¼ÒµÃ±¦È·ÈϵÚÈý·½Êý¾Ýй¶µ¼ÖÂÆäÔ±¹¤ÐÅϢй¶

°ä²¼¹¦·ò 2024-04-09
1. ¼ÒµÃ±¦È·ÈϵÚÈý·½Êý¾Ýй¶µ¼ÖÂÆäÔ±¹¤ÐÅϢй¶


4ÔÂ7ÈÕ£¬£¬£¬£¬£¬£¬£¬Home Depot ÒÑÈ·ÈÏ£¬£¬£¬£¬£¬£¬£¬ÆäÒ»¼Ò SaaS ¹©¸øÉÌÃýÎóµØÐ¹Â¶ÁËÒ»Óײ¿ÃÅÓÐÏÞµÄÔ±¹¤Êý¾ÝÑù±¾£¬£¬£¬£¬£¬£¬£¬ÕâЩÊý¾Ý¿ÉÄܻᱻÓÃÓÚÓÐÕë¶ÔÐÔµÄÍøÂç´¹µö¹¥»÷£¬£¬£¬£¬£¬£¬£¬Òò¶ø¸Ã¹«Ë¾Ôâ·êÁËÊý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£¡£Home Depot ÊÇ×î´óµÄ¼Ò¾Ó×°½¨ÁãÊÛÉÌ£¬£¬£¬£¬£¬£¬£¬ÔÚ±±ÃÀÕ¼ÓÐ 2,300 ¶à¼ÒÉ̵êºÍ³¬¹ý 475,000 ÃûÔ±¹¤¡£¡£¡£¡£¡£¡£¡£¡£Ò»¸öÃûΪ IntelBroker µÄÍþвÐÐΪÕßÔÚºÚ¿ÍÂÛ̳ÉϹ«¿ªÁËԼĪ 10,000 Ãû¼ÒµÃ±¦Ô±¹¤µÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£¹ÌÈ»ÕâЩÊý¾Ý²¢²»¸ß¶ÈÃô¸Ð£¬£¬£¬£¬£¬£¬£¬½ö¶³ö¹«Ë¾ ID¡¢ÐÕÃûºÍµç×ÓÓʼþµØÖ·£¬£¬£¬£¬£¬£¬£¬µ«ÍþвÐÐΪÕß¿ÉÄÜ»áÀûÓÃÕâЩÊý¾Ý¶Ô Home Depot Ô±¹¤½øÐÐÓÐÕë¶ÔÐÔµÄÍøÂç´¹µö¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÂç´¹µö¹¥»÷¿ÉÄÜÖ¼ÔÚÍøÂç¸üÃô¸ÐµÄÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬ÀýÈç¼ÒµÃ±¦Æ¾Ö¤£¬£¬£¬£¬£¬£¬£¬¶øºó½«ÆäÏúÊÛ¸øÆäËûÍþв²Î¼ÓÕß»òÓÃÓÚ·ÛËé¹«Ë¾ÍøÂçÒÔÇÔÈ¡¹«Ë¾Êý¾Ý»ò²¿ÊðÀÕË÷Èí¼þ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/home-depot-confirms-third-party-data-breach-exposed-employee-info/


2. Solar Spider ¿ª·¢Ð¶ñÒâÈí¼þ¹¥»÷Öж«µÄ½ðÈÚÐÐÒµ


4ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬£¬ÍøÂ簲ȫ·þÎñ¹«Ë¾ Resecurity ÔÚ±¾Öܰ䲼µÄÒ»·Ý»ã±¨ÖÐд·£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾·ÖÎöÁ˶àÆðÊÂÎñµÄ¼¼Êõϸ½Ú£¬£¬£¬£¬£¬£¬£¬ÕâЩÊÂÎñÉæ¼°Õë¶Ô½ðÈÚ¿Í»§µÄ JSOutProx ¶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬£¬ÈôÊÇÕë¶ÔÆóÒµ£¬£¬£¬£¬£¬£¬£¬ÔòÌṩÐéαµÄ SWIFT ¸¶¿î֪ͨ£»£»£»£»£»£»ÈôÊÇÕë¶Ô¸öÈ˹«Ãñ£¬£¬£¬£¬£¬£¬£¬ÔòÌṩ MoneyGram Ä£°å¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÍþв×éÖ¯µÄÖ¸±êÊÇÓ¡¶ÈÒÔ¼°·ÆÂɱö¡¢ÀÏÎΡ¢ÐÂ¼ÓÆÂ¡¢ÂíÀ´Î÷ÑÇ¡¢Ó¡¶ÈµÄ½ðÈÚ×éÖ¯£¬£¬£¬£¬£¬£¬£¬´Ë¿Ì»¹ÓÐÉ³ÌØ°¢À­²®µÄ½ðÈÚ×éÖ¯¡£¡£¡£¡£¡£¡£¡£¡£Resecurity Ê×ϯִÐй٠Gene Yoo °µÊ¾£¬£¬£¬£¬£¬£¬£¬´Ó¿ª·¢½Ç¶ÈÀ´¿´£¬£¬£¬£¬£¬£¬£¬×îа汾µÄ JSOutProx ÊÇÒ»¸ö¼«¶È½Ã½ÝÇÒ×éÖ¯ÓÅÁ¼µÄ·¨Ê½£¬£¬£¬£¬£¬£¬£¬ÔÊÐí¹¥»÷Õ߯¾¾ÝÊܺ¦ÕßµÄÌØ¶¨»·¾³¶¨ÔìÖ°ÄÜ¡£¡£¡£¡£¡£¡£¡£¡£Æ¾¾Ý Visa µÄÍþв»ã±¨£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õ߾ͻáÍøÂçÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬ÀýÈçÖ÷Õ˺źÍÓû§Í´´¦£¬£¬£¬£¬£¬£¬£¬¶øºóÕë¶ÔÊܺ¦ÕßÖ´Ðи÷Àà¶ñÒâÐÐΪ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.darkreading.com/threat-intelligence/solar-spider-spins-up-new-malware-to-entrap-saudi-arabian-banks


3. ¹È¸è¸æ×´ÀûÓ÷¨Ê½¿ª·¢ÉÌÐéα¼ÓÃÜÇ®±ÒͶ×ÊÀûÓ÷¨Ê½Ú¿Æ­


4ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬£¬¹È¸èÒѶÔÁ½¼ÒÀûÓ÷¨Ê½¿ª·¢ÉÌÌá¸æ×´ËÏ£¬£¬£¬£¬£¬£¬£¬Ö¸¿ØÆä²Î¼Ó¡°¹ú¼ÊÔÚÏßÏû·ÑÕßͶ×Êڲƭ´òË㡱£¬£¬£¬£¬£¬£¬£¬¸Ã´òËãºýŪÓû§´Ó Google Play É̵êºÍÆäËûÆðÔ´ÏÂÔØÐéα Android ÀûÓ÷¨Ê½£¬£¬£¬£¬£¬£¬£¬²¢ÒÔ³Ðŵ¸ü¸ß»Ø±¨Îª»Ï×ÓÇÔÈ¡ËûÃǵÄ×ʽ𡣡£¡£¡£¡£¡£¡£¡£¾Ý³Æ£¬£¬£¬£¬£¬£¬£¬ÖÁÉÙ×Ô 2019 ÄêÒÔÀ´£¬£¬£¬£¬£¬£¬£¬±»¸æÒÑÏò Play É̵êÉÏ´«ÁËÔ¼ 87 ¸ö¼ÓÃÜÀûÓ÷¨Ê½£¬£¬£¬£¬£¬£¬£¬ÒÔÖ´ÐÐÉç»á¹¤³ÌȦÌ×£¬£¬£¬£¬£¬£¬£¬ÒÑÓг¬¹ý 10 ÍòÓû§ÏÂÔØÕâЩÀûÓ÷¨Ê½£¬£¬£¬£¬£¬£¬£¬²¢µ¼ÖÂÁ˾޴óµÄ¾­¼ÃËðʧ¡£¡£¡£¡£¡£¡£¡£¡£ÕâÖÔìÛÕ©´òËãÒªÇóÚ¿Æ­Õßͨ¹ýÉ罻ýÌå»òÔ¼»áƽ̨£¬£¬£¬£¬£¬£¬£¬Ê¹Óþ«ÐÄÉè¼ÆµÄÐé¹¹½ÇÉ«À´¶Ô×¼ºÁÎÞ½äÐĵÄÓ×ÎÒ£¬£¬£¬£¬£¬£¬£¬ÒÔ°®Çé¹ØÏµµÄÔ¶¾°ÒýÓÕËûÃdzÉÁ¢ÐÅÀµ£¬£¬£¬£¬£¬£¬£¬²¢Ëµ·þËûÃÇͶ×ʼÓÃÜÇ®±ÒͶ×Ê×éºÏ£¬£¬£¬£¬£¬£¬£¬ÕâЩͶ×Ê×éºÏÖ¼ÔÚÔڶ̹¦·òÄÚÌṩ¸ß¶îÀûÈóÖ÷ÕÅÊÇÇÔÈ¡ËûÃǵÄ×ʽ𡣡£¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2024/04/google-sues-app-developers-over-fake.html


4. ÒÔÉ«ÁÐÍøÂç¼äµý²¿ÃÅÕÆ¹ÜÈËÒò×Ô¼ºµÄÒþÖÔÃýÎó¶ø±»ÆØ¹â


4ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬£¬ÕâÃû¼äµýÃû½Ð Yossi Sariel£¬£¬£¬£¬£¬£¬£¬¾Ý³ÆÊÇÒÔÉ«ÁÐ8200 ¶ÓÁеÄÕÆ¹ÜÈË£¬£¬£¬£¬£¬£¬£¬ÕâÊÇÒ»Ö§ÓÉÆÆ½âÐÅÏ¢°²È«×¨¼Ò×é³ÉµÄÍŶӣ¬£¬£¬£¬£¬£¬£¬¿ÉÓëÃÀ¹ú¹ú¶È°²È«¾Ö»òÓ¢¹úµ±¾ÖͨѶ×ܲ¿ÏàæÇÃÀ¡£¡£¡£¡£¡£¡£¡£¡£´Ë¿Ì£¬£¬£¬£¬£¬£¬£¬ËûÒѱ»È·ÒÔΪ 2021 Äê³ö°æµÄ¡¶ÈË»úÍŶӡ·Ò»ÊéµÄ×÷Õߣ¬£¬£¬£¬£¬£¬£¬¸ÃÊé½²ÊöÁ˽«ÈËÀà´úÀíÓëÏȽøÈËΪÖÇÄÜÅä¶ÔµÄÖÇÄÜÓÅÊÆ¡£¡£¡£¡£¡£¡£¡£¡£ÈøÀï¶û£¨Sariel£©ÒÔ¼«¶ÈÄäÃûµÄ±ÊÃû¡°YS×¼½«¡±Ð´ÁËÕâ±¾Ê飬£¬£¬£¬£¬£¬£¬ÔÚ¡¶ÎÀ±¨¡·½øÐе÷²éºó·¸ÁËÒ»¸öÑϳÁµÄÃýÎ󣬣¬£¬£¬£¬£¬£¬¸Ãµ÷²é·¢ÏÖÑÇÂíÑ·ÉÏÓÐÈøÀï¶ûµÄÊéµÄµç×Ó¸±±¾¡°ÆäÖÐÔ̺¬Ò»·âÄäÃûµç×ÓÓʼþ£¬£¬£¬£¬£¬£¬£¬Äܹ»ÇáËÉÄܹ»×·×Ùµ½ Sariel µÄÃû×ÖºÍ Google ÕÊ»§¡£¡£¡£¡£¡£¡£¡£¡£¡±¸Ã±¨ËæºóÏòÒÔÉ«Áйú·À¾üÐÂÎÅÆðԴ֤ʵ£¬£¬£¬£¬£¬£¬£¬¸ÃÕË»§ÓëÈøÀï¶ûÓйأ¬£¬£¬£¬£¬£¬£¬²¢Ö¸³ö¶à¸öÐÂÎÅÆðÔ´ÒÑ֤ʵËûÊÇ×÷Õß¡£¡£¡£¡£¡£¡£¡£¡£


https://www.theregister.com/2024/04/08/infosec_news_roundup/


5. TargusµÄÎļþ·þÎñÆ÷Ôâ·êÍøÂç¹¥»÷ÔËÓªÁÙʱÖжÏ


4ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬£¬Targus ÊÇÒ»¼ÒÒÆ¶¯Åä¼þ¹«Ë¾£¬£¬£¬£¬£¬£¬£¬ÒÔʱÉеıʼDZ¾µçÄÔ°üºÍÊÖÌáÏä¶øÎÅÃû¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹ÏúÊÛÆ½°åµçÄÔ±£»£»£»£»£»£»¤¿Ç¡¢À©´óÎë¡¢¼üÅÌ¡¢Êó±êºÍ¹Û¹âÅä¼þ¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÖÜÒ»ÍíÉÏÏò SEC Ìá½»µÄ FORM 8-K ÎļþÖУ¬£¬£¬£¬£¬£¬£¬Targus µÄĸ¹«Ë¾ B. Riley Financial, INC. Åû¶£¬£¬£¬£¬£¬£¬£¬Õâ¼Ò±Ê¼Ç±¾µçÄÔ°üÔì×÷ÉÌÓÚ 2024 Äê 4 Ô 5 ÈÕÔÚÆäÍøÂçÉϼì²âµ½¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£Targus Á¢¼´Æô¶¯ÁËÊÂÎñÏìÓ¦ºÍÒµÎñÂ½ÐøÐÔºÍ̸À´µ÷²é¡¢¶ôÔìºÍ²¹¾È¸ÃÊÂÎñ¡£¡£¡£¡£¡£¡£¡£¡£Targus °µÊ¾£¬£¬£¬£¬£¬£¬£¬¸ÃÊÂÎñÒѵõ½½ÚÔ죬£¬£¬£¬£¬£¬£¬ËûÃÇÔÚ±í²¿ÍøÂ簲ȫר¼ÒµÄÔ®ÊÖϸ´Ô­ÄÚ²¿ÏµÍ³¡£¡£¡£¡£¡£¡£¡£¡£¹«Ë¾Í¨³£»£»£»£»£»£»á¹Ø¹Ø IT ϵͳÒÔÓ¦¶ÔÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬£¬ÒÔÔ¤·À¹¥»÷ÊæÕ¹µ½ÆäËû·þÎñÆ÷ºÍÉ豸¡£¡£¡£¡£¡£¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬£¬£¬ÕâÒ²×èÖ¹Á˶ÔÄÚ²¿ÀûÓ÷¨Ê½ºÍÊý¾ÝµÄºÏ·¨½Ó¼û£¬£¬£¬£¬£¬£¬£¬ÁÙʱÖжÏÁËÒµÎñÔËÓª£¬£¬£¬£¬£¬£¬£¬Í¬Ê±·þÎñÆ÷ºÍ¹¤×÷վƾ¾Ý±ØÒª½øÐÐÁ˸´Ô­¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÉÐδй©¹«Ë¾Êý¾ÝÊÇ·ñ±»µÁ£¬£¬£¬£¬£¬£¬£¬µ«ÓÉÓÚºÚ¿ÍÊ×ÏÈÊÇÔÚ¹«Ë¾ÓÃÓÚ´æ´¢ÎļþºÍÊý¾ÝµÄÎļþϵͳÉÏ·¢Ïֵ쬣¬£¬£¬£¬£¬£¬Òò¶øÊý¾ÝÓпÉÄܱ»Ð¹Â¶¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/targus-discloses-cyberattack-after-hackers-detected-on-file-servers/


6. ÍþвÐÐΪÕßͨ¹ý YouTube ÊÓÆµÓÎÏ··ì϶´«²¼¶ñÒâÈí¼þ


4ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬£¬ÍþвÐÐΪÕßÀûÓà Vidar¡¢StealC ºÍ Lumma Stealer µÈÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ¶Ô×¼¼ÒÍ¥Óû§£¬£¬£¬£¬£¬£¬£¬ÕâЩ¶ñÒâÈí¼þ½«¶ñÒâÈí¼þ¼Ù×°³É YouTube ÊÓÆµÖеĵÁ°æÈí¼þºÍÊÓÆµÓÎÏ·ÆÆ½â°æ¡£¡£¡£¡£¡£¡£¡£¡£ÕâЩÊÓÆµËƺõÁìµ¼Óû§»ñÈ¡Ãâ·ÑÈí¼þ»òÓÎÏ·Éý¼¶¡£¡£¡£¡£¡£¡£¡£¡£Ö»¹ÜÈç´Ë£¬£¬£¬£¬£¬£¬£¬ÃèÊöÖеÄÁ´½ÓÈԻᵼÖ¶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß»á·ÛËéºÏ·¨ÕÊ»§»òרÃÅ´´½¨ÐÂÕÊ»§À´·Ö·¢¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£¡£ÕâÖÖ²½ÖèÁîÈËÓÇÓô£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚËüÕë¶ÔµÄÊÇÄêÇáÓû§£¬£¬£¬£¬£¬£¬£¬ÍæµÄÊǶùͯÖÐÊ¢ÐеÄÓÎÏ·£¬£¬£¬£¬£¬£¬£¬¶øÕâЩÓû§²»Ì«¿ÉÄܼø±ð³ö¶ñÒâÄÚÈÝ£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚÒѾ­·¢ÏÖÁ˳¬¹ý¶þÊ®¸ö´ËÀàÕÊ»§ºÍÊÓÆµ£¬£¬£¬£¬£¬£¬£¬²¢½«Æä»ã±¨¸øYouTube½øÐÐɾ³ý¡£¡£¡£¡£¡£¡£¡£¡£ 


https://gbhackers.com/hackers-deliver-malware-via-youtube-video-game-cracks/