2.35ÒÚTwitterÓû§µÄÓ×ÎÒÐÅÏ¢ÔÚºÚ¿ÍÂÛ̳Éϰ䲼

°ä²¼¹¦·ò 2023-01-05
1¡¢2.35ÒÚTwitterÓû§µÄÓ×ÎÒÐÅÏ¢ÔÚºÚ¿ÍÂÛ̳Éϰ䲼

      

¾ÝýÌå1ÔÂ4ÈÕ±¨Â· £¬Ò»¸öÔ̺¬³¬¹ý2ÒÚTwitterÓû§µÄµç×ÓÓʼþµØÖ·µÄÊý¾Ý¼¯ÔÚºÚ¿ÍÂÛ̳BreachedÉϰ䲼 £¬½öÐèÖ§¸¶8¸öÂÛ̳Ǯ±Ò»ý·Ö£¨¼ÛÖµÔ¼2ÃÀÔª£©¡£×êÑÐÈËÔ±ÒÑÈ·ÈÏÆäÖÐÁгöµÄºÜ¶àÓʼþµØÖ·µÄÓÐЧÐÔ¡£¾Ý³Æ £¬¸ÃÊý¾Ý¼¯Óë11Ô·ÝÁ÷´«µÄ4ÒÚÌõÊý¾ÝÒ»Ñù £¬µ«¾­¹ýËãÕʺó²»Ô̺¬³Á¸´Ïî £¬×ÜÊýÏ÷¼õµ½Ô¼221608279Ìõ¡£Êý¾ÝÒÔRAR´æµµµÄ´ó¾Ö°ä²¼ £¬ÆäÖÐÔ̺¬6¸öÎı¾Îļþ £¬×Ü´óÓ×59GB £¬Éæ¼°ÓʼþµØÖ·¡¢ÐÕÃû¡¢êdzƺ͹Ø×¢µÈÐÅÏ¢¡£


https://securityaffairs.com/140352/data-breach/twitter-data-leak-235m-users.html


2¡¢ÎÖ¶ûÎÖÔâµ½EnduranceµÄÀÕË÷¹¥»÷200GBÃô¸ÐÊý¾ÝÒÉËÆÐ¹Â¶

      

1ÔÂ3ÈÕ±¨Â·³Æ £¬·¨¹ú°²È«»ú¹¹Anis Haboubi·¢ÏÖºÚ¿ÍÔÚÂÛ̳ÉÏÒÔ2500ÃÀÔªµÄ¼ÛÖµÏúÊÛ´ÓÎÖ¶ûÎÖÇÔÈ¡µÄÊý¾Ý¡£2022Äê12ÔÂ31ÈÕ £¬ÂÛ̳³ÉÔ±IntelBrokerÐû³ÆÎÖ¶ûÎÖÔâµ½ÁËEnduranceµÄÀÕË÷¹¥»÷ £¬¹¥»÷ÕßÇÔÈ¡ÁË200GBµÄÃô¸ÐÊý¾Ý £¬ÕâЩÊý¾Ý´Ë¿ÌÔÚÏúÊÛ¡£Âô¼ÒÚ¹ÊÍ˵ £¬ËûûÓÐË÷ÒªÊê½ð £¬ÓÉÓÚËûÒÔΪ¸Ã¹«Ë¾²»»á¸¶Êê½ð¡£¾ÝϤ £¬±»µÁÊý¾ÝÔ̺¬Êý¾Ý¿â½Ó¼û¡¢CICD½Ó¼û¡¢Atlassian½Ó¼û¡¢ÓòÃû½Ó¼û¡¢WiFiµãºÍµÇ¼¡¢ÊÚȨ³ÐÔØ¡¢API¡¢PAC°²È«½Ó¼û¡¢Ô±¹¤Ãûµ¥¡¢Èí¼þÐí¿ÉÖ¤ÒÔ¼°ÃÜÔ¿ºÍϵͳÎļþ¡£Ä¿Ç° £¬Éв»Ã÷ÏÔÕâһ˵·¨µÄÕæÊµÐÔ¡£


https://securityaffairs.com/140258/hacking/volvo-cars-data-breach-2.html


3¡¢Qualys·¢ÏÖÒÔ±»µÁµÄÒøÐÐÊý¾ÝΪµö¶ü·Ö·¢BitRATµÄ»î¶¯

      

QualysÔÚ1ÔÂ3ÈÕ³Æ £¬½üÆÚÒ»³¡ÐµĶñÒâÈí¼þ»î¶¯ÀûÓñ»µÁµÄÒøÐÐÊý¾Ý×÷Ϊµö¶ü £¬Ö¼ÔÚ·Ö·¢Ô¶³Ì½Ó¼ûľÂíBitRAT¡£¸Ã¹«Ë¾ÔÚµ÷²é´¹µö¹¥»÷ÖеÄBitRATµö¶üʱ £¬·¢ÏÖÒ»¼Ò¸çÂ×±ÈÑǺÏ×÷ÒøÐеÄIT»ù´¡ÉèÊ©Òѱ»¹¥»÷Õß½Ù³Ö £¬418777Ìõ¿Í»§Êý¾Ý±»µÁ¡£¹¥»÷Õß½«Êý¾Ýµ¼³öµ½±øÆ÷»¯µÄExcel¶ñÒâÎĵµÖÐ £¬ÒÔÓÕʹÊÕ¼þÈË´ò¿ªÎļþ¡£´ò¿ªÎļþ²¢ÆôÓúêºó £¬½«ÏÂÔØ²¢Ö´Ðеڶþ½×¶ÎDLL payload¡£µÚ¶þ½×¶ÎDLLʹÓø÷Àà·´µ÷ÊÔ¼¼Êõ £¬×îÖÕÔÚÖ¸±êÖ÷»úÉϼìË÷²¢Ö´ÐÐBitRAT¡£


https://blog.qualys.com/vulnerabilities-threat-research/2023/01/03/bitrat-now-sharing-sensitive-bank-data-as-a-lure


4¡¢ÃÀ¹úÌú·ºÍ»ú³µ¹«Ë¾WabtecÔâµ½LockBitµÄÀÕË÷¹¥»÷

      

ýÌå1ÔÂ3ÈÕ³Æ £¬ÃÀ¹úÌú·ºÍ»ú³µ¹«Ë¾Wabtec Corporationй©ÆäÔâµ½ÀÕË÷¹¥»÷µ¼ÖÂÊý¾Ýй¶¡£ºÚ¿ÍÔçÔÚ2022Äê3ÔÂ15ÈÕ¾ÍÈëÇÖÁËËûÃǵÄÍøÂç²¢ÔÚϵͳÉÏ×°ÖÃÁ˶ñÒâÈí¼þ £¬WabtecÔÚ6ÔÂ26ÈÕ³ÆÔÚÍøÂçÉϼì²âµ½Òì³ £»î¶¯¡£¼¸Öܺó £¬LockBit°ä²¼ÁË´ÓWabtecÇÔÈ¡µÄÊý¾ÝÑù±¾ £¬²¢×îÖÕÔÚ2022Äê8ÔÂ20ÈÕ¹«¿ªÁËÈ«Êý±»µÁÊý¾Ý¡£Wabtec¶Ô¸ÃÊÂÎñµÄµ÷²éÓÚ2022Äê11ÔÂ23ÈÕʵÏÖ £¬È·ÈÏй¶ÐÅÏ¢Ô̺¬ÐÕÃû¡¢Éí·ÝÖ¤ºÅÂë¡¢Éç»á±£ÏÕºÅÂë»ò²ÆÕþ´úÂë¡¢»¤ÕÕºÅÂëºÍ¹ÍÖ÷¼ø±ðºÅÂëµÈ¡£¸Ã¹«Ë¾ÓÚ2022Äê12ÔÂ30ÈÕÆðÍ·ÏòÊÜÓ°ÏìµÄÓ×ÎÒ·¢ËÍ֪ͨ £¬µ«Î´Ð¹Â©È·ÇÐÈËÊý¡£


https://www.bleepingcomputer.com/news/security/rail-giant-wabtec-discloses-data-breach-after-lockbit-ransomware-attack/


5¡¢×êÑÐÈËÔ±Åû¶Õë¶ÔÐÅÏ¢°²È«ÁìÓòµÄFlipper Zero´¹µö»î¶¯

      

¾Ý1ÔÂ3ÈÕ±¨Â· £¬Dominic AlvieriÅû¶ÁËÕë¶Ô°²È«×êÑÐÈËÔ±µÄFlipper Zero´¹µö»î¶¯¡£Flipper ZeroÊÇÒ»¿î±ãЯʽ¶àÖ°ÄÜÍøÂ簲ȫ¹¤¾ß £¬ÆäÔÚÈ¥Äê³öÏÖ³ö²úÎÊÌâµ¼Ö¹©¸øÇ·È± £¬ÎÞ·¨Âú×ãÈÔÔÚÔö³¤µÄÐèÒª¡£¹¥»÷ÕßÀûÓÃÈËÃǶÔFlipper ZeroµÄÐËÖ¼°Æä¹©¸øÇ·È± £¬´´½¨É̵ê¼Ù×°ÏúÊÛËü¡£×êÑÐÈËÔ±·¢ÏÖÁËαÔìµÄÈý¸öTwitterÕË»§ºÍÁ½¸öÉ̵ê¡£½áÕËʱÂò¼Ò»á½øÈë´¹µöÒ³Ãæ £¬²¢±»ÒªÇóÊäÈëÓʼþµØÖ·¡¢ÐÕÃûºÍËÍ»õµØÖ· £¬¶øºóÑ¡ÔñʹÓÃÒÔÌ«·»»ò±ÈÌØ±Ò¸¶¿î¡£´Ë´¦ÁгöµÄÇ®°üµØÖ·Ã»ÓÐÊÕµ½Èκθ¶¿î £¬ËùÒÔҪôÊǸÃÉ̵êûÓÐÆ­µ½ÈκÎÈË £¬ÒªÃ´ÊÇÔÚÿ´ÎÂòÂôºó¶¼Ê¹ÓÃеÄÇ®°ü¡£


https://www.bleepingcomputer.com/news/security/ongoing-flipper-zero-phishing-attacks-target-infosec-community/


6¡¢Security Joes°ä²¼Raspberry RobinлµÄ»ã±¨

      

1ÔÂ3ÈÕ £¬Security Joes°ä²¼»ã±¨³ÆRaspberry RobinÆðÍ·Õë¶ÔÅ·Ö޵ĽðÈںͱ£ÏÕÐÐÒµ¡£¶ÔÒ»´Î´ËÀ๥»÷µÄȡ֤µ÷²éÏÔʾ £¬ËüʹÓÃÁËÒ»¸ö7-ZipÎļþ £¬¸ÃÎļþÊÇͨ¹ýÉ繤¹¥»÷ͨ¹ýÖ¸±êµÄä¯ÀÀÆ÷ÏÂÔØµÄ £¬Ô̺¬Ò»¸öMSI×°Ö÷¨Ê½Îļþ £¬Ö¼ÔÚ·Ö·¢¶à¸öÄ£¿é¡£ÔÚÁíÒ»¸ö°¸ÀýÖÐ £¬Ö¸±êÊÇͨ¹ýÍйÜÔÚ·Ö·¢¸æ°×Èí¼þµÄÓòÉϵÄڲƭÐÔ¸æ°×ÏÂÔØµÄZIPÎļþ¡£´Ë±í £¬×êÑÐÈËÔ±·¢ÏÖͳһ¸öQNAP·þÎñÆ÷±»ÓÃÓÚ¶àÂÖ¹¥»÷ £¬Ö¸±êµÄÊý¾Ý²»ÔÙÊÇ´¿Îı¾´ó¾Ö £¬¶øÊÇRC4¼ÓÃܵÄ¡£


https://www.securityjoes.com/post/raspberry-robin-detected-itw-targeting-insurance-financial-institutes-in-europe