΢ÈíµÄAzure BlobÅäÖôíÎóÒÑй¶2.4 TBÃô¸ÐÐÅÏ¢

Ðû²¼Ê±¼ä 2022-10-21
1¡¢Î¢ÈíµÄAzure BlobÅäÖôíÎóÒÑй¶2.4 TBÃô¸ÐÐÅÏ¢

      

¾ÝýÌå10ÔÂ19ÈÕ±¨µÀ £¬SOCRadar¼ì²âµ½ÓÉ΢Èíά»¤µÄAzure Blob´æ´¢ÅäÖôíÎóй¶¿Í»§ÐÅÏ¢ ¡£SOCRadarÉù³Æ·¢ÏÖ΢ÈíµÄ·þÎñÆ÷й¶ÁË2.4TBµÄÊý¾Ý £¬°üÂÞÁè¼Ý335000·âµç×ÓÓʼþ¡¢133000¸öÏîÄ¿ºÍ548000¸ö̻¶µÄÓû§ £¬»¹ÓÐSOWÎĵµ¡¢²úÎﱨ¼Û¡¢POCºÍPOEÎļþµÈ ¡£Ð¹Â¶Êý¾ÝÓë111¸ö¹ú¼ÒµÄ65000¶à¸ö×éÖ¯ÓÐ¹Ø £¬´æ´¢ÁË2017ÄêÖÁ2022Äê8ÔµÄÐÅÏ¢ ¡£Î¢ÈíÔÚ9ÔÂ24ÈÕÊÕµ½Ð¹Â¶Í¨Öªºó±£»¤Á˸÷þÎñÆ÷ £¬²¢Ôö²¹ËüÈÏΪSOCRadar¿ä´óÁ˸ÃʼþµÄ·¶Î§ºÍÊý×Ö ¡£


https://www.bleepingcomputer.com/news/security/microsoft-data-breach-exposes-customers-contact-info-emails/


2¡¢Vice SocietyÉù³ÆÒÑÇÔÈ¡·¨¹úijҽԺµÄ150 GBÎļþ

      

¾Ý10ÔÂ19ÈÕ±¨µÀ £¬·¨¹úÒ»¼Ò˽Á¢¸¾²úÒ½ÔºH?pital Pierre Rouqu¨¨s¨CLes BluetsÔâµ½¹¥»÷ ¡£¹¥»÷·¢ÉúÓÚ10ÔÂ9ÈÕ £¬¸ÃÒ½ÔºÔÚÆäÍøÕ¾Ö÷Ò³ÉÏÅû¶Á˴˴ι¥»÷ £¬²¢ÌåÏÖÓʼþϵͳÎÞ·¨Õý³£ÊÂÇé ¡£Vice SocietyÉù³ÆËûÃÇÒѹ¥»÷¸ÃÒ½Ôº £¬²¢¼ÓÃÜÁËÒ½ÔºµÄËùÓÐÎļþºÍ±¸·Ý £¬¾¡¹ÜÒ½ÔºÌåÏÖ´ó¶àÊýÒ½ÁƼǼÈÔÈ»¿ÉÒÔ·ÃÎÊ ¡£´ËÍâ £¬ËûÃÇ»¹´ÓÒ½ÔºµÄϵͳÖÐÏÂÔØÁËÁè¼Ý150 GBµÄÎļþ ¡£


https://www.databreaches.net/french-maternity-hospital-hit-by-ransomware-attack-by-vice-society-attackers-claim-to-have-150-gb-of-files/ 


3¡¢Orca SecurityÅû¶Azure SFX©¶´FabriXssµÄϸ½Ú

      

10ÔÂ19ÈÕ±¨µÀ £¬Orca Security·¢ÏÖÁËService Fabric Explorer(SFX)ÖеÄ©¶´FabriXss(CVE-2022-35829) ¡£¸Ã©¶´¿É±»ÓÃÀ´»ñµÃÍêÕûµÄ¹ÜÀíԱȨÏÞ²¢½Ù³ÖAzure Service Fabric¼¯Èº £¬Ñо¿ÈËԱ͸¶ £¬DeployerÀàÐ͵ÄÓû§Èç¹ûÓµÓÐͨ¹ý¿ØÖÆÃæ°å¡°´´½¨ÐÂÓ¦Ó÷¨Ê½¡±µÄµ¥Ò»È¨ÏÞ £¬¾Í¿ÉÒÔʹÓÃÕâ¸öȨÏÞ´´½¨¶ñÒâÓ¦Ó÷¨Ê½Ãû³Æ £¬²¢ÀÄÓùÜÀíԱȨÏÞÀ´Ö´ÐÐÖÖÖÖµ÷ÓúͲÙ×÷ ¡£Orca Security»¹¹ûÈ»ÁËFabriXssµÄPoC¼°ÆäËü¼¼Êõϸ½Ú £¬Î¢ÈíÔÚ10ÔÂ11ÈÕµÄÖܶþ²¹¶¡ÖÐÐÞ¸´Á˸é¶´ ¡£


https://www.bleepingcomputer.com/news/security/microsoft-azure-sfx-bug-let-hackers-hijack-service-fabric-clusters/


4¡¢Cybernews½üÆÚ·¢ÏÖÔ¼200Íò¸ö¹ûÈ»µÄ.gitÎļþ¼Ð

      

CybernewsÔÚ10ÔÂ20ÈÕ³ÆÆä·¢ÏÖÁË´óÁ¿¹ûÈ»µÄ.gitÎļþ¼Ð ¡£Ñо¿ÈËÔ±ÔÚ×î³£¼ûµÄWeb¶Ë¿Ú80ºÍ443Éϼì²âµ½1931148¸öIPµØÖ· £¬ÕâЩIPµØÖ·¾ßÓпɹ©¹«ÖÚ·ÃÎʵÄ.gitÎļþ¼Ð½á¹¹µÄʵʱ·þÎñÆ÷ ¡£ÆäÖÐ £¬Áè¼Ý31%µÄ¹ûÈ».gitÎļþ¼ÐλÓÚÃÀ¹ú £¬Æä´ÎÊÇÖйú(8%)ºÍµÂ¹ú(6.5%) ¡£ÔÚÉîÈëÍÚ¾òʱ £¬Ñо¿ÈËÔ±·¢ÏÖԼĪ6.3%µÄ.gitÅäÖÃÎļþµÄ²¿Êðƾ֤¾ÍÔÚÅäÖÃÎļþÖÐ ¡£


https://cybernews.com/security/millions-git-folders-exposed/


5¡¢°ÍÎ÷Ö´·¨»ú¹¹Ðû²¼ÒÑ´þ²¶ÓëLapsus$ÓйصÄÏÓÒÉÈË

      

10ÔÂ19ÈÕ £¬°ÍÎ÷Áª°î¾¯²ìÐû²¼°ÍÒÁÑÇÖݵķÑÀ­µÂÉ£ËþÄÉ´þ²¶ÁËÒ»ÃûÏÓÒÉÈË £¬¾ÝÐÅËûÊÇLapsus$ÍÅ»ïµÄ³ÉÔ± ¡£´Ë´Î»î¶¯ÊÇ2022Äê8ÔÂÆô¶¯µÄÖ´·¨Ðж¯Operation Dark CloudµÄÒ»²¿ÃÅ £¬¸ÃÐж¯Ö¼ÔÚÊÕ¼¯×ÔÈ¥Äêµ×ÒÔÀ´Õë¶Ô°ÍÎ÷Õþ¸®»ú¹¹µÄ¶à´ÎÍøÂç¹¥»÷±³ºóµÄ·¸×ï×éÖ¯µÄ»î¶¯ÐÅÏ¢ ¡£¾¯·½ÊÓ²ìÈ·¶¨µÄ×ïÐÐÊÇ·¸×ï×éÖ¯·¸×ï¡¢ÈëÇÖ¼ÆËã»úÉ豸¡¢ÖжϻòÈÅÂҵ籨¡¢ÎÞÏߵ籨»òµç»°·þÎñ £¬×èÖ¹»ò×è°­»Ö¸´ ¡£


https://thehackernews.com/2022/10/brazilian-police-arrest-suspected.html  


6¡¢Check PointÐû²¼¹ØÓÚBlack BastaµÄ·ÖÎö³ÂËß

      

10ÔÂ20ÈÕ £¬Check PointÐû²¼Á˹ØÓÚBlack BastaµÄ·ÖÎö³ÂËß ¡£³ÂËßÖ¸³ö £¬×Ô2022Äê5ÔÂÒÔÀ´ £¬ÒÑÓÐÁè¼Ý89ÆðBlack Basta¹¥»÷»î¶¯ £¬¸ÃÍÅ»ïÖ÷ÒªÕë¶ÔÃÀ¹úºÍµÂ¹ú £¬ÆäÍøÕ¾ÉÏÁгöµÄ49%µÄ±»¹¥»÷Ä¿±êÀ´×ÔÃÀ¹ú £¬ÔÚijЩÇé¿öÏÂÊê½ðÒªÇóÁè¼Ý100ÍòÃÀÔª ¡£´ËÍâ £¬³ÂËß»¹ÃèÊöÁËBlack Basta»î¶¯µÄÄÚ²¿ÔË×÷ £¬²¢Ìرð¹Ø×¢·Ö·¢½×¶Î£»½âÊÍÁ˸ÃÍÅ»ïÕë¶ÔÄ£ÄâÆ÷ºÍɳÏä×Ô¶¯»¯¼ì²âºÍ·ÖÎöµÄ´óÁ¿ÈƹýºÍ·´·ÖÎö¼¼Êõ£»¸ÅÊöÁËBlack BastaÈçºÎ¼ÓÃÜϵͳÖеÄÎļþÒÔ¼°ÈçºÎºáÏòÒÆ¶¯ ¡£


https://research.checkpoint.com/2022/black-basta-and-the-unnoticed-delivery/