NeopetsÍøÕ¾Ô´´úÂëºÍ³¬¹ý6900ÍòÓû§ÐÅÏ¢±»µÁ

°ä²¼¹¦·ò 2022-07-22
1¡¢NeopetsÍøÕ¾µÄÔ´´úÂëºÍ³¬¹ý6900ÍòÓû§µÄÐÅÏ¢±»µÁ

      

¾Ý7ÔÂ20ÈÕ±¨Â· £¬Ðé¹¹³èÎïÍøÕ¾NeopetsµÄÔ´´úÂëºÍ³¬¹ý6900Íò»áÔ±µÄÓ×ÎÒÐÅÏ¢±»µÁ¡£±¾Öܶþ £¬ÃûΪTarTarXµÄºÚ¿ÍÒÔ4¸ö±ÈÌØ±Ò£¨Ô¼ºÏ94,000ÃÀÔª£©µÄ¼ÛÖµÏúÊÛNeopets.comÍøÕ¾µÄÔ´´úÂëºÍÊý¾Ý¿â¡£NeopetsÍŶӰµÊ¾ËûÃÇÒѾ­»ñϤ´ËÊÂÎñ £¬²¢ÔÚÖÂÁ¦½â¾öÎÊÌâ¡£¸Ã¹«Ë¾»¹°µÊ¾ £¬Ö»Óй¥»÷Õß¿ÉÄÜʵʱ½Ó¼ûÊý¾Ý¿â £¬¸ü¸ÄNeopetsµÄÃÜÂë¿ÉÄܱ­Ë®³µÐ½ £¬ÓÉÓÚ¹¥»÷ÕßÄܹ»ÇáËɵز鿴ÐÂÃÜÂë¡£´Ë±í £¬RedditÓû§neo_truths³Æ £¬ÔÚ·¢ÏÖ¸ÃÍøÕ¾´æÔÚ·ì϶ºó £¬ËûÒѾ­¶ÔÊý¾Ý¿â½øÐÐÁËÖÁÉÙÒ»Äêδ¾­ÊÚȨµÄ½Ó¼û¡£


https://www.bleepingcomputer.com/news/security/neopets-data-breach-exposes-personal-data-of-69-million-members/


2¡¢×êÑÐÍŶӷ¢ÏÖÀàËÆÈðÊ¿¾üµ¶µÄLightning Framework

      

¾ÝIntezer 7ÔÂ21ÈÕ±¨Â· £¬ÐÂÄ £¿é»¯¶ñÒâÈí¼þLightning Framework¿ÉÓÃÀ´×°ÖÃrootkitºÍºóÃÅ¡£ËüÓµÓдóÁ¿Ö°ÄÜ £¬³ÉΪÕë¶ÔLinuxϵͳ¿ª·¢µÄ×ÔӵĿò¼ÜÖ®Ò» £¬±»³ÆÎªÈðÊ¿¾üµ¶¡£¸Ã¿ò¼ÜÓµÓб»¶¯ºÍ×Ô¶¯Óë¹¥»÷ÕßͨѶµÄÖ°ÄÜ £¬Ô̺¬ÔÚÖ¸±êÉ豸ÉÏ´ò¿ªSSH £¬ÒÔ¼°¶à̬¿ÉËÜÉúºÅÁîºÍ½ÚÔìÅäÖ᣶ñÒâÈí¼þµÄÖ÷ÌâÊÇÒ»¸öÏÂÔØ·¨Ê½£¨¡°kbioset¡±£©ºÍÒ»¸öÖ÷ÌâÄ £¿é£¨¡°kkdmflush¡±£© £¬»¹Ê¹ÓÃÁË·ÂðÓòÃû £¬²¢¼Ù×°³ÉSeahorse GNOME passwordºÍ¼ÓÃÜÃÜÔ¿ÖÎÀíÆ÷ £¬ÒÔÈÆ¹ýϵͳµÄ¼ì²â¡£


https://www.intezer.com/blog/research/lightning-framework-new-linux-threat/


3¡¢KasperskyÅû¶»ùÓÚRustµÄÐÂÀÕË÷Èí¼þLunaµÄϸ½Ú

      

7ÔÂ20ÈÕ £¬Kaspersky·¢ÏÖ¼ÌBlackCatºÍHiveÖ®ºóµÄµÚÈý¸ö»ùÓÚRustµÄÀÕË÷Èí¼þLuna £¬Ä¿Ç°ÈÔÔÚ¿ª·¢ÖС£ËüÄܹ»ÔÚ Windows¡¢LinuxºÍESXiϵͳÉÏÔËÐÐ £¬ÆäÖÐLinuxºÍESXiµÄÑù±¾¶¼ÊÇʹÓÃÒ»ÑùµÄÔ´´úÂë±àÒëµÄ £¬ÓëWindowsµÄ°æ±¾Ïà±Å×ÐһЩÇá΢µÄ±ä¶¯¡£Ëü»¹Ê¹ÓÃÁËÒ»ÖÖ²»Ì«³£¼ûµÄ¼ÓÃܹ滮 £¬Í¨¹ýCurve25519ºÍAESµÄ×éºÏ½øÐмÓÃÜ¡£´Ë±í £¬ÓÉÓÚ¶þ½øÔìÎļþÖÐÓ²±àÂëµÄÊê½ð¼Í¼ÖÐµÄÆ´Ð´ÃýÎó £¬×êÑÐÈËÔ±´§Ä¦ÆäÖ÷Ì⿪·¢ÈËÔ±Óë¶íÂÞ˹ÓйØ¡£


https://securelist.com/luna-black-basta-ransomware/106950/


4¡¢LinkedInÈÔÊÇ2022ÄêQ2´¹µö»î¶¯Öб»·ÂÕÕ×î¶àµÄÆ·ÅÆ

      

Check PointÔÚ7ÔÂ19ÈÕ°ä²¼ÁË2022ÄêµÚ¶þ¼¾¶ÈÆ·ÅÆÍøÂç´¹µöµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö £¬ÔÚQ2µÄ´¹µö»î¶¯ÖÐLinkedInÈÔÃûÁаñÊ× £¬ÓëQ1Ïà±È¼ÙðLinkedInµÄÕ¼±È´Ó52%½µÂäµ½45%¡£È»¶ø £¬ËüÓë±»·ÂðµÄµÚ¶þ´óÆ·ÅÆMicrosoftÖ®¼äÈÔÓµÓÐÏ൱´óµÄ¾àÀ루½öΪ13%£©¡£Æä´ÎÊÇDHL£¨12%£©¡¢Amazon(9%)¡¢Apple(3%)ºÍAdidas(2%)¡£ÆäÖÐ £¬¼ÙÒâLinkedInµÄ´¹µö»î¶¯ÊÔͼ·ÂÕÕ·¢Ë͸øÓû§µÄ³£¼ûÐÂÎÅ £¬Õë¶ÔMicrosoftµÄ´¹µö»î¶¯ÖØÒªÊÇÒªÇóÑéÖ¤OutlookÕÊ»§ÒÔÇÔÈ¡Óû§ÃûºÍÃÜÂë¡£


https://blog.checkpoint.com/2022/07/19/linkedin-still-number-one-brand-to-be-faked-in-phishing-attempts-while-microsoft-surges-up-the-rankings-to-number-two-spot-in-q2-report/


5¡¢¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½¹¥»÷ £¬ÏµÍ³ÈÔÔÚ¸´Ô­ÖÐ

      

¾ÝýÌå7ÔÂ21ÈÕ±¨Â· £¬¼ÓÄôó»¬Ìú¬µØÓò½ÌÓý¾ÖÔâµ½ÁËÍøÂç¹¥»÷¡£»¬Ìú¬µØÓò½ÌÓý¾Ö°µÊ¾ £¬ÔÚÔâµ½ÍøÂç¹¥»÷ºó £¬ÆäÔÚÖÂÁ¦¸´Ô­ITϵͳ²¢±£»¤½ÌÈËÔ±¹¤¡¢Ñ§ÉúºÍ¼ÒÍ¥µÄÓ×ÎÒÐÅÏ¢¡£ÉÐδעÃ÷¹¥»÷Õß¿ÉÄܽӼûÁËÄÄЩÀàÐ͵ÄÎļþ£¨ÈôÊÇÓеϰ£© £¬»òÕßÊÇ·ñ»á¸¶·ÑÀ´³ÁнӼûϵͳ¡£½²»°È˳Æ £¬½üÄêÀ´Õë¶Ô½ÌÓý²¿ÃŵĹ¥»÷Ô½À´Ô½ÆµÈÔ £¬Regina¹«Á¢Ñ§ÌÃÔÚ½ñÄê5ÔÂÔâµ½Á˹¥»÷²¢¹Ø¹ØÁËËùÓлùÓÚ»¥ÁªÍøµÄϵͳ £¬2021Äê1ÔÂÆ¤¶ûµØÓòµÄ½ÌÓý¾ÖÔøÔâµ½¹¥»÷¡£


https://www.cbc.ca/news/canada/kitchener-waterloo/waterloo-region-district-school-board-cyber-attack-1.6526731?cmp=rss


6¡¢Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üР£¬×ܼƽ¨¸´45¸ö·ì϶ 

      

7ÔÂ20ÈÕ £¬Cisco°ä²¼¶à¸ö²úÆ·µÄ°²È«¸üР£¬×ܼƽ¨¸´45¸ö·ì϶¡£ÆäÖнÏΪÑϳÁµÄÊÇCisco Nexus DashboardÖеÄËÁÒâºÅÁîÖ´Ðзì϶£¨CVE-2022-20857 £¬CVSSÆÀ·Ö9.8£©¡¢ÈÝÆ÷Ó³Ïñ¶Áд·ì϶£¨CVE-2022-20858£©ºÍ¿çÕ¾ÒªÇóαÔì·ì϶£¨CVE-2022-20861£©¡£³ý´ËÖ®±í £¬Cisco»¹½¨¸´ÁËÆäSmall Business RV110W¡¢RV130¡¢RV130WºÍRV215W·ÓÉÆ÷ÖеÄ35¸ö·ì϶ £¬ËüÃÇ¿ÉÄܵ¼ÖÂËÁÒâ´úÂëÖ´ÐкÍDoS¹¥»÷¡£


https://thehackernews.com/2022/07/cisco-releases-patches-for-critical.html