NeopetsÍøÕ¾Ô´´úÂëºÍÁè¼Ý6900ÍòÓû§ÐÅÏ¢±»µÁ

Ðû²¼Ê±¼ä 2022-07-22
1¡¢NeopetsÍøÕ¾µÄÔ´´úÂëºÍÁè¼Ý6900ÍòÓû§µÄÐÅÏ¢±»µÁ

      

¾Ý7ÔÂ20ÈÕ±¨µÀ£¬ÐéÄâ³èÎïÍøÕ¾NeopetsµÄÔ´´úÂëºÍÁè¼Ý6900Íò»áÔ±µÄ¸öÈËÐÅÏ¢±»µÁ¡£±¾Öܶþ£¬ÃûΪTarTarXµÄºÚ¿ÍÒÔ4¸ö±ÈÌØ±Ò£¨Ô¼ºÏ94,000ÃÀÔª£©µÄ¼Û¸ñ³öÊÛNeopets.comÍøÕ¾µÄÔ´´úÂëºÍÊý¾Ý¿â¡£NeopetsÍŶÓÌåÏÖËûÃÇÒѾ­»ñϤ´Ëʼþ£¬²¢ÔÚŬÁ¦½â¾öÎÊÌâ¡£¸Ã¹«Ë¾»¹ÌåÏÖ£¬Ö»Òª¹¥»÷ÕßÄܹ»ÊµÊ±·ÃÎÊÊý¾Ý¿â£¬¸ü¸ÄNeopetsµÄÃÜÂë¿ÉÄÜÎÞ¼ÃÓÚÊ£¬ÒòΪ¹¥»÷Õß¿ÉÒÔÇáËɵؼì²ìÐÂÃÜÂë¡£´ËÍ⣬RedditÓû§neo_truths³Æ£¬ÔÚ·¢ÏÖ¸ÃÍøÕ¾´æÔÚ©¶´ºó£¬ËûÒѾ­¶ÔÊý¾Ý¿â½øÐÐÁËÖÁÉÙÒ»Äêδ¾­ÊÚȨµÄ·ÃÎÊ¡£


https://www.bleepingcomputer.com/news/security/neopets-data-breach-exposes-personal-data-of-69-million-members/


2¡¢Ñо¿ÍŶӷ¢ÏÖÀàËÆÈðÊ¿¾üµ¶µÄLightning Framework

      

¾ÝIntezer 7ÔÂ21ÈÕ±¨µÀ£¬ÐÂÄ £¿é»¯¶ñÒâÈí¼þLightning Framework¿ÉÓÃÀ´°²×°rootkitºÍºóÃÅ¡£Ëü¾ßÓдóÁ¿¹¦Ð§£¬³ÉΪÕë¶ÔLinuxϵͳ¿ª·¢µÄ×îÅÓ´óµÄ¿ò¼ÜÖ®Ò»£¬±»³ÆÎªÈðÊ¿¾üµ¶¡£¸Ã¿ò¼Ü¾ßÓб»¶¯ºÍÖ÷¶¯Óë¹¥»÷ÕßͨÐŵĹ¦Ð§£¬°üÂÞÔÚÄ¿±êÉ豸ÉÏ´ò¿ªSSH£¬ÒÔ¼°¶à̬¿ÉËÜÐÔÃüÁîºÍ¿ØÖÆÅäÖ᣶ñÒâÈí¼þµÄºËÐÄÊÇÒ»¸öÏÂÔØ·¨Ê½£¨¡°kbioset¡±£©ºÍÒ»¸öºËÐÄÄ £¿é£¨¡°kkdmflush¡±£©£¬»¹Ê¹ÓÃÁË·ÂðÓòÃû£¬²¢Î±×°³ÉSeahorse GNOME passwordºÍ¼ÓÃÜÃÜÔ¿¹ÜÀíÆ÷£¬ÒÔÈÆ¹ýϵͳµÄ¼ì²â¡£


https://www.intezer.com/blog/research/lightning-framework-new-linux-threat/


3¡¢KasperskyÅû¶»ùÓÚRustµÄÐÂÀÕË÷Èí¼þLunaµÄϸ½Ú

      

7ÔÂ20ÈÕ£¬Kaspersky·¢ÏÖ¼ÌBlackCatºÍHiveÖ®ºóµÄµÚÈý¸ö»ùÓÚRustµÄÀÕË÷Èí¼þLuna£¬Ä¿Ç°ÈÔÔÚ¿ª·¢ÖС£Ëü¿ÉÒÔÔÚ Windows¡¢LinuxºÍESXiϵͳÉÏÔËÐУ¬ÆäÖÐLinuxºÍESXiµÄÑù±¾¶¼ÊÇʹÓÃÏàͬµÄÔ´´úÂë±àÒëµÄ£¬ÓëWindowsµÄ°æµ×ϸ±ÈÓÐһЩϸ΢µÄ±ä»¯¡£Ëü»¹Ê¹ÓÃÁËÒ»ÖÖ²»Ì«³£¼ûµÄ¼ÓÃÜ·½°¸£¬Í¨¹ýCurve25519ºÍAESµÄ×éºÏ½øÐмÓÃÜ¡£´ËÍ⣬ÓÉÓÚ¶þ½øÖÆÎļþÖÐÓ²±àÂëµÄÊê½ð¼Ç¼ÖÐµÄÆ´Ð´´íÎó£¬Ñо¿ÈËÔ±ÍÆ²âÆäºËÐÄ¿ª·¢ÈËÔ±Óë¶íÂÞ˹ÓйØ¡£


https://securelist.com/luna-black-basta-ransomware/106950/


4¡¢LinkedInÈÔÊÇ2022ÄêQ2µöÓã»î¶¯Öб»Ä£·Â×î¶àµÄÆ·ÅÆ

      

Check PointÔÚ7ÔÂ19ÈÕÐû²¼ÁË2022ÄêµÚ¶þ¼¾¶ÈÆ·ÅÆÍøÂçµöÓãµÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬ÔÚQ2µÄµöÓã»î¶¯ÖÐLinkedInÈÔÃûÁаñÊ×£¬ÓëQ1Ïà±È¼ÙðLinkedInµÄÕ¼±È´Ó52%Ͻµµ½45%¡£È»¶ø£¬ËüÓë±»·ÂðµÄµÚ¶þ´óÆ·ÅÆMicrosoftÖ®¼äÈÔ¾ßÓÐÏ൱´óµÄ¾àÀ루½öΪ13%£©¡£Æä´ÎÊÇDHL£¨12%£©¡¢Amazon(9%)¡¢Apple(3%)ºÍAdidas(2%)¡£ÆäÖУ¬Ã°³äLinkedInµÄµöÓã»î¶¯ÊÔͼģ·Â·¢Ë͸øÓû§µÄ³£¼ûÏûÏ¢£¬Õë¶ÔMicrosoftµÄµöÓã»î¶¯Ö÷ÒªÊÇÇëÇóÑéÖ¤OutlookÕÊ»§ÒÔÇÔÈ¡Óû§ÃûºÍÃÜÂë¡£


https://blog.checkpoint.com/2022/07/19/linkedin-still-number-one-brand-to-be-faked-in-phishing-attempts-while-microsoft-surges-up-the-rankings-to-number-two-spot-in-q2-report/


5¡¢¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½¹¥»÷£¬ÏµÍ³ÈÔÔÚ»Ö¸´ÖÐ

      

¾ÝýÌå7ÔÂ21ÈÕ±¨µÀ£¬¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½ÁËÍøÂç¹¥»÷¡£»¬Ìú¬µØÓò½ÌÓý¾ÖÌåÏÖ£¬ÔÚÔâµ½ÍøÂç¹¥»÷ºó£¬ÆäÕýÔÚŬÁ¦»Ö¸´ITϵͳ²¢±£»¤½ÌÖ°Ô±¹¤¡¢Ñ§ÉúºÍ¼ÒÍ¥µÄ¸öÈËÐÅÏ¢¡£ÉÐδ˵Ã÷¹¥»÷Õß¿ÉÄÜ·ÃÎÊÁËÄÄЩÀàÐ͵ÄÎļþ£¨Èç¹ûÓеϰ£©£¬»òÕßÊÇ·ñ»á¸¶·ÑÀ´ÖØÐ·ÃÎÊϵͳ¡£·¢ÑÔÈ˳Æ£¬½üÄêÀ´Õë¶Ô½ÌÓý²¿ÃŵĹ¥»÷Ô½À´Ô½Æµ·±£¬Regina¹«Á¢Ñ§Ð£ÔÚ½ñÄê5ÔÂÔâµ½Á˹¥»÷²¢¹Ø±ÕÁËËùÓлùÓÚ»¥ÁªÍøµÄϵͳ£¬2021Äê1ÔÂÆ¤¶ûµØÓòµÄ½ÌÓý¾ÖÔøÔâµ½¹¥»÷¡£


https://www.cbc.ca/news/canada/kitchener-waterloo/waterloo-region-district-school-board-cyber-attack-1.6526731?cmp=rss


6¡¢CiscoÐû²¼¶à¸ö²úÎïµÄÄþ¾²¸üУ¬×ܼÆÐÞ¸´45¸ö©¶´ 

      

7ÔÂ20ÈÕ£¬CiscoÐû²¼¶à¸ö²úÎïµÄÄþ¾²¸üУ¬×ܼÆÐÞ¸´45¸ö©¶´¡£ÆäÖнÏΪÑÏÖØµÄÊÇCisco Nexus DashboardÖеÄÈÎÒâÃüÁîÖ´ÐЩ¶´£¨CVE-2022-20857£¬CVSSÆÀ·Ö9.8£©¡¢ÈÝÆ÷Ó³Ïñ¶Áд©¶´£¨CVE-2022-20858£©ºÍ¿çÕ¾ÇëÇóαÔì©¶´£¨CVE-2022-20861£©¡£³ý´ËÖ®Í⣬Cisco»¹ÐÞ¸´ÁËÆäSmall Business RV110W¡¢RV130¡¢RV130WºÍRV215W·ÓÉÆ÷ÖеÄ35¸ö©¶´£¬ËüÃÇ¿ÉÄܵ¼ÖÂÈÎÒâ´úÂëÖ´ÐкÍDoS¹¥»÷¡£


https://thehackernews.com/2022/07/cisco-releases-patches-for-critical.html