Å·ÖÞÖ´·¨Õþ¸®Àֳɵ·»ÙEncroChat²¢ÒÑ´þ²¶6600¶àÈË
Ðû²¼Ê±¼ä 2023-06-291¡¢Å·ÖÞÖ´·¨Õþ¸®Àֳɵ·»ÙEncroChat²¢ÒÑ´þ²¶6600¶àÈË
¾ÝýÌå6ÔÂ27ÈÕ±¨µÀ£¬Å·ÖÞÐ̾¯×éÖ¯Ðû²¼Òѵ·»Ù¼ÓÃÜÒƶ¯Í¨ÐÅƽ̨EncroCha£¬²¢´þ²¶ÁË6600¶àÈË£¬²é»ñÁË9.79ÒÚÃÀÔª·Ç·¨×ʽð¡£2020Ä꿪ʼ£¬Å·Ö޵Ĵó¹æÄ£Ö´·¨Ðж¯Éø͸µ½¸Ãƽ̨¡£Ëæºó·¨¹úºÍºÉÀ¼Õþ¸®µÄÁªºÏÊÓ²ì½Ø»ñ²¢·ÖÎöÁËÖÁÉÙ6ÍòÃûÓû§µÄÁè¼Ý1.15ÒڴζԻ°£¬´þ²¶ÁË6558ÃûEncroChatÓû§¡£ÕâЩÈË´ó²¿ÃÅÊÇÓÐ×éÖ¯·¸×ïµÄ³ÉÔ±£¨34.8%£©»ò´Óʶ¾Æ···ÔË£¨33.3%£©£¬ÆäÓàµÄÈË´ÓÊÂÏ´Ç®£¨14%£©¡¢Ä±É±£¨11.5%£©ºÍǹ֧··ÔË£¨6.4%£©¡£Æù½ñΪֹ£¬±»²¶µÄEncroChatÓû§Òѱ»Åд¦×ܼÆ7134Äê¼à½û£¬µ«ÉÐδȫ²¿±»ÅÐÐÌ¡£
https://www.bleepingcomputer.com/news/security/encrochat-takedown-led-to-6-500-arrests-and-979-million-seized/
2¡¢ÀÕË÷ÍÅ»ï8BaseµÄ¹¥»÷¼¤ÔöÖ÷ÒªÕë¶ÔÃÀ¹úºÍ°ÍÎ÷µÄÆóÒµ
¾Ý6ÔÂ28ÈÕ±¨µÀ£¬ÀÕË÷ÍÅ»ï8BaseÕýÔÚÕë¶ÔÊÀ½ç¸÷µØµÄ×éÖ¯½øÐÐË«ÖØÀÕË÷¹¥»÷¡£¸ÃÍÅ»ïÓÚ2022Äê3ÔÂÊ״ηºÆð£¬Ò»Ö±Ïà¶Ôƽ¾²£¬µ«Æä¹¥»÷»î¶¯ÔÚ½ñÄê6Ô·ݼ¤Ôö¡£Æ¾¾ÝMalwarebytesºÍNCC GroupµÄÊý¾Ý£¬½ØÖÁ5Ô£¬ÒÑÓÐ67ÆðÓë8BaseÓйصĹ¥»÷£¬ÆäÖÐÔ¼50%µÄÄ¿±ê´ÓÊÂÉÌÒµ·þÎñ¡¢ÖÆÔìºÍ½¨ÖþÐÐÒµ£¬´ó¶àÊý×é֯λÓÚÃÀ¹úºÍ°ÍÎ÷¡£VMware³Æ£¬×î½ü8BaseÔÚ¹¥»÷»î¶¯ÖÐʹÓõļÆı±íÃ÷£¬ÕâЩ¹¥»÷À´×ÔÒ»¸ö³ÉÊìµÄÀÕË÷ÍŻ¿ÉÄÜÊÇRansomHouse£©µÄÆ·ÅÆÖØËÜ¡£´ËÍ⣬8BaseʹÓõÄÊÇÀÕË÷Èí¼þPhobos µÄ¶¨ÖÆ°æ±¾£¬Í¨¹ýSmokeLoader¼ÓÔØ¡£
https://thehackernews.com/2023/06/8base-ransomware-spikes-in-activity.html
3¡¢Phylum¼ì²âµ½Õë¶ÔNPMÉú̬ϵͳµÄÅÓ´óµÄ¹¥»÷»î¶¯
PhylumÔÚ6ÔÂ23ÈÕ³ÆÆä¼ì²âµ½Ò»ÆðÕë¶ÔnpmÉú̬ϵͳµÄл£¬ÀûÓÃÁËÆæÌصÄÖ´ÐÐÁ´ÏòÄ¿±êϵͳ·Ö·¢Î´ÖªµÄpayload¡£¸Ã»î¶¯ÓÚ6ÔÂ11ÈÕÊ״α»·¢ÏÖ£¬ÓÐÎÊÌâµÄÈí¼þ°üËƺõÊdzɶÔÐû²¼µÄ£¬Ã¿Ò»¶Ô¶¼ÐͬÊÂÇéÀ´»ñÈ¡ÌرðµÄ×ÊÔ´£¬ËæºóÕâЩ×ÊÔ´»á±»½âÂëºÍÖ´ÐС£ÆäÖУ¬µÚÒ»¸ö°ü½«´ÓÔ¶³Ì·þÎñÆ÷¼ìË÷ÁîÅƲ¢´æ´¢µ½µ±µØ£¬µÚ¶þ¸ö°üÀûÓôËÁîÅÆ´ÓÔ¶³Ì·þÎñÆ÷»ñÈ¡ÁíÒ»¸ö½Å±¾¡£¼øÓÚ´ËÊÂÇéÁ÷³Ì£¬Õâ¶ÔÈí¼þ°üµÄ°²×°ºÍÖ´ÐÐ˳ÐòÖÁ¹ØÖØÒª¡£Ä¿Ç°Éв»Çå³þ¸Ã»î¶¯±³ºóµÄ¹¥»÷ÕßµÄÉí·Ý¡£
https://blog.phylum.io/sophisticated-ongoing-attack-discovered-on-npm/
4¡¢Proximus±»nyobÖ¸¿Ø·Ç·¨·ÖÎöÊý°ÙÍòÊÖ»úÓû§ÐÅÏ¢
ýÌå6ÔÂ27Èճƣ¬nyobÖ¸¿ØÈí¼þ¹«Ë¾TeleSignÊÕ¼¯ºÍ³öÊÛÊý°ÙÍòÊÖ»úÓû§µÄÐÅÏ¢¡£nyobÊǰµØÀûµÄÒ»¸öÊý×Ö°æȨ×éÖ¯£¬¸ÃͶËßÕë¶ÔBICS¡¢TeleSignºÍProximus£¬ÆäÖÐBICSÊDZÈÀûʱµÄͨÐÅ·þÎñ£¬TeleSignÊÇÃÀ¹úµÄÈí¼þ¹«Ë¾£¬ProximusÊǶþÕßµÄĸ¹«Ë¾¡£nyob³Æ£¬µç»°ÌṩÉ̻ὫÊý¾Ýת·¢¸øBICS£¬BICS½«Æäת·¢¸øTeleSign¡£TeleSign»áÉú³ÉÓйØÓû§µÄÐÅÈÎÆÀ·Ö£¬²¢½«µç»°Êý¾Ý³öÊÛ¸øMicrosoftºÍTikTokÆ·¼¶Èý·½£¬¶øÎÞÐèÈκÎÈËÖªÇé»òͬÒâ¡£ÕⳡËßËÏ×îÖÕ¿ÉÄܵ¼Ö¾޴óµÄËðʧ£¬±ÈÀûʱÊý¾ÝÑÚ»¤¾Ö¿ÉÒÔ¿ª³ö×î¸ßÔ¼2.5ÒÚÃÀÔª£¨ProximusÈ«ÇòÓªÒµ¶îµÄ4%£©µÄ·£¿î¡£
https://www.malwarebytes.com/blog/news/2023/06/software-company-accused-of-illegally-profiling-millions-of-mobile-phone-users
5¡¢²¿Ãű±ÃÀÓû§·ÃÎÊÍøÒ³°æOutlookʱ·ºÆð500 error
6ÔÂ27ÈÕ±¨µÀ³Æ£¬Î¢Èí³Æ²¿Ãű±ÃÀµÄÓû§ÎÞ·¨Í¨¹ýOutlookÍøÒ³°æ·ÃÎÊÆäExchange OnlineÓÊÏä¡£ËäȻ΢ÈíÌåÏÖ¸ÃÎÊÌâ½öÓ°Ïì±±ÃÀµØÓò£¬µ«ÓÐÓû§³ÂËßÒ²¿ÉÄÜÓ°ÏìÁËÄÏÃÀÖÞ£¨°ÍÎ÷¡¢ÖÇÀû¡¢¶àÃ×Äá¼ÓºÍ¸çÂ×±ÈÑÇ£©¡£ÊÜÓ°ÏìµÄÓû§ÔÚ·ÃÎÊÍøÒ³°æOutlookʱ¿ÉÄÜ»áÓöµ½·ºÆð500 error¡£ÔÚÖжϿªÊ¼ÆßСʱºó£¬Î¢ÈíÓÚ6ÔÂ27ÈÕ16:29 EDTÌåÏÖ£¬ ÊÜÓ°ÏìÓû§µÄOutlookÒѾ»Ö¸´ÔÚÏß¡£6Ô³õ£¬Î¢ÈíµÄAzure¡¢Outlook.comºÍOneDriveÔøÔâµ½DDoS¹¥»÷£¬·þÎñÔÝʱÖжϡ£
https://www.bleepingcomputer.com/news/microsoft/outlook-for-the-web-outage-impacts-users-across-america/
6¡¢FortiGuardÐû²¼ThirdEye InfostealerµÄ·ÖÎö³ÂËß
6ÔÂ27ÈÕ£¬FortiGuardÐû²¼Á˹ØÓÚThirdEye InfostealerµÄ·ÖÎö³ÂËß¡£Ñо¿ÈËÔ±½üÆÚ·¢ÏÖÁËһЩ¿ÉÒɵÄÎļþ£¬·ÖÎö·¢ÏÖÊÇÒ»ÖÖеÄÐÅÏ¢ÇÔÈ¡·¨Ê½£¬²¢½«ÆäÃüÃûΪThirdEye¡£ThirdEyeµÄ¹¦Ð§Ïà¶Ô¼òµ¥£¬ËüÊÕ¼¯Ä¿±êµÄϵͳÐÅÏ¢£¬Ã¶¾ÙÎļþºÍÎļþ¼Ð¡¢ÕýÔÚÔËÐеĽø³ÌÒÔ¼°ÍøÂçÐÅÏ¢¡£Ñо¿ÈËÔ±³Æ£¬¸Ã¶ñÒâÈí¼þÊÕ¼¯µÄÐÅÏ¢¶ÔÓÚÁ˽âºÍËõСĿ±ê·¶Î§ºÜÓмÛÖµ£¬¶ø±»ThirdEye¹¥»÷µÄÄ¿±ê¿ÉÄÜ»á³ÉΪδÀ´ÍøÂç¹¥»÷µÄ¹¤¾ß¡£ÓÉÓÚ´ó¶àÊýThirdEye±äÌåÌá½»¸ø¶íÂÞ˹µÄ¹«¹²É¨Ãè·þÎñ£¬×îбäÌåµÄÎļþÃûÒ²ÊǶíÓïµÄ£¬Òò´ËËü¿ÉÄÜÕë¶Ô¶íÂÞ˹µÄ×éÖ¯¡£
https://www.fortinet.com/blog/threat-research/new-fast-developing-thirdeye-infostealer-pries-open-system-information