Ö¸´Õý³£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/112765/data-breach/kawasaki-heavy-industries-cyber-attack.html


2.Á¢ÌÕÍð¹ú¼Ò¹«¹²ÎÀÉúÖÐÐÄѬȾEmotet£¬ £¬£¬ÏµÍ³ÔÝʱ¹Ø±Õ


2.png


Á¢ÌÕÍð¹ú¼Ò¹«¹²ÎÀÉúÖÐÐÄ£¨NVSC£©ºÍ¼¸¸ö¶¼»áµÄÄÚÍøÑ¬È¾Á˶ñÒâÈí¼þEmotet£¬ £¬£¬ÏµÍ³ÔÝʱ¹Ø±Õ¡£¡£¡£NVSC³Æ£¬ £¬£¬ºÚ¿Íͨ¹ý»Ø¸´µÄÓʼþ·Ö·¢¶ñÒâÈí¼þ£¬ £¬£¬Ê¹ÓÃÁËÊÜÃÜÂë±£»£»£»¤¸½¼þ²¢½«ÃÜÂë·ÅÔÚÓʼþÕýÎÄÄÚ£¬ £¬£¬ÒÔÈÆ¹ýɱ¶¾Èí¼þµÄ¼ì²â¡£¡£¡£ÊÜѬȾµÄÅÌËã»úÔÚÏÂÔØ¶ñÒâÈí¼þºó»áÁ¬Ã¦·¢ËÍÐéαµç×ÓÓʼþ»ò¾ÙÐÐÆäËû¶ñÒâ»î¶¯¡£¡£¡£NVSCµç×ÓÓʼþϵͳÒÑÔÚ±¾Öܶþ×îÏÈÔÝʱ¹Ø±Õ£¬ £¬£¬ÒÔ×èÖ¹¸Ã²¡¶¾µÄ½øÒ»²½Èö²¥¡£¡£¡£ÕâÊǽñÄêµÚ¶þ´ÎÕë¶ÔÁ¢ÌÕÍðµÄ´óÐÍEmotet¹¥»÷»î¶¯£¬ £¬£¬µÚÒ»´Î±¬·¢ÓÚ10Ô·Ý¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/emotet-malware-hits-lithuanias-national-public-health-center/    


3.¼ÓÃÜÇ®±Òƽ̨VoyagerµÄDNSÉèÖÃÔâµ½¸Ä¶¯£¬ £¬£¬ÉúÒâÔÝÍ£


3.png


¼ÓÃÜÇ®±Òƽ̨VoyagerµÄDNSÉèÖÃÔâµ½¸Ä¶¯£¬ £¬£¬µ¼ÖÂÉúÒâÔÝÍ£¡£¡£¡£Voyager Digital LLCÊÇÒ»ÖÖ¼ÓÃÜÇ®±Ò¾­¼Íƽ̨£¬ £¬£¬ÔÊÐíͶ×ÊÕß¾ÙÐÐ×ʲúÉúÒâ¡£¡£¡£12ÔÂ28ÈÕ¸ÃÆ½Ì¨Í»È»¹Ø±Õ£¬ £¬£¬²¢Ðû²¼Ä¿½ñÕýÔÚ¾ÙÐÐά»¤¡£¡£¡£VoyagerËæºó͸¶ÆäÔâµ½Á˹¥»÷£¬ £¬£¬DNSÉèÖÃÔâµ½¸Ä¶¯£¬ £¬£¬²¢Î´Í¸Â©Óйش˴ι¥»÷µÄ¸ü¶àÏêϸÐÅÏ¢¡£¡£¡£VoyagerÓ¦ÓÃÔÚÖØÐÂÉÏÏߺóµÇ³öÁËËùÓÐÓû§£¬ £¬£¬²¢½¨ÒéËûÃÇÖØÖÃÃÜÂë²¢ÉèÖÃ2FA¡£¡£¡£±ðµÄ£¬ £¬£¬VoyagerÌåÏÖ¹¥»÷δÀֳɣ¬ £¬£¬Óû§ËùÓÐ×ʽðºÍ¼ÓÃÜÇ®±Ò¶¼ÊÇÇå¾²µÄ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/voyager-cryptocurrency-broker-halted-trading-due-to-cyberattack/


4.ºÚ¿ÍÔÚ°µÍøÐ¹Â¶½ðÈÚ¹«Ë¾StaircaseµÄÃô¸ÐÊý¾Ý


4.png


ºÚ¿ÍÔÚ°µÍøÐ¹Â¶°Â¿ËÀ¼½ðÈÚ¹«Ë¾StaircaseµÄÃô¸ÐÊý¾Ý¡£¡£¡£±¾Ô³õStaircaseÔâµ½NetWalkerµÄ¹¥»÷£¬ £¬£¬²¢±»ÀÕË÷Ô¼15ÍòÃÀÔª¡£¡£¡£Òòδ׼ʱ֧¸¶Êê½ð£¬ £¬£¬ÏÖÔÚºÚ¿ÍÒÑÔÚ¶à¸öµÚÈý·½Îļþ¹²ÏíÍøÕ¾ÉϹûÕæµÁ×ßµÄÊý¾Ý¡£¡£¡£¸Ã¹«Ë¾³Æ£¬ £¬£¬ÏÖÔÚÒѽ«´Ë´Î×ß©ÊÂÎñ¼û¸æÆä¿Í»§£¬ £¬£¬²¢ÔÚЭÖúÍâµØ¾¯·½¶Ô´ËʾÙÐÐÊӲ졣¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.stuff.co.nz/business/industries/123831316/hackers-publish-client-data-stripped-from-auckland-financial-services-company-on-dark-web


5.NZBGeekÒòÔâµ½¹¥»÷ÍøÕ¾å´»ú£¬ £¬£¬Óû§Êý¾Ý±»µÁ


5.png


NZBGeekÒòÔâµ½¹¥»÷µ¼ÖÂÍøÕ¾å´»ú£¬ £¬£¬Óû§Êý¾Ý±»µÁ¡£¡£¡£NZBGeekÊÇÒ»¸öÌṩË÷ÒýЧÀͺÍÎļþ¹²ÏíµÄ˽ÈËÉçÇø£¬ £¬£¬ÌṩÁËÁè¼Ý50Íò¸öNZBË÷Òý¡£¡£¡£¸Ã¹«Ë¾Í¸Â¶£¬ £¬£¬ºÚ¿ÍʹÓÃSQLÎó²îºÍ»ùÓÚJavascriptµÄ¼üÅ̼ͼ³ÌÐòÇÔÈ¡ÁËÊý¾Ý¿âµÄ¸±±¾£¬ £¬£¬ÆäÖаüÀ¨Óû§Ãû¡¢ÃÜÂë¡¢µç×ÓÓʼþµØµãºÍ×îºóÅþÁ¬µÄIPµØµã¡£¡£¡£±ðµÄ£¬ £¬£¬ÔÚ±¬·¢¹¥»÷ʱËûÃǵÄË÷ÒýÆ÷ºÍAPIЧÀÍÆ÷ÉϵÄÓ²ÅÌÇý¶¯Æ÷¾ù·ºÆðÁ˹ÊÕÏ£¬ £¬£¬µ¼ÖÂÍøÕ¾å´»ú¡£¡£¡£¸Ã¹«Ë¾ÕýÔÚÊÓ²ì´ËÊÂÎñ£¬ £¬£¬ÏÖÔÚ³ýAPIÍ⣬ £¬£¬ËùÓÐϵͳÈÔ´¦ÓÚÀëÏß״̬¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/usenet-indexer-nzbgeek-hacked-database-stolen/


6.WasabiÔÆ´æ´¢Ð§ÀÍÒòDNSÆÊÎöÎÊÌâµ¼ÖÂÖÐÖ¹13¸öСʱ


6.png


WasabiÔÆ´æ´¢Ð§ÀÍÒòDNSÆÊÎöÎÊÌâµ¼ÖÂÖÐÖ¹13¸öСʱ¡£¡£¡£12ÔÂ28ÈÕÏÂÖç2:30 ESTÓû§·¢Ã÷ÎÞ·¨»á¼ûwasabisys.comÉϵĴ洢Ͱ£¬ £¬£¬WasabiÔÚÖÐÖ¹±¨¸æÖгÆÊÇÓÉÓÚDNSÆÊÎöÎÊÌâµ¼Ö¡£¡£¡£¾ÝϤ£¬ £¬£¬¸Ãƽ̨Óû§ÉÏ´«Á˶ñÒâÈí¼þ£¬ £¬£¬ÆäÓòÃû³Æ×¢²áÉÌ·¢Ã÷ºóÏëҪͨ¹ýµç×ÓÓʼþ֪ͨWasabi£¬ £¬£¬È´°Ñ±¨¸æ×ª·¢µ½Á˹ýʧµÄµØµã£¬ £¬£¬Ê¹µÃWasabiδ»ñµÃ֪ͨ¡£¡£¡£¶ø¸Ã×¢²áÉÌÒòδ»ñµÃ»Ø¸´¶øÔÝÍ£Á˸ÃÓò£¬ £¬£¬WasabiÔÚµÃÖª¸ÃÊÂÎñºóɾ³ýÁËÍйܶñÒâÈí¼þ²¢ÒªÇóÖØÐ¼¤»î¸ÃÓò£¬ £¬£¬Æ½Ì¨ÔÚ12ÔÂ29ÈÕÏÂÖç12:57 ESTÖÕÓÚ»ñµÃ»Ö¸´¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/wasabi-cloud-storage-service-knocked-offline-for-hosting-malware/