LuxotticaÔ¼7000Íò¿Í»§µÄ¸öÈËÐÅÏ¢ÔÚºÚ¿ÍÂÛ̳±»¹ûÈ»

Ðû²¼Ê±¼ä 2023-05-22

1¡¢LuxotticaÔ¼7000Íò¿Í»§µÄ¸öÈËÐÅÏ¢ÔÚºÚ¿ÍÂÛ̳±»¹ûÈ»


¾ÝýÌå5ÔÂ20ÈÕ±¨µÀ£¬Òâ´óÀûÑÛ¾µ¼¯ÍÅLuxottica GroupÔ¼7000Íò¿Í»§µÄ¸öÈËÐÅϢй¶ ¡£2022Äê11Ô£¬ºÚ¿ÍÂÛ̳BreachedµÄ³ÉÔ±ÊÔͼ³öÊÛÒ»¸ö2021ÄêµÄÊý¾Ý¿â£¬Éæ¼°ÃÀ¹úºÍ¼ÓÄôóLuxottica¿Í»§µÄ3ÒÚÌõ¼Ç¼ ¡£¸ÃÊý¾Ý¿âÓÚ4ÔÂ30ÈÕºÍ5ÔÂ12ÈÕÔÚºÚ¿ÍÂÛ̳Éϱ»¹ûÈ»£¬¹¥»÷Õß¿ÉÒÔÃâ·Ñ»ñÈ¡ ¡£¹²140 GBÊý¾Ý£¬°üÂÞ305759991Ìõ¼Ç¼¡¢74417098¸öÓʼþµØÖ·ºÍ2590076¸öÓòÓʼþ ¡£Êý¾Ý¿âÖеÄ×îÐÂÌõÄ¿ÊÇ2021Äê3ÔÂ16ÈÕ£¬LuxotticaÈ·ÈÏÊý¾Ýй¶ÊÇÓÉÓÚ¹ÜÀíÆä¿Í»§Êý¾ÝµÄµÚÈý·½³Ð°üÉÌÔâµ½¹¥»÷µ¼ÖµÄ ¡£


https://securityaffairs.com/146472/data-breach/luxottica-2021-data-breach.html


2¡¢»ªË¶·þÎñÆ÷ÅäÖôíÎóµ¼Ö²¿ÃÅ·ÓÉÆ÷ÎÞ·¨·ÃÎÊ»¥ÁªÍø


¾Ý5ÔÂ19ÈÕ±¨µÀ£¬»ªË¶¾Í·þÎñÆ÷¶ËÄþ¾²Î¬»¤¶éÂäµ¼Ö²¿ÃÅ·ÓÉÆ÷ÎÞ·¨·ÃÎÊ»¥ÁªÍøµÄÎÊÌâÏòÆä¿Í»§ÖÂǸ ¡£5ÔÂ16ÈÕÒÔÀ´£¬¸ÃÎÊÌâÒÑÔÚÉ罻ƽ̨Éϱ»¹ã·º±¨µÀ ¡£»ªË¶½âÊ͵À£¬ÔÚÀýÐÐÄþ¾²Î¬»¤Æڼ䣬Æä¼¼ÊõÍŶӷ¢ÏÖ·þÎñÆ÷ÉèÖÃÎļþµÄÅäÖôæÔÚ´íÎ󣬿ÉÄܻᵼÖ²¿ÃÅ·ÓÉÆ÷µÄÍøÂçÁ¬½ÓÖжÏ ¡£ÉùÃ÷ûÓÐÃ÷ȷ˵Ã÷·¢ÉúÁËʲôÀàÐ͵ĴíÎóÒÔ¼°Ëü¶ÔÔ¶³Ì·ÓÉÆ÷µÄÓ°Ï쾿¾¹ÈçºÎ£¬µ«¾ÝϤ£¬Á¬½ÓÎÊÌâÊÇÓÉASD(ASUS AiProtection)µÄ½ç˵ÎļþËð»µÔì³ÉµÄ ¡£¸üй̼þ¿ÉÒÔ½â¾öÕâ¸öÎÊÌ⣬µ«Ö»Ð轫·ÓÉÆ÷ÖØÖÃΪ³ö³§Ä¬ÈÏÖµÒ²¿ÉÒÔ£¬Ö»ÒªËüÇå³ýÁËNVRAM ¡£


https://www.bleepingcomputer.com/news/hardware/asus-routers-knocked-offline-worldwide-by-bad-security-update/


3¡¢Lemon GroupÔÚÔ¼900ÍòAndroidÉ豸ÖÐԤװGuerilla


Trend MicroÔÚ5ÔÂ17Èճƣ¬Lemon GroupÔÚ½ü900Íǫ̀AndroidÉ豸ÉÏԤװÁËÃûΪGuerillaµÄ¶ñÒâÈí¼þ ¡£ÊÜÓ°ÏìÉ豸´ó²¿ÃÅÊÇÁ®¼ÛÊÖ»ú£¬»¹ÓÐÖÇÄÜÊÖ±íºÍÖÇÄܵçÊӵȣ¬Ö÷ÒªÕë¶ÔÃÀ¹ú¡¢Ä«Î÷¸ç¡¢Ó¡¶ÈÄáÎ÷ÑÇ¡¢Ì©¹úºÍ¶íÂÞ˹µÈ¹ú¼Ò ¡£²¿ÃŹ¥»÷ÕߵĻù´¡ÉèÊ©Óë2016ÄêµÄTriadaľÂí»î¶¯ÓÐÖصþ ¡£Ñо¿ÈËԱûÓÐÏêϸ˵Ã÷¹¥»÷ÕßÈçºÎʹÓðüÂÞGuerillaµÄ¶ñÒâ¹Ì¼þѬȾÉ豸£¬µ«ÌåÏÖ¼ì²éµÄÉ豸ÒѾ­ÓÃеÄROMÖØË¢ ¡£Guerrilla¾ßÓÐÄ£¿é»¯½á¹¹£¬Ã¿¸ö²å¼þ¶¼ÓÐÌض¨¹¦Ð§£¬°üÂÞSMS²å¼þ¡¢Proxy²å¼þ¡¢Cookie²å¼þ¡¢Splash²å¼þºÍSilent²å¼þ ¡£


https://www.trendmicro.com/en_us/research/23/e/lemon-group-cybercriminal-businesses-built-on-preinfected-devices.html


4¡¢Î¢Èí³ÆFIN7»Ø¹é²¢ÔÚÐÂÒ»ÂÖ¹¥»÷Öзַ¢ÀÕË÷Èí¼þClop


ýÌå5ÔÂ20ÈÕ±¨µÀ£¬Î¢Èí·¢ÏÖºÚ¿ÍÍÅ»ïFIN7ÖØи¡³öË®Ã棬²¢ÔÚÄ¿±êϵͳÖа²×°ÀÕË÷Èí¼þClop ¡£Ñо¿ÈËÔ±³Æ£¬¸ÃÍÅ»ïÔÚ4ÔµĹ¥»÷Öв¿ÊðÁËClop£¬ÕâÊÇ×Ô2021Äêµ×ÒÔÀ´µÄÊ×´ÎÀÕË÷¹¥»÷ ¡£FIN7ÀûÓûùÓÚPowerShellµÄPOWERTRASHÄÚ´æÖжñÒâÈí¼þÖ²È뷨ʽÔÚÄ¿±êÉ豸ÉÏ°²×°ºóÆÚÀûÓù¤¾ßLizar£¬È»ºóºáÏòÒƶ¯ÒÔʹÓÃOpenSSHºÍImpacket°²×°Clop ¡£¾Ý³Æ£¬ClopÖ»ÊǸÃÍÅ»ïÓÃÀ´¹¥»÷Ä¿±êµÄ×îбäÌå ¡£


https://thehackernews.com/2023/05/notorious-cyber-gang-fin7-returns-cl0p.html


5¡¢KasperskyÅû¶½üÆÚÀûÓÃCloudWizard¿ò¼ÜµÄ¹¥»÷»î¶¯


5ÔÂ19ÈÕ£¬KasperskyÐû²¼Á˹ØÓÚ¶ñÒâ¿ò¼ÜCloudWizardµÄ·ÖÎö³ÂËß ¡£ÔÚÑ°ÕÒÓëPowerMagicºÍCommonMagicÏàËƵÄÖ²È뷨ʽʱ£¬Ñо¿ÈËÔ±·¢ÏÖÁËÀ´×ÔͬһÍÅ»ïµÄ¸üÅÓ´óµÄ»î¶¯ ¡£Ëü²»½öÕë¶Ô¶ÙÄù´Ä¿Ë¡¢Â¬¸Ê˹¿ËºÍ¿ËÀïÃ×ÑǵØÓò£¬¶øÇÒ»¹Õë¶ÔÎÚ¿ËÀ¼Öв¿ºÍÎ÷²¿£¬Éæ¼°¸öÈË£¬ÒÔ¼°Íâ½»ºÍÑо¿»ú¹¹ ¡£Ð»ÀûÓÃÁËÒ»¸öÄ£¿é»¯¿ò¼ÜCloudWizard£¬¾ßÓÐÄ»½Øͼ¡¢Âó¿Ë·ç¼Òô¡¢¼üÅ̼ǼµÈ¹¦Ð§ ¡£×îÖÕ£¬Ñо¿ÈËÔ±ÍƶÏ£¬CloudWizard¿ò¼ÜÊÇÓÉOperation GroundbaitºÍOperation BugDrop±³ºóµÄ¹¥»÷ÕßÔËÓªµÄ ¡£


https://securelist.com/cloudwizard-apt/109722/


6¡¢Cyble·¢ÏÖ¶à¸öð³äCapCutµÄÍøÕ¾·Ö·¢¶ñÒâÈí¼þµÄ»î¶¯


CybleÓÚ5ÔÂ19ÈÕ³ÆÆä·¢ÏÖÁ˶à¸öð³äCapCutÀ´·Ö·¢¶ñÒâÈí¼þµÄ»î¶¯ ¡£CapCutÊÇTikTokµÄÊÓƵ¼ô¼­ÖÆ×÷Èí¼þ£¬½öÔÚGoogle PlayÉϵÄÏÂÔØÁ¿¾ÍÁè¼Ý5ÒÚ´Î ¡£µÚÒ»¸ö»î¶¯»á°²×°Offx Stealer ¡£µ±Ä¿±êÖ´ÐÐÏÂÔصÄÎļþʱ»áÊÕµ½Ò»ÌõÐé¼ÙµÄ´íÎóÏûÏ¢£¬Éù³ÆÓ¦Ó÷¨Ê½Æô¶¯Ê§°Ü£¬µ«ÊÇOffx StealerÈÔÈ»ÔÚºǫ́ÔËÐÐ ¡£µÚ¶þ¸ö»î¶¯·Ö·¢Ò»¸öÃûΪCapCut_Pro_Edit_Video.rarµÄÎļþ£¬»á´¥·¢Ò»¸öPowerShell½Å±¾£¬¸Ã½Å±¾½«½âÃÜ¡¢½âѹºÍ¼ÓÔØ×îÖÕpayload£ºRedline StealerºÍ.NET¿ÉÖ´ÐÐÎļþ ¡£


https://blog.cyble.com/2023/05/19/capcut-users-under-fire/