ŲÍþÕþ¸®Í¸Â¶Æä12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷
Ðû²¼Ê±¼ä 2023-07-261¡¢Å²ÍþÕþ¸®Í¸Â¶Æä12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷
¾ÝýÌå7ÔÂ25ÈÕ±¨µÀ£¬Å²ÍþÕþ¸®12¸ö²¿Î¯Ê¹ÓõÄICTƽ̨Ôâµ½ºÚ¿Í¹¥»÷¡£¸Ã¹¥»÷²¢Î´Ó°ÏìŲÍþÊ×Ïà°ì¹«ÊÒ¡¢¹ú·À²¿¡¢Ë¾·¨²¿ºÍÍâ½»²¿¡£Å²ÍþÄþ¾²Óë·þÎñ×éÖ¯(DSS)ÔÚ·¢ÏÖ¹¥»÷ʼþºó֪ͨÁ˹ú¼ÒÄþ¾²¾Ö(NSM)£¬Ä¿Ç°ÊÓ²ìÕýÔÚ½øÐÐÖС£Å²ÍþÊý¾Ý±£»¤¾Ö±íÃ÷£¬ºÚ¿Í¿ÉÄÜÒѾ·ÃÎʲ¢ÇÔÈ¡ICTϵͳÖеÄÃô¸ÐÊý¾Ý¡£¾¡¹Ü±»¹¥»÷µÄƽ̨ÔÚÈÕ³£ÔË×÷Öз¢»Ó×ÅÖØÒª×÷Ó㬵«´Ë´Î¹¥»÷²»»áµ¼ÖÂÊÂÇé»î¶¯Í£Ö¹£¬Õþ¸®²¿ÃŽ«¼ÌÐøÕý³£ÊÂÇé¡£¾ÝϤ£¬¹¥»÷ÕßËÆºõÀûÓÃÁËIvanti Endpoint Manager Mobile(EPMM)½â¾ö·½°¸ÖеÄ©¶´£¬Ä¿Ç°Â©¶´Òѱ»ÐÞ¸´¡£
https://securityaffairs.com/148778/hacking/norwegian-ministries-cyber-attack.html
2¡¢ÑÅÂí¹þ¼ÓÄôó·Ö¹«Ë¾Ôâµ½Black ByteºÍAkiraµÄ¹¥»÷
¾Ý7ÔÂ25ÈÕ±¨µÀ£¬ÑÅÂí¹þ¼ÓÄôó·Ö¹«Ë¾ÈÏ¿ÉÆäÔâµ½Ò»´ÎÍøÂç¹¥»÷£¬µ¼ÖÂÁËδ¾ÊÚȨµÄ·ÃÎʺÍÊý¾Ýй¶¡£¸Ã¹«Ë¾ÌåÏÖÆäѸËÙ½ÓÄÉ´ëʩֹͣ¹¥»÷£¬²¢Í¨ÖªÁËÊÜÓ°ÏìµÄ¸öÈË¡£6ÔÂ14ÈÕ£¬¸Ã¹«Ë¾±»ÁÐÈëBlack ByteÀÕË÷ÍÅ»ïµÄ±»¹¥»÷ÕßÁÐ±í¡£ÉÏÖÜÎ壬¸Ã¹«Ë¾ÓÖ·ºÆðÔÚAkiraÀÕË÷ÍÅ»ïµÄÍøÕ¾ÉÏ¡£Ñо¿ÈËÔ±³Æ£¬×éÖ¯±»Á½¸ö²îÒìµÄÀÕË÷ÍÅ»ïÁгöµÄÇé¿öÔ½À´Ô½³£¼û£¬ÕâÊǽñÄêµÄÒ»¸öÖ÷ÒªÇ÷ÊÆ¡£
https://therecord.media/yamaha-confirms-cyberattack-after-multiple-ransomware-gangs-claim
3¡¢Ñо¿ÈËÔ±·¢ÏÖTETRAÎÞÏßµç³ß¶ÈÖеÄ©¶´TETRA:BURST
ýÌå7ÔÂ25Èճƣ¬Ñо¿ÈËÔ±·¢ÏÖÁ˵ØÃ漯ȺÎÞÏßµç(TETRA)³ß¶ÈÖб»Í³³ÆÎªTETRA:BURSTµÄ5¸ö©¶´¡£ÕâЩ©¶´·Ö±ðΪCVE-2022-24400¡¢CVE-2022-24401¡¢CVE-2022-24402¡¢CVE-2022-24403ºÍCVE-2022-24404¡£ÆäÖÐ×îÑÏÖØµÄÊÇCVE-2022-24401£¬ÕâÊÇÒ»ÖÖoracle½âÃܹ¥»÷£¬¿ÉÒÔÔÚ²»ÖªµÀ¼ÓÃÜÃÜÔ¿µÄÇé¿öÏÂй¶Îı¾¡¢ÓïÒô»òÊý¾ÝͨÐÅ¡£Æä´ÎÊÇCVE-2022-24402£¬Ëü¿É±»ÓÃÀ´×¢Èë¼à¿Ø¹¤ÒµÉ豸µÄÊý¾ÝÁ÷Á¿¡£Ñо¿ÈËÔ±¼Æ»®ÔÚ¼´½«¾ÙÐеÄBlack Hat USA 2023ÉÏÅû¶¹ØÓÚ©¶´µÄ¸ü¶àÐÅÏ¢¡£
https://www.midnightblue.nl/tetraburst
4¡¢Ivanti½ô¼±¸üÐÂÐÞ¸´EPMMÖб»ÀûÓõÄÉí·ÝÑéÖ¤ÈÆ¹ý©¶´
7ÔÂ25ÈÕ±¨µÀ³Æ£¬IvantiÐû²¼½ô¼±¸üУ¬ÐÞ¸´ÆäEndpoint Manager Mobile(EPMM)ÒÆ¶¯É豸¹ÜÀíÈí¼þ£¨ÒÔǰ³ÆMobileIron Core£©Öб»ÀûÓõÄ©¶´¡£ÕâÊÇÒ»¸öÉí·ÝÑéÖ¤ÈÆ¹ý©¶´£¨CVE-2023-35078£©£¬Î´¾ÊÚȨµÄÓû§¿ÉÔÚδÉí·ÝÑéÖ¤µÄÇé¿öÏ·ÃÎÊÓ¦Ó÷¨Ê½µÄ¹¦Ð§»ò×ÊÔ´¡£CISA³Æ£¬¹¥»÷Õß»¹¿ÉÒÔÀûÓøÃ©¶´½øÐÐÆäËüÅäÖøü¸Ä£¬°üÂÞ´´½¨EPMM¹ÜÀíÕÊ»§¡£Õâ¼ÒÈí¼þ¹«Ë¾ÌåÏÖ£¬¸Ã©¶´Òѱ»»ý¼«ÀûÓ㬵«Ã»ÓÐ͸¶Óйع¥»÷ÐÔÖÊ»ò¹¥»÷ÕßÉí·ÝµÄ¸ü¶àϸ½Ú¡£
https://thehackernews.com/2023/07/ivanti-releases-urgent-patch-for-epmm.html
5¡¢¹ú¼ÊÂÉËùOrrickй¶Óû§Êý¾ÝÓ°ÏìÁè¼Ý15Íò¸ö¿Í»§
¾Ý7ÔÂ24ÈÕ±¨µÀ£¬¹ú¼ÊÂÉËùOrrickÕýÔÚÏò½ü153000ÈËͨ±¨Ò»ÆðÄþ¾²Ê¼þ£¬¸Ãʼþµ¼Ö¶à¸ö¿Í»§Îļþй¶¡£OrrickÔÚÉùÃ÷Öгƣ¬ËûÃÇÔÚ3ÔÂ13ÈÕ·¢ÏÖÁ˹¥»÷ÕßÕë¶ÔÆäÉú´æ²¿Ãſͻ§¶ËÎļþµÄÎļþ´æ´¢É豸µÄ¹¥»÷¡£ÊÓ²ìÈ·¶¨£¬Î´¾ÊÚȨµÄ¹¥»÷ÕßÔÚ2ÔÂ28ÈÕÖÁ3ÔÂ7ÈÕ·ÃÎÊÁ˰üÂÞ½¡¿µÐÅÏ¢ºÍ¸öÈËÉí·ÝÐÅÏ¢µÄ¿Í»§Îļþ¡£¸Ãʼþ²¢Î´µ¼ÖÂÈκοͻ§·þÎñ»òÔËÓªÖжϣ¬Ò²Ã»Óз¢ÏÖÓë´Ë´Î¹¥»÷Ïà¹ØµÄÀÕË÷Èí¼þ¡£
https://www.bankinfosecurity.com/law-firm-hack-affects-victims-earlier-breach-again-a-22633
6¡¢ºÚ¿ÍÍÅ»ïSiegedSec¹ûÈ»½ü1GBÓë±±Ô¼Ïà¹ØµÄÎļþ
ýÌå7ÔÂ25ÈÕ±¨µÀ£¬ºÚ¿ÍÍÅ»ïSiegedSecÉù³Æ¹¥»÷Á˱±Ô¼£¬²¢Ð¹Â¶Á˽ü1 GBµÄÊý¾Ý¡£SiegedSec³ÆÒÑÈëÇÖ±±Ô¼COIÃÅ»§ÍøÕ¾£¬Ëæºó¹ûÈ»ÁËÊý°Ù·Ý¹©±±Ô¼¹ú¼ÒºÍºÏ×÷»ï°éʹÓõÄÃô¸ÐÎļþ¡£ÆäÖк¬ÖÁÉÙ70Ãû±±Ô¼¹ÙÔ±µÄÐÕÃû¡¢ÓʼþµØÖ·¡¢µç»°ºÅÂë¡¢°ì¹«µØÖ·ºÍ¾üÏεȡ£¾Ý³Æ£¬¶Ô±±Ô¼COIÃÅ»§ÍøÕ¾µÄ¹¥»÷±êÖ¾×ÅSiegedSecÕ½ÊõµÄ²»Í£Éý¼¶¡£¾¡¹Ü±±Ô¼¹ÙÔ±ÉÐδ֤ʵ´Ë´ÎÊý¾Ýй¶Ê¼þ£¬µ«Ð¹Â¶µÄÎļþ°üÂÞÁ˱±Ô¼¹ú¼Ò¼°ÆäºÏ×÷»ï°éµÄÖØÒªÐÅÏ¢£¬Òý·¢Á˶ÔÄþ¾²Ó°ÏìµÄµ£ÓÇ¡£
https://www.hackread.com/siegedsec-hacktivist-hack-nato-data-leak/