ÃÀ¹ú°®´ïºÉ¹ú¶È³¢ÊÔÊÒÊýǧÃûÔ±¹¤µÄ¾ßÌåÐÅÏ¢±»¹«¿ª

°ä²¼¹¦·ò 2023-11-22
1¡¢ÃÀ¹ú°®´ïºÉ¹ú¶È³¢ÊÔÊÒÊýǧÃûÔ±¹¤µÄ¾ßÌåÐÅÏ¢±»¹«¿ª


¾ÝýÌå11ÔÂ20ÈÕ±¨Â·£¬£¬£¬£¬£¬ºÚ¿ÍSiegedSecÔÚ°µÍø¹«¿ªÁ˰®´ïºÉ¹ú¶È³¢ÊÔÊÒ(INL)Ô±¹¤µÄÊý¾Ý¡£¡£ ¡£¡£¡£¡£INLÊÇÃÀ¹úÄÜÔ´²¿ÔËÓªµÄºË×êÑÐÖÐÐÄ£¬£¬£¬£¬£¬Õ¼ÓÐ5700ÃûÔ­×ÓÄÜ¡¢×ÛºÏÄÜÔ´ºÍ¹ú¶È°²È«ÁìÓòµÄרҵÈËÔ±¡£¡£ ¡£¡£¡£¡£ÖÜÒ»£¬£¬£¬£¬£¬SiegedSec°ä·¢ÒÑ»ñµÃINLϵͳµÄ½Ó¼ûȨÏÞ£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬¡°ÊýÊ®Íò¡±Ô±¹¤¡¢Óû§ºÍ¹«ÃñµÄ¾ßÌåÐÅÏ¢¡£¡£ ¡£¡£¡£¡£¹¥»÷Õß°ä²¼ÁËй¶ÐÅÏ¢µÄÑù±¾£¬£¬£¬£¬£¬Éæ¼°Éç»á°²È«ºÅ¡¢Ò½ÁƱ£½¡ÐÅÏ¢ºÍÒøÐÐÕË»§µÈ¡£¡£ ¡£¡£¡£¡£ÆäÖÐÒ»¸öÔ̺¬¾ßÌåÔ±¹¤ÐÅÏ¢µÄÎļþÓÐ58000¶àÐÐÊý¾Ý£¬£¬£¬£¬£¬º­¸ÇÔÚÖ°¡¢ÍËÐݺÍÈ¥ÈËÔ±¹¤¡£¡£ ¡£¡£¡£¡£


https://cyberscoop.com/idaho-national-laboratory-siegedsec/


2¡¢°ÍÀèÎÛË®´¦Öûú¹¹SIAAPÔâµ½¹¥»÷±í²¿ÏνÓÁÙʱ¶Ï¿ª


¾Ý11ÔÂ21ÈÕ±¨Â·£¬£¬£¬£¬£¬Îª°ÍÀè¼°ÆäÖܱߵØÓò900ÍòÈËÌṩÎÛË®´¦Ö÷þÎñµÄ»ú¹¹SIAAPÔâµ½¹¥»÷¡£¡£ ¡£¡£¡£¡£SIAAPÖÎÀí×Å·¨¹úËĸöÊ¡½ü275Ó¢ÀïµÄ¹Ü·£¬£¬£¬£¬£¬ËüÔÚ·¢ÏÖ¹¥»÷ºóÒѹعØËùÓÐ±í²¿ÏνÓ£¬£¬£¬£¬£¬À´Ô¤·À¹¥»÷µÄ´«²¼¡£¡£ ¡£¡£¡£¡£¹¤×÷ÈËÔ±°µÊ¾£¬£¬£¬£¬£¬ËûÃÇÒѲÉÈ¡´ëÊ©£¬£¬£¬£¬£¬ÒÔά³Ö·¨À¼Î÷µº¾ÓÃñ¹«¹²ÎÀÉú·þÎñµÄÂ½ÐøÐÔ¡£¡£ ¡£¡£¡£¡£Ò»·Ý´¹Î£ºÅÁîÒÑÊÚȨ¸Ã»ú¹¹ÀñƸ°²È«¹«Ë¾²¢²É°ìÉ豸£¬£¬£¬£¬£¬À´¸´Ô­»ò»¹Ô­ËûÃǹ¤×÷ËùÐèµÄϵͳ¡£¡£ ¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬Ã»ÓкڿÍÍÅ»ïÐû³Æ¶ÔÕâ´Î¹¥»÷ÕÆ¹Ü¡£¡£ ¡£¡£¡£¡£


https://therecord.media/paris-wastewater-agency-hit-cyberattack


3¡¢RhysidaÍÅ»ïÒÔ20 BTCµÄ¼ÛÖµÅÄÂô´óӢͼÊé¹ÝµÄÊý¾Ý


ýÌå11ÔÂ20Èճƣ¬£¬£¬£¬£¬ÀÕË÷ÍÅ»ïRhysida½«´óӢͼÊé¹ÝÔö³¤µ½ÆäTorÐ¹Â¶ÍøÕ¾¡£¡£ ¡£¡£¡£¡£¸ÃÍÅ»ïÐû³ÆÇÔÈ¡ÁË´óÁ¿¡°ÁîÈËÓ¡ÏóÉî¿ÌµÄÊý¾Ý¡±£¬£¬£¬£¬£¬²¢ÒÔ20 BTCµÄ¼ÛÖµ½øÐÐÅÄÂô¡£¡£ ¡£¡£¡£¡£Rhysida´òË㽫ÕâЩÊý¾ÝÂô¸øÎ¨Ò»µÄÂò¼Ò£¬£¬£¬£¬£¬²¢Áô³ö7ÌìµÄ¹¦·ò¡£¡£ ¡£¡£¡£¡£¹¥»÷²úÉúÓÚ10ÔÂ28ÈÕ£¬£¬£¬£¬£¬µ¼ÖÂITϵͳ³ÖÐøµÄÖжÏ£¬£¬£¬£¬£¬Ó°ÏìÁË´óӢͼÊé¹ÝµÄÔÚÏßϵͳ¡¢·þÎñºÍWi-FiµÈ¡£¡£ ¡£¡£¡£¡£´óӢͼÊé¹ÝÔÚ20ÈÕ·¢Ìû֤ʵÁËÆäÈËÁ¦×ÊÔ´Îļþ±»µÁµÄÐÂÎÅ£¬£¬£¬£¬£¬²¢ÌáÐÑÓû§³ÁÖÃÃÜÂëÒÔ·ÀÍòÒ»¡£¡£ ¡£¡£¡£¡ £» £»£»£»£»£»£»£»¹°µÊ¾Ô¤¼ÆÔÚ½«À´¼¸ÖÜÄÚ¸´Ô­ºÜ¶à·þÎñ£¬£¬£¬£¬£¬µ«²¿ÃÅÖжϿÉÄÜ»á³ÖÐøºÜ³¤Ò»¶Î¹¦·ò¡£¡£ ¡£¡£¡£¡£


https://securityaffairs.com/154473/data-breach/rhysida-ransomware-gang-british-library.html


4¡¢Æû³µÁã¼þ¹«Ë¾AutoZone֪ͨÊýÍò¿Í»§ÆäÊý¾ÝÒÑй¶


11ÔÂ21ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬ÃÀ¹úÆû³µÁ㲿¼þÁãÊÛÉ̺ͷÖÏúÉÌAutoZoneй¶Á˳¬¹ý18ÍòÈ˵ÄÊý¾Ý¡£¡£ ¡£¡£¡£¡£AutoZoneÄêÊÕÈë½ü175ÒÚÃÀÔª£¬£¬£¬£¬£¬Ã¿ÔÂÓÐ3500ÍòÓû§½Ó¼ûÆäÔÚÏßÉ̵ꡣ¡£ ¡£¡£¡£¡£AutoZoneÔÚ21ÈÕ֪ͨÃÀ¹úµ±¾ÖËüÔÚ5ÔÂ28ÈÕ²úÉúÁËÊý¾Ýй¶£¬£¬£¬£¬£¬Ó°Ïì184995ÈË¡£¡£ ¡£¡£¡£¡£8ÔÂ15ÈÕ×óÓÒ£¬£¬£¬£¬£¬AutoZoneÈ·¶¨£¬£¬£¬£¬£¬Î´¾­ÊÚȨµÄµÚÈý·½ÀûÓÃMOVEitÖеķì϶ÇÔÈ¡ÁËAutoZoneϵͳÖеÄijЩÊý¾Ý¡£¡£ ¡£¡£¡£¡£Ö®ºó£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÓÖ»¨ÁË3¸öԵŦ·òÀ´È·¶¨ÄÄЩÊý¾Ý±»µÁ£¬£¬£¬£¬£¬ÒÔ¼°±ØÒªÍ¨ÖªÄÄЩÈË¡£¡£ ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/auto-parts-giant-autozone-warns-of-moveit-data-breach/


5¡¢×êÑÐÈËÔ±ÑÝʾÈôºÎ´ÓSSH·þÎñÆ÷ÊðÃûÃýÎóÖÐÌáÈ¡RSAÃÜÔ¿


ýÌå11ÔÂ19ÈÕ±¨Â·£¬£¬£¬£¬£¬×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬£¬ÔÚijЩǰÌáÏ£¬£¬£¬£¬£¬±»¶¯¹¥»÷ÕßÓпÉÄÜ´Óµ¼ÖÂSSHÏνӳ¢ÊÔʧ°ÜµÄÃýÎóÖÐÌáÈ¡RSAÃÜÔ¿¡£¡£ ¡£¡£¡£¡£ÈôÊÇʹÓÃCRT-RSAµÄÊðÃû·¨Ê½ÔÚÊðÃûÍÆËã¹ý³ÌÖгöÏÖ¹ÊÕÏ£¬£¬£¬£¬£¬¹Û²ìµ½¸ÃÊðÃûµÄ¹¥»÷Õß¾ÍÓпÉÄÜÍÆËã³öÊðÃûÕßµÄ˽Կ¡£¡£ ¡£¡£¡£¡£Ö»¹Ü´ËÀàÃýÎóºÜÉÙ¼û£¬£¬£¬£¬£¬µ«ÓÉÓÚÓ²¼þȱµã£¬£¬£¬£¬£¬ËüÃÇÊDz»³ÉÔ¤·ÀµÄ¡£¡£ ¡£¡£¡£¡£Ö»ÓÐÓÐ×ã¹»´óµÄÊý¾Ý³Ø£¬£¬£¬£¬£¬¹¥»÷Õß¾ÍÄܹ»ÕÒµ½²¢ÀûÓúܶà»úÓö¡£¡£ ¡£¡£¡£¡£ÕâÖ»Ó°ÏìÁ˾ɰæTLS£¬£¬£¬£¬£¬TLS 1.3ͨ¹ý¼ÓÃܳÉÁ¢ÏνӵÄÎÕÊÖ¹ý³Ì½â¾öÁËÕâÒ»ÎÊÌ⣬£¬£¬£¬£¬´Ó¶øÔ¤·ÀÇÔÌýÕß¶ÁÈ¡ÊðÃû¡£¡£ ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/researchers-extract-rsa-keys-from-ssh-server-signing-errors/


6¡¢Outpost24°ä²¼¹ØÓÚÐÅÏ¢ÇÔÈ¡Èí¼þLummaµÄ·ÖÎö»ã±¨


11ÔÂ20ÈÕ£¬£¬£¬£¬£¬Outpost24°ä²¼Á˹ØÓÚÐÅÏ¢ÇÔÈ¡Èí¼þLummaµÄ·ÖÎö»ã±¨¡£¡£ ¡£¡£¡£¡£Lumma£¨±ðÃûLummaC2£©ÓÉC˵»°¿ª·¢£¬£¬£¬£¬£¬×Ô2022Äê12ÔÂÆðÔÚµØÏÂÂÛ̳ÉÏÏúÊÛ¡£¡£ ¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÔÚÈÆ¹ý¼ì²âºÍ×èÖ¹×Ô¶¯·ÖÎö·½Ãæ½øÐÐÁ˳Á´ó¸üУ¬£¬£¬£¬£¬Ô̺¬½ÚÔìÁ÷±âƽ»¯»ìºÏ¡¢human-mouse»î¶¯¼ì²â¡¢XOR¼ÓÃÜ×Ö·û´®¡¢Ö§³Ö¶¯Ì¬ÅäÖÃÎļþÒÔ¼°ÔÚËùÓй¹½¨ÖÐÇ¿ÔìʹÓüÓÃܼ¼Êõ¡£¡£ ¡£¡£¡£¡£ÆäÖÐ×îÓÐȤµÄÊÇʹÓÃÈý½Ç·¨¼ì²âhuman-mouse»î¶¯£¬£¬£¬£¬£¬ÕâÏî¼¼Êõ˼¿¼Á˹â±êÔڶ̹¦·òÄÚµÄ·ÖÆçµØÎ»£¬£¬£¬£¬£¬ÒÔ¼ì²âÈËÀà»î¶¯£¬£¬£¬£¬£¬´Ó¶øÓÐЧµØÈƹýÁË´óÎÞÊýÎÞ·¨ÕæÊµÄ£ÄâÊó±êÒÆ¶¯µÄ·ÖÎöϵͳµÄ¼ì²â¡£¡£ ¡£¡£¡£¡£


https://outpost24.com/blog/lummac2-anti-sandbox-technique-trigonometry-human-detection/