Rollbar¹«Ë¾µÄϵͳÔâµ½¹¥»÷µ¼Ö¿ͻ§µÄ½Ó¼ûÁîÅÆÐ¹Â¶
°ä²¼¹¦·ò 2023-09-151¡¢Rollbar¹«Ë¾µÄϵͳÔâµ½¹¥»÷µ¼Ö¿ͻ§µÄ½Ó¼ûÁîÅÆÐ¹Â¶
¾Ý9ÔÂ13ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬Èí¼þBug¸ú×Ù¹«Ë¾RollbarµÄϵͳÔâµ½ÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬µ¼Ö²¿ÃÅÊý¾Ýй¶¡£¡£¡£¡£¡£¡£RollbarÓÚ9ÔÂ6ÈÕÔÚÉó²éÊý¾Ý¿âÈÕ־ʱ·¢ÏÖÁËÕâÒ»ÎÊÌ⣬£¬£¬£¬£¬£¬£¬£¬¸ÃÈÕÖ¾ÏÔʾ·þÎñÕÊ»§±»ÓÃÀ´µÇ¼»ùÓÚÔÆµÄBug¼à¿ØÆ½Ì¨¡£¡£¡£¡£¡£¡£ºóÐøµ÷²é·¢ÏÖ£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÔÚ8ÔÂ9ÈÕÖÁ8ÔÂ11ÈÕ½Ó¼ûÁËÆäϵͳ£¬£¬£¬£¬£¬£¬£¬£¬Éæ¼°Ãô¸ÐµÄ¿Í»§ÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬ÀýÈçÓû§Ãû¡¢ÓʼþµØÖ·¡¢ÕÊ»§ÃûºÍÏîÄ¿ÐÅÏ¢µÈ¡£¡£¡£¡£¡£¡£¸ü³ÁÒªµÄÊÇ£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß»¹¼ìË÷Á˿ͻ§ÓëRollbarÏîÄ¿½»»¥µÄÏîÄ¿½Ó¼ûÁîÅÆ¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/rollbar-discloses-data-breach-after-hackers-stole-access-tokens/
2¡¢Ó¢¹ú´óÂü³¹Ë¹Ìؾ¯¾Ö(GMP)й©²¿ÃÅÔ±¹¤µÄÐÅϢй¶
ýÌå9ÔÂ14Èճƣ¬£¬£¬£¬£¬£¬£¬£¬Ó¢¹ú´óÂü³¹Ë¹Ìؾ¯Ô±¾Ö(GMP)²¿ÃÅÔ±¹¤µÄÓ×ÎÒÐÅϢй¶£¬£¬£¬£¬£¬£¬£¬£¬ÔÒòÊǵÚÈý·½¹©¸øÉÌÔâµ½ÀÕË÷¹¥»÷¡£¡£¡£¡£¡£¡£°ä²¼µÄÉêÃ÷ÖÐδÌá¼°±»¹¥»÷¹«Ë¾µÄÃû³Æ£¬£¬£¬£¬£¬£¬£¬£¬µ«ËüÊÇGMPµÅ×¢¹úÆäËü»ú¹¹µÄ·þÎñ¹©¸øÉÌ¡£¡£¡£¡£¡£¡£GMP³ÆÔ±¹¤µÄ²ÆÕþÐÅÏ¢²¢Î´Ð¹Â¶¡£¡£¡£¡£¡£¡£Ô¼Ò»¸öÔÂǰ£¬£¬£¬£¬£¬£¬£¬£¬±±°®¶ûÀ¼¾¯¾Ö(PSNI)Ò²²úÉúÁËһ·ÀàËÆµÄÊÂÎñ£¬£¬£¬£¬£¬£¬£¬£¬Ð¹Â¶ÁË10000¶àÃû¾¯Ô±µÄÓ×ÎÒÉí·ÝÐÅÏ¢(PII)¡¢¾üÏκ͵ØÎ»¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/150828/data-breach/greater-manchester-police-gmp-data-breach.html
3¡¢SymantecÔÚ×°ÖÃLockBitʧ°ÜµÄ¹¥»÷Öз¢ÏÖеÄ3AM
9ÔÂ13ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Symantec³ÆÆä·¢ÏÖÁËÒ»ÖÖеÄÀÕË÷Èí¼þ3AM¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±³Æ£¬£¬£¬£¬£¬£¬£¬£¬Ê¹ÓÃ3AMµÄ¹¥»÷»î¶¯ºÜÉÙ¼û£¬£¬£¬£¬£¬£¬£¬£¬Æù½ñΪֹ½öÔÚ¹¥»÷ÕßδÄÜ×°ÖÃLockBitµÄÒ»´Î¹¥»÷»î¶¯Öз¢ÏÖ¹ý¸Ã¶ñÒâÈí¼þµÄ·Ö·¢¡£¡£¡£¡£¡£¡£3AMÓÉRust¿ª·¢£¬£¬£¬£¬£¬£¬£¬£¬ÔÚÆðÍ·¼ÓÃÜ֮ǰ£¬£¬£¬£¬£¬£¬£¬£¬Ëü»á³¢ÊÔÖÕ³¡¶à¸ö·þÎñ£¬£¬£¬£¬£¬£¬£¬£¬ÊµÏÖ¼ÓÃܺó»áɾ³ý¾íÓ°(VSS)¸±±¾¡£¡£¡£¡£¡£¡£ÆäΪ¼ÓÃÜÎļþ¸½¼ÓµÄÀ©´óÃûÊÇ.Threeamtime£¬£¬£¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±ÉÐδȷ¶¨3AM±³ºóµÄ¹¥»÷ÕßÊÇ·ñÓëÒÑÖªµÄ¹¥»÷ÍÅ»ïÓйØÁª¡£¡£¡£¡£¡£¡£
https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/3am-ransomware-lockbit
4¡¢TrendMicroÏêÊöRedLineºÍVidarÊÇÈôºÎÀûÓÃEVÖ¤Êé
TrendMicroÔÚ9ÔÂ13ÈÕÏêÊöÁËRedLineºÍVidarµÄ¹¥»÷ÕßÈôºÎÀûÓôøÓÐÀ©´óÑéÖ¤(EV)´úÂëÊðÃûµÄÖ¤Êé¡£¡£¡£¡£¡£¡£×îе÷²éÏÔʾ£¬£¬£¬£¬£¬£¬£¬£¬RedLineºÍVidar±³ºóµÄ¹¥»÷Õ߯ðͷʹÓÃÓë´«²¼ÐÅÏ¢ÇÔÈ¡·¨Ê½Ò»ÑùµÄ·½Ê½À´·Ö·¢ÀÕË÷Èí¼þpayload¡£¡£¡£¡£¡£¡£ÔÚÕâÒ»ÌØÊâ°¸ÀýÖУ¬£¬£¬£¬£¬£¬£¬£¬Ö¸±ê×î³õÊÕµ½µÄÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ´øÓÐÀ©´óÑéÖ¤£¨EV£©´úÂëÊðÃûÖ¤Ê飬£¬£¬£¬£¬£¬£¬£¬²»¾ÃºóËûÃÇÆðͷͨ¹ýͬÑùµÄõè¾¶ÊÕµ½ÁËÀÕË÷Èí¼þpayload¡£¡£¡£¡£¡£¡£Ö»¹ÜCABFÖ´ÐÐÁ˸üÑϸñµÄ°²È«´ëÊ©£¬£¬£¬£¬£¬£¬£¬£¬µ«¹¥»÷ÕßÈÔÄÜ´«²¼Ê¹ÓÃEVÖ¤Êé½øÐÐÊðÃûµÄÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¡£
https://www.trendmicro.com/en_us/research/23/i/redline-vidar-first-abuses-ev-certificates.html
5¡¢Î¢ÈíÌáÐÑStorm-0324½üÆÚÀûÓÃMS TeamsµÄ´¹µö¹¥»÷
¾ÝýÌå9ÔÂ13ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬Î¢ÈíÌáÐÑÖØÒªÓëÀÕË÷ÍÅ»ïºÏ×÷µÄStorm-0324×î½üת¶øÊ¹ÓÃMicrosoft Teams´¹µö¹¥»÷À´ÈëÇÔìóÒµÍøÂç¡£¡£¡£¡£¡£¡£´Ó7ÔÂ·ÝÆðÍ·£¬£¬£¬£¬£¬£¬£¬£¬Storm-0324±»·¢ÏÖʹÓÃTeams·¢ËÍ´¹µöµö¶ü£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬Ö¸Ïò¶ñÒâSharePointÍйÜÎļþµÄÁ´½Ó¡£¡£¡£¡£¡£¡£¶ÔÓڴ˻£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÍÅ»ï×îÓпÉÄÜÒÀÀµÓÚÃûΪTeamsPhisherµÄ¿ªÔ´¹¤¾ß¡£¡£¡£¡£¡£¡£¸Ã¹¤¾ß¿ÉÄÜÈÆ¹ý¶ÔÀ´×Ô±í²¿Óû§µÄ´«ÈëÎļþµÄÏÞ¶È£¬£¬£¬£¬£¬£¬£¬£¬²¢ÏòTeamsÓû§·¢ËÍ´¹µö¸½¼þ¡£¡£¡£¡£¡£¡£Î¢Èí°µÊ¾Ê®·Ôì÷³ÁÕâЩ´¹µö»î¶¯£¬£¬£¬£¬£¬£¬£¬£¬²¢ÍƳöÁ˶àÏî¸Ä½ø´ëÊ©£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¸üºÃµØ·ÀÓùÕâЩ¹¥»÷¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2023/09/microsoft-warns-of-new-phishing.html
6¡¢Kaspersky°ä²¼2023ÄêÉϰëÄ깤ҵ×Ô¶¯»¯ÏµÍ³µÄ»ã±¨
9ÔÂ13ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Kaspersky°ä²¼2023ÄêÉϰëÄ깤ҵ×Ô¶¯»¯ÏµÍ³µÄͳ¼Æ»ã±¨¡£¡£¡£¡£¡£¡£2023ÄêÉϰëÄ꣬£¬£¬£¬£¬£¬£¬£¬±»À¹½Ø¶ñÒâ¶ÔÏóµÄICSÍÆËã»ú±ÈÀý½Ï2022ÄêϰëÄê½µÂäÁË0.3¸ö°Ù·Öµã£¬£¬£¬£¬£¬£¬£¬£¬½µÖÁ34%¡£¡£¡£¡£¡£¡£´ÓµØÀíµØÎ»À´¿´£¬£¬£¬£¬£¬£¬£¬£¬·ÇÖÞÔâµ½¹¥»÷µÄICSÍÆËã»ú×î¶à£¨Õ¼±È40.3%£©£¬£¬£¬£¬£¬£¬£¬£¬¶ø±±Å·ÖÁÉÙ£¨14.7%£©¡£¡£¡£¡£¡£¡£¹¤³ÌºÍICS¼¯³É£¨Ôö³¤2%£©¡¢Ôì×÷£¨Ôö³¤1.9%£©ºÍÄÜÔ´£¨Ôö³¤1.5%£©ÁìÓòÔâµ½¹¥»÷µÄICSÍÆËã»úÓÐËùÔö³¤¡£¡£¡£¡£¡£¡£»£»£»£»£»£»¥ÁªÍø¡¢µç×ÓÓʼþ¿Í»§¶ËºÍ¿ÉÒÆ¶¯É豸ÒÀÈ»ÊÇ×éÖ¯ÔËÓª¼¼Êõ»ù´¡ÉèÊ©ÖÐÍÆËã»úµÄÖØÒªÍþвÆðÔ´¡£¡£¡£¡£¡£¡£
https://securelist.com/threat-landscape-for-industrial-automation-systems-statistics-for-h1-2023/110605/


¾©¹«Íø°²±¸11010802024551ºÅ