2.35ÒÚTwitterÓû§µÄÓ×ÎÒÐÅÏ¢ÔÚºÚ¿ÍÂÛ̳Éϰ䲼
°ä²¼¹¦·ò 2023-01-05
¾ÝýÌå1ÔÂ4ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬Ò»¸öÔ̺¬³¬¹ý2ÒÚTwitterÓû§µÄµç×ÓÓʼþµØÖ·µÄÊý¾Ý¼¯ÔÚºÚ¿ÍÂÛ̳BreachedÉϰ䲼£¬£¬£¬£¬£¬£¬£¬½öÐèÖ§¸¶8¸öÂÛ̳Ǯ±Ò»ý·Ö£¨¼ÛÖµÔ¼2ÃÀÔª£©¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÒÑÈ·ÈÏÆäÖÐÁгöµÄºÜ¶àÓʼþµØÖ·µÄÓÐЧÐÔ¡£¡£¡£¡£¡£¡£¡£¡£¾Ý³Æ£¬£¬£¬£¬£¬£¬£¬¸ÃÊý¾Ý¼¯Óë11Ô·ÝÁ÷´«µÄ4ÒÚÌõÊý¾ÝÒ»Ñù£¬£¬£¬£¬£¬£¬£¬µ«¾¹ýËãÕʺó²»Ô̺¬³Á¸´Ï£¬£¬£¬£¬£¬£¬×ÜÊýÏ÷¼õµ½Ô¼221608279Ìõ¡£¡£¡£¡£¡£¡£¡£¡£Êý¾ÝÒÔRAR´æµµµÄ´ó¾Ö°ä²¼£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬6¸öÎı¾Îļþ£¬£¬£¬£¬£¬£¬£¬×Ü´óÓ×59GB£¬£¬£¬£¬£¬£¬£¬Éæ¼°ÓʼþµØÖ·¡¢ÐÕÃû¡¢êdzƺ͹Ø×¢µÈÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/140352/data-breach/twitter-data-leak-235m-users.html
2¡¢ÎÖ¶ûÎÖÔâµ½EnduranceµÄÀÕË÷¹¥»÷200GBÃô¸ÐÊý¾ÝÒÉËÆÐ¹Â¶
1ÔÂ3ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬£¬£¬·¨¹ú°²È«»ú¹¹Anis Haboubi·¢ÏÖºÚ¿ÍÔÚÂÛ̳ÉÏÒÔ2500ÃÀÔªµÄ¼ÛÖµÏúÊÛ´ÓÎÖ¶ûÎÖÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£2022Äê12ÔÂ31ÈÕ£¬£¬£¬£¬£¬£¬£¬ÂÛ̳³ÉÔ±IntelBrokerÐû³ÆÎÖ¶ûÎÖÔâµ½ÁËEnduranceµÄÀÕË÷¹¥»÷£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÇÔÈ¡ÁË200GBµÄÃô¸ÐÊý¾Ý£¬£¬£¬£¬£¬£¬£¬ÕâЩÊý¾Ý´Ë¿ÌÔÚÏúÊÛ¡£¡£¡£¡£¡£¡£¡£¡£Âô¼ÒÚ¹ÊÍ˵£¬£¬£¬£¬£¬£¬£¬ËûûÓÐË÷ÒªÊê½ð£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚËûÒÔΪ¸Ã¹«Ë¾²»»á¸¶Êê½ð¡£¡£¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬£¬±»µÁÊý¾ÝÔ̺¬Êý¾Ý¿â½Ó¼û¡¢CICD½Ó¼û¡¢Atlassian½Ó¼û¡¢ÓòÃû½Ó¼û¡¢WiFiµãºÍµÇ¼¡¢ÊÚȨ³ÐÔØ¡¢API¡¢PAC°²È«½Ó¼û¡¢Ô±¹¤Ãûµ¥¡¢Èí¼þÐí¿ÉÖ¤ÒÔ¼°ÃÜÔ¿ºÍϵͳÎļþ¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬£¬Éв»Ã÷ÏÔÕâһ˵·¨µÄÕæÊµÐÔ¡£¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/140258/hacking/volvo-cars-data-breach-2.html
3¡¢Qualys·¢ÏÖÒÔ±»µÁµÄÒøÐÐÊý¾ÝΪµö¶ü·Ö·¢BitRATµÄ»î¶¯
QualysÔÚ1ÔÂ3Èճƣ¬£¬£¬£¬£¬£¬£¬½üÆÚÒ»³¡ÐµĶñÒâÈí¼þ»î¶¯ÀûÓñ»µÁµÄÒøÐÐÊý¾Ý×÷Ϊµö¶ü£¬£¬£¬£¬£¬£¬£¬Ö¼ÔÚ·Ö·¢Ô¶³Ì½Ó¼ûľÂíBitRAT¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚµ÷²é´¹µö¹¥»÷ÖеÄBitRATµö¶üʱ£¬£¬£¬£¬£¬£¬£¬·¢ÏÖÒ»¼Ò¸çÂ×±ÈÑǺÏ×÷ÒøÐеÄIT»ù´¡ÉèÊ©Òѱ»¹¥»÷Õß½Ù³Ö£¬£¬£¬£¬£¬£¬£¬418777Ìõ¿Í»§Êý¾Ý±»µÁ¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß½«Êý¾Ýµ¼³öµ½±øÆ÷»¯µÄExcel¶ñÒâÎĵµÖУ¬£¬£¬£¬£¬£¬£¬ÒÔÓÕʹÊÕ¼þÈË´ò¿ªÎļþ¡£¡£¡£¡£¡£¡£¡£¡£´ò¿ªÎļþ²¢ÆôÓúêºó£¬£¬£¬£¬£¬£¬£¬½«ÏÂÔØ²¢Ö´Ðеڶþ½×¶ÎDLL payload¡£¡£¡£¡£¡£¡£¡£¡£µÚ¶þ½×¶ÎDLLʹÓø÷Àà·´µ÷ÊÔ¼¼Êõ£¬£¬£¬£¬£¬£¬£¬×îÖÕÔÚÖ¸±êÖ÷»úÉϼìË÷²¢Ö´ÐÐBitRAT¡£¡£¡£¡£¡£¡£¡£¡£
https://blog.qualys.com/vulnerabilities-threat-research/2023/01/03/bitrat-now-sharing-sensitive-bank-data-as-a-lure
4¡¢ÃÀ¹úÌú·ºÍ»ú³µ¹«Ë¾WabtecÔâµ½LockBitµÄÀÕË÷¹¥»÷
ýÌå1ÔÂ3Èճƣ¬£¬£¬£¬£¬£¬£¬ÃÀ¹úÌú·ºÍ»ú³µ¹«Ë¾Wabtec Corporationй©ÆäÔâµ½ÀÕË÷¹¥»÷µ¼ÖÂÊý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£¡£ºÚ¿ÍÔçÔÚ2022Äê3ÔÂ15ÈÕ¾ÍÈëÇÖÁËËûÃǵÄÍøÂç²¢ÔÚϵͳÉÏ×°ÖÃÁ˶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬£¬WabtecÔÚ6ÔÂ26ÈÕ³ÆÔÚÍøÂçÉϼì²âµ½Òì³£»£»£»£»£»£»£»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£¼¸Öܺ󣬣¬£¬£¬£¬£¬£¬LockBit°ä²¼ÁË´ÓWabtecÇÔÈ¡µÄÊý¾ÝÑù±¾£¬£¬£¬£¬£¬£¬£¬²¢×îÖÕÔÚ2022Äê8ÔÂ20ÈÕ¹«¿ªÁËÈ«Êý±»µÁÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£Wabtec¶Ô¸ÃÊÂÎñµÄµ÷²éÓÚ2022Äê11ÔÂ23ÈÕʵÏÖ£¬£¬£¬£¬£¬£¬£¬È·ÈÏй¶ÐÅÏ¢Ô̺¬ÐÕÃû¡¢Éí·ÝÖ¤ºÅÂë¡¢Éç»á±£ÏÕºÅÂë»ò²ÆÕþ´úÂë¡¢»¤ÕÕºÅÂëºÍ¹ÍÖ÷¼ø±ðºÅÂëµÈ¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ2022Äê12ÔÂ30ÈÕÆðÍ·ÏòÊÜÓ°ÏìµÄÓ×ÎÒ·¢ËÍ֪ͨ£¬£¬£¬£¬£¬£¬£¬µ«Î´Ð¹Â©È·ÇÐÈËÊý¡£¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/rail-giant-wabtec-discloses-data-breach-after-lockbit-ransomware-attack/
5¡¢×êÑÐÈËÔ±Åû¶Õë¶ÔÐÅÏ¢°²È«ÁìÓòµÄFlipper Zero´¹µö»î¶¯
¾Ý1ÔÂ3ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬Dominic AlvieriÅû¶ÁËÕë¶Ô°²È«×êÑÐÈËÔ±µÄFlipper Zero´¹µö»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£Flipper ZeroÊÇÒ»¿î±ãЯʽ¶àÖ°ÄÜÍøÂ簲ȫ¹¤¾ß£¬£¬£¬£¬£¬£¬£¬ÆäÔÚÈ¥Äê³öÏÖ³ö²úÎÊÌâµ¼Ö¹©¸øÇ·È±£¬£¬£¬£¬£¬£¬£¬ÎÞ·¨Âú×ãÈÔÔÚÔö³¤µÄÐèÒª¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÀûÓÃÈËÃǶÔFlipper ZeroµÄÐËÖ¼°Æä¹©¸øÇ·È±£¬£¬£¬£¬£¬£¬£¬´´½¨É̵ê¼Ù×°ÏúÊÛËü¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±·¢ÏÖÁËαÔìµÄÈý¸öTwitterÕË»§ºÍÁ½¸öÉ̵ꡣ¡£¡£¡£¡£¡£¡£¡£½áÕËʱÂò¼Ò»á½øÈë´¹µöÒ³Ãæ£¬£¬£¬£¬£¬£¬£¬²¢±»ÒªÇóÊäÈëÓʼþµØÖ·¡¢ÐÕÃûºÍËÍ»õµØÖ·£¬£¬£¬£¬£¬£¬£¬¶øºóÑ¡ÔñʹÓÃÒÔÌ«·»»ò±ÈÌØ±Ò¸¶¿î¡£¡£¡£¡£¡£¡£¡£¡£´Ë´¦ÁгöµÄÇ®°üµØÖ·Ã»ÓÐÊÕµ½Èκθ¶¿î£¬£¬£¬£¬£¬£¬£¬ËùÒÔҪôÊǸÃÉ̵êûÓÐÆµ½ÈκÎÈË£¬£¬£¬£¬£¬£¬£¬ÒªÃ´ÊÇÔÚÿ´ÎÂòÂôºó¶¼Ê¹ÓÃеÄÇ®°ü¡£¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/ongoing-flipper-zero-phishing-attacks-target-infosec-community/
6¡¢Security Joes°ä²¼Raspberry RobinлµÄ»ã±¨
1ÔÂ3ÈÕ£¬£¬£¬£¬£¬£¬£¬Security Joes°ä²¼»ã±¨³ÆRaspberry RobinÆðÍ·Õë¶ÔÅ·Ö޵ĽðÈںͱ£ÏÕÐÐÒµ¡£¡£¡£¡£¡£¡£¡£¡£¶ÔÒ»´Î´ËÀ๥»÷µÄȡ֤µ÷²éÏÔʾ£¬£¬£¬£¬£¬£¬£¬ËüʹÓÃÁËÒ»¸ö7-ZipÎļþ£¬£¬£¬£¬£¬£¬£¬¸ÃÎļþÊÇͨ¹ýÉ繤¹¥»÷ͨ¹ýÖ¸±êµÄä¯ÀÀÆ÷ÏÂÔØµÄ£¬£¬£¬£¬£¬£¬£¬Ô̺¬Ò»¸öMSI×°Ö÷¨Ê½Îļþ£¬£¬£¬£¬£¬£¬£¬Ö¼ÔÚ·Ö·¢¶à¸öÄ£¿£¿£¿£¿£¿£¿£¿é¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÁíÒ»¸ö°¸ÀýÖУ¬£¬£¬£¬£¬£¬£¬Ö¸±êÊÇͨ¹ýÍйÜÔÚ·Ö·¢¸æ°×Èí¼þµÄÓòÉϵÄÚ²ÆÐÔ¸æ°×ÏÂÔØµÄZIPÎļþ¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±·¢ÏÖͳһ¸öQNAP·þÎñÆ÷±»ÓÃÓÚ¶àÂÖ¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ö¸±êµÄÊý¾Ý²»ÔÙÊÇ´¿Îı¾´ó¾Ö£¬£¬£¬£¬£¬£¬£¬¶øÊÇRC4¼ÓÃܵġ£¡£¡£¡£¡£¡£¡£¡£
https://www.securityjoes.com/post/raspberry-robin-detected-itw-targeting-insurance-financial-institutes-in-europe


¾©¹«Íø°²±¸11010802024551ºÅ