BlackCatÐû³ÆÒÑ»ñÈ¡RedditµÄ80GBÊý¾Ý²¢ÀÕË÷450ÍòÃÀÔª

°ä²¼¹¦·ò 2023-06-19

1¡¢BlackCatÐû³ÆÒÑ»ñÈ¡RedditµÄ80GBÊý¾Ý²¢ÀÕË÷450ÍòÃÀÔª 


¾ÝýÌå6ÔÂ17ÈÕ±¨Â· £¬BlackCat(ALPHV)Ðû³Æ¶ÔRedditÔâµ½µÄ¹¥»÷ÕÆ¹Ü £¬²¢°µÊ¾ÒÑÇÔÈ¡80 GB£¨Ñ¹Ëõ£©µÄÊý¾Ý ¡£2ÔÂ9ÈÕ £¬Redditй©ÆäϵͳÔÚ2ÔÂ5ÈÕ±»ºÚ £¬ÓÉÓÚÒ»ÃûÔ±¹¤Ôâµ½ÁË´¹µö¹¥»÷ ¡£Õâµ¼Ö¹¥»÷Õß¿ÉÄܽӼûRedditµÄϵͳ £¬²¢ÇÔÈ¡ÄÚ²¿Îĵµ¡¢Ô´´úÂë¡¢Ô±¹¤ÐÅÏ¢ÒÔ¼°Óйع«Ë¾¸æ°×É̵ÄÊý¾Ý ¡£BlackCatÍŻﰵʾ £¬ËûÃÇÔøÔÚ4ÔÂ13ÈÕºÍ6ÔÂ16ÈÕÁ½´ÎÊÔͼÁªÏµReddit £¬²¢ÒªÇóÆä½»450ÍòÃÀµÄÊê½ð £¬µ«Ã»ÓÐÊÕµ½»Ø¸´ ¡£


https://www.databreaches.net/blackcat-claims-they-hacked-reddit-and-will-leak-the-data/


2¡¢Progress½¨¸´MOVEitÖÐÓÖÒ»¸öSQLi·ì϶CVE-2023-35708  


ýÌå6ÔÂ15ÈÕ³Æ £¬Progress Software½¨¸´ÁËÆäMOVEit TransferÖеĵÚÈý¸öSQL×¢Èë·ì϶£¨CVE-2023-35708£© ¡£¸Ã¹«Ë¾³Æ £¬ËûÃÇÒѾ­½µµÍÁËMOVEit CloudµÄHTTPsÁ÷Á¿ £¬²¢ÒªÇóÓû§ÔÚ´´½¨ºÍ²âÊÔ²¹¶¡Ê±½µµÍHTTPºÍHTTPsÁ÷Á¿ÒÔ±£»¤ËûÃǵÄϵͳ ¡£ÔÚ×°Öò¹¶¡Ç° £¬ProgressÇ¿ÁÒ½¨ÒéÅú¸Ä·À»ðǽ¹æ¶¨ÒԻؾø¶Ë¿Ú80ºÍ443ÉϵÄMOVEit TransferµÄHTTPºÍHTTPsÁ÷Á¿ £¬×÷ΪһÖÖһʱ½â¾ö²½Öè ¡£ËùÓÐЧ»§¶¼±ØÐëÀûÓÃÔÚ6ÔÂ16ÈÕ°ä²¼µÄв¹¶¡ ¡£Õâ¸öзì϶µÄϸ½ÚÉÐδ¹«¿ª £¬µ«ÒÑÓÐ×êÑÐÈËÔ±°ä²¼PoC ¡£


https://www.bleepingcomputer.com/news/security/moveit-transfer-customers-warned-of-new-flaw-as-poc-info-surfaces/


3¡¢ÀÕË÷ÍÅ»ïRhysida¹«¿ª´ÓÖÇÀû¾ü¶ÓµÄϵͳÖÐÇÔÈ¡µÄÎļþ


¾Ý6ÔÂ15ÈÕ±¨Â· £¬ÀÕË÷ÍÅ»ïRhysida¹«¿ªÁË´ÓÖÇÀû¾ü¶Ó(Ej¨¦rcito de Chile)µÄϵͳÖÐÇÔÈ¡µÄÎļþ ¡£¾Ý°²È«¹«Ë¾CronUp³Æ £¬ÖÇÀû¾ü¶ÓÓÚ5ÔÂ29ÈÕÈ·ÈÏÆäϵͳÊܵ½ÁËÔÚ5ÔÂ27ÈÕ¼ì²âµ½µÄ°²È«ÊÂÎñµÄÓ°Ïì £¬²¿ÃÅÊý¾Ýй¶ ¡£¹¥»÷ÊÂÎñÅû¶µÄ¼¸Ììºó £¬±¾µØÃ½Ì屨·³Æ £¬Ò»Ãû½¾üÏÂÊ¿Òò²Î¼ÓÀÕË÷¹¥»÷¶ø±»²¶ ¡£RhysidaĿǰ°ä²¼ÁËԼĪ360000·ÝÖÇÀû¾ü¶ÓµÄÎļþ£¨¾Ý³Æ½öÕ¼ËùÓб»µÁÊý¾ÝµÄ30%£© ¡£


https://www.bleepingcomputer.com/news/security/rhysida-ransomware-leaks-documents-stolen-from-chilean-army/


4¡¢Î¢Èíй©½üÆÚAzure¡¢OutlookºÍOneDriveÖжÏÔ´ÓÚDDoS¹¥»÷


6ÔÂ18ÈÕ±¨Â·³Æ £¬Î¢Èíй©6ÔÂÉÏÑ®ÆäAzure¡¢OutlookºÍOneDrive·þÎñÖжÏÊÇÕë¶Ô¹«Ë¾·þÎñµÄµÚ7²ãDDoS¹¥»÷µ¼ÖµÄ ¡£Õâ´Î¹¥»÷±»¹éÒòÓÚ΢Èí×·×ÙΪStorm-1359µÄÍÅ»ï £¬¸ÃÍÅ»ï×Ô³ÆAnonymous Sudan ¡£ÕâЩ¹¥»÷¿ÉÄÜÒÀÀµÓÚ½Ó¼û¶à¸öÐ鹹רÓ÷þÎñÆ÷(VPS)ÒÔ¼°×âÓõÄÔÆ»ù´¡ÉèÊ©¡¢Ê¢¿ª´úÀíºÍDDoS¹¤¾ß ¡£×î³õ £¬Õâ¼ÒIT¹«Ë¾Ã»ÓÐÌṩÓйØÖжÏÊÂÎñµÄ¾ßÌåÐÅÏ¢ £¬µ«ÔÚ6ÔÂ16ÈÕ°ä²¼ÁËMicrosoft¶ÔµÚ7²ãDDoS¹¥»÷µÄÏìÓ¦»ã±¨ £¬Ð¹Â©ÁËÖжϵÄÔ­Òò ¡£


https://securityaffairs.com/147605/hacking/microsoft-outages-ddos.html


5¡¢·¨ÂÉÐж¯PowerOffµ·»Ù2013ÄêÆðÍ·»îÔ¾µÄDDoS³ö×â·þÎñ


¾Ý6ÔÂ17ÈÕýÌ屨· £¬¹ú¼Ê·¨ÂÉÐж¯Operation PowerOFFµ·»ÙÁË×Ô2013ÄêÆðÍ·»îÔ¾µÄDDoS³ö×â·þÎñ (ÓÖ³Æbooter»òstresser) ¡£DDoS³ö×⣨DDoS-for-hire£©·þÎñÔÊÐí×¢²áÓû§ÔÚ²»¾ß±¸Ìض¨ÖªÊ¶µÄÇé¿öÏÂÖ´ÐÐÓÐÐòµÄDDoS¹¥»÷ ¡£¾ÝϤ £¬²¨À¼¾¯·½¿ÛÁôÁË¸ÃÆ½Ì¨µÄÁ½ÃûÔËÓªÈËÔ± £¬²¢´ÓËûÃÇλÓÚÈðÊ¿µÄ·þÎñÆ÷ÖÐÍøÂçµ½ÁËÓмÛÖµµÄÊý¾Ý ¡£Óг¬¹ý35000¸öÓû§ÕÊ»§¡¢76000¸öµÇ¼¼Í¼ºÍ³¬¹ý320000¸öÓëDDoS³ö×â·þÎñÓйصÄIPµØÖ·µÄÐÅÏ¢ ¡£Operation PowerOFFÊÇÒ»Ïî³Ö¾ÃÖ´Ðеķ¨ÂÉÐж¯ £¬ÒѹعØÁËÊýÊ®¸öÖØÒªµÄDDoS³ö×âÆ½Ì¨ ¡£ 


https://securityaffairs.com/147564/cyber-crime/ddos-for-eye-service-seized.html


6¡¢ESET·¢ÏÖAndroid¶ñÒâÈí¼þGravityRATÐÂÒ»ÂÖ¹¥»÷»î¶¯


6ÔÂ15ÈÕ £¬ESETÅû¶ÁËAndroid¶ñÒâÈí¼þGravityRATµÄÐÂÒ»ÂÖ¹¥»÷»î¶¯ ¡£¸Ã»î¶¯×Ô2022Äê8ÔÂÆðÍ·»îÔ¾ £¬Ê¹ÓÃľÂí»¯Ì¸ÌìÀûÓÃBingeChatºÍChaticoÏ°È¾ÒÆ¶¯É豸 £¬²¢ÊÔͼ´ÓÖ¸±êÉ豸ÖÐÇÔÈ¡Êý¾Ý ¡£Ä¿Ç° £¬Ê¹ÓÃChaticoµÄ»î¶¯ÒѲ»ÔÙ»îÔ¾ ¡£¶ñÒâÀûÓû¹Ìṩ»ùÓÚ¿ªÔ´OMEMO Instant MessengerÀûÓ÷¨Ê½µÄºÏ·¨Ì¸ÌìÖ°ÄÜ ¡£Õâ¸öа汾µÄGravityRATÓµÓÐÁ½¸öÐÂÖ°ÄÜ £¬¿É½Ó¹Üɾ³ýÎļþµÄºÅÁîºÍй¶WhatsApp±¸·ÝÎļþ ¡£


https://www.welivesecurity.com/2023/06/15/android-gravityrat-goes-after-whatsapp-backups/