LockBit³ÆÒÑÈëÇÖXeinadin²¢Íþв°ä²¼1.5TB±»µÁÊý¾Ý

°ä²¼¹¦·ò 2023-12-25

1¡¢LockBit³ÆÒÑÈëÇÖXeinadin²¢Íþв°ä²¼1.5TB±»µÁÊý¾Ý


¾ÝýÌå12ÔÂ23ÈÕ±¨Â· £¬LockBitÐû³Æ¶Ô¹ÜÕÊʦÊÂÎñËùXeinadinÔâµ½µÄ¹¥»÷ÕÆ¹Ü £¬²¢ÍþвҪÅû¶±»µÁÊý¾Ý¡£¸ÃÍÅ»ï°µÊ¾ÍøÂçÁË1.5 TBµÄXeinadin¿Í»§Êý¾Ý £¬Ô̺¬ËùÓÐÄÚ²¿Êý¾Ý¿â¡¢¿Í»§²ÆÕþÐÅÏ¢¡¢»¤ÕÕ¡¢ÕË»§Óà¶î¡¢¿Í»§Ó×ÎÒÕË»§½Ó¼ûȨÏ޺Ϳͻ§Ë¾·¨ÐÅÏ¢µÈ¡£¸ÃÍÅ»ïÍþв £¬ÈôÊÇXeinadin²»ÔÚ12ÔÂ25ÈÕµÄ֮ǰÁªÏµËûÃÇ £¬ËûÃǽ«°ä²¼ÕâЩÊý¾Ý¡£LockBit»¹°ä²¼ÁË3ÕŽØÍ¼ £¬ÏÔʾÁËÊý¾Ý¿â¹æ»®ºÍ±»ÈëÇÖ»ù´¡ÉèÊ©µÄ´æ´¢½á¹¹¡£


https://securityaffairs.com/156303/cyber-crime/lockbit-gang-xeinadin.html


2¡¢Mint Mobileй©¿Í»§ÐÅϢй¶¿ÉÄܵ¼ÖÂSIM»¥»»¹¥»÷


¾Ý12ÔÂ22ÈÕ±¨Â· £¬Òƶ¯Ðé¹¹ÍøÂçÔËÓªÉÌ(MVNO)Mint MobileÅû¶ÁËһ·¿Í»§Êý¾Ýй¶ÊÂÎñ¡£¸Ã¹«Ë¾ÓÚ22ÈÕÆðͷͨ¹ý±êÌâΪ¡°ÓйØÄúÕÊ»§µÄ³ÁÒªÐÅÏ¢¡±µÄÓʼþ֪ͨ¿Í»§ £¬³ÆºÚ¿Í»ñÈ¡Á˿ͻ§ÐÅÏ¢¡£Ð¹Â¶ÐÅÏ¢Ô̺¬ÐÕÃû¡¢µç»°ºÅÂë¡¢ÓʼþµØÖ·ÒÔ¼°SIMÐòÁкźÍIMEIºÅµÈ £¬ÕâЩÐÅÏ¢×ãÒÔ±»¹¥»÷ÕßÓÃÀ´ÕßÖ´ÐÐSIM»¥»»¹¥»÷¡£¹ÌÈ»MintÉÐδÅû¶Óйع¥»÷¾ßÌåÐÅÏ¢ £¬µ«7Ô·ÝÓл㱨³Æ £¬¹¥»÷ÕßÊÔͼÔÚºÚ¿ÍÂÛ̳ÉÏÏúÊÛMint MobileºÍUltra MobileµÄÊý¾Ý¡£


https://www.bleepingcomputer.com/news/security/mint-mobile-discloses-new-data-breach-exposing-customer-data/


3¡¢Akira°µÊ¾Òѹ¥»÷²¢ÇÔÈ¡ÈÕ²ú°Ä´óÀûÑÇ·Ö¹«Ë¾100GBÎļþ


ýÌå12ÔÂ22ÈÕ³Æ £¬Akira°µÊ¾Òѹ¥»÷Æû³µÔì×÷ÉÌÈÕ²úÆû³µ°Ä´óÀûÑÇ·Ö¹«Ë¾Nissan Australia £¬²¢´ÓÆäϵͳÖÐÇÔÈ¡ÁËÔ¼100GBµÄÎļþ¡£¸Ã¹«Ë¾»Ø¾øÖ§¸¶Êê½ð £¬ÀÕË÷ÍÅ»ï³ÆÒªÐ¹Â¶¾Ý±»µÁÎļþ £¬Ô̺¬ÏîÄ¿Êý¾Ý¡¢¿Í»§ºÍºÏ×÷ͬ°éµÄÐÅÏ¢ÒÔ¼°±£ÃܺÍ̸µÈ¡£¹ÌÈ»¸Ã¹«Ë¾ÈÔδ¶Ô±¾Ô³õÅû¶µÄ¹¥»÷¹éÒò £¬µ«¹¥»÷ÕßµÄÈ·ÓÚ22ÈÕÔÚÆäÍøÕ¾ÉÏÔö³¤ÁËеĸüР£¬Ð¹Â©ÒÑÈëÇÖÁËÆäλÓÚ°Ä´óÀûÑǺÍÐÂÎ÷À¼µÄ²¿ÃÅϵͳ¡£ÈÕ²ú°µÊ¾ £¬ÈÔÔÚµ÷²é¸ÃÊÂÎñµÄÓ°ÏìÒÔ¼°Ó×ÎÒÐÅÏ¢ÊÇ·ñÒѱ»½Ó¼û £¬²¢ÔÚÖÂÁ¦¸´Ô­ÊÜÓ°Ïìϵͳ¡£


https://www.bleepingcomputer.com/news/security/nissan-australia-cyberattack-claimed-by-akira-ransomware-gang/


4¡¢Î¢Èí·¢ÏÖAPT33ÀûÓÃеÄFalseFont¹¥»÷¹ú·À³Ð°üÉÌ


12ÔÂ22ÈÕ±¨Â·³Æ £¬Î¢Èí·¢ÏÖ £¬ÒÁÀʺڿÍÍÅ»ïAPT33£¨Ò²³ÆPeach Sandstorm£©ÔÚÀûÓÃ×î½ü·¢ÏֵĶñÒâÈí¼þFalseFont¹¥»÷È«ÇòµÄ¹ú·À³Ð°üÉÌ¡£FalseFontÊÇÒ»¸ö×Ô½ç˵ºóÃÅ £¬ÓµÓÐ¿í·ºµÄÖ°ÄÜ £¬¿ÉÔ¶³Ì½Ó¼û±»Ï°È¾µÄϵͳ¡¢Æô¶¯ÆäËüÎļþ²¢½«ÐÅÏ¢·¢Ë͵½ÆäC2·þÎñÆ÷ £¬ÓÚ11Ô³õ³õ´Î±»ÔÚÒ°·¢ÏÖ¡£Î¢Èí»¹³Æ £¬FalseFontµÄ¿ª·¢ºÍʹÓÃÓëÒÔǰ¹Û²ìµ½µÄPeach Sandstorm»î¶¯Ò»Ö £¬Åú×¢Peach SandstormÔÚ³ÖÐø¸Ä½øËûÃǵļäµý¼¼Êõ¡£


https://thehackernews.com/2023/12/microsoft-warns-of-new-falsefont.html


5¡¢BidenCashÔÚºÚ¿ÍÂÛ̳¹«¿ª190ÍòÕÅÐÅÓþ¿¨µÄÐÅÏ¢


¾Ý12ÔÂ22ÈÕ±¨Â· £¬BidenCashÔÚºÚ¿ÍÂÛ̳¹«¿ª190ÍòÕÅÐÅÓþ¿¨µÄÐÅÏ¢¡£BidenCashÓÚ2022ËêÊ×ÍÆ³ö £¬×÷Ϊ°µÍøºÍÃ÷ÍøµÄÐÂÊг¡ £¬ÏúÊÛͨ¹ýµçÉÌÍøÕ¾ÉϵĴ¹µö»òÇÔÈ¡·¨Ê½ÇÔÈ¡µÄÐÅÓþ¿¨ºÍ½è¼Ç¿¨¡£×îÐÂй¶µÄÐÅÏ¢Ô̺¬´¿Îı¾´ó¾ÖµÄÆëÈ«¿¨ºÅ¡¢ÓÐЧÆÚºÍCVVºÅÂë £¬µ«Óë¸ÃÍøÕ¾Ö®Ç°µÄй¶·ÖÆç £¬Ëü²»Ô̺¬³Ö¿¨È˵ÄÐÕÃû»òÓʼþµØÖ·¡£Ð¹Â¶µÄÒøÐп¨¾ßÌåÐÅÏ¢×ÜÊýΪ1912969ÕÅ £¬µ«É¾³ý³Á¸´Êý¾Ýºó £¬Îª1169843ÕÅ¡£


https://www.hackread.com/bidencash-market-leaks-credit-card-details/


6¡¢Deep InstinctÅû¶UAC-0099Õë¶ÔÎÚ¿ËÀ¼µÄ¹¥»÷»î¶¯


Deep InstinctÓÚ12ÔÂ22ÈÕÅû¶ÁËUAC-0099Õë¶ÔÎÚ¿ËÀ¼µÄ¹¥»÷»î¶¯¡£¹¥»÷Á´ÀûÓÃÁËÔ̺¬HTA¡¢RARºÍLNKÎļþ¸½¼þµÄ´¹µöÓʼþ·Ö·¢LONEPAGE £¬ÕâÊÇÒ»ÖÖVBS¶ñÒâÈí¼þ £¬¿ÉÄÜÓëC2·þÎñÆ÷ͨѶ £¬¼ìË÷¼üÅ̼ͼ·¨Ê½¡¢ÇÔÈ¡·¨Ê½ºÍÆÁÄ»½ØÍ¼¶ñÒâÈí¼þµÈÆäËüpayload¡£Ê¹ÓÃHTA¸½¼þÖ»ÊÇ3ÖÖ·ÖÆçϰȾÁ´ÖеÄÒ»ÖÖ £¬Áí±íÁ½ÖÖϰȾÁ´ÀûÓõÄÊÇSFXѹËõÎļþºÍZIPÎļþ¡£ZIPÎļþÀûÓÃÁËWinRAR·ì϶£¨CVE-2023-38831£©À´´«²¼LONEPAGE¡£


https://www.deepinstinct.com/blog/threat-actor-uac-0099-continues-to-target-ukraine