΢ÈíÓ¡¶ÈXÕË»§±» Roaring Kitty ¼ÓÃÜ»õ±ÒÆ­¾Ö½Ù³Ö

Ðû²¼Ê±¼ä 2024-06-05
1. ΢ÈíÓ¡¶ÈXÕË»§±» Roaring Kitty ¼ÓÃÜ»õ±ÒÆ­¾Ö½Ù³Ö


6ÔÂ3ÈÕ£¬ÓµÓÐÁè¼Ý 211,000 Ãû¹Ø×¢ÕßµÄ΢ÈíÓ¡¶È¹Ù·½ Twitter Õ˺ű»¼ÓÃÜ»õ±ÒÆ­×Ó½Ù³Ö£¬²¢Ã°³äÎÛÃûÕÑÖøµÄÄ£Òò¹ÉƱ½»Ò×Ô± Keith Gill ʹÓõÄÓû§Ãû Roaring Kitty¡£Î¢ÈíÓ¡¶ÈµÄ X ÕË»§×÷Ϊ¸Ãƽ̨ÉϹٷ½ÈÏÖ¤µÄ×éÖ¯£¬ÓµÓлƽð֧Ʊ£¬ÕâʹµÃ½Ù³ÖÕßµÄÌû×Ó¸ü¾ßºÏ·¨ÐÔ¡£ÍþвÐÐΪÕßÀûÓà Gill ×î½üµÄ¸´³öÀ´ÒýÓÕDZÔÚÊܺ¦Õߣ¬²¢ÓüÓÃÜ»õ±ÒÇ®°üºÄ¾¡¶ñÒâÈí¼þѬȾËûÃÇ¡£ËûÃÇÏÖÔÚʹÓñ»½Ù³ÖµÄ΢ÈíÓ¡¶ÈÕË»§»Ø¸´ÍÆÎÄ£¬ÓÕÆ­¸Ã¹«Ë¾µÄ¹Ø×¢ÕßºÍ X ÉϵÄÆäËûÈ˽øÈëÒ»¸ö¶ñÒâÍøÕ¾ (presaIe-roaringkitty[.]com)£¬¾Ý³Æ¸ÃÍøÕ¾ÔÊÐíËûÃǹºÖà GameStop (GME) ¼ÓÃÜ»õ±Ò×÷ΪËùνԤÊÛµÄÒ»²¿ÃÅ¡£È»¶ø£¬ÍþвÐÐΪÕß»áÇÔÈ¡Èκν«¼ÓÃÜ»õ±ÒÇ®°üÁ¬½Óµ½¸ÃÍøÕ¾²¢ÊÚȨºÄ¾¡·þÎñ½øÐн»Ò×µÄÈ˵Ä×ʲú¡£Ðí¶à»úÆ÷ÈËÕË»§ÏÖÔÚÒ²ÔÚת·¢±»½Ù³ÖÕË»§µÄÍÆÎÄ£¬ÕâÖÖ¼ÆıּÔÚÈËΪµØÔö¼Ó¶ñÒâÌû×ÓµÄÁýÕÖÃæ²¢ÓÕ²¶¸ü¶àÊܺ¦Õß¡£


https://www.bleepingcomputer.com/news/security/microsoft-indias-x-account-hijacked-in-roaring-kitty-crypto-scam-to-push-wallet-drainers/


2. Æ­×ÓÍþвй¶´ÓÅä¾°ÊӲ칫˾ÇÔÈ¡µÄÊýÒÚÌõ¼Ç¼


6ÔÂ3ÈÕ£¬¾Ý³Æ£¬·ðÂÞÀï´ïÖÝÒ»¼ÒÂôÁ¦Åä¾°ÊÓ²ìºÍÆäËû¸öÈËÐÅÏ¢ÇëÇóµÄ¹«Ë¾»ñÈ¡ÁËÊýÊ®ÒڷݼǼÈËÃǸöÈËÐÅÏ¢µÄ¼Ç¼£¬ÕâЩ¼Ç¼¿ÉÄܺܿì¾Í»á±»Ð¹Â¶µ½ÍøÉÏ¡£Ò»¸ö×Ô³Æ USDoD µÄ·¸×ïÍÅ»ïÓÚ 4 ÔÂÔÚµØÏÂÂÛ̳ÉÏÒÔ350 ÍòÃÀÔªµÄ¼Û¸ñ³öÊÛ¸ÃÊý¾Ý¿â£¬²¢ÁîÈËÄÑÒÔÖÃÐŵÄÊÇÉù³Æ¸ÃÊý¾Ý¿â°üÂÞ 29 ÒÚÌõÃÀ¹ú¡¢¼ÓÄôóºÍÓ¢¹ú¹«ÃñµÄ¼Ç¼¡£¾ÝÐÅ£¬Ò»Ãû»ò¶àÃû×Ô³Æ SXUL µÄ·¸×ïÍÅ»ï¶Ô´Ë´ÎËùνµÄÊý¾Ýй¶Ê¼þ¸ºÓÐÔðÈΣ¬ËûÃǽ«Êý¾Ýй¶Ê¼þ½»¸øÁ˳䵱ÖмäÈ赀 USDoD¡£¾Ý³Æ£¬±»µÁÐÅÏ¢°üÂÞ¸öÈËÈ«Ãû¡¢µØÖ·ºÍÖÁÉÙ 30 ÄêÇ°µÄµØÖ·ÀúÊ·¡¢Éç»áÄþ¾²ºÅÂëÒÔ¼°ÈËÃǵÄâïÊÑ¡¢ÐֵܽãÃúÍÇ×ÆÝ£¬ÆäÖÐһЩÈËÒѾ­È¥ÊÀ½ü 20 Äê¡£¾ÝÃÀ¹ú¹ú·À²¿³Æ£¬ÕâЩÐÅÏ¢²¢·Ç´Ó¹«¹²À´Ô´×¥È¡µÄ£¬¾¡¹ÜÊý¾Ý¿âÖпÉÄÜ´æÔÚÖظ´µÄÌõÄ¿¡£


https://www.theregister.com/2024/06/03/usdod_data_dump/


3. Telegram ÉÏй¶µÄ 3.61 ÒÚ¸ö±»µÁÕË»§±»Ìí¼Óµ½ HIBP


6ÔÂ3ÈÕ£¬´óÁ¿ 3.61 ÒÚ¸öµç×ÓÓʼþµØÖ·±»Ìí¼Óµ½ Have I Been Pwned Êý¾Ýй¶֪ͨ·þÎñÖУ¬ÕâЩµØÖ·À´×Ôͨ¹ýÃÜÂëÇÔÈ¡¶ñÒâÈí¼þ¡¢Æ¾Ö¤Ìî³ä¹¥»÷ºÍÊý¾Ýй¶ÇÔÈ¡µÄƾ֤£¬ÈκÎÈ˶¼¿ÉÒÔ¼ì²éËûÃǵÄÕÊ»§ÊÇ·ñÒѱ»Ð¹Â¶¡£ÍøÂçÄþ¾²Ñо¿ÈËÔ±´ÓÖÚ¶à Telegram ÍøÂç·¸×ïƵµÀÊÕ¼¯ÁËÕâЩƾ֤£¬ÕâЩ±»µÁÊý¾Ýͨ³£±»Ð¹Â¶¸øƵµÀµÄÓû§ÒÔ½¨Á¢ÉùÓþºÍ¶©ÔÄÕß¡£±»µÁÊý¾Ýͨ³£ÒÔÓû§ÃûºÍÃÜÂë×éºÏ£¨Í¨³£Í¨¹ýƾ֤Ìî³ä¹¥»÷»òÊý¾Ýй¶ÇÔÈ¡£©¡¢Óû§ÃûºÍÃÜÂëÒÔ¼°ÓëÖ®Ïà¹ØµÄ URL£¨Í¨¹ýÇÔÈ¡ÃÜÂëµÄ¶ñÒâÈí¼þÇÔÈ¡£©ºÍԭʼ cookie£¨Í¨¹ýÇÔÈ¡ÃÜÂëµÄ¶ñÒâÈí¼þÇÔÈ¡£©µÄÐÎʽй¶¡£¸ÃÑо¿ÈËÔ±ÒªÇó BleepingComputer ±£³ÖÄäÃû£¬ËûÃÇÓë Have I Been Pwned µÄËùÓÐÕß Troy Hunt ·ÖÏíÁË´Ó¶à¸ö Telegram ƵµÀÊÕ¼¯µÄ 122 GB ƾ֤¡£ÕâЩÊý¾Ý·Ç³£ÅӴ󣬰üÂÞ 3.61 ÒÚ¸öΨһµÄµç×ÓÓʼþµØÖ·£¬ÆäÖÐ 1.51 ÒÚ¸öµØÖ·ÒÔÇ°´Óδ±»Êý¾Ýй¶֪ͨ·þÎñ¼û¹ý¡£


https://www.bleepingcomputer.com/news/security/361-million-stolen-accounts-leaked-on-telegram-added-to-hibp/


4. ÍþвÕßÉù³Æ³öÊÛ°üÂÞ1700ÍòÓû§¼Ç¼µÄPandabuyÊý¾Ý¿â


6ÔÂ3ÈÕ£¬¾Ý±¨µÀ£¬±»µÁÊý¾Ý¿â°üÂÞ¶à´ï 1700 ÍòÐÐÓû§¼Ç¼£¬º­¸ÇÃû×Ö¡¢ÐÕÊÏ¡¢Óû§ ID¡¢µç×ÓÓʼþ¡¢¶©µ¥Êý¾Ý¡¢IP µØÖ·¡¢¹ú¼Ò¡¢ÃÜÂëµÈÃô¸ÐÐÅÏ¢¡£ÍþвÕß Sanggiero ÒѾÍÆäÒâͼ·¢±íÉùÃ÷¡£ËûÃÇÉù³Æ£¬ÓÃÓÚÆÆ»µ Pandabuy ·ÀÓùϵͳµÄ©¶´£¨¾Ý³Æ¸Ã¹«Ë¾ÉÐδ½â¾ö£©½«ºÜ¿ìÔÚÆ䲩¿ÍÍøÕ¾ÉÏÐû²¼¡£´ËÍ⣬ËûÃÇ»¹Ðû²¼¼Æ»®Åû¶ Pandabuy Ô±¹¤µÄÐÕÃûºÍÃÜÂ룬¾¡¹ÜÊÇÒÔʹÓà base-64 ¼ÓÃܵıàÂëÐÎʽ¡£ÍþвÕß¾¯¸æ Pandabuy ÈÔÓпÉÄܽøÐÐ̸ÅУ¬µ«Ê±¼ä²»¶àÁË¡£ËûÃÇΪ±»µÁÊý¾Ý¿â¿ª³öÁË 40,000 ÃÀÔªµÄ¸ß¼Û£¬±íÃ÷ËûÃÇ×¼±¸½«ÇÔÈ¡µÄÊý¾ÝÂô¸ø³ö¼Û×î¸ßµÄÈË¡£


https://dailydarkweb.net/threat-actor-claims-to-sell-pandabuy-database-with-17-million-user-records/


5. Discord¶ñÒâÈí¼þ¹¥»÷¼¤Ôö£¬·¢ÏÖ50000¸ö¶ñÒâÁ´½Ó


6ÔÂ3ÈÕ£¬ÔÚ×î½üÁù¸öÔµķÖÎöÖУ¬ÍøÂçÄþ¾²¹«Ë¾ Bitdefender ·¢ÏÖÁËÒ»¸öÁîÈ˲»°²µÄÇ÷ÊÆ£ºÍøÂç·¸×ï·Ö×ÓÕýÔÚʹÓÃÁ÷ÐеÄͨÐÅƽ̨ Discord À´Á÷´«¶ñÒâÈí¼þ²¢Ö´ÐÐÍøÂçµöÓã»î¶¯¡£Bitdefender ÔÚ 2024 Äê 29 ÈÕÐÇÆÚÈýÐû²¼Ö®Ç°Óë Hackread.com ·ÖÏíÁ˸óÂËߣ¬ÆäÖÐÖصã½éÉÜÁË Discord ÉÏ·¢ÏÖµÄ 50,000 ¶à¸ö¶ñÒâÁ´½Ó£¬ÏÔʾ³ö¸Ãƽ̨ԽÀ´Ô½ÈÝÒ×Êܵ½ÍøÂçÍþв¡£¶ñÒâÈí¼þºÍÍøÂçµöÓãÁ´½ÓÕ¼¼ì²âµ½µÄ¶ñÒâÁ´½ÓµÄ 39%¡£ÕâЩ¹¥»÷ͨ³£Éæ¼°ÆÛÆ­ÊֶΣ¬ÓÕÆ­Óû§ÏÂÔØÓк¦Èí¼þ»òÌṩÃô¸ÐÐÅÏ¢¡£ÃÀ¹úÓû§ÓÈÆäÈÝÒ×Êܵ½¹¥»÷£¬Õ¼ÍþвµÄ 16.2%¡£ÕâʹËûÃdzÉΪ×îÈÝÒ×Êܵ½¹¥»÷µÄȺÌ壬¶øÇÒÕ¼±ÈÏÔÖø¡£Í¨¹ý Discord Ìᳫ¶ñÒâ¹¥»÷µÄÆäËû¹ú¼Ò»¹°üÂÞ·¨¹ú¡¢ÂÞÂíÄáÑÇ¡¢Ó¢¹úºÍµÂ¹ú¡£


https://hackread.com/discord-malware-attacks-as-50000-malicious-links/


6. ÔÆ´æ´¢ Hudson Rock ÆðËßÐÅÏ¢Äþ¾²»ú¹¹ Snowflake


6ÔÂ4ÈÕ£¬ÐÅÏ¢Äþ¾²»ú¹¹³ÂË߳ƣ¬·¸×ï·Ö×ÓÀûÓÃÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ»ñÈ¡ÁË Snowflake Ô±¹¤µÄÊÂÇéƾ֤£¬²¢ÀûÓøÃÌØȨ·ÃÎÊȨÏÞ´Ó Snowflake µÄ¿Í»§ÔÆÕÊ»§ÖÐÇÔÈ¡ÁË´óÁ¿Êý¾Ý¡£Snowflake ÌåÏÖ£¬ÕâÖÖÇé¿ö²¢Ã»Óз¢Éú¡£ÖÁÉÙTicketmasterºÍSantander ÒøÐеÄÐÅϢȷʵ±»µÁÁË£¬¾¡¹Ü¹Ù·½ÉÐδ֪Ïþ¾ßÌåÊÇÈçºÎ±»µÁµÄ£¬ÒÔ¼°´ÓÄÄÀï±»µÁµÄ£»ÕâÁ½¼ÒÒøÐж¼ÊÇ Snowflake µÄ¿Í»§¡£¾Ý±¨µÀ£¬Ticketmaster µÄһλýÌå´ú±í¸æËßTechCrunch£¬Æä±»µÁÊý¾ÝÓÉ Snowflake ÍйÜ¡£Snowflake ÌåÏÖ£¬Èç¹ûÓÐÈκοͻ§Êý¾Ý´ÓÆä·þÎñÆ÷Öб»ÇÔÈ¡£¬ÄÇôÕâЩÊý¾Ý¿ÉÄÜÊDZ»ÇÔÔôͨ¹ýÓÐÕë¶ÔÐÔµÄÍøÂçµöÓã¡¢ÆäËûйÃÜ»ò¶ñÒâÈí¼þµÈ·½Ê½»ñÈ¡Á˸öÈË¿Í»§µÄÕË»§Æ¾Ö¤¶ø»ñµÃµÄ£¬¶ø²»ÊÇͨ¹ý¶Ô Snowflake Äþ¾²ÐÔµÄÆÕ±éÆÆ»µ¶ø»ñµÃµÄ¡£ÊÂʵÉÏ£¬Snowflake ÈÏΪ£¬Æä¡°ÓÐÏÞ¡±ÊýÁ¿ÉÐδ͸¶ÐÕÃûµÄ¿Í»§µÄÊý¾Ý¿ÉÄÜȷʵ±»ÇÔÈ¡µÄÕË»§Æ¾Ö¤·ÃÎÊ£¬¶øÕâЩÕË»§²¢Ã»ÓÐÆôÓÃË«ÒòËØÉí·ÝÑéÖ¤¡£


https://www.theregister.com/2024/06/04/snowflake_report_pulled/