2.35ÒÚTwitterÓû§µÄ¸öÈËÐÅÏ¢ÔÚºÚ¿ÍÂÛ̳ÉÏÐû²¼

Ðû²¼Ê±¼ä 2023-01-05
1¡¢2.35ÒÚTwitterÓû§µÄ¸öÈËÐÅÏ¢ÔÚºÚ¿ÍÂÛ̳ÉÏÐû²¼

      

¾ÝýÌå1ÔÂ4ÈÕ±¨µÀ£¬Ò»¸ö°üÂÞÁè¼Ý2ÒÚTwitterÓû§µÄµç×ÓÓʼþµØÖ·µÄÊý¾Ý¼¯ÔÚºÚ¿ÍÂÛ̳BreachedÉÏÐû²¼£¬½öÐèÖ§¸¶8¸öÂÛ̳»õ±Ò»ý·Ö£¨¼ÛÖµÔ¼2ÃÀÔª£©¡£Ñо¿ÈËÔ±ÒÑÈ·ÈÏÆäÖÐÁгöµÄÐí¶àÓʼþµØÖ·µÄÓÐЧÐÔ¡£¾Ý³Æ£¬¸ÃÊý¾Ý¼¯Óë11Ô·ÝÁ÷´«µÄ4ÒÚÌõÊý¾ÝÏàͬ£¬µ«¾­¹ýÇåÀíºó²»°üÂÞÖØ¸´Ï×ÜÊý¼õÉÙµ½Ô¼221608279Ìõ¡£Êý¾ÝÒÔRAR´æµµµÄÐÎʽÐû²¼£¬ÆäÖаüÂÞ6¸öÎı¾Îļþ£¬×ܾÞϸ59GB£¬Éæ¼°ÓʼþµØÖ·¡¢ÐÕÃû¡¢êdzƺ͹Ø×¢µÈÐÅÏ¢¡£


https://securityaffairs.com/140352/data-breach/twitter-data-leak-235m-users.html


2¡¢ÎÖ¶ûÎÖÔâµ½EnduranceµÄÀÕË÷¹¥»÷200GBÃô¸ÐÊý¾ÝÒÉËÆÐ¹Â¶

      

1ÔÂ3ÈÕ±¨µÀ³Æ£¬·¨¹úÄþ¾²»ú¹¹Anis Haboubi·¢ÏÖºÚ¿ÍÔÚÂÛ̳ÉÏÒÔ2500ÃÀÔªµÄ¼Û¸ñ³öÊÛ´ÓÎÖ¶ûÎÖÇÔÈ¡µÄÊý¾Ý¡£2022Äê12ÔÂ31ÈÕ£¬ÂÛ̳³ÉÔ±IntelBrokerÉù³ÆÎÖ¶ûÎÖÔâµ½ÁËEnduranceµÄÀÕË÷¹¥»÷£¬¹¥»÷ÕßÇÔÈ¡ÁË200GBµÄÃô¸ÐÊý¾Ý£¬ÕâЩÊý¾ÝÏÖÔÚÕýÔÚ³öÊÛ¡£Âô¼Ò½âÊÍ˵£¬ËûûÓÐË÷ÒªÊê½ð£¬ÒòΪËûÈÏΪ¸Ã¹«Ë¾²»»á¸¶Êê½ð¡£¾ÝϤ£¬±»µÁÊý¾Ý°üÂÞÊý¾Ý¿â·ÃÎÊ¡¢CICD·ÃÎÊ¡¢Atlassian·ÃÎÊ¡¢ÓòÃû·ÃÎÊ¡¢WiFiµãºÍµÇ¼¡¢ÊÚȨ³ÐÔØ¡¢API¡¢PACÄþ¾²·ÃÎÊ¡¢Ô±¹¤Ãûµ¥¡¢Èí¼þÐí¿ÉÖ¤ÒÔ¼°ÃÜÔ¿ºÍϵͳÎļþ¡£Ä¿Ç°£¬Éв»Çå³þÕâһ˵·¨µÄÕæÊµÐÔ¡£


https://securityaffairs.com/140258/hacking/volvo-cars-data-breach-2.html


3¡¢Qualys·¢ÏÖÒÔ±»µÁµÄÒøÐÐÊý¾ÝΪÓÕ¶ü·Ö·¢BitRATµÄ»î¶¯

      

QualysÔÚ1ÔÂ3Èճƣ¬½üÆÚÒ»³¡ÐµĶñÒâÈí¼þ»î¶¯ÀûÓñ»µÁµÄÒøÐÐÊý¾Ý×÷ΪÓÕ¶ü£¬Ö¼ÔÚ·Ö·¢Ô¶³Ì·ÃÎÊľÂíBitRAT¡£¸Ã¹«Ë¾ÔÚÊÓ²ìµöÓã¹¥»÷ÖеÄBitRATÓÕ¶üʱ£¬·¢ÏÖÒ»¼Ò¸çÂ×±ÈÑǺÏ×÷ÒøÐеÄIT»ù´¡ÉèÊ©Òѱ»¹¥»÷Õß½Ù³Ö£¬418777Ìõ¿Í»§Êý¾Ý±»µÁ¡£¹¥»÷Õß½«Êý¾Ýµ¼³öµ½ÎäÆ÷»¯µÄExcel¶ñÒâÎĵµÖУ¬ÒÔÓÕʹÊÕ¼þÈË´ò¿ªÎļþ¡£´ò¿ªÎļþ²¢ÆôÓúêºó£¬½«ÏÂÔØ²¢Ö´Ðеڶþ½×¶ÎDLL payload¡£µÚ¶þ½×¶ÎDLLʹÓÃÖÖÖÖ·´µ÷ÊÔ¼¼Êõ£¬×îÖÕÔÚÄ¿±êÖ÷»úÉϼìË÷²¢Ö´ÐÐBitRAT¡£


https://blog.qualys.com/vulnerabilities-threat-research/2023/01/03/bitrat-now-sharing-sensitive-bank-data-as-a-lure


4¡¢ÃÀ¹úÌú·ºÍ»ú³µ¹«Ë¾WabtecÔâµ½LockBitµÄÀÕË÷¹¥»÷

      

ýÌå1ÔÂ3Èճƣ¬ÃÀ¹úÌú·ºÍ»ú³µ¹«Ë¾Wabtec Corporation͸¶ÆäÔâµ½ÀÕË÷¹¥»÷µ¼ÖÂÊý¾Ýй¶¡£ºÚ¿ÍÔçÔÚ2022Äê3ÔÂ15ÈÕ¾ÍÈëÇÖÁËËûÃǵÄÍøÂç²¢ÔÚϵͳÉϰ²×°Á˶ñÒâÈí¼þ£¬WabtecÔÚ6ÔÂ26ÈÕ³ÆÔÚÍøÂçÉϼì²âµ½Òì³£»î¶¯¡£¼¸Öܺó£¬LockBitÐû²¼ÁË´ÓWabtecÇÔÈ¡µÄÊý¾ÝÑù±¾£¬²¢×îÖÕÔÚ2022Äê8ÔÂ20ÈÕ¹ûÈ»ÁËÈ«²¿±»µÁÊý¾Ý¡£Wabtec¶Ô¸ÃʼþµÄÊÓ²ìÓÚ2022Äê11ÔÂ23ÈÕÍê³É£¬È·ÈÏй¶ÐÅÏ¢°üÂÞÐÕÃû¡¢Éí·ÝÖ¤ºÅÂë¡¢Éç»á±£ÏÕºÅÂë»ò²ÆÕþ´úÂë¡¢»¤ÕÕºÅÂëºÍ¹ÍÖ÷ʶ±ðºÅÂëµÈ¡£¸Ã¹«Ë¾ÓÚ2022Äê12ÔÂ30ÈÕ¿ªÊ¼ÏòÊÜÓ°ÏìµÄ¸öÈË·¢ËÍ֪ͨ£¬µ«Î´Í¸Â¶È·ÇÐÈËÊý¡£


https://www.bleepingcomputer.com/news/security/rail-giant-wabtec-discloses-data-breach-after-lockbit-ransomware-attack/


5¡¢Ñо¿ÈËÔ±Åû¶Õë¶ÔÐÅÏ¢Äþ¾²ÁìÓòµÄFlipper ZeroµöÓã»î¶¯

      

¾Ý1ÔÂ3ÈÕ±¨µÀ£¬Dominic AlvieriÅû¶ÁËÕë¶ÔÄþ¾²Ñо¿ÈËÔ±µÄFlipper ZeroµöÓã»î¶¯¡£Flipper ZeroÊÇÒ»¿î±ãЯʽ¶à¹¦Ð§ÍøÂçÄþ¾²¹¤¾ß£¬ÆäÔÚÈ¥Äê·ºÆðÉú²úÎÊÌâµ¼Ö¹©Ó¦¶Ìȱ£¬ÎÞ·¨Âú×ãÈÔÔÚÔö³¤µÄÐèÇó¡£¹¥»÷ÕßÀûÓÃÈËÃǶÔFlipper ZeroµÄÐËȤ¼°Æä¹©Ó¦¶Ìȱ£¬´´½¨É̵ê¼Ù×°³öÊÛËü¡£Ñо¿ÈËÔ±·¢ÏÖÁËαÔìµÄÈý¸öTwitterÕË»§ºÍÁ½¸öÉ̵ê¡£½áÕËʱÂò¼Ò»á½øÈëµöÓãÒ³Ãæ£¬²¢±»ÒªÇóÊäÈëÓʼþµØÖ·¡¢ÐÕÃûºÍËÍ»õµØÖ·£¬È»ºóÑ¡ÔñʹÓÃÒÔÌ«·»»ò±ÈÌØ±Ò¸¶¿î¡£´Ë´¦ÁгöµÄÇ®°üµØÖ·Ã»ÓÐÊÕµ½Èκθ¶¿î£¬ËùÒÔҪôÊǸÃÉ̵êûÓÐÆ­µ½ÈκÎÈË£¬ÒªÃ´ÊÇÔÚÿ´Î½»Ò׺ó¶¼Ê¹ÓÃеÄÇ®°ü¡£


https://www.bleepingcomputer.com/news/security/ongoing-flipper-zero-phishing-attacks-target-infosec-community/


6¡¢Security JoesÐû²¼Raspberry RobinлµÄ³ÂËß

      

1ÔÂ3ÈÕ£¬Security JoesÐû²¼³ÂËß³ÆRaspberry Robin¿ªÊ¼Õë¶ÔÅ·Ö޵ĽðÈںͱ£ÏÕÐÐÒµ¡£¶ÔÒ»´Î´ËÀ๥»÷µÄȡ֤ÊÓ²ìÏÔʾ£¬ËüʹÓÃÁËÒ»¸ö7-ZipÎļþ£¬¸ÃÎļþÊÇͨ¹ýÉ繤¹¥»÷ͨ¹ýÄ¿±êµÄä¯ÀÀÆ÷ÏÂÔØµÄ£¬°üÂÞÒ»¸öMSI°²×°·¨Ê½Îļþ£¬Ö¼ÔÚ·Ö·¢¶à¸öÄ£¿é¡£ÔÚÁíÒ»¸ö°¸ÀýÖУ¬Ä¿±êÊÇͨ¹ýÍйÜÔÚ·Ö·¢¹ã¸æÈí¼þµÄÓòÉÏµÄÆÛÕ©ÐÔ¹ã¸æÏÂÔØµÄZIPÎļþ¡£´ËÍ⣬Ñо¿ÈËÔ±·¢ÏÖͬһ¸öQNAP·þÎñÆ÷±»ÓÃÓÚ¶àÂÖ¹¥»÷£¬Ä¿±êµÄÊý¾Ý²»ÔÙÊÇ´¿Îı¾ÐÎʽ£¬¶øÊÇRC4¼ÓÃܵÄ¡£


https://www.securityjoes.com/post/raspberry-robin-detected-itw-targeting-insurance-financial-institutes-in-europe