ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵꣻ΢ÈíÇ°Ô±¹¤ÓõçÉÌƽ̨©¶´³öÊÛXboxÀñÆ·¿¨»ñÀû1000Íò
Ðû²¼Ê±¼ä 2021-07-051.ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵê
ÈðµäÁ¬Ëø³¬ÊÐCoop³ÆÆäÔâµ½ÁËKaseya¹©Ó¦Á´¹¥»÷£¬Êý°Ù¼ÒÃŵê¹Ø±Õ¡£CoopµÄ·¢ÑÔÈËÌåÏÖÆäÓÚÉÏÖÜÎåÍíÉÏ6µã30·Ö×óÓÒ·¢ÏÖÓÐÉÙÊýÃŵ귺ÆðÎÊÌ⣬µ«Ò»Ò¹Ö®ºóÆä´ó²¿ÃÅÃŵ궼±»Æȹرգ¬°üÂÞÊÕÒø̨ºÍ×ÔÖú½áÕËÔÚÄÚµÄÕû¸öÖ§¸¶ÏµÍ³¶¼ÖжÏÁË¡£´ËÍ⣬CoopûÓÐʹÓÃKesayaÈí¼þ£¬ÒòΪËûÃǵÄÒ»¸öÈí¼þÌṩÉÌʹÓÃÁ˸ÃÈí¼þ¶øÊܵ½Ó°Ïì¡£Äþ¾²¹«Ë¾HuntressLabs³Æ£¬´Ë´Î¹¥»÷»î¶¯µÄÊÓ²ìÈÔÔÚ½øÐÐÖУ¬ÖÁÉÙÓÐ200¼Ò×éÖ¯Êܵ½Ó°Ïì¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/119663/cyber-crime/coop-supermarket-kaseya-ransomware-attack.html
2.΢ÈíÇ°Ô±¹¤ÓõçÉÌƽ̨©¶´³öÊÛXboxÀñÆ·¿¨»ñÀû1000Íò
΢ÈíÇ°µÍ¼¶¹¤³ÌʦVolodymyr KvashukÀûÓõçÉÌƽ̨©¶´³öÊÛXboxÀñÆ·¿¨»ñÀû1000ÍòÃÀÔª¡£ËûµÄÍŶӵÄÖ÷ҪĿ±êÊÇÄ£ÄâMicrosoftÔÚÏß¹ºÖÃÀ´·¢ÏÖ¸¶¿îÎÊÌâ¡£ÕâЩÐéÄâÕÊ»§¿ÉÒÔ±»ÏµÍ³Ê¶±ð£¬ÔÚÍøÕ¾¹ºÖù¤¾ßʱ²»»áÊÕµ½ÈκβúÎµ«Êǵ±¹ºÖÃXboxÀñÆ·¿¨£¬½«»ñµÃÒ»¸öÍêÈ«ÓÐЧµÄ25λ´úÂë¡£Ëû²¢Î´½«¸Ã©¶´Í¨ÖªÆäÉÏ˾£¬¶øÊÇÀûÓÃÆä»ñÀû¡£Ö®ºó£¬Ëû×ܹ²ÀûÓø鶴ÇÔÈ¡²¢³öÊÛÁËÁè¼Ý152000ÕÅXboxÀñÆ·¿¨£¬¼ÛÖµ1010ÍòÃÀÔª¡£
ÔÎÄÁ´½Ó£º
https://news.softpedia.com/news/microsoft-engineer-stole-10m-by-selling-xbox-gift-cards-533416.shtml
3.Ñо¿ÈËÔ±Åû¶¶à¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾¾Ý
Dr. WebÑо¿ÈËÔ±Åû¶ÁË9¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾¾Ý¡£ÕâЩӦÓÃαװ³ÉÎÞº¦µÄÕÕƬ±à¼¡¢ÓÅ»¯¡¢½¡ÉíºÍÕ¼ÐÇ·¨Ê½£¬À´ÓÕʹÊܺ¦ÕߵǼFacebookÕË»§£¬²¢ÀûÓÃÒ»¶ÎJavaScript´úÂë½Ù³ÖÊäÈëµÄƾ֤¡£ËäÈ»´Ë´Î»î¶¯ËƺõÊÇרÃÅÕë¶ÔFacebookÕÊ»§£¬µ«Dr.Web¾¯¸æ³Æ£¬ÕâÖÖ¹¥»÷Ò²¿ÉÒÔ¼ÓÔØÈκÎÆäËüºÏ·¨ÍøÂçƽ̨µÄµÇ¼ҳÃ棬À´ÇÔÈ¡ÆäËü·þÎñµÄµÇ¼ÃûºÍÃÜÂë¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/07/android-apps-with-58-million-installs.html
4.ÃÀ¹ú±£ÏÕ¹«Ë¾AJG³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬¿Í»§ÐÅϢй¶
ÃÀ¹úArthur J. Gallagher (AJG) ³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬¿Í»§ÐÅϢй¶¡£AJGÊÇÃÀ¹úµÄÈ«Çò±£ÏÕ¾¼ÍºÍ·çÏÕ¹ÜÀí¹«Ë¾£¬×÷ΪȫÇò×î´óµÄ±£ÏÕ¾¼ÍÉÌÖ®Ò»£¬ÒµÎñ±é¼°49¸ö¹ú¼Ò/µØÓò¡£¹¥»÷·¢ÉúÔÚ2020Äê6ÔÂ3ÈÕÖÁ2020Äê9ÔÂ26ÈÕÆڼ䣬ÆäÔÚ2020Äê9ÔÂ28ÈÕÅû¶¸Ãʼþ²¢³ÆûÓÐÊý¾Ýй¶¡£µ«ÔÚËæºóµÄÊӲ췢ÏÖ£¬7376È˵ÄÃô¸ÐÐÅϢй¶£¬°üÂÞÉç»áÄþ¾²ºÅÂë»òË°ºÅ¡¢¼ÝÕÕ¡¢»¤ÕÕ¡¢³öÉúÈÕÆÚ¡¢Óû§ÃûºÍÃÜÂë¡¢Ô±¹¤Ê¶±ðºÅ¡¢²ÆÕþÕË»§»òÐÅÓÿ¨ÐÅÏ¢¡¢µç×ÓÇ©Ãû¡¢Ò½ÁÆÐÅÏ¢¡¢±£ÏÕÐÅÏ¢ÒÔ¼°ÉúÎïʶ±ðÐÅÏ¢µÈ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/us-insurance-giant-ajg-reports-data-breach-after-ransomware-attack/
5.Unit 42Ðû²¼2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊƵķÖÎö³ÂËß
Unit 42Ðû²¼ÁË2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊƵķÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬2Ôµ½4Ô¹²·ÖÅäÁË4969¸öеÄCVE±àºÅ£¬ÆäÖÐÑÏÖصÄ©¶´Îª598¸ö£¬Õ¼±È15.5%£¬POC¿ÉÓÃÐÔΪ9.4%£»¸ß¼¶µÄΪ1659¸ö£¬Õ¼±È43.1%£¬POC¿ÉÓÃÐÔΪ8.1%£»ÖеÈΪ1592¸ö£¬Õ¼±È41.4%£¬POC¿ÉÓÃÐÔΪ7.0%¡£ÔÚ¹¥»÷ÀàÐÍ·½Ã棬´úÂëÖ´Ðй¥»÷Õ¼±È×î´ó£¬Îª45.6%£»¶ø¹¥»÷µÄÆðÔ´µØ·½Ã棬ÆäÖÐ×î¶àµÄÀ´×ÔÓÚÃÀ¹ú£¬Æä´ÎÊǶíÂÞ˹ºÍÖйú¡£
ÔÎÄÁ´½Ó£º
https://unit42.paloaltonetworks.com/network-attack-trends-february-april-2021/
6.WatchGuardÐû²¼2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÄþ¾²·ÖÎö³ÂËß
WatchGuardÐû²¼ÁË2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÄþ¾²·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬ÔÚ2020ÄêQ1¼ì²âµ½µÄÍþвÖÐÓÐ74%ÊÇÁãÈÕ©¶´¶ñÒâÈí¼þ£¬µ½´ïÁËÀúʷиߡ£5ÖÖеĶñÒâÈí¼þUrsu¡¢Trojan.IFrame¡¢XML.JSLoader¡¢ZmutzyºÍZum.Androm½øÈëÁËÊ®´ó¶ñÒâÈí¼þµÄÅÅÐаñ¡£´ËÍ⣬´Ó3ÔÂ24ÈÕ(µÚÒ»´Î·¢ÏÖIPS¹¥»÷)µ½3Ôµף¬Õë¶ÔProxyLogin Exchange Server©¶´µÄ¹¥»÷Ôö¼ÓÁË1600%¡£
ÔÎÄÁ´½Ó£º
https://www.watchguard.com/wgrd-resource-center/security-report-q1-2021