PlayStation NetworkÈ«Çò̱»¾Òý·¢Íæ¼Òµ£ÓÇ £¬×¨¼ÒÍƲâ»òÔâÍøÂç¹¥»÷

Ðû²¼Ê±¼ä 2025-02-10

1. PlayStation NetworkÈ«Çò̱»¾Òý·¢Íæ¼Òµ£ÓÇ £¬×¨¼ÒÍƲâ»òÔâÍøÂç¹¥»÷


2ÔÂ8ÈÕ £¬PlayStation Network ÔÚÈ«Çò·¶Î§ÄÚÒṈ̃»¾½üÒ»Ìì £¬ÁîÖÚ¶àÍæ¼ÒÉî¸Ð¾ÚÉ¥¡£ÖÜËÄÍíÉÏ 11 µã×óÓÒ £¬´óÁ¿Óû§¿ªÊ¼³ÂËß·þÎñ·ºÆðÎÊÌâ £¬¶øË÷ÄáËäÈ»ÒÑÈ·ÈÏ´Ë´ÎÈ«ÇòÐÔ̱»¾ £¬µ«½ØÖÁÄ¿Ç°ÉÐδÌṩÈκξßÌåµÄ¼¼ÊõÐÅÏ¢¡£¾Ý PlayStation on X Ðû²¼µÄһƪÎÄÕ¼°×´Ì¬Ò³ÃæÏÔʾ £¬¾­¹ýÁè¼Ý 24 Сʱ £¬ÕË»§¹ÜÀí¡¢ÓÎÏ·ºÍÉç½»¹¦Ð§¡¢PlayStation Video ÒÔ¼° PlayStation É̵êµÈ¼¸ºõËùÓÐÔÚÏß·þÎñ¾ù´æÔÚÎÊÌâ¡£ÕâһʼþÒý·¢ÁËר¼ÒµÄÍƲâ £¬Óп´·¨ÈÏΪÎÊÌâµÄȪԴ¿ÉÄÜÊÇÍøÂç¹¥»÷¡£ÊÂʵÉÏ £¬PlayStation Network ÀúÊ·ÉÏÔø¶à´ÎÃæÁÙÖØ´óÖÐ¶Ï £¬ÓÈÆäÊÇ 2011 ÄêÄǴκڿÍÈëÇÖ £¬µ¼ÖÂÓû§Êý¾Ýй¶²¢ÆÈʹ·þÎñ¹Ø±Õ 23 Ìì £¬Êý°ÙÍòÓû§Êý¾ÝÒò´Ë̻¶ £¬Ë÷Äá×îÖÕÖ§¸¶ÁË 1500 ÍòÃÀÔªµÄºÍ½â½ð £¬²¢ÎªÓû§ÌṩÁËÒ»ÄêµÄÉí·Ý͵ÇÔ±£»¤¡£²»Íâ £¬ÔÚ 2025 Äê 2 Ô 9 ÈյĸüÐÂÖÐ £¬×´Ì¬Ò³ÃæÏÔʾËùÓзþÎñ¾ùÒѻָ´Õý³£ÔËÐС£¾¡¹Ü·þÎñÒѻָ´ £¬µ«´Ë´ÎʼþÎÞÒÉÔÙ´ÎÒý·¢ÁËÍæ¼Ò¶Ô PlayStation Network Äþ¾²ÐԵĵ£ÓÇ¡£


https://securityaffairs.com/174005/hacking/playstation-network-global-outage.html


2. ½ü280Íò¸öIPÌᳫ´ó¹æÄ£±©Á¦ÃÜÂë¹¥»÷ £¬Ä¿±êÖ±Ö¸ÍøÂçÉ豸ƾ֤


2ÔÂ8ÈÕ £¬½ü280Íò¸öIPµØÖ·Õý±»ÓÃÓÚÒ»³¡´ó¹æÄ£±©Á¦ÃÜÂë¹¥»÷ £¬Ä¿±êÖ±Ö¸°üÂÞPalo Alto Networks¡¢IvantiºÍSonicWallÔÚÄڵĶàÖÖÍøÂçÉ豸¡£ÕâÖÖ¹¥»÷·½Ê½Í¨¹ýÖظ´ÊµÑé²îÒìµÄÓû§ÃûºÍÃÜÂë×éºÏÀ´ÈëÇÖÕË»§»òÉ豸 £¬Ò»µ©ÀÖ³É £¬¹¥»÷Õß¼´¿É¿ØÖÆÉ豸»òÉø͸ÍøÂç¡£¾ÝShadowserver FoundationÍþв¼à¿Øƽ̨³ÂËß £¬´ËÀ๥»÷×ÔÉÏÔÂÆðÁ¬ÐøÖÁ½ñ £¬Ã¿ÈÕ¶¯Óýü280Íò¸öÔ´IPµØÖ· £¬ÆäÖаÍÎ÷Õ¼±È×î¸ß £¬Æä´ÎÊÇÍÁ¶úÆä¡¢¶íÂÞ˹¡¢°¢¸ùÍ¢¡¢Ä¦Âå¸çºÍÄ«Î÷¸çµÈ¹ú¡£Êܹ¥»÷µÄÉ豸¶àΪ·À»ðǽ¡¢VPN¡¢Íø¹ØµÈ±ßÔµÄþ¾²É豸 £¬ÇÒ¹¥»÷Ô´Í·¶àΪMikroTik¡¢»ªÎª¡¢Ë¼¿Æ¡¢BoaºÍÖÐÐ˵ÈÆ·ÅƵÄ·ÓÉÆ÷¼°ÎïÁªÍøÉ豸¡£ShadowserverÖ¸³ö £¬¹¥»÷IPÊèÉ¢ÓÚÖÚ¶àÍøÂçºÍ×ÔÖÎϵͳ £¬»òÓ뽩ʬÍøÂ缰סլÊðÀíÍøÂçÓйØ¡£ÕâЩÊðÀíͨ¹ýסլÍøÂç·ÓÉÁ÷Á¿ £¬Î±×°³ÉÆÕͨ¼ÒÍ¥Óû§ £¬ÒÔ¹æ±Ü¼ì²â¡£Îª±£»¤±ßÔµÉ豸 £¬½¨Òé¸ü¸ÄĬÈÏÃÜÂ롢ʵʩ¶àÒòËØÉí·ÝÑéÖ¤¡¢ÉèÖÃÊÜÐÅÈÎIPÔÊÐíÁÐ±í¡¢½ûÓ÷ÇÐëÒªWeb¹ÜÀí½çÃæ £¬²¢¼°Ê±¸üй̼þºÍÄþ¾²²¹¶¡¡£


https://www.bleepingcomputer.com/news/security/massive-brute-force-attack-uses-28-million-ips-to-target-vpn-devices/


3. 7-ZipÁãÈÕ©¶´£º¶íÂÞ˹ºÚ¿ÍÀûÓÃMotWÈƹý¼¼Êõ·¢¶¯¹¥»÷


2ÔÂ4ÈÕ £¬×Ô2024Äê9ÔÂÆ𠣬¶íÂÞ˹ºÚ¿ÍÀûÓÃ7-ZipÖеÄÁãÈÕ©¶´CVE-2025-0411 £¬ÀÖ³ÉÈƹýÁËWindowsµÄMark of the Web (MotW)Äþ¾²¹¦Ð§ £¬Õë¶ÔÎÚ¿ËÀ¼Õþ¸®ºÍ˽ÈË×éÖ¯·¢¶¯ÁËSmokeLoader¶ñÒâÈí¼þ¹¥»÷¡£MotW¹¦Ð§Ô­±¾Ö¼ÔÚ¾¯¸æÓû§¼´½«Ö´ÐеÄÎļþÀ´Ô´²»ÐÐÐÅ £¬²¢ÒªÇóÈ·ÈÏ £¬µ«ºÚ¿Íͨ¹ýË«ÖØ´æµµÎļþºÍͬÐÎÎÄ×Ö¼¼Êõ £¬Ê¹¶ñÒâÎļþÔÚ²»´¥·¢¾¯¸æµÄÇé¿öÏÂÖ´ÐС£ÕâЩÌØÖƵÄ7-ZipÎļþͨ¹ýµöÓãÓʼþ·¢Ë͸øÄ¿±ê £¬ÀûÓõÄÊDZ»ÈëÇÖµÄÎÚ¿ËÀ¼Õþ¸®ÕË»§ £¬ÒÔÈƹýÄþ¾²¹ýÂËÆ÷¡£¾¡¹Ü7-ZipÔÚ2022ÄêÌí¼ÓÁ˶ÔMotWµÄÖ§³Ö £¬µ«CVE-2025-0411©¶´Ê¹µÃMotW±êÖ¾²»»áÁ÷´«µ½ÄÚ²¿µµ°¸ÄÚÈÝ £¬´Ó¶øÔÊÐí¶ñÒâ½Å±¾ºÍ¿ÉÖ´ÐÐÎļþÖ±½ÓÆô¶¯¡£×îºó £¬ÕâЩ¹¥»÷´¥·¢ÁËSmokeLoader¸ºÔØ £¬Ò»ÖÖÓÃÓÚ°²×°ÐÅÏ¢ÇÔÈ¡·¨Ê½¡¢Ä¾Âí¡¢ÀÕË÷Èí¼þ»ò´´½¨ºóÃŵĶñÒâÈí¼þͶ·ÅÆ÷¡£ÊÜÓ°ÏìµÄ×éÖ¯°üÂÞÎÚ¿ËÀ¼¹ú¼ÒÐÐÕþ¾Ö¡¢Ôú²¨ÂÞÈÈÆû³µÖÆÔ쳧µÈ¶à¸öÒªº¦²¿ÃÅ¡£¾¡¹ÜÇ÷ÊƿƼ¼ÔÚ·¢ÏÖ©¶´ºóÒÑÓë7-Zip¿ª·¢ÈËÔ±·ÖÏí¿´·¨Ñé֤©¶´ £¬²¢Í¨¹ý2024Äê11ÔÂ30ÈÕÐû²¼µÄ24.09°æ±¾²¹¶¡½â¾öÁË·çÏÕ £¬µ«ÓÉÓÚ7-Zipȱ·¦×Ô¶¯¸üй¦Ð§ £¬Óû§ÈÔÐèÊÖ¶¯ÏÂÔØ×îа汾ÒÔÈ·±£Äþ¾²¡£


https://www.bleepingcomputer.com/news/security/7-zip-motw-bypass-exploited-in-zero-day-attacks-against-ukraine/


4. ³¯ÏÊ¡°FlexibleFerret¡±¶ñÒâÈí¼þ£ºÀûÓÃÐé¼ÙZoomºÍÇóÖ°Õ©Æ­¹¥»÷macOSÓû§


2ÔÂ4ÈÕ £¬³¯ÏʶñÒâÈí¼þ¡°FlexibleFerret¡±Õë¶ÔmacOSÉ豸ºÍ¿ª·¢ÈËÔ±ÌᳫÁËÒ»³¡¹ã·ºµÄ¹¥»÷¡£Õâ¿î¶ñÒâÈí¼þͨ¹ýÐé¼ÙµÄZoomÓ¦Ó÷¨Ê½¡¢ÇóÖ°Õ©Æ­ºÍ´íÎó³ÂËßÆÀÂÛµÈÊÖ¶ÎÓÕÆ­Óû§°²×°¡£ËüʹÓýƻ«µÄÉç»á¹¤³Ìѧ¼Æı £¬ÈçÐé¼ÙµÄÇóÖ°ÃæÊÔÁ÷³Ì £¬·¢ËÍ¿´ËÆÒªÇóÈí¼þ¸üеÄÁ´½Ó £¬ÓÕÆ­Ä¿±êÏÂÔضñÒâÈí¼þ¡£¾¡¹ÜApple×î½üÔöÇ¿ÁËÆäXProtectÄþ¾²¹¤¾ßÒÔÓ¦¶Ô´ËÀàÍþв £¬µ«FlexibleFerretÔÚ×î³õʱÈÔδ±»·¢ÏÖ¡£¸Ã¶ñÒâÈí¼þ°üÂÞÒ»¸ödropper £¬½«¶ñÒâÈí¼þ°²×°µ½ÏµÍ³ÖÐ £¬²¢´´½¨Î±ÔìµÄZoomÓ¦Ó÷¨Ê½ÃØÃÜÁ¬½Óµ½¿ÉÒÉÓò¡£Ëü»¹»áÏÔʾÐé¼ÙµÄ´íÎóÐÅÏ¢ÒÔÆÛÆ­Êܺ¦Õß £¬²¢ÔÚºǫ́×ÔÐа²×° £¬½¨Á¢³Ö¾ÃÐÔ¡£´ËÍâ £¬ºÚ¿Í»¹Ö±½ÓÃé×¼¿ª·¢ÈËÔ± £¬Ê¹ÓÃÐé¼ÙµÄ´íÎó³ÂËß»òGitHubµÈÍøÕ¾ÉϵÄÆÀÂÛÀ´ÓÕÆ­ËûÃÇÏÂÔضñÒâÈí¼þ¡£Äþ¾²×¨¼ÒÒÑ·¢ÏÖ¸ü¶àÏà¹ØµÄ¶ñÒâÈí¼þÑù±¾ £¬²¢Ö¸³ö¹¥»÷ÕßÒѸü¸Ä´ÎÒªÔªËØÒÔÈƹý±£»¤´ëÊ©¡£ÕⳡÁ¬Ðø¶ø»îÔ¾µÄ¹¥»÷»î¶¯±íÃ÷ £¬ÍþвÐÐΪÕßÕýÔÚ²»Í£¸Ä±äÒªÁìÒÔÖÆÖ¹±»·¢ÏÖ¡£


https://hackread.com/north-korea-flexibleferret-malware-macos-fake-zoom-job-scams/


5. ADFSÍøÂçµöÓã¹¥»÷£º¹¥»÷Õßð³äITÍŶÓÇÔȡƾ¾Ý


2ÔÂ5ÈÕ £¬Abnormal Security·¢ÏÖÁËÒ»ÆðÕë¶Ô½ÌÓý¡¢Ò½ÁƱ£½¡ºÍÕþ¸®×éÖ¯µÄÍøÂçµöÓã»î¶¯ £¬¸Ã»î¶¯ÒÔMicrosoft Active DirectoryÁªºÏÉí·ÝÑéÖ¤·þÎñ£¨ADFS£©ÎªÄ¿±ê £¬Í¨¹ýÆÛÆ­ÐԵǼҳÃæÇÔÈ¡Óû§Æ¾¾Ý²¢Èƹý¶àÒòËØÉí·ÝÑéÖ¤£¨MFA£©±£»¤¡£¹¥»÷Õßð³ä¹«Ë¾ITÍŶӷ¢ËÍÓʼþ £¬ÓÕµ¼Êܺ¦Õßµã»÷Á´½Ó½øÈëÓëÕæʵADFSµÇ¼ҳÃæÒ»ÖµĵöÓãÍøÕ¾ £¬²¢ÒªÇóÊäÈëÓû§Ãû¡¢ÃÜÂë¼°MFA´úÂë»òÅú×¼ÍÆËÍ֪ͨ¡£ÕâЩ¹¥»÷Ö¼ÔÚ»ñÈ¡¹«Ë¾µç×ÓÓʼþÕË»§·ÃÎÊȨÏÞ £¬½ø¶ø½øÐо­¼Ã¶¯»úµÄ¹¥»÷ £¬ÈçÉÌÒµµç×ÓÓʼþй¶£¨BEC£©¡£Abnormal SecurityÖ¸³ö £¬¹¥»÷ÕßʹÓÃÁË˽ÈËVPNÒþ²ØλÖà £¬²¢·ÖÅä¸ü½Ó½ü×éÖ¯µÄIPµØÖ·¡£¾¡¹ÜÕâЩ¹¥»÷²»»áÖ±½ÓÆÆ»µADFS £¬µ«ÀûÓÃÓû§¶ÔÊìϤµÇ¼Á÷³ÌµÄÐÅÈÎ £¬Ç±ÔÚÓÐЧÐÔÈÔÈ»ÒýÈËעĿ¡£Abnormal½¨Òé×é֯ǨÒƵ½¸üÄþ¾²µÄ½â¾ö·½°¸ £¬ÈçMicrosoft Entra £¬²¢ÒýÈëÌرðµÄµç×ÓÓʼþ¹ýÂËÆ÷ºÍÒì³£»î¶¯¼ì²â»úÖÆ £¬ÒÔ¾¡Ôç×èÖ¹ÍøÂçµöÓã¹¥»÷¡£


https://bleepingcomputer.com/news/security/hackers-spoof-microsoft-adfs-login-pages-to-steal-credentials/


6. Ó¡¶ÈÒøÐÐÓû§ÔâÓö´ó¹æÄ£Òƶ¯¶ñÒâÈí¼þ¹¥»÷


2ÔÂ5ÈÕ £¬zLabsÑо¿ÍŶӽÒ¶ÁËÒ»ÏîÕë¶ÔÓ¡¶ÈÒøÐÐÓû§µÄÒƶ¯¶ñÒâÈí¼þ»î¶¯ £¬Éæ¼°½ü900¸ö¶ñÒâÈí¼þÑù±¾ £¬Ö÷ÒªÕë¶ÔAndroidÉ豸¡£ÕâЩÑù±¾¾ßÓÐÏàͬµÄ´úÂë½á¹¹¡¢Óû§½çÃæºÍÓ¦Ó÷¨Ê½»Õ±ê £¬±íÃ÷Óɵ¥Ò»ÍþвÐÐΪÕßÌᳫ¡£¸Ã¶ñÒâÈí¼þ²»½öÇÔÈ¡Ò»´ÎÐÔÃÜÂë £¬»¹ÀûÓÃʵʱµç»°ºÅÂëÖض¨Ïò¶ÌÐÅ £¬ÁôÏ¿É×·×ÙµÄÊý×Ö×Ù¼£¡£´ËÍâ £¬Ñо¿ÈËÔ±·¢ÏÖÁËÁè¼Ý222¸ö¿É·ÃÎʵÄFirebase´æ´¢Í° £¬°üÂÞÔ¼50,000ÃûÓû§µÄÃô¸ÐÊý¾Ý £¬ÈçÒøÐÐÏêÇé¡¢ÐÅÓÿ¨ÐÅÏ¢ºÍÉí·ÝÖ¤Ã÷¡£¶ñÒâÈí¼þͨ¹ýWhatsAppÁ÷´« £¬Î±×°³ÉºÏ·¨Ó¦ÓÃÓÕÆ­Óû§Ð¹Â¶²ÆÕþÐÅÏ¢¡£¼¼Êõ·ÖÎöÏÔʾ £¬¸Ã¶ñÒâÈí¼þ¼Ò×åÓÐÈý¸ö±äÌ壺¶ÌÐÅת·¢¡¢Firebase-ExlysisºÍ»ìºÏ¡£Firebase¶Ëµãȱ·¦Éí·ÝÑéÖ¤»úÖÆ £¬µ¼ÖÂÊý¾Ý¿É¹ûÈ»·ÃÎÊ £¬Ð¹Â¶µÄƾ֤ÔÊÐíδ¾­ÊÚȨ·ÃÎʹÜÀíÒDZí°å¡£¹¥»÷Õߵ绰ºÅÂëÖ÷Ҫע²áÓÚÓ¡¶ÈÌض¨µØÓò¡£´Ë´Î¹¥»÷ÀûÓÃÒøÐкÍÕþ¸®ÐÅÓþ £¬½áºÏƾ֤͵ÇÔ¡¢¶ÌÐÅÀ¹½ØºÍÍøÂçµöÓã¼¼ÊõÖ´ÐÐδ¾­ÊÚȨ½»Òס£


https://securityboulevard.com/2025/02/mobile-indian-cyber-heist-fatboypanel-and-his-massive-data-breach/