ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵꣻ΢ÈíÇ°Ô±¹¤ÓõçÉÌƽ̨©¶´³öÊÛXboxÀñÆ·¿¨»ñÀû1000Íò

Ðû²¼Ê±¼ä 2021-07-05

1.ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵê


1.jpg


ÈðµäÁ¬Ëø³¬ÊÐCoop³ÆÆäÔâµ½ÁËKaseya¹©Ó¦Á´¹¥»÷ £¬Êý°Ù¼ÒÃŵê¹Ø±Õ¡£CoopµÄ·¢ÑÔÈËÌåÏÖÆäÓÚÉÏÖÜÎåÍíÉÏ6µã30·Ö×óÓÒ·¢ÏÖÓÐÉÙÊýÃŵ귺ÆðÎÊÌâ £¬µ«Ò»Ò¹Ö®ºóÆä´ó²¿ÃÅÃŵ궼±»ÆÈ¹Ø±Õ £¬°üÂÞÊÕÒø̨ºÍ×ÔÖú½áÕËÔÚÄÚµÄÕû¸öÖ§¸¶ÏµÍ³¶¼ÖжÏÁË¡£´ËÍâ £¬CoopûÓÐʹÓÃKesayaÈí¼þ £¬ÒòΪËûÃǵÄÒ»¸öÈí¼þÌṩÉÌʹÓÃÁ˸ÃÈí¼þ¶øÊܵ½Ó°Ïì¡£Äþ¾²¹«Ë¾HuntressLabs³Æ £¬´Ë´Î¹¥»÷»î¶¯µÄÊÓ²ìÈÔÔÚ½øÐÐÖÐ £¬ÖÁÉÙÓÐ200¼Ò×éÖ¯Êܵ½Ó°Ïì¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/119663/cyber-crime/coop-supermarket-kaseya-ransomware-attack.html


2.΢ÈíÇ°Ô±¹¤ÓõçÉÌƽ̨©¶´³öÊÛXboxÀñÆ·¿¨»ñÀû1000Íò


2.jpg


΢ÈíÇ°µÍ¼¶¹¤³ÌʦVolodymyr KvashukÀûÓõçÉÌƽ̨©¶´³öÊÛXboxÀñÆ·¿¨»ñÀû1000ÍòÃÀÔª¡£ËûµÄÍŶӵÄÖ÷ҪĿ±êÊÇÄ£ÄâMicrosoftÔÚÏß¹ºÖÃÀ´·¢ÏÖ¸¶¿îÎÊÌâ¡£ÕâЩÐéÄâÕÊ»§¿ÉÒÔ±»ÏµÍ³Ê¶±ð £¬ÔÚÍøÕ¾¹ºÖù¤¾ßʱ²»»áÊÕµ½ÈκβúÎï £¬µ«Êǵ±¹ºÖÃXboxÀñÆ·¿¨ £¬½«»ñµÃÒ»¸öÍêÈ«ÓÐЧµÄ25λ´úÂë¡£Ëû²¢Î´½«¸Ã©¶´Í¨ÖªÆäÉÏ˾ £¬¶øÊÇÀûÓÃÆä»ñÀû¡£Ö®ºó £¬Ëû×ܹ²ÀûÓø鶴ÇÔÈ¡²¢³öÊÛÁËÁè¼Ý152000ÕÅXboxÀñÆ·¿¨ £¬¼ÛÖµ1010ÍòÃÀÔª¡£


Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/microsoft-engineer-stole-10m-by-selling-xbox-gift-cards-533416.shtml


3.Ñо¿ÈËÔ±Åû¶¶à¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾¾Ý


3.jpg


Dr. WebÑо¿ÈËÔ±Åû¶ÁË9¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾¾Ý¡£ÕâЩӦÓÃαװ³ÉÎÞº¦µÄÕÕƬ±à¼­¡¢ÓÅ»¯¡¢½¡ÉíºÍÕ¼ÐÇ·¨Ê½ £¬À´ÓÕʹÊܺ¦ÕߵǼFacebookÕË»§ £¬²¢ÀûÓÃÒ»¶ÎJavaScript´úÂë½Ù³ÖÊäÈëµÄƾ֤¡£ËäÈ»´Ë´Î»î¶¯ËƺõÊÇרÃÅÕë¶ÔFacebookÕÊ»§ £¬µ«Dr.Web¾¯¸æ³Æ £¬ÕâÖÖ¹¥»÷Ò²¿ÉÒÔ¼ÓÔØÈκÎÆäËüºÏ·¨ÍøÂçƽ̨µÄµÇ¼ҳÃæ £¬À´ÇÔÈ¡ÆäËü·þÎñµÄµÇ¼ÃûºÍÃÜÂë¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/07/android-apps-with-58-million-installs.html


4.ÃÀ¹ú±£ÏÕ¹«Ë¾AJG³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷ £¬¿Í»§ÐÅϢй¶


4.jpg


ÃÀ¹úArthur J. Gallagher (AJG) ³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷ £¬¿Í»§ÐÅϢй¶¡£AJGÊÇÃÀ¹úµÄÈ«Çò±£ÏÕ¾­¼ÍºÍ·çÏÕ¹ÜÀí¹«Ë¾ £¬×÷ΪȫÇò×î´óµÄ±£ÏÕ¾­¼ÍÉÌÖ®Ò» £¬ÒµÎñ±é¼°49¸ö¹ú¼Ò/µØÓò¡£¹¥»÷·¢ÉúÔÚ2020Äê6ÔÂ3ÈÕÖÁ2020Äê9ÔÂ26ÈÕÆÚ¼ä £¬ÆäÔÚ2020Äê9ÔÂ28ÈÕÅû¶¸Ãʼþ²¢³ÆûÓÐÊý¾Ýй¶¡£µ«ÔÚËæºóµÄÊӲ췢ÏÖ £¬7376È˵ÄÃô¸ÐÐÅϢй¶ £¬°üÂÞÉç»áÄþ¾²ºÅÂë»òË°ºÅ¡¢¼ÝÕÕ¡¢»¤ÕÕ¡¢³öÉúÈÕÆÚ¡¢Óû§ÃûºÍÃÜÂë¡¢Ô±¹¤Ê¶±ðºÅ¡¢²ÆÕþÕË»§»òÐÅÓÿ¨ÐÅÏ¢¡¢µç×ÓÇ©Ãû¡¢Ò½ÁÆÐÅÏ¢¡¢±£ÏÕÐÅÏ¢ÒÔ¼°ÉúÎïʶ±ðÐÅÏ¢µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-insurance-giant-ajg-reports-data-breach-after-ransomware-attack/


5.Unit 42Ðû²¼2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊƵķÖÎö³ÂËß


5.jpg


Unit 42Ðû²¼ÁË2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊƵķÖÎö³ÂËß¡£³ÂËßÖ¸³ö £¬2Ôµ½4Ô¹²·ÖÅäÁË4969¸öеÄCVE±àºÅ £¬ÆäÖÐÑÏÖصÄ©¶´Îª598¸ö £¬Õ¼±È15.5% £¬POC¿ÉÓÃÐÔΪ9.4%£»¸ß¼¶µÄΪ1659¸ö £¬Õ¼±È43.1% £¬POC¿ÉÓÃÐÔΪ8.1%£»ÖеÈΪ1592¸ö £¬Õ¼±È41.4% £¬POC¿ÉÓÃÐÔΪ7.0%¡£ÔÚ¹¥»÷ÀàÐÍ·½Ãæ £¬´úÂëÖ´Ðй¥»÷Õ¼±È×î´ó £¬Îª45.6%£»¶ø¹¥»÷µÄÆðÔ´µØ·½Ãæ £¬ÆäÖÐ×î¶àµÄÀ´×ÔÓÚÃÀ¹ú £¬Æä´ÎÊǶíÂÞ˹ºÍÖйú¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/network-attack-trends-february-april-2021/


6.WatchGuardÐû²¼2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÄþ¾²·ÖÎö³ÂËß


6.jpg


WatchGuardÐû²¼ÁË2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÄþ¾²·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö £¬ÔÚ2020ÄêQ1¼ì²âµ½µÄÍþвÖÐÓÐ74%ÊÇÁãÈÕ©¶´¶ñÒâÈí¼þ £¬µ½´ïÁËÀúʷиß¡£5ÖÖеĶñÒâÈí¼þUrsu¡¢Trojan.IFrame¡¢XML.JSLoader¡¢ZmutzyºÍZum.Androm½øÈëÁËÊ®´ó¶ñÒâÈí¼þµÄÅÅÐаñ¡£´ËÍâ £¬´Ó3ÔÂ24ÈÕ(µÚÒ»´Î·¢ÏÖIPS¹¥»÷)µ½3ÔÂµ× £¬Õë¶ÔProxyLogin Exchange Server©¶´µÄ¹¥»÷Ôö¼ÓÁË1600%¡£


Ô­ÎÄÁ´½Ó£º

https://www.watchguard.com/wgrd-resource-center/security-report-q1-2021