Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄСÎÒ˽¼ÒÐÅÏ¢±»¹ûÕæ

Ðû²¼Ê±¼ä 2024-01-11

1¡¢Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄСÎÒ˽¼ÒÐÅÏ¢±»¹ûÕæ


¾ÝýÌå1ÔÂ9ÈÕ±¨µÀ£¬Ä³ºÚ¿Í×î½ü¹ûÕæÁËÒ»¸öÊý¾Ý¿â£¬Éù³Æ¸ÃÊý¾Ý¿âÓëHathway£¨ÒÔÇ°³ÆΪ BITV Cable Networks£¬ÕýʽÃû³ÆΪ Hathway Cable & Datacom Ltd£©Óйء£Hathway ÊÇÓ¡¶ÈÁìÏȵĻ¥ÁªÍø·þÎñÌṩÉÌ (ISP) ºÍÓÐÏßµçÊÓ·þÎñÔËÓªÉÌ¡£ºÚ¿ÍÔÚÊý¾Ý¿âй¶ÂÛ̳ÉϽÒÏþµÄÌû×ÓÖÐ͸¶£¬Êý¾Ýй¶ÊÂÎñ±¬·¢ÔÚ 2023 Äê 12 Ô£¬ÆäʱËûÃÇʹÓà Laravel ¿ò¼ÜÓ¦ÓóÌÐò£¨ÄÚÈÝÖÎÀíϵͳ£©Öб£´æµÄÇå¾²Îó²îÀÖ³ÉÍ»ÆÆÁË Hathway µÄ·ÀÓù²½·¥(CMS)¡£¶Ô鶵ÄÊý¾ÝÆÊÎöÏÔʾ£¬Óû§ÊýĿΪ 3500 Íò¡£±ðµÄ£¬ÕâЩÕÊ»§µÄºÜ´óÒ»²¿·ÖËƺõÊÇÐéÄâÕÊ»§»òÖظ´ÕÊ»§¡£È¥µôÕâЩÖظ´ÕË»§ºó£¬ÊÜÓ°ÏìÕË»§µÄÏÖʵÊýÄ¿ïÔÌ­ÖÁ½ü 400 Íò¸ö£¬Ô¶µÍÓÚ×î³õÉù³ÆµÄ 4100 Íò¸öÕË»§¡£¸ÃºÚ¿ÍΪDZÔÚÊܺ¦Õß¿ª·¢ÁË°µÍøËÑË÷ÒýÇæ¡£¸Ã¹¤¾ßÔÊÐíËûÃÇËÑË÷ËûÃǵĵç×ÓÓʼþµØµãºÍµç»°ºÅÂ룬ÒÔ¼ì²éËûÃǵÄÊý¾ÝÊÇ·ñй¶¡£


2¡¢°ÍÀ­¹ç×î´óÔËÓªÉÌTigoÔâµ½Black HuntµÄÀÕË÷¹¥»÷


1ÔÂ9ÈÕ£¬Tigo Business ÔÚÉÏÖÜÔâÊÜÍøÂç¹¥»÷£¬Ó°Ïì¸Ã¹«Ë¾ÓªÒµ²¿·ÖµÄÔƺÍÍйܷþÎñºó£¬°ÍÀ­¹ç¾ü·½¾Í Black Hunt ÀÕË÷Èí¼þ¹¥»÷·¢³öÖÒÑÔ¡£Tigo ÊÇ°ÍÀ­¹ç×î´óµÄÒƶ¯ÔËÓªÉÌ£¬Æä Tigo ÓªÒµ²¿·ÖΪÆóÒµÌṩÊý×Ö½â¾ö¼Æ»®£¬°üÀ¨ÍøÂçÇå¾²×Éѯ¡¢ÔƺÍÊý¾ÝÖÐÐÄÍйÜÒÔ¼°¹ãÓòÍø (WAN) ½â¾ö¼Æ»®¡£Tigo Business µÄÒ»·ÝÉùÃ÷ÖÐдµÀ¡£ÍøÉϱ¨µÀµÄ´ó²¿·ÖÐÂÎŶ¼½û¾øÈ·£¬´Ë´Î¹¥»÷²¢Î´Ó°ÏìÆ以ÁªÍø¡¢µç»°·þÎñºÍ Tigo Money µç×ÓÇ®°ü¡£ËäÈ» Tigo ûÓÐÌṩÓйØÍøÂç¹¥»÷µÄÈκÎϸ½Ú£¬µ«É罻ýÌåÉϵĴó×Ú±¨µÀÅú×¢ËûÃÇÔâÊÜÁË Black Hunt ÀÕË÷Èí¼þµÄ¹¥»÷¡£Áè¼Ý 330 ̨·þÎñÆ÷±»¼ÓÃÜ£¬±¸·ÝÊý¾ÝÔÚ¹¥»÷ʱ´úÔâµ½ÆÆËð¡£ËäÈ»ÀÕË÷×ÖÌõÉù³ÆºÚ¿ÍÔÚ¹¥»÷Àú³ÌÖÐÇÔÈ¡Êý¾Ý£¬µ«ÏÖÔÚ»¹Ã»ÓÐÈκÎÒÑÖªµÄÀÕË÷Èí¼þ鶱»µÁÊý¾ÝµÄʵÀý¡£


3¡¢ÍÁ¶úÆäºÚ¿Íͨ¹ýMSSQL·þÎñÆ÷Èö²¥MIMICÀÕË÷Èí¼þ


1ÔÂ10ÈÕýÌ屨µÀ£¬Securonix ÍþвÑо¿ÍŶÓÒ»Ö±ÔÚ¼à¿ØÕýÔÚ¾ÙÐеÄÍþвÔ˶¯ RE#TURGENCE£¬¸ÃÔ˶¯Éæ¼°Ãé×¼ºÍʹÓà MSSQL Êý¾Ý¿â·þÎñÆ÷À´»ñÈ¡³õʼ»á¼ûȨÏÞ¡£ÍþвÐÐΪÕßËƺõÒÔÃÀ¹ú¡¢Å·Ã˺ÍÀ­¶¡ÃÀÖÞ¹ú¼ÒΪĿµÄ£¬²¢ÇÒ¾ßÓо­¼ÃÄîÍ·¡£Ò»Ñùƽ³£¹¥»÷Ô˶¯ÒªÃ´³öÊÛ¶ÔÊÜѬȾÖ÷»úµÄ¡°»á¼ûȨ¡±£¬ÒªÃ´×îÖÕ½»¸¶ÀÕË÷Èí¼þpayload¡£ÕâЩϸ½ÚÊǹ¥»÷ÕßÔÚÒ»´ÎÖØ´ó OPSEC£¨²Ù×÷Çå¾²£©¹ÊÕÏʱ´ú·¢Ã÷µÄ£¬´Ó×î³õ»á¼û MIMIC ÀÕË÷Èí¼þµ½ÔÚÊܺ¦ÓòÉÏ°²ÅÅ MIMIC ÀÕË÷Èí¼þ£¬¸ÃÊÂÎñµÄʱ¼äԼĪΪһ¸öÔ¡£¸ÃÔ˶¯µÄ³õʼ»á¼û²¿·ÖÓëÈ¥ÄêдµÄDB#JAMMERÀàËÆ£¬Ò²É漰ͨ¹ý±©Á¦ÆƽâÖÎÀíÃÜÂë¾ÙÐÐÖ±½Ó MSSQL »á¼û¡£


4¡¢Water Curupiraͨ¹ý´¹ÂÚÔ˶¯·Ö·¢PikaBot Loader


1ÔÂ9ÈÕ£¬Pikabot ÊÇÒ»ÖÖ¼ÓÔسÌÐò¶ñÒâÈí¼þ£¬ÎÒÃÇÔÚ 2023 ÄêµÚÒ»¼¾¶ÈÔÚÈëÇÖ¼¯ Water Curupira ÏÂ×·×Ùµ½µÄÍþв¼ÓÈëÕßÔÚÀ¬»øÓʼþÔ˶¯ÖÐÆð¾¢Ê¹ÓøöñÒâÈí¼þ£¬ËæºóÔÚ 6 ÔÂβ·ºÆðÒ»´ÎÖÐÖ¹£¬Ò»Ö±Ò»Á¬µ½ 2023 Äê 9 Ô³õ. ÆäËûÑо¿Ö°Ô±´ËÇ°ÒÑ×¢Öص½ËüÓëQakbotºÜÊÇÏàËÆ£¬ºóÕßÓÚ2023 Äê 8 Ô±»Ö´·¨²¿·ÖÈ¡µÞ¡£2023 Äê×îºóÒ»¸ö¼¾¶È£¬Óë Pikabot Ïà¹ØµÄÍøÂç´¹ÂÚÔ˶¯ÊýÄ¿ÓÐËùÔöÌí£¬ÓëÈ¡µÞʱ¼äÒ»ÖÂQakbot £¬Pikabot µÄ¹¥»÷Õß¿ªÕ¹ÍøÂç´¹ÂÚÔ˶¯£¬Í¨¹ýÆäÁ½¸ö×é¼þ£¨¼ÓÔسÌÐòºÍ½¹µãÄ£¿é£©Ãé×¼Êܺ¦Õߣ¬ÕâÁ½¸ö×é¼þÔÊÐíδ¾­ÊÚȨµÄÔ¶³Ì»á¼û£¬²¢ÔÊÐíͨ¹ýÓëÆäÏÂÁîºÍ¿ØÖÆ (C&C) ·þÎñÆ÷½¨ÉèµÄÅþÁ¬Ö´ÐÐí§ÒâÏÂÁî¡£Pikabot ÊÇÒ»ÖÖÖØ´óµÄ¶à½×¶Î¶ñÒâÈí¼þ£¬ÔÚͳһÎļþÖоßÓмÓÔسÌÐòºÍ½¹µãÄ£¿é£¬ÒÔ¼°½âÃÜµÄ shellcode£¬¿É´ÓÆä×ÊÔ´ÖнâÃÜÁíÒ»¸ö DLL Îļþ¡£


5¡¢IBMÐû²¼¹ØÓÚ¶Ô2024ÄêÍøÂçÇå¾²Ç÷ÊƵÄÕ¹Íû±¨¸æ


´ÓÌìÏ´óʵ½¾­¼Ã£¬20234ÄêÊÇÄÑÒÔÕ¹ÍûµÄÒ»Äê¡£ÍøÂçÇå¾²²¢Ã»ÓÐÆ«ÀëÕâ¸öÖ÷Ì⣬´øÀ´ÁËһЩÒâÏë²»µ½µÄת±ä¡£2024 Äê¹ØÓÚÍøÂç·¸·¨·Ö×ÓÀ´Ëµ½«ÊÇæµµÄÒ»Ä꣬ÓÉÓÚÒ»Á¬µÄµØÔµÕþÖÎÖ÷ҪʱÊÆ¡¢ÃÀ¹úºÍÅ·Ã˵ÄÖØ´óÑ¡¾ÙÒÔ¼°ÌìÏÂÉÏ×î´óµÄÌåÓýÈüÊ£¨°ÍÀè°ÂÔ˻ᣩ¶¼ÔÚ¼¸¸öÔÂÄÚ¾ÙÐС£µ½ÏÖÔÚΪֹ£¬ÍøÂç·¸·¨·Ö×Ó´Ó¶àÄêÀ´Ð¹Â¶µÄÊýÊ®ÒÚÊý¾ÝÖÐÍøÂçµÄÊý¾Ý׬ǮµÄ·½·¨ºÜÊÇÓÐÏÞ¡£°µÍøÉÏÓÐÊýÒÔ°ÙÍò¼ÆµÄÓÐÓÃÆóҵƾ֤£¬²¢ÇÒÊýÄ¿»¹ÔÚÒ»Á¬ÔöÌí£¬¹¥»÷ÕßÕýÔÚ½«Éí·ÝÎäÆ÷»¯£¬½«ÆäÊÓΪ»á¼ûÌØȨÕÊ»§µÄÉñÃØÊֶΡ£ÀÕË÷Èí¼þ¿ÉÄÜ»áÔÚ 2024 ÄêÃæÁÙË¥ÍË£¬ÓÉÓÚÔ½À´Ô½¶àµÄ¹ú¼ÒÔÊÐí²»Ö§¸¶Êê½ð£¬Ô½À´Ô½ÉÙµÄÆóÒµÇü·þÓÚ¼ÓÃÜϵͳµÄѹÁ¦¡ª¡ªÑ¡Ôñ½«×ʽðתÒƵ½ÖØÐÞϵͳ¶ø²»ÊǽâÃÜϵͳ¡£


6¡¢Cisco TalosÐû²¼ÀÕË÷Èí¼þBabukµÄ±äÌåTortillaµÄ½âÃÜÆ÷


¾ÝýÌå1ÔÂ10ÈÕ±¨µÀ£¬Talos ÓÚ 2021 Äê 11 ÔÂÊ×´ÎÅû¶ÁËTortilla Ô˶¯£¬¹¥»÷ʹÓÃMicrosoft Exchange ·þÎñÆ÷ÖÐµÄ ProxyShell ȱÏÝÔÚÊܺ¦ÕßÇéÐÎÖÐͶ·ÅÀÕË÷Èí¼þ¡£Tortilla ÊÇÖÚ¶à ÀÕË÷Èí¼þ±äÌåÖ®Ò»£¬ÕâЩ±äÌåµÄÎļþ¼ÓÃܶñÒâÈí¼þ»ùÓÚй¶µÄ Babuk Ô´´úÂë¡£ÆäÖаüÀ¨ Rook¡¢Night Sky¡¢Pandora¡¢Nokoyawa¡¢Cheerscrypt¡¢AstraLocker 2.0¡¢ESXiArgs¡¢Rorschach¡¢RTM Locker ºÍ RA GroupµÈ¡£µÂ¹úÍøÂçÇå¾²¹«Ë¾Çå¾²Ñо¿ÊµÑéÊÒ (SRLabs) Ðû²¼ÁËÒ»¿îÃûΪBlack Basta Buster µÄ Black Basta ÀÕË÷Èí¼þ½âÃÜÆ÷£¬¸Ã½âÃÜÆ÷ʹÓüÓÃÜÎó²î²¿·Ö»òËùÓлָ´Îļþ¡£