¶íÂÞ˹±£ÏÕ¹«Ë¾RosgosstrakhÔâ¹¥»÷400GBÊý¾Ý±»ÏúÊÛ

°ä²¼¹¦·ò 2023-11-06

1¡¢¶íÂÞ˹±£ÏÕ¹«Ë¾RosgosstrakhÔâ¹¥»÷400GBÊý¾Ý±»ÏúÊÛ


¾ÝýÌå11ÔÂ4ÈÕ±¨Â·£¬£¬£¬£¬£¬ £¬¶íÂÞ˹µÚ¶þ´ó±£ÏÕ¹«Ë¾RosgosstrakhÔâµ½ºÚ¿Í¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬ £¬ºÚ¿ÍApathyÔÚ°µÍøÉÏÒÔ5ÍòÃÀÔªµÄ¼ÛÖµÏúÊÛRosgosstrakhµÄÊý¾Ý¿â£¬£¬£¬£¬£¬ £¬²¢½ÓÊܱÈÌØ±Ò(BTC)»òÃÅÂÞ±Ò(XMR)µÄ¸¶¿î·½Ê½¡£¡£¡£¡£¡£¡£¡£¡£±»µÁÊý¾ÝÔ̺¬¿É×·Òäµ½2010ÄêµÄͶ×ʺÍÈËÊÙ±£ÏÕ²¿ÃŵÄÈ«Êý¼Í¼£¬£¬£¬£¬£¬ £¬Éæ¼°Ô¼300Íò·ÝÒøÐжÔÕ˵¥£¬£¬£¬£¬£¬ £¬ºÍ73ÍòÈ˵ÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±³Æ£¬£¬£¬£¬£¬ £¬Õû¸öÊý¾Ý¿â¶à´ï400 GB£¬£¬£¬£¬£¬ £¬Ëû»ñµÃÁË22 GBµÄÃ÷ÎÄÌåʽJSONÊý¾Ý£¬£¬£¬£¬£¬ £¬·ÖÎö²¢·¢ÏÖÁË3ÃûGRU¼éϸµÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£


https://www.hackread.com/russia-insurer-rosgosstrakh-hacked-data-sold/


2¡¢ALPHVÐû³ÆÒÑÍøÂçÒ½Áƹ«Ë¾Henry Schein 35TBÊý¾Ý


¾Ý11ÔÂ2ÈÕ±¨Â·£¬£¬£¬£¬£¬ £¬ALPHVÐû³ÆÒÑÈëÇÖÒ½Áƹ«Ë¾Henry Schein£¬£¬£¬£¬£¬ £¬²¢ÍøÂçÁË35 TBµÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ10ÔÂ15ÈÕÅû¶£¬£¬£¬£¬£¬ £¬ÎªÁËÕмÜ14ÈÕÓ°ÏìÆäÔì×÷ºÍ·ÖÏúÒµÎñµÄÍøÂç¹¥»÷£¬£¬£¬£¬£¬ £¬²¿ÃÅϵͳ±»ÆÈ¹Ø¹Ø¡£¡£¡£¡£¡£¡£¡£¡£Ô¼ÄªÁ½Öܺ󣬣¬£¬£¬£¬ £¬ALPHV½«Henry ScheinÔö³¤µ½ÆäÍøÕ¾£¬£¬£¬£¬£¬ £¬Ðû³ÆÒÑÇÔÈ¡35 TBµÄÎļþ£¬£¬£¬£¬£¬ £¬Ô̺¬¹¤×ÊÊý¾ÝºÍ¹É¶«ÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£²¢°µÊ¾¾ÍÔڸù«Ë¾ÏÕЩʵÏÖ¸´Ô­ËùÓÐϵͳµÄ¹¤×÷ʱ£¬£¬£¬£¬£¬ £¬ËûÃÇÔٴζԹ«Ë¾µÄÉ豸½øÐÐÁ˼ÓÃÜ£¬£¬£¬£¬£¬ £¬ÓÉÓÚÔÚ½øÐеĽ»ÉæÊ§°ÜÁË¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬ £¬ALPHVÔÚÆäÍøÕ¾ÉÑþ³ØýÁËHenry Schein£¬£¬£¬£¬£¬ £¬Åú×¢¸Ã¹«Ë¾½«³Áн»Éæ»ò½»Êê½ð¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/blackcat-ransomware-claims-breach-of-healthcare-giant-henry-schein/


3¡¢´úÀí½©Ê¬ÍøÂçSocks5SystemzÒÑϰȾԼ10000¸öϵͳ


BitSightÔÚ11ÔÂ2ÈÕÅû¶ÁË´úÀí½©Ê¬ÍøÂçSocks5SystemzµÄ¾ßÌåÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£Socks5Systemz½©Ê¬·¨Ê½ÓÉPrivateLoaderºÍAmadey·Ö·¢£¬£¬£¬£¬£¬ £¬ÕâЩ¶ñÒâÈí¼þͨ³£Í¨¹ý´¹µö¹¥»÷¡¢·ì϶ÀûÓù¤¾ß°ü¡¢¶ñÒâ¸æ°×¡¢´ÓP2PÍøÂçÏÂÔØµÄľÂí¿ÉÖ´ÐÐÎļþµÈ·½Ê½´«²¼¡£¡£¡£¡£¡£¡£¡£¡£´úÀí·þÎñÔÊÐí¿Í»§Ñ¡Ôñ´Ó1ÃÀÔªµ½4000ÃÀÔª²»µÈµÄÌײÍ£¬£¬£¬£¬£¬ £¬²¢Ê¹ÓüÓÃÜÇ®±ÒÈ«¶îÖ§¸¶¡£¡£¡£¡£¡£¡£¡£¡£¸Ã½©Ê¬ÍøÂçÖÁÉÙ×Ô2016ÄêÒÔÀ´¾ÍÒÑ´æÔÚ£¬£¬£¬£¬£¬ £¬Ò£²âÊý¾ÝÏÔʾÒÑϰȾȫÇòÁìÓòÄÚÔ¼10000¸öϵͳ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/socks5systemz-proxy-service-infects-10-000-systems-worldwide/


4¡¢ÃÀ¹úµÖѺ´û¿î¹«Ë¾Mr.Cooper±»¹¥»÷ÔËÓªÊܵ½Ó°Ïì


11ÔÂ3ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬ £¬ÃÀ¹úµÖѺ´û¿î¹«Ë¾Mr. CooperÔâµ½¹¥»÷£¬£¬£¬£¬£¬ £¬Ô̺¬Ö§¸¶ÔÚÄÚµÄÒµÎñÊܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£¡£¡£¸Ã´û¿î»ú¹¹ÒѳÉΪÃÀ¹ú×î´óµÄ·þÎñ»ú¹¹£¬£¬£¬£¬£¬ £¬Îª9370ÒÚÃÀÔªµÄ´û¿îÌṩ·þÎñ¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷²úÉúÔÚ10ÔÂ31ÈÕ£¬£¬£¬£¬£¬ £¬Î´¾­ÊÚȨµÄµÚÈý·½½Ó¼ûÁ˲¿ÃÅϵͳ¡£¡£¡£¡£¡£¡£¡£¡£¼ì²âµ½ÊÂÎñºó£¬£¬£¬£¬£¬ £¬¸Ã¹«Ë¾Æô¶¯ÁËÏìÓ¦´ëÊ©£¬£¬£¬£¬£¬ £¬Ô̺¬¹Ø¹Ø²¿ÃÅϵͳ¡£¡£¡£¡£¡£¡£¡£¡£ÏµÍ³å´»úµ¼Ö¿ͻ§ÎÞ·¨Ö§¸¶µÖѺ´û¿î£¬£¬£¬£¬£¬ £¬µ«ÊÇMr.Cooper³ÐŵÔÚ¸´Ô­ÏµÍ³µÄ¹ý³ÌÖв»»áÒòÓâÆÚ²úÉúÓöȡ¢·£¿£¿£¿£¿£¿£¿£¿î»ò¸ºÃæÐÅÓþ»ã±¨¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÈÔÔÚµ÷²é¿Í»§Êý¾ÝÊÇ·ñ±»µÁ£¬£¬£¬£¬£¬ £¬Ã»ÓÐй©ÕâÊÇ·ñÊÇÀÕË÷¹¥»÷£¬£¬£¬£¬£¬ £¬µ«ËüµÄËùÓм£ÏóÅú×¢ÕâÊÇÀÕË÷¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£


https://www.securityweek.com/mortgage-giant-mr-cooper-shuts-down-systems-following-cyberattack/


5¡¢OktaµÄ¹©¸øÉÌÔâµ½¹¥»÷µ¼ÖÂÆäÊýǧÃûÔ±¹¤µÄÐÅϢй¶


 Ã½Ìå11ÔÂ2Èճƣ¬£¬£¬£¬£¬ £¬Oktaй©ÓÉÓÚµÚÈý·½¹©¸øÉÌRightway HealthcareÔâµ½¹¥»÷£¬£¬£¬£¬£¬ £¬Æä½üÊýǧÃûÔ±¹¤µÄÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£¡£Õë¶ÔRightwayµÄ¹¥»÷²úÉúÓÚ9ÔÂ23ÈÕ£¬£¬£¬£¬£¬ £¬¹¥»÷Õß½Ó¼ûÁËΪÇкÏǰÌáµÄÈËÌṩ±£Ïպ͸£Àû¶øÊØ»¤µÄ×ʸñÈ˶¡ÆÕ²éÎļþ¡£¡£¡£¡£¡£¡£¡£¡£OktaÓÚ10ÔÂ12ÈÕµÃÖªÁËÕâ´Îй¶ÊÂÎñ£¬£¬£¬£¬£¬ £¬²¢È·¶¨Õâ´ÎÎ¥¹æÊÂÎñ×ܹ²Ó°ÏìÁË4961ÃûÔ±¹¤£¬£¬£¬£¬£¬ £¬À´×Ô2019Äê4ÔÂÖÁ2020ÄêµÄÎļþ¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾½«ÎªÊÜÓ°ÏìµÄÓ×ÎÒÌṩÁ½ÄêµÄExperianÐÅÓþ¼à¿Ø¡¢Éí·Ý͵ÇÔ±£»£»£»£»£» £»£» £»¤ºÍڲƭ±£»£»£»£»£» £»£» £»¤·þÎñ¡£¡£¡£¡£¡£¡£¡£¡£


https://therecord.media/okta-employees-impacted-by-third-party-breach


6¡¢Deep InstinctÅû¶MuddyWaterÕë¶ÔÒÔÉ«ÁеĴ¹µö¹¥»÷


11ÔÂ2ÈÕ£¬£¬£¬£¬£¬ £¬Deep Instinct°ä²¼»ã±¨³Æ£¬£¬£¬£¬£¬ £¬MuddyWaterÔÚÖ´ÐÐÐÂÒ»ÂÖµÄÓã²æÊ½´¹µö¹¥»÷£¬£¬£¬£¬£¬ £¬Õë¶ÔÒÔÉ«ÁеĹ«Ë¾¡£¡£¡£¡£¡£¡£¡£¡£10ÔÂ30ÈÕ£¬£¬£¬£¬£¬ £¬×êÑÐÈËÔ±·¢ÏÖÁË¡°Storyblok¡±ÉÏÍйܵÄÁ½¸öµµ°¸£¬£¬£¬£¬£¬ £¬ÆäÖÐÔ̺¬ÐµĶà½×¶ÎÏ°È¾ÔØÌå¡£¡£¡£¡£¡£¡£¡£¡£ËüÔ̺¬°µ²ØÎļþ¡¢Æô¶¯Ï°È¾µÄLNKÎļþÒÔ¼°Ö¼ÔÚÔÚÖ´ÐÐAdvanced Monitoring Agent£¨Ò»ÖÖÔ¶³ÌÖÎÀí¹¤¾ß£©µÄ¿ÉÖ´ÐÐÎļþ¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±³Æ£¬£¬£¬£¬£¬ £¬ÕâÊÇÒÁÀÊAPTÍÅ»ï³õ´ÎʹÓÃN-ableµÄÔ¶³Ì¼à¿ØÈí¼þ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.deepinstinct.com/blog/muddywater-en-able-spear-phishing-with-new-ttps