LockBit³ÆÒÑÈëÇÖXeinadin²¢ÍþвÐû²¼1.5TB±»µÁÊý¾Ý

Ðû²¼Ê±¼ä 2023-12-25

1¡¢LockBit³ÆÒÑÈëÇÖXeinadin²¢ÍþвÐû²¼1.5TB±»µÁÊý¾Ý


¾ÝýÌå12ÔÂ23ÈÕ±¨µÀ £¬LockBitÉù³Æ¶Ô»á¼ÆÊ¦ÊÂÎñËùXeinadinÔâµ½µÄ¹¥»÷ÂôÁ¦ £¬²¢ÍþвҪÅû¶±»µÁÊý¾Ý¡£¸ÃÍÅ»ïÌåÏÖÊÕ¼¯ÁË1.5 TBµÄXeinadin¿Í»§Êý¾Ý £¬°üÂÞËùÓÐÄÚ²¿Êý¾Ý¿â¡¢¿Í»§²ÆÕþÐÅÏ¢¡¢»¤ÕÕ¡¢ÕË»§Óà¶î¡¢¿Í»§¸öÈËÕË»§·ÃÎÊȨÏ޺Ϳͻ§Ö´·¨ÐÅÏ¢µÈ¡£¸ÃÍÅ»ïÍþв £¬Èç¹ûXeinadin²»ÔÚ12ÔÂ25ÈÕµÄ֮ǰÁªÏµËûÃÇ £¬ËûÃǽ«Ðû²¼ÕâЩÊý¾Ý¡£LockBit»¹Ðû²¼ÁË3ÕŽØÍ¼ £¬ÏÔʾÁËÊý¾Ý¿â·½°¸ºÍ±»ÈëÇÖ»ù´¡ÉèÊ©µÄ´æ´¢½á¹¹¡£


https://securityaffairs.com/156303/cyber-crime/lockbit-gang-xeinadin.html


2¡¢Mint Mobile͸¶¿Í»§ÐÅϢй¶¿ÉÄܵ¼ÖÂSIM½»»»¹¥»÷


¾Ý12ÔÂ22ÈÕ±¨µÀ £¬Òƶ¯ÐéÄâÍøÂçÔËÓªÉÌ(MVNO)Mint MobileÅû¶ÁËÒ»Æð¿Í»§Êý¾Ýй¶Ê¼þ¡£¸Ã¹«Ë¾ÓÚ22ÈÕ¿ªÊ¼Í¨¹ý±êÌâΪ¡°ÓйØÄúÕÊ»§µÄÖØÒªÐÅÏ¢¡±µÄÓʼþ֪ͨ¿Í»§ £¬³ÆºÚ¿Í»ñÈ¡Á˿ͻ§ÐÅÏ¢¡£Ð¹Â¶ÐÅÏ¢°üÂÞÐÕÃû¡¢µç»°ºÅÂë¡¢ÓʼþµØÖ·ÒÔ¼°SIMÐòÁкźÍIMEIºÅµÈ £¬ÕâЩÐÅÏ¢×ãÒÔ±»¹¥»÷ÕßÓÃÀ´ÕßÖ´ÐÐSIM½»»»¹¥»÷¡£ËäÈ»MintÉÐδÅû¶Óйع¥»÷ÏêϸÐÅÏ¢ £¬µ«7Ô·ÝÓгÂËß³Æ £¬¹¥»÷ÕßÊÔͼÔÚºÚ¿ÍÂÛ̳ÉϳöÊÛMint MobileºÍUltra MobileµÄÊý¾Ý¡£


https://www.bleepingcomputer.com/news/security/mint-mobile-discloses-new-data-breach-exposing-customer-data/


3¡¢AkiraÌåÏÖÒѹ¥»÷²¢ÇÔÈ¡ÈÕ²ú°Ä´óÀûÑÇ·Ö¹«Ë¾100GBÎļþ


ýÌå12ÔÂ22ÈÕ³Æ £¬AkiraÌåÏÖÒѹ¥»÷Æû³µÖÆÔìÉÌÈÕ²úÆû³µ°Ä´óÀûÑÇ·Ö¹«Ë¾Nissan Australia £¬²¢´ÓÆäϵͳÖÐÇÔÈ¡ÁËÔ¼100GBµÄÎļþ¡£¸Ã¹«Ë¾¾Ü¾øÖ§¸¶Êê½ð £¬ÀÕË÷ÍÅ»ï³ÆÒªÐ¹Â¶¾Ý±»µÁÎļþ £¬°üÂÞÏîÄ¿Êý¾Ý¡¢¿Í»§ºÍºÏ×÷»ï°éµÄÐÅÏ¢ÒÔ¼°±£ÃÜЭÒéµÈ¡£ËäÈ»¸Ã¹«Ë¾ÈÔδ¶Ô±¾Ô³õÅû¶µÄ¹¥»÷¹éÒò £¬µ«¹¥»÷ÕßȷʵÓÚ22ÈÕÔÚÆäÍøÕ¾ÉÏÌí¼ÓÁËеĸüР£¬Í¸Â¶ÒÑÈëÇÖÁËÆäλÓÚ°Ä´óÀûÑǺÍÐÂÎ÷À¼µÄ²¿ÃÅϵͳ¡£ÈÕ²úÌåÏÖ £¬ÈÔÔÚÊÓ²ì¸ÃʼþµÄÓ°ÏìÒÔ¼°¸öÈËÐÅÏ¢ÊÇ·ñÒѱ»·ÃÎÊ £¬²¢ÔÚŬÁ¦»Ö¸´ÊÜÓ°Ïìϵͳ¡£


https://www.bleepingcomputer.com/news/security/nissan-australia-cyberattack-claimed-by-akira-ransomware-gang/


4¡¢Î¢Èí·¢ÏÖAPT33ÀûÓÃеÄFalseFont¹¥»÷¹ú·À³Ð°üÉÌ


12ÔÂ22ÈÕ±¨µÀ³Æ £¬Î¢Èí·¢ÏÖ £¬ÒÁÀʺڿÍÍÅ»ïAPT33£¨Ò²³ÆPeach Sandstorm£©ÕýÔÚÀûÓÃ×î½ü·¢ÏֵĶñÒâÈí¼þFalseFont¹¥»÷È«ÇòµÄ¹ú·À³Ð°üÉÌ¡£FalseFontÊÇÒ»¸ö×Ô½ç˵ºóÃÅ £¬¾ßÓй㷺µÄ¹¦Ð§ £¬¿ÉÔ¶³Ì·ÃÎʱ»Ñ¬È¾µÄϵͳ¡¢Æô¶¯ÆäËüÎļþ²¢½«ÐÅÏ¢·¢Ë͵½ÆäC2·þÎñÆ÷ £¬ÓÚ11Ô³õÊ״α»ÔÚÒ°·¢ÏÖ¡£Î¢Èí»¹³Æ £¬FalseFontµÄ¿ª·¢ºÍʹÓÃÓëÒÔǰÊӲ쵽µÄPeach Sandstorm»î¶¯Ò»Ö £¬±íÃ÷Peach SandstormÕýÔÚ¼ÌÐø¸ïÐÂËûÃǵļäµý¼¼Êõ¡£


https://thehackernews.com/2023/12/microsoft-warns-of-new-falsefont.html


5¡¢BidenCashÔÚºÚ¿ÍÂÛ̳¹ûÈ»190ÍòÕÅÐÅÓÿ¨µÄÐÅÏ¢


¾Ý12ÔÂ22ÈÕ±¨µÀ £¬BidenCashÔÚºÚ¿ÍÂÛ̳¹ûÈ»190ÍòÕÅÐÅÓÿ¨µÄÐÅÏ¢¡£BidenCashÓÚ2022Äê³õÍÆ³ö £¬×÷Ϊ°µÍøºÍÃ÷ÍøµÄÐÂÊг¡ £¬ÏúÊÛͨ¹ýµçÉÌÍøÕ¾ÉϵĵöÓã»òÇÔÈ¡·¨Ê½ÇÔÈ¡µÄÐÅÓÿ¨ºÍ½è¼Ç¿¨¡£×îÐÂй¶µÄÐÅÏ¢°üÂÞ´¿Îı¾ÐÎʽµÄÍêÕû¿¨ºÅ¡¢ÓÐЧÆÚºÍCVVºÅÂë £¬µ«Óë¸ÃÍøÕ¾Ö®Ç°µÄй¶²îÒì £¬Ëü²»°üÂÞ³Ö¿¨È˵ÄÐÕÃû»òÓʼþµØÖ·¡£Ð¹Â¶µÄÒøÐп¨ÏêϸÐÅÏ¢×ÜÊýΪ1912969ÕÅ £¬µ«É¾³ýÖØ¸´Êý¾Ýºó £¬Îª1169843ÕÅ¡£


https://www.hackread.com/bidencash-market-leaks-credit-card-details/


6¡¢Deep InstinctÅû¶UAC-0099Õë¶ÔÎÚ¿ËÀ¼µÄ¹¥»÷»î¶¯


Deep InstinctÓÚ12ÔÂ22ÈÕÅû¶ÁËUAC-0099Õë¶ÔÎÚ¿ËÀ¼µÄ¹¥»÷»î¶¯¡£¹¥»÷Á´ÀûÓÃÁ˰üÂÞHTA¡¢RARºÍLNKÎļþ¸½¼þµÄµöÓãÓʼþ·Ö·¢LONEPAGE £¬ÕâÊÇÒ»ÖÖVBS¶ñÒâÈí¼þ £¬Äܹ»ÓëC2·þÎñÆ÷ͨÐÅ £¬¼ìË÷¼üÅ̼Ǽ·¨Ê½¡¢ÇÔÈ¡·¨Ê½ºÍÆÁÄ»½ØÍ¼¶ñÒâÈí¼þµÈÆäËüpayload¡£Ê¹ÓÃHTA¸½¼þÖ»ÊÇ3ÖÖ²îÒìѬȾÁ´ÖеÄÒ»ÖÖ £¬ÁíÍâÁ½ÖÖѬȾÁ´ÀûÓõÄÊÇSFXѹËõÎļþºÍZIPÎļþ¡£ZIPÎļþÀûÓÃÁËWinRAR©¶´£¨CVE-2023-38831£©À´Á÷´«LONEPAGE¡£


https://www.deepinstinct.com/blog/threat-actor-uac-0099-continues-to-target-ukraine