Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄ¸öÈËÐÅÏ¢±»¹ûÈ»

Ðû²¼Ê±¼ä 2024-01-11

1¡¢Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄ¸öÈËÐÅÏ¢±»¹ûÈ»


¾ÝýÌå1ÔÂ9ÈÕ±¨µÀ £¬Ä³ºÚ¿Í×î½ü¹ûÈ»ÁËÒ»¸öÊý¾Ý¿â £¬Éù³Æ¸ÃÊý¾Ý¿âÓëHathway£¨ÒÔǰ³ÆÎª BITV Cable Networks £¬ÕýʽÃû³ÆÎª Hathway Cable & Datacom Ltd£©ÓйØ¡£Hathway ÊÇÓ¡¶ÈÁìÏȵĻ¥ÁªÍø·þÎñÌṩÉÌ (ISP) ºÍÓÐÏßµçÊÓ·þÎñÔËÓªÉÌ¡£ºÚ¿ÍÔÚÊý¾Ý¿âй¶ÂÛ̳ÉÏ·¢±íµÄÌû×ÓÖÐ͸¶ £¬Êý¾Ýй¶Ê¼þ·¢ÉúÔÚ 2023 Äê 12 Ô £¬ÆäʱËûÃÇÀûÓà Laravel ¿ò¼ÜÓ¦Ó÷¨Ê½£¨ÄÚÈݹÜÀíϵͳ£©ÖдæÔÚµÄÄþ¾²Â©¶´ÀÖ³ÉÍ»ÆÆÁË Hathway µÄ·ÀÓù´ëÊ©(CMS)¡£¶Ôй¶µÄÊý¾Ý·ÖÎöÏÔʾ £¬Óû§ÊýÁ¿Îª 3500 Íò¡£´ËÍâ £¬ÕâЩÕÊ»§µÄºÜ´óÒ»²¿ÃÅËÆºõÊÇÐéÄâÕÊ»§»òÖØ¸´ÕÊ»§¡£È¥µôÕâÐ©ÖØ¸´ÕË»§ºó £¬ÊÜÓ°ÏìÕË»§µÄʵ¼ÊÊýÁ¿¼õÉÙÖÁ½ü 400 Íò¸ö £¬Ô¶µÍÓÚ×î³õÉù³ÆµÄ 4100 Íò¸öÕË»§¡£¸ÃºÚ¿ÍΪDZÔÚÊܺ¦Õß¿ª·¢Á˰µÍøËÑË÷ÒýÇæ¡£¸Ã¹¤¾ßÔÊÐíËûÃÇËÑË÷ËûÃǵĵç×ÓÓʼþµØÖ·ºÍµç»°ºÅÂë £¬ÒÔ¼ì²éËûÃǵÄÊý¾ÝÊÇ·ñй¶¡£


2¡¢°ÍÀ­¹ç×î´óÔËÓªÉÌTigoÔâµ½Black HuntµÄÀÕË÷¹¥»÷


1ÔÂ9ÈÕ £¬Tigo Business ÔÚÉÏÖÜÔâÊÜÍøÂç¹¥»÷ £¬Ó°Ïì¸Ã¹«Ë¾ÒµÎñ²¿ÃŵÄÔÆºÍÍйܷþÎñºó £¬°ÍÀ­¹ç¾ü·½¾Í Black Hunt ÀÕË÷Èí¼þ¹¥»÷·¢³ö¾¯¸æ¡£Tigo ÊǰÍÀ­¹ç×î´óµÄÒÆ¶¯ÔËÓªÉÌ £¬Æä Tigo ÒµÎñ²¿ÃÅΪÆóÒµÌṩÊý×Ö½â¾ö·½°¸ £¬°üÂÞÍøÂçÄþ¾²×Éѯ¡¢ÔƺÍÊý¾ÝÖÐÐÄÍйÜÒÔ¼°¹ãÓòÍø (WAN) ½â¾ö·½°¸¡£Tigo Business µÄÒ»·ÝÉùÃ÷ÖÐдµÀ¡£ÍøÉϱ¨µÀµÄ´ó²¿ÃÅÐÂÎŶ¼½û¾øÈ· £¬´Ë´Î¹¥»÷²¢Î´Ó°ÏìÆä»¥ÁªÍø¡¢µç»°·þÎñºÍ Tigo Money µç×ÓÇ®°ü¡£ËäÈ» Tigo ûÓÐÌṩÓйØÍøÂç¹¥»÷µÄÈκÎϸ½Ú £¬µ«É罻ýÌåÉϵĴóÁ¿±¨µÀ±íÃ÷ËûÃÇÔâÊÜÁË Black Hunt ÀÕË÷Èí¼þµÄ¹¥»÷¡£Áè¼Ý 330 ̨·þÎñÆ÷±»¼ÓÃÜ £¬±¸·ÝÊý¾ÝÔÚ¹¥»÷ÆÚ¼äÔâµ½ÆÆ»µ¡£ËäÈ»ÀÕË÷×ÖÌõÉù³ÆºÚ¿ÍÔÚ¹¥»÷¹ý³ÌÖÐÇÔÈ¡Êý¾Ý £¬µ«Ä¿Ç°»¹Ã»ÓÐÈκÎÒÑÖªµÄÀÕË÷Èí¼þй¶±»µÁÊý¾ÝµÄʵÀý¡£


3¡¢ÍÁ¶úÆäºÚ¿Íͨ¹ýMSSQL·þÎñÆ÷Á÷´«MIMICÀÕË÷Èí¼þ


1ÔÂ10ÈÕýÌ屨µÀ £¬Securonix ÍþвÑо¿ÍŶÓÒ»Ö±ÔÚ¼à¿ØÕýÔÚ½øÐеÄÍþв»î¶¯ RE#TURGENCE £¬¸Ã»î¶¯Éæ¼°Ãé×¼ºÍÀûÓà MSSQL Êý¾Ý¿â·þÎñÆ÷À´»ñÈ¡³õʼ·ÃÎÊȨÏÞ¡£ÍþвÐÐΪÕßËÆºõÒÔÃÀ¹ú¡¢Å·Ã˺ÍÀ­¶¡ÃÀÖÞ¹ú¼ÒΪĿ±ê £¬¶øÇÒ¾ßÓо­¼Ã¶¯»ú¡£Ò»°ã¹¥»÷»î¶¯ÒªÃ´³öÊÛ¶ÔÊÜѬȾÖ÷»úµÄ¡°·ÃÎÊȨ¡± £¬ÒªÃ´×îÖÕ½»¸¶ÀÕË÷Èí¼þpayload¡£ÕâЩϸ½ÚÊǹ¥»÷ÕßÔÚÒ»´ÎÖØ´ó OPSEC£¨²Ù×÷Äþ¾²£©¹ÊÕÏÆÚ¼ä·¢ÏÖµÄ £¬´Ó×î³õ·ÃÎÊ MIMIC ÀÕË÷Èí¼þµ½ÔÚÊܺ¦ÓòÉϲ¿Êð MIMIC ÀÕË÷Èí¼þ £¬¸ÃʼþµÄʱ¼äԼĪΪһ¸öÔ¡£¸Ã»î¶¯µÄ³õʼ·ÃÎʲ¿ÃÅÓëÈ¥ÄêдµÄDB#JAMMERÀàËÆ £¬Ò²É漰ͨ¹ý±©Á¦ÆÆ½â¹ÜÀíÃÜÂë½øÐÐÖ±½Ó MSSQL ·ÃÎÊ¡£


4¡¢Water Curupiraͨ¹ýµöÓã»î¶¯·Ö·¢PikaBot Loader


1ÔÂ9ÈÕ £¬Pikabot ÊÇÒ»ÖÖ¼ÓÔØ·¨Ê½¶ñÒâÈí¼þ £¬ÎÒÃÇÔÚ 2023 ÄêµÚÒ»¼¾¶ÈÔÚÈëÇÖ¼¯ Water Curupira ÏÂ×·×Ùµ½µÄÍþв¼ÓÈëÕßÔÚÀ¬»øÓʼþ»î¶¯Öлý¼«Ê¹ÓøöñÒâÈí¼þ £¬ËæºóÔÚ 6 Ôµ׷ºÆðÒ»´ÎÖжÏ £¬Ò»Ö±Á¬Ðøµ½ 2023 Äê 9 Ô³õ. ÆäËûÑо¿ÈËÔ±´ËǰÒÑ×¢Òâµ½ËüÓëQakbot·Ç³£ÏàËÆ £¬ºóÕßÓÚ2023 Äê 8 Ô±»Ö´·¨²¿ÃÅÈ¡µÞ¡£2023 Äê×îºóÒ»¸ö¼¾¶È £¬Óë Pikabot Ïà¹ØµÄÍøÂçµöÓã»î¶¯ÊýÁ¿ÓÐËùÔö¼Ó £¬ÓëÈ¡µÞʱ¼äÒ»ÖÂQakbot  £¬Pikabot µÄ¹¥»÷Õß¿ªÕ¹ÍøÂçµöÓã»î¶¯ £¬Í¨¹ýÆäÁ½¸ö×é¼þ£¨¼ÓÔØ·¨Ê½ºÍºËÐÄÄ£¿é£©Ãé×¼Êܺ¦Õß £¬ÕâÁ½¸ö×é¼þÔÊÐíδ¾­ÊÚȨµÄÔ¶³Ì·ÃÎÊ £¬²¢ÔÊÐíͨ¹ýÓëÆäÃüÁîºÍ¿ØÖÆ (C&C) ·þÎñÆ÷½¨Á¢µÄÁ¬½ÓÖ´ÐÐÈÎÒâÃüÁî¡£Pikabot ÊÇÒ»ÖÖÅÓ´óµÄ¶à½×¶Î¶ñÒâÈí¼þ £¬ÔÚͬһÎļþÖоßÓмÓÔØ·¨Ê½ºÍºËÐÄÄ£¿é £¬ÒÔ¼°½âÃÜµÄ shellcode £¬¿É´ÓÆä×ÊÔ´ÖнâÃÜÁíÒ»¸ö DLL Îļþ¡£


5¡¢IBMÐû²¼¹ØÓÚ¶Ô2024ÄêÍøÂçÄþ¾²Ç÷ÊÆµÄÔ¤²â³ÂËß


´ÓÊÀ½ç´óʵ½¾­¼Ã £¬20234ÄêÊÇÄÑÒÔÔ¤²âµÄÒ»Äê¡£ÍøÂçÄþ¾²²¢Ã»ÓÐÆ«ÀëÕâ¸öÖ÷Ìâ £¬´øÀ´ÁËһЩÒâÏë²»µ½µÄ±ä»¯¡£2024 Äê¶ÔÓÚÍøÂç·¸×ï·Ö×ÓÀ´Ëµ½«ÊÇæµµÄÒ»Äê £¬ÒòΪÁ¬ÐøµÄµØÔµÕþÖνôÕžÖÊÆ¡¢ÃÀ¹úºÍÅ·Ã˵ÄÖØ´óÑ¡¾ÙÒÔ¼°ÊÀ½çÉÏ×î´óµÄÌåÓýÈüÊ£¨°ÍÀè°ÂÔ˻ᣩ¶¼ÔÚ¼¸¸öÔÂÄÚ¾ÙÐС£µ½Ä¿Ç°ÎªÖ¹ £¬ÍøÂç·¸×ï·Ö×Ó´Ó¶àÄêÀ´Ð¹Â¶µÄÊýÊ®ÒÚÊý¾ÝÖÐÊÕ¼¯µÄÊý¾Ý»ñÀûµÄ·½Ê½·Ç³£ÓÐÏÞ¡£°µÍøÉÏÓÐÊýÒÔ°ÙÍò¼ÆµÄÓÐЧÆóҵƾ֤ £¬¶øÇÒÊýÁ¿»¹ÔÚÁ¬ÐøÔö¼Ó £¬¹¥»÷ÕßÕýÔÚ½«Éí·ÝÎäÆ÷»¯ £¬½«ÆäÊÓΪ·ÃÎÊÌØÈ¨ÕÊ»§µÄÃØÃÜÊֶΡ£ÀÕË÷Èí¼þ¿ÉÄÜ»áÔÚ 2024 ÄêÃæÁÙË¥ÍË £¬ÒòΪԽÀ´Ô½¶àµÄ¹ú¼ÒÔÊÐí²»Ö§¸¶Êê½ð £¬Ô½À´Ô½ÉÙµÄÆóÒµÇü·þÓÚ¼ÓÃÜϵͳµÄѹÁ¦¡ª¡ªÑ¡Ôñ½«×ʽð×ªÒÆµ½Öؽ¨ÏµÍ³¶ø²»ÊǽâÃÜϵͳ¡£


6¡¢Cisco TalosÐû²¼ÀÕË÷Èí¼þBabukµÄ±äÌåTortillaµÄ½âÃÜÆ÷


¾ÝýÌå1ÔÂ10ÈÕ±¨µÀ £¬Talos ÓÚ 2021 Äê 11 ÔÂÊ×´ÎÅû¶ÁËTortilla »î¶¯ £¬¹¥»÷ÀûÓÃMicrosoft Exchange ·þÎñÆ÷ÖÐµÄ ProxyShell ȱÏÝÔÚÊܺ¦Õß»·¾³ÖÐͶ·ÅÀÕË÷Èí¼þ¡£Tortilla ÊÇÖÚ¶à ÀÕË÷Èí¼þ±äÌåÖ®Ò» £¬ÕâЩ±äÌåµÄÎļþ¼ÓÃܶñÒâÈí¼þ»ùÓÚй¶µÄ Babuk Ô´´úÂë¡£ÆäÖаüÂÞ Rook¡¢Night Sky¡¢Pandora¡¢Nokoyawa¡¢Cheerscrypt¡¢AstraLocker 2.0¡¢ESXiArgs¡¢Rorschach¡¢RTM Locker ºÍ RA GroupµÈ¡£µÂ¹úÍøÂçÄþ¾²¹«Ë¾Äþ¾²Ñо¿ÊµÑéÊÒ (SRLabs) Ðû²¼ÁËÒ»¿îÃûΪBlack Basta Buster µÄ Black Basta ÀÕË÷Èí¼þ½âÃÜÆ÷ £¬¸Ã½âÃÜÆ÷ÀûÓüÓÃÜ©¶´²¿ÃÅ»òÈ«²¿»Ö¸´Îļþ¡£