Barracuda±Þ²ßÆóÒµÌæ»»ÊÜÓ°ÏìESG×ÝÈ»×°ÖÃÈκΰ汾²¹¶¡
Ðû²¼Ê±¼ä 2023-06-091¡¢Barracuda±Þ²ßÆóÒµÌæ»»ÊÜÓ°ÏìESG×ÝÈ»×°ÖÃÈκΰ汾²¹¶¡
¾ÝýÌå6ÔÂ7ÈÕ±¨µÀ£¬Barracuda±Þ²ßÆóҵʵʱÌæ»»ÊÜÓ°ÏìµÄµç×ÓÓʼþÇå¾²Íø¹Ø(ESG)×°±¸£¬ÎÞÂÛËûÃÇ×°ÖÃÁËʲô°æ±¾¼¶±ðµÄ²¹¶¡¡£Îó²î±»×·×ÙΪCVE-2023-2868£¬±£´æÓÚµç×ÓÓʼþ¸½¼þɸѡģ¿éÖУ¬ÓÚ5ÔÂ19ÈÕ±»·¢Ã÷£¬¸Ã¹«Ë¾ÓÚ5ÔÂ20ÈÕºÍ21ÈÕÐû²¼ÁËÁ½¸ö²¹¶¡À´ÐÞ¸´¸ÃÎÊÌâ¡£¾ÝÊӲ죬¸ÃÎó²îÒѱ»Ê¹Ó㬹¥»÷ÊÂÎñÖÁÉÙ¿ÉÒÔ×·Ëݵ½2022Äê10Ô¡£Ñо¿Ö°Ô±ÁªÏµBarracudaµÄ½²»°ÈË£¬Ñ¯ÎʹØÓÚΪʲôÐèÒªÖÜÈ«Ìæ»»ESGµÄ¸ü¶àϸ½Úʱ£¬Ã»ÓÐÁ¬Ã¦»ñµÃ»Ø¸´¡£
https://securityaffairs.com/147211/hacking/barracuda-esg-cve-2023-2868-replacement.html
2¡¢Î¢ÈíOneDriveÔâµ½DDoS¹¥»÷È«ÇòÓû§ÎÞ·¨»á¼û·þÎñ
¾Ý6ÔÂ8ÈÕ±¨µÀ£¬Î¢ÈíÕýÔÚÊӲ쵼ÖÂÈ«Çò¹æÄ£ÄÚµÄOneDriveÎÞ·¨»á¼ûÔÆÎļþÍйܷþÎñµÄÎÊÌâ¡£Óû§ÔÚʵÑé·¿ªOneDriveÍøվʱ£¬»á¿´µ½¡°Ç¸ØÆ£¬·ºÆð¹ýʧ¡±ºÍ¡°´ËÒ³ÃæÏÖÔÚÎÞ·¨Õý³£ÊÂÇ顱µÄ¹ýʧÐÂÎÅ¡£ËäÈ»¸Ã¹«Ë¾Ã»ÓÐÌṩÈκιØÓÚµ¼ÖÂÖÐÖ¹ÎÊÌâµÄϸ½ÚÐÅÏ¢£¬µ«Anonymous SudanÉù³Æ¶Ô´ËÊÂÈÏÕ档΢Èí³Æ£¬ÖÐÖ¹Ö»Ó°ÏìÁËonedrive.live.comÓò£¬Ê¹ÓÃ×ÀÃæ¿Í»§¶Ë¡¢Í¬²½¿Í»§¶Ë»òOffice¿Í»§¶Ë»á¼ûOneDrive·þÎñ²»ÊÜÓ°Ïì¡£¸ÃÍÅ»ïÔÚ±¾ÖÜ»¹DDoS¹¥»÷Á˶à¸öMicrosoft·þÎñ£¬ÈçOutlookºÍSharePointµÈ¡£
https://www.bleepingcomputer.com/news/microsoft/microsoft-onedrive-down-worldwide-following-claims-of-ddos-attacks/
3¡¢È«Çò×î´óµÄÀÁ´ÖÆÔìÉÌYKKµÄÔâµ½LockBitµÄÀÕË÷¹¥»÷
ýÌå6ÔÂ8Èճƣ¬ÈÕ±¾ÀÁ´¹«Ë¾YKK͸¶£¬ÆäλÓÚÃÀ¹úµÄϵͳÔÚ×î½ü¼¸ÖÜÔâµ½¹¥»÷¡£ËüÊÇÌìÏÂÉÏ×î´óµÄÀÁ´ÖÆÔìÉÌ£¬ÄêÊÕÈëÁè¼Ý60ÒÚÃÀÔª¡£¸Ã¹«Ë¾³Æ£¬ËûÃÇʵʱ×èÖ¹Á˹¥»÷£¬¸ÃÊÂÎñ²¢Î´¶ÔÔËÓªºÍ·þÎñ±¬·¢ÊµÖÊÐÔÓ°Ï죬ҲûÓÐÖ¤¾ÝÅúעСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢ÒÔ¼°ÖªÊ¶²úȨÊܵ½Ó°Ïì¡£LockBitÓÚ6ÔÂ2ÈÕÔÚÆäÍøÕ¾ÉÏÁгöÁËYKK£¬²¢ÍþвҪÔÚ6ÔÂ16ÈÕ֮ǰй¶´Ó¸Ã¹«Ë¾ÇÔÈ¡µÄÊý¾Ý¡£
https://therecord.media/ykk-zipper-manufacturer-cyberattack-us-operations
4¡¢ÈÕ±¾ÖÆÒ©¹«Ë¾ÎÀ²Ä(Eisai)͸¶Æ䲿·Ö·þÎñÆ÷Òѱ»¼ÓÃÜ
6ÔÂ8ÈÕ±¨µÀ³Æ£¬¶«¾©µÄÖÆÒ©¹«Ë¾ÎÀ²Ä(Eisai)Åû¶ÆäÔâµ½ÁËÀÕË÷¹¥»÷£¬²¿·Ö·þÎñÆ÷Òѱ»¼ÓÃÜ¡£¹¥»÷±¬·¢ÔÚ6ÔÂ3ÈÕÉîÒ¹£¬ÕâÊǹ¥»÷Õß°²ÅżÓÃÜÆ÷µÄ³£¼ûʱ¼ä£¬ÓÉÓÚITÍŶÓÔÚÖÜÄ©ÈËÊÖȱ·¦£¬ÎÞ·¨ÓÐÓÃÓ¦¶ÔÒì³£ÇéÐΡ£¸Ã¹«Ë¾ÌåÏÖ£¬ÆäÔÚº£ÄÚÍâµÄ¼¸¸öϵͳ£¬°üÀ¨ÎïÁ÷ϵͳ£¬Òѱ»ÆÈÏÂÏß²¢×èÖ¹·þÎñ£¬Ö±µ½ÊӲ쿢Ê¡£¿ÉÊÇ£¬¹«Ë¾ÍøÕ¾ºÍÓʼþͨѶÈÔÈ»¿ÉÓá£ÏÖÔÚ»¹Ã»ÓÐÀÕË÷ÍÅ»ïÉù³Æ¶Ô´Ë´Î¹¥»÷ÈÏÕæ¡£
https://therecord.media/eisai-japan-pharmaceutical-giant-ransomware
5¡¢Ð¶ñÒâÈí¼þFractureiserÖ÷ÒªÕë¶ÔMinecraftµÄÍæ¼Ò
6ÔÂ7ÈÕ£¬Ñо¿Ö°Ô±Åû¶ÁËеĶñÒâÈí¼þFractureiserÕë¶ÔMinecraftµÄÍæ¼ÒµÄ¹¥»÷Ô˶¯¡£¹¥»÷ʼÓÚ¼¸¸öCurseForgeºÍBukkitÕÊ»§±»ÈëÇÖ£¬²¢±»ÓÃÀ´Ïò²å¼þºÍÄ£×é×¢Èë¶ñÒâ´úÂ롣ȻºóËüÃDZ»Ê¢ÐеÄmodpack½ÓÄÉ£¬ÀýÈçÏÂÔØÁ¿Áè¼Ý460ÍòµÄBetter Minecraft¡£ÊÜÓ°ÏìµÄÍæ¼Ò°üÀ¨ÔÚÒÑÍùÈýÖÜÄÚ´ÓCurseForgeºÍdev.bukkit.orgÏÂÔØÄ£×é»ò²å¼þµÄÈË£¬µ«Ñ¬È¾µÄˮƽÉÐÓдý³ä·ÖÏàʶ¡£Ñо¿Ö°Ô±ÌáÐÑÍæ¼ÒÔÚÏÂÔØÄ£×éʱҪ¸ñÍâСÐÄ£¬ÓÉÓÚÕâ¸öFractureiserÔ˶¯ÈÔÔÚ¾ÙÐÐÖС£
https://www.bleepingcomputer.com/news/security/new-fractureiser-malware-used-curseforge-minecraft-mods-to-infect-windows-linux/
6¡¢KasperskyÐû²¼2023ÄêµÚÒ»¼¾¶ÈITÍþв̬ÊƵı¨¸æ
6ÔÂ7ÈÕ£¬KasperskyÐû²¼ÁË2023ÄêµÚÒ»¼¾¶ÈITÍþв̬ÊƵı¨¸æ¡£±¨¸æÖ¸³ö£¬ÓÐÕë¶ÔÐԵĹ¥»÷·½Ã棬°üÀ¨BlueNoroffÒýÈëÁËÈƹýMotWµÄÐÂÒªÁì¡¢Roaming MantisʵÑéÁËеÄDNS changerÒÔ¼°Óë¶íÎÚ³åÍ»Ïà¹ØµÄÐÂAPT×éÖ¯BadMagic·ºÆð¡£ÔÚÆäËü¶ñÒâÈí¼þ·½Ã棬PrilexÕë¶Ô·Ç½Ó´¥Ê½ÐÅÓÿ¨ÉúÒâ¡¢ºÚ¿ÍʹÓÃαÔìµÄTorä¯ÀÀÆ÷ÇÔÈ¡¼ÓÃÜÇ®±Ò¡¢ÓëChatGPTÏà¹ØµÄÍþвÔöÌíÒÔ¼°Í¨¹ýËÑË÷ÒýÇæ¾ÙÐжñÒâ¹ã¸æÔ˶¯µÈ¡£
https://securelist.com/it-threat-evolution-q1-2023/109838/