ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃÅµê £»£» £»£»£»Î¢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò

Ðû²¼Ê±¼ä 2021-07-05

1.ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵê


1.jpg


ÈðµäÁ¬Ëø³¬ÊÐCoop³ÆÆäÔâµ½ÁËKaseya¹©Ó¦Á´¹¥»÷£¬£¬£¬Êý°Ù¼ÒÃÅµê¹Ø±Õ¡£¡£¡£ ¡£CoopµÄ½²»°ÈËÌåÏÖÆäÓÚÉÏÖÜÎåÍíÉÏ6µã30·Ö×óÓÒ·¢Ã÷ÓÐÉÙÊýÃŵ귺ÆðÎÊÌ⣬£¬£¬µ«Ò»Ò¹Ö®ºóÆä´ó²¿·ÖÃŵ궼±»ÆÈ¹Ø±Õ£¬£¬£¬°üÀ¨ÊÕÒøÌ¨ºÍ×ÔÖú½áÕËÔÚÄÚµÄÕû¸öÖ§¸¶ÏµÍ³¶¼ÖÐÖ¹ÁË¡£¡£¡£ ¡£±ðµÄ£¬£¬£¬CoopûÓÐʹÓÃKesayaÈí¼þ£¬£¬£¬ÓÉÓÚËûÃǵÄÒ»¸öÈí¼þÌṩÉÌʹÓÃÁ˸ÃÈí¼þ¶øÊܵ½Ó°Ïì¡£¡£¡£ ¡£Çå¾²¹«Ë¾HuntressLabs³Æ£¬£¬£¬´Ë´Î¹¥»÷»î¶¯µÄÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬£¬£¬ÖÁÉÙÓÐ200¼Ò×éÖ¯Êܵ½Ó°Ïì¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/119663/cyber-crime/coop-supermarket-kaseya-ransomware-attack.html


2.΢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò


2.jpg


΢Èíǰ³õ¼¶¹¤³ÌʦVolodymyr KvashukʹÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000ÍòÃÀÔª¡£¡£¡£ ¡£ËûµÄÍŶӵÄÖ÷ҪĿµÄÊÇÄ£ÄâMicrosoftÔÚÏß¹ºÖÃÀ´·¢Ã÷¸¶¿îÎÊÌâ¡£¡£¡£ ¡£ÕâЩÐéÄâÕÊ»§¿ÉÒÔ±»ÏµÍ³Ê¶±ð£¬£¬£¬ÔÚÍøÕ¾¹ºÖù¤¾ßʱ²»»áÊÕµ½ÈκβúÆ·£¬£¬£¬¿ÉÊǵ±¹ºÖÃXboxÀñÎ│£¬£¬£¬½«»ñµÃÒ»¸öÍêÈ«ÓÐÓõÄ25λ´úÂë¡£¡£¡£ ¡£Ëû²¢Î´½«¸ÃÎó²î֪ͨÆäÉÏ˾£¬£¬£¬¶øÊÇʹÓÃÆä׬Ǯ¡£¡£¡£ ¡£Ö®ºó£¬£¬£¬Ëû×ܹ²Ê¹ÓøÃÎó²îÇÔÈ¡²¢³öÊÛÁËÁè¼Ý152000ÕÅXboxÀñÎ│£¬£¬£¬¼ÛÖµ1010ÍòÃÀÔª¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/microsoft-engineer-stole-10m-by-selling-xbox-gift-cards-533416.shtml


3.Ñо¿Ö°Ô±Åû¶¶à¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤


3.jpg


Dr. WebÑо¿Ö°Ô±Åû¶ÁË9¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤¡£¡£¡£ ¡£ÕâЩӦÓÃαװ³ÉÎÞº¦µÄÕÕÆ¬±à¼­¡¢ÓÅ»¯¡¢½¡ÉíºÍÕ¼ÐdzÌÐò£¬£¬£¬À´ÓÕʹÊܺ¦ÕߵǼFacebookÕË»§£¬£¬£¬²¢Ê¹ÓÃÒ»¶ÎJavaScript´úÂëÐ®ÖÆÊäÈëµÄƾ֤¡£¡£¡£ ¡£ËäÈ»´Ë´Î»î¶¯ËƺõÊÇרÃÅÕë¶ÔFacebookÕÊ»§£¬£¬£¬µ«Dr.WebÖÒÑԳƣ¬£¬£¬ÕâÖÖ¹¥»÷Ò²¿ÉÒÔ¼ÓÔØÈÎºÎÆäËüÕýµ±ÍøÂçÆ½Ì¨µÄµÇÂ¼Ò³Ãæ£¬£¬£¬À´ÇÔÈ¡ÆäËüЧÀ͵ĵǼÃûºÍÃÜÂë¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/07/android-apps-with-58-million-installs.html


4.ÃÀ¹ú°ü¹Ü¹«Ë¾AJG³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬¿Í»§ÐÅϢй¶


4.jpg


ÃÀ¹úArthur J. Gallagher (AJG) ³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬¿Í»§ÐÅϢй¶¡£¡£¡£ ¡£AJGÊÇÃÀ¹úµÄÈ«Çò°ü¹Ü¾­¼ÍºÍΣº¦ÖÎÀí¹«Ë¾£¬£¬£¬×÷ΪȫÇò×î´óµÄ°ü¹Ü¾­¼ÍÉÌÖ®Ò»£¬£¬£¬ÓªÒµÆÕ±é49¸ö¹ú¼Ò/µØÇø¡£¡£¡£ ¡£¹¥»÷±¬·¢ÔÚ2020Äê6ÔÂ3ÈÕÖÁ2020Äê9ÔÂ26ÈÕʱ´ú£¬£¬£¬ÆäÔÚ2020Äê9ÔÂ28ÈÕÅû¶¸ÃÊÂÎñ²¢³ÆÃ»ÓÐÊý¾Ýй¶¡£¡£¡£ ¡£µ«ÔÚËæºóµÄÊӲ췢Ã÷£¬£¬£¬7376È˵ÄÃô¸ÐÐÅϢй¶£¬£¬£¬°üÀ¨Éç»áÇå¾²ºÅÂë»ò˰ºÅ¡¢¼ÝÕÕ¡¢»¤ÕÕ¡¢³öÉúÈÕÆÚ¡¢Óû§ÃûºÍÃÜÂë¡¢Ô±¹¤Ê¶ÓÖÃû¡¢²ÆÎñÕË»§»òÐÅÓÿ¨ÐÅÏ¢¡¢µç×ÓÊðÃû¡¢Ò½ÁÆÐÅÏ¢¡¢°ü¹ÜÐÅÏ¢ÒÔ¼°ÉúÎïʶ±ðÐÅÏ¢µÈ¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-insurance-giant-ajg-reports-data-breach-after-ransomware-attack/


5.Unit 42Ðû²¼2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ


5.jpg


Unit 42Ðû²¼ÁË2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£ ¡£±¨¸æÖ¸³ö£¬£¬£¬2Ôµ½4Ô¹²·ÖÅÉÁË4969¸öеÄCVE±àºÅ£¬£¬£¬ÆäÖÐÑÏÖØµÄÎó²îΪ598¸ö£¬£¬£¬Õ¼±È15.5%£¬£¬£¬POC¿ÉÓÃÐÔΪ9.4% £»£» £»£»£»¸ß¼¶µÄΪ1659¸ö£¬£¬£¬Õ¼±È43.1%£¬£¬£¬POC¿ÉÓÃÐÔΪ8.1% £»£» £»£»£»ÖеÈΪ1592¸ö£¬£¬£¬Õ¼±È41.4%£¬£¬£¬POC¿ÉÓÃÐÔΪ7.0%¡£¡£¡£ ¡£ÔÚ¹¥»÷ÀàÐÍ·½Ã棬£¬£¬´úÂëÖ´Ðй¥»÷Õ¼±È×î´ó£¬£¬£¬Îª45.6% £»£» £»£»£»¶ø¹¥»÷µÄÆðÔ´µØ·½Ã棬£¬£¬ÆäÖÐ×î¶àµÄÀ´×ÔÓÚÃÀ¹ú£¬£¬£¬Æä´ÎÊǶíÂÞ˹ºÍÖйú¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/network-attack-trends-february-april-2021/


6.WatchGuardÐû²¼2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ


6.jpg


WatchGuardÐû²¼ÁË2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ¡£¡£¡£ ¡£±¨¸æÖ¸³ö£¬£¬£¬ÔÚ2020ÄêQ1¼ì²âµ½µÄÍþвÖÐÓÐ74%ÊÇÁãÈÕÎó²î¶ñÒâÈí¼þ£¬£¬£¬µÖ´ïÁËÀúʷиߡ£¡£¡£ ¡£5ÖÖеĶñÒâÈí¼þUrsu¡¢Trojan.IFrame¡¢XML.JSLoader¡¢ZmutzyºÍZum.Androm½øÈëÁËÊ®´ó¶ñÒâÈí¼þµÄÅÅÐаñ¡£¡£¡£ ¡£±ðµÄ£¬£¬£¬´Ó3ÔÂ24ÈÕ(µÚÒ»´Î·¢Ã÷IPS¹¥»÷)µ½3ÔÂ⣬£¬£¬Õë¶ÔProxyLogin Exchange ServerÎó²îµÄ¹¥»÷ÔöÌíÁË1600%¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.watchguard.com/wgrd-resource-center/security-report-q1-2021