ͨѶ¹«Ë¾T-MobileÅû¶2023ÄêµÚ¶þÆðÊý¾Ýй¶ÊÂÎñ

°ä²¼¹¦·ò 2023-05-04

1¡¢Í¨Ñ¶¹«Ë¾T-MobileÅû¶2023ÄêµÚ¶þÆðÊý¾Ýй¶ÊÂÎñ


¾ÝýÌå5ÔÂ1ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬ £¬£¬Í¨Ñ¶¹«Ë¾T-MobileÅû¶ÁË2023ÄêµÚ¶þÆðÊý¾Ýй¶ÊÂÎñ¡£¡£¡£ ¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬ £¬£¬´Ó2ÔÂÏÂÑ®ÆðÍ·µÄÒ»¸ö¶àÔÂÄÚ£¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßÄܹ»½Ó¼ûÆäÊý°ÙÃû¿Í»§µÄÓ×ÎÒÐÅÏ¢¡£¡£¡£ ¡£¡£¡£¡£¡£Õâ´ÎÊÂÎñ½öÓ°ÏìÁË836ÃûÓû§£¬£¬£¬£¬£¬£¬ £¬£¬µ«ÊÇй¶µÄÐÅÏ¢Á¿¼«¶È¿í·º£¬£¬£¬£¬£¬£¬ £¬£¬ÊÜÓ°ÏìµÄÓ×ÎÒ½«Ãæ¶ÔÉí·ÝµÁÓúʹ¹µö¹¥»÷¡£¡£¡£ ¡£¡£¡£¡£¡£T-MobileÒÑΪÊÜÓ°ÏìÓû§³ÁÖÃÕÊ»§PIN£¬£¬£¬£¬£¬£¬ £¬£¬²¢Í¨¹ýTransunion myTrueIdentityÌṩ¡¢¹©Á½ÄêµÄÃâ·ÑÐÅÓþ¼à¿ØºÍÉí·Ý͵ÇÔ¼ì²â·þÎñ¡£¡£¡£ ¡£¡£¡£¡£¡£1Ô·Ý£¬£¬£¬£¬£¬£¬ £¬£¬T-MobileÔâµ½ÁË2023ÄêµÄ³õ´ÎÊý¾Ýй¶£¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßÇÔÈ¡ÁË3700ÍòÓû§µÄÓ×ÎÒÐÅÏ¢¡£¡£¡£ ¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/t-mobile-discloses-second-data-breach-since-the-start-of-2023/


2¡¢µÂ¹úITÌṩÉÌBitmarckÔâµ½¹¥»÷ËùÓÐϵÍÂäÙʱ¹Ø¹Ø


¾Ý5ÔÂ1ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬ £¬£¬µÂ¹úIT·þÎñÌṩÉÌÔâµ½ÁËÍøÂç¹¥»÷¡£¡£¡£ ¡£¡£¡£¡£¡£ÕâµÂ¹ú×î´óµÄIT¹«Ë¾Ö®Ò»£¬£¬£¬£¬£¬£¬ £¬£¬Îª¹«¹²½¡È«±£ÏÕÁìÓòµÄ80¶à¼Ò×éÖ¯Ìṩ¼¼Êõ»ù´¡ÉèÊ©ºÍ·þÎñ¡£¡£¡£ ¡£¡£¡£¡£¡£¼ì²âµ½¹¥»÷ºó£¬£¬£¬£¬£¬£¬ £¬£¬¸Ã¹«Ë¾Á¢¿Ì¹Ø¹ØÁ˿ͻ§ºÍÄÚ²¿ÏµÍ³£¬£¬£¬£¬£¬£¬ £¬£¬ÒÔ¼°Êý¾ÝÖÐÐÄ¡£¡£¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ö¸³öûº±¼û¾Ýй¶£¬£¬£¬£¬£¬£¬ £¬£¬´æ´¢ÔÚEHRÖеϼÕßÊý¾Ý²»»áÊܵ½¹¥»÷µÄÓ°Ïì¡£¡£¡£ ¡£¡£¡£¡£¡£Ö»¹Ü·þÎñÔÚÖ𲽸´Ô­£¬£¬£¬£¬£¬£¬ £¬£¬µ«BitmarckÔ¤¼ÆÔÚÖжÏÈÔ½«³ÖÐø¡£¡£¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ã»ÓÐй©Óйع¥»÷µÄ¸ü¶àϸ½Ú¡£¡£¡£ ¡£¡£¡£¡£¡£1Ô·Ý£¬£¬£¬£¬£¬£¬ £¬£¬Bitmarck²úÉúÊý¾Ýй¶£¬£¬£¬£¬£¬£¬ £¬£¬Ó°ÏìÁ˳¬¹ý300000Ãû±£µ¥³ÖÓÐÈË¡£¡£¡£ ¡£¡£¡£¡£¡£


https://securityaffairs.com/145568/hacking/bitmarck-cyberattack.html


3¡¢TBK DVRÉ豸Éí·ÝÑéÖ¤ÈÆ¹ý·ì϶CVE-2018-9995±»ÀûÓÃ


ýÌå5ÔÂ2Èճƣ¬£¬£¬£¬£¬£¬ £¬£¬Fortinet·¢ÏÖÀûÓÃTBK DVRÉ豸ÖÐÉí·ÝÑéÖ¤ÈÆ¹ý·ì϶£¨CVE-2018-9995£©µÄ¹¥»÷¼¤Ôö¡£¡£¡£ ¡£¡£¡£¡£¡£¸Ã·ì϶CVSSÆÀ·ÖΪ9.8£¬£¬£¬£¬£¬£¬ £¬£¬¿É±»ÓÃÀ´ÈƹýÉ豸ÉϵÄÉí·ÝÑéÖ¤²¢»ñµÃÖ¸±êÍøÂçµÄ½Ó¼ûȨÏÞ¡£¡£¡£ ¡£¡£¡£¡£¡£¾ÝFortinet³Æ£¬£¬£¬£¬£¬£¬ £¬£¬½ØÖÁ4ÔÂÓг¬¹ý50000´ÎÊÔIJÀûÓô˷ì϶¹¥»÷TBK DVRÉ豸µÄ»î¶¯¡£¡£¡£ ¡£¡£¡£¡£¡£2018Äê4Ô£¬£¬£¬£¬£¬£¬ £¬£¬×êÑÐÈËÔ±°ä²¼ÁË´Ë·ì϶µÄPoC´úÂë¡£¡£¡£ ¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬ £¬£¬¹©¸øÉÌÉÐδ°ä²¼°²È«²¹¶¡À´½â¾ö¸Ã·ì϶¡£¡£¡£ ¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬ £¬£¬ÀûÓÃMVPower CCTV DVRÖÐRCE·ì϶£¨CVE-2016-20016£©µÄ¹¥»÷Ò²ÔÚ¼¤Ôö¡£¡£¡£ ¡£¡£¡£¡£¡£


https://www.infosecurity-magazine.com/news/high-severity-flaw-tbk-dvr-camera/


4¡¢ÃÀ¹ú´ïÀ­Ë¹ÊÐÔâµ½RoyalµÄÀÕË÷¹¥»÷Ó°Ï쾯¾ÖµÈ·þÎñ


5ÔÂ3ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬£¬ £¬£¬µÂ¿ËÈøË¹ÖÝ´ïÀ­Ë¹ÊÐÔâµ½ÁËRoyalÀÕË÷¹¥»÷£¬£¬£¬£¬£¬£¬ £¬£¬Æä¹Ø¹ØÁ˲¿ÃÅITϵͳÒÔÔ¤·À¹¥»÷ÊæÕ¹¡£¡£¡£ ¡£¡£¡£¡£¡£´ïÀ­Ë¹ÊÇÃÀ¹úµÚ¾Å´ó³ÇÊУ¬£¬£¬£¬£¬£¬ £¬£¬È˶¡Ô¼260Íò¡£¡£¡£ ¡£¡£¡£¡£¡£±¾µØÃ½Ì屨·£¬£¬£¬£¬£¬£¬ £¬£¬¸ÃÊо¯·½µÄͨѶºÍITϵͳÔÚ±¾ÖÜÒ»ÉÏÎç±»¹Ø¹Ø¡£¡£¡£ ¡£¡£¡£¡£¡£±¾ÖÜÈý£¬£¬£¬£¬£¬£¬ £¬£¬´ïÀ­Ë¹ÊÐÈ·¶¨Æä¶à¸ö·þÎñÆ÷Ôâµ½ÀÕË÷Èí¼þµÄ¹¥»÷£¬£¬£¬£¬£¬£¬ £¬£¬Ó°ÏìÁ˼¸¸öÖ°ÄÜÇøÓò£¬£¬£¬£¬£¬£¬ £¬£¬Ô̺¬´ïÀ­Ë¹¾¯Ô±¾ÖÍøÕ¾¡£¡£¡£ ¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬ £¬£¬¸ÃÊеÄÍøÂç´òÓ¡»úÔÚ5ÔÂ3ÈÕÔçÉÏÆðÍ·´òÓ¡Êê½ð¼Í¼£¬£¬£¬£¬£¬£¬ £¬£¬ÏÔʾÁËRoyalÊÇÕâ´Î¹¥»÷»î¶¯µÄÄ»ºóºÚÊÖ¡£¡£¡£ ¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬ £¬£¬Éв»Ã÷ÏÔÊÇ·ñº±¼û¾Ý±»µÁ¡£¡£¡£ ¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/city-of-dallas-hit-by-royal-ransomware-attack-impacting-it-services/


5¡¢Å·ÖÞ¾¯·½µÄSpecTorÐж¯¿ÛÁô288Ãû°µÍø¹©¸øÉ̺Ϳͻ§


ýÌå5ÔÂ2ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬ £¬£¬Å·ÖÞÐ̾¯×é֯Эµ÷µÄ¹ú¼Ê·¨ÂÉÐж¯SpecTor²é»ñÁË·¸·¨°µÍøÊг¡Monopoly Market¡£¡£¡£ ¡£¡£¡£¡£¡£°ÂµØÀû¡¢·¨¹ú¡¢µÂ¹úºÍºÉÀ¼µÈ¾Å¸ö¹ú¶ÈµÄ·¨Âɲ¿ÃÅ¿ÛÁôÁË288ÃûÉæÏÓÔÚ°µÍøÂòÂô¶¾Æ·µÄÈË£¬£¬£¬£¬£¬£¬ £¬£¬·¨Âɲ¿ÃÅ»¹½É»ñÁ˳¬¹ý5080ÍòÅ·Ôª£¨5340ÍòÃÀÔª£©µÄÏÖ½ðºÍÐ鹹Ǯ±ÒµÈ¡£¡£¡£ ¡£¡£¡£¡£¡£Monopoly MarketÓÚ2019ÄêÆô¶¯£¬£¬£¬£¬£¬£¬ £¬£¬Æä»ù´¡ÉèÊ©ÓÚ2021Äê12Ô±»µÂ¹úµ±¾Ö²é·â£¬£¬£¬£¬£¬£¬ £¬£¬Ö®ºóËü±»ÓÃÓÚÍøÂçÔÚ¸ÃÍøÕ¾ÉÏÂòÂô¶¾Æ·µÄ¹©¸øÉ̺Ϳͻ§µÄÖ¤¾Ý¡£¡£¡£ ¡£¡£¡£¡£¡£Õâ´Î¿ÛÁôµÄ´ó²¿ÃÅÏÓÒÉÈËÔÚÃÀ¹ú£¨153ÈË£©£¬£¬£¬£¬£¬£¬ £¬£¬Æä´ÎÊÇÓ¢¹ú£¨55ÈË£©ºÍµÂ¹ú£¨52ÈË£©¡£¡£¡£ ¡£¡£¡£¡£¡£


https://securityaffairs.com/145656/cyber-crime/law-enforcement-op-spector.html


6¡¢Elastic°ä²¼¶ñÒâÈí¼þLOBSHOT¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨


ElasticÔÚ4ÔÂ25ÈÕÅû¶ÁËжñÒâÈí¼þLOBSHOTͨ¹ýGoogle Ads·Ö·¢µÄ»î¶¯¡£¡£¡£ ¡£¡£¡£¡£¡£¸Ã»î¶¯¼ÙÒâºÏ·¨µÄµÄAnyDeskÔ¶³ÌÖÎÀíÈí¼þ£¬£¬£¬£¬£¬£¬ £¬£¬ÍÆËÍÁËÒ»¸ö¶ñÒâMSIÎļþ£¬£¬£¬£¬£¬£¬ £¬£¬Í¨¹ýÖ´ÐÐPowerShellºÅÁîÀ´ÏÂÔØDLL¡£¡£¡£ ¡£¡£¡£¡£¡£ÏÂÔØµÄDLLÎļþΪ¶ñÒâÈí¼þLOBSHOT£¬£¬£¬£¬£¬£¬ £¬£¬±£ÁôÔÚC:\ProgramDataÎļþ¼ÐÖУ¬£¬£¬£¬£¬£¬ £¬£¬ÓÉRunDLL32.exeÖ´ÐС£¡£¡£ ¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬ £¬£¬LOBSHOT»¹²¿ÊðÁËÒ»¸öhVNC£¨°µ²ØÐé¹¹ÍøÂçÍÆË㣩ģ¿ £¿£¿ £¿£¿£¿é£¬£¬£¬£¬£¬£¬ £¬£¬¿É¶ÔÖ¸±ê½øÐÐÖ±½ÓÇÒ²»»á±»·¢ÏֵĽӼû¡£¡£¡£ ¡£¡£¡£¡£¡£LOBSHOTÖØÒªÕë¶Ô½ðÈÚÐÐÒµ£¬£¬£¬£¬£¬£¬ £¬£¬Ñ¡È¡ÁËÒøÐÐľÂíºÍÐÅÏ¢ÇÔȡְÄÜ¡£¡£¡£ ¡£¡£¡£¡£¡£


https://www.elastic.co/cn/security-labs/elastic-security-labs-discovers-lobshot-malware