Sumo LogicµÄAWSÕÊ»§Ôâµ½ÈëÇÖ½¨Òé¿Í»§ÖØÖÃAPIÃÜÔ¿
Ðû²¼Ê±¼ä 2023-11-101¡¢Sumo LogicµÄAWSÕÊ»§Ôâµ½ÈëÇÖ½¨Òé¿Í»§ÖØÖÃAPIÃÜÔ¿
¾ÝýÌå11ÔÂ8ÈÕ±¨µÀ£¬Çå¾²ºÍÊý¾ÝÆÊÎö¹«Ë¾Sumo Logic·¢Ã÷ÆäAWSÕÊ»§Ôâµ½ÈëÇÖ£¬½¨Òé¿Í»§ÖØÖÃAPIÃÜÔ¿¡£¸Ã¹«Ë¾ÌåÏÖ£¬ËûÃÇÓÚ11ÔÂ3ÈÕ·¢Ã÷¹¥»÷ÕßʹÓÃÇÔÈ¡µÄƾ֤»ñµÃÁËSumo Logic AWSÕË»§µÄ»á¼ûȨÏÞ£¬ÏÖÔÚ»¹Ã»Óз¢Ã÷ÆäÍøÂç»òϵͳÊܵ½Ó°Ï죬¿Í»§Êý¾ÝÒ²ÒѼÓÃÜ¡£ÎªÁËÓ¦¶Ô´ËÊ£¬¸Ã¹«Ë¾Ëø¶¨ÁËÊÜÓ°ÏìµÄ»ù´¡ÉèÊ©£¬²¢ÖØÖÃÁËÆä»ù´¡ÉèÊ©µÄËùÓпÉÄÜ̻¶µÄƾ֤¡£±ðµÄ£¬Sumo Logic½¨Òé¿Í»§ÖØÖÃÓÃÓÚ»á¼ûÆä·þÎñµÄƾ֤»òÓëSumo Logic¹²ÏíµÄÓÃÓÚ»á¼ûÆäËüϵͳµÄƾ֤¡£
https://securityaffairs.com/153882/security/sumo-logic-security-breach.html
2¡¢ChatGPT±¬·¢¹ÊÕÏå´»úÊýСʱ¸Ã¹«Ë¾µÄAPIÒ²Êܵ½Ó°Ïì
¾Ý11ÔÂ8ÈÕ±¨µÀ£¬OpenAIµÄChatGPTÒòÑÏÖصĹÊÕϹرգ¬ÖÐÖ¹»¹Ó°ÏìÁ˸ù«Ë¾µÄÓ¦ÓóÌÐò±à³Ì½Ó¿Ú(API)¡£ÊÜÓ°ÏìµÄ¿Í»§»á¿´µ½¡°ËƺõÍÉ»¯ÁË¡±µÄ¹ýʧÌáÐÑ£¬ÒÔ¼°ÅÌÎÊʱÏÔʾ¡°ÌìÉú»Ø¸´Ê±·ºÆð¹ýʧ¡±¡£11ÔÂ8ÈÕ11:05£¬OpenAIÌåÏÖÊÜÓ°ÏìµÄ·þÎñÒѻָ´ÉÏÏß¡£¾Ý11ÔÂ9ÈÕµÄ×îÐÂÐÂÎÅ£¬OpenAI֤ʵÖÜÈýµÄChatGPT¼°ÆäAPI±¬·¢µÄÖÐÖ¹ÊÇDDoS¹¥»÷µ¼Öµġ£Anonymous SudanÔÚTelegramÉÏÉù³Æ¶Ô´Ë´Î¹¥»÷ÈÏÕæ¡£
https://www.bleepingcomputer.com/news/technology/chatgpt-down-after-major-outage-impacting-openai-systems/
3¡¢¾©´ÉAVX͸¶ÀÕË÷¹¥»÷µ¼ÖÂ39000È˵ÄÐÅϢй¶
11ÔÂ9ÈÕ±¨µÀ³Æ£¬Kyocera AVX Components Corporation(KAVX)ÕýÔÚ·¢ËÍÀÕË÷¹¥»÷µ¼ÖµÄÊý¾Ý鶵Ä֪ͨ¡£Í¨ÖªÖÐÌåÏÖ£¬ËüÓÚ10ÔÂ10ÈÕ·¢Ã÷ºÚ¿ÍÔÚ2ÔÂ16ÈÕÖÁ3ÔÂ30ÈÕ»á¼ûÁËÆäϵͳ£¬µ¼Ö²¿·Öϵͳ±»¼ÓÃܺÍijЩ·þÎñÔÝʱÖÐÖ¹¡£KAVXÊӲ췢Ã÷39111È˵ÄÐÅϢй¶£¬²¢½«ÎªËûÃÇÌṩ12¸öԵݵÍø¼à¿ØºÍÃÜÂëй¶·þÎñ¡£LockBitÔøÉù³ÆÓÚ5ÔÂ26ÈÕÈëÇÖÁËKAVX£¬²¢¹ûÕæÁ˶à¸ö±»µÁÊý¾ÝÑù±¾£¬°üÀ¨»¤ÕÕɨÃè¡¢²ÆÎñÎļþºÍ±£ÃÜÐÒéµÈ¡£
https://www.bleepingcomputer.com/news/security/kyocera-avx-says-ransomware-attack-impacted-39-000-individuals/
4¡¢US RadiologyÒò2021ÄêµÄÀÕË÷¹¥»÷±»·£¿î45ÍòÃÀÔª
ýÌå11ÔÂ9Èճƣ¬ÒòδÐÞ¸´Îó²îµ¼ÖÂÀÕË÷¹¥»÷£¬US Radiology±»Å¦Ô¼AG·£¿î45ÍòÃÀÔª¡£¾ÝϤ£¬Ë¾·¨²¿³¤Ç¿µ÷Îó²îCVE-2021-20016Òѱ»ÀÕË÷ÍÅ»ï¶à´ÎʹÓá£US RadiologyÎÞ·¨×°Öù̼þ²¹¶¡ÓÉÓÚÆäÓ²¼þÒÑ´¦ÓÚEOL½×¶Î£¬²»ÔÙ±»Ö§³Ö¡£¸Ã¹«Ë¾ÍýÏëÓÚ2021Äê7ÔÂÌæ»»Ó²¼þ£¬µ«×îÖÕ¸ÃÏîÄ¿±»ÍƳ١£ÓÉÓÚÎó²îδ»ñµÃ½â¾ö£¬¸Ã¹«Ë¾ÓÚ2021Äê12ÔÂ8ÈÕÔâµ½ÀÕË÷¹¥»÷£¬µ¼Ö½ü20ÍòÃû»¼ÕßµÄÃô¸ÐÐÅϢй¶¡£³ýÁË·£¿îÍ⣬¸Ã¹«Ë¾»¹±ØÐèÉý¼¶ÆäITϵͳ¡¢Ô¼ÇëרÈËÖÎÀíÆäÊý¾ÝÇå¾²ÍýÏë¡¢¼ÓÃÜËùÓÐÃô¸ÐµÄ»¼ÕßÐÅÏ¢²¢¿ª·¢Éø͸²âÊÔÍýÏë¡£
https://therecord.media/new-york-attorney-general-fines-radiology-firm-after-ransomware-attack
5¡¢Group-IBÅû¶ÀÕË÷Èí¼þÔËÓªÍÅ»ïFarnetworkµÄÉÌҵģʽ
11ÔÂ9ÈÕ£¬Group-IB¶ÁËÀÕË÷Èí¼þÔËÓªÍÅ»ïFarnetworkµÄÉÌҵģʽ¡£FarnetworkÔÚ2019ÄêÖÁ2021Äê¼ä£¬×ÊÖúJSWORM¡¢Nefilim¡¢KarmaºÍNemty¾ÙÐжñÒâÈí¼þ¿ª·¢ºÍÔËÓªÖÎÀí£¬²¢ÔÚ2022Ä꽨ÉèÁËÀÕË÷Èí¼þ¼´·þÎñ(RaaS)Nokoyawa¡£2023Äê2Ô£¬farnetwork×îÏÈÕÐļNokoyawaµÄÁ¥ÊôÍŻËüÌṩÏֳɵĻá¼ûȨÏÞ¡£¹¥»÷Àֳɺó£¬Á¥ÊôÍÅ»ï»ñµÃ65%µÄÊê½ð£¬½©Ê¬ÍøÂçËùÓÐÕß»ñµÃ20%£¬ÀÕË÷Èí¼þËùÓÐÕß»ñµÃ15%¡£×èÖ¹½ñÄê10Ô£¬NokoyawaµÄÍøÕ¾×èÖ¹ÔËÓª£¬×ܹ²ÁгöÁË35¸ö±»¹¥»÷Ä¿µÄ¡£
https://www.group-ib.com/blog/farnetwork/
6¡¢Check PointÐû²¼10Ô·ÝÈ«ÇòÍþвָÊýµÄÆÊÎö±¨¸æ
11ÔÂ8ÈÕ£¬Check PointÐû²¼ÁË10Ô·ÝÈ«ÇòÍþвָÊýµÄÆÊÎö±¨¸æ¡£FormbookÊÇ10Ô·Ý×î³£¼ûµÄ¶ñÒâÈí¼þ£¬Ó°ÏìÁËÈ«Çò3%µÄʵÌ壬Æä´ÎÊÇNJRat£¨2%£©£¬´ÓµÚÁùλÉÏÉýÖÁµÚ¶þλ¡£½ÌÓýºÍÑо¿ÐÐÒµÈÔÈ»ÊÇÊܵ½¹¥»÷×îÑÏÖصÄÐÐÒµ£¬Æä´ÎÊÇͨѶÒÔ¼°¾üÕþÐÐÒµ¡£10Ô·Ý×î³£±»Ê¹ÓõÄÎó²îÊÇZyxel ZyWALLÏÂÁî×¢ÈëÎó²î(CVE-2023-28771)£¬Ó°ÏìÁËÈ«Çò42%µÄʵÌå¡£×î³£¼ûµÄÒƶ¯¶ñÒâÈí¼þÊÇAnubis£¬Æä´ÎÊÇAhMythºÍHiddad¡£
https://blog.checkpoint.com/security/october-2023s-most-wanted-malware-njrat-jumps-to-second-place-while-agenttesla-spreads-through-new-file-sharing-mal-spam-campaign/