Rollbar¹«Ë¾µÄϵͳÔâµ½¹¥»÷µ¼Ö¿ͻ§µÄ·ÃÎÊÁîÅÆй¶

Ðû²¼Ê±¼ä 2023-09-15

1¡¢Rollbar¹«Ë¾µÄϵͳÔâµ½¹¥»÷µ¼Ö¿ͻ§µÄ·ÃÎÊÁîÅÆй¶


¾Ý9ÔÂ13ÈÕ±¨µÀ£¬Èí¼þBug¸ú×Ù¹«Ë¾RollbarµÄϵͳÔâµ½ÈëÇÖ£¬µ¼Ö²¿ÃÅÊý¾Ýй¶ ¡£RollbarÓÚ9ÔÂ6ÈÕÔÚÉó²éÊý¾Ý¿âÈÕ־ʱ·¢ÏÖÁËÕâÒ»ÎÊÌ⣬¸ÃÈÕÖ¾ÏÔʾ·þÎñÕÊ»§±»ÓÃÀ´µÇ¼»ùÓÚÔƵÄBug¼à¿Øƽ̨ ¡£ºóÐøÊӲ췢ÏÖ£¬¹¥»÷ÕßÔÚ8ÔÂ9ÈÕÖÁ8ÔÂ11ÈÕ·ÃÎÊÁËÆäϵͳ£¬Éæ¼°Ãô¸ÐµÄ¿Í»§ÐÅÏ¢£¬ÀýÈçÓû§Ãû¡¢ÓʼþµØÖ·¡¢ÕÊ»§ÃûºÍÏîÄ¿ÐÅÏ¢µÈ ¡£¸üÖØÒªµÄÊÇ£¬¹¥»÷Õß»¹¼ìË÷ÁË¿Í»§ÓëRollbarÏîÄ¿½»»¥µÄÏîÄ¿·ÃÎÊÁîÅÆ ¡£


https://www.bleepingcomputer.com/news/security/rollbar-discloses-data-breach-after-hackers-stole-access-tokens/


2¡¢Ó¢¹ú´óÂü³¹Ë¹Ìؾ¯¾Ö(GMP)͸¶²¿ÃÅÔ±¹¤µÄÐÅϢй¶


ýÌå9ÔÂ14Èճƣ¬Ó¢¹ú´óÂü³¹Ë¹Ìؾ¯²ì¾Ö(GMP)²¿ÃÅÔ±¹¤µÄ¸öÈËÐÅϢй¶£¬Ô­ÒòÊǵÚÈý·½¹©Ó¦ÉÌÔâµ½ÀÕË÷¹¥»÷ ¡£Ðû²¼µÄÉùÃ÷ÖÐδÌá¼°±»¹¥»÷¹«Ë¾µÄÃû³Æ£¬µ«ËüÊÇGMPµÈÓ¢¹úÆäËü»ú¹¹µÄ·þÎñ¹©Ó¦ÉÌ ¡£GMP³ÆÔ±¹¤µÄ²ÆÕþÐÅÏ¢²¢Î´Ð¹Â¶ ¡£Ô¼Ò»¸öÔÂÇ°£¬±±°®¶ûÀ¼¾¯¾Ö(PSNI)Ò²·¢ÉúÁËÒ»ÆðÀàËƵÄʼþ£¬Ð¹Â¶ÁË10000¶àÃû¾¯²ìµÄ¸öÈËÉí·ÝÐÅÏ¢(PII)¡¢¾üÏκÍλÖà ¡£


https://securityaffairs.com/150828/data-breach/greater-manchester-police-gmp-data-breach.html


3¡¢SymantecÔÚ°²×°LockBitʧ°ÜµÄ¹¥»÷Öз¢ÏÖеÄ3AM


9ÔÂ13ÈÕ£¬Symantec³ÆÆä·¢ÏÖÁËÒ»ÖÖеÄÀÕË÷Èí¼þ3AM ¡£Ñо¿ÈËÔ±³Æ£¬Ê¹ÓÃ3AMµÄ¹¥»÷»î¶¯ºÜÉÙ¼û£¬Æù½ñΪֹ½öÔÚ¹¥»÷ÕßδÄÜ°²×°LockBitµÄÒ»´Î¹¥»÷»î¶¯Öз¢ÏÖ¹ý¸Ã¶ñÒâÈí¼þµÄ·Ö·¢ ¡£3AMÓÉRust¿ª·¢£¬ÔÚ¿ªÊ¼¼ÓÃÜ֮ǰ£¬Ëü»áʵÑéÍ£Ö¹¶à¸ö·þÎñ£¬Íê³É¼ÓÃܺó»áɾ³ý¾íÓ°(VSS)¸±±¾ ¡£ÆäΪ¼ÓÃÜÎļþ¸½¼ÓµÄÀ©Õ¹ÃûÊÇ.Threeamtime£¬Ñо¿ÈËÔ±ÉÐδȷ¶¨3AM±³ºóµÄ¹¥»÷ÕßÊÇ·ñÓëÒÑÖªµÄ¹¥»÷ÍÅ»ïÓйØÁª ¡£ 


https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/3am-ransomware-lockbit


4¡¢TrendMicroÏêÊöRedLineºÍVidarÊÇÈçºÎÀûÓÃEVÖ¤Êé


TrendMicroÔÚ9ÔÂ13ÈÕÏêÊöÁËRedLineºÍVidarµÄ¹¥»÷ÕßÈçºÎÀûÓôøÓÐÀ©Õ¹ÑéÖ¤(EV)´úÂëÇ©ÃûµÄÖ¤Êé ¡£×îÐÂÊÓ²ìÏÔʾ£¬RedLineºÍVidar±³ºóµÄ¹¥»÷Õß¿ªÊ¼Ê¹ÓÃÓëÁ÷´«ÐÅÏ¢ÇÔÈ¡·¨Ê½ÏàͬµÄ·½Ê½À´·Ö·¢ÀÕË÷Èí¼þpayload ¡£ÔÚÕâÒ»ÌØÊâ°¸ÀýÖУ¬Ä¿±ê×î³õÊÕµ½µÄÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ´øÓÐÀ©Õ¹ÑéÖ¤£¨EV£©´úÂëÇ©ÃûÖ¤Ê飬²»¾ÃºóËûÃÇ¿ªÊ¼Í¨¹ýͬÑùµÄ;¾¶ÊÕµ½ÁËÀÕË÷Èí¼þpayload ¡£¾¡¹ÜCABFʵʩÁ˸üÑϸñµÄÄþ¾²´ëÊ©£¬µ«¹¥»÷ÕßÈÔÄÜÁ÷´«Ê¹ÓÃEVÖ¤Êé½øÐÐÇ©ÃûµÄÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ ¡£


https://www.trendmicro.com/en_us/research/23/i/redline-vidar-first-abuses-ev-certificates.html 


5¡¢Î¢ÈíÌáÐÑStorm-0324½üÆÚÀûÓÃMS TeamsµÄµöÓã¹¥»÷


¾ÝýÌå9ÔÂ13ÈÕ±¨µÀ£¬Î¢ÈíÌáÐÑÖ÷ÒªÓëÀÕË÷ÍÅ»ïºÏ×÷µÄStorm-0324×î½üת¶øʹÓÃMicrosoft TeamsµöÓã¹¥»÷À´ÈëÇÖÆóÒµÍøÂç ¡£´Ó7Ô·ݿªÊ¼£¬Storm-0324±»·¢ÏÖʹÓÃTeams·¢Ë͵öÓãÓÕ¶ü£¬ÆäÖаüÂÞÖ¸Ïò¶ñÒâSharePointÍйÜÎļþµÄÁ´½Ó ¡£¶ÔÓڴ˻£¬¸ÃÍÅ»ï×îÓпÉÄÜÒÀÀµÓÚÃûΪTeamsPhisherµÄ¿ªÔ´¹¤¾ß ¡£¸Ã¹¤¾ßÄܹ»Èƹý¶ÔÀ´×ÔÍⲿÓû§µÄ´«ÈëÎļþµÄÏÞÖÆ£¬²¢ÏòTeamsÓû§·¢Ë͵öÓ㸽¼þ ¡£Î¢ÈíÌåÏַdz£ÖØÊÓÕâЩµöÓã»î¶¯£¬²¢ÍƳöÁ˶àÏî¸ïдëÊ©£¬ÒÔ¸üºÃµØ·ÀÓùÕâЩ¹¥»÷ ¡£ 


https://thehackernews.com/2023/09/microsoft-warns-of-new-phishing.html


6¡¢KasperskyÐû²¼2023ÄêÉÏ°ëÄ깤ҵ×Ô¶¯»¯ÏµÍ³µÄ³ÂËß


9ÔÂ13ÈÕ£¬KasperskyÐû²¼2023ÄêÉÏ°ëÄ깤ҵ×Ô¶¯»¯ÏµÍ³µÄͳ¼Æ³ÂËß ¡£2023ÄêÉÏ°ëÄ꣬±»À¹½Ø¶ñÒ⹤¾ßµÄICS¼ÆËã»ú±ÈÀý½Ï2022ÄêÏ°ëÄêϽµÁË0.3¸ö°Ù·Öµã£¬½µÖÁ34% ¡£´ÓµØÀíλÖÃÀ´¿´£¬·ÇÖÞÔâµ½¹¥»÷µÄICS¼ÆËã»ú×î¶à£¨Õ¼±È40.3%£©£¬¶ø±±Å·×îÉÙ£¨14.7%£© ¡£¹¤³ÌºÍICS¼¯³É£¨Ôö¼Ó2%£©¡¢ÖÆÔ죨Ôö¼Ó1.9%£©ºÍÄÜÔ´£¨Ôö¼Ó1.5%£©ÁìÓòÔâµ½¹¥»÷µÄICS¼ÆËã»úÓÐËùÔö¼Ó ¡ £»¥ÁªÍø¡¢µç×ÓÓʼþ¿Í»§¶ËºÍ¿ÉÒƶ¯É豸ÈÔÈ»ÊÇ×éÖ¯ÔËÓª¼¼Êõ»ù´¡ÉèÊ©ÖмÆËã»úµÄÖ÷ÒªÍþвÀ´Ô´ ¡£


https://securelist.com/threat-landscape-for-industrial-automation-systems-statistics-for-h1-2023/110605/