Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄÓ×ÎÒÐÅÏ¢±»¹«¿ª

°ä²¼¹¦·ò 2024-01-11

1¡¢Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄÓ×ÎÒÐÅÏ¢±»¹«¿ª


¾ÝýÌå1ÔÂ9ÈÕ±¨Â·  £¬Ä³ºÚ¿Í×î½ü¹«¿ªÁËÒ»¸öÊý¾Ý¿â  £¬Ðû³Æ¸ÃÊý¾Ý¿âÓëHathway£¨ÒÔǰ³ÆÎª BITV Cable Networks  £¬ÕýʽÃû³ÆÎª Hathway Cable & Datacom Ltd£©ÓйØ¡£Hathway ÊÇÓ¡¶Èµ±ÏȵĻ¥ÁªÍø·þÎñÌṩÉÌ (ISP) ºÍÓÐÏßµçÊÓ·þÎñÔËÓªÉÌ¡£ºÚ¿ÍÔÚÊý¾Ý¿âй¶ÂÛ̳Éϰ䷢µÄÌû×ÓÖÐй©  £¬Êý¾Ýй¶ÊÂÎñ²úÉúÔÚ 2023 Äê 12 Ô  £¬ÆäʱËûÃÇÀûÓà Laravel ¿ò¼ÜÀûÓ÷¨Ê½£¨ÄÚÈÝÖÎÀíϵͳ£©ÖдæÔڵݲȫ·ì϶³É¹¦Í»ÆÆÁË Hathway µÄ·ÀÓù´ëÊ©(CMS)¡£¶Ôй¶µÄÊý¾Ý·ÖÎöÏÔʾ  £¬Óû§ÊýÁ¿Îª 3500 Íò¡£´Ë±í  £¬ÕâЩÕÊ»§µÄºÜ´óÒ»²¿ÃÅËÆºõÊÇÐé¹¹ÕÊ»§»ò³Á¸´ÕÊ»§¡£È¥µôÕâЩ³Á¸´ÕË»§ºó  £¬ÊÜÓ°ÏìÕË»§µÄÏÖʵÊýÁ¿Ï÷¼õÖÁ½ü 400 Íò¸ö  £¬Ô¶µÍÓÚ×î³õÐû³ÆµÄ 4100 Íò¸öÕË»§¡£¸ÃºÚ¿ÍΪDZÔÚÊܺ¦Õß¿ª·¢Á˰µÍøËÑË÷ÒýÇæ¡£¸Ã¹¤¾ßÔÊÐíËûÃÇËÑË÷ËûÃǵĵç×ÓÓʼþµØÖ·ºÍµç»°ºÅÂë  £¬ÒԲ鳭ËûÃǵÄÊý¾ÝÊÇ·ñй¶¡£


2¡¢°ÍÀ­¹ç×î´óÔËÓªÉÌTigoÔâµ½Black HuntµÄÀÕË÷¹¥»÷


1ÔÂ9ÈÕ  £¬Tigo Business ÔÚÉÏÖÜÔâÓöÍøÂç¹¥»÷  £¬Ó°Ïì¸Ã¹«Ë¾ÒµÎñ²¿ÃŵÄÔÆºÍÍйܷþÎñºó  £¬°ÍÀ­¹ç¾ü·½¾Í Black Hunt ÀÕË÷Èí¼þ¹¥»÷·¢³öÖҸ档Tigo ÊǰÍÀ­¹ç×î´óµÄÒÆ¶¯ÔËÓªÉÌ  £¬Æä Tigo ÒµÎñ²¿ÃÅΪÆóÒµÌṩÊý×Ö½â¾ö¹æ»®  £¬Ô̺¬ÍøÂ簲ȫÕ÷ѯ¡¢ÔƺÍÊý¾ÝÖÐÐÄÍйÜÒÔ¼°¹ãÓòÍø (WAN) ½â¾ö¹æ»®¡£Tigo Business µÄÒ»·ÝÉêÃ÷ÖÐд·¡£ÍøÉϱ¨Â·µÄ´ó²¿ÃÅÐÂÎŶ¼²»ÕýÈ·  £¬Õâ´Î¹¥»÷²¢Î´Ó°ÏìÆä»¥ÁªÍø¡¢µç»°·þÎñºÍ Tigo Money µç×ÓÇ®°ü¡£¹ÌÈ» Tigo ûÓÐÌṩÓйØÍøÂç¹¥»÷µÄÈκÎϸ½Ú  £¬µ«É罻ýÌåÉϵĴóÁ¿±¨Â·Åú×¢ËûÃÇÔâ·êÁË Black Hunt ÀÕË÷Èí¼þµÄ¹¥»÷¡£³¬¹ý 330 ̨·þÎñÆ÷±»¼ÓÃÜ  £¬±¸·ÝÊý¾ÝÔÚ¹¥»÷ÆÚ¼äÔâµ½·ÛËé¡£¹ÌÈ»ÀÕË÷×ÖÌõÐû³ÆºÚ¿ÍÔÚ¹¥»÷¹ý³ÌÖÐÇÔÈ¡Êý¾Ý  £¬µ«Ä¿Ç°»¹Ã»ÓÐÈκÎÒÑÖªµÄÀÕË÷Èí¼þй¶±»µÁÊý¾ÝµÄÊ·ý¡£


3¡¢ÍÁ¶úÆäºÚ¿Íͨ¹ýMSSQL·þÎñÆ÷´«²¼MIMICÀÕË÷Èí¼þ


1ÔÂ10ÈÕýÌ屨·  £¬Securonix Íþв×êÑÐÍŶÓÒ»ÏòÔÚ¼à¿ØÔÚ½øÐеÄÍþв»î¶¯ RE#TURGENCE  £¬¸Ã»î¶¯Éæ¼°¶Ô×¼ºÍÀûÓà MSSQL Êý¾Ý¿â·þÎñÆ÷À´»ñÈ¡³õʼ½Ó¼ûȨÏÞ¡£ÍþвÐÐΪÕßËÆºõÒÔÃÀ¹ú¡¢Å·Ã˺ÍÀ­¶¡ÃÀÖÞ¹ú¶ÈΪָ±ê  £¬²¢ÇÒÓµÓо­¼Ã¶¯»ú¡£Í¨³£¹¥»÷»î¶¯ÒªÃ´ÏúÊÛ¶ÔÊÜϰȾÖ÷»úµÄ¡°½Ó¼ûȨ¡±  £¬ÒªÃ´×îÖÕ½»¸¶ÀÕË÷Èí¼þpayload¡£ÕâЩϸ½ÚÊǹ¥»÷ÕßÔÚÒ»´Î³Á´ó OPSEC£¨²Ù×÷°²È«£©¹ÊÕÏÆÚ¼ä·¢ÏÖµÄ  £¬´Ó×î³õ½Ó¼û MIMIC ÀÕË÷Èí¼þµ½ÔÚÊܺ¦ÓòÉϲ¿Êð MIMIC ÀÕË÷Èí¼þ  £¬¸ÃÊÂÎñµÄ¹¦·òԼĪΪһ¸öÔ¡£¸Ã»î¶¯µÄ³õʼ½Ó¼û²¿ÃÅÓëÈ¥ÄêдµÄDB#JAMMERÀàËÆ  £¬Ò²É漰ͨ¹ý±©Á¦ÆÆ½âÖÎÀíÃÜÂë½øÐÐÖ±½Ó MSSQL ½Ó¼û¡£


4¡¢Water Curupiraͨ¹ý´¹µö»î¶¯·Ö·¢PikaBot Loader


1ÔÂ9ÈÕ  £¬Pikabot ÊÇÒ»ÖÖ¼ÓÔØ·¨Ê½¶ñÒâÈí¼þ  £¬ÎÒÃÇÔÚ 2023 ÄêµÚÒ»¼¾¶ÈÔÚÈëÇÖ¼¯ Water Curupira ÏÂ×·×Ùµ½µÄÍþв²Î¼ÓÕßÔÚÀ¬»øÓʼþ»î¶¯Öлý¼«Ê¹ÓøöñÒâÈí¼þ  £¬ËæºóÔÚ 6 Ôµ׳öÏÖÒ»´ÎÖÐ¶Ï  £¬Ò»Ïò³ÖÐøµ½ 2023 Äê 9 Ô³õ. ÆäËû×êÑÐÈËÔ±´ËǰÒѰÑÎȵ½ËüÓëQakbot¼«¶ÈÀàËÆ  £¬ºóÕßÓÚ2023 Äê 8 Ô±»·¨Âɲ¿ÃÅÈ¡µÞ¡£2023 Äê×îºóÒ»¸ö¼¾¶È  £¬Óë Pikabot ÓйصÄÍøÂç´¹µö»î¶¯ÊýÁ¿ÓÐËùÔö³¤  £¬ÓëÈ¡µÞ¹¦·òÒ»ÖÂQakbot  £¬Pikabot µÄ¹¥»÷Õß·¢Õ¹ÍøÂç´¹µö»î¶¯  £¬Í¨¹ýÆäÁ½¸ö×é¼þ£¨¼ÓÔØ·¨Ê½ºÍÖ÷ÌâÄ£¿é£©¶Ô×¼Êܺ¦Õß  £¬ÕâÁ½¸ö×é¼þÔÊÐíδ¾­ÊÚȨµÄÔ¶³Ì½Ó¼û  £¬²¢ÔÊÐíͨ¹ýÓëÆäºÅÁîºÍ½ÚÔì (C&C) ·þÎñÆ÷³ÉÁ¢µÄÏνÓÖ´ÐÐËÁÒâºÅÁî¡£Pikabot ÊÇÒ»ÖÖ¸´ÔӵĶà½×¶Î¶ñÒâÈí¼þ  £¬ÔÚͳһÎļþÖÐÓµÓмÓÔØ·¨Ê½ºÍÖ÷ÌâÄ£¿é  £¬ÒÔ¼°½âÃÜµÄ shellcode  £¬¿É´ÓÆä×ÊÔ´ÖнâÃÜÁíÒ»¸ö DLL Îļþ¡£


5¡¢IBM°ä²¼¹ØÓÚ¶Ô2024ÄêÍøÂ簲ȫÇ÷ÏòµÄÔ¤²â»ã±¨


´ÓÊÀ½ç´óʵ½¾­¼Ã  £¬20234ÄêÊÇÄÑÒÔÔ¤²âµÄÒ»Äê¡£ÍøÂ簲ȫ²¢Ã»ÓÐÆ«ÀëÕâ¸öÖ÷Ìâ  £¬´øÀ´ÁËһЩÒâÏë²»µ½µÄ±ä¶¯¡£2024 Äê¶ÔÓÚÍøÂç·¸×ï·Ö×ÓÀ´Ëµ½«ÊÇæÂÒµÄÒ»Äê  £¬ÓÉÓÚ³ÖÐøµÄµØÔµÕþÖÎÑÏÖØ´óÊÆ¡¢ÃÀ¹úºÍÅ·Ã˵ijÁ´óÑ¡¾ÙÒÔ¼°ÊÀ½çÉÏ×î´óµÄÌåÓýÈüÊ£¨°ÍÀè°ÂÔ˻ᣩ¶¼ÔÚ¼¸¸öÔÂÄÚ½øÐС£µ½Ä¿Ç°ÎªÖ¹  £¬ÍøÂç·¸×ï·Ö×Ó´Ó¶àÄêÀ´Ð¹Â¶µÄÊýÊ®ÒÚÊý¾ÝÖÐÍøÂçµÄÊý¾Ý»ñÀûµÄ·½Ê½¼«¶ÈÓÐÏÞ¡£°µÍøÉϺ±¼ûÒÔ°ÙÍò¼ÆµÄÓÐЧÆóҵƾ֤  £¬²¢ÇÒÊýÁ¿»¹ÔÚ³ÖÐøÔö³¤  £¬¹¥»÷ÕßÔÚ½«Éí·Ý±øÆ÷»¯  £¬½«ÆäÊÓΪ½Ó¼ûÌØÈ¨ÕÊ»§µÄ°ÂÃØ¼¿Á©¡£ÀÕË÷Èí¼þ¿ÉÄÜ»áÔÚ 2024 ÄêÃæ¶ÔË¥ÍË  £¬ÓÉÓÚÔ½À´Ô½¶àµÄ¹ú¶È³Ðŵ²»Ö§¸¶Êê½ð  £¬Ô½À´Ô½ÉÙµÄÆóÒµÇü·þÓÚ¼ÓÃÜϵͳµÄѹÁ¦¡ª¡ªÑ¡Ôñ½«×ʽð×ªÒÆµ½³Á½¨ÏµÍ³¶ø²»ÊǽâÃÜϵͳ¡£


6¡¢Cisco Talos°ä²¼ÀÕË÷Èí¼þBabukµÄ±äÌåTortillaµÄ½âÃÜÆ÷


¾ÝýÌå1ÔÂ10ÈÕ±¨Â·  £¬Talos ÓÚ 2021 Äê 11 Ô³õ´ÎÅû¶ÁËTortilla »î¶¯  £¬¹¥»÷ÀûÓÃMicrosoft Exchange ·þÎñÆ÷ÖÐµÄ ProxyShell ȱµãÔÚÊܺ¦Õß»·¾³ÖÐͶ·ÅÀÕË÷Èí¼þ¡£Tortilla ÊǶà¶à ÀÕË÷Èí¼þ±äÌåÖ®Ò»  £¬ÕâЩ±äÌåµÄÎļþ¼ÓÃܶñÒâÈí¼þ»ùÓÚй¶µÄ Babuk Ô´´úÂë¡£ÆäÖÐÔ̺¬ Rook¡¢Night Sky¡¢Pandora¡¢Nokoyawa¡¢Cheerscrypt¡¢AstraLocker 2.0¡¢ESXiArgs¡¢Rorschach¡¢RTM Locker ºÍ RA GroupµÈ¡£µÂ¹úÍøÂ簲ȫ¹«Ë¾°²È«×êÑг¢ÊÔÊÒ (SRLabs) °ä²¼ÁËÒ»¿îÃûΪBlack Basta Buster µÄ Black Basta ÀÕË÷Èí¼þ½âÃÜÆ÷  £¬¸Ã½âÃÜÆ÷ÀûÓüÓÃÜ·ì϶²¿ÃÅ»òÈ«Êý¸´Ô­Îļþ¡£