BlackCatÉù³ÆÒÑ»ñÈ¡RedditµÄ80GBÊý¾Ý²¢ÀÕË÷450ÍòÃÀÔª

Ðû²¼Ê±¼ä 2023-06-19

1¡¢BlackCatÉù³ÆÒÑ»ñÈ¡RedditµÄ80GBÊý¾Ý²¢ÀÕË÷450ÍòÃÀÔª 


¾ÝýÌå6ÔÂ17ÈÕ±¨µÀ£¬BlackCat(ALPHV)Éù³Æ¶ÔRedditÔâµ½µÄ¹¥»÷ÈÏÕ棬²¢ÌåÏÖÒÑÇÔÈ¡80 GB£¨Ñ¹Ëõ£©µÄÊý¾Ý¡£2ÔÂ9ÈÕ£¬Reddit͸¶ÆäϵͳÔÚ2ÔÂ5ÈÕ±»ºÚ£¬ÓÉÓÚÒ»ÃûÔ±¹¤Ôâµ½ÁË´¹ÂÚ¹¥»÷¡£Õâµ¼Ö¹¥»÷ÕßÄܹ»»á¼ûRedditµÄϵͳ£¬²¢ÇÔÈ¡ÄÚ²¿Îĵµ¡¢Ô´´úÂë¡¢Ô±¹¤ÐÅÏ¢ÒÔ¼°Óйع«Ë¾¹ã¸æÉ̵ÄÊý¾Ý¡£BlackCatÍÅ»ïÌåÏÖ£¬ËûÃÇÔøÔÚ4ÔÂ13ÈÕºÍ6ÔÂ16ÈÕÁ½´ÎÊÔͼÁªÏµReddit£¬²¢ÒªÇóÆä½»450ÍòÃÀµÄÊê½ð£¬µ«Ã»ÓÐÊÕµ½»Ø¸´¡£


https://www.databreaches.net/blackcat-claims-they-hacked-reddit-and-will-leak-the-data/


2¡¢ProgressÐÞ¸´MOVEitÖÐÓÖÒ»¸öSQLiÎó²îCVE-2023-35708  


ýÌå6ÔÂ15Èճƣ¬Progress SoftwareÐÞ¸´ÁËÆäMOVEit TransferÖеĵÚÈý¸öSQL×¢ÈëÎó²î£¨CVE-2023-35708£©¡£¸Ã¹«Ë¾³Æ£¬ËûÃÇÒѾ­½µµÍÁËMOVEit CloudµÄHTTPsÁ÷Á¿£¬²¢ÒªÇóÓû§ÔÚ½¨ÉèºÍ²âÊÔ²¹¶¡Ê±½µµÍHTTPºÍHTTPsÁ÷Á¿ÒÔ±£»¤ËûÃǵÄϵͳ¡£ÔÚ×°Öò¹¶¡Ç°£¬ProgressÇ¿ÁÒ½¨ÒéÐ޸ķÀ»ðǽ¹æÔòÒԾܾø¶Ë¿Ú80ºÍ443ÉϵÄMOVEit TransferµÄHTTPºÍHTTPsÁ÷Á¿£¬×÷ΪһÖÖÔÝʱ½â¾öÒªÁì¡£ËùÓÐÓû§¶¼±ØÐèÓ¦ÓÃÔÚ6ÔÂ16ÈÕÐû²¼µÄв¹¶¡¡£Õâ¸öÐÂÎó²îµÄϸ½ÚÉÐδ¹ûÕ棬µ«ÒÑÓÐÑо¿Ö°Ô±Ðû²¼PoC¡£


https://www.bleepingcomputer.com/news/security/moveit-transfer-customers-warned-of-new-flaw-as-poc-info-surfaces/


3¡¢ÀÕË÷ÍÅ»ïRhysida¹ûÕæ´ÓÖÇÀû¾ü¶ÓµÄϵͳÖÐÇÔÈ¡µÄÎļþ


¾Ý6ÔÂ15ÈÕ±¨µÀ£¬ÀÕË÷ÍÅ»ïRhysida¹ûÕæÁË´ÓÖÇÀû¾ü¶Ó(Ej¨¦rcito de Chile)µÄϵͳÖÐÇÔÈ¡µÄÎļþ¡£¾ÝÇå¾²¹«Ë¾CronUp³Æ£¬ÖÇÀû¾ü¶ÓÓÚ5ÔÂ29ÈÕÈ·ÈÏÆäϵͳÊܵ½ÁËÔÚ5ÔÂ27ÈÕ¼ì²âµ½µÄÇå¾²ÊÂÎñµÄÓ°Ï죬²¿·ÖÊý¾Ýй¶¡£¹¥»÷ÊÂÎñÅû¶µÄ¼¸Ììºó£¬ÍâµØýÌ屨µÀ³Æ£¬Ò»Ãû½¾üÏÂÊ¿Òò¼ÓÈëÀÕË÷¹¥»÷¶ø±»²¶¡£RhysidaÏÖÔÚÐû²¼ÁËԼĪ360000·ÝÖÇÀû¾ü¶ÓµÄÎļþ£¨¾Ý³Æ½öÕ¼ËùÓб»µÁÊý¾ÝµÄ30%£©¡£


https://www.bleepingcomputer.com/news/security/rhysida-ransomware-leaks-documents-stolen-from-chilean-army/


4¡¢Î¢Èí͸¶½üÆÚAzure¡¢OutlookºÍOneDriveÖÐÖ¹Ô´ÓÚDDoS¹¥»÷


6ÔÂ18ÈÕ±¨µÀ³Æ£¬Î¢Èí͸¶6ÔÂÉÏÑ®ÆäAzure¡¢OutlookºÍOneDrive·þÎñÖÐÖ¹ÊÇÕë¶Ô¹«Ë¾·þÎñµÄµÚ7²ãDDoS¹¥»÷µ¼ÖµÄ¡£´Ë´Î¹¥»÷±»¹éÒòÓÚ΢Èí×·×ÙΪStorm-1359µÄÍŻ¸ÃÍÅ»ï×Ô³ÆAnonymous Sudan¡£ÕâЩ¹¥»÷¿ÉÄÜÒÀÀµÓÚ»á¼û¶à¸öÐéÄâרÓ÷þÎñÆ÷(VPS)ÒÔ¼°×âÓõÄÔÆ»ù´¡ÉèÊ©¡¢¿ª·ÅÊðÀíºÍDDoS¹¤¾ß¡£×î³õ£¬Õâ¼ÒIT¹«Ë¾Ã»ÓÐÌṩÓйØÖÐÖ¹ÊÂÎñµÄÏêϸÐÅÏ¢£¬µ«ÔÚ6ÔÂ16ÈÕÐû²¼ÁËMicrosoft¶ÔµÚ7²ãDDoS¹¥»÷µÄÏìÓ¦±¨¸æ£¬Í¸Â¶ÁËÖÐÖ¹µÄÔµ¹ÊÔ­ÓÉ¡£


https://securityaffairs.com/147605/hacking/microsoft-outages-ddos.html


5¡¢Ö´·¨Ðж¯PowerOffµ·»Ù2013Äê×îÏÈ»îÔ¾µÄDDoS³ö×â·þÎñ


¾Ý6ÔÂ17ÈÕýÌ屨µÀ£¬¹ú¼ÊÖ´·¨Ðж¯Operation PowerOFFµ·»ÙÁË×Ô2013Äê×îÏÈ»îÔ¾µÄDDoS³ö×â·þÎñ (ÓÖ³Æbooter»òstresser)¡£DDoS³ö×⣨DDoS-for-hire£©·þÎñÔÊÐí×¢²áÓû§ÔÚ²»¾ß±¸Ìض¨ÖªÊ¶µÄÇéÐÎÏÂÖ´ÐÐÓÐÐòµÄDDoS¹¥»÷¡£¾ÝϤ£¬²¨À¼¾¯·½¾Ð²¶Á˸Ãƽ̨µÄÁ½ÃûÔËÓªÖ°Ô±£¬²¢´ÓËûÃÇλÓÚÈðÊ¿µÄ·þÎñÆ÷ÖÐÍøÂçµ½ÁËÓмÛÖµµÄÊý¾Ý¡£ÓÐÁè¼Ý35000¸öÓû§ÕÊ»§¡¢76000¸öµÇ¼¼Í¼ºÍÁè¼Ý320000¸öÓëDDoS³ö×â·þÎñÏà¹ØµÄIPµØµãµÄÐÅÏ¢¡£Operation PowerOFFÊÇÒ»Ïîºã¾ÃÖ´ÐеÄÖ´·¨Ðж¯£¬ÒѹرÕÁËÊýÊ®¸öÖ÷ÒªµÄDDoS³ö×âƽ̨¡£ 


https://securityaffairs.com/147564/cyber-crime/ddos-for-eye-service-seized.html


6¡¢ESET·¢Ã÷Android¶ñÒâÈí¼þGravityRATÐÂÒ»ÂÖ¹¥»÷Ô˶¯


6ÔÂ15ÈÕ£¬ESETÅû¶ÁËAndroid¶ñÒâÈí¼þGravityRATµÄÐÂÒ»ÂÖ¹¥»÷Ô˶¯¡£¸ÃÔ˶¯×Ô2022Äê8ÔÂ×îÏÈ»îÔ¾£¬Ê¹ÓÃľÂí»¯Ì¸ÌìÓ¦ÓÃBingeChatºÍChaticoѬȾÒƶ¯×°±¸£¬²¢ÊÔͼ´ÓÄ¿µÄ×°±¸ÖÐÇÔÈ¡Êý¾Ý¡£ÏÖÔÚ£¬Ê¹ÓÃChaticoµÄÔ˶¯ÒѲ»ÔÙ»îÔ¾¡£¶ñÒâÓ¦Óû¹Ìṩ»ùÓÚ¿ªÔ´OMEMO Instant MessengerÓ¦ÓóÌÐòµÄÕýµ±Ì¸Ì칦Ч¡£Õâ¸öа汾µÄGravityRAT¾ßÓÐÁ½¸öй¦Ð§£¬¿ÉÎüÊÕɾ³ýÎļþµÄÏÂÁîºÍй¶WhatsApp±¸·ÝÎļþ¡£


https://www.welivesecurity.com/2023/06/15/android-gravityrat-goes-after-whatsapp-backups/