Guardian HealthcareÖØ×éÆÚ¼äÔâStormousÀÕË÷Èí¼þ¹¥»÷
Ðû²¼Ê±¼ä 2024-11-121. Guardian HealthcareÖØ×éÆÚ¼äÔâStormousÀÕË÷Èí¼þ¹¥»÷
11ÔÂ8ÈÕ£¬±öϦ·¨ÄáÑÇÖݵÄGuardian HealthcareÔÚÖØ×éÆÚ¼äÔâÓöÁËStormousÀÕË÷Èí¼þ¹¥»÷£¬µ¼ÖÂ3GB°üÂÞÊܱ£»¤µÄ»¼Õß½¡¿µÐÅÏ¢µÄÎļþ±»Ð¹Â¶£¬¾¡¹ÜδÉæ¼°EMRϵͳ»òÕû¸öÊý¾Ý¿â¡£DataBreachesÊÔͼÁªÏµGuardian HealthcareÁ˽âÓ¦¶Ô´ëÊ©£¬µ«Î´»ñ»ØÓ¦¡£¾ÝStormous·¢ÑÔÈË͸¶£¬¹¥»÷Õßͨ¹ýOffice»ñÈ¡Á˶à¸öÕË»§·ÃÎÊȨÏÞ£¬Ã°³äÕË»§Õë¶ÔGuardianµÄÒ»×éÒªº¦Ô±¹¤»òȺ×éÌᳫ¹¥»÷£¬7GBÊý¾Ý±»ÌáÈ¡£¬ÆäÖÐ3GB±»Ð¹Â¶¡£¾¡¹ÜGuardianÒÑÖªÏþÈëÇÖʼþ²¢ÓëStormousÓйý½Ó´¥£¬µ«Î´½ÓÄÉÖØ´ó·´Ó³£¬µ¼ÖÂÊý¾Ý×îÖÕ±»Ð¹Â¶¡£Stormous»¹Ö¤Êµ£¬GuardianµÄÎļþÔÚ¹¥»÷Æڼ䱻¼ÓÃÜ¡£È»¶ø£¬Ä¿Ç°Éв»Çå³þGuardianÊÇ·ñÓпÉÓñ¸·Ý»ò»¼ÕßÊý¾ÝÊÇ·ñÒò¹¥»÷¶øÊÜËð»ò¶ªÊ§£¬ÊÜÓ°Ï컼Õß¿ÉÄÜÒ²²»ÖªÇé¡£
https://databreaches.net/2024/11/08/in-the-midst-of-restructuring-guardian-healthcare-hit-by-ransomware-attack/
2. AT&TÔâÓö´ó¹æÄ£Êý¾Ýй¶£¬Êý°ÙÍò¿Í»§ÐÅÏ¢ÃæÁÙ·çÏÕ
11ÔÂ8ÈÕ£¬AT&T½üÆÚÔâÓöÁË´ó¹æÄ£Êý¾Ýй¶Ê¼þ£¬Êý°ÙÍò¿Í»§µÄ¸öÈËÐÅÏ¢ÔÚ2022Äê5ÔÂÖÁ10Ô¼°2023Äê1ÔÂÆڼ䱻µÁ£¬²¢ÓÚ2024Äê4Ô±»·¢ÏÖ¡£Ð¹Â¶µÄÊý¾Ý°üÂÞ¿Í»§ÐÕÃû¡¢µØÖ·¡¢µç»°ºÅÂëºÍÕË»§ÏêϸÐÅÏ¢£¬µ«²»º¬Í¨»°ÄÚÈÝ¡¢¶ÌÐÅ»òÉç»áÄþ¾²ºÅÂë¡£´Ë´ÎʼþÓ°ÏìÉîÔ¶£¬Ê¹¿Í»§ÃæÁÙÉí·Ý͵ÇÔºÍÆÛÕ©µÄ·çÏÕ£¬Í¬Ê±Ëðº¦ÁËAT&TµÄÉùÓþ¡£¾ÝÐÅ£¬Ð¹Â¶Ê¼þÓëδ¾ÊÚȨµÄ¸öÈË·ÃÎÊAT&TϵͳÓйأ¬¶ø¾ßÌåµÄÈëÇÖϸ½ÚÉв»Çå³þ¡£´Ë´ÎйÃÜʼþ»¹Òý·¢ÁËÈËÃǶÔAT&TÊÇ·ñ×ñÊØÐÐÒµ³ß¶ÈºÍ¹æÔòµÄÖÊÒÉ¡£ÎªÓ¦¶Ô´Ë´Îʼþ£¬AT&TÏòÊÜÓ°ÏìµÄ¿Í»§ÌṩÃâ·ÑÐÅÓüà¿Ø·þÎñ£¬²¢ÊµÊ©ÁËÌرðµÄÄþ¾²´ëÊ©¡£Í¬Ê±£¬¸ÃʼþÒ²ÌáÐÑÎÒÃÇÍøÂçÄþ¾²´ëÊ©µÄÖØÒªÐÔ£¬×éÖ¯±ØÐë½ÓÄÉÖ÷¶¯´ëÊ©±£»¤¿Í»§ÐÅÏ¢£¬²¢´ÓÒ»¿ªÊ¼¾Í·ÀֹйÃÜʼþ·¢Éú¡£×÷Ϊ¿Í»§£¬ÎÒÃÇÒ²Ó¦±£³Ö¾¯Ì裬ÃÜÇмà¿ØÕË»§»î¶¯£¬¸ü¸ÄÃÜÂë²¢ÆôÓÃË«ÒòËØÉí·ÝÑéÖ¤£¬¿¼ÂǶ³½áÐÅÓóÂËߣ¬ÒÔ¼°¼°Ê±Á˽âÍøÂçÄþ¾²ÐÂÎźÍ×î¼Ñʵ¼ù£¬ÒÔ½µµÍ³ÉΪÍøÂç·¸×ïÊܺ¦ÕߵķçÏÕ¡£
https://www.cyberdefensemagazine.com/the-att-phone-records-stolen/
3. ÑÇÂíÑ·¼°¶à¼ÒÖªÃûÆóÒµÔâMOVEitÊý¾Ý͵ÇÔ¹¥»÷£¬Ô±¹¤ÐÅϢй¶
11ÔÂ11ÈÕ£¬ÑÇÂíѷ֤ʵ£¬ÔÚ2023Äê5Ô·¢ÉúÁËÒ»ÆðÊý¾Ýй¶Ê¼þ£¬Éæ¼°280¶àÍòÐÐÔ±¹¤ÐÅÏ¢£¬°üÂÞÐÕÃû¡¢ÁªÏµÐÅÏ¢¡¢½¨ÖþλÖú͵ç×ÓÓʼþµØÖ·µÈ£¬ÕâЩÊý¾ÝÊÇ´ÓÒ»¼ÒµÚÈý·½·þÎñÌṩÉ̵ÄϵͳÖб»µÁµÄ£¬²¢ÔÚºÚ¿ÍÂÛ̳Éϱ»Ð¹Â¶¡£¾Ý³Æ£¬´Ë´Îй¶ÊÇÓÉÍþвÐÐΪÕßNam3L3ssËùΪ£¬Ëû»¹Ð¹Â¶ÁËÆäËû25¼Ò¹«Ë¾µÄÊý¾Ý¡£ÕâЩÊý¾Ý͵ÇÔ¹¥»÷ÀûÓÃÁËMOVEit TransferÄþ¾²Îļþ´«Êäƽ̨ÖеÄÁãÈÕÄþ¾²Â©¶´£¬Ó°ÏìÁËÈ«ÇòÊý°Ù¼Ò×éÖ¯£¬°üÂÞÁªÏë¡¢»ÝÆÕ¡¢TIAA¡¢Ê©Íß²¼¡¢»ã·áÒøÐС¢´ïÃÀº½¿Õ¡¢Âóµ±ÀͺͶàÊý»áÈËÊÙµÈÖªÃû¹«Ë¾¡£¾Ý³Æ£¬ÕâЩÊý¾ÝÊÇ´ÓÒ»¼Ò¹©Ó¦ÉÌÄÇÀï±»µÁµÄ£¬ÏÖÔÚÒÑ×÷ΪÊÜÓ°Ïì¿Í»§µÄµ¥¶ÀÊý¾Ý¼¯Ðû²¼¡£ÍøÂç·¸×ïÍÅ»ïËæºó¿ªÊ¼ÀÕË÷Êܺ¦Õߣ¬²¢ÔÚ°µÍøй©ÍøÕ¾ÉÏ̻¶ÁËËûÃǵÄÃû×Ö¡£ÕâЩ¹¥»÷µÄºó¹ûÑÏÖØ£¬µ¼ÖÂÊýǧÍòÈ˵ÄÊý¾Ý±»µÁ£¬±»ÓÃÓÚÀÕË÷¼Æ»®»ò鶵½ÍøÉÏ¡£ÑÇÂíÑ·ÌåÏÖ£¬±»ÈëÇֵĹ©Ó¦ÉÌÖ»ÄÜ·ÃÎÊÔ±¹¤ÁªÏµÐÅÏ¢£¬Ã»ÓÐÃô¸ÐµÄÔ±¹¤ÐÅÏ¢±»·ÃÎÊ»òÇÔÈ¡£¬¸Ã¹©Ó¦ÉÌÒѾÐÞ²¹ÁËÄþ¾²Â©¶´¡£
https://www.bleepingcomputer.com/news/security/amazon-confirms-employee-data-breach-after-vendor-hack/
4. ÐÂÀÕË÷Èí¼þ¼Ò×å¡°Ymir¡±Õ¸Â¶Í·½Ç£¬ÓëRustyStealer¶ñÒâÈí¼þÓйØÁª
11ÔÂ11ÈÕ£¬½üÆÚÒ»ÖÖÃûΪ¡°Ymir¡±µÄÐÂÐÍÀÕË÷Èí¼þ¼Ò×åÔÚÒ°Íâ±»·¢ÏÖ£¬ËüÓëÒÑÖªµÄRustyStealer¶ñÒâÈí¼þ¼Ò×åÓйØÁª¡£YmirÀÕË÷Èí¼þÒÔÆäÄÚ´æÖ´ÐС¢Ê¹Ó÷ÇÖÞÁÖ¼ÓÀÓï×¢ÊÍ¡¢PDFÀÕË÷Ìõ¼Ç¼°À©Õ¹ÅäÖÃÑ¡ÏîµÈÌصãÖø³Æ¡£¾Ý¿¨°Í˹»ùʵÑéÊÒÑо¿ÈËÔ±·ÖÎö£¬Ymirͨ³£ÔÚRustyStealerƾ֤ÊÕ¼¯¹¤¾ßÉø͸Ŀ±êϵͳºó²¿Êð£¬ÀûÓøßȨÏÞÕÊ»§½øÐÐδÊÚȨ·ÃÎʺͺáÏòÒƶ¯¡£¹¥»÷ÕßʹÓÃWinRM¡¢PowerShellµÈ¹¤¾ß£¬²¢°²×°Process Hacker¡¢Advanced IP ScannerµÈ£¬Ö´ÐÐÓëSystemBC¶ñÒâÈí¼þÏà¹ØµÄ½Å±¾£¬½¨Á¢ÃØÃÜͨµÀ¡£ÔÚÀιÌÁ¢×ãµã²¢¿ÉÄÜÇÔÈ¡Êý¾Ýºó£¬Ymir×÷Ϊ×îÖÕÓÐЧÔغɱ»²¿Êð¡£YmirÍêÈ«´ÓÄÚ´æÖÐÔËÐУ¬ÀûÓÃÌض¨º¯ÊýÌӱܼì²â£¬Ö´ÐÐϵͳÕì²ì£¬ÖÆÖ¹¼ÓÃÜÒªº¦ÏµÍ³Îļþ£¬²¢Ê¹ÓÃChaCha20Á÷ÃÜÂë¼ÓÃÜÎļþ¡£Ëü»¹ÐÞ¸ÄWindows×¢²á±íÒÔÏÔʾÀÕË÷ÇëÇ󣬲¢¿ÉÄÜʹÓÃPowerShellɾ³ý¿ÉÖ´ÐÐÎļþÒÔÌӱܷÖÎö¡£¾¡¹ÜYmirÉÐ佨Á¢Êý¾Ýй¶ÍøÕ¾£¬µ«¿¨°Í˹»ù¾¯¸æ³Æ£¬Ëü¿ÉÄÜѸËÙ³ÉΪһÖֹ㷺µÄÍþв¡£
https://www.bleepingcomputer.com/news/security/new-ymir-ransomware-partners-with-rustystealer-in-attacks/
5. Hot TopicµÈÈýÆ·ÅÆÊý¾Ýй¶£¬5690ÍòÕË»§ÐÅÏ¢ÔâÆعâ
11ÔÂ11ÈÕ£¬¾ÝHave I Been Pwned¾¯¸æ£¬Hot Topic¡¢Box LunchºÍTorrid¿Í»§µÄ¸öÈËÐÅÏ¢Ô⵽й¶£¬Éæ¼°56904909¸öÕË»§¡£Ð¹Â¶ÐÅÏ¢°üÂÞÈ«Ãû¡¢µç×ÓÓʼþµØÖ·¡¢³öÉúÈÕÆÚ¡¢µç»°ºÅÂ롢ʵ¼ÊµØÖ·¡¢¹ºÖÃÀúÊ·ÒÔ¼°²¿ÃÅÐÅÓÿ¨Êý¾Ý¡£2024Äê10ÔÂ21ÈÕ£¬Ò»ÃûÍþв·Ö×ÓÔÚBreachForumsÉÏÉù³Æ´ÓÕâÈý¼Ò¹«Ë¾ÇÔÈ¡ÁË3.5ÒÚÌõÓû§¼Ç¼£¬²¢ÊÔͼÒÔ2ÍòÃÀÔª³öÊÛÊý¾Ý¿â£¬Í¬Ê±ÒªÇóHot TopicÖ§¸¶10ÍòÃÀÔªÊê½ð¡£Hot TopicÊÇÒ»¼ÒÃÀ¹úÁãÊÛÁ¬Ëøµê£¬×¨ÃÅ´ÓÊ·´Ö÷Á÷ÎÄ»¯Ïà¹ØµÄ·þ×°¡¢ÅäÊκÍÌØÐíÒôÀÖÉÌÆ·¡£Hot Topicδ¶Ô´ËÊÂ×÷³ö»ØÓ¦¡£Êý¾Ý·ÖÎö¹«Ë¾Atlas Privacy³ÂË߳ƣ¬Êµ¼ÊÊÜÓ°Ïì¿Í»§ÊýΪ5400Íò£¬°üÂÞ2500Íò¸öÈõÃÜÂë¼ÓÃܵÄÐÅÓÿ¨ºÅÂë¡£Êý¾Ýй¶Ëƺõ·¢ÉúÔÚ10ÔÂ19ÈÕ£¬Êý¾Ý¿ç¶È´Ó2011Äêµ½¸ÃÈÕÆÚ¡£Hot TopicÒѽ¨Á¢ÍøÕ¾¹©¿Í»§¼ì²éÐÅÏ¢ÊÇ·ñй¶¡£¿ÉÄÜÊÜÓ°ÏìµÄ¿Í»§Ó¦¾¯ÌèÍøÂçµöÓã¹¥»÷£¬²¢ÃÜÇмà¿Ø²ÆÕþÕË»§¡£
https://www.bleepingcomputer.com/news/security/hibp-notifies-57-million-people-of-hot-topic-data-breach/
6. ¹þÀï²®¶ÙÔâÀÕË÷Èí¼þ¹¥»÷£¬Ëðʧ3500ÍòÃÀÔª²¢ÃæÁÙÊý¾Ýй¶·çÏÕ
11ÔÂ11ÈÕ£¬¹þÀï²®¶ÙÊÇÒ»¼ÒÔÚ70¸ö¹ú¼ÒÓµÓÐ48000ÃûÔ±¹¤¡¢ÄêÊÕÈëÁè¼Ý230.2ÒÚÃÀÔªµÄÈ«ÇòÄÜÔ´ÐÐÒµ²úÎïºÍ·þÎñ¹©Ó¦ÉÌ£¬ÔÚ2024Äê8ÔÂÔâÊÜÁËÀÕË÷Èí¼þ¹¥»÷¡£´Ë´Î¹¥»÷µ¼Ö¸ù«Ë¾¹Ø±ÕITϵͳ²¢¶Ï¿ª¿Í»§Á¬½Ó£¬Ôì³ÉÔ¼3500ÍòÃÀÔªµÄËðʧ¡£¾ÝÏòÃÀ¹ú֤ȯ½»Ò×ίԱ»áÌá½»µÄÎļþÏÔʾ£¬Î´¾ÊÚȨµÄµÚÈý·½·ÃÎÊÁËÆäϵͳ£¬¹þÀï²®¶ÙËæºó¹Ø±ÕÁ˲¿ÃÅIT»ù´¡ÉèÊ©ÒÔÓ¦¶ÔÕâһ©¶´¡£¼¸Ììºó£¬ÀÕË÷Èí¼þÍÅ»ïRansomHub¶Ô´Ë´ÎÏ®»÷ÂôÁ¦£¬²¢´Ó¹«Ë¾ÍøÂçÖÐÇÔÈ¡ÁËÊý¾Ý£¬µ«¾ßÌåÐÅÏ¢ÀàÐͺͷ¶Î§ÈÔÔÚÊÓ²ìÖС£¾¡¹Ü¸Ãʼþ¶Ô¹þÀï²®¶ÙµÄ²ÆÕþÓ°ÏìÓÐÏÞ£¬µ«Èç¹ûÀÕË÷ÍÅ»ï³öÊÛ»òй¶¹þÀï²®¶Ù¿Í»§µÄÊý¾Ý£¬¸Ã¹«Ë¾¿ÉÄÜ»áÃæÁÙÖ´·¨ËßËϺÍÌرðµÄ²ÆÕþ³É±¾¡£¹þÀï²®¶Ù¹«Ë¾¶Ê³¤¡¢×ܲüæÊ×ϯִÐйٽܷò¡¤Ã×ÀÕÌåÏÖ£¬¾¡¹ÜÊܵ½ÍøÂçÄþ¾²Ê¼þºÍ·ç±©µÄÓ°Ï죬¹«Ë¾¶Ô×ÔÓÉÏÖ½ðÁ÷ºÍ¹É¶«ÏÖ½ð»Ø±¨µÄÈ«ÄêÔ¤ÆÚ±£³ÖÎȶ¨¡£
https://www.bleepingcomputer.com/news/security/halliburton-reports-35-million-loss-after-ransomware-attack/