Slack³ÆÒÑÐÞ¸´¿Éй¶ÃÜÂëµÄÎó²î²¢Îª²¿·ÖÓû§ÖØÖÃÃÜÂë

Ðû²¼Ê±¼ä 2022-08-08

1¡¢Slack³ÆÒÑÐÞ¸´¿Éй¶ÃÜÂëµÄÎó²î²¢Îª²¿·ÖÓû§ÖØÖÃÃÜÂë

      

¾ÝýÌå8ÔÂ6ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬SlackÐÞ¸´ÁËÔÚ½¨Éè»ò×÷·ÏÊÂÇéÇøµÄ¹²ÏíÔ¼ÇëÁ´½Óʱй¶¼ÓÑÎÃÜÂë¹þÏ£µÄÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ú¹ÊÍ£¬£¬£¬£¬£¬£¬ £¬µ±Óû§Ö´ÐÐÕâЩ²Ù×÷ÖÐʱ£¬£¬£¬£¬£¬£¬ £¬Slack»á½«ÆäÃÜÂëµÄ¹þÏ££¨²»ÊÇÃ÷ÎÄ£©·¢Ë͸øÆäËüÊÂÇéÇø³ÉÔ±£¬£¬£¬£¬£¬£¬ £¬¸ÃÎó²îÓ°ÏìÁËÔÚ2017Äê4ÔÂ17ÈÕÖÁ2022Äê7ÔÂ17ÈÕʱ´ú½¨Éè»ò×÷·Ï¹²ÏíÔ¼ÇëÁ´½ÓµÄËùÓÐÓû§¡£¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬ £¬SlackÒÑΪÊÜÓ°ÏìµÄÔ¼0.5%µÄÓû§ÖØÖÃÃÜÂ룬£¬£¬£¬£¬£¬ £¬»¹½¨ÒéËùÓÐÓû§ÆôÓÃ2FAÑéÖ¤²¢½¨ÉèΨһµÄÃÜÂë¡£¡£¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2022/08/slack-resets-passwords-after-bug.html


2¡¢ÐµÄRapperBot¿Éͨ¹ýSSH±©Á¦¹¥»÷Õë¶ÔLinuxЧÀÍÆ÷

     

FortinetÔÚ8ÔÂ3ÈÕÅû¶ÁË¿Éͨ¹ýSSH±©Á¦¹¥»÷Õë¶ÔLinuxЧÀÍÆ÷µÄжñÒâÈí¼þRapperBot¡£¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±Åú×¢£¬£¬£¬£¬£¬£¬ £¬RapperBotÊÇ»ùÓÚMiraiľÂí£¬£¬£¬£¬£¬£¬ £¬×Ô2022Äê6ÔÂÖÐÑ®ÒÔÀ´Ò»Ö±±»ÓÃÓÚ¹¥»÷»î¶¯£¬£¬£¬£¬£¬£¬ £¬ÒÑʹÓÃÈ«Çò3500¶à¸öΨһµÄIPÀ´É¨Ã貢ʵÑéSSH±©Á¦ÆÆ½âLinuxЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£¡£SSH±©Á¦ÆÆ½âÒÀÀµÓÚͨ¹ýÖ÷»úΨһTCPÇëÇó´ÓC2ÏÂÔØµÄƾ֤Áбí£¬£¬£¬£¬£¬£¬ £¬¶ø¶ñÒâÈí¼þÔÚÀÖ³Éʱ»áÏòC2±¨¸æ¡£¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬ £¬RapperBotµÄÄ¿µÄ²¢²»ÏÔ×Å£¬£¬£¬£¬£¬£¬ £¬ÇÒÆä¿ª·¢ÕßÒ»Ö±ÔÚÏÞÖÆÆäDDoS¹¦Ð§¡£¡£¡£¡£¡£¡£¡£¡£


https://www.fortinet.com/blog/threat-research/rapperbot-malware-discovery


3¡¢Ó¢¹úNHSµÄ111½ôÆÈЧÀÍÒòÆäMSPÔâµ½¹¥»÷Ò»Á¬ÖÐÖ¹

      

ýÌå8ÔÂ5Èճƣ¬£¬£¬£¬£¬£¬ £¬Ó¢¹ú¹ú¼ÒÎÀÉúЧÀÍ(NHS)111½ôÆÈЧÀͱ¬·¢ÁËÒ»Á¬µÄÖÐÖ¹¡£¡£¡£¡£¡£¡£¡£¡£Ó¢¹úÍйÜЧÀÍÌṩÉÌ(MSP)Advanced³ÆÆäÉÏÖÜËÄÔâµ½ÍøÂç¹¥»÷µ¼ÖÂЧÀÍÖÐÖ¹£¬£¬£¬£¬£¬£¬ £¬¶ø85%µÄNHS 111ЧÀͶ¼Ê¹ÓÃÁËAdvancedµÄAdastra»¼ÕßÖÎÃ÷È·¾ö¼Æ»®¡£¡£¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬ £¬´Ë´ÎÖÐÖ¹Ó°ÏìÁËÓ¢¹úËùÓеÄ4¸ö¹ú¼Ò£¬£¬£¬£¬£¬£¬ £¬NHS½¨ÒéÓ¢¹ú¹«ÖÚʹÓÃÔÚÏ߯½Ì¨»á¼ûNHS 111½ôÆÈЧÀÍ£¬£¬£¬£¬£¬£¬ £¬Ö±µ½´ËÊ»ñµÃ½â¾ö¡£¡£¡£¡£¡£¡£¡£¡£ËäȻûÓйØÓÚ¹¥»÷µÄÏêϸÐÅÏ¢£¬£¬£¬£¬£¬£¬ £¬µ«Ñо¿Ö°Ô±Æ¾ÌýÓïÑÔÍÆ²âÕâ¿ÉÄÜÊÇÀÕË÷¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/uk-nhs-suffers-outage-after-cyberattack-on-managed-service-provider/


4¡¢¹¥»÷Õß¹ûÕæÒÔÉ«ÁÐÊý×ÖÇ鱨¹«Ë¾CellebriteµÄ4TBÊý¾Ý

      

¾Ý8ÔÂ5ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬Ä³ÄäÃû¹¥»÷Õßй¶ÁËCellebriteÔ¼4TBµÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£CellebriteÊÇÒÔÉ«ÁеÄÒ»¼ÒÊý×ÖÇ鱨¹«Ë¾£¬£¬£¬£¬£¬£¬ £¬´ËÇ°ÔøÓÉÓÚÃÀ¹úÖ´·¨ºÍÇå¾²»ú¹¹½âËøPhone×°±¸¶ø³ÉΪÐÂÎÅÍ·Ìõ¡£¡£¡£¡£¡£¡£¡£¡£Êý¾ÝÖ÷Òª·ÖΪÁ½²¿·Ö£¬£¬£¬£¬£¬£¬ £¬Cellebrite Mobilogy£¨3.6TB£©ºÍCellebrite Team Foundation Server£¨430 GB£©¡£¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬ £¬Ð¹Â¶µÄÊý¾ÝÖ»ÄÜͨ¹ýDDoSecretsÌṩӦÑо¿Ö°Ô±ºÍ¼ÇÕߣ¬£¬£¬£¬£¬£¬ £¬ÉÐδÓй¥»÷ÍÅ»ïÉù³ÆÎª´ËÊÂÈÏÕæ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.hackread.com/anonymous-leaks-4tb-cellebrite-data-cyberattack/


5¡¢ºÉÀ¼µÄ120¶à¼ÒÑÀ¿ÆÕïËùÒòÔâµ½ÍøÂç¹¥»÷¶ø¹Ø±ÕÊýÈÕ

      

ýÌå8ÔÂ5ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬ºÉÀ¼µÄ120¶à¼ÒÑÀ¿ÆÕïËù×ÔÉÏÖÜËÄÒÔÀ´ÒѹرÕÊýÈÕ¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñÔ´ÓÚColosseum Dental BeneluxÔâµ½µÄÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬ £¬¸Ã¹«Ë¾ÔÚ±ÈÀûʱºÍºÉÀ¼ÓµÓÐ130¶à¼Ò·ÖÖ§»ú¹¹£¬£¬£¬£¬£¬£¬ £¬µ«´ËÊÂÎñÖ»Ó°ÏìÁËλÓÚºÉÀ¼µÄÃÅÕï¡£¡£¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬ £¬ÊÂÇéÖ°Ô±ÎÞ·¨»á¼û¿Í»§µÄ»¼Õß²¡Ê·£¬£¬£¬£¬£¬£¬ £¬ESETÑо¿Ö°Ô±ÔòÌåÏÖ£¬£¬£¬£¬£¬£¬ £¬Õâ¾ßÓÐÀÕË÷¹¥»÷µÄËùÓÐÌØÕ÷¡£¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬ £¬¸Ã¹«Ë¾ÕýÔÚÆð¾¢»Ö¸´ÏµÍ³£¬£¬£¬£¬£¬£¬ £¬²¢ÓëÍⲿ¸÷·½Ò»ÆðÊÓ²ì´ËÊ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.databreaches.net/more-than-100-dutch-dental-practices-closed-for-days-due-to-cyber-attack/


6¡¢MetaÐû²¼2022ÄêµÚ¶þ¼¾¶È¶Ô¿¹ÐÔÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ

      

MetaÔÚ8Ô·ÝÐû²¼ÁË2022ÄêµÚ¶þ¼¾¶È¶Ô¿¹ÐÔÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£¡£ÆäÖеÄÁÁµãÊÇ·¢Ã÷ÁËÁ½¸öÌØ¹¤×éÖ¯£¬£¬£¬£¬£¬£¬ £¬ËüÃÇÓëºÚ¿ÍÍÅ»ïBitter APTºÍAPT36£¨ÓÖÃûTransparent Tribe£©ÓйØ£¬£¬£¬£¬£¬£¬ £¬Ê¹ÓÃÁËеÄAndroid¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£¡£±¨¸æÚ¹ÊͳÆ£¬£¬£¬£¬£¬£¬ £¬Bitter APT¶ÔÐÂÎ÷À¼¡¢Ó¡¶È¡¢°Í»ù˹̹ºÍÓ¢¹úµÄ¾ÙÐÐÁËÉç»á¹¤³Ì¹¥»÷£¬£¬£¬£¬£¬£¬ £¬²¢Í¶ÈëÁË´ó×ÚµÄʱ¼äºÍ¾«Éñ¡£¡£¡£¡£¡£¡£¡£¡£¶øAPT36µÄ×îлÖ÷ÒªÕë¶Ô°¢¸»º¹¡¢Ó¡¶È¡¢°Í»ù˹̹¡¢°¢À­²®ÁªºÏÇõ³¤¹úºÍÉ³ÌØ°¢À­²®£¬£¬£¬£¬£¬£¬ £¬ÌØÊâÊǾüʹÙÔ±ºÍ»î¶¯¼ÒµÈ¡£¡£¡£¡£¡£¡£¡£¡£


https://about.fb.com/wp-content/uploads/2022/08/Quarterly-Adversarial-Threat-Report-Q2-2022.pdf