ŲÍþÕþ¸®Í¸Â¶Æä12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷

Ðû²¼Ê±¼ä 2023-07-26

1¡¢Å²ÍþÕþ¸®Í¸Â¶Æä12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷


¾ÝýÌå7ÔÂ25ÈÕ±¨µÀ£¬Å²ÍþÕþ¸®12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷¡£¸Ã¹¥»÷²¢Î´Ó°ÏìŲÍþÊ×Ïà°ì¹«ÊÒ¡¢¹ú·À²¿¡¢Ë¾·¨²¿ºÍÍâ½»²¿¡£Å²ÍþÄþ¾²Óë·þÎñ×éÖ¯(DSS)ÔÚ·¢ÏÖ¹¥»÷ʼþºó֪ͨÁ˹ú¼ÒÄþ¾²¾Ö(NSM)£¬Ä¿Ç°ÊÓ²ìÕýÔÚ½øÐÐÖС£Å²ÍþÊý¾Ý±£»¤¾Ö±íÃ÷£¬ºÚ¿Í¿ÉÄÜÒѾ­·ÃÎʲ¢ÇÔÈ¡ICTϵͳÖеÄÃô¸ÐÊý¾Ý¡£¾¡¹Ü±»¹¥»÷µÄƽ̨ÔÚÈÕ³£ÔË×÷Öз¢»Ó×ÅÖØÒª×÷Ó㬵«´Ë´Î¹¥»÷²»»áµ¼ÖÂÊÂÇé»î¶¯Í£Ö¹£¬Õþ¸®²¿ÃŽ«¼ÌÐøÕý³£ÊÂÇé¡£¾ÝϤ£¬¹¥»÷ÕßËÆºõÀûÓÃÁËIvanti Endpoint Manager Mobile(EPMM)½â¾ö·½°¸ÖеÄ©¶´£¬Ä¿Ç°Â©¶´Òѱ»ÐÞ¸´¡£


https://securityaffairs.com/148778/hacking/norwegian-ministries-cyber-attack.html


2¡¢ÑÅÂí¹þ¼ÓÄôó·Ö¹«Ë¾Ôâµ½Black ByteºÍAkiraµÄ¹¥»÷


¾Ý7ÔÂ25ÈÕ±¨µÀ£¬ÑÅÂí¹þ¼ÓÄôó·Ö¹«Ë¾ÈÏ¿ÉÆäÔâµ½Ò»´ÎÍøÂç¹¥»÷£¬µ¼ÖÂÁËδ¾­ÊÚȨµÄ·ÃÎʺÍÊý¾Ýй¶¡£¸Ã¹«Ë¾ÌåÏÖÆäѸËÙ½ÓÄÉ´ëʩֹͣ¹¥»÷£¬²¢Í¨ÖªÁËÊÜÓ°ÏìµÄ¸öÈË¡£6ÔÂ14ÈÕ£¬¸Ã¹«Ë¾±»ÁÐÈëBlack ByteÀÕË÷ÍÅ»ïµÄ±»¹¥»÷ÕßÁбí¡£ÉÏÖÜÎ壬¸Ã¹«Ë¾ÓÖ·ºÆðÔÚAkiraÀÕË÷ÍÅ»ïµÄÍøÕ¾ÉÏ¡£Ñо¿ÈËÔ±³Æ£¬×éÖ¯±»Á½¸ö²îÒìµÄÀÕË÷ÍÅ»ïÁгöµÄÇé¿öÔ½À´Ô½³£¼û£¬ÕâÊǽñÄêµÄÒ»¸öÖ÷ÒªÇ÷ÊÆ¡£


https://therecord.media/yamaha-confirms-cyberattack-after-multiple-ransomware-gangs-claim


3¡¢Ñо¿ÈËÔ±·¢ÏÖTETRAÎÞÏßµç³ß¶ÈÖеÄ©¶´TETRA:BURST


ýÌå7ÔÂ25Èճƣ¬Ñо¿ÈËÔ±·¢ÏÖÁ˵ØÃ漯ȺÎÞÏßµç(TETRA)³ß¶ÈÖб»Í³³ÆÎªTETRA:BURSTµÄ5¸ö©¶´¡£ÕâЩ©¶´·Ö±ðΪCVE-2022-24400¡¢CVE-2022-24401¡¢CVE-2022-24402¡¢CVE-2022-24403ºÍCVE-2022-24404¡£ÆäÖÐ×îÑÏÖØµÄÊÇCVE-2022-24401£¬ÕâÊÇÒ»ÖÖoracle½âÃܹ¥»÷£¬¿ÉÒÔÔÚ²»ÖªµÀ¼ÓÃÜÃÜÔ¿µÄÇé¿öÏÂй¶Îı¾¡¢ÓïÒô»òÊý¾ÝͨÐÅ¡£Æä´ÎÊÇCVE-2022-24402£¬Ëü¿É±»ÓÃÀ´×¢Èë¼à¿Ø¹¤ÒµÉ豸µÄÊý¾ÝÁ÷Á¿¡£Ñо¿ÈËÔ±¼Æ»®ÔÚ¼´½«¾ÙÐеÄBlack Hat USA 2023ÉÏÅû¶¹ØÓÚ©¶´µÄ¸ü¶àÐÅÏ¢¡£


https://www.midnightblue.nl/tetraburst


4¡¢Ivanti½ô¼±¸üÐÂÐÞ¸´EPMMÖб»ÀûÓõÄÉí·ÝÑéÖ¤ÈÆ¹ý©¶´


7ÔÂ25ÈÕ±¨µÀ³Æ£¬IvantiÐû²¼½ô¼±¸üУ¬ÐÞ¸´ÆäEndpoint Manager Mobile(EPMM)ÒÆ¶¯É豸¹ÜÀíÈí¼þ£¨ÒÔǰ³ÆMobileIron Core£©Öб»ÀûÓõÄ©¶´¡£ÕâÊÇÒ»¸öÉí·ÝÑéÖ¤ÈÆ¹ý©¶´£¨CVE-2023-35078£©£¬Î´¾­ÊÚȨµÄÓû§¿ÉÔÚδÉí·ÝÑéÖ¤µÄÇé¿öÏ·ÃÎÊÓ¦Ó÷¨Ê½µÄ¹¦Ð§»ò×ÊÔ´¡£CISA³Æ£¬¹¥»÷Õß»¹¿ÉÒÔÀûÓøÃ©¶´½øÐÐÆäËüÅäÖøü¸Ä£¬°üÂÞ´´½¨EPMM¹ÜÀíÕÊ»§¡£Õâ¼ÒÈí¼þ¹«Ë¾ÌåÏÖ£¬¸Ã©¶´Òѱ»»ý¼«ÀûÓ㬵«Ã»ÓÐ͸¶Óйع¥»÷ÐÔÖÊ»ò¹¥»÷ÕßÉí·ÝµÄ¸ü¶àϸ½Ú¡£


https://thehackernews.com/2023/07/ivanti-releases-urgent-patch-for-epmm.html


5¡¢¹ú¼ÊÂÉËùOrrickй¶Óû§Êý¾ÝÓ°ÏìÁè¼Ý15Íò¸ö¿Í»§


¾Ý7ÔÂ24ÈÕ±¨µÀ£¬¹ú¼ÊÂÉËùOrrickÕýÔÚÏò½ü153000ÈËͨ±¨Ò»ÆðÄþ¾²Ê¼þ£¬¸Ãʼþµ¼Ö¶à¸ö¿Í»§Îļþй¶¡£OrrickÔÚÉùÃ÷ÖгÆ£¬ËûÃÇÔÚ3ÔÂ13ÈÕ·¢ÏÖÁ˹¥»÷ÕßÕë¶ÔÆäÉú´æ²¿Ãſͻ§¶ËÎļþµÄÎļþ´æ´¢É豸µÄ¹¥»÷¡£ÊÓ²ìÈ·¶¨£¬Î´¾­ÊÚȨµÄ¹¥»÷ÕßÔÚ2ÔÂ28ÈÕÖÁ3ÔÂ7ÈÕ·ÃÎÊÁ˰üÂÞ½¡¿µÐÅÏ¢ºÍ¸öÈËÉí·ÝÐÅÏ¢µÄ¿Í»§Îļþ¡£¸Ãʼþ²¢Î´µ¼ÖÂÈκοͻ§·þÎñ»òÔËÓªÖжÏ£¬Ò²Ã»Óз¢ÏÖÓë´Ë´Î¹¥»÷Ïà¹ØµÄÀÕË÷Èí¼þ¡£


https://www.bankinfosecurity.com/law-firm-hack-affects-victims-earlier-breach-again-a-22633


6¡¢ºÚ¿ÍÍÅ»ïSiegedSec¹ûÈ»½ü1GBÓë±±Ô¼Ïà¹ØµÄÎļþ


ýÌå7ÔÂ25ÈÕ±¨µÀ£¬ºÚ¿ÍÍÅ»ïSiegedSecÉù³Æ¹¥»÷Á˱±Ô¼£¬²¢Ð¹Â¶Á˽ü1 GBµÄÊý¾Ý¡£SiegedSec³ÆÒÑÈëÇÖ±±Ô¼COIÃÅ»§ÍøÕ¾£¬Ëæºó¹ûÈ»ÁËÊý°Ù·Ý¹©±±Ô¼¹ú¼ÒºÍºÏ×÷»ï°éʹÓõÄÃô¸ÐÎļþ¡£ÆäÖк¬ÖÁÉÙ70Ãû±±Ô¼¹ÙÔ±µÄÐÕÃû¡¢ÓʼþµØÖ·¡¢µç»°ºÅÂë¡¢°ì¹«µØÖ·ºÍ¾üÏεÈ¡£¾Ý³Æ£¬¶Ô±±Ô¼COIÃÅ»§ÍøÕ¾µÄ¹¥»÷±êÖ¾×ÅSiegedSecÕ½ÊõµÄ²»Í£Éý¼¶¡£¾¡¹Ü±±Ô¼¹ÙÔ±ÉÐδ֤ʵ´Ë´ÎÊý¾Ýй¶Ê¼þ£¬µ«Ð¹Â¶µÄÎļþ°üÂÞÁ˱±Ô¼¹ú¼Ò¼°ÆäºÏ×÷»ï°éµÄÖØÒªÐÅÏ¢£¬Òý·¢Á˶ÔÄþ¾²Ó°ÏìµÄµ£ÓÇ¡£


https://www.hackread.com/siegedsec-hacktivist-hack-nato-data-leak/