NeopetsÍøÕ¾Ô´´úÂëºÍ³¬¹ý6900ÍòÓû§ÐÅÏ¢±»µÁ
°ä²¼¹¦·ò 2022-07-22
¾Ý7ÔÂ20ÈÕ±¨Â·£¬£¬£¬£¬£¬Ðé¹¹³èÎïÍøÕ¾NeopetsµÄÔ´´úÂëºÍ³¬¹ý6900Íò»áÔ±µÄÓ×ÎÒÐÅÏ¢±»µÁ¡£¡£¡£¡£¡£±¾Öܶþ£¬£¬£¬£¬£¬ÃûΪTarTarXµÄºÚ¿ÍÒÔ4¸ö±ÈÌØ±Ò£¨Ô¼ºÏ94,000ÃÀÔª£©µÄ¼ÛÖµÏúÊÛNeopets.comÍøÕ¾µÄÔ´´úÂëºÍÊý¾Ý¿â¡£¡£¡£¡£¡£NeopetsÍŶӰµÊ¾ËûÃÇÒѾ»ñϤ´ËÊÂÎñ£¬£¬£¬£¬£¬²¢ÔÚÖÂÁ¦½â¾öÎÊÌâ¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹°µÊ¾£¬£¬£¬£¬£¬Ö»Óй¥»÷Õß¿ÉÄÜʵʱ½Ó¼ûÊý¾Ý¿â£¬£¬£¬£¬£¬¸ü¸ÄNeopetsµÄÃÜÂë¿ÉÄܱˮ³µÐ½£¬£¬£¬£¬£¬ÓÉÓÚ¹¥»÷ÕßÄܹ»ÇáËɵز鿴ÐÂÃÜÂë¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬RedditÓû§neo_truths³Æ£¬£¬£¬£¬£¬ÔÚ·¢ÏÖ¸ÃÍøÕ¾´æÔÚ·ì϶ºó£¬£¬£¬£¬£¬ËûÒѾ¶ÔÊý¾Ý¿â½øÐÐÁËÖÁÉÙÒ»Äêδ¾ÊÚȨµÄ½Ó¼û¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/neopets-data-breach-exposes-personal-data-of-69-million-members/
2¡¢×êÑÐÍŶӷ¢ÏÖÀàËÆÈðÊ¿¾üµ¶µÄLightning Framework
¾ÝIntezer 7ÔÂ21ÈÕ±¨Â·£¬£¬£¬£¬£¬ÐÂÄ£¿£¿£¿£¿£¿£¿é»¯¶ñÒâÈí¼þLightning Framework¿ÉÓÃÀ´×°ÖÃrootkitºÍºóÃÅ¡£¡£¡£¡£¡£ËüÓµÓдóÁ¿Ö°ÄÜ£¬£¬£¬£¬£¬³ÉΪÕë¶ÔLinuxϵͳ¿ª·¢µÄ×ÔӵĿò¼ÜÖ®Ò»£¬£¬£¬£¬£¬±»³ÆÎªÈðÊ¿¾üµ¶¡£¡£¡£¡£¡£¸Ã¿ò¼ÜÓµÓб»¶¯ºÍ×Ô¶¯Óë¹¥»÷ÕßͨѶµÄÖ°ÄÜ£¬£¬£¬£¬£¬Ô̺¬ÔÚÖ¸±êÉ豸ÉÏ´ò¿ªSSH£¬£¬£¬£¬£¬ÒÔ¼°¶à̬¿ÉËÜÉúºÅÁîºÍ½ÚÔìÅäÖᣡ£¡£¡£¡£¶ñÒâÈí¼þµÄÖ÷ÌâÊÇÒ»¸öÏÂÔØ·¨Ê½£¨¡°kbioset¡±£©ºÍÒ»¸öÖ÷ÌâÄ£¿£¿£¿£¿£¿£¿é£¨¡°kkdmflush¡±£©£¬£¬£¬£¬£¬»¹Ê¹ÓÃÁË·ÂðÓòÃû£¬£¬£¬£¬£¬²¢¼Ù×°³ÉSeahorse GNOME passwordºÍ¼ÓÃÜÃÜÔ¿ÖÎÀíÆ÷£¬£¬£¬£¬£¬ÒÔÈÆ¹ýϵͳµÄ¼ì²â¡£¡£¡£¡£¡£
https://www.intezer.com/blog/research/lightning-framework-new-linux-threat/
3¡¢KasperskyÅû¶»ùÓÚRustµÄÐÂÀÕË÷Èí¼þLunaµÄϸ½Ú
7ÔÂ20ÈÕ£¬£¬£¬£¬£¬Kaspersky·¢ÏÖ¼ÌBlackCatºÍHiveÖ®ºóµÄµÚÈý¸ö»ùÓÚRustµÄÀÕË÷Èí¼þLuna£¬£¬£¬£¬£¬Ä¿Ç°ÈÔÔÚ¿ª·¢ÖС£¡£¡£¡£¡£ËüÄܹ»ÔÚ Windows¡¢LinuxºÍESXiϵͳÉÏÔËÐУ¬£¬£¬£¬£¬ÆäÖÐLinuxºÍESXiµÄÑù±¾¶¼ÊÇʹÓÃÒ»ÑùµÄÔ´´úÂë±àÒëµÄ£¬£¬£¬£¬£¬ÓëWindowsµÄ°æ±¾Ïà±Å×ÐһЩÇá΢µÄ±ä¶¯¡£¡£¡£¡£¡£Ëü»¹Ê¹ÓÃÁËÒ»ÖÖ²»Ì«³£¼ûµÄ¼ÓÃܹ滮£¬£¬£¬£¬£¬Í¨¹ýCurve25519ºÍAESµÄ×éºÏ½øÐмÓÃÜ¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬ÓÉÓÚ¶þ½øÔìÎļþÖÐÓ²±àÂëµÄÊê½ð¼Í¼ÖÐµÄÆ´Ð´ÃýÎ󣬣¬£¬£¬£¬×êÑÐÈËÔ±´§Ä¦ÆäÖ÷Ì⿪·¢ÈËÔ±Óë¶íÂÞ˹Óйء£¡£¡£¡£¡£
https://securelist.com/luna-black-basta-ransomware/106950/
4¡¢LinkedInÈÔÊÇ2022ÄêQ2´¹µö»î¶¯Öб»·ÂÕÕ×î¶àµÄÆ·ÅÆ
Check PointÔÚ7ÔÂ19ÈÕ°ä²¼ÁË2022ÄêµÚ¶þ¼¾¶ÈÆ·ÅÆÍøÂç´¹µöµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£»ã±¨Ö¸³ö£¬£¬£¬£¬£¬ÔÚQ2µÄ´¹µö»î¶¯ÖÐLinkedInÈÔÃûÁаñÊ×£¬£¬£¬£¬£¬ÓëQ1Ïà±È¼ÙðLinkedInµÄÕ¼±È´Ó52%½µÂäµ½45%¡£¡£¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬ËüÓë±»·ÂðµÄµÚ¶þ´óÆ·ÅÆMicrosoftÖ®¼äÈÔÓµÓÐÏ൱´óµÄ¾àÀ루½öΪ13%£©¡£¡£¡£¡£¡£Æä´ÎÊÇDHL£¨12%£©¡¢Amazon(9%)¡¢Apple(3%)ºÍAdidas(2%)¡£¡£¡£¡£¡£ÆäÖУ¬£¬£¬£¬£¬¼ÙÒâLinkedInµÄ´¹µö»î¶¯ÊÔͼ·ÂÕÕ·¢Ë͸øÓû§µÄ³£¼ûÐÂÎÅ£¬£¬£¬£¬£¬Õë¶ÔMicrosoftµÄ´¹µö»î¶¯ÖØÒªÊÇÒªÇóÑéÖ¤OutlookÕÊ»§ÒÔÇÔÈ¡Óû§ÃûºÍÃÜÂë¡£¡£¡£¡£¡£
https://blog.checkpoint.com/2022/07/19/linkedin-still-number-one-brand-to-be-faked-in-phishing-attempts-while-microsoft-surges-up-the-rankings-to-number-two-spot-in-q2-report/
5¡¢¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½¹¥»÷£¬£¬£¬£¬£¬ÏµÍ³ÈÔÔÚ¸´ÔÖÐ
¾ÝýÌå7ÔÂ21ÈÕ±¨Â·£¬£¬£¬£¬£¬¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½ÁËÍøÂç¹¥»÷¡£¡£¡£¡£¡£»£»£»£»£»¬Ìú¬µØÓò½ÌÓý¾Ö°µÊ¾£¬£¬£¬£¬£¬ÔÚÔâµ½ÍøÂç¹¥»÷ºó£¬£¬£¬£¬£¬ÆäÔÚÖÂÁ¦¸´ÔITϵͳ²¢±£»£»£»£»£»¤½ÌÈËÔ±¹¤¡¢Ñ§ÉúºÍ¼ÒÍ¥µÄÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£ÉÐδעÃ÷¹¥»÷Õß¿ÉÄܽӼûÁËÄÄЩÀàÐ͵ÄÎļþ£¨ÈôÊÇÓеϰ£©£¬£¬£¬£¬£¬»òÕßÊÇ·ñ»á¸¶·ÑÀ´³ÁнӼûϵͳ¡£¡£¡£¡£¡£½²»°È˳ƣ¬£¬£¬£¬£¬½üÄêÀ´Õë¶Ô½ÌÓý²¿ÃŵĹ¥»÷Ô½À´Ô½ÆµÈÔ£¬£¬£¬£¬£¬Regina¹«Á¢Ñ§ÌÃÔÚ½ñÄê5ÔÂÔâµ½Á˹¥»÷²¢¹Ø¹ØÁËËùÓлùÓÚ»¥ÁªÍøµÄϵͳ£¬£¬£¬£¬£¬2021Äê1ÔÂÆ¤¶ûµØÓòµÄ½ÌÓý¾ÖÔøÔâµ½¹¥»÷¡£¡£¡£¡£¡£
https://www.cbc.ca/news/canada/kitchener-waterloo/waterloo-region-district-school-board-cyber-attack-1.6526731?cmp=rss
6¡¢Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üУ¬£¬£¬£¬£¬×ܼƽ¨¸´45¸ö·ì϶
7ÔÂ20ÈÕ£¬£¬£¬£¬£¬Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üУ¬£¬£¬£¬£¬×ܼƽ¨¸´45¸ö·ì϶¡£¡£¡£¡£¡£ÆäÖнÏΪÑϳÁµÄÊÇCisco Nexus DashboardÖеÄËÁÒâºÅÁîÖ´Ðзì϶£¨CVE-2022-20857£¬£¬£¬£¬£¬CVSSÆÀ·Ö9.8£©¡¢ÈÝÆ÷Ó³Ïñ¶Áд·ì϶£¨CVE-2022-20858£©ºÍ¿çÕ¾ÒªÇóαÔì·ì϶£¨CVE-2022-20861£©¡£¡£¡£¡£¡£³ý´ËÖ®±í£¬£¬£¬£¬£¬Cisco»¹½¨¸´ÁËÆäSmall Business RV110W¡¢RV130¡¢RV130WºÍRV215W·ÓÉÆ÷ÖеÄ35¸ö·ì϶£¬£¬£¬£¬£¬ËüÃÇ¿ÉÄܵ¼ÖÂËÁÒâ´úÂëÖ´ÐкÍDoS¹¥»÷¡£¡£¡£¡£¡£
https://thehackernews.com/2022/07/cisco-releases-patches-for-critical.html


¾©¹«Íø°²±¸11010802024551ºÅ