CISAºÍFBI°ä²¼Õë¶ÔKaseya¹©¸øÁ´¹¥»÷Êܺ¦ÕßµÄÖ¸ÄÏ£»×êÑÐÍŶÓÅû¶Ð½©Ê¬ÍøÂçmirai_pteaµÄDDoS¹¥»÷»î¶¯

°ä²¼¹¦·ò 2021-07-07

1.CISAºÍFBI°ä²¼Õë¶ÔKaseya¹©¸øÁ´¹¥»÷Êܺ¦ÕßµÄÖ¸ÄÏ


1.jpg


CISAºÍFBI½áºÏ°ä²¼ÁËÕë¶ÔÊܵ½Kaseya¹©¸øÁ´¹¥»÷Ó°ÏìµÄÊܺ¦ÕßµÄÖ¸ÄÏ¡£ÕâÁ½¸ö»ú¹¹½¨Òé×é֯ʹÓÃKaseyaÌṩµÄ¼ì²â¹¤¾ßÀ´²é³­ËûÃǵÄϵͳÊÇ·ñ´æÔÚÈëÇÖ¼£Ïó £¬²¢ÆôÓöà³É·ÖÉí·ÝÑéÖ¤(MFA)¡£´Ë±í £¬×éÖ¯»¹Ó¦Ê¹Óð×Ãûµ¥À´±í²¿ÏÞ¶È¶ÔÆäÄÚ²¿×ʲúµÄ½Ó¼û £¬²¢Ê¹Ó÷À»ðǽ»òVPN±£»¤ÆäÔ¶³Ì¼à¿Ø¹¤¾ßµÄÖÎÀí½çÃæ¡£¶øÊÜÓ°ÏìµÄMSP¿Í»§±ØÒªÈ·±£±¸·ÝÊÇ×îеÄ £¬²¢ÇÒÁ¢¼´×°Öù©¸øÉÌÌṩµÄ×îеIJ¹¶¡¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/119728/cyber-crime/cisa-fbi-guidance-kaseya-attack.html


2.¹ú¼ÊÐ̾¯×éÖ¯LyrebirdÐж¯¿ÛÁôÄ«Î÷¸çºÚ¿ÍDr HeX


2.jpg


¹ú¼ÊÐ̾¯×éÖ¯ÌáÒéµÄLyrebirdÐж¯¿ÛÁôÁËÄ«Î÷¸çºÚ¿ÍDr HeX¡£Dr HeX×Ô2009ÄêÒÔÀ´ÆðÍ·»îÔ¾ £¬½øÐйý¶àÖÖÍøÂç·¸×ï»î¶¯ £¬Ô̺¬ÍøÂç´¹µö¡¢¶ñÒâÈí¼þ¿ª·¢ºÍڲƭµÈ¡£ÔÚÕâ´ÎÐж¯ÖÐ £¬Group-IBͨ¹ýÕë¶Ô·¨¹úÄ³ÒøÐеÄÍøÂç´¹µö¹¤¾ß°ü¼ø±ð³öÁ˸ÃÍøÂç·¸×ï·Ö×Ó¡£´Ë±í £¬¸ÃºÚ¿Í»¹³ö¸ñÍÆ¹ãÁËËùνµÄZombi Bot £¬¾Ý³ÆÆäÖÐÔ̺¬814¸ö·ì϶ £¬ÓÐ72¸öδ¹«¿ªµÄ·ì϶¡¢Ò»¸ö±©Á¦ÆÆ½â·¨Ê½¡¢webshellºÍºóÃÅɨÃ跨ʽ £¬»¹Äܹ»ÓÃÀ´Ö´ÐÐDDoS¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/07/interpol-arrests-hacker-in-morocco-who.html


3.×êÑÐÍŶÓÅû¶Ð½©Ê¬ÍøÂçmirai_pteaµÄDDoS¹¥»÷»î¶¯


3.jpg


×êÑÐÍŶÓÅû¶ÁËÊÜMiraiÆô·¢µÄн©Ê¬ÍøÂçmirai_ptea £¬ÀûÓÃKGUARDÌṩµÄÊý×ÖÊÓÆµÂ¼Ïñ»ú(DVR)ÖеÄÒ»¸öδ¹«¿ªµÄ·ì϶À´ÌáÒéÉ¢²¼Ê½»Ø¾ø·þÎñ(DDoS)¹¥»÷¡£×êÑÐÈËÔ±ÓÚ2021Äê3ÔÂ23ÈÕ³õ´Îµ÷²éÁ˸ù¥»÷»î¶¯ £¬ºóÓÖÓÚ2021Äê6ÔÂ22ÈÕÔٴμì²âµ½Á˹¥»÷³¢ÊÔ¡£×êÑÐÍŶӳƽ©Ê¬Ô´IPµÄµØÀíÉ¢²¼ÖØÒª¼¯ÖÐÔÚÃÀ¹ú¡¢º«¹úºÍ°ÍÎ÷ £¬¶øÊܺ¦Õ߱鲼ŷÖÞ¡¢ÑÇÖÞ¡¢°Ä´óÀûÑÇ¡¢±±ÃÀºÍÄÏÃÀ £¬ÒÔ¼°·ÇÖÞ²¿ÃŵØÓò¡£


Ô­ÎÄÁ´½Ó£º

https://www.ehackingnews.com/2021/07/newly-discovered-mirai-botnet-is.html


4.ºÚ¿ÍÔÚ°µÍø¹«¿ªÉç½»ÍøÕ¾GETTR½ü9Íò»áÔ±µÄÓ×ÎÒÐÅÏ¢


4.jpg


ºÚ¿ÍÔÚ°µÍøÉϹ«¿ªÁËÉç½»ÍøÕ¾GETTR½ü9Íò»áÔ±µÄÓ×ÎÒÐÅÏ¢¡£GETTRÊÇÒ»¸öеÄÇ×ÌØÀÊÆÕµÄÉ罻ýÌåÆ½Ì¨ £¬ÓÉÇ°ÌØÀÊÆÕÕÕ·÷½ÜÉ­Ã×ÀÕ´´½¨ £¬×÷ΪTwitterµÄ´úÌæÆ·¡£°²È«¹«Ë¾Hudson Rock°µÊ¾ £¬ºÚ¿ÍÀûÓÃÒ»¸ö²»°²È«µÄAPIץȡ87973ÃûGETTR³ÉÔ±µÄÊý¾Ý £¬Ô̺¬µç×ÓÓʼþµØÖ·¡¢êdzơ¢ÐÕÃû¡¢µ®ÉúÈÕÆÚ¡¢Í·ÏñURL¡¢²¼¾°Í¼Æ¬¡¢µØÎ»¡¢Ó×ÎÒÍøÕ¾ºÍÆäËûÄÚ²¿ÍøÕ¾Êý¾Ý¡£Ä¿Ç° £¬GETTRÍøÕ¾²¢Î´¶Ô´ËʽøÐлظ´¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hacker-dumps-private-info-of-pro-trump-gettr-social-network-members/


5.GriefÐû³ÆÆä¹¥»÷ŦԼ¿µ¸´Ò½ÔºRSS²¢»ñÈ¡4GBµÄÊý¾Ý


5.jpg


ºÚ¿ÍÍÅ»ïGriefÐû³ÆÆä¹¥»÷ÁËŦԼµÄ¿µ¸´Ò½ÔºRehabilitation Support Services(RSS)²¢»ñÈ¡ÁË4GBµÄÊý¾Ý¡£6ÔÂ2ÈÕ £¬Grief½«¸Ã»ú¹¹²ÎÓëÊܺ¦ÕßÃûµ¥ £¬²¢³ÆÆäÒѾ­ÇÔÈ¡ÁË4GBÊý¾Ý¡£6ÔÂ29ÈÕ £¬GriefÉÏ´«ÁËÇÔÈ¡µÄÊý¾Ý £¬Ô̺¬×ʲú¸ºÕ®±í¡¢Ë°ÊÕ¡¢Ö§Æ±¡¢´æ¿î¡¢ÒøÐжÔÕ˵¥¡¢·¢Æ±¡¢ºÍ±¾Ç®ÏîÄ¿ÌáÒªµÈ²ÆÕþÐÅÏ¢£»Ò½ÁƱ£½¡Ö¤Ã÷¡¢Ò½ÁÆÎļþºÍ´û¿î´û¿îÉêÇë £¬ÒÔ¼°²¿Ãſͻ§ºÍÔ±¹¤µÄÉç»á°²È«ºÅÂëºÍ¼ÝÕÕºÅÂëµÈÓ×ÎÒÐÅÏ¢¡£¸Ã»ú¹¹ÉÐδ¶Ô´ËÊÂ×÷³ö»ØÓ¦¡£


Ô­ÎÄÁ´½Ó£º

https://www.databreaches.net/ny-grief-claims-to-have-breached-rehabilitation-support-services/


6.Money.co.uk°ä²¼2021ÄêQ2ڲƭºÍÍøÂç·¸×ï·ÖÎö»ã±¨


6.jpg


Money.co.uk°ä²¼ÁË2021ÄêQ2Ó¢¹úÓйØÚ²Æ­ºÍÍøÂç·¸×ïµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö £¬2020ÄêÍø¹ºÏúÊÛ¶îÔö³¤ÁË46% £¬Ôö·ùΪ½üÊ®Äê×î¸ß¡£Òò¶ø £¬Ú²Æ­»î¶¯Ò²¼±¾çÔö³¤ £¬2021ÄêÉϰëÄêËðʧ³¬¹ý10ÒÚÓ¢°÷¡£2021ÄêQ2¹²ÓÐ81018ÆðÚ¿Æ­ºÍÍøÂç·¸×ï°¸¼þ £¬×ܼÆËðʧΪ3.823ÒÚÓ¢°÷£»Ïà±È֮Ϡ£¬2021Äê1ÔÂÖÁ3Ô²úÉúÁË137695Æð·¸×ï°¸¼þ £¬Éæ°¸½ð¶îΪ6.256ÒÚÓ¢°÷¡£¶øÔÚ2021Äê4ÔÂÖÁ6ÔÂÆÚ¼ä £¬´ËÀà»î¶¯µÄÊܺ¦Õß¾ùÔÈÿÈËËðʧÁË4719Ó¢°÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.money.co.uk/credit-cards/quarterly-fraud-report