Barracuda±Þ²ßÆóÒµÌæ»»ÊÜÓ°ÏìESG×ÝÈ»×°ÖÃÈκΰ汾²¹¶¡

Ðû²¼Ê±¼ä 2023-06-09

1¡¢Barracuda±Þ²ßÆóÒµÌæ»»ÊÜÓ°ÏìESG×ÝÈ»×°ÖÃÈκΰ汾²¹¶¡


¾ÝýÌå6ÔÂ7ÈÕ±¨µÀ £¬Barracuda±Þ²ßÆóҵʵʱÌæ»»ÊÜÓ°ÏìµÄµç×ÓÓʼþÇå¾²Íø¹Ø(ESG)×°±¸ £¬ÎÞÂÛËûÃÇ×°ÖÃÁËʲô°æ±¾¼¶±ðµÄ²¹¶¡¡£Îó²î±»×·×ÙΪCVE-2023-2868 £¬±£´æÓÚµç×ÓÓʼþ¸½¼þɸѡÄ£¿éÖÐ £¬ÓÚ5ÔÂ19ÈÕ±»·¢Ã÷ £¬¸Ã¹«Ë¾ÓÚ5ÔÂ20ÈÕºÍ21ÈÕÐû²¼ÁËÁ½¸ö²¹¶¡À´ÐÞ¸´¸ÃÎÊÌâ¡£¾ÝÊÓ²ì £¬¸ÃÎó²îÒѱ»Ê¹Óà £¬¹¥»÷ÊÂÎñÖÁÉÙ¿ÉÒÔ×·Ëݵ½2022Äê10Ô¡£Ñо¿Ö°Ô±ÁªÏµBarracudaµÄ½²»°ÈË £¬Ñ¯ÎʹØÓÚΪʲôÐèÒªÖÜÈ«Ìæ»»ESGµÄ¸ü¶àϸ½Úʱ £¬Ã»ÓÐÁ¬Ã¦»ñµÃ»Ø¸´¡£


https://securityaffairs.com/147211/hacking/barracuda-esg-cve-2023-2868-replacement.html


2¡¢Î¢ÈíOneDriveÔâµ½DDoS¹¥»÷È«ÇòÓû§ÎÞ·¨»á¼û·þÎñ


¾Ý6ÔÂ8ÈÕ±¨µÀ £¬Î¢ÈíÕýÔÚÊӲ쵼ÖÂÈ«Çò¹æÄ£ÄÚµÄOneDriveÎÞ·¨»á¼ûÔÆÎļþÍйܷþÎñµÄÎÊÌâ¡£Óû§ÔÚʵÑé·­¿ªOneDriveÍøվʱ £¬»á¿´µ½¡°Ç¸ØÆ £¬·ºÆð¹ýʧ¡±ºÍ¡°´ËÒ³ÃæÏÖÔÚÎÞ·¨Õý³£ÊÂÇ顱µÄ¹ýʧÐÂÎÅ¡£ËäÈ»¸Ã¹«Ë¾Ã»ÓÐÌṩÈκιØÓÚµ¼ÖÂÖÐÖ¹ÎÊÌâµÄϸ½ÚÐÅÏ¢ £¬µ«Anonymous SudanÉù³Æ¶Ô´ËÊÂÈÏÕ档΢Èí³Æ £¬ÖÐÖ¹Ö»Ó°ÏìÁËonedrive.live.comÓò £¬Ê¹ÓÃ×ÀÃæ¿Í»§¶Ë¡¢Í¬²½¿Í»§¶Ë»òOffice¿Í»§¶Ë»á¼ûOneDrive·þÎñ²»ÊÜÓ°Ïì¡£¸ÃÍÅ»ïÔÚ±¾ÖÜ»¹DDoS¹¥»÷Á˶à¸öMicrosoft·þÎñ £¬ÈçOutlookºÍSharePointµÈ¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-onedrive-down-worldwide-following-claims-of-ddos-attacks/


3¡¢È«Çò×î´óµÄÀ­Á´ÖÆÔìÉÌYKKµÄÔâµ½LockBitµÄÀÕË÷¹¥»÷


ýÌå6ÔÂ8ÈÕ³Æ £¬ÈÕ±¾À­Á´¹«Ë¾YKK͸¶ £¬ÆäλÓÚÃÀ¹úµÄϵͳÔÚ×î½ü¼¸ÖÜÔâµ½¹¥»÷¡£ËüÊÇÌìÏÂÉÏ×î´óµÄÀ­Á´ÖÆÔìÉÌ £¬ÄêÊÕÈëÁè¼Ý60ÒÚÃÀÔª¡£¸Ã¹«Ë¾³Æ £¬ËûÃÇʵʱ×èÖ¹Á˹¥»÷ £¬¸ÃÊÂÎñ²¢Î´¶ÔÔËÓªºÍ·þÎñ±¬·¢ÊµÖÊÐÔÓ°Ïì £¬Ò²Ã»ÓÐÖ¤¾ÝÅúעСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢ÒÔ¼°ÖªÊ¶²úȨÊܵ½Ó°Ïì¡£LockBitÓÚ6ÔÂ2ÈÕÔÚÆäÍøÕ¾ÉÏÁгöÁËYKK £¬²¢ÍþвҪÔÚ6ÔÂ16ÈÕ֮ǰй¶´Ó¸Ã¹«Ë¾ÇÔÈ¡µÄÊý¾Ý¡£


https://therecord.media/ykk-zipper-manufacturer-cyberattack-us-operations


4¡¢ÈÕ±¾ÖÆÒ©¹«Ë¾ÎÀ²Ä(Eisai)͸¶Æ䲿·Ö·þÎñÆ÷Òѱ»¼ÓÃÜ


6ÔÂ8ÈÕ±¨µÀ³Æ £¬¶«¾©µÄÖÆÒ©¹«Ë¾ÎÀ²Ä(Eisai)Åû¶ÆäÔâµ½ÁËÀÕË÷¹¥»÷ £¬²¿·Ö·þÎñÆ÷Òѱ»¼ÓÃÜ¡£¹¥»÷±¬·¢ÔÚ6ÔÂ3ÈÕÉîÒ¹ £¬ÕâÊǹ¥»÷Õß°²ÅżÓÃÜÆ÷µÄ³£¼ûʱ¼ä £¬ÓÉÓÚITÍŶÓÔÚÖÜÄ©ÈËÊÖȱ·¦ £¬ÎÞ·¨ÓÐÓÃÓ¦¶ÔÒì³£ÇéÐΡ£¸Ã¹«Ë¾ÌåÏÖ £¬ÆäÔÚº£ÄÚÍâµÄ¼¸¸öϵͳ £¬°üÀ¨ÎïÁ÷ϵͳ £¬Òѱ»ÆÈÏÂÏß²¢×èÖ¹·þÎñ £¬Ö±µ½ÊӲ쿢Ê¡£¿ÉÊÇ £¬¹«Ë¾ÍøÕ¾ºÍÓʼþͨѶÈÔÈ»¿ÉÓá£ÏÖÔÚ»¹Ã»ÓÐÀÕË÷ÍÅ»ïÉù³Æ¶Ô´Ë´Î¹¥»÷ÈÏÕæ¡£


https://therecord.media/eisai-japan-pharmaceutical-giant-ransomware


5¡¢Ð¶ñÒâÈí¼þFractureiserÖ÷ÒªÕë¶ÔMinecraftµÄÍæ¼Ò


6ÔÂ7ÈÕ £¬Ñо¿Ö°Ô±Åû¶ÁËеĶñÒâÈí¼þFractureiserÕë¶ÔMinecraftµÄÍæ¼ÒµÄ¹¥»÷Ô˶¯¡£¹¥»÷ʼÓÚ¼¸¸öCurseForgeºÍBukkitÕÊ»§±»ÈëÇÖ £¬²¢±»ÓÃÀ´Ïò²å¼þºÍÄ£×é×¢Èë¶ñÒâ´úÂ롣ȻºóËüÃDZ»Ê¢ÐеÄmodpack½ÓÄÉ £¬ÀýÈçÏÂÔØÁ¿Áè¼Ý460ÍòµÄBetter Minecraft¡£ÊÜÓ°ÏìµÄÍæ¼Ò°üÀ¨ÔÚÒÑÍùÈýÖÜÄÚ´ÓCurseForgeºÍdev.bukkit.orgÏÂÔØÄ£×é»ò²å¼þµÄÈË £¬µ«Ñ¬È¾µÄˮƽÉÐÓдý³ä·ÖÏàʶ¡£Ñо¿Ö°Ô±ÌáÐÑÍæ¼ÒÔÚÏÂÔØÄ£×éʱҪ¸ñÍâСÐÄ £¬ÓÉÓÚÕâ¸öFractureiserÔ˶¯ÈÔÔÚ¾ÙÐÐÖС£


https://www.bleepingcomputer.com/news/security/new-fractureiser-malware-used-curseforge-minecraft-mods-to-infect-windows-linux/


6¡¢KasperskyÐû²¼2023ÄêµÚÒ»¼¾¶ÈITÍþв̬ÊƵı¨¸æ


6ÔÂ7ÈÕ £¬KasperskyÐû²¼ÁË2023ÄêµÚÒ»¼¾¶ÈITÍþв̬ÊƵı¨¸æ¡£±¨¸æÖ¸³ö £¬ÓÐÕë¶ÔÐԵĹ¥»÷·½Ãæ £¬°üÀ¨BlueNoroffÒýÈëÁËÈƹýMotWµÄÐÂÒªÁì¡¢Roaming MantisʵÑéÁËеÄDNS changerÒÔ¼°Óë¶íÎÚ³åÍ»Ïà¹ØµÄÐÂAPT×éÖ¯BadMagic·ºÆð¡£ÔÚÆäËü¶ñÒâÈí¼þ·½Ãæ £¬PrilexÕë¶Ô·Ç½Ó´¥Ê½ÐÅÓÿ¨ÉúÒâ¡¢ºÚ¿ÍʹÓÃαÔìµÄTorä¯ÀÀÆ÷ÇÔÈ¡¼ÓÃÜÇ®±Ò¡¢ÓëChatGPTÏà¹ØµÄÍþвÔöÌíÒÔ¼°Í¨¹ýËÑË÷ÒýÇæ¾ÙÐжñÒâ¹ã¸æÔ˶¯µÈ¡£


https://securelist.com/it-threat-evolution-q1-2023/109838/