΢ÈíµÄAzure BlobÅäÖÃÃýÎóÒÑй¶2.4 TBÃô¸ÐÐÅÏ¢

°ä²¼¹¦·ò 2022-10-21
1¡¢Î¢ÈíµÄAzure BlobÅäÖÃÃýÎóÒÑй¶2.4 TBÃô¸ÐÐÅÏ¢

      

¾ÝýÌå10ÔÂ19ÈÕ±¨Â· £¬£¬£¬£¬£¬£¬£¬£¬SOCRadar¼ì²âµ½ÓÉ΢ÈíÊØ»¤µÄAzure Blob´æ´¢ÅäÖÃÃýÎóй¶¿Í»§ÐÅÏ¢¡£¡£¡£¡£¡£ ¡£SOCRadarÐû³Æ·¢ÏÖ΢ÈíµÄ·þÎñÆ÷й¶ÁË2.4TBµÄÊý¾Ý £¬£¬£¬£¬£¬£¬£¬£¬Ô̺¬³¬¹ý335000·âµç×ÓÓʼþ¡¢133000¸öÏîÄ¿ºÍ548000¸ö¶³öµÄÓû§ £¬£¬£¬£¬£¬£¬£¬£¬»¹ÓÐSOWÎĵµ¡¢²úÆ·±¨¼Û¡¢POCºÍPOEÎļþµÈ¡£¡£¡£¡£¡£ ¡£Ð¹Â¶Êý¾ÝÓë111¸ö¹ú¶ÈµÄ65000¶à¸ö×éÖ¯ÓÐ¹Ø £¬£¬£¬£¬£¬£¬£¬£¬´æ´¢ÁË2017ÄêÖÁ2022Äê8ÔµÄÐÅÏ¢¡£¡£¡£¡£¡£ ¡£Î¢ÈíÔÚ9ÔÂ24ÈÕÊÕµ½Ð¹Â¶Í¨Öªºó±£»£»£»£»£»£»¤Á˸÷þÎñÆ÷ £¬£¬£¬£¬£¬£¬£¬£¬²¢²¹³äËüÒÔΪSOCRadar¿ä´óÁ˸ÃÊÂÎñµÄÁìÓòºÍÊý×Ö¡£¡£¡£¡£¡£ ¡£


https://www.bleepingcomputer.com/news/security/microsoft-data-breach-exposes-customers-contact-info-emails/


2¡¢Vice SocietyÐû³ÆÒÑÇÔÈ¡·¨¹úijҽԺµÄ150 GBÎļþ

      

¾Ý10ÔÂ19ÈÕ±¨Â· £¬£¬£¬£¬£¬£¬£¬£¬·¨¹úÒ»¼Ò˽Á¢¸¾²úÒ½ÔºH?pital Pierre Rouqu¨¨s¨CLes BluetsÔâµ½¹¥»÷¡£¡£¡£¡£¡£ ¡£¹¥»÷²úÉúÓÚ10ÔÂ9ÈÕ £¬£¬£¬£¬£¬£¬£¬£¬¸ÃÒ½ÔºÔÚÆäÍøÕ¾Ö÷Ò³ÉÏÅû¶ÁËÕâ´Î¹¥»÷ £¬£¬£¬£¬£¬£¬£¬£¬²¢°µÊ¾ÓʼþϵͳÎÞ·¨Õý³£¹¤×÷¡£¡£¡£¡£¡£ ¡£Vice SocietyÐû³ÆËûÃÇÒѹ¥»÷¸ÃÒ½Ôº £¬£¬£¬£¬£¬£¬£¬£¬²¢¼ÓÃÜÁËÒ½ÔºµÄËùÓÐÎļþºÍ±¸·Ý £¬£¬£¬£¬£¬£¬£¬£¬Ö»¹ÜÒ½Ôº°µÊ¾´óÎÞÊýÒ½ÁƼͼÒÀÈ»Äܹ»½Ó¼û¡£¡£¡£¡£¡£ ¡£´Ë±í £¬£¬£¬£¬£¬£¬£¬£¬ËûÃÇ»¹´ÓÒ½ÔºµÄϵͳÖÐÏÂÔØÁ˳¬¹ý150 GBµÄÎļþ¡£¡£¡£¡£¡£ ¡£


https://www.databreaches.net/french-maternity-hospital-hit-by-ransomware-attack-by-vice-society-attackers-claim-to-have-150-gb-of-files/ 


3¡¢Orca SecurityÅû¶Azure SFX·ì϶FabriXssµÄϸ½Ú

      

10ÔÂ19ÈÕ±¨Â· £¬£¬£¬£¬£¬£¬£¬£¬Orca Security·¢ÏÖÁËService Fabric Explorer(SFX)Öеķì϶FabriXss(CVE-2022-35829)¡£¡£¡£¡£¡£ ¡£¸Ã·ì϶¿É±»ÓÃÀ´»ñµÃÆëÈ«µÄÖÎÀíԱȨÏÞ²¢½Ù³ÖAzure Service Fabric¼¯Èº £¬£¬£¬£¬£¬£¬£¬£¬×êÑÐÈËԱй© £¬£¬£¬£¬£¬£¬£¬£¬DeployerÀàÐ͵ÄÓû§ÈôÊÇÕ¼ÓÐͨ¹ý½ÚÔìÃæ°å¡°´´½¨ÐÂÀûÓ÷¨Ê½¡±µÄµ¥Ò»È¨ÏÞ £¬£¬£¬£¬£¬£¬£¬£¬¾ÍÄܹ»Ê¹ÓÃÕâ¸öȨÏÞ´´½¨¶ñÒâÀûÓ÷¨Ê½Ãû³Æ £¬£¬£¬£¬£¬£¬£¬£¬²¢ÀÄÓÃÖÎÀíԱȨÏÞÀ´Ö´Ðи÷ÀàŲÓúͲÙ×÷¡£¡£¡£¡£¡£ ¡£Orca Security»¹¹«¿ªÁËFabriXssµÄPoC¼°ÆäËü¼¼Êõϸ½Ú £¬£¬£¬£¬£¬£¬£¬£¬Î¢ÈíÔÚ10ÔÂ11ÈÕµÄÖܶþ²¹¶¡Öн¨¸´Á˸÷ì϶¡£¡£¡£¡£¡£ ¡£


https://www.bleepingcomputer.com/news/security/microsoft-azure-sfx-bug-let-hackers-hijack-service-fabric-clusters/


4¡¢Cybernews½üÆÚ·¢ÏÖÔ¼200Íò¸ö¹«¿ªµÄ.gitÎļþ¼Ð

      

CybernewsÔÚ10ÔÂ20ÈÕ³ÆÆä·¢ÏÖÁË´óÁ¿¹«¿ªµÄ.gitÎļþ¼Ó×£¡£¡£¡£¡£ ¡£×êÑÐÈËÔ±ÔÚ×î³£¼ûµÄWeb¶Ë¿Ú80ºÍ443Éϼì²âµ½1931148¸öIPµØÖ· £¬£¬£¬£¬£¬£¬£¬£¬ÕâЩIPµØÖ·ÓµÓпɹ©¹«¼Ò½Ó¼ûµÄ.gitÎļþ¼Ð½á¹¹µÄʵʱ·þÎñÆ÷¡£¡£¡£¡£¡£ ¡£ÆäÖÐ £¬£¬£¬£¬£¬£¬£¬£¬³¬¹ý31%µÄ¹«¿ª.gitÎļþ¼ÐλÓÚÃÀ¹ú £¬£¬£¬£¬£¬£¬£¬£¬Æä´ÎÊÇÖйú(8%)ºÍµÂ¹ú(6.5%)¡£¡£¡£¡£¡£ ¡£ÔÚÉî¿ÌÍÚ¾òʱ £¬£¬£¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±·¢ÏÖԼĪ6.3%µÄ.gitÅäÖÃÎļþµÄ²¿Êðƾ֤¾ÍÔÚÅäÖÃÎļþÖÓ×£¡£¡£¡£¡£ ¡£


https://cybernews.com/security/millions-git-folders-exposed/


5¡¢°ÍÎ÷·¨ÂÉ»ú¹¹°ä·¢ÒÑ¿ÛÁôÓëLapsus$ÓйصÄÏÓÒÉÈË

      

10ÔÂ19ÈÕ £¬£¬£¬£¬£¬£¬£¬£¬°ÍÎ÷Áª¹ú¾¯Ô±°ä·¢°ÍÒÁÑÇÖݵķÑÀ­µÂÉ£ËþÄÉ¿ÛÁôÁËÒ»ÃûÏÓÒÉÈË £¬£¬£¬£¬£¬£¬£¬£¬¾ÝÐÅËûÊÇLapsus$ÍÅ»ïµÄ³ÉÔ±¡£¡£¡£¡£¡£ ¡£Õâ´Î»î¶¯ÊÇ2022Äê8ÔÂÆô¶¯µÄ·¨ÂÉÐж¯Operation Dark CloudµÄÒ»²¿ÃÅ £¬£¬£¬£¬£¬£¬£¬£¬¸ÃÐж¯Ö¼ÔÚÍøÂç×ÔÈ¥Äêµ×ÒÔÀ´Õë¶Ô°ÍÎ÷µ±¾Ö»ú¹¹µÄÂÅ´ÎÍøÂç¹¥»÷±³ºóµÄ·¸×ï×éÖ¯µÄ»î¶¯ÐÅÏ¢¡£¡£¡£¡£¡£ ¡£¾¯·½µ÷²éÈ·¶¨µÄ×ï×´ÊÇ·¸×ï×éÖ¯·¸×ï¡¢ÈëÇÖÍÆËã»úÉ豸¡¢ÖжϻòÇÖÈŵ籨¡¢ÎÞÏߵ籨»òµç»°·þÎñ £¬£¬£¬£¬£¬£¬£¬£¬×èÖ¹»ò¹ÊÕϸ´Ô­¡£¡£¡£¡£¡£ ¡£


https://thehackernews.com/2022/10/brazilian-police-arrest-suspected.html  


6¡¢Check Point°ä²¼¹ØÓÚBlack BastaµÄ·ÖÎö»ã±¨

      

10ÔÂ20ÈÕ £¬£¬£¬£¬£¬£¬£¬£¬Check Point°ä²¼Á˹ØÓÚBlack BastaµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£ ¡£»ã±¨Ö¸³ö £¬£¬£¬£¬£¬£¬£¬£¬×Ô2022Äê5ÔÂÒÔÀ´ £¬£¬£¬£¬£¬£¬£¬£¬ÒÑÓг¬¹ý89ÆðBlack Basta¹¥»÷»î¶¯ £¬£¬£¬£¬£¬£¬£¬£¬¸ÃÍÅ»ïÖØÒªÕë¶ÔÃÀ¹úºÍµÂ¹ú £¬£¬£¬£¬£¬£¬£¬£¬ÆäÍøÕ¾ÉÏÁгöµÄ49%µÄ±»¹¥»÷Ö¸±êÀ´×ÔÃÀ¹ú £¬£¬£¬£¬£¬£¬£¬£¬ÔÚijЩÇé¿öÏÂÊê½ðÒªÇ󳬹ý100ÍòÃÀÔª¡£¡£¡£¡£¡£ ¡£´Ë±í £¬£¬£¬£¬£¬£¬£¬£¬»ã±¨»¹ÃèÊöÁËBlack Basta»î¶¯µÄÄÚ²¿ÔË×÷ £¬£¬£¬£¬£¬£¬£¬£¬²¢³ö¸ñ¹Ø×¢·Ö·¢½×¶Î£»£»£»£»£»£»Ú¹ÊÏç˸ÃÍÅ»ïÕë¶ÔÄ£ÄâÆ÷ºÍɳÏä×Ô¶¯»¯¼ì²âºÍ·ÖÎöµÄ´óÁ¿ÈƹýºÍ·´·ÖÎö¼¼Êõ£»£»£»£»£»£»¸ÅÊöÁËBlack BastaÈôºÎ¼ÓÃÜϵͳÖеÄÎļþÒÔ¼°ÈôºÎºáÏòÒÆ¶¯¡£¡£¡£¡£¡£ ¡£


https://research.checkpoint.com/2022/black-basta-and-the-unnoticed-delivery/