Ragnar LockerÍÅ»ï¹ûÕæADATA£¨Íþ¸Õ£©700GBÊý¾Ý£»£»£»£»£»£»£»Ñо¿ÍŶÓÔÚPyPI´æ´¢¿â·¢Ã÷¶à¸öÓÃÓÚÍÚ¿óµÄ¶ñÒâÈí¼þ°ü

Ðû²¼Ê±¼ä 2021-06-23

1.Ragnar LockerÍÅ»ï¹ûÕæADATA£¨Íþ¸Õ£©700GBÊý¾Ý


1.jpg


ÀÕË÷ÍÅ»ïRagnar LockerÍÅ»ïÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾¹ûÕæÖйų́ÍåÄÚ´æºÍ´æ´¢Ð¾Æ¬ÖÆÔìÉÌADATA£¨Íþ¸Õ£©Áè¼Ý700GBµÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£²»¾Ãǰ£¬£¬£¬£¬£¬£¬£¬¸ÃÍÅ»ïÉù³Æ´ÓADATAÇÔÈ¡Á˰üÀ¨²ÆÎñÎļþ¡¢ÌõÔ¼¡¢±£ÃÜЭÒéµÈÆäËûÎļþÔÚÄÚµÄ1.5TBÃô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£¡£´Ë´Î×ܹ²Ê¹ÓÃMEGA´æ´¢Ð§À͹ûÕæÁË13¸öÎļþ¼Ð£¬£¬£¬£¬£¬£¬£¬ÆäÖÐ×î´óµÄÎļþ¿¿½ü300GB£¬£¬£¬£¬£¬£¬£¬¿ÉÊÇÆ¾Ö¤ÆäÃû³ÆÎÞ·¨È·¶¨Ëü¿ÉÄܰüÀ¨µÄÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£ÕâÊÇRagnar Locker¹ûÕæµÄµÚ¶þÅúÓйØADATAµÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬ÔÚ±¾Ô³õ¸ÃÍŻﻹ¹ûÕæÁË4¸ö7-zip´æµµ£¬£¬£¬£¬£¬£¬£¬×ܹ²²»µ½250MB¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/119196/cyber-crime/ragnar-locker-ransomware-adata.html


2.Ñо¿ÍŶÓÔÚPyPI´æ´¢¿â·¢Ã÷¶à¸öÓÃÓÚÍÚ¿óµÄ¶ñÒâÈí¼þ°ü


2.jpg


Ñо¿ÍŶÓÔÚPythonÏîÄ¿µÄPyPI¿âÖз¢Ã÷ÁË6¸ö¶ñÒâÈí¼þ°ü£¬£¬£¬£¬£¬£¬£¬¿ÉÒÔ½«¿ª·¢Ö°Ô±µÄÅÌËã»úÄð³É¿ó»ú¡£¡£¡£¡£¡£¡£¡£ËùÓжñÒâÈí¼þ°ü¾ùÓÉͳһÓû§¡°nedog123¡±Ðû²¼£¬£¬£¬£¬£¬£¬£¬»®·ÖΪmaratlib¡¢maratlib1¡¢matplatlib-plus¡¢mllearnlib¡¢mplatlibºÍlearninglib£¬£¬£¬£¬£¬£¬£¬ÆäÖд󲿷ֵÄÃû³Æ¶¼ÊÇÕýµ±»æÍ¼Èí¼þmatplotlibµÄƴд¹ýʧ°æ±¾£¬£¬£¬£¬£¬£¬£¬ºÚ¿Íͨ¹ýÕâÖÖ·½·¨À´ÓÕÆ­¿ª·¢Ö°Ô±ÏÂÔØ¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ¶ñÒâ´úÂë¶¼ÔÚsetup.pyÎļþÖУ¬£¬£¬£¬£¬£¬£¬Ëü»áÔÚGitHub´æ´¢¿âÏÂÔØBash¾ç±¾(aza2.sh)£¬£¬£¬£¬£¬£¬£¬¸Ã¾ç±¾µÄ×÷ÓÃÊÇÔÚÄ¿µÄ»úеÉÏÔËÐеļÓÃÜ¿ó¹¤Ubqminer¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/malicious-pypi-packages-hijack-dev-devices-to-mine-cryptocurrency/


3.Ñо¿Ö°Ô±·¢Ã÷еĴ¹Âڻ·Ö·¢Agent TeslaбäÌå


3.jpg


BitdefenderµÄÑо¿Ö°Ô±·¢Ã÷ÐÂÒ»ÂֵĴ¹Âڻ·Ö·¢Agent TeslaбäÌå¡£¡£¡£¡£¡£¡£¡£Agent Tesla RATÒѾ­±£´æÖÁÉÙÆßÄ꣬£¬£¬£¬£¬£¬£¬¾­³£±»ÓÃÓÚÇÔÈ¡Óû§Æ¾Ö¤¡¢ÃÜÂëºÍÃô¸ÐÐÅÏ¢µÄÍøÂç´¹Âڻ¡£¡£¡£¡£¡£¡£¡£´Ë´Î»î¶¯ÒÔCOVID-19ÒßÃç½ÓÖÖÍýÏë×÷ΪÓÕ¶ü£¬£¬£¬£¬£¬£¬£¬¶ñÒ⸽¼þÊÇÒ»¸ö.rtfÎĵµ£¬£¬£¬£¬£¬£¬£¬¸ÃÎĵµÊ¹ÓÃÁËÒÑÖªµÄMicrosoft OfficeÎó²î(CVE-2017-11882)£¬£¬£¬£¬£¬£¬£¬»áÏÂÔØ²¢Ö´ÐÐAgent TeslaбäÌå¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬´ó´ó¶¼¹¥»÷ËÆºõÔ´×ÔÔ½ÄϵÄIPµØµã£¬£¬£¬£¬£¬£¬£¬²¢ÇÒ50%µÄ¶ñÒâÓʼþ±»·¢Ë͵½º«¹úµÄIPµØµã¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/agent-tesla-covid-vax-phish/167082/    


4.TorÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´¿É¿çä¯ÀÀÆ÷¸ú×ÙÓû§µÄÎó²î


4.jpg


TorÒÑÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´¿É¿çä¯ÀÀÆ÷¸ú×ÙÓû§µÄÎó²î¡£¡£¡£¡£¡£¡£¡£½ñÄê5Ô£¬£¬£¬£¬£¬£¬£¬Ö¸ÎÆÊ¶±ð¹«Ë¾FingerprintJSÅû¶ÁËä¯ÀÀÆ÷×Ô½ç˵ЭÒé´¦Öóͷ£³ÌÐòÖеĺ鷺Îó²î£¬£¬£¬£¬£¬£¬£¬¿ÉÒÔ¿çGoogle Chrome¡¢Edge¡¢Tor¡¢FirefoxºÍSafariµÈä¯ÀÀÆ÷¸ú×ÙÓû§¡£¡£¡£¡£¡£¡£¡£TorÏîĿͨ¹ý½«¡°network.protocol-handler.external¡±ÉèÖÃΪfalseÀ´ÐÞ¸´´ËÎó²î£¬£¬£¬£¬£¬£¬£¬ÕâÑùÉèÖÿÉÒÔ×èÖ¹ä¯ÀÀÆ÷½«Ìض¨URLµÄ´¦Öóͷ£×ª´ï¸øÍⲿӦÓóÌÐò¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/tor-browser-fixes-vulnerability-that-tracks-you-using-installed-apps/


5.ÃÀ¹úLucky Star¶Ä³¡Ñ¬È¾ÀÕË÷Èí¼þ£¬£¬£¬£¬£¬£¬£¬ÓªÒµ³¡ºÏ¹Ø±Õ


5.jpg


ÃÀ¹úLucky Star¶Ä³¡Ñ¬È¾ÀÕË÷Èí¼þ£¬£¬£¬£¬£¬£¬£¬È«¶í¿ËÀ­ºÎÂíÖݵÄÓªÒµ³¡ºÏ¹Ø±Õ¡£¡£¡£¡£¡£¡£¡£Lucky StarÓÚÉÏÖÜÁùÔÚÆäFacebookÉÏÐû²¼½«¹Ø±ÕÆäÔÚ¶í¿ËÀ­ºÎÂíÖݵÄËùÓÐÓªÒµ³¡ºÏ£¬£¬£¬£¬£¬£¬£¬Ö®ºó£¬£¬£¬£¬£¬£¬£¬ÓÖÓÚ±¾ÖÜÒ»ÌåÏÖ£¬£¬£¬£¬£¬£¬£¬ÆäÔâµ½ÁËÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬¸Ã¶Ä³¡ÈÔÔڹرÕÖС£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖËüÒѾ­ÁªÏµÁ˰üÀ¨Áª°îÊÓ²ì¾ÖÔÚÄÚµÄÖ´·¨²¿·Ö¶Ô´ËÊÂÕö¿ªÊӲ죬£¬£¬£¬£¬£¬£¬ÉÐÎÞÓйش˴ι¥»÷µÄÏêϸÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.databreaches.net/ok-lucky-star-casino-confirmed-it-suffered-ransomware-attack/


6.Check PonitÐû²¼ÔõÑùÔöǿҽÁÆ»ú¹¹µÄÇå¾²µÄ±¨¸æ


6.jpg


Check PonitÐû²¼ÁËÓйØÔõÑùÔöǿҽÁÆ»ú¹¹µÄÎïÁªÍøÇå¾²µÄ±¨¸æ¡£¡£¡£¡£¡£¡£¡£¸Ã±¨¸æÌ½ÌÖÁËÎïÁªÍøÕýÔڸıäÒ½ÁÆÐÐÒµµÄһЩ·½·¨£¬£¬£¬£¬£¬£¬£¬È»ºóÈ·¶¨Ò½ÁÆÇéÐÎÖÐÅþÁ¬×°±¸´øÀ´µÄһЩDZÔÚÎÊÌâ¡£¡£¡£¡£¡£¡£¡£¾ÝÔ¤¼Æ£¬£¬£¬£¬£¬£¬£¬µ½2025Ä꣬£¬£¬£¬£¬£¬£¬È«ÇòÎïÁªÍøÊг¡½«ÔöÌíµ½5343ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£¡£¹¥»÷Ôì³ÉµÄËðʧÊǾªÈ˵ģºÒ½ÔºÆ½¾ùÆÆ·Ñ430ÃÀÔªÀ´»ñȡй¶ÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬2019ÄêÕë¶ÔÒ½ÁÆ»ú¹¹µÄÒ»´ÎÎïÁªÍø¹¥»÷µÄƽ¾ùËðʧΪ346205ÃÀÔª¡£¡£¡£¡£¡£¡£¡£Ò½ÁÆÐÐÒµµÄ×éÖ¯Ó¦¸Ã¼á³ÖËùÓÐ×°±¸µÄ¿É¼û¡¢ÊµÊ±ÐÞ¸´Îó²îºÍÁãÐÅÈÎÍøÂç·Ö¶Î¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://blog.checkpoint.com/2021/06/21/how-to-tighten-iot-security-for-healthcare-organization/