NeopetsÍøÕ¾Ô´´úÂëºÍ³¬¹ý6900ÍòÓû§ÐÅÏ¢±»µÁ

°ä²¼¹¦·ò 2022-07-22
1¡¢NeopetsÍøÕ¾µÄÔ´´úÂëºÍ³¬¹ý6900ÍòÓû§µÄÐÅÏ¢±»µÁ

      

¾Ý7ÔÂ20ÈÕ±¨Â· £¬£¬£¬£¬£¬Ðé¹¹³èÎïÍøÕ¾NeopetsµÄÔ´´úÂëºÍ³¬¹ý6900Íò»áÔ±µÄÓ×ÎÒÐÅÏ¢±»µÁ¡£¡£¡£¡£¡£±¾Öܶþ £¬£¬£¬£¬£¬ÃûΪTarTarXµÄºÚ¿ÍÒÔ4¸ö±ÈÌØ±Ò£¨Ô¼ºÏ94,000ÃÀÔª£©µÄ¼ÛÖµÏúÊÛNeopets.comÍøÕ¾µÄÔ´´úÂëºÍÊý¾Ý¿â¡£¡£¡£¡£¡£NeopetsÍŶӰµÊ¾ËûÃÇÒѾ­»ñϤ´ËÊÂÎñ £¬£¬£¬£¬£¬²¢ÔÚÖÂÁ¦½â¾öÎÊÌâ¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹°µÊ¾ £¬£¬£¬£¬£¬Ö»Óй¥»÷Õß¿ÉÄÜʵʱ½Ó¼ûÊý¾Ý¿â £¬£¬£¬£¬£¬¸ü¸ÄNeopetsµÄÃÜÂë¿ÉÄܱ­Ë®³µÐ½ £¬£¬£¬£¬£¬ÓÉÓÚ¹¥»÷ÕßÄܹ»ÇáËɵز鿴ÐÂÃÜÂë¡£¡£¡£¡£¡£´Ë±í £¬£¬£¬£¬£¬RedditÓû§neo_truths³Æ £¬£¬£¬£¬£¬ÔÚ·¢ÏÖ¸ÃÍøÕ¾´æÔÚ·ì϶ºó £¬£¬£¬£¬£¬ËûÒѾ­¶ÔÊý¾Ý¿â½øÐÐÁËÖÁÉÙÒ»Äêδ¾­ÊÚȨµÄ½Ó¼û¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/neopets-data-breach-exposes-personal-data-of-69-million-members/


2¡¢×êÑÐÍŶӷ¢ÏÖÀàËÆÈðÊ¿¾üµ¶µÄLightning Framework

      

¾ÝIntezer 7ÔÂ21ÈÕ±¨Â· £¬£¬£¬£¬£¬ÐÂÄ£¿£¿£¿£¿£¿£¿é»¯¶ñÒâÈí¼þLightning Framework¿ÉÓÃÀ´×°ÖÃrootkitºÍºóÃÅ¡£¡£¡£¡£¡£ËüÓµÓдóÁ¿Ö°ÄÜ £¬£¬£¬£¬£¬³ÉΪÕë¶ÔLinuxϵͳ¿ª·¢µÄ×ÔӵĿò¼ÜÖ®Ò» £¬£¬£¬£¬£¬±»³ÆÎªÈðÊ¿¾üµ¶¡£¡£¡£¡£¡£¸Ã¿ò¼ÜÓµÓб»¶¯ºÍ×Ô¶¯Óë¹¥»÷ÕßͨѶµÄÖ°ÄÜ £¬£¬£¬£¬£¬Ô̺¬ÔÚÖ¸±êÉ豸ÉÏ´ò¿ªSSH £¬£¬£¬£¬£¬ÒÔ¼°¶à̬¿ÉËÜÉúºÅÁîºÍ½ÚÔìÅäÖᣡ£¡£¡£¡£¶ñÒâÈí¼þµÄÖ÷ÌâÊÇÒ»¸öÏÂÔØ·¨Ê½£¨¡°kbioset¡±£©ºÍÒ»¸öÖ÷ÌâÄ£¿£¿£¿£¿£¿£¿é£¨¡°kkdmflush¡±£© £¬£¬£¬£¬£¬»¹Ê¹ÓÃÁË·ÂðÓòÃû £¬£¬£¬£¬£¬²¢¼Ù×°³ÉSeahorse GNOME passwordºÍ¼ÓÃÜÃÜÔ¿ÖÎÀíÆ÷ £¬£¬£¬£¬£¬ÒÔÈÆ¹ýϵͳµÄ¼ì²â¡£¡£¡£¡£¡£


https://www.intezer.com/blog/research/lightning-framework-new-linux-threat/


3¡¢KasperskyÅû¶»ùÓÚRustµÄÐÂÀÕË÷Èí¼þLunaµÄϸ½Ú

      

7ÔÂ20ÈÕ £¬£¬£¬£¬£¬Kaspersky·¢ÏÖ¼ÌBlackCatºÍHiveÖ®ºóµÄµÚÈý¸ö»ùÓÚRustµÄÀÕË÷Èí¼þLuna £¬£¬£¬£¬£¬Ä¿Ç°ÈÔÔÚ¿ª·¢ÖС£¡£¡£¡£¡£ËüÄܹ»ÔÚ Windows¡¢LinuxºÍESXiϵͳÉÏÔËÐÐ £¬£¬£¬£¬£¬ÆäÖÐLinuxºÍESXiµÄÑù±¾¶¼ÊÇʹÓÃÒ»ÑùµÄÔ´´úÂë±àÒëµÄ £¬£¬£¬£¬£¬ÓëWindowsµÄ°æ±¾Ïà±Å×ÐһЩÇá΢µÄ±ä¶¯¡£¡£¡£¡£¡£Ëü»¹Ê¹ÓÃÁËÒ»ÖÖ²»Ì«³£¼ûµÄ¼ÓÃܹ滮 £¬£¬£¬£¬£¬Í¨¹ýCurve25519ºÍAESµÄ×éºÏ½øÐмÓÃÜ¡£¡£¡£¡£¡£´Ë±í £¬£¬£¬£¬£¬ÓÉÓÚ¶þ½øÔìÎļþÖÐÓ²±àÂëµÄÊê½ð¼Í¼ÖÐµÄÆ´Ð´ÃýÎó £¬£¬£¬£¬£¬×êÑÐÈËÔ±´§Ä¦ÆäÖ÷Ì⿪·¢ÈËÔ±Óë¶íÂÞ˹ÓйØ¡£¡£¡£¡£¡£


https://securelist.com/luna-black-basta-ransomware/106950/


4¡¢LinkedInÈÔÊÇ2022ÄêQ2´¹µö»î¶¯Öб»·ÂÕÕ×î¶àµÄÆ·ÅÆ

      

Check PointÔÚ7ÔÂ19ÈÕ°ä²¼ÁË2022ÄêµÚ¶þ¼¾¶ÈÆ·ÅÆÍøÂç´¹µöµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£»ã±¨Ö¸³ö £¬£¬£¬£¬£¬ÔÚQ2µÄ´¹µö»î¶¯ÖÐLinkedInÈÔÃûÁаñÊ× £¬£¬£¬£¬£¬ÓëQ1Ïà±È¼ÙðLinkedInµÄÕ¼±È´Ó52%½µÂäµ½45%¡£¡£¡£¡£¡£È»¶ø £¬£¬£¬£¬£¬ËüÓë±»·ÂðµÄµÚ¶þ´óÆ·ÅÆMicrosoftÖ®¼äÈÔÓµÓÐÏ൱´óµÄ¾àÀ루½öΪ13%£©¡£¡£¡£¡£¡£Æä´ÎÊÇDHL£¨12%£©¡¢Amazon(9%)¡¢Apple(3%)ºÍAdidas(2%)¡£¡£¡£¡£¡£ÆäÖÐ £¬£¬£¬£¬£¬¼ÙÒâLinkedInµÄ´¹µö»î¶¯ÊÔͼ·ÂÕÕ·¢Ë͸øÓû§µÄ³£¼ûÐÂÎÅ £¬£¬£¬£¬£¬Õë¶ÔMicrosoftµÄ´¹µö»î¶¯ÖØÒªÊÇÒªÇóÑéÖ¤OutlookÕÊ»§ÒÔÇÔÈ¡Óû§ÃûºÍÃÜÂë¡£¡£¡£¡£¡£


https://blog.checkpoint.com/2022/07/19/linkedin-still-number-one-brand-to-be-faked-in-phishing-attempts-while-microsoft-surges-up-the-rankings-to-number-two-spot-in-q2-report/


5¡¢¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½¹¥»÷ £¬£¬£¬£¬£¬ÏµÍ³ÈÔÔÚ¸´Ô­ÖÐ

      

¾ÝýÌå7ÔÂ21ÈÕ±¨Â· £¬£¬£¬£¬£¬¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½ÁËÍøÂç¹¥»÷¡£¡£¡£¡£¡£»£»£»£»£»¬Ìú¬µØÓò½ÌÓý¾Ö°µÊ¾ £¬£¬£¬£¬£¬ÔÚÔâµ½ÍøÂç¹¥»÷ºó £¬£¬£¬£¬£¬ÆäÔÚÖÂÁ¦¸´Ô­ITϵͳ²¢±£»£»£»£»£»¤½ÌÈËÔ±¹¤¡¢Ñ§ÉúºÍ¼ÒÍ¥µÄÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£ÉÐδעÃ÷¹¥»÷Õß¿ÉÄܽӼûÁËÄÄЩÀàÐ͵ÄÎļþ£¨ÈôÊÇÓеϰ£© £¬£¬£¬£¬£¬»òÕßÊÇ·ñ»á¸¶·ÑÀ´³ÁнӼûϵͳ¡£¡£¡£¡£¡£½²»°ÈË³Æ £¬£¬£¬£¬£¬½üÄêÀ´Õë¶Ô½ÌÓý²¿ÃŵĹ¥»÷Ô½À´Ô½ÆµÈÔ £¬£¬£¬£¬£¬Regina¹«Á¢Ñ§ÌÃÔÚ½ñÄê5ÔÂÔâµ½Á˹¥»÷²¢¹Ø¹ØÁËËùÓлùÓÚ»¥ÁªÍøµÄϵͳ £¬£¬£¬£¬£¬2021Äê1ÔÂÆ¤¶ûµØÓòµÄ½ÌÓý¾ÖÔøÔâµ½¹¥»÷¡£¡£¡£¡£¡£


https://www.cbc.ca/news/canada/kitchener-waterloo/waterloo-region-district-school-board-cyber-attack-1.6526731?cmp=rss


6¡¢Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üР£¬£¬£¬£¬£¬×ܼƽ¨¸´45¸ö·ì϶ 

      

7ÔÂ20ÈÕ £¬£¬£¬£¬£¬Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üР£¬£¬£¬£¬£¬×ܼƽ¨¸´45¸ö·ì϶¡£¡£¡£¡£¡£ÆäÖнÏΪÑϳÁµÄÊÇCisco Nexus DashboardÖеÄËÁÒâºÅÁîÖ´Ðзì϶£¨CVE-2022-20857 £¬£¬£¬£¬£¬CVSSÆÀ·Ö9.8£©¡¢ÈÝÆ÷Ó³Ïñ¶Áд·ì϶£¨CVE-2022-20858£©ºÍ¿çÕ¾ÒªÇóαÔì·ì϶£¨CVE-2022-20861£©¡£¡£¡£¡£¡£³ý´ËÖ®±í £¬£¬£¬£¬£¬Cisco»¹½¨¸´ÁËÆäSmall Business RV110W¡¢RV130¡¢RV130WºÍRV215W·ÓÉÆ÷ÖеÄ35¸ö·ì϶ £¬£¬£¬£¬£¬ËüÃÇ¿ÉÄܵ¼ÖÂËÁÒâ´úÂëÖ´ÐкÍDoS¹¥»÷¡£¡£¡£¡£¡£


https://thehackernews.com/2022/07/cisco-releases-patches-for-critical.html