NitroRansomwareÒªÇóʹÓÃDiscord NitroÀñÎïÖ§¸¶Êê½ð £» £»£»£»£»£»£» £»ÃÀ¹úÖÆ²Ã28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜÇ®±ÒµØµã

Ðû²¼Ê±¼ä 2021-04-20

1.NitroRansomwareÒªÇóʹÓÃDiscord NitroÀñÎïÖ§¸¶Êê½ð


1.jpg


ÃûΪNitroRansomwareµÄÐÂÀÕË÷Èí¼þÒªÇóÊܺ¦ÕßʹÓÃDiscord NitroÀñÎï´úÂë×÷ΪÊê½ð¡£¡£¡£¸ÃÀÕË÷Èí¼þαװ³É¿ÉÒÔÌìÉúÃâ·ÑNitroÀñÎï´úÂëµÄÓ¦Ó㬣¬£¬£¬£¬»á¼ÓÃÜÊܺ¦ÕßÎļþ²¢Ìí¼Ó.givemenitroÀ©Õ¹Ãû£¬£¬£¬£¬£¬È»ºó½«Æä×ÀÃæ¸ÄΪÉúÆøµÄDiscord±ê¼Ç¡£¡£¡£Ö®ºó£¬£¬£¬£¬£¬ÆäÒªÇóÊܺ¦ÕßÔÚÈý¸öСʱÄÚÌṩÃâ·ÑµÄNitroÀñÎï´úÂ룬£¬£¬£¬£¬²»È»½«É¾³ýÊܺ¦ÕߵļÓÃÜÎļþ¡£¡£¡£DiscordµÄ¸½¼Ó³ÌÐòNitroÐèÿÔÂÆÆ·Ñ9.9ÃÀÔª¶©ÔÄ£¬£¬£¬£¬£¬¹ºÖÃʱ¿ÉÒÔ×ÔÓÃÒ²¿ÉÒÔ×÷ΪÀñÎïÔùÓèËûÈË¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/discord-nitro-gift-codes-now-demanded-as-ransomware-payments/


2.ÃÀ¹úÖÆ²Ã28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜÇ®±ÒµØµã


2.jpg


ÃÀ¹úÕþ¸®ÔÚ±¾ÖÜÖÆ²ÃÁË28¸ö¼ÓÃÜÇ®±ÒµØµã£¬£¬£¬£¬£¬¾Ý³ÆÕâЩµØµãÓëÉæ¼°¶íÂÞË¹ÍøÂç¹¥»÷»ò×ÌÈÅÑ¡¾Ù»î¶¯µÄ×éÖ¯ºÍСÎÒ˽¼ÒÓйء£¡£¡£ÃÀ¹úÕþ¸®»¹ÌåÏÖ£¬£¬£¬£¬£¬ÕâЩ»î¶¯ÊÇÓɶíÂÞ˹Áª°îÇå¾²¾Ö£¨FSB£©ºÍ¶íÂÞ˹Ö÷ÒªÇ鱨¾Ö£¨GRU£©¿ªÕ¹µÄ£¬£¬£¬£¬£¬²¢ÇÒÒѾ­»ñµÃÁËÁù¼ÒÓë¶íÂÞ˹ÓÐÏàÖúµÄ¹«Ë¾µÄ×ÊÖú¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬ÃûΪSESµÄ°Í»ù˹̹¹«Ë¾Ïò»¥ÁªÍøÑо¿»ú¹¹(IRA)ÌṩÐéαÉí·ÝÀ´ÌÓ±ÜÃÀ¹úµÄÖÆ²Ã£¬£¬£¬£¬£¬Æä¼ÓÃÜÇ®±ÒµØµãÒÑͨ¹ý26900±ÊÉúÒâÊÕµ½Á˼ÛÖµÁè¼Ý250ÍòÃÀÔªµÄÊý×ÖÇ®±Ò¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-sanctions-cryptocurrency-addresses-linked-to-russian-cyberactivities/


3.FireEyeµÄÍŶÓÑÝʾÔõÑùÆÆ½âÓ¦Óò¢Ð®ÖÆÖÇÄܵç±í


3.png


FireEyeµÄMandiantÍŶÓÑÝʾÁËÔõÑùÉøÍ¸µ½±±ÃÀµÄ¹«ÓÃÊÂÒµÍøÂç²¢ÈëÇÖÆä¹¤Òµ¿ØÖÆÏµÍ³£¬£¬£¬£¬£¬À´Ð®ÖÆÆäÖÇÄܵç±í¡£¡£¡£ÔÚ¹¥»÷µÄµÚÒ»½×¶Î£¬£¬£¬£¬£¬MandiantÍŶӽÓÄÉÁËTEMP.VelesÔÚTRITON¹¥»÷ʱ´úʹÓõÄÊÖÒÕÀ´ÆÆËðOTÍøÂç¡£¡£¡£ÊµÏÖÁ˶ÔÊÂÇéÕ¾µÄ¿ØÖƺóʹÓÿªÔ´¹¥»÷ÐÔÇå¾²¹¤¾ß£¨OST£©À´»ñµÃÓòÖÎÀíԱȨÏÞ£¬£¬£¬£¬£¬×îºó·¢³ö¶Ï¿ªÖÇÄܵç±íµÄÏÂÁî¡£¡£¡£¶àÄêÀ´£¬£¬£¬£¬£¬È«Çò¹¤Òµ×é֯ʹÓõÄICS/SCADAϵͳÊܵ½µÄ¹¥»÷ÊýĿѸËÙÔöÌí£¬£¬£¬£¬£¬ÆäÖÐ×îÑÏÖØµÄÊÇ2015ÄêÊǶÔÎÚ¿ËÀ¼µçÍøµÄ¹¥»÷ºÍ2017ÄêTriton¶ÔÉ³ÌØÊ¯»¯³§µÄ¹¥»÷¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/117001/ics-scada/ot-network-hack-smart-meters.html


4.°ÍÎ÷¹ú¼ÒͼÊé¹ÝÁ¬ÔâÁ½´ÎÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬Êý¾Ýй¶


4.jpg


°ÍÎ÷¹ú¼ÒͼÊé¹ÝÁ¬ÔâÁ½´ÎÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬²¿·ÖÊý¾Ýй¶¡£¡£¡£µÚÒ»´Î¹¥»÷±¬·¢ÔÚÖÜÈÕ£¨4ÔÂ11ÈÕ£©£¬£¬£¬£¬£¬°ÍÎ÷¹ú¼ÒͼÊé¹ÝÔÚ·¢Ã÷¹¥»÷ºóÁ¬Ã¦¹Ø±ÕÁËЧÀÍÆ÷£¬£¬£¬£¬£¬ÒÔ±ÜÃâ¶ñÒâÈí¼þµÄÈö²¥ºÍÐµĹ¥»÷¡£¡£¡£¿ÉÊÇ£¬£¬£¬£¬£¬ÉÏÖܶþ£¨4ÔÂ13ÈÕ£©¸ÃÍøÕ¾Ôٴα»¼¤»î²¢Ôâµ½Á˵ڶþ´Î¹¥»÷£¬£¬£¬£¬£¬²¢±»¼û¸æ²¿·ÖÊý¾ÝÒѱ»ÇÔÈ¡¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬¸ÃͼÊé¹ÝÒѽ«´ËÊÂ֪ͨÕþ¸®×éÖ¯£¬£¬£¬£¬£¬²¢ÁªºÏÇå¾²°ì¹«ÊÒ¶Ô´ËÊÂÕö¿ªÁËÊӲ졣¡£¡£


Ô­ÎÄÁ´½Ó£º

https://olhardigital.com.br/en/2021/04/16/safety/national-library-website-victim-ransomware-attack/


5.McAfeeÐû²¼2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ


5.jpg


McAfeeÐû²¼ÁË2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£±¨¸æ³Æ£¬£¬£¬£¬£¬2020ÄêQ4ƽ¾ùÿ·ÖÖӿɼì²âµ½648¸öÍþв£¬£¬£¬£¬£¬±ÈQ3ÔöÌíÁË10£¥£¬£¬£¬£¬£¬±ÈQ2ÔöÌíÁË40£¥£¬£¬£¬£¬£¬Ê¼ÖÕ³ÊÒ»Á¬ÉÏÉýÇ÷ÊÆ¡£¡£¡£±¨¸æ»¹Ö¸³ö2020ÄêϰëÄêÔÚÒ°Íâ·¢Ã÷µÄ¹¥»÷ÊýÄ¿¼¤ÔöµÄÖ÷ÒªÔµ¹ÊÔ­ÓÉÊÇÒÔCOVIDΪÖ÷ÌâµÄ¹¥»÷ºÍPowerShellľÂíµÄ¼¤Ôö£¬£¬£¬£¬£¬ÒÔ¼°SolarWindsÎó²îºÍSunburst¶ñÒâÈí¼þµÄÒ»Á¬ÉìÕÅ¡£¡£¡£Ïà±ÈÓÚQ3 £¬£¬£¬£¬£¬Q4µÄPowerShellÊýÄ¿ÔöÌíÁË208%£¬£¬£¬£¬£¬Õë¶ÔofficeµÄ¶ñÒâÈí¼þÊýÄ¿ÔöÌíÁË199%¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.mcafee.com/enterprise/en-us/lp/threats-reports/apr-2021.html


6.Check PointÐû²¼2020ÄêÒÆ¶¯Çå¾²µÄÆÊÎö±¨¸æ


6.jpg


Check Point ResearchÐû²¼ÁË2020ÄêÒÆ¶¯Çå¾²µÄÆÊÎö±¨¸æ¡£¡£¡£¸Ã±¨¸æÊ×´Î½ÒÆÆÁËÕë¶ÔÆóÒµÒÆ¶¯×°±¸µÄ×îÐÂÍþв£¬£¬£¬£¬£¬´Ó¶ñÒâÓ¦Óõ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬ÒÔ¼°Ê¹ÓÃÆóÒµÒÆ¶¯×°±¸ÖÎÀíµÄ¹¥»÷¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬2020Ä꣬£¬£¬£¬£¬97%µÄ×éÖ¯ÃæÁÙʹÓÃÁ˶àÖÖ¹¥»÷ǰÑÔµÄÒÆ¶¯Çå¾²Íþв £» £»£»£»£»£»£» £»46%µÄ×éÖ¯ÖÐÓÐÖÁÉÙÒ»ÃûÔ±¹¤ÏÂÔØÁ˶ñÒâµÄÒÆ¶¯Ó¦ÓóÌÐò £» £»£»£»£»£»£» £»È«ÇòÖÁÉÙÓÐ40%µÄÒÆ¶¯×°±¸×Ô¼º¾ÍÈÝÒ×Êܵ½ÍøÂç¹¥»÷¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://pages.checkpoint.com/mobile-security-report-2021.html