ÀÕË÷Èí¼þ×éÖ¯EverestÈëÇÖ°²µÂÂêÇÔÈ¡º£Á¿Êý¾Ý
°ä²¼¹¦·ò 2025-11-191. ÀÕË÷Èí¼þ×éÖ¯EverestÈëÇÖ°²µÂÂêÇÔÈ¡º£Á¿Êý¾Ý
11ÔÂ17ÈÕ£¬£¬£¬£¬£¬£¬ÀÕË÷Èí¼þ×éÖ¯EverestÔÚÆä°µÍøÐ¹Â¶ÍøÕ¾Ðû³ÆÒÑÈëÇÖÃÀ¹ú»î¶¯·þ×°¾ÞÍ·Under Armour£¨°²µÂÂ꣩£¬£¬£¬£¬£¬£¬ÇÔÈ¡343GBÄÚ²¿Êý¾Ý£¬£¬£¬£¬£¬£¬º¸ÇÔ±¹¤ÐÅÏ¢¼°¶à¹úÊý°ÙÍòÓû§Ó×ÎÒÊý¾Ý¡£¡£¡£¡£¡£ÎªÖ¤Ã÷ÕæÊµÐÔ£¬£¬£¬£¬£¬£¬¸Ã×éÖ¯°ä²¼ÁËÑù±¾Êý¾Ý£¬£¬£¬£¬£¬£¬Ô̺¬¿Í»§¹ºÎﺹÇà¡¢µç×ÓÓʼþ¡¢µç»°ºÅÂë¡¢²É°ì¹¦·ò´Á¡¢²úÆ·SKU¡¢Ãû³Æ¡¢Àà±ð¡¢¼ÛÖµ¡¢¿â´æ×´Ì¬¡¢ÆÀ·Ö¡¢±¾µØ»¯ÃèÊö¼°ÓªÏú»î¶¯ÈÕÖ¾µÈÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬£¬ÉõÖÁÉæ¼°Óû§Ëµ»°Æ«ºÃ¡¢ÔÞ³É״̬¼°ÕË»§¹ØÁª±êʶ·û¡£¡£¡£¡£¡£ÕâЩÊý¾ÝÉî¶ÈÈÚºÏóÒ×µý±¨ÓëÓ×ÎÒÐÐΪ£¬£¬£¬£¬£¬£¬Èô¾°²µÂÂê֤ʵ£¬£¬£¬£¬£¬£¬½«×é³ÉÑϳÁÊý¾Ýй¶ÊÂÎñ¡£¡£¡£¡£¡£EverestΪ°²µÂÂêÉ趨ÆßÈÕµ¹¼ÆÊ±ÆÚÏÞ£¬£¬£¬£¬£¬£¬ÒªÇóͨ¹ýTox¼´Ê±Í¨Ñ¶¹¤¾ßÁªÏµ£¬£¬£¬£¬£¬£¬ÖҸ桰¹¦·òºÄ¾¡Ç°¡±Ðè°´²½Öè²Ù×÷£¬£¬£¬£¬£¬£¬²»È»¿ÉÄÜй¶ÆëÈ«Êý¾Ý¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬°²µÂÂêÉÐδ¹Ù·½È·ÈÏ»ò·ñ¶¨´ËÖ¸¿Ø£¬£¬£¬£¬£¬£¬µ«°²È«×¨¼Ò½¨ÒéÓû§²ÉȡԤ·À´ëÊ©£ºÇ×êÇ¼à¿ØÕË»§ÓëÒøÐл£¬£¬£¬£¬£¬£¬¸ü¸ÄËùÓйØÁªÃÜÂ룬£¬£¬£¬£¬£¬ÔÚ°²µÂÂêÓйØÕË»§ÆôÓÃË«³É·ÖÈÏÖ¤£¬£¬£¬£¬£¬£¬²¢¾¯Ìè¼Ù×°³ÉÊý¾Ýй¶¾¯±¨µÄ´¹µöÓʼþ¡£¡£¡£¡£¡£
https://hackread.com/everest-ransomware-under-armour-users-data/
2. RondoDox½©Ê¬ÍøÂçÀûÓÃXWiki·ì϶·¢Õ¹´ó¹æÄ£¹¥»÷
11ÔÂ17ÈÕ£¬£¬£¬£¬£¬£¬ÃÀ¹úÍøÂ簲ȫºÍÐÅÏ¢°²È«¾Ö£¨CISA£©ÓÚ10ÔÂ30ÈÕ½«XWikiƽ̨ÖеÄCVE-2025-24893Ô¶³Ì´úÂëÖ´ÐУ¨RCE£©·ì϶ÏóÕ÷Ϊ"ÔÚ±»»ý¼«ÀûÓÃ"¡£¡£¡£¡£¡£·ì϶µý±¨¹«Ë¾VulnCheck×îл㱨ÏÔʾ£¬£¬£¬£¬£¬£¬¸Ã·ì϶Òѱ»¶à¸öÍþвÐÐΪÕßÀûÓ㬣¬£¬£¬£¬£¬Ô̺¬RondoDox½©Ê¬ÍøÂçÔËÓªÉ̺ͼÓÃÜÇ®±Ò¿ó¹¤¡£¡£¡£¡£¡£RondoDox×÷Ϊ´ó¹æÄ£½©Ê¬ÍøÂç¶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬×îÔçÓÉFortinetÓÚ2025Äê7Լͼ£¬£¬£¬£¬£¬£¬Ç÷Ïò¿Æ¼¼ÔÚ10Ô³õÖÒ¸æÆä³ÊÖ¸Êý¼¶Ôö³¤£¬£¬£¬£¬£¬£¬×îбäÖÖÀûÓÃ56¸öÒÑÖª·ì϶¹¥»÷ÖÁÉÙ30̨É豸£¬£¬£¬£¬£¬£¬²¿ÃÅ·ì϶Դ×ÔPwn2OwnºÚ¿Í´óÈüÅû¶µÄ·ì϶¡£¡£¡£¡£¡£¹¥»÷õè¾¶ÏÔʾ£¬£¬£¬£¬£¬£¬RondoDoxͨ¹ý¾«ÐÄ»ú¹ØµÄHTTP GETÒªÇ󣬣¬£¬£¬£¬£¬ÀûÓÃXWiki SolrSearch¶Ëµã×¢Èëbase64±àÂëµÄGroovy´úÂ룬£¬£¬£¬£¬£¬´¥·¢·þÎñÆ÷ÏÂÔØ²¢Ö´ÐÐÔ¶³ÌshellÓÐÐ§ÔØºÉ¡£¡£¡£¡£¡£µÚÒ»½×¶ÎÏÂÔØÆ÷¾ç±¾»á¼ìË÷²¢Ö´ÐÐÖØÒªÓÐÐ§ÔØºÉ¡£¡£¡£¡£¡£×êÑÐÈËÔ±¹Û²âµ½£¬£¬£¬£¬£¬£¬11ÔÂ7ÈÕ³öÏÖ¼ÓÃÜÇ®±ÒÍÚ¿ó·¨Ê½²¿Ê𣬣¬£¬£¬£¬£¬10ÔÂ31ÈÕºÍ11ÔÂ11ÈÕÔò²úÌìÉúÁ¢bash·´ÏòshellµÄ³¢ÊÔ¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬¹¥»÷Õß»¹Í¨¹ýNuclei½øÐÐ¿í·ºÉ¨Ã裬£¬£¬£¬£¬£¬³¢ÊÔÖ´Ðв鿴ϵͳÓû§ÕË»§ÐÅÏ¢µÄºÅÁî¼°»ùÓÚOASTµÄ̽²â¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/rondodox-botnet-malware-now-hacks-servers-using-xwiki-flaw/
3. Eurofiber FranceÔâºÚ¿ÍÈëÇÖÖÂÆ±ÎñϵͳÊý¾Ýй¶
11ÔÂ17ÈÕ£¬£¬£¬£¬£¬£¬ºÉÀ¼µçÐż¯ÍÅEurofiber Group NVÆìÏ·¨¹ú×Ó¹«Ë¾Eurofiber France SAS½üÈÕÅû¶һ·Êý¾Ýй¶ÊÂÎñ¡£¡£¡£¡£¡£¸Ã¹«Ë¾×¨Ò»ÓÚΪÆóÒµÌṩÊý×Ö»ù´¡ÉèÊ©£¬£¬£¬£¬£¬£¬ÔËÓª¸²¸ÇºÉÀ¼¡¢±ÈÀûʱ¡¢·¨¹úºÍµÂ¹úµÄ76,000¹«Àï¹âÏËÍøÂç¡£¡£¡£¡£¡£ÊÂÎñ²úÉúÓÚÉÏÖÜÍíЩʱ³½£¬£¬£¬£¬£¬£¬ºÚ¿ÍÀûÓ÷ì϶ÈëÇÔì䯱ÎñÖÎÀíϵͳ¼°ÔƲ¿ÃÅ£¨ATE portal£©£¬£¬£¬£¬£¬£¬²¢²¨¼°ÇøÓò×ÓÆ·ÅÆEurafibre¡¢FullSave¡¢NetiwanºÍAvelia¡£¡£¡£¡£¡£¹«Ë¾Ç¿µ÷£¬£¬£¬£¬£¬£¬´æ´¢ÔÚÆäËûϵͳÖеÄÒøÐоßÌåÐÅÏ¢µÈ¡°¹Ø¼üÊý¾Ý¡±Î´ÊÜÓ°Ï죬£¬£¬£¬£¬£¬µ«Î´¾ßÌå×¢Ã÷±»µÁÊý¾ÝÀàÐÍ£¬£¬£¬£¬£¬£¬½ö°µÊ¾½«Í¨ÖªÊÜÓ°Ïì¿Í»§¡£¡£¡£¡£¡£ÍþвÐÐΪÕß¡°ByteToBreach¡±ÔÚÊý¾Ýй¶ÂÛ̳Ðû³Æ¶Ô´ËÕÆ¹Ü£¬£¬£¬£¬£¬£¬Ðû³ÆÇÔÈ¡ÁË10,000¼ÒÆóÒµ¼°µÐÔÖʵÌåµÄÊý¾Ý£¬£¬£¬£¬£¬£¬Ô̺¬ÆÁÄ»½ØÍ¼¡¢VPNÅäÖÃÎļþ¡¢Í´´¦¡¢Ô´´úÂë¡¢Ö¤Êé¡¢´æµµ¡¢µç×ÓÓʼþÕË»§ÎļþºÍSQL±¸·ÝÎļþ¡£¡£¡£¡£¡£¸Ã×éÖ¯ÒªÇóÖ§¸¶Êê½ð£¬£¬£¬£¬£¬£¬²»È»½«¹«¿ªÐ¹Â¶Êý¾Ý¡£¡£¡£¡£¡£Eurofiber FranceÔÚ·¢ÏÖ·ì϶ºóÊýÓ×ʱÄÚ£¬£¬£¬£¬£¬£¬ÒÑ¶ÔÆ±Îñƽ̨ºÍATEÃÅ»§Ö´ÐмÓÇ¿°²È«´ëÊ©²¢½¨¸´·ì϶£¬£¬£¬£¬£¬£¬Í¬Ê±²ÉÈ¡¶î±í´ëʩԤ·À½øÒ»²½Ð¹Â¶¡£¡£¡£¡£¡£¹«Ë¾ÒÑÏò·¨¹úÊý¾Ý±£»£»£»£»£»£»£»£»¤»ú¹¹CNIL¡¢ÍøÂ簲ȫ»ú¹¹ANSSIÌá½»ÀÕË÷»ã±¨£¬£¬£¬£¬£¬£¬²¢´«µÝÊÂÎñÏêÇé¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/eurofiber-france-warns-of-breach-after-hacker-tries-to-sell-customer-data/
4. ÒÁÀÊAPT42×éÖ¯ÌáÒé¡°SpearSpecter¡±¼äµýÐж¯
11ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬ÒÔÉ«Áйú¶ÈÊý×Ö»ú¹¹£¨INDA£©½üÈÕÅû¶£¬£¬£¬£¬£¬£¬ÒÁÀʹú¶ÈÖ§³ÖµÄAPT42×éÖ¯£¨±ðºÅAPT35¡¢Charming Kitten£©×Ô2025Äê9Ô³õÆð£¬£¬£¬£¬£¬£¬Õë¶ÔÒÁ˹À¼¸ïÃüÎÀ¶Ó£¨IRGC£©¹Ø×¢µÄ¸ß¼¶¹ú·ÀºÍµ±¾Ö¹ÙÔ±¼°Æä¼ÒÍ¥³ÉÔ±£¬£¬£¬£¬£¬£¬ÌáÒé´úºÅΪ¡°SpearSpecter¡±µÄ³ÖÐøÐÔ¼äµýÐж¯¡£¡£¡£¡£¡£¸ÃÐж¯ÒԸ߶ȸöÐÔ»¯µÄÉç½»¹¤³ÌΪÖ÷Ì⼿Á©£¬£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ý¼Ù×°³ÉÖ¸±êÊìʶµÄÁªÏµÈË£¬£¬£¬£¬£¬£¬ÒÔÔ¼Çë²ÎÓë³ÛÃû»áÒé»òÆÌÅųÁÒª»áÎîΪÓɳÉÁ¢ÐÅÀµ£¬£¬£¬£¬£¬£¬ÉõÖÁÑÓ³¤ÖÁÖ¸±ê¼ÒÍ¥³ÉÔ±ÒÔÀ©´ó¹¥»÷Ãæ¡£¡£¡£¡£¡£×êÑÐÏÔʾ£¬£¬£¬£¬£¬£¬¹¥»÷Á´³öÏÖ¾«ÃÜÉè¼Æ£º¹¥»÷Õßͨ¹ýWhatsApp·¢ËͼÙ×°³É»áÒéËùÐèÎļþµÄ¶ñÒâÁ´½Ó£¬£¬£¬£¬£¬£¬ÀûÓá°search-ms:¡±ºÍ̸´¦Ö÷¨Ê½¶¨ÏòÖÁWebDAVÍйܵÄWindows¿ì½Ý·½Ê½Îļþ¡£¡£¡£¡£¡£¸ÃLNKÎļþ»áÏνÓCloudflare Workers×ÓÓòÃû»ñÈ¡Åú´¦Öþ籾£¬£¬£¬£¬£¬£¬×îÖÕ¼ÓÔØ¾ß±¸Ä£¿£¿£¿£¿£¿£¿£¿é»¯Ö°ÄܵÄPowerShellºóÃÅTAMECAT¡£¡£¡£¡£¡£¸ÃºóÃÅѡȡHTTPS¡¢DiscordºÍTelegramÈý³ÁͨѶÐÅ·£¬£¬£¬£¬£¬£¬Ö§³Öϵͳ¿úËÅ¡¢ÎļþÇÔÈ¡¡¢ä¯ÀÀÆ÷Êý¾ÝµÁÈ¡¡¢OutlookÓÊÏäÄÚÈÝÍøÂç¼°15Ãë¾àÀë³ÖÐø½ØÆÁ£¬£¬£¬£¬£¬£¬Ëùº±¼û¾Ýͨ¹ýHTTPS»òFTP±í´«¡£¡£¡£¡£¡£ÆäÒþÉí¼¼ÊõÔ̺¬¼ÓÃÜÒ£²âÊý¾Ý¡¢»ìºÏÔ´´úÂë¡¢ÀûÓúϷ¨ÏµÍ³¹¤¾ß°µ²ØÐÐΪ£¬£¬£¬£¬£¬£¬²¢ÖØÒªÔÚÄÚ´æÖÐÔËÐÐÒÔÏ÷¼õ´ÅÅ̺ۼ£¡£¡£¡£¡£¡£
https://thehackernews.com/2025/11/iranian-hackers-launch-spearspecter-spy.html
5. È«Çòµç³Ø¾ÞÍ·LGÄÜÔ´ÔâAkiraÀÕË÷Èí¼þ¹¥»÷
11ÔÂ19ÈÕ£¬£¬£¬£¬£¬£¬½üÈÕ£¬£¬£¬£¬£¬£¬È«Çò×î´óµç³ØÔì×÷ÉÌÖ®Ò»º«¹úLGÄÜÔ´½â¾ö¹æ»®¹«Ë¾Ö¤ÊµÔâ·êÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£¡£¡£¾Ý¹«Ë¾½²»°ÈËй©£¬£¬£¬£¬£¬£¬Õâ´Î¹¥»÷Ö¸±êΪº£±íij´¦Ìض¨ÉèÊ©£¬£¬£¬£¬£¬£¬×ܲ¿¼°ÆäËû´óÖÞÉèʩδÊÜÓ°Ïì¡£¡£¡£¡£¡£ÊÜÓ°ÏìÉèÊ©ÔÚ²ÉÈ¡¸´Ô´ëÊ©ºóÒѸ´ÔÕý³£ÔËÐУ¬£¬£¬£¬£¬£¬¹«Ë¾Õý·¢Õ¹°²È«µ÷²é×÷ΪԤ·À´ëÊ©¡£¡£¡£¡£¡£¸ÃÊÂÎñÓëAkiraÀÕË÷Èí¼þÍÅ»ïÖ±½ÓÓйء£¡£¡£¡£¡£¸ÃÍÅ»ïÉÏÖܱ»ÃÀ¹úÁª¹úµ÷²é¾Ö£¨FBI£©ÁÐΪ³Áµã¹Ø×¢¶ÔÏ󡣡£¡£¡£¡£FBIÓÚ11ÔÂ13ÈÕ°ä²¼×îÐÂ֪ͨ£¬£¬£¬£¬£¬£¬Ö¸³öAkiraÍÅ»ïͨ¹ýÀÕË÷Èí¼þÒÑÀÕË÷³¬2.44ÒÚÃÀÔªÊê½ð£¬£¬£¬£¬£¬£¬Æä¹¥»÷²»½öÇÔÈ¡½ðÇ®£¬£¬£¬£¬£¬£¬¸ü·ÛËéÒ½Ôº¡¢Ñ§Ìü°ÆóÒµÔËÐÐϵͳ¡£¡£¡£¡£¡£FBIÖҸ棬£¬£¬£¬£¬£¬¸Ã×éÖ¯Õý¶Ô×¼Ôì×÷Òµ¼°ÆäËû¶à¸öÐÐÒµ¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬AkiraÍÅ»ïÒѽ«LGÄÜÔ´ÁÐÈëÆäÐ¹Â¶ÍøÕ¾£¬£¬£¬£¬£¬£¬Ðû³ÆÇÔÈ¡ÁËÔ̺¬¹«Ë¾Îļþ¡¢Ô±¹¤ÐÅÏ¢Êý¾Ý¿âÔÚÄÚµÄ1.7TBÊý¾Ý¡£¡£¡£¡£¡£×÷Ϊº«¹ú¿ç¹ú¹«Ë¾LGµÄ×Ó¹«Ë¾£¬£¬£¬£¬£¬£¬LGÄÜÔ´Ô¤¼Æ2024Ä꽫ͨ¹ýÏòÆû³µÔì×÷É̹©¸øµç³Ø»ñµÃ175ÒÚÃÀÔªÊÕÈ룬£¬£¬£¬£¬£¬ÆäÐÐҵְλʹÆä³ÉÎªÍøÂç·¸×ïÖ¸±ê¡£¡£¡£¡£¡£
https://therecord.media/lg-energy-solution-ransomware-incident-battery-maker
6. ·¨¹úPajemploiÊý¾Ýй¶ÊÂÎñ²¨¼°120ÍòÈË
11ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬·¨¹úÉç»á±£ÏÕ·þÎñ»ú¹¹Pajemploi½üÈÕÔâ·ê³Á´óÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬£¬£¬¿ÉÄÜÓ°ÏìÔ¼120ÍòÃûʹÓÃÆä·þÎñµÄ˽Ӫ¹ÍÖ÷Ô±¹¤¼°×¨Òµ»¤ÀíÈËÔ±¡£¡£¡£¡£¡£¾Ý¸Ã»ú¹¹²¼¸æ£¬£¬£¬£¬£¬£¬11ÔÂ14ÈÕ·¢ÏÖµÄÍøÂç¹¥»÷µ¼ÖÂÓû§È«Ãû¡¢µ®ÉúµØ¡¢ÓÊÕþµØÖ·¡¢Éç»á°²È«ºÅÂë¡¢ÒøÐлú¹¹Ãû³Æ¡¢PajemploiÕ˺ż°ÈÏÖ¤±àºÅµÈÃô¸ÐÐÅÏ¢±»µÁ£¬£¬£¬£¬£¬£¬µ«ÒøÐÐÕ˺ţ¨IBAN£©¡¢µç×ÓÓÊÏä¡¢µç»°ºÅÂë¼°ÕË»§ÃÜÂëδ±»»ñÈ¡¡£¡£¡£¡£¡£Õâ´ÎÊÂÎñÖØÒªÉæ¼°Í¨¹ýURSSAF£¨·¨¹úÉç»á±£Ïսɿî»ú¹¹£©Ê¹ÓÃPajemploi·þÎñµÄ¼Ò³¤¼°¼ÒÍ¥Íжù·þÎñÌṩÕß¡£¡£¡£¡£¡£PajemploiÇ¿µ÷£¬£¬£¬£¬£¬£¬Ö»¹ÜÊý¾Ýй¶£¬£¬£¬£¬£¬£¬µ«ÆäÖ÷ÌâÔËӪδÊÜÓ°Ï죬£¬£¬£¬£¬£¬É걨±í´¦Öü°¹¤×ÊÖ§¸¶µÈ·þÎñÈÔÕý³£ÔË×÷¡£¡£¡£¡£¡£ÊÂÎñ²úÉúºó£¬£¬£¬£¬£¬£¬»ú¹¹Á¢¼´Æô¶¯Ó¦¼±´ëÊ©×èÖ¹¹¥»÷£¬£¬£¬£¬£¬£¬²¢ÒÑÏò·¨¹úÊý¾Ý±£»£»£»£»£»£»£»£»¤¾Ö£¨CNIL£©ºÍ¹ú¶ÈÐÅϢϵͳ°²È«¾Ö£¨ANSSI£©»ã±¨£¬£¬£¬£¬£¬£¬Í¬Ê±³Ô¼µµ¥¶À֪ͨÿλÊÜÓ°ÏìÈËÔ±¡£¡£¡£¡£¡£URSSAFÒàÌáÐѹ«¼Ò¾¯ÌèÚ¿Æ·çÏÕ£¬£¬£¬£¬£¬£¬Òòй¶ÐÅÏ¢¿ÉÄܱ»ÓÃÓÚ´¹µöÓʼþ¡¢¶ÌÐÅ»òµç»°Ú¿Æ¡£¡£¡£¡£¡£½ØÖÁĿǰÉÐÎÞÀÕË÷Èí¼þ×éÖ¯Ðû³Æ¶ÔÕâ´Î¹¥»÷ÕÆ¹Ü¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/french-agency-pajemploi-reports-data-breach-affecting-12m-people/


¾©¹«Íø°²±¸11010802024551ºÅ