Fortinet¹Ì¼þ¸üн¨¸´Fortigate SSL-VPNÖеÄRCE
°ä²¼¹¦·ò 2023-06-131¡¢Fortinet¹Ì¼þ¸üн¨¸´Fortigate SSL-VPNÖеÄRCE
¾ÝýÌå6ÔÂ12ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬Fortinet°ä²¼ÁËFortigate¹Ì¼þ¸üУ¬£¬£¬£¬£¬£¬½¨¸´ÁËSSL VPNÉ豸ÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2023-27997£©¡£¡£¡£¡£¡£×êÑÐÈËÔ±³Æ£¬£¬£¬£¬£¬£¬¼´±ãÆôÓÃÁËMFA£¬£¬£¬£¬£¬£¬¸Ã·ì϶Ҳ»á±»¶ñÒâ´úÀíÓÃÀ´Í¨¹ýVPN½øÐÐ×ÌÈÅ¡£¡£¡£¡£¡£Æù½ñΪֹ£¬£¬£¬£¬£¬£¬ËùÓа汾³ÇÊÐÊܵ½¸Ã·ì϶µÄÓ°Ïì¡£¡£¡£¡£¡£Ä¿Ç°ÉÐδÅû¶¹ØÓÚÕâÒ»·ì϶µÄ¾ßÌåÐÅÏ¢¡£¡£¡£¡£¡£¾Ý×îÐÂ×ÊѶ£¬£¬£¬£¬£¬£¬¸Ã·ì϶¿ÉÄÜÒѱ»ÓÃÓÚÕë¶Ôµ±¾Ö»ú¹¹¡¢Ôì×÷ÐÐÒµºÍ¹Ø¼ü»ù´¡ÉèÊ©µÄ¹¥»÷¡£¡£¡£¡£¡£
https://securityaffairs.com/147353/hacking/fortinet-fortigate-rce.html
2¡¢Microsoft AzureÃÅ»§ÍøÕ¾ÁÙʱÖжϲ¢Î´Ð¹Â©µ××ÓÔÒò
¾Ý6ÔÂ9ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬Microsoft AzureÃÅ»§ÍøÕ¾ÁÙʱÖжϡ£¡£¡£¡£¡£Óû§½Ó¼ûʱ»áÏÔʾ¡°8827Ì«Ñô¼¯ÍÅ·þÎñĿǰ²»³ÉÓᣡ£¡£¡£¡£ÎÒÃÇÔÚÖÂÁ¦¾¡¿ì¸´ÔËùÓзþÎñ¡£¡£¡£¡£¡£ÇëÉÔºóÔÙ»ØÀ´²é¿´¡£¡£¡£¡£¡£¡±µ«ÊÇÒÆ¶¯ÀûÓÃËÆºõ²»ÊÜÓ°Ïì¡£¡£¡£¡£¡£Óë´Ëͬʱ£¬£¬£¬£¬£¬£¬ºÚ¿ÍÍÅ»ïAnonymous SudanÐû³Æ¶Ô¸ÃÍøÕ¾½øÐÐÁËDDoS¹¥»÷£¬£¬£¬£¬£¬£¬²¢¹«¿ªÁËÒ»ÕÅÎÞ·¨Õý³£¹¤×÷µÄÒ³Ãæ½ØÍ¼¡£¡£¡£¡£¡£Î¢ÈíÉÐδȷÈÏÕâЩÖжÏÊÇ·ñÊÇÓÉDDoS¹¥»÷µ¼Öµġ£¡£¡£¡£¡£½ØÖÁ6ÔÂ9ÈÕÏÂÎç1:32 ET£¬£¬£¬£¬£¬£¬AzureÍøÕ¾ÔÙ´ÎÉÏÏß²¢²»±äÔËÐÓ×£¡£¡£¡£¡£¾Ý6ÔÂ12ÈÕ×îб¨Â·£¬£¬£¬£¬£¬£¬Î¢Èíй©µ¼ÖÂÖжϵijõ²½ÔÒòÊÇÍøÂçÁ÷Á¿¼¤Ôö¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/microsoft/microsofts-azure-portal-down-following-new-claims-of-ddos-attacks/
3¡¢°Ä´óÀûÑÇÂÉËùHWL EbsworthÔâµ½ALPHV¹¥»÷¾Ü¸¶Êê½ð
6ÔÂ9ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬£¬°Ä´óÀûÑÇ×î´óµÄÂÉʦÊÂÎñËùÖ®Ò»HWL EbsworthÈ·ÈÏÆäÔâµ½ºÚ¿Í¹¥»÷¡£¡£¡£¡£¡£ÀÕË÷ÍÅ»ïALPHV£¨Ò²³ÆBlackCat£©ÔÚÆäÍøÕ¾°ä²¼ÁË1.45 TBµÄÊý¾Ý£¬£¬£¬£¬£¬£¬Ðû³ÆÔ̺¬ÓÚ½ñÄê4Ô´ӸÃÂÉËùµÄϵͳÖÐÇÔÈ¡µÄ³¬¹ýÒ»°ÙÍò·ÝÎļþ¡£¡£¡£¡£¡£²¢ÍþвÈôÊDz»½»Êê½ð£¬£¬£¬£¬£¬£¬½«Ð¹Â¶¸ü¶àÎļþ¡£¡£¡£¡£¡£ÂÉËù½²»°È˰µÊ¾£¬£¬£¬£¬£¬£¬ËûÃDz»»áÂú×ã¸ÃÍÅ»ïµÄÒªÇ󣬣¬£¬£¬£¬£¬¼´±ãÕâÒâζ×ÅËûºÍËûµÄ¿Í»§½«²»µÃ²»½ÓÊÜÊý¾Ýй¶µÄºó¹û¡£¡£¡£¡£¡£ÓÉÓÚ¸ÃÂÉËùÒ²Ó빫¹²²¿ÃÅÓÐÒµÎñÍùÀ´£¬£¬£¬£¬£¬£¬Òò¶øÈËÃDz»°²Ð¹Â¶µÄÎļþÔ̺¬Óë¹ú¶ÈÊÂÎñÓйصÄÃô¸Ð»ò»úÃÜÐÅÏ¢¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/blackcat-ransomware-fails-to-extort-australian-commercial-law-giant/
4¡¢Intellihartx±»ClopÀÕË÷¹¥»÷Ô¼49ÍòÓû§µÄÐÅϢй¶
ýÌå6ÔÂ12Èճƣ¬£¬£¬£¬£¬£¬¼¼Êõ¹«Ë¾IntellihartxÔâµ½ClopµÄÀÕË÷¹¥»÷£¬£¬£¬£¬£¬£¬Ð¹Â¶ÁË489830Óû§µÄÓ×ÎҺͽ¡È«ÐÅÏ¢¡£¡£¡£¡£¡£IntellihartxÊÇÒ»¼ÒΪҽԺÌṩ»¼ÕßÓà¶î½â¾ö·þÎñµÄ¹«Ë¾¡£¡£¡£¡£¡£¹¥»÷²úÉúÔÚ½ñÄêÔçЩʱ³½£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÀûÓÃÁËGoAnywhere·ì϶£¨CVE-2023-0669£©¡£¡£¡£¡£¡£Ð¹Â¶µÄÐÅÏ¢Éæ¼°ÐÕÃû¡¢µØÖ·¡¢Ò½ÁÆÕ˵¥ºÍ±£ÏÕÐÅÏ¢ÒÔ¼°Éç»á°²È«ºÅÂëµÈ¡£¡£¡£¡£¡£¸Ã¹«Ë¾½«ÎªÊÜÓ°ÏìÓû§ÌṩExperianµÄΪÆÚÒ»ÄêµÄÃâ·ÑÐÅÓþ¼à¿Ø·þÎñ¡£¡£¡£¡£¡£
https://securityaffairs.com/147380/data-breach/intellihartx-data-breach.html
5¡¢·¨¹ú¹æÄ£×î´óµÄ°¬¿Ë˹ÂíÈü´óѧ±»¹¥»÷ϵÍÂäÙʱÎÞ·¨½Ó¼û
ýÌå6ÔÂ8ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬£¬·¨¹ú°¬¿Ë˹-ÂíÈü´óѧ£¨Aix-Marseille University£©Ôâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬ÏµÍÂäÙʱÎÞ·¨½Ó¼û¡£¡£¡£¡£¡£ËüÊǴ˿̷¨¹úºÍ·¨ÓïµØÓò¹æÄ£×î´óµÄ´óѧ£¬£¬£¬£¬£¬£¬Æäº¹Çà¿É×·ÒäÖÁ1409Äê¡£¡£¡£¡£¡£ÕâËù´óѧ³Æ¹¥»÷À´×Ô±í¹ú£¬£¬£¬£¬£¬£¬Æä°²Õûϵͳ´¥·¢Á˾¯±¨£¬£¬£¬£¬£¬£¬Òò¶øËûÃÇ¿ÉÄÜÔÚÔì³É¸ü´óµÄÓ°Ïì֮ǰ½«ÏµÍ³¹Ø¹Ø¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬¹¥»÷µÄÐÔÖÊÉÐδ֤ʵ£¬£¬£¬£¬£¬£¬Ò²²»ÖªÂ·ÊÇ·ñ´æÔÚÊý¾Ýй¶¡£¡£¡£¡£¡£¸ÃУ´òËã´ÓÉÏÖÜËÄÆðÍ·Ö𲽸´Ô·þÎñ£¬£¬£¬£¬£¬£¬µ«Ã»ÓÐ×¢Ã÷±ØÒª¶à¾Ã£¬£¬£¬£¬£¬£¬Ñ§ÉúºÍÔ±¹¤ÈÔÎÞ·¨²Î¼ÓÒÀÀµÓÚ½Ó¼ûѧÌÃÍøÂçÉϵŤ¾ßµÄ½ÌÓý»î¶¯¡£¡£¡£¡£¡£
https://therecord.media/aix-marseille-university-cyberattack-france
6¡¢ESET¹«¿ª¹ØÓÚAsylum Ambuscade¹¥»÷»î¶¯µÄ¸ü¶àϸ½Ú
6ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬ESET¹«¿ªÁ˹ØÓÚAsylum Ambuscade¹¥»÷»î¶¯µÄ¸ü¶àϸ½Ú¡£¡£¡£¡£¡£Asylum AmbuscadeÖÁÉÙ´Ó2020ÄêÆðÍ·»îÔ¾£¬£¬£¬£¬£¬£¬ÖØÒªÕë¶Ô·ÖÆçµØÓòÒøÐпͻ§ºÍ¼ÓÃÜÇ®±ÒÂòÂôËù¡£¡£¡£¡£¡£¸ÃÍÅ»ïµÄ´ó²¿ÃÅÖ²È뷨ʽ¶¼ÊÇÓþ籾˵»°¿ª·¢µÄ£¬£¬£¬£¬£¬£¬ÀýÈçAutoHotkey¡¢JavaScript¡¢Lua¡¢PythonºÍVBS¡£¡£¡£¡£¡£ESET°µÊ¾£¬£¬£¬£¬£¬£¬ÔÚ2023ÄêµÄ»î¶¯Öз¢ÏÖÁËÐµĹ¥»÷ÔØÌ壬£¬£¬£¬£¬£¬Ô̺¬Äܹ»½«Óû§³Á¶¨Ïòµ½ÔËÐжñÒâJavaScript´úÂëµÄÍøÕ¾µÄGoogle Ads¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÓÚ3ÔÂ·ÝÆðÍ··Ö·¢Ð¹¤¾ßNodebot£¬£¬£¬£¬£¬£¬ÕâËÆºõÊÇAhkbotµÄNode.js¶Ë¿Ú¡£¡£¡£¡£¡£
https://www.welivesecurity.com/2023/06/08/asylum-ambuscade-crimeware-or-cyberespionage/


¾©¹«Íø°²±¸11010802024551ºÅ