Barracuda¶Ø´ÙÆóÒµ¸ü»»ÊÜÓ°ÏìESG¼´Ê¹°²×°Èκΰ汾²¹¶¡

Ðû²¼Ê±¼ä 2023-06-09

1¡¢Barracuda¶Ø´ÙÆóÒµ¸ü»»ÊÜÓ°ÏìESG¼´Ê¹°²×°Èκΰ汾²¹¶¡


¾ÝýÌå6ÔÂ7ÈÕ±¨µÀ£¬Barracuda¶Ø´ÙÆóÒµ¼°Ê±¸ü»»ÊÜÓ°ÏìµÄµç×ÓÓʼþÄþ¾²Íø¹Ø(ESG)É豸£¬ÎÞÂÛËûÃǰ²×°ÁËʲô°æ±¾¼¶´ËÍâ²¹¶¡¡£Â©¶´±»×·×ÙΪCVE-2023-2868£¬´æÔÚÓÚµç×ÓÓʼþ¸½¼þɸѡÄ £¿éÖУ¬ÓÚ5ÔÂ19ÈÕ±»·¢ÏÖ£¬¸Ã¹«Ë¾ÓÚ5ÔÂ20ÈÕºÍ21ÈÕÐû²¼ÁËÁ½¸ö²¹¶¡À´ÐÞ¸´¸ÃÎÊÌâ¡£¾ÝÊӲ죬¸Ã©¶´Òѱ»ÀûÓ㬹¥»÷ʼþÖÁÉÙ¿ÉÒÔ×·Ëݵ½2022Äê10Ô¡£Ñо¿ÈËÔ±ÁªÏµBarracudaµÄ·¢ÑÔÈË£¬Ñ¯ÎʹØÓÚΪʲôÐèÒªÈ«Ãæ¸ü»»ESGµÄ¸ü¶àϸ½Úʱ£¬Ã»ÓÐÁ¢¼´µÃµ½»Ø¸´¡£


https://securityaffairs.com/147211/hacking/barracuda-esg-cve-2023-2868-replacement.html


2¡¢Î¢ÈíOneDriveÔâµ½DDoS¹¥»÷È«ÇòÓû§ÎÞ·¨·ÃÎÊ·þÎñ


¾Ý6ÔÂ8ÈÕ±¨µÀ£¬Î¢ÈíÕýÔÚÊӲ쵼ÖÂÈ«Çò·¶Î§ÄÚµÄOneDriveÎÞ·¨·ÃÎÊÔÆÎļþÍйܷþÎñµÄÎÊÌâ¡£Óû§ÔÚʵÑé´ò¿ªOneDriveÍøÕ¾Ê±£¬»á¿´µ½¡°Ç¸ØÆ£¬·ºÆð´íÎ󡱺͡°´ËÒ³ÃæÄ¿Ç°ÎÞ·¨Õý³£ÊÂÇ顱µÄ´íÎóÏûÏ¢¡£ËäÈ»¸Ã¹«Ë¾Ã»ÓÐÌṩÈκιØÓÚµ¼ÖÂÖжÏÎÊÌâµÄϸ½ÚÐÅÏ¢£¬µ«Anonymous SudanÉù³Æ¶Ô´ËÊÂÂôÁ¦¡£Î¢Èí³Æ£¬ÖжÏÖ»Ó°ÏìÁËonedrive.live.comÓò£¬Ê¹ÓÃ×ÀÃæ¿Í»§¶Ë¡¢Í¬²½¿Í»§¶Ë»òOffice¿Í»§¶Ë·ÃÎÊOneDrive·þÎñ²»ÊÜÓ°Ïì¡£¸ÃÍÅ»ïÔÚ±¾ÖÜ»¹DDoS¹¥»÷Á˶à¸öMicrosoft·þÎñ£¬ÈçOutlookºÍSharePointµÈ¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-onedrive-down-worldwide-following-claims-of-ddos-attacks/


3¡¢È«Çò×î´óµÄÀ­Á´ÖÆÔìÉÌYKKµÄÔâµ½LockBitµÄÀÕË÷¹¥»÷


ýÌå6ÔÂ8Èճƣ¬ÈÕ±¾À­Á´¹«Ë¾YKK͸¶£¬ÆäλÓÚÃÀ¹úµÄϵͳÔÚ×î½ü¼¸ÖÜÔâµ½¹¥»÷¡£ËüÊÇÊÀ½çÉÏ×î´óµÄÀ­Á´ÖÆÔìÉÌ£¬ÄêÊÕÈëÁè¼Ý60ÒÚÃÀÔª¡£¸Ã¹«Ë¾³Æ£¬ËûÃǼ°Ê±Í£Ö¹Á˹¥»÷£¬¸Ãʼþ²¢Î´¶ÔÔËÓªºÍ·þÎñ·¢ÉúʵÖÊÐÔÓ°Ï죬ҲûÓÐÖ¤¾Ý±íÃ÷¸öÈ˺ͲÆÕþÐÅÏ¢ÒÔ¼°ÖªÊ¶²úȨÊܵ½Ó°Ïì¡£LockBitÓÚ6ÔÂ2ÈÕÔÚÆäÍøÕ¾ÉÏÁгöÁËYKK£¬²¢ÍþвҪÔÚ6ÔÂ16ÈÕ֮ǰй¶´Ó¸Ã¹«Ë¾ÇÔÈ¡µÄÊý¾Ý¡£


https://therecord.media/ykk-zipper-manufacturer-cyberattack-us-operations


4¡¢ÈÕ±¾ÖÆÒ©¹«Ë¾ÎÀ²Ä(Eisai)͸¶Æä²¿ÃÅ·þÎñÆ÷Òѱ»¼ÓÃÜ


6ÔÂ8ÈÕ±¨µÀ³Æ£¬¶«¾©µÄÖÆÒ©¹«Ë¾ÎÀ²Ä(Eisai)Åû¶ÆäÔâµ½ÁËÀÕË÷¹¥»÷£¬²¿ÃÅ·þÎñÆ÷Òѱ»¼ÓÃÜ¡£¹¥»÷·¢ÉúÔÚ6ÔÂ3ÈÕÉîÒ¹£¬ÕâÊǹ¥»÷Õß²¿Êð¼ÓÃÜÆ÷µÄ³£¼ûʱ¼ä£¬ÒòΪITÍŶÓÔÚÖÜÄ©ÈËÊÖ²»×㣬ÎÞ·¨ÓÐЧӦ¶ÔÒì³£Çé¿ö¡£¸Ã¹«Ë¾ÌåÏÖ£¬ÆäÔÚ¹úÄÚÍâµÄ¼¸¸öϵͳ£¬°üÂÞÎïÁ÷ϵͳ£¬Òѱ»ÆÈÏÂÏß²¢Í£Ö¹·þÎñ£¬Ö±µ½ÊÓ²ì½áÊø¡£µ«ÊÇ£¬¹«Ë¾ÍøÕ¾ºÍÓʼþͨÐÅÈÔÈ»¿ÉÓá£Ä¿Ç°»¹Ã»ÓÐÀÕË÷ÍÅ»ïÉù³Æ¶Ô´Ë´Î¹¥»÷ÂôÁ¦¡£


https://therecord.media/eisai-japan-pharmaceutical-giant-ransomware


5¡¢Ð¶ñÒâÈí¼þFractureiserÖ÷ÒªÕë¶ÔMinecraftµÄÍæ¼Ò


6ÔÂ7ÈÕ£¬Ñо¿ÈËÔ±Åû¶ÁËеĶñÒâÈí¼þFractureiserÕë¶ÔMinecraftµÄÍæ¼ÒµÄ¹¥»÷»î¶¯¡£¹¥»÷ʼÓÚ¼¸¸öCurseForgeºÍBukkitÕÊ»§±»ÈëÇÖ£¬²¢±»ÓÃÀ´Ïò²å¼þºÍÄ£×é×¢Èë¶ñÒâ´úÂ롣ȻºóËüÃDZ»Á÷ÐеÄmodpack½ÓÄÉ£¬ÀýÈçÏÂÔØÁ¿Áè¼Ý460ÍòµÄBetter Minecraft¡£ÊÜÓ°ÏìµÄÍæ¼Ò°üÂÞÔÚ¹ýÈ¥ÈýÖÜÄÚ´ÓCurseForgeºÍdev.bukkit.orgÏÂÔØÄ£×é»ò²å¼þµÄÈË£¬µ«Ñ¬È¾µÄˮƽ»¹Óдý³äʵÁ˽â¡£Ñо¿ÈËÔ±ÌáÐÑÍæ¼ÒÔÚÏÂÔØÄ£×éʱҪ¸ñÍâСÐÄ£¬ÒòΪÕâ¸öFractureiser»î¶¯ÈÔÔÚ½øÐÐÖС£


https://www.bleepingcomputer.com/news/security/new-fractureiser-malware-used-curseforge-minecraft-mods-to-infect-windows-linux/


6¡¢KasperskyÐû²¼2023ÄêµÚÒ»¼¾¶ÈITÍþÐ²Ì¬ÊÆµÄ³ÂËß


6ÔÂ7ÈÕ£¬KasperskyÐû²¼ÁË2023ÄêµÚÒ»¼¾¶ÈITÍþÐ²Ì¬ÊÆµÄ³ÂËß¡£³ÂËßÖ¸³ö£¬ÓÐÕë¶ÔÐԵĹ¥»÷·½Ã棬°üÂÞBlueNoroffÒýÈëÁËÈÆ¹ýMotWµÄÐÂÒªÁì¡¢Roaming MantisʵʩÁËеÄDNS changerÒÔ¼°Óë¶íÎÚ³åÍ»Ïà¹ØµÄÐÂAPT×éÖ¯BadMagic·ºÆð¡£ÔÚÆäËü¶ñÒâÈí¼þ·½Ã棬PrilexÕë¶Ô·Ç½Ó´¥Ê½ÐÅÓÿ¨½»Òס¢ºÚ¿ÍʹÓÃαÔìµÄTorä¯ÀÀÆ÷ÇÔÈ¡¼ÓÃÜ»õ±Ò¡¢ÓëChatGPTÏà¹ØµÄÍþвÔö¼ÓÒÔ¼°Í¨¹ýËÑË÷ÒýÇæ½øÐжñÒâ¹ã¸æ»î¶¯µÈ¡£


https://securelist.com/it-threat-evolution-q1-2023/109838/