Õë¶Ô·¨ÓïÇøµÄÍþвÍÅ»ïCryptosLabsÒÑ»ñÀûÔ¼4.8ÒÚÅ·Ôª

Ðû²¼Ê±¼ä 2023-06-30

1¡¢Õë¶Ô·¨ÓïÇøµÄÍþвÍÅ»ïCryptosLabsÒÑ»ñÀûÔ¼4.8ÒÚÅ·Ôª


¾Ý6ÔÂ28ÈÕ±¨µÀ£¬Group-IBÅû¶Á˹ØÓÚÍþвÍÅ»ïCryptosLabsÔË×÷·½Ê½µÄÏêϸÐÅÏ¢¡£Ëü×Ô2018Äê4ÔÂÒÔÀ´£¬Ö÷ÒªÕë¶Ô·¨¹ú¡¢±ÈÀûʱºÍ¬ɭ±¤µÄ·¨ÓïÇøÓû§£¬Ô¤¼ÆÒÑ»ñµÃ4.8ÒÚÅ·ÔªµÄ·Ç·¨ÀûÈ󡣸ÃÍÅ»ïµÄ´ó¹æÄ£ÆÛÕ©»î¶¯É漰ð³ä40¼ÒÖªÃûÒøÐС¢½ðÈڿƼ¼¹«Ë¾¡¢×ʲú¹ÜÀí¹«Ë¾ºÍ¼ÓÃÜ»õ±Òƽ̨£¬½¨Á¢Á˺á¿ç350¶à¸öÓòÃûµÄ»ù´¡ÉèÊ©£¬ÍйÜÔÚ80¶ą̀·þÎñÆ÷ÉÏ¡£Æä»î¶¯µÄÒ»¸öÁÁµãÊÇʹÓÃ×Ô½ç˵թƭ¹¤¾ß°ü£¬¿ÉÔËÐС¢¹ÜÀíºÍ¹æÄ £»¯Í¶×ÊÕ©Æ­»î¶¯¡£


https://thehackernews.com/2023/06/cryptoslabs-scam-ring-targets-french.html


2¡¢Ñо¿ÈËÔ±ÑÝʾÈçºÎͨ¹ýµç´Å¹ÊÕÏ×¢Èë¹¥»÷À´½Ó¹ÜÎÞÈË»ú


ýÌå6ÔÂ28Èճƣ¬IOActive·¢ÏÖÁËͨ¹ýµç´Å¹ÊÕÏ×¢Èë(EMFI)¹¥»÷À´½Ó¹ÜÎÞÈË»úµÄÒªÁì¡£Ëæ×ÅÎÞÈË»úµÄʹÓò»Í£Ôö³¤£¬Ñо¿ÈËԱרעÓÚʹÓ÷ÇÇÖÈëÐÔ¼¼ÊõÔÚÎÞÈË»úÉÏʵÏÖ´úÂëÖ´ÐС£¸Ã¹«Ë¾·¢ÏÖ£¬Í¨¹ýÔڹ̼þ¸üÐÂÆÚ¼äµÄÊÊÆäʱ¼ä×¢ÈëÌØ¶¨µÄµç´Å¹ÊÕÏÀ´ÈëÇÖÄ¿±êÉ豸ÊÇ¿ÉÐеÄ¡£¹¥»÷Õß¿ÉÒÔͨ¹ý´ËÀ๥»÷ÔÚÖ÷´¦ÖÃÆ÷ÉÏÖ´ÐдúÂ룬²¢»ñµÃ¶ÔʵÏÖÎÞÈË»úºËÐĹ¦Ð§µÄAndroid²Ù×÷ϵͳµÄ·ÃÎÊ¡£ÖÁÓÚ»º½â´ëÊ©£¬Ñо¿ÈËÔ±½¨ÒéÎÞÈË»ú¿ª·¢ÈËÔ±½áºÏ»ùÓÚÓ²¼þºÍÈí¼þµÄEMFI¶Ô²ß¡£


https://thehackernews.com/2023/06/alert-new-electromagnetic-attacks-on.html


3¡¢Ó¢¹úNHSÁè¼Ý100ÍòÃû»¼ÕßµÄÏêϸÐÅÏ¢ÒòÍøÂç¹¥»÷й¶


¾Ý6ÔÂ29ÈÕ±¨µÀ£¬Ó¢¹úNHSÁè¼Ý100Íò»¼ÕßµÄÏêϸÐÅÏ¢ÒÑÔÚÍøÂç¹¥»÷ÖÐй¶¡£¾ÝϤ£¬Âü³¹Ë¹ÌØ´óѧ½üÆÚÔâµ½ÀÕË÷¹¥»÷£¬Ó°ÏìÁËNHS»¼ÕßÊý¾Ý¿â£¬Éæ¼°200¼ÒÒ½Ôº110ÍòÃû»¼ÕßµÄÐÅÏ¢£¬ÕâЩÐÅÏ¢ÊÇÓɸôóѧ³öÓÚÑо¿Ä¿µÄ¶øÊÕ¼¯µÄ¡£Æ¾¾Ý¸Ã´óѧ½øÐеÄÒ»ÏîÊӲ죬·ÖÎö±íÃ÷ԼĪ250 GBµÄÊý¾Ý±»·ÃÎÊ¡£Âü³¹Ë¹ÌØ´óѧ·¢ÑÔÈ˾ܾø¾ÍNHSÊý¾Ý·¢±íÆÀÂÛ£¬µ«Ã»ÓзñÈÏÕâÒ»Êý¾Ýй¶Ê¼þ¡£


https://www.independent.co.uk/news/health/nhs-patient-data-attack-b2364202.html


4¡¢ÃÀ¹ú¹ú¼ÒѧÉúÐÅÏ¢½»»»ËùÔâµ½ClopµÄ¹¥»÷»òÒѽ»Êê½ð


¾ÝýÌå6ÔÂ28ÈÕ±¨µÀ£¬ÃÀ¹ú¹ú¼ÒѧÉúÐÅÏ¢½»»»ËùÔâµ½ÁËClopÀûÓÃMOVEit©¶´µÄ¹¥»÷¡£¸Ã»ú¹¹Æù½ñΪֹµÄÉùÃ÷²¢Î´±íÃ÷ËûÃÇÊÇ·ñÂú×ãÁËÊê½ðÒªÇ󣬵«¾ÝÁ˽⣬ËûÃǵÄÃû×ÖÒÑ´ÓClopµÄÍøÕ¾ÉÏɾ³ý£¬Õâͨ³£±íÃ÷×éÖ¯ÒѾ­½»ÁËÊê½ð¡£½»»»ËùÌåÏÖ£¬ÊÓ²ìÈÔÔÚ½øÐÐÖУ¬¹¥»÷Õß¿ÉÄÜ»ñÈ¡ÁËͨ¹ýMOVEit Transfer¹¤¾ß´«ÊäµÄ²¿ÃÅÎļþ£¬ÆäÖаüÂÞ¸öÈËÊý¾ÝµÄÎļþ£¬µ«ÊDz¢Î´Ó°Ïì¸Ã×é֯ϵͳµÄÊý¾Ý¡£


https://www.databreaches.net/national-student-clearinghouse-notifies-schools-of-moveit-breach/


5¡¢CybleÐû²¼¹ØÓÚLinux°æ±¾AkiraÀÕË÷Èí¼þµÄ·ÖÎö³ÂËß


6ÔÂ28ÈÕ£¬CybleÐû²¼Á˹ØÓÚLinux°æ±¾AkiraÀÕË÷Èí¼þµÄ·ÖÎö³ÂËß¡£AkiraÊ״ηºÆðÓÚ2023Äê3Ô£¬Õë¶Ô¸÷¸öÁìÓòµÄWindowsϵͳ¡£½üÆÚ£¬Ñо¿ÈËÔ±·¢ÏÖÁËAkiraµÄLinux±äÌ壬Ö÷ÒªÕë¶ÔVMware ESXiÐéÄâ»ú¡£Linux¼ÓÃÜ·¨Ê½°üÂÞ¹«¹²RSA¼ÓÃÜÃÜÔ¿£¬²¢ÀûÓöàÖÖ¶Ô³ÆÃÜÔ¿Ëã·¨½øÐÐÎļþ¼ÓÃÜ£¬ÀýÈçAES¡¢CAMELLIA¡¢IDEA-CBºÍDES¡£ÓëÆäËüVMware ESXi¼ÓÃÜ·¨Ê½²îÒ죬AkiraµÄ¼ÓÃÜ·¨Ê½²»°üÂÞÐí¶à¸ß¼¶¹¦Ð§£¬ÀýÈçÔÚʹÓÃesxcliÃüÁî¼ÓÃÜÎļþ֮ǰ×Ô¶¯¹Ø±ÕÐéÄâ»ú¡£


https://blog.cyble.com/2023/06/28/akira-ransomware-extends-reach-to-linux-platform/


6¡¢KasperskyÐû²¼AndarielÍŻPÆäÐÂEarlyRatµÄ³ÂËß


KasperskyÔÚ6ÔÂ28ÈÕÐû²¼Á˹ØÓÚAndarielÍŻPÆäжñÒâÈí¼þEarlyRatµÄ³ÂËß¡£AndarielÊdz¯ÏÊLazarusµÄ×Ó×éÖ¯£¬Ö÷ҪʹÓÃDTrackÄ£¿é»¯ºóÃÅ´Ó±»Ñ¬È¾µÄϵͳÊÕ¼¯ÐÅÏ¢¡£EarlyRATÆô¶¯ºó»áÊÕ¼¯ÏµÍ³ÐÅÏ¢²¢Í¨¹ýPOSTÇëÇ󽫯䷢Ë͵½C2£¬ÆäµÚ¶þ¸öÖ÷Òª¹¦Ð§ÊÇÔÚÄ¿±êϵͳÉÏÖ´ÐÐÃüÁî¡£Ñо¿ÈËÔ±ÌåÏÖ£¬¼øÓÚ´íÎóºÍ´í±ð×ÖµÄÊýÁ¿£¬Ëù¼ì²âµ½µÄEarlyRAT»î¶¯ËƺõÊÇÓÉȱ·¦¾­ÑéµÄÔËÓªÈËÔ±ÊÖ¶¯Ö´ÐеÄ¡£


https://securelist.com/lazarus-andariel-mistakes-and-easyrat/110119/