ÐŰ²±êίÐû²¼¡¶»¥ÁªÍøÆ½Ì¨¼°²úÎï·þÎñÒþ˽ЭÒéÒªÇó¡·µÄÕ÷ÇóÒâ¼û¸å

Ðû²¼Ê±¼ä 2022-06-01
1¡¢ÐŰ²±êίÐû²¼¡¶»¥ÁªÍøÆ½Ì¨¼°²úÎï·þÎñÒþ˽ЭÒéÒªÇó¡·µÄÕ÷ÇóÒâ¼û¸å


5ÔÂ26ÈÕ £¬È«¹úÐÅÏ¢Äþ¾²³ß¶È»¯¼¼ÊõίԱ»áÐû²¼ÁË¡¶ÐÅÏ¢Äþ¾²¼¼Êõ »¥ÁªÍøÆ½Ì¨¼°²úÎï·þÎñÒþ˽ЭÒéÒªÇó¡·µÄÕ÷ÇóÒâ¼û¸å¡£¸ÃÒªÇ󹿶¨ÁË»¥ÁªÍøÆ½Ì¨¼°²úÎï·þÎñÒþ˽ЭÒéÌåÀý·¨Ê½¡¢¾ßÌåÄÚÈÝ¡¢Ðû²¼ÐÎʽ £¬Ôö¼ÓÒþ˽ЭÒéµÄ¿É¶ÁÐÔ¡¢Í¸Ã÷ÐÔ £¬ÒÔ¼°´¦ÖÃÒþ˽ЭÒéÏà¹ØµÄÕùÒé¾À·×µÈ·½ÃæµÄÒªÇó¡£ÊÊÓÃÓڹ淶¸öÈËÐÅÏ¢´¦ÖÃÕßÖÆ¶¨¡¢Ðû²¼Òþ˽ЭÒéµÄ¹ý³Ì £¬Ò²ÊÊÓÃÓÚÖ÷¹Ü¼à¹Ü²¿ÃÅ¡¢µÚÈý·½ÆÀ¹À»ú¹¹µÈ¶ÔÒþ˽ЭÒé½øÐмල¡¢¹ÜÀíºÍÆÀ¹À¡£Òâ¼û¿ÉÓÚ½ñÄê7ÔÂ25ÈÕǰ·´À¡µ½ÐŰ²±êÎ¯ÃØÊé´¦¡£


https://www.tc260.org.cn/front/postDetail.html?id=20220526180528


2¡¢¸ç˹´ïÀè¼ÓµÄ¹«¹²ÎÀÉúϵͳÔâµ½HiveÍÅ»ïµÄÀÕË÷¹¥»÷


¾ÝýÌ屨µÀ £¬5ÔÂ31ÈÕÔçÉÏ £¬¸ç˹´ïÀè¼Ó¹«¹²ÎÀÉú·þÎñ»ú¹¹£¨³ÆÎª¸ç˹´ïÀè¼ÓÉç»á±£ÕÏ»ù½ð»òCCCS£©ÍøÂçÉϵÄËùÓÐϵͳ¶¼Ôâµ½ÁËHiveÀÕË÷¹¥»÷ £¬²¢´¦ÓÚÀëÏß״̬¡£CCCSÏÖÔÚÕýŬÁ¦»Ö¸´ÊÜÓ°ÏìµÄϵͳºÍ·þÎñ £¬µ«µ½Ä¿Ç°ÎªÖ¹ £¬»¹ÎÞ·¨È·¶¨ÐèÒª¶à³¤Ê±¼ä¡£²»¾Ãǰ £¬¸ç˹´ïÀè¼ÓµÄ¶à¸öÕþ¸®»ú¹¹Ôâµ½ÁËContiµÄ¹¥»÷ £¬²¢Ðû²¼¹ú¼Ò½øÈë½ô¼±×´Ì¬¡£AdvIntel¸ß¶ÈÈ·¶¨ContiÓëHIVEÓйØÁª £¬ÇÒÁ½¸öÍÅ»ïµÄºÏ×÷ÒÑÁè¼Ý°ëÄê £¬ÖÁÉÙ´Ó2021Äê11Ô¾ͿªÊ¼ÁË¡£


https://www.bleepingcomputer.com/news/security/costa-rica-s-public-health-agency-hit-by-hive-ransomware/


3¡¢Spid3rÍÅ»ïÉù³ÆÒÑÈëÇÖ°×¶íÂÞ˹¶à¸öÕþ¸®»ú¹¹µÄÍøÕ¾


¾Ý5ÔÂ30ÈÕ±¨µÀ £¬AnonymousµÄÁ¥Êô×éÖ¯Spid3rÉù³ÆÈëÇÖÁ˰׶íÂÞ˹Õþ¸®µÄÍøÕ¾¡£¸ÃÍÅ»ïÔÚTwitterÉÏÐû²¼ÁËÓë°×¶íÂÞ˹Õþ¸®ÓйصÄÖÖÖÖÍøÕ¾µÄ½ØÍ¼ £¬°üÂÞ½»Í¨²¿¡¢Ë¾·¨²¿ºÍ¾­¼Ã²¿ £¬²¢ÅäÎijÆËûÃǶ԰׶íÂÞ˹Õþ¸®ÌᳫÁË´ó¹æÄ£¹¥»÷ £¬¸Ã¹ú×î´óµÄÕþ¸®ÍøÕ¾¾ùÒÑÀëÏß¡£´ËÍâ £¬Æä½ÌÓý²¿¡¢¹ú¼ÒÖ´·¨ÐÅÏ¢ÖÐÐÄ¡¢ÄÚÕþ²¿¡¢¹ú¼Òº£¹ØÎ¯Ô±»á¡¢¹ú¼ÒίԱ»áµÄÍøÕ¾Ò²·ºÆðÁËÎÊÌ⡣Ŀǰ £¬´ó²¿ÃÅÊÜÓ°ÏìµÄÍøÕ¾ÒÑÖØÐÂÉÏÏß¡£ 


https://www.infosecurity-magazine.com/news/anonymous-claims-attacks-against/


4¡¢Ñо¿ÈËÔ±·¢ÏÖ¿Éͨ¹ýµç»°½Ù³ÖWhatsAppÕÊ»§µÄ»î¶¯


ýÌå5ÔÂ30ÈÕ±¨µÀ £¬CloudSEK·¢ÏÖÁËÒ»³¡ÕýÔÚ½øÐеÄWhatsAppÕË»§½Ù³Ö»î¶¯¡£¸Ã»î¶¯µÄ¼ÆÄ±ºÜ¼òµ¥ £¬¹¥»÷Õß´òµç»°¸øÄ¿±ê £¬ÓÕÆ­ËûÃDz¦´òÒÔ405»ò67¿ªÍ·µÄµç»°ºÅÂë¡£¼¸·ÖÖÓºóËûÃǵÄWhatsAppÕÊ»§»á±»×¢Ïú £¬¹¥»÷Õß¾ÍÄܽӹÜËûÃÇ¡£Æäʵ £¬ÕâЩºÅÂëÊÇJioºÍAirtelÔÚÒÆ¶¯Óû§Ã¦Ê±½øÐкô½Ð×ªÒÆµÄ·þÎñÇëÇó £¬µ±Óû§²¦´òºóʵ¼ÊÉÏ»á×ªÒÆµ½¹¥»÷ÕߵĺÅÂë £¬²¢Ñ¸ËÙÆô¶¯WhatsApp×¢²á¹ý³ÌÒÔ»ñȡĿ±êµÄºÅÂë £¬È»ºóÒªÇóͨ¹ýµç»°·¢ËÍOPT¡£Ä¿Ç° £¬ÕâÖÖ¹¥»÷½öÕë¶ÔÓ¡¶È¡£


https://securityaffairs.co/wordpress/131807/hacking/whatsapp-otp-scam.html


5¡¢Group-IB³Æ2021Äê57%µÄÍøÂç·¸×ï»î¶¯ÓëÕ©Æ­ÓйØ


Group-IBÔÚ5ÔÂ26ÈÕ·ÖÏíÁËÆä¶ÔÖÖÖÖÕ©Æ­·½°¸µÄÑо¿½á¹û¡£Group-IB³Æ £¬Õ©Æ­Õ¼ËùÓо­¼Ã¶¯»úµÄÍøÂç·¸×ïµÄ57% £¬´ËÀ๥»÷ÍÅ»ïµÄÊýÁ¿Ô¾ÉýÖÁ390¸ö £¬´´ÏÂÀúʷиß £¬ÊÇÈ¥Ä꣨½ü110¸ö£©µÄ3.5±¶¡£ÓÉÓÚSaaS£¨Õ©Æ­¼´·þÎñ£© £¬2021ÄêµÄÒ»¸öÕ©Æ­ÍÅ»ïÖеijÉÔ±ÊýÁ¿±È2020ÄêÔö¼ÓÁË10±¶ £¬ÏÖÔÚµ½´ï100ÈË¡£¹¥»÷Õ߸üϲ»¶Ê¹ÓõöÓã¹¥»÷ (18%)¡¢Õ©Æ­ºÍÆÛÕ©(57%)ÒÔ¼°¶ñÒâÈí¼þºÍÉùÓþ¹¥»÷ (25%) µÈÒªÁì¡£ÔÚÖж«¡¢ÑÇÌ«µØÓòºÍÅ·ÖÞ £¬Ã¿ÔÂð³äÆ·ÅÆµÄÕ©Æ­·Ö±ðÔö³¤ÁË150%¡¢83%ºÍ89%¡£


https://www.group-ib.com/media/digital-risk-summit-2022/


6¡¢ÆÕ»ªÓÀµÀÐû²¼¹ØÓÚ2022ÄêÈ«Çò¾­¼Ã·¸×ïµÄÊÓ²ì³ÂËß


¾ÝýÌå5ÔÂ30ÈÕ±¨µÀ £¬ÆÕ»ªÓÀµÀÐû²¼ÁË2022ÄêÈ«Çò¾­¼Ã·¸×ïµÄÊÓ²ì³ÂËß¡£¸Ã³ÂËßÖ÷Òª½ÒʾÁËÓ¢¹úµÄÊÓ²ì½á¹û £¬ÆäÖÐÖ¸³ö £¬Ó¢¹ú64%µÄÆóÒµÔÚ¹ýÈ¥24¸öÔÂÄÚ¾­Àú¹ýÆÛÕ©µÈ½ðÈÚ·¸×ï £¬±È2020Ä꣨56%£©ºÍ2018Ä꣨50%£©¶¼¶à £¬Ò²¸ßÓÚÈ«Çò£¨46%£©µÄƽ¾ùˮƽ¡£ÍøÂç·¸×ïÊÇ×î³£¼ûµÄÆÛÕ©ÀàÐÍ £¬ÆäÕ¼±È´Ó2020ÄêµÄ42%Ͻµµ½2022ÄêµÄ32% £¬¶ø¹©Ó¦Á´Ê¼þÕ¼19%¡£ÔÚÓ¢¹ú £¬51%µÄÆÛÕ©»î¶¯¶¼¿ÉÒÔ×·Ëݵ½Íⲿ¸÷·½ £¬ÆäÖÐÅÅÃûǰÈýµÄ×ï¿ý»öÊ×Êǿͻ§¡¢ºÚ¿ÍºÍ¹©Ó¦ÉÌ¡£


https://www.pwc.co.uk/services/forensic-services/insights/global-economic-crime-survey-2022-uk-findings.html