×êÑÐÍŶӷ¢ÏÖ³¬µÈÊý¾Ýй¶ºÏ¼¯´ï12TBº­¸Ç260ÒÚÌõÊý¾Ý

°ä²¼¹¦·ò 2024-01-24
1. ×êÑÐÍŶӷ¢ÏÖ³¬µÈÊý¾Ýй¶ºÏ¼¯´ï12TBº­¸Ç260ÒÚÌõÊý¾Ý


1ÔÂ22ÈÕ£¬ £¬£¬£¬£¬Õâ´Î³¬´ó¹æÄ£Ð¹Â¶Ô̺¬À´×Ô֮ǰÂÅ´Îй¶µÄÊý¾Ý£¬ £¬£¬£¬£¬ÆäÖÐÔ̺¬ÁîÈËÕð¾ªµÄ 12 TB ÐÅÏ¢£¬ £¬£¬£¬£¬º­¸ÇÁîÈËÄÑÒÔÏàÐÅµÄ 260 ÒÚÌõÊý¾Ý¡£¡£¡£¡£¡£¡£¡£Õâ´Î³¬´ó¹æÄ£Ð¹Â¶Ô̺¬À´×Ô֮ǰÂÅ´Îй¶µÄÊý¾Ý£¬ £¬£¬£¬£¬ÆäÖÐÔ̺¬ÁîÈËÕð¾ªµÄ 12 TB ÐÅÏ¢£¬ £¬£¬£¬£¬º­¸ÇÁîÈËÄÑÒÔÏàÐÅµÄ 260 ÒÚÌõÊý¾Ý¡£¡£¡£¡£¡£¡£¡£ÏÕЩÄܹ»×¢¶¨£¬ £¬£¬£¬£¬Õâ´Îй©ÊÇÆù½ñΪֹ·¢ÏÖµÄ×î´óµÄÒ»´ÎÊý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£¾Ý³Æº±¼ûÒÚÌõÊý¾ÝÀ´×Ô΢²© (504M)¡¢MySpace (360M)¡¢Twitter (281M)¡¢Deezer (258M)¡¢Linkedin (251M)¡¢AdultFriendFinder (220M)¡¢Adobe (153M)¡¢Canva (143M) ¡¢VK (101M)¡¢Daily Motion (86M)¡¢Dropbox (69M)¡¢Telegram (41M) ÒÔ¼°ºÜ¶àÆäËû¹«Ë¾ºÍ×éÖ¯¡£¡£¡£¡£¡£¡£¡£Õâ´Îй¶»¹Ô̺¬ÃÀ¹ú¡¢°ÍÎ÷¡¢µÂ¹ú¡¢·ÆÂɱö¡¢ÍÁ¶úÆäºÍÆäËû¹ú¶È¸÷¸öµ±¾Ö×éÖ¯µÄ¼Í¼¡£¡£¡£¡£¡£¡£¡£


2. ÎÚ¿ËÀ¼×î´óµÄÊÖ»úÒøÐÐMonobankÔâ·êǰËùδÓеÄDDoS¹¥»÷


1ÔÂ22ÈÕ£¬ £¬£¬£¬£¬ÎÚ¿ËÀ¼×î´óµÄÊÖ»úÒøÐÐMonobankÓÚ 1 Ô 21 ÈÕÔâ·êÒ»Á¬´®»Ø¾ø·þÎñ (DDoS) ¹¥»÷£¬ £¬£¬£¬£¬µ¼ÖÂÆäÔËӪ̱»¾²¢Ôì³É´óÁìÓòÖжϡ£¡£¡£¡£¡£¡£¡£½áºÏÊ×´´È˼æÊ×ϯִÐй٠Oleh Horokhovskyi ÔÚTelegram ÉÏ֤ʵÁËMonobank Ôâµ½ÍøÂç¹¥»÷£¬ £¬£¬£¬£¬²¢Ð¹Â©ÆäÖÐÒ»´Î¹¥»÷ÖиÃÒøÐÐÊÕµ½Á˾ªÈ赀 5.8 ÒÚ¸ö·þÎñÒªÇ󡣡£¡£¡£¡£¡£¡£DDoS ¹¥»÷Éæ¼°Óùý¶àµÄÁ÷Á¿Ñ¹¿åÍøÕ¾£¬ £¬£¬£¬£¬Ê¹Æä·þÎñÆ÷³¬ÔØ£¬ £¬£¬£¬£¬ÒѳÉΪ׷Çó·ÛËé·þÎñµÄÍøÂç·¸×ï·Ö×Ó×îϲ»¶µÄÕ½Êõ¡£¡£¡£¡£¡£¡£¡£¶íÂÞ˹ºÚ¿Í×éÖ¯ Solntsepek Ðû³Æ¶ÔKyivstar ÍøÂç¹¥»÷ÕÆ¹Ü£¬ £¬£¬£¬£¬Òý·¢ÈËÃǶԶíÂÞ˹¿ÉÄܲμÓ×î½üµÄ Monobank DDoS ¹¥»÷µÄÒɻ󡣡£¡£¡£¡£¡£¡£


3. LoanDepotÔâµ½ÀÕË÷¹¥»÷²¢È·ÈÏÆäÔ¼1660Íò¿Í»§ÐÅÏ¢±»µÁ


ÔÚ 1 Ô 22 ÈÕÏòÃÀ¹ú֤ȯÂòÂôίԱ»á (SEC) Ìá½»µÄÒ»·ÝÐÂÎļþÖУ¬ £¬£¬£¬£¬LoanDepot ÌṩÁËÓÐ¹Ø 1 Ô 8 ÈÕÓ°Ïì¸Ã¹«Ë¾ÍÆËã»úϵͳµÄÍøÂçÊÂÎñµÄ¸ü¶àϸ½Ú¡£¡£¡£¡£¡£¡£¡£µÖѺ´û¿îÌṩÉÌ´Ëǰ½«¸ÃÊÂÎñÃèÊöΪÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£¡£¡£¡£¡£¹ÌÈ»¸Ã¹«Ë¾ÈÔÔÚ¡°±í²¿È¡Ö¤ºÍ°²È«×¨¼Ò¡±µÄÔ®ÊÖϵ÷²éÕâ´Îй¶ÊÂÎñ£¬ £¬£¬£¬£¬µ«³õ²½Á˾ÖÏÔʾ£¬ £¬£¬£¬£¬¡°Î´¾­ÊÚȨµÄµÚÈý·½»ñÈ¡ÁËÆäϵͳÖÐÔ¼ 1660 ÍòÈ˵ÄÃô¸ÐÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡±LoanDepot ³Ðŵ֪ͨÊÜÓ°ÏìµÄ¿Í»§£¬ £¬£¬£¬£¬²¢ÌṩÃâ·ÑµÄÐÅÓþ¼à¿ØºÍÉí·Ý±£»£»£»£»£» £»£»¤·þÎñ¡£¡£¡£¡£¡£¡£¡£


4. GoAnywhere MFT ÖеÄÉí·ÝÑéÖ¤ÈÆ¹ý·ì϶CVE-2024-0204


1ÔÂ22ÈÕ£¬ £¬£¬£¬£¬GoAnywhere MFTÊÇÒ»ÖÖ°²È«µÄÍйÜÎļþ´«Êä (MFT) ½â¾ö¹æ»®£¬ £¬£¬£¬£¬¿ÉÔ®ÊÖ×éÖ¯×Ô¶¯»¯¡¢¼¯Öл¯ºÍ±£»£»£»£»£» £»£»¤ÆäÎļþ´«Êä¡£¡£¡£¡£¡£¡£¡£ËüÊÇÒ»¸öÈí¼þƽ̨£¬ £¬£¬£¬£¬Äܹ»½â³ýÔÚ·ÖÆçϵͳºÍÈËÔ±Ö®¼äÒÆ¶¯Êý¾ÝµÄÂé·³¡£¡£¡£¡£¡£¡£¡£GoAnywhere MFT ÊÇÒ»¿îÖ°ÄÜ׳´óÇÒ¶àÖ°ÄܵĽâ¾ö¹æ»®£¬ £¬£¬£¬£¬ÊʺϱØÒªÓÐЧ±£»£»£»£»£» £»£»¤ºÍÖÎÀíÎļþ´«ÊäµÄ×éÖ¯¡£¡£¡£¡£¡£¡£¡£¸ÃÎļþ´«Êä½â¾ö¹æ»®¾¯±¨µÄ×îпª·¢ÈËÔ±½ÒʾÁËÒ»¸öÑϳÁȱµã£¬ £¬£¬£¬£¬¸Ãȱµã¿ÉÄÜ»áÈÆ¹ýÉí·ÝÑéÖ¤µÄÐÔÖÊ¡£¡£¡£¡£¡£¡£¡£¸ÃȱµãµÄ±àºÅΪ CVE-2024-0204£¬ £¬£¬£¬£¬CVSS ÆÀ·ÖΪ 9.8£¬ £¬£¬£¬£¬±»ÃèÊöΪ Fortra 7.4.1 °æ±¾Ö®Ç°µÄ GoAnywhere MFT ÖеÄÉí·ÝÑéÖ¤ÈÆ¹ý·ì϶¡£¡£¡£¡£¡£¡£¡£´ËȱµãÆæÃîµØÔÊÐíδ¾­ÊÚȨµÄÓû§Í¨¹ýÖÎÀíÃÅ»§¼Ù×°³ÉÖÎÀíÔ±¡£¡£¡£¡£¡£¡£¡£


5. ÑÅ»¢ÓÉÓÚÀÄÓÃCookie±»·¨¹ú¼à¹Ü»ú¹¹·£¿£¿£¿£¿£¿£¿î 1000 ÍòÅ·Ôª


1ÔÂ22ÈÕ£¬ £¬£¬£¬£¬·¨¹úÊý¾Ý±£»£»£»£»£» £»£»¤¼à¹Ü»ú¹¹ÖÜËݵʾ£¬ £¬£¬£¬£¬Ëü¶ÔÑÅ»¢´¦ÒÔ 1000 ÍòÅ·ÔªµÄ·£¿£¿£¿£¿£¿£¿î£¬ £¬£¬£¬£¬Ô­ÒòÊÇÑÅ»¢²»×ð³ÁÓû§»Ø¾ø»¥ÁªÍø¸ú×Ù¡°cookie¡±µÄÒªÇó£¬ £¬£¬£¬£¬»òÕß°µÊ¾ÈôÊǻؾø£¬ £¬£¬£¬£¬ËûÃǽ«ÎÞ·¨½Ó¼ûµç×ÓÓʼþÕ˺𣡣¡£¡£¡£¡£¡£CNIL µ±¾ÖÓÚ 2020 Äê 10 ÔÂºÍ 2021 Äê 6 ÔÂÊÕµ½Í¶Ëß²¢·¢Õ¹µ÷²éºó£¬ £¬£¬£¬£¬ÓÚ 12 Ô´¦ÒÔÏ൱ÓÚ 1090 ÍòÃÀÔªµÄ·£¿£¿£¿£¿£¿£¿î¡£¡£¡£¡£¡£¡£¡£×êÑз¢ÏÖ£¬ £¬£¬£¬£¬½Ó¼û Yahoo.com Ö÷ÍøÕ¾µÄ½Ó¼ûÕß¹ÌÈ»µã»÷Á˻ؾø cookie µÄ°´Å¥£¬ £¬£¬£¬£¬µ«×îÖÕ»¹ÊÇÊÕµ½ÁËԼĪ 20 ¸öÓÃÓÚ¸æ°×Ö÷ÕŵÄÊý×Ö¸ú×ÙÆ÷¡£¡£¡£¡£¡£¡£¡£×Ô 2018 ÄêÅ·ÃËͨÓÃÊý¾Ý±£»£»£»£»£» £»£»¤ÌõÀý (GDPR) ³ǫ̈ÒÔÀ´£¬ £¬£¬£¬£¬»¥ÁªÍø¹«Ë¾ÔÚ»ñµÃÓû§ÔÞ³ÉÈôºÎʹÓÃÆäÓ×ÎÒÐÅÏ¢·½ÃæÃæ¶ÔןüÑϸñµÄ¹æ¶¨¡£¡£¡£¡£¡£¡£¡£·¨¹ú¶Ô¹È¸è¡¢Meta¡¢ÑÇÂíÑ·¡¢Î¢Èí¡¢Æ»¹ûºÍ TikTok µÈ¹«Ë¾µÄÎ¥¹æÐÐΪ½øÐÐÁË´¦·££¬ £¬£¬£¬£¬·£¿£¿£¿£¿£¿£¿î×ܶî½ü 4 ÒÚÅ·Ôª¡£¡£¡£¡£¡£¡£¡£


6. ×êÑÐÍŶӷ¢ÏÖÕë¶ÔýÌåºÍר¼ÒµÄÍøÂç¹¥»÷»î¶¯ScarCruft


1ÔÂ22ÈÕ£¬ £¬£¬£¬£¬ÔÚÅ̸ù´í½ÚµÄÈ«ÇòÍøÂç¼äµýÍøÂçÖУ¬ £¬£¬£¬£¬¹ú¶ÈÖ§³ÖµÄ¸ß¼¶³ÖÐøÍþв (APT)×éÖ¯£¨ ScarCruft£©µÄ»î¶¯ÒòÆä¾«È·ÐÔºÍÕ½Êõ³Áµã¶øÍÑÓ±¶ø³ö¡£¡£¡£¡£¡£¡£¡£½üÈÕ£¬ £¬£¬£¬£¬ÉÚ±ø³¢ÊÔÊÒ£¬ £¬£¬£¬£¬ÓëNK ÐÂÎźÏ×÷£¬ £¬£¬£¬£¬½Ò¿ªÁË ScarCruft ¾«ÐIJ߶¯µÄÒ»³¡Õë¶ÔýÌå×éÖ¯ºÍ³¯ÏÊÊÂÎñר¼ÒµÄ»î¶¯¡£¡£¡£¡£¡£¡£¡£ÕâÒ»Ðж¯ÒÔÓÆ¾ÃÐԺ͸´ÔÓÐÔÎªÌØµã£¬ £¬£¬£¬£¬·´Ó³ÁËÍøÂçÕ½ÖаÂÃîµÄÈ¨ÊÆ²©ÞÄ¡£¡£¡£¡£¡£¡£¡£Á½¸ö¶àÔÂÒÔÀ´£¬ £¬£¬£¬£¬SentinelLabs ¹Û²ìµ½ ScarCruft ³ÖÐøÕë¶ÔͳһÓ×ÎÒ£¬ £¬£¬£¬£¬ÕâÈÃÎÒÃǵÃÒÔÒ»¿ú APT µÄ¹±Ï×ÐÄÁéºÍ×ãÖǶàı¡£¡£¡£¡£¡£¡£¡£ÕâÒ»Ö¸±êÉæ¼°º«¹ú´âÊõ½çµÄר¼ÒºÍרÃÅ×êÑг¯ÏÊÊÂÎñµÄÐÂÎÅ»ú¹¹¡£¡£¡£¡£¡£¡£¡£ÕâЩ¹¥»÷¼òÖ±ÇÐÐÔÖʽ²ÁËÈ» ScarCruft µÄÕ½ÊõÖ¸±ê£ºÍøÂçµý±¨²¢Ó°Ïì¼û½â¡£¡£¡£¡£¡£¡£¡£ScarCruft£¬ £¬£¬£¬£¬Ò²³ÆÎª APT37 ºÍ InkySquid£¬ £¬£¬£¬£¬ÔÚÆä±øÆ÷¿âÖÐʹÓÃÁ˶àÖÖ¹¤¾ßºÍ²½Öè¡£¡£¡£¡£¡£¡£¡£¸Ã»î¶¯µÄÌØµãÊÇʹÓÃÁ˶¨ÔìµÄºóÃÅ RokRAT£¬ £¬£¬£¬£¬ÕâÊÇÒ»ÖÖÖ°ÄÜÆëÈ«µÄ¼à¶½¹¤¾ß£¬ £¬£¬£¬£¬¿ÉÄܶÔÖ¸±êʵÌå½øÐÐÓÐЧµÄ¼äµý»î¶¯¡£¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯µÄϰȾÁ´Éæ¼°¶à½×¶Î»úÔìºÍ¶àÖÖ¿ÉÖ´ÐÐÌåʽ£¬ £¬£¬£¬£¬²¢Ñ¡È¡¶ã±Ü¼¼ÊõÀ´Î¬³Ö²»±»·¢ÏÖ¡£¡£¡£¡£¡£¡£¡£