Slack³ÆÒÑÐÞ¸´¿Éй¶ÃÜÂëµÄ©¶´²¢Îª²¿ÃÅÓû§ÖØÖÃÃÜÂë

Ðû²¼Ê±¼ä 2022-08-08

1¡¢Slack³ÆÒÑÐÞ¸´¿Éй¶ÃÜÂëµÄ©¶´²¢Îª²¿ÃÅÓû§ÖØÖÃÃÜÂë

      

¾ÝýÌå8ÔÂ6ÈÕ±¨µÀ£¬SlackÐÞ¸´ÁËÔÚ´´½¨»òÈ¡ÏûÊÂÇéÇøµÄ¹²ÏíÑûÇëÁ´½Óʱй¶¼ÓÑÎÃÜÂë¹þÏ£µÄ©¶´¡£¸Ã¹«Ë¾½âÊÍ£¬µ±Óû§Ö´ÐÐÕâЩ²Ù×÷ÖÐʱ£¬Slack»á½«ÆäÃÜÂëµÄ¹þÏ££¨²»ÊÇÃ÷ÎÄ£©·¢Ë͸øÆäËüÊÂÇéÇø³ÉÔ±£¬¸Ã©¶´Ó°ÏìÁËÔÚ2017Äê4ÔÂ17ÈÕÖÁ2022Äê7ÔÂ17ÈÕÆÚ¼ä´´½¨»òÈ¡Ïû¹²ÏíÑûÇëÁ´½ÓµÄËùÓÐÓû§¡£Ä¿Ç°£¬SlackÒÑΪÊÜÓ°ÏìµÄÔ¼0.5%µÄÓû§ÖØÖÃÃÜÂ룬»¹½¨ÒéËùÓÐÓû§ÆôÓÃ2FAÑéÖ¤²¢´´½¨Î¨Ò»µÄÃÜÂë¡£


https://thehackernews.com/2022/08/slack-resets-passwords-after-bug.html


2¡¢ÐµÄRapperBot¿Éͨ¹ýSSH±©Á¦¹¥»÷Õë¶ÔLinux·þÎñÆ÷

     

FortinetÔÚ8ÔÂ3ÈÕÅû¶ÁË¿Éͨ¹ýSSH±©Á¦¹¥»÷Õë¶ÔLinux·þÎñÆ÷µÄжñÒâÈí¼þRapperBot¡£Ñо¿ÈËÔ±±íÃ÷£¬RapperBotÊÇ»ùÓÚMiraiľÂí£¬×Ô2022Äê6ÔÂÖÐÑ®ÒÔÀ´Ò»Ö±±»ÓÃÓÚ¹¥»÷»î¶¯£¬ÒÑʹÓÃÈ«Çò3500¶à¸öΨһµÄIPÀ´É¨Ã貢ʵÑéSSH±©Á¦ÆÆ½âLinux·þÎñÆ÷¡£SSH±©Á¦ÆÆ½âÒÀÀµÓÚͨ¹ýÖ÷»úΨһTCPÇëÇó´ÓC2ÏÂÔØµÄƾ¾ÝÁбí£¬¶ø¶ñÒâÈí¼þÔÚÀÖ³Éʱ»áÏòC2³ÂËß¡£´ËÍ⣬RapperBotµÄÄ¿±ê²¢²»Ã÷ÏÔ£¬ÇÒÆä¿ª·¢ÕßÒ»Ö±ÔÚÏÞÖÆÆäDDoS¹¦Ð§¡£


https://www.fortinet.com/blog/threat-research/rapperbot-malware-discovery


3¡¢Ó¢¹úNHSµÄ111½ô¼±·þÎñÒòÆäMSPÔâµ½¹¥»÷Á¬ÐøÖжÏ

      

ýÌå8ÔÂ5Èճƣ¬Ó¢¹ú¹ú¼ÒÎÀÉú·þÎñ(NHS)111½ô¼±·þÎñ·¢ÉúÁËÁ¬ÐøµÄÖжÏ¡£Ó¢¹úÍйܷþÎñÌṩÉÌ(MSP)Advanced³ÆÆäÉÏÖÜËÄÔâµ½ÍøÂç¹¥»÷µ¼Ö·þÎñÖжÏ£¬¶ø85%µÄNHS 111·þÎñ¶¼Ê¹ÓÃÁËAdvancedµÄAdastra»¼Õß¹ÜÀí½â¾ö·½°¸¡£¾ÝϤ£¬´Ë´ÎÖжÏÓ°ÏìÁËÓ¢¹úÈ«²¿µÄ4¸ö¹ú¼Ò£¬NHS½¨ÒéÓ¢¹ú¹«ÖÚʹÓÃÔÚÏ߯½Ì¨·ÃÎÊNHS 111½ô¼±·þÎñ£¬Ö±µ½´Ëʵõ½½â¾ö¡£ËäȻûÓйØÓÚ¹¥»÷µÄÏêϸÐÅÏ¢£¬µ«Ñо¿ÈËԱƾ¾Ý˵»°ÍƲâÕâ¿ÉÄÜÊÇÀÕË÷¹¥»÷¡£


https://www.bleepingcomputer.com/news/security/uk-nhs-suffers-outage-after-cyberattack-on-managed-service-provider/


4¡¢¹¥»÷Õß¹ûÈ»ÒÔÉ«ÁÐÊý×ÖÇ鱨¹«Ë¾CellebriteµÄ4TBÊý¾Ý

      

¾Ý8ÔÂ5ÈÕ±¨µÀ£¬Ä³ÄäÃû¹¥»÷Õßй¶ÁËCellebriteÔ¼4TBµÄÊý¾Ý¡£CellebriteÊÇÒÔÉ«ÁеÄÒ»¼ÒÊý×ÖÇ鱨¹«Ë¾£¬´ËÇ°ÔøÒòΪÃÀ¹úÖ´·¨ºÍÄþ¾²»ú¹¹½âËøPhoneÉ豸¶ø³ÉΪÐÂÎÅÍ·Ìõ¡£Êý¾ÝÖ÷Òª·ÖΪÁ½²¿ÃÅ£¬Cellebrite Mobilogy£¨3.6TB£©ºÍCellebrite Team Foundation Server£¨430 GB£©¡£Ä¿Ç°£¬Ð¹Â¶µÄÊý¾ÝÖ»ÄÜͨ¹ýDDoSecretsÌṩӦÑо¿ÈËÔ±ºÍ¼ÇÕߣ¬ÉÐδÓй¥»÷ÍÅ»ïÉù³ÆÎª´ËÊÂÂôÁ¦¡£


https://www.hackread.com/anonymous-leaks-4tb-cellebrite-data-cyberattack/


5¡¢ºÉÀ¼µÄ120¶à¼ÒÑÀ¿ÆÕïËùÒòÔâµ½ÍøÂç¹¥»÷¶ø¹Ø±ÕÊýÈÕ

      

ýÌå8ÔÂ5ÈÕ±¨µÀ£¬ºÉÀ¼µÄ120¶à¼ÒÑÀ¿ÆÕïËù×ÔÉÏÖÜËÄÒÔÀ´ÒѹرÕÊýÈÕ¡£¸ÃʼþÔ´ÓÚColosseum Dental BeneluxÔâµ½µÄÍøÂç¹¥»÷£¬¸Ã¹«Ë¾ÔÚ±ÈÀûʱºÍºÉÀ¼ÓµÓÐ130¶à¼Ò·ÖÖ§»ú¹¹£¬µ«´ËʼþÖ»Ó°ÏìÁËλÓÚºÉÀ¼µÄÃÅÕï¡£¾ÝϤ£¬ÊÂÇéÈËÔ±ÎÞ·¨·ÃÎʿͻ§µÄ»¼Õß²¡Ê·£¬ESETÑо¿ÈËÔ±ÔòÌåÏÖ£¬Õâ¾ßÓÐÀÕË÷¹¥»÷µÄËùÓÐÌØÕ÷¡£Ä¿Ç°£¬¸Ã¹«Ë¾ÕýÔÚŬÁ¦»Ö¸´ÏµÍ³£¬²¢ÓëÍⲿ¸÷·½Ò»ÆðÊÓ²ì´ËÊ¡£


https://www.databreaches.net/more-than-100-dutch-dental-practices-closed-for-days-due-to-cyber-attack/


6¡¢MetaÐû²¼2022ÄêµÚ¶þ¼¾¶È·´¿¹ÐÔÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß

      

MetaÔÚ8Ô·ÝÐû²¼ÁË2022ÄêµÚ¶þ¼¾¶È·´¿¹ÐÔÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£ÆäÖеÄÁÁµãÊÇ·¢ÏÖÁËÁ½¸ö¼äµý×éÖ¯£¬ËüÃÇÓëºÚ¿ÍÍÅ»ïBitter APTºÍAPT36£¨ÓÖÃûTransparent Tribe£©ÓйØ£¬Ê¹ÓÃÁËеÄAndroid¶ñÒâÈí¼þ¡£³ÂËß½âÊͳÆ£¬Bitter APT¶ÔÐÂÎ÷À¼¡¢Ó¡¶È¡¢°Í»ù˹̹ºÍÓ¢¹úµÄ½øÐÐÁËÉç»á¹¤³Ì¹¥»÷£¬²¢Í¶ÈëÁË´óÁ¿µÄʱ¼äºÍ¾«Á¦¡£¶øAPT36µÄ×îлÖ÷ÒªÕë¶Ô°¢¸»º¹¡¢Ó¡¶È¡¢°Í»ù˹̹¡¢°¢À­²®ÁªºÏÇõ³¤¹úºÍÉ³ÌØ°¢À­²®£¬ÌرðÊǾüʹÙÔ±ºÍ»î¶¯¼ÒµÈ¡£


https://about.fb.com/wp-content/uploads/2022/08/Quarterly-Adversarial-Threat-Report-Q2-2022.pdf