°ÍÎ÷HariexpressÊý¾Ý¿âÉèÖùýʧй¶17.5ÒÚÌõÓû§¼Í¼
Ðû²¼Ê±¼ä 2021-10-15°ÍÎ÷HariexpressÊý¾Ý¿âÉèÖùýʧй¶17.5ÒÚÌõÓû§¼Í¼
Safety DetectivesÔÚ10ÔÂ13ÈÕÅû¶£¬£¬£¬°ÍÎ÷µçÉ̼¯³Éƽ̨Hariexpressй¶ÁËÁè¼Ý610 GBÊý¾Ý¡£¡£¡£¡£¡£¡£´Ë´ÎÊÂÎñÊÇÓÉÓÚElasticsearchЧÀÍÆ÷ÉèÖùýʧµ¼Öµģ¬£¬£¬ÆäÖаüÀ¨ÁËÁè¼Ý1751023279ÌõÓû§¼Í¼¡£¡£¡£¡£¡£¡£¾ÝÑо¿Ö°Ô±³Æ£¬£¬£¬ËûÃÇÔÚ5ÔÂ12ÈÕ·¢Ã÷ÁËй¶µÄÊý¾Ý£¬£¬£¬¾Ì«¹ýÎöÆäʱÕâЩÊý¾ÝÒѹûÕæÁËÒ»¸ö¶àÔ¡£¡£¡£¡£¡£¡£Ö±ÖÁÏÖÔÚ¸ÃÊý¾Ý¿âÈÔδ»ñµÃ±£»£»£»£»£»£»¤£¬£¬£¬HariexpressҲδ¶Ô´ËÊÂ×÷³ö»ØÓ¦¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/brazilian-marketplace-integrator-hariexpress-records/
°Ä´óÀûÑÇÕþ¸®½«½ÓÄÉɾ³ý±»µÁÎļþµÄ·½·¨½â¾öÊý¾ÝÎÊÌâ
°Ä´óÀûÑÇÕþ¸®ÔÚ10ÔÂ15ÈÕÐû²¼ÁËÒ»ÏîеÄÀÕË÷Èí¼þÐж¯ÍýÏ룬£¬£¬ÊǰĴóÀûÑÇΪÆÚÊ®ÄêµÄ¡¶2020ÄêÍøÂçÇå¾²Õ½ÂÔ¡·ÖеÄÒ»²¿·Ö¡£¡£¡£¡£¡£¡£ÎªÁ˸üÓÐÁ¦µØ¹¥»÷ÀÕË÷Èí¼þ¹¥»÷»î¶¯£¬£¬£¬°Ä´óÀûÑÇÕþ¸®Ðû²¼ÁË¡¶2021Äê¼àÊÓ·¨ÐÞÕý°¸¡·¡£¡£¡£¡£¡£¡£ÆäÖл®¶¨°Ä´óÀûÑÇÁª°î¾¯Ô±ºÍÐÌÊÂÇ鱨ίԱ»áÓÐȨɾ³ýÓë·¸·¨»î¶¯Ïà¹ØµÄÊý¾Ý£¬£¬£¬ÕâÔÊÐíÖ´·¨²¿·Öɾ³ýÔÚÀÕË÷Èí¼þ¹¥»÷ʱ´ú±»µÁ²¢´æ´¢ÔÚ¹¥»÷ÕßЧÀÍÆ÷ÉϵÄÊý¾Ý£¬£¬£¬ÒÔ±ÜÃâÊý¾Ýй¶ÎÊÌâ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/australia-to-tackle-ransomware-data-breaches-by-deleting-stolen-files/
ÔËÓªÉÌVerizonµÄ²¿·ÖÓû§Ôâµ½ÈëÇÖ£¬£¬£¬ÉõÖÁ±»µÁË¢ÐÅÓÿ¨
VerizonÆìϵÄÔËÓªÉÌVisibleÐû²¼ÉùÃ÷£¬£¬£¬ÈÏ¿ÉÔÚÒÑÍù¼¸Ì첿·ÖÓû§µÄÕË»§Ôâµ½ÈëÇÖ¡£¡£¡£¡£¡£¡£Æäʱ£¬£¬£¬ÓÐÓû§·´Ó¦ËûÃǵÄÕË»§ÓпÉÒɻ£¬£¬£¬Ò»Ð©ÈË»¹ÌåÏÖËûÃǵÄÐÅÓÿ¨Òѱ»µÁË¢£¬£¬£¬²¢ÇÒÎÞ·¨»á¼ûÕË»§²¢ÖØÖÃÃÜÂë¡£¡£¡£¡£¡£¡£VisibleÌåÏÖ£¬£¬£¬Æäϵͳ¾ùδÔâµ½ºÚ¿ÍÈëÇÖ£¬£¬£¬»¹½¨ÒéÓû§¼ì²éʹÓÃÁËÏàͬƾ֤µÄÆäËüЧÀÍ£¬£¬£¬ÕâÌåÏÖÓû§¿ÉÄÜÊÇÔâµ½ÁËÆ¾Ö¤Ìî³ä¹¥»÷¡£¡£¡£¡£¡£¡£µ«´ó×ÚVisibleÓû§Ìá³ö£¬£¬£¬È±ÉÙ2FAÑéÖ¤ÊÇÒªº¦Ôµ¹ÊÔÓÉ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/verizon-digital-carrier-visible-customer-accounts-were-hacked/
Sophos·¢Ã÷CryptoRomÕë¶ÔÎ÷Å·iPhoneÓû§µÄթƹ¥»÷
SophosÑо¿Ö°Ô±ÔÚ±¾ÖÜÈýÅû¶ÁËеĹú¼ÊÕ©ÆÍÅ»ïCryptoRom¡£¡£¡£¡£¡£¡£CryptoRomµÄÄ¿µÄÖ÷ÒªÊÇʹÓÃÔ¼»áÓ¦Ó㨰üÀ¨TinderºÍBumble£©µÄiPhoneÓû§£¬£¬£¬¹¥»÷¹æÄ£ÒѾ´ÓÑÇÖÞÀ©Õ¹µ½ÁËÃÀ¹úºÍÅ·ÖÞ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÊ×ÏÈÓÕʹĿµÄÏÂÔØÒ»¸öαÔìµÄµÄ¼ÓÃÜÇ®±ÒÉúÒâÓ¦Ó㬣¬£¬È»ºóÇÔȡĿµÄµÄ¼ÓÃÜÇ®±Ò£¬£¬£¬²¢×°ÖöñÒâÈí¼þÀ´Ô¶³Ì¿ØÖÆÆäÊÖ»ú¡£¡£¡£¡£¡£¡£Ñо¿Åú×¢£¬£¬£¬¹¥»÷ÕßÒѾͨ¹ýÕâÖÖ·½·¨×¬È¡ÁËÊý°ÙÍòÃÀÔª¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/international-cryptocurrency-scam-ring-targets-european-dating-app-users/
KasperskyÐû²¼APT×éÖ¯IronHusky¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ
KasperskyÔÚ10ÔÂ12ÈÕÐû²¼Á˹ØÓÚAPT×éÖ¯IronHusky¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£2021Äê8ÔÂÏÂÑ®ºÍ9ÔÂÉÏÑ®£¬£¬£¬Ñо¿Ö°Ô±¼ì²âµ½ÔÚ¶à¸öWindowsЧÀÍÆ÷ÉÏʹÓÃÁËWin32kÇý¶¯³ÌÐòÖеÄÊͷźóʹÓÃÎó²îCVE-2021-40449µÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¸Ã»î¶¯»¹Ê¹ÓÃÁ˶ñÒâÈí¼þMysterySnail£¬£¬£¬Æä´úÂëµÄÏàËÆÐÔºÍC2µÄÖØÓÃʹµÃÑо¿Ö°Ô±½«´Ë´Î»î¶¯Óë2012ÄêµÄAPT×éÖ¯IronHusky¹ØÁªÆðÀ´¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/mysterysnail-attacks-with-windows-zero-day/104509/
CISAºÍFBIÁªºÏÐû²¼¹ØÓÚË®ÎñÏµÍ³ÍøÂçÍþвµÄÇ徲ͨ¸æ
ÃÀ¹úCISA¡¢FBI¡¢EPAºÍNSAÔÚ10ÔÂ14ÈÕÐû²¼ÁËÁªºÏÍøÂçÇ徲ͨ¸æ(CSA) £¬£¬£¬Ïêϸ˵Ã÷ÎúÃÀ¹úË®Îñϵͳ(WWS)ÐÐÒµËùÃæÁÙµÄÍøÂçÍþв¡£¡£¡£¡£¡£¡£Í¨¸æÇ¿µ÷ÁËÕýÔÚ¾ÙÐеÄÕë¶ÔWWSÐÐÒµµÄITºÍOTÍøÂ硢ϵͳºÍ×°±¸µÄ¹¥»÷»î¶¯£¬£¬£¬¸Ã»î¶¯¿ÉÄÜ»áÓ°ÏìÏà¹Ø¹«Ë¾ÌṩÇåË®¡¢ÒûÓÃË®ºÍÓÐÓô¦Öóͷ£·ÏË®µÄÄÜÁ¦¡£¡£¡£¡£¡£¡£CISA»¹Ðû²¼ÁËWWSÐÐÒµµÄÍøÂçΣº¦ºÍ×ÊÔ´ÐÅϢͼ£¬£¬£¬Ö¸³öÁ˸ÃÐÐÒµÃæÁÙµÄÐÅÏ¢ÊÖÒÕºÍÔËÓªÊÖÒÕΣº¦¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://us-cert.cisa.gov/ncas/current-activity/2021/10/14/ongoing-cyber-threats-us-water-and-wastewater-systems-sector