Å·ÖÞÖ´·¨Õþ¸®Àֳɵ·»ÙEncroChat²¢ÒѾв¶6600¶àÈË

Ðû²¼Ê±¼ä 2023-06-29

1¡¢Å·ÖÞÖ´·¨Õþ¸®Àֳɵ·»ÙEncroChat²¢ÒѾв¶6600¶àÈË


¾ÝýÌå6ÔÂ27ÈÕ±¨µÀ £¬Å·ÖÞÐ̾¯×éÖ¯Ðû²¼Òѵ·»Ù¼ÓÃÜÒƶ¯Í¨Ñ¶Æ½Ì¨EncroCha £¬²¢¾Ð²¶ÁË6600¶àÈË £¬²é»ñÁË9.79ÒÚÃÀÔª²»·¨×ʽð ¡£2020Äê×îÏÈ £¬Å·Ö޵Ĵó¹æÄ£Ö´·¨Ðж¯Éø͸µ½¸Ãƽ̨ ¡£Ëæºó·¨¹úºÍºÉÀ¼Õþ¸®µÄÍŽáÊÓ²ì½Ø»ñ²¢ÆÊÎöÁËÖÁÉÙ6ÍòÃûÓû§µÄÁè¼Ý1.15ÒڴζԻ° £¬¾Ð²¶ÁË6558ÃûEncroChatÓû§ ¡£ÕâЩÈ˴󲿷ÖÊÇÓÐ×éÖ¯·¸·¨µÄ³ÉÔ±£¨34.8%£©»ò´Óʶ¾Æ···ÔË£¨33.3%£© £¬ÆäÓàµÄÈË´ÓÊÂÏ´Ç®£¨14%£©¡¢Ðд̣¨11.5%£©ºÍǹ֧··ÔË£¨6.4%£© ¡£Æù½ñΪֹ £¬±»²¶µÄEncroChatÓû§Òѱ»Åд¦×ܼÆ7134Äêî¿Ïµ £¬µ«ÉÐδËùÓб»ÅÐÐÌ ¡£


https://www.bleepingcomputer.com/news/security/encrochat-takedown-led-to-6-500-arrests-and-979-million-seized/


2¡¢ÀÕË÷ÍÅ»ï8BaseµÄ¹¥»÷¼¤ÔöÖ÷ÒªÕë¶ÔÃÀ¹úºÍ°ÍÎ÷µÄÆóÒµ


¾Ý6ÔÂ28ÈÕ±¨µÀ £¬ÀÕË÷ÍÅ»ï8BaseÕýÔÚÕë¶ÔÌìϸ÷µØµÄ×éÖ¯¾ÙÐÐË«ÖØÀÕË÷¹¥»÷ ¡£¸ÃÍÅ»ïÓÚ2022Äê3ÔÂÊ״ηºÆ𠣬һֱÏà¶ÔÇå¾² £¬µ«Æä¹¥»÷Ô˶¯ÔÚ½ñÄê6Ô·ݼ¤Ôö ¡£Æ¾Ö¤MalwarebytesºÍNCC GroupµÄÊý¾Ý £¬×èÖ¹5Ô £¬ÒÑÓÐ67ÆðÓë8BaseÓйصĹ¥»÷ £¬ÆäÖÐÔ¼50%µÄÄ¿µÄ´ÓÊÂÉÌÒµ·þÎñ¡¢ÖÆÔìºÍÐÞ½¨ÐÐÒµ £¬´ó´ó¶¼×é֯λÓÚÃÀ¹úºÍ°ÍÎ÷ ¡£VMware³Æ £¬×î½ü8BaseÔÚ¹¥»÷Ô˶¯ÖÐʹÓõÄÕ½ÂÔÅú×¢ £¬ÕâЩ¹¥»÷À´×ÔÒ»¸ö³ÉÊìµÄÀÕË÷ÍŻ¿ÉÄÜÊÇRansomHouse£©µÄÆ·ÅÆÖØËÜ ¡£±ðµÄ £¬8BaseʹÓõÄÊÇÀÕË÷Èí¼þPhobos µÄ¶¨ÖÆ°æ±¾ £¬Í¨¹ýSmokeLoader¼ÓÔØ ¡£


https://thehackernews.com/2023/06/8base-ransomware-spikes-in-activity.html


3¡¢Phylum¼ì²âµ½Õë¶ÔNPMÉú̬ϵͳµÄÖØ´óµÄ¹¥»÷Ô˶¯


PhylumÔÚ6ÔÂ23ÈÕ³ÆÆä¼ì²âµ½Ò»ÆðÕë¶ÔnpmÉú̬ϵͳµÄÐÂÔ˶¯ £¬Ê¹ÓÃÁËÆæÒìµÄÖ´ÐÐÁ´ÏòÄ¿µÄϵͳ·Ö·¢Î´ÖªµÄpayload ¡£¸ÃÔ˶¯ÓÚ6ÔÂ11ÈÕÊ״α»·¢Ã÷ £¬ÓÐÎÊÌâµÄÈí¼þ°üËƺõÊdzɶÔÐû²¼µÄ £¬Ã¿Ò»¶Ô¶¼Ð­Í¬ÊÂÇéÀ´»ñÈ¡ÌØÁíÍâ×ÊÔ´ £¬ËæºóÕâЩ×ÊÔ´»á±»½âÂëºÍÖ´ÐÐ ¡£ÆäÖÐ £¬µÚÒ»¸ö°ü½«´ÓÔ¶³Ì·þÎñÆ÷¼ìË÷ÁîÅƲ¢´æ´¢µ½ÍâµØ £¬µÚ¶þ¸ö°üʹÓôËÁîÅÆ´ÓÔ¶³Ì·þÎñÆ÷»ñÈ¡ÁíÒ»¸ö¾ç±¾ ¡£¼øÓÚ´ËÊÂÇéÁ÷³Ì £¬Õâ¶ÔÈí¼þ°üµÄ×°ÖúÍÖ´ÐÐ˳ÐòÖÁ¹ØÖ÷Òª ¡£ÏÖÔÚÉв»ÇåÎú¸ÃÔ˶¯±³ºóµÄ¹¥»÷ÕßµÄÉí·Ý ¡£


https://blog.phylum.io/sophisticated-ongoing-attack-discovered-on-npm/


4¡¢Proximus±»nyobÖ¸¿Ø²»·¨ÆÊÎöÊý°ÙÍòÊÖ»úÓû§ÐÅÏ¢


ýÌå6ÔÂ27ÈÕ³Æ £¬nyobÖ¸¿ØÈí¼þ¹«Ë¾TeleSignÍøÂçºÍ³öÊÛÊý°ÙÍòÊÖ»úÓû§µÄÐÅÏ¢ ¡£nyobÊǰµØÀûµÄÒ»¸öÊý×Ö°æȨ×éÖ¯ £¬¸ÃͶËßÕë¶ÔBICS¡¢TeleSignºÍProximus £¬ÆäÖÐBICSÊDZÈÀûʱµÄͨѶ·þÎñ £¬TeleSignÊÇÃÀ¹úµÄÈí¼þ¹«Ë¾ £¬ProximusÊǶþÕßµÄĸ¹«Ë¾ ¡£nyob³Æ £¬µç»°ÌṩÉ̻ὫÊý¾Ýת·¢¸øBICS £¬BICS½«Æäת·¢¸øTeleSign ¡£TeleSign»áÌìÉúÓйØÓû§µÄÐÅÍÐÆÀ·Ö £¬²¢½«µç»°Êý¾Ý³öÊÛ¸øMicrosoftºÍTikTokÆ·¼¶Èý·½ £¬¶øÎÞÐèÈκÎÈËÖªÇé»òÔÞ³É ¡£ÕⳡËßËÏ×îÖÕ¿ÉÄܵ¼ÖÂÖØ´óµÄËðʧ £¬±ÈÀûʱÊý¾Ý±£»¤¾Ö¿ÉÒÔ¿ª³ö×î¸ßÔ¼2.5ÒÚÃÀÔª£¨ProximusÈ«ÇòÓªÒµ¶îµÄ4%£©µÄ·£¿î ¡£


https://www.malwarebytes.com/blog/news/2023/06/software-company-accused-of-illegally-profiling-millions-of-mobile-phone-users


5¡¢²¿·Ö±±ÃÀÓû§»á¼ûÍøÒ³°æOutlookʱ·ºÆð500 error


6ÔÂ27ÈÕ±¨µÀ³Æ £¬Î¢Èí³Æ²¿·Ö±±ÃÀµÄÓû§ÎÞ·¨Í¨¹ýOutlookÍøÒ³°æ»á¼ûÆäExchange OnlineÓÊÏä ¡£ËäȻ΢ÈíÌåÏÖ¸ÃÎÊÌâ½öÓ°Ïì±±ÃÀµØÇø £¬µ«ÓÐÓû§±¨¸æÒ²¿ÉÄÜÓ°ÏìÁËÄÏÃÀÖÞ£¨°ÍÎ÷¡¢ÖÇÀû¡¢¶àÃ×Äá¼ÓºÍ¸çÂ×±ÈÑÇ£© ¡£ÊÜÓ°ÏìµÄÓû§ÔÚ»á¼ûÍøÒ³°æOutlookʱ¿ÉÄÜ»áÓöµ½·ºÆð500 error ¡£ÔÚÖÐÖ¹×îÏÈÆßСʱºó £¬Î¢ÈíÓÚ6ÔÂ27ÈÕ16:29 EDTÌåÏÖ £¬ ÊÜÓ°ÏìÓû§µÄOutlookÒѾ­»Ö¸´ÔÚÏß ¡£6Ô³õ £¬Î¢ÈíµÄAzure¡¢Outlook.comºÍOneDriveÔøÔâµ½DDoS¹¥»÷ £¬·þÎñÔÝʱÖÐÖ¹ ¡£


https://www.bleepingcomputer.com/news/microsoft/outlook-for-the-web-outage-impacts-users-across-america/


6¡¢FortiGuardÐû²¼ThirdEye InfostealerµÄÆÊÎö±¨¸æ


6ÔÂ27ÈÕ £¬FortiGuardÐû²¼Á˹ØÓÚThirdEye InfostealerµÄÆÊÎö±¨¸æ ¡£Ñо¿Ö°Ô±½üÆÚ·¢Ã÷ÁËһЩ¿ÉÒɵÄÎļþ £¬ÆÊÎö·¢Ã÷ÊÇÒ»ÖÖеÄÐÅÏ¢ÇÔÈ¡³ÌÐò £¬²¢½«ÆäÃüÃûΪThirdEye ¡£ThirdEyeµÄ¹¦Ð§Ïà¶Ô¼òÆÓ £¬ËüÍøÂçÄ¿µÄµÄϵͳÐÅÏ¢ £¬Ã¶¾ÙÎļþºÍÎļþ¼Ð¡¢ÕýÔÚÔËÐеÄÀú³ÌÒÔ¼°ÍøÂçÐÅÏ¢ ¡£Ñо¿Ö°Ô±³Æ £¬¸Ã¶ñÒâÈí¼þÍøÂçµÄÐÅÏ¢¹ØÓÚÏàʶºÍËõСĿµÄ¹æÄ£ºÜÓмÛÖµ £¬¶ø±»ThirdEye¹¥»÷µÄÄ¿µÄ¿ÉÄÜ»á³ÉΪδÀ´ÍøÂç¹¥»÷µÄ¹¤¾ß ¡£ÓÉÓÚ´ó´ó¶¼ThirdEye±äÌåÌá½»¸ø¶íÂÞ˹µÄ¹«¹²É¨Ãè·þÎñ £¬×îбäÌåµÄÎļþÃûÒ²ÊǶíÓïµÄ £¬Òò´ËËü¿ÉÄÜÕë¶Ô¶íÂÞ˹µÄ×éÖ¯ ¡£


https://www.fortinet.com/blog/threat-research/new-fast-developing-thirdeye-infostealer-pries-open-system-information