ºÚ¿ÍÀÄÓà Amazon ºÍ GitHub ²¿Êð»ùÓÚ Java µÄ¶ñÒâÈí¼þ

Ðû²¼Ê±¼ä 2024-03-15
1. ºÚ¿ÍÀÄÓà Amazon ºÍ GitHub ²¿Êð»ùÓÚ Java µÄ¶ñÒâÈí¼þ


3ÔÂ14ÈÕ £¬ºÚ¿ÍÃé×¼ÕâЩƽ̨ÊÇÒòΪËüÃÇÍйÜ×ÅÃû¹óµÄ×ÊÔ´ºÍÊý¾Ý¡£³öÓÚ¾­¼ÃÀûÒæ»òÆäËû²»Á¼¶¯»ú £¬ºÚ¿ÍÈëÇÖÕâЩƽ̨ÇÔÈ¡Êý¾Ý¡¢²¿Êð¶ñÒâÈí¼þ»òÌᳫÆäËûÍøÂç¹¥»÷¡£FortiGuard ʵÑéÊÒµÄÍøÂçÄþ¾²·ÖÎöʦ·¢ÏÖ £¬ºÚ¿Í»ý¼«ÀÄÓà Amazon ºÍ GitHub À´²¿Êð»ùÓÚ Java µÄ¶ñÒâÈí¼þ¡£FortiGuard ʵÑéÊÒ·¢ÏÖÁËÒ»¸öÍøÂçµöÓã»î¶¯ £¬ÓÕÆ­Óû§ÏÂÔØ¶ñÒâ Java ÏÂÔØÆ÷ £¬ÆäÄ¿µÄÊÇÁ÷´«Ð嵀 VCURMS ºÍ STRRAT RAT¡£ÈËÃÇ·¢ÏÖ £¬ÍйÜÔÚ AWS ºÍ GitHub ÉϵĶñÒâÈí¼þÒÑͨ¹ýÉÌÒµ± £»¤·¨Ê½½øÐÐÁË»ìÏý¡£¹¥»÷Õßͨ¹ýÀûÓÃÊܺ¦Õß¶Ë×¢ÖØÒþ˽µÄ Proton Mail ·þÎñ £¬Ê¹Óõç×ÓÓʼþ½øÐÐ C2¡£ÍøÂçµöÓãµç×ÓÓʼþÒýÓÕÊܺ¦Õßµ¥»÷°´Å¥ £¬ÏÂÔØ´øÓÐÄ£ºý×Ö·û´®µÄ¶ñÒâ AWS ÍÐ¹Ü JAR ÏÂÔØ·¨Ê½¡£ÏÂÔØÆ÷»ñÈ¡²¢ÔËÐÐÁíÍâÁ½¸ö JAR £¬ÕâЩ JAR ʹÓÃÉÌÒµ¡°Sense Shield Virbox Protector¡±»ìÏýÆ÷ £¬²¢¸½ÓÐÊÔÓÃÆÚµ½ÆÚ֪ͨ¡£ 


https://gbhackers.com/hackers-abuse-amazon-github/


2. ºÚ¿ÍÀûÓà Windows SmartScreen ©¶´Í¶·Å DarkGate 


3ÔÂ13ÈÕ £¬DarkGate ¶ñÒâÈí¼þ²Ù×÷ÌᳫµÄÐÂÒ»²¨¹¥»÷ÀûÓÃÏÖÒÑÐÞ¸´µÄ Windows Defender SmartScreen ©¶´À´ÈƹýÄþ¾²¼ì²é²¢×Ô¶¯°²×°Ðé¼ÙÈí¼þ°²×°·¨Ê½¡£SmartScreen ÊÇÒ»Ïî Windows Äþ¾²¹¦Ð§ £¬µ±Óû§ÊµÑéÔËÐÐ´Ó Internet ÏÂÔØµÄÎÞ·¨Ê¶±ð»ò¿ÉÒÉÎļþʱ £¬Ëü»áÏÔʾ¾¯¸æ¡£±»×·×ÙΪ CVE-2024-21412 µÄȱÏÝÊÇ Windows Defender SmartScreen ȱÏÝ £¬ÔÊÐíÌØÖÆµÄÏÂÔØÎļþÈÆ¹ýÕâЩÄþ¾²¾¯¸æ¡£¹¥»÷Õß¿ÉÒÔͨ¹ý´´½¨Ö¸ÏòÔ¶³Ì SMB ¹²ÏíÉÏÍйܵÄÁíÒ»¸ö .url ÎļþµÄ Windows Internet ¿ì½Ý·½Ê½£¨.url Îļþ£©À´ÀûÓøÃȱÏÝ £¬Õ⽫µ¼ÖÂ×îÖÕλÖõÄÎļþ×Ô¶¯Ö´ÐС£Î¢ÈíÓÚ 2 ÔÂÖÐÑ®ÐÞ¸´Á˸é¶´ £¬Ç÷ÊÆ¿Æ¼¼Í¸Â¶ £¬³öÓÚ¾­¼Ã¶¯»úµÄ Water Hydra ºÚ¿Í×éÖ¯´ËÇ°Ôø ÀûÓøÃ©¶´×÷ΪÁãÈÕ©¶´  £¬½«Æä DarkMe ¶ñÒâÈí¼þÖ²Èë½»Ò×ÕßµÄϵͳÖС£


https://www.bleepingcomputer.com/news/security/hackers-exploit-windows-smartscreen-flaw-to-drop-darkgate-malware/#google_vignette


3. HHS ½«ÊÓ²ì UnitedHealth ºÍÕë¶Ô Change Healthcare µÄÀÕË÷¹¥»÷


3ÔÂ14ÈÕ £¬ÃÀ¹úÎÀÉúÓ빫¹²·þÎñ²¿ (HHS) ÕýÔÚ¶ÔÕë¶Ô Change Healthcare µÄÀÕË÷Èí¼þ¹¥»÷Õ¹¿ªÊÓ²ì £¬´Ëǰ¸Ã¹ú¸÷µØÒ½Ôº¡¢ÕïËùºÍÒ©·¿µÄÒ½ÁƱ£½¡ºÍ¼Æ·ÑÒµÎñÒÑÔâÊÜÊýÖܵÄ×ÌÈÅ¡£¸Ã²¿ÃŵÄÃñȨ°ì¹«ÊÒ (OCR)ÖÜÈý·¢±íÁËÒ»·âÐÅ £¬Ðû²¼Õ¹¿ªÊÓ²ì £¬Ö÷ÈÎ Melanie Fontes Rainer дµÀ £¬¡°¼øÓÚÕâ´ÎÍøÂç¹¥»÷µÄ¹æÄ£¿ÕǰÑÏÖØ £¬¶øÇÒΪÁË»¼Õߺͽ¡¿µµÄ×î´óÀûÒæ £¬ËûÃÇÐèÒªÊÓ²ìÕâÒ»Çé¿ö¡±»¤ÀíÌṩÕß¡£¡± °×¹¬¹ÙÔ±¡¢Ò½ÁÆÐÐÒµ´ú±í¡¢ÃÀ¹úÎÀÉúÓ빫ÖÚ·þÎñ²¿²¿³¤Ôóά¶û¡¤±´ÈûÀ­ (Xavier Becerra) ºÍ Change Healthcare ĸ¹«Ë¾ÁªºÏ½¡¿µ¼¯ÍÅ (UnitedHealth Group) Ê×ϯִÐйٰ²µÂ³¡¤ÍþµÙ (Andrew Witty) ÕÙ¿ªÁË»áÒé £¬ÌÖÂÛ½â¾öÎ £»úÎÊÌâ¡£Fontes Rainer ÌåÏÖ £¬ÊÓ²ì½«ÖØµã¹Ø×¢Êܱ £»¤µÄ½¡¿µÐÅÏ¢ÊÇ·ñÊܵ½Ë𺦠£¬ÒÔ¼° Change Healthcare ºÍ UHG ÊÇ·ñ×ñÊØ½¡¿µ±£ÏÕÁ÷ͨºÍÔðÈη¨°¸ (HIPAA) ¹æÔò¡£


https://therecord.media/hhs-investigating-unitedhealth-after-ransomware-attack


4. PixPirate Android ¶ñÒâÈí¼þʹÓÃмÆÄ±Òþ²ØÔÚÊÖ»úÉÏ


3ÔÂ13ÈÕ £¬ÊÊÓÃÓÚ Android µÄ×îа汾µÄ PixPirate ÒøÐÐľÂí½ÓÄÉÁËÒ»ÖÖÐÂÒªÁì £¬¿ÉÒÔÒþ²ØÔÚÊÖ»úÉÏ £¬Í¬Ê±±£³Ö»î¶¯×´Ì¬ £¬¼´Ê¹ÆäµÎ¹ÜÓ¦Ó÷¨Ê½Òѱ»É¾³ý¡£PixPirate ÊÇÒ»ÖÖÐ嵀 Android ¶ñÒâÈí¼þ £¬ÓÉ Cleafy TIR ÍŶÓÉϸöÔÂÊ״μǼ £¬Õë¶ÔÀ­¶¡ÃÀÖÞÒøÐС£¾¡¹Ü Cleafy Ö¸³öÊÇÒ»¸öµ¥¶ÀµÄÏÂÔØÓ¦Ó÷¨Ê½Æô¶¯Á˸öñÒâÈí¼þ £¬µ«¸Ã³ÂËß²¢Î´ÉîÈë̽ÌÖÆä´´ÐµÄÒþ²Ø»ò³Ö¾Ã»úÖÆ £¬»òÕßÕâЩ»úÖÆÊÇ×î½ü²ÅÒýÈëµÄ¡£IBM µÄÒ»·ÝгÂËß½âÊÍ˵ £¬Óë¶ñÒâÈí¼þÊÔͼÒþ²ØÆäͼ±êµÄ³ß¶È¼ÆÄ±£¨ÔÚ Android 9 ¼°ÒÔϰ汾ÖпÉÄÜ´æÔÚÕâÖÖ¼ÆÄ±£©Ïà·´ £¬PixPirate ²»Ê¹ÓÃÆô¶¯Æ÷ͼ±ê¡£ÕâʹµÃ¶ñÒâÈí¼þÄܹ»ÔÚËùÓÐ×îÐ嵀 Android °æ±¾£¨×î¸ß°æ±¾ 14£©Öб£³ÖÒþ²Ø×´Ì¬¡£


https://www.bleepingcomputer.com/news/security/pixpirate-android-malware-uses-new-tactic-to-hide-on-phones/


5. ChatGPT ²å¼þ©¶´¿ÉÄÜ̻¶Óû§ÕÊ»§Êý¾Ý


3ÔÂ13ÈÕ £¬API Äþ¾²¹«Ë¾ Salt Security ¶Ô ChatGPT ²å¼þ½øÐÐÁË·ÖÎö £¬·¢ÏÖÁ˶àÖÖÀàÐ͵Ä©¶´ £¬ÕâЩ©¶´¿ÉÄܱ»ÀûÓÃÀ´»ñȡDZÔÚµÄÃô¸ÐÊý¾Ý²¢½Ó¹ÜµÚÈý·½ÍøÕ¾ÉϵÄÕÊ»§¡£ChatGPT ²å¼þʹÓû§Äܹ»·ÃÎÊ×îÐÂÐÅÏ¢£¨¶ø²»ÊÇÁÄÌì»úÆ÷ÈËѵÁ·Ê±Ê¹ÓõÄÏà¶Ô½Ï¾ÉµÄÊý¾Ý£© £¬ÒÔ¼°½« ChatGPT ÓëµÚÈý·½·þÎñ¼¯³É¡£ÀýÈç £¬²å¼þ¿ÉÒÔÔÊÐíÓû§ÓëÆä GitHub ºÍ Google Drive ÕÊ»§½øÐн»»¥¡£µ«ÊÇ £¬µ±Ê¹Óòå¼þʱ £¬ChatGPT ÐèÒª»ñµÃȨÏÞ²ÅÆø½«Óû§µÄÊý¾Ý·¢Ë͵½Óë¸Ã²å¼þ¹ØÁªµÄÍøÕ¾ £¬¶øÇҸòå¼þ¿ÉÄÜÐèÒª·ÃÎÊÓëÆä½»»¥µÄ·þÎñÉϵÄÓû§ÕÊ»§¡£ 


https://www.securityweek.com/chatgpt-plugin-vulnerabilities-exposed-data-accounts/


6. Á÷ýÌ幫˾ RokuÁè¼Ý15000 ¸öÕË»§ÐÅϢй¶


3ÔÂ13ÈÕ £¬Á÷ýÌ幫˾ Roku ͸¶ £¬Áè¼Ý 15,000 ¸ö¿Í»§µÄÕÊ»§Òò²»Ïà¹ØÊý¾Ýй¶¶ø±»ÇÔÈ¡µÄµÇ¼ƾ¾ÝÔâµ½ºÚ¿Í¹¥»÷¡£RokuÔÚÏòÃåÒòÖݺͼÓÀû¸£ÄáÑÇÖÝ×ܼì²ì³¤·¢³öµÄÊý¾Ýй¶֪ͨÖÐÌåÏÖ £¬ºÚ¿ÍÔÚ´Ó 2023 Äê 12 Ô 28 ÈÕÁ¬Ðøµ½ 2024 Äê 2 Ô 21 ÈյĻÖзÃÎÊÁË 15,363 ÃûÃÀ¹ú¾ÓÃñµÄÕË»§¡£ÕâЩ¹¥»÷Ö®ËùÒÔÓÐЧ £¬ÊÇÒòΪһЩ Roku ÕÊ»§ËùÓÐÕß´íÎóµØÔÚ Roku ÉÏʹÓÃÁËÓë¶à¸öÆäËûÍøÕ¾ÏàͬµÄÃÜÂë¡£ÕâΪÄÇÐ©Ôø¾­½Ó´¥¹ý¹ýÈ¥Êý¾Ýй¶µÄÈËÌṩÁËÒ»ÖÖ¼òµ¥µÄÒªÁìÀ´Í»Èë Roku ÕÊ»§²¢Ëø¶¨ÕæÕýµÄÓû§¡£Roku Éù³Æ £¬·ÃÎÊÊÜÓ°ÏìµÄ Roku ÕÊ»§²»ÔÊÐíºÚ¿Í·ÃÎÊÉç»áÄþ¾²ºÅÂ롢ȫ¶î¸¶¿îÕʺš¢³öÉúÈÕÆÚ»òÆäËûÀàËÆµÄÃô¸Ð¸öÈËÐÅÏ¢¡£


https://www.bitdefender.com/blog/hotforsecurity/hackers-target-roku-15-000-accounts-compromised-in-data-breach/