ÃÀ¹ú¹ú·À²¿Ð§ÀÍÆ÷ÉèÖùýʧԼ3TBÄÚ²¿µç×ÓÓʼþй¶

Ðû²¼Ê±¼ä 2023-02-28

1¡¢ÃÀ¹ú¹ú·À²¿Ð§ÀÍÆ÷ÉèÖùýʧԼ3TBÄÚ²¿µç×ÓÓʼþй¶


¾ÝýÌå2ÔÂ23ÈÕ±¨µÀ£¬£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ÃÀ¹ú¹ú·À²¿Ò»¸öÉèÖùýʧµÄЧÀÍÆ÷¡£¡£¡£¡£¡£Ì»Â¶µÄЧÀÍÆ÷ÍйÜÔÚ΢ÈíµÄAzureÔÆÉÏ£¬£¬£¬£¬£¬¹©¹ú·À²¿¿Í»§Ê¹Óᣡ£¡£¡£¡£ËüÊÇÄÚ²¿ÓÊÏäϵͳµÄÒ»²¿·Ö£¬£¬£¬£¬£¬´æ´¢ÁËÔ¼3TB µÄÄÚ²¿µç×ÓÓʼþ£¬£¬£¬£¬£¬ÆäÖÐÐí¶àÉæ¼°ÃÀ¹úÌØÖÖ×÷ս˾Á»òUSSOCOM¡£¡£¡£¡£¡£¸ÃÉèÖùýʧµÄЧÀÍÆ÷ûÓÐÃÜÂ룬£¬£¬£¬£¬ÈκÎÈË¿Éͨ¹ýä¯ÀÀÆ÷»á¼ûÓÊÏäÊý¾Ý£¬£¬£¬£¬£¬Ö»ÐèÖªµÀÆäIPµØµã¼´¿É¡£¡£¡£¡£¡£¸ÃЧÀÍÆ÷ÓÚ2ÔÂ8ÈÕÊ״α»·¢Ã÷£¬£¬£¬£¬£¬ÏÖÔÚÒѱ»±£»£»£»£»£»£»£»¤ÆðÀ´¡£¡£¡£¡£¡£


https://www.theregister.com/2023/02/23/azure_dod_emails_exposed/


2¡¢LastPass³ÆDevOps¹¤³ÌʦµÄ¼ÒÓõçÄÔ±»Ö²Èë¶ñÒâÈí¼þ


2ÔÂ27ÈÕ±¨µÀ£¬£¬£¬£¬£¬ÃÜÂëÖÎÀíÈí¼þ¹«Ë¾LastPass³ÆºÚ¿ÍÔÚµÚ¶þ´Î¹¥»÷ÖÐÈëÇÖÁËDevOps¹¤³ÌʦµÄСÎÒ˽¼Ò¼ÒÓÃÅÌËã»ú¡£¡£¡£¡£¡£µÚ¶þ´Î¹¥»÷µÄʱ¼ä¿ç¶È´Ó2022Äê8ÔÂ12ÈÕµ½10ÔÂ26ÈÕ£¬£¬£¬£¬£¬¹¥»÷ÕßѸËÙµØÊ¹ÓÃÁ˵ÚÒ»´ÎÊÂÎñÖÐй¶µÄÐÅÏ¢£¬£¬£¬£¬£¬ÔÚLastPassÍŶÓÍê³ÉÖØÖÃ֮ǰ´ÓÔÆ´æ´¢×ÊÔ´ÖÐÇÔÈ¡Êý¾Ý¡£¡£¡£¡£¡£È¡Ö¤·¢Ã÷£¬£¬£¬£¬£¬Ò»ÃûDevOps¹¤³ÌʦµÄ¼ÒÍ¥µçÄÔ±»ÈëÇÖ£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓõÚÈý·½Ã½ÌåÈí¼þ°üÖеÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬ÔÚ¸ÃÔ±¹¤µÄСÎÒ˽¼ÒµçÄÔÉÏÖ²ÈëÁ˼üÅ̼ͼ¶ñÒâÈí¼þ£¬£¬£¬£¬£¬²¢²¶»ñÁËËûµÄÖ÷ÃÜÂë¡£¡£¡£¡£¡£


https://www.securityweek.com/lastpass-says-devops-engineer-home-computer-hacked/


3¡¢News Corp͸¶ºÚ¿ÍÁ½Äêǰ¾ÍÒÑ»ñµÃÆäϵͳµÄ»á¼ûȨ


¾Ý2ÔÂ24ÈÕ±¨µÀ£¬£¬£¬£¬£¬¹«¹²´«Ã½ºÍ³öÊ鹫˾News Corp͸¶£¬£¬£¬£¬£¬ºÚ¿ÍÔÚÁ½ÄêǰÊ״λñµÃÁËÆäϵͳµÄ»á¼ûȨÏÞ¡£¡£¡£¡£¡£¾ÝÊӲ죬£¬£¬£¬£¬ÔÚ2020Äê2ÔÂÖÁ2022Äê1Ô£¬£¬£¬£¬£¬Î´¾­ÊÚȨµÄµÚÈý·½´Ó±»Ó°ÏìϵͳµÄÔ±¹¤ÕË»§ÖлñÈ¡Á˲¿·ÖÉÌÒµÎļþºÍµç×ÓÓʼþ£¬£¬£¬£¬£¬ÆäÖÐһЩ°üÀ¨Ð¡ÎÒ˽¼ÒÐÅÏ¢£¬£¬£¬£¬£¬ÈçÀ¨ÐÕÃû¡¢Éç»áÇå¾²ºÅÂë¡¢²ÆÎñÕË»§ÐÅÏ¢ºÍÒ½ÁÆÐÅÏ¢µÈ¡£¡£¡£¡£¡£´Ë´ÎÊÂÎñÓ°ÏìÁ˸ù«Ë¾µÄ´ó²¿·ÖÓªÒµ£¬£¬£¬£¬£¬°üÀ¨¡¶»ª¶û½ÖÈÕ±¨¡·ºÍ¡¶Å¦Ô¼Óʱ¨¡·µÈ¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/news-corp-says-state-hackers-were-on-its-network-for-two-years/


4¡¢JamfÅû¶ʹÓõÁ°æÓ¦ÓÃÕë¶ÔmacOSµÄ¶ñÒâÍÚ¿ó»î¶¯


JamfÔÚ2ÔÂ23ÈÕÅû¶ÁËÕë¶ÔmacOSµÄ¶ñÒâÍÚ¿ó»î¶¯¡£¡£¡£¡£¡£¸Ã»î¶¯Ê¹ÓÃÁËľÂí»¯AppleÊÓÆµ±à¼­Èí¼þFinal Cut Pro£¬£¬£¬£¬£¬À´·Ö·¢XMRigÍÚ¿ó³ÌÐò¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÉîÈëÆÊÎöºó·¢Ã÷£¬£¬£¬£¬£¬¸Ã¶ñÒâÈí¼þÂÄÀúÁËÈý¸öÖ÷ÒªµÄÉú³¤½×¶Î£¬£¬£¬£¬£¬Ã¿¸ö½×¶Î¶¼Ìí¼ÓÁ˸üÖØ´óµÄÈÆ¹ýÊÖÒÕ¡£¡£¡£¡£¡£´ÓµÚÒ»´ú×îÏÈ£¬£¬£¬£¬£¬¸Ã¶ñÒâÈí¼þ¾ÍʹÓÃi2pÍøÂç²ã¾ÙÐÐC2ͨѶÒÔÄäÃû»¯Á÷Á¿£»£»£»£»£»£»£»µÚ¶þ´úÔÚ2021Äê4ÔÂÖÁ10Ô·ºÆð£¬£¬£¬£¬£¬¶ÔÒþ²ØÔÚÓ¦ÓóÌÐò°üÖеĿÉÖ´ÐÐÎļþ¾ÙÐÐbase 64±àÂ룻£»£»£»£»£»£»µÚÈý´ú·ºÆðÓÚ2021Äê10Ô£¬£¬£¬£¬£¬Ëü¿ÉÒÔÔÚSpotlightÉϽ«Æä¶ñÒâÀú³Ìαװ³ÉϵͳÀú³ÌÀ´Èƹý¼ì²â¡£¡£¡£¡£¡£


https://www.jamf.com/blog/cryptojacking-macos-malware-discovered-by-jamf-threat-labs/


5¡¢ºÚ¿ÍÍÅ»ïCH01Éù³ÆÆäÒÑÈëÇÖÖÁÉÙ32¸ö¶íÂÞ˹µÄÍøÕ¾


ýÌå2ÔÂ26Èճƣ¬£¬£¬£¬£¬ºÚ¿ÍÍÅ»ïCH01ÒÑÈëÇÖÖÁÉÙ32¸ö¶íÂÞ˹µÄÍøÕ¾£¬£¬£¬£¬£¬¶øAnonymousҲͨ¹ýÆäTwitter·ÖÏíÁËÕâÒ»ÐÂÎÅ¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚÎÚ¿ËÀ¼Õ½ÕùµÄÖÜÄêËêÄîÈÕ£¬£¬£¬£¬£¬ÏÖÔÚÉв»ÇåÎú±»¹¥»÷ÍøÕ¾¼òÖ±ÇÐÊýÄ¿£¬£¬£¬£¬£¬ÒÔ¼°ºÚ¿ÍÊÇÔõÑù¹¥»÷µÄ¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬AnonymousÔÚ2ÔÂ23ÈÕ»¹ÈëÇÖÁ˶íÂÞ˹µÄ¶à¸ö¹ã²¥µç̨£¬£¬£¬£¬£¬°üÀ¨Yumor FM¡¢Relax FM¡¢Comedy Radio¡¢Humor FMºÍAvatoradio£¬£¬£¬£¬£¬²¢Ðû²¼¼ÙµÄ¿ÕÏ®¾¯±¨¡£¡£¡£¡£¡£


https://securityaffairs.com/142713/hacktivism/ch01-defaced-russian-websites.html


6¡¢Ê³Î﹫˾¶¼ÀÖÔâµ½ÀÕË÷¹¥»÷µ¼ÖÂÆä¼Ó¹¤³§ÔÝʱ¹Ø±Õ


ýÌå2ÔÂ26Èճƣ¬£¬£¬£¬£¬Ê³Î﹫˾¶¼ÀÖÔâµ½ÁËÀÕË÷¹¥»÷¡£¡£¡£¡£¡£¶¼ÀÖÊÇÌìÏÂÉÏ×î´óµÄË®¹ûºÍÊß²ËÉú²úÉÌÖ®Ò»£¬£¬£¬£¬£¬ÔÚÈ«Çò75¸ö¹ú¼Ò/µØÇø¹©Ó¦Ô¼300ÖÖ²úÆ·£¬£¬£¬£¬£¬2021ÄêµÄÊÕÈëΪ65ÒÚÃÀÔª¡£¡£¡£¡£¡£¸Ã¹«Ë¾³ÆÆäÔâµ½ÀÕË÷¹¥»÷Õý³£ÔËÓªÊܵ½Ó°Ï죬£¬£¬£¬£¬¿ÉÊÇûÓÐÌṩÓйع¥»÷µÄÏêϸÐÅÏ¢¡£¡£¡£¡£¡£·¢Ë͸øÊÐËÁµÄ±ã¼ãÌáµ½£¬£¬£¬£¬£¬¸Ã¹«Ë¾±»ÆÈ¹Ø±ÕÆäÔÚ±±ÃÀµÄϵͳÒÔ×èÖ¹¹¥»÷¡£¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÕßÊÇ·ñÒÑ´ÓÆäϵͳÖÐÇÔÈ¡ÁËÊý¾Ý¡£¡£¡£¡£¡£


https://securityaffairs.com/142726/cyber-crime/dole-food-company-ransomware-attack.html