Å·ÖÞÖ´·¨Õþ¸®Àֳɵ·»ÙEncroChat²¢ÒѾв¶6600¶àÈË
Ðû²¼Ê±¼ä 2023-06-291¡¢Å·ÖÞÖ´·¨Õþ¸®Àֳɵ·»ÙEncroChat²¢ÒѾв¶6600¶àÈË
¾ÝýÌå6ÔÂ27ÈÕ±¨µÀ£¬Å·ÖÞÐ̾¯×éÖ¯Ðû²¼Òѵ·»Ù¼ÓÃÜÒƶ¯Í¨Ñ¶Æ½Ì¨EncroCha£¬²¢¾Ð²¶ÁË6600¶àÈË£¬²é»ñÁË9.79ÒÚÃÀÔª²»·¨×ʽð¡£2020Äê×îÏÈ£¬Å·Ö޵Ĵó¹æÄ£Ö´·¨Ðж¯Éø͸µ½¸Ãƽ̨¡£Ëæºó·¨¹úºÍºÉÀ¼Õþ¸®µÄÍŽáÊÓ²ì½Ø»ñ²¢ÆÊÎöÁËÖÁÉÙ6ÍòÃûÓû§µÄÁè¼Ý1.15ÒڴζԻ°£¬¾Ð²¶ÁË6558ÃûEncroChatÓû§¡£ÕâЩÈ˴󲿷ÖÊÇÓÐ×éÖ¯·¸·¨µÄ³ÉÔ±£¨34.8%£©»ò´Óʶ¾Æ···ÔË£¨33.3%£©£¬ÆäÓàµÄÈË´ÓÊÂÏ´Ç®£¨14%£©¡¢Ðд̣¨11.5%£©ºÍǹ֧··ÔË£¨6.4%£©¡£Æù½ñΪֹ£¬±»²¶µÄEncroChatÓû§Òѱ»Åд¦×ܼÆ7134Äêî¿Ïµ£¬µ«ÉÐδËùÓб»ÅÐÐÌ¡£
https://www.bleepingcomputer.com/news/security/encrochat-takedown-led-to-6-500-arrests-and-979-million-seized/
2¡¢ÀÕË÷ÍÅ»ï8BaseµÄ¹¥»÷¼¤ÔöÖ÷ÒªÕë¶ÔÃÀ¹úºÍ°ÍÎ÷µÄÆóÒµ
¾Ý6ÔÂ28ÈÕ±¨µÀ£¬ÀÕË÷ÍÅ»ï8BaseÕýÔÚÕë¶ÔÌìϸ÷µØµÄ×éÖ¯¾ÙÐÐË«ÖØÀÕË÷¹¥»÷¡£¸ÃÍÅ»ïÓÚ2022Äê3ÔÂÊ״ηºÆð£¬Ò»Ö±Ïà¶ÔÇå¾²£¬µ«Æä¹¥»÷Ô˶¯ÔÚ½ñÄê6Ô·ݼ¤Ôö¡£Æ¾Ö¤MalwarebytesºÍNCC GroupµÄÊý¾Ý£¬×èÖ¹5Ô£¬ÒÑÓÐ67ÆðÓë8BaseÓйصĹ¥»÷£¬ÆäÖÐÔ¼50%µÄÄ¿µÄ´ÓÊÂÉÌÒµ·þÎñ¡¢ÖÆÔìºÍÐÞ½¨ÐÐÒµ£¬´ó´ó¶¼×é֯λÓÚÃÀ¹úºÍ°ÍÎ÷¡£VMware³Æ£¬×î½ü8BaseÔÚ¹¥»÷Ô˶¯ÖÐʹÓõÄÕ½ÂÔÅú×¢£¬ÕâЩ¹¥»÷À´×ÔÒ»¸ö³ÉÊìµÄÀÕË÷ÍŻ¿ÉÄÜÊÇRansomHouse£©µÄÆ·ÅÆÖØËÜ¡£±ðµÄ£¬8BaseʹÓõÄÊÇÀÕË÷Èí¼þPhobos µÄ¶¨ÖÆ°æ±¾£¬Í¨¹ýSmokeLoader¼ÓÔØ¡£
https://thehackernews.com/2023/06/8base-ransomware-spikes-in-activity.html
3¡¢Phylum¼ì²âµ½Õë¶ÔNPMÉú̬ϵͳµÄÖØ´óµÄ¹¥»÷Ô˶¯
PhylumÔÚ6ÔÂ23ÈÕ³ÆÆä¼ì²âµ½Ò»ÆðÕë¶ÔnpmÉú̬ϵͳµÄÐÂÔ˶¯£¬Ê¹ÓÃÁËÆæÒìµÄÖ´ÐÐÁ´ÏòÄ¿µÄϵͳ·Ö·¢Î´ÖªµÄpayload¡£¸ÃÔ˶¯ÓÚ6ÔÂ11ÈÕÊ״α»·¢Ã÷£¬ÓÐÎÊÌâµÄÈí¼þ°üËƺõÊdzɶÔÐû²¼µÄ£¬Ã¿Ò»¶Ô¶¼ÐͬÊÂÇéÀ´»ñÈ¡ÌØÁíÍâ×ÊÔ´£¬ËæºóÕâЩ×ÊÔ´»á±»½âÂëºÍÖ´ÐС£ÆäÖУ¬µÚÒ»¸ö°ü½«´ÓÔ¶³Ì·þÎñÆ÷¼ìË÷ÁîÅƲ¢´æ´¢µ½ÍâµØ£¬µÚ¶þ¸ö°üʹÓôËÁîÅÆ´ÓÔ¶³Ì·þÎñÆ÷»ñÈ¡ÁíÒ»¸ö¾ç±¾¡£¼øÓÚ´ËÊÂÇéÁ÷³Ì£¬Õâ¶ÔÈí¼þ°üµÄ×°ÖúÍÖ´ÐÐ˳ÐòÖÁ¹ØÖ÷Òª¡£ÏÖÔÚÉв»ÇåÎú¸ÃÔ˶¯±³ºóµÄ¹¥»÷ÕßµÄÉí·Ý¡£
https://blog.phylum.io/sophisticated-ongoing-attack-discovered-on-npm/
4¡¢Proximus±»nyobÖ¸¿Ø²»·¨ÆÊÎöÊý°ÙÍòÊÖ»úÓû§ÐÅÏ¢
ýÌå6ÔÂ27Èճƣ¬nyobÖ¸¿ØÈí¼þ¹«Ë¾TeleSignÍøÂçºÍ³öÊÛÊý°ÙÍòÊÖ»úÓû§µÄÐÅÏ¢¡£nyobÊǰµØÀûµÄÒ»¸öÊý×Ö°æȨ×éÖ¯£¬¸ÃͶËßÕë¶ÔBICS¡¢TeleSignºÍProximus£¬ÆäÖÐBICSÊDZÈÀûʱµÄͨѶ·þÎñ£¬TeleSignÊÇÃÀ¹úµÄÈí¼þ¹«Ë¾£¬ProximusÊǶþÕßµÄĸ¹«Ë¾¡£nyob³Æ£¬µç»°ÌṩÉ̻ὫÊý¾Ýת·¢¸øBICS£¬BICS½«Æäת·¢¸øTeleSign¡£TeleSign»áÌìÉúÓйØÓû§µÄÐÅÍÐÆÀ·Ö£¬²¢½«µç»°Êý¾Ý³öÊÛ¸øMicrosoftºÍTikTokÆ·¼¶Èý·½£¬¶øÎÞÐèÈκÎÈËÖªÇé»òÔ޳ɡ£ÕⳡËßËÏ×îÖÕ¿ÉÄܵ¼ÖÂÖØ´óµÄËðʧ£¬±ÈÀûʱÊý¾Ý±£»¤¾Ö¿ÉÒÔ¿ª³ö×î¸ßÔ¼2.5ÒÚÃÀÔª£¨ProximusÈ«ÇòÓªÒµ¶îµÄ4%£©µÄ·£¿î¡£
https://www.malwarebytes.com/blog/news/2023/06/software-company-accused-of-illegally-profiling-millions-of-mobile-phone-users
5¡¢²¿·Ö±±ÃÀÓû§»á¼ûÍøÒ³°æOutlookʱ·ºÆð500 error
6ÔÂ27ÈÕ±¨µÀ³Æ£¬Î¢Èí³Æ²¿·Ö±±ÃÀµÄÓû§ÎÞ·¨Í¨¹ýOutlookÍøÒ³°æ»á¼ûÆäExchange OnlineÓÊÏä¡£ËäȻ΢ÈíÌåÏÖ¸ÃÎÊÌâ½öÓ°Ïì±±ÃÀµØÇø£¬µ«ÓÐÓû§±¨¸æÒ²¿ÉÄÜÓ°ÏìÁËÄÏÃÀÖÞ£¨°ÍÎ÷¡¢ÖÇÀû¡¢¶àÃ×Äá¼ÓºÍ¸çÂ×±ÈÑÇ£©¡£ÊÜÓ°ÏìµÄÓû§ÔÚ»á¼ûÍøÒ³°æOutlookʱ¿ÉÄÜ»áÓöµ½·ºÆð500 error¡£ÔÚÖÐÖ¹×îÏÈÆßСʱºó£¬Î¢ÈíÓÚ6ÔÂ27ÈÕ16:29 EDTÌåÏÖ£¬ ÊÜÓ°ÏìÓû§µÄOutlookÒѾ»Ö¸´ÔÚÏß¡£6Ô³õ£¬Î¢ÈíµÄAzure¡¢Outlook.comºÍOneDriveÔøÔâµ½DDoS¹¥»÷£¬·þÎñÔÝʱÖÐÖ¹¡£
https://www.bleepingcomputer.com/news/microsoft/outlook-for-the-web-outage-impacts-users-across-america/
6¡¢FortiGuardÐû²¼ThirdEye InfostealerµÄÆÊÎö±¨¸æ
6ÔÂ27ÈÕ£¬FortiGuardÐû²¼Á˹ØÓÚThirdEye InfostealerµÄÆÊÎö±¨¸æ¡£Ñо¿Ö°Ô±½üÆÚ·¢Ã÷ÁËһЩ¿ÉÒɵÄÎļþ£¬ÆÊÎö·¢Ã÷ÊÇÒ»ÖÖеÄÐÅÏ¢ÇÔÈ¡³ÌÐò£¬²¢½«ÆäÃüÃûΪThirdEye¡£ThirdEyeµÄ¹¦Ð§Ïà¶Ô¼òÆÓ£¬ËüÍøÂçÄ¿µÄµÄϵͳÐÅÏ¢£¬Ã¶¾ÙÎļþºÍÎļþ¼Ð¡¢ÕýÔÚÔËÐеÄÀú³ÌÒÔ¼°ÍøÂçÐÅÏ¢¡£Ñо¿Ö°Ô±³Æ£¬¸Ã¶ñÒâÈí¼þÍøÂçµÄÐÅÏ¢¹ØÓÚÏàʶºÍËõСĿµÄ¹æÄ£ºÜÓмÛÖµ£¬¶ø±»ThirdEye¹¥»÷µÄÄ¿µÄ¿ÉÄÜ»á³ÉΪδÀ´ÍøÂç¹¥»÷µÄ¹¤¾ß¡£ÓÉÓÚ´ó´ó¶¼ThirdEye±äÌåÌá½»¸ø¶íÂÞ˹µÄ¹«¹²É¨Ãè·þÎñ£¬×îбäÌåµÄÎļþÃûÒ²ÊǶíÓïµÄ£¬Òò´ËËü¿ÉÄÜÕë¶Ô¶íÂÞ˹µÄ×éÖ¯¡£
https://www.fortinet.com/blog/threat-research/new-fast-developing-thirdeye-infostealer-pries-open-system-information