·¨¹úP?le emploiÅûÂ¶Éæ¼°Ô¼1000ÍòÈ˵ÄÊý¾Ýй¶ÊÂÎñ

°ä²¼¹¦·ò 2023-08-28

1¡¢·¨¹úP?le emploiÅûÂ¶Éæ¼°Ô¼1000ÍòÈ˵ÄÊý¾Ýй¶ÊÂÎñ


¾Ý8ÔÂ26ÈÕ±¨Â· £¬·¨¹úµËØÖʧҵµÇ¼ÇºÍ²ÆÕþÔöÔ®»ú¹¹P?le emploi´«µÝÁËһ·Êý¾Ýй¶ÊÂÎñ £¬Éæ¼°Ô¼1000ÍòÈË¡£¸Ã»ú¹¹³ÆÆä·þÎñÌṩÉ̵ÄϵͳÔâµ½¹¥»÷ £¬2022Äê2ÔÂ×¢²áµÄÇóÖ°ÕßÒÔ¼°¾ÍÒµÖÐÐĵÄǰÓû§¿ÉÄÜÊܵ½Ó°Ïì¡£Ö»¹ÜûÓÐй©¾ßÌåÈËÊý £¬µ«Le Parisien¹À¼ÆÔ̺¬1000ÍòÈË¡£´Ë±í £¬°²È«¹«Ë¾EmsisoftÔÚÆäMOVEitÒ³ÃæÖÐÁгöÁËP?le emploi £¬µ«ÊÇÀÕË÷ÍÅ»ïClopÉÐδ¹«¿ª¸Ã»ú¹¹µÄÈκÎÊý¾Ý¡£


https://securityaffairs.com/149890/breaking-news/pole-emploi-data-breach.html


2¡¢ÍйܺÍÔÆ·þÎñÌṩÉÌLeasewebÔâµ½¹¥»÷ϵÍÂäÙʱ¹Ø¹Ø


¾ÝýÌå8ÔÂ26ÈÕ±¨Â· £¬ÍйܺÍÔÆ·þÎñÌṩÉÌLeaseweb³ÆÆäÔÚÖÂÁ¦¸´Ô­Ôâµ½ÈëÇÖºó¹Ø¹ØµÄϵͳ¡£8ÔÂ22ÈÕ £¬¸Ã¹«Ë¾ÔÚµ÷²é¿Í»§ÃÅ»§ÍøÕ¾µÄå´»úÎÊÌâʱ £¬·¢ÏÔìä»ù´¡ÉèÊ©µÄijЩ²¿ÃÅ´æÔÚÒì³£»î¶¯¡£ÎªÁËÓ¦¶ÔÕâÒ»ÊÂÎñ £¬¸Ã¹«Ë¾¹Ø¹ØÁ˲¿ÃÅÊÜÓ°ÏìµÄϵͳ £¬²¢¶Ô¸ÃÊÂÎñ·¢Õ¹Á˵÷²é¡£Leaseweb³Æ £¬Ä¿Ç°ËüÒѾ­³É¹¦¶ôÔìÁËÕâÒ»ÊÂÎñ £¬²¢¸üÐÂÁ˰²È«´ëÊ© £¬ÒÔÔ¤·ÀÔٴβúÉúÀàËÆÊÂÎñ¡£


https://securityaffairs.com/149897/hacking/leaseweb-cyber-attack.html


3¡¢Krollй©ÆäÔ±¹¤Ôâµ½SIM»¥»»¹¥»÷²¿Ãſͻ§ÐÅϢй¶


8ÔÂ25ÈÕ±¨Â·³Æ £¬Õ÷ѯ¹«Ë¾KrollµÄÒ»ÃûÔ±¹¤³ÉÔâµ½Á˸´ÔÓµÄSIM»¥»»¹¥»÷ £¬µ¼Ö²¿ÃÅÐÅϢй¶¡£¸ÃÊÂÎñ²úÉúÓÚ8ÔÂ19ÈÕ £¬ºÚ¿Í³É¹¦ÈëÇÖÁËKrollÔ±¹¤µÄT-MobileÕÊ»§²¢ÇÔÈ¡Á˵绰ºÅÂë £¬¶øºó»ñµÃÁËÔ̺¬BlockFi¡¢FTXºÍGenesisµÈÆÆ²úÉêÇëÈËÓйØÐÅÏ¢µÄijЩÎļþµÄ½Ó¼ûȨÏÞ¡£FTXºÍBlockFi¹«¿ªÁË´ËÊÂÎñ £¬²¢°µÊ¾Kroll½«Ö±½Ó֪ͨÊÜÓ°ÏìµÄÓ×ÎÒ¡£¾ÝϤ £¬²¿ÃÅÓû§ÒÑÔâµ½Á˼ÙÒâFTXµÄ´¹µö¹¥»÷¡£


https://www.bleepingcomputer.com/news/security/kroll-data-breach-exposes-info-of-ftx-blockfi-genesis-creditors/


4¡¢¶ñÒâÈí¼þWhiffy Recon¿Éͨ¹ýWiFiÈ·¶¨Ö¸±êµÄµØÀíµØÎ»

 

SecureworksÔÚ8ÔÂ23ÈÕ³ÆÆä·¢ÏÖ½©Ê¬ÍøÂçSmoke Loade·Ö·¢Ð¶ñÒâÈí¼þWhiffy ReconµÄ»î¶¯¡£Whiffy ReconʹÓÃ×ó½üµÄWi-Fi½ÓÈëµã×÷ΪGoogleµØÀí¶¨Î»APIµÄÊý¾Ýµã £¬¶Ô±»Ï°È¾ÏµÍ³µÄµØÎ»½øÐÐÈý½ÇÕÉÁ¿¡£¸Ã¶ñÒâÈí¼þÊ×ÏȲ鳭·þÎñÃû³ÆWLANSVC £¬ÈôÊDz»´æÔÚ £¬Ôò»á½«½©Ê¬·¨Ê½×¢²áµ½C2·þÎñÆ÷²¢Ìø¹ýɨÃ貿ÃÅ¡£¶ÔÓÚ´æÔڸ÷þÎñµÄϵͳ £¬Ëü»áÿ·ÖÖÓÔËÐÐÒ»´ÎWiFiɨÃè £¬ÀûÓÃWindows WLAN APIÀ´ÍøÂçËùÐèÊý¾Ý £¬²¢ÏòGoogleµÄµØÀí¶¨Î»API·¢ËÍÔ̺¬JSONÌåʽµÄWiFi½ÓÈëµãÐÅÏ¢µÄHTTPS POSTÒªÇó¡£Ä¿Ç° £¬Éв»È·¶¨¹¥»÷Õߵ͝»ú¡£


https://www.secureworks.com/blog/smoke-loader-drops-whiffy-recon-wi-fi-scanning-and-geolocation-malware


5¡¢²¨À¼Ìú·»ù´¡ÉèÊ©Ôâµ½´ó¹æÄ£¹¥»÷²¿ÃÅ»ð³µÔËÐÐÔÝÍ£


ýÌå8ÔÂ27ÈÕ±¨Â· £¬²¨À¼µÄ°²È«»ú¹¹ÔÚµ÷²éһ·Õë¶Ô¹ú¶ÈÌú·ϵͳµÄ¹¥»÷ÊÂÎñ¡£¹¥»÷²úÉúÔÚÉÏÖÜÁù £¬¹¥»÷Õß·¢ËÍÒ»¸öÐźŴ¥·¢ÁË´¹Î£×´Ì¬ £¬µ¼ÖÂʲÇÐÇàÊÐ×ó½üµÄ»ð³µÍ£ÔË¡£¾ÝϤ £¬Õâ´Î¹¥»÷µ¼ÖÂÖÁÉÙ20Áлð³µÍ£ÔË £¬½»Í¨Ì±»¾ÊýÓ×ʱ¡£Wired±¨Â·³Æ £¬¹¥»÷Õßͨ¹ýÎÞÏßµçÆµÂÊÏòÖ¸±êÁгµ·¢³öµ¥Ò»µÄ¡°radio-stop¡±ºÅÁî¡£ÓÉÓÚ²¨À¼Ìú·ϵͳÖÐʹÓõÄÎÞÏßµçϵͳ²»×ã¼ÓÃÜ»òÉí·ÝÑéÖ¤ £¬Òò¶øºÜÈÝÒ×±»¼ÙÒâ¡£


https://tickernews.co/hackers-bring-down-polands-train-network-in-massive-cyber-attack/


6¡¢Barracuda ESGÉ豸CVE-2023-2868·ì϶µÄ²¹¶¡ÎÞЧ


ýÌå8ÔÂ25ÈÕ³Æ £¬ÒÑ´ò²¹¶¡µÄBarracuda ESGÉ豸ÒÀÈ»ÈÝÒ×Ôâµ½ÀûÓÃCVE-2023-2868·ì϶µÄ¹¥»÷¡£¸Ã·ì϶ÓÚ2022Äê10Ô³õ´Î±»ÀûÓà £¬¿ÉÓÃÓÚÔÚESGÉ豸ÖÐ×°ÖúóÃŲ¢ÇÔÊØÐÅÏ¢ £¬ÒÑÓÚ5ÔÂ20ÈÕ±»½¨¸´¡£FBIÌáÐÑ £¬Õë¶Ô¸Ã·ì϶µÄ²¹¶¡ÊÇÎÞЧµÄ £¬Ä¿Ç°¹¥»÷ÕßÈÔÔÚ»ý¼«ÀûÓø÷ì϶ִÐй¥»÷¡£¸Ã»ú¹¹Ç¿ÁÒ½¨ÒéÓû§Á¢¼´¸ôÀëºÍ¸ü»»ËùÓÐÊÜÓ°ÏìµÄESGÉ豸 £¬²¢Á¢¼´É¨ÃèËùÓÐÓëËùÌṩµÄIoCÁбíÓйØÁªµÄÍøÂç¡£


https://thehackernews.com/2023/08/urgent-fbi-warning-barracuda-email.html