ÄÜÔ´ÐÐÒµ³Ð°üÉÌENGlobalÔâÀÕË÷Èí¼þ¹¥»÷£¬ITϵͳ»á¼ûÊÜÏÞ

Ðû²¼Ê±¼ä 2024-12-04

1. ÄÜÔ´ÐÐÒµ³Ð°üÉÌENGlobalÔâÀÕË÷Èí¼þ¹¥»÷£¬ITϵͳ»á¼ûÊÜÏÞ


12ÔÂ3ÈÕ£¬ENGlobal CorporationÊÇÒ»¼ÒÔÚÄÜÔ´ÐÐÒµÉè¼ÆºÍÖÆ×÷×Ô¶¯¿ØÖÆϵͳµÄÖ÷Òª³Ð°üÉÌ£¬¿ËÈÕ֤ʵÆäÕýÃæÁÙÀÕË÷Èí¼þ¹¥»÷£¬¸Ã¹¥»÷×è°­ÁËÆäÕý³£ÔËÓª¡£¸Ã¹«Ë¾ÓÚ11ÔÂ25ÈÕ·¢Ã÷ÕâÒ»¹¥»÷£¬²¢ËæºóÏòÃÀ¹ú֤ȯÉúÒâίԱ»áÌá½»ÁËÏà¹Ø±¨¸æ¡£¾Ý³Æ£¬Ò»¸öÍþвÐÐΪÕß²»·¨»á¼ûÁ˹«Ë¾µÄÐÅÏ¢ÊÖÒÕϵͳ£¬²¢¼ÓÃÜÁ˲¿·ÖÊý¾ÝÎļþ£¬µ¼ÖÂENGlobalÏÞÖÆÁËÔ±¹¤¶ÔITϵͳµÄ»á¼û£¬½öÏÞÓÚÐëÒªµÄÓªÒµÔËÓª¡£ÏÖÔÚ£¬¹«Ë¾ÕýÔÚ½ÓÄɶàÏî²½·¥½â¾öÎÊÌ⣬°üÀ¨Æô¶¯ÄÚ²¿ÊÓ²ìºÍÔ¼ÇëÍⲿÍøÂçÇ徲ר¼Ò£¬µ«ÖÜÈ«»Ö¸´ITϵͳ»á¼ûȨÏÞµÄʱ¼äÉв»ÇåÎú£¬ÇÒÉÐÎÞ·¨È·¶¨ÕâÒ»ÊÂÎñÊÇ·ñ»á¶Ô¹«Ë¾²ÆÎñÒµ¼¨±¬·¢ÖØ´óÓ°Ïì¡£ÖµµÃ×¢ÖصÄÊÇ£¬ENGlobalÔø±¨¸æÉϸö¼¾¶ÈÊÕÈë¿¿½ü600ÍòÃÀÔª£¬½ñÄêÇ°¾Å¸öÔÂÊÕÈëΪ1840ÍòÃÀÔª£¬ÇҸù«Ë¾×¨ÃÅΪÃÀ¹ú¹ú·À¹¤ÒµÌṩ½»Ô¿³××Ô¶¯»¯ºÍÒDZíϵͳ¡£ÀàËÆÉæ¼°ENGlobalºÍ֮ǰ½­É­×ԿصÄÀÕË÷Èí¼þ¹¥»÷¿ÉÄÜ»áй¶ÃÀ¹úÕþ¸®ÉèÊ©µÄÃô¸ÐÎļþ¡¢ÌõÔ¼ºÍÍýÏ룬Òý·¢ÁìÍÁÇå¾²²¿¹ÙÔ±µÄСÐÄ¡£


https://therecord.media/energy-industry-contractor-ransomware-disruption


2. µ¤Âó×î´óÍøÂçÌṩÉÌTDC NetÈí¼þ¸üÐÂÒý·¢´ó¹æÄ£µçÐÅÖÐÖ¹


11ÔÂ28ÈÕ£¬µ¤Âó×î´óµÄÍøÂçÌṩÉÌTDC NetÔÚ11ÔÂ27ÈÕÔâÓö´ó¹æÄ£µçÐÅÖÐÖ¹£¬Ôµ¹ÊÔ­Óɹé×ïÓÚ×ÅʵʩµÄÈí¼þ¸üС£´Ë´ÎÖÐÖ¹µ¼ÖÂÊýǧÃû¿Í»§ÎÞ·¨²¦´òµç»°£¬°üÀ¨½ôÆÈ·þÎñµç»°112£¬¸ø¿Í»§´øÀ´¼«´óδ±ã¡£¾ÝABCÐÂÎű¨µÀ£¬TDC Net²»ÒÔΪ´Ë´ÎÖÐÖ¹ÊÇÓÉÍøÂç¹¥»÷ÒýÆðµÄ¡£´Ë´ÎÊÂÎñ»¹µ¼ÖÂÖÁÉÙÒ»¼ÒÒ½Ôº±»ÆÈïÔÌ­·ÇÒªº¦Ò½ÁÆ·þÎñ£¬Çå¾²²¿·ÖÒ²ÔÚ½ÖÉÏѲÂßÒÔÑ°ÕÒÐèÒª×ÊÖúµÄÈË¡£TDC NetÒѽÓÄɲ½·¥ÐÞ¸´ÎÊÌ⣬ÔÊÐí¿Í»§²¦´òµç»°£¬µ«ÉùÒôÖÊÁ¿ÓÐËùϽµ¡£ÔËÓªÉ̽¨Òé¿Í»§ÔÚ²¦´ò112֮ǰÏÈÈ¡³öSIM¿¨¡£TDC NetÌṩÒƶ¯¡¢¹âÏ˺ÍÍ­Ïß·þÎñ£¬ÓÉTDC GroupÓÚ2019Ä꽨É裬ÆäÀúÊ·¿ÉÒÔ×·Ëݵ½1879Ä꣬ÆäʱÑÇÀúɽ´ó¡¤¸ñÀ׶òÄ·¡¤±´¶ûµÄ±´¶ûµç»°¹«Ë¾ÔÚµ¤Âó¿ªÉèÁË·Ö¹«Ë¾£¬1881ÄêÔڸ籾¹þ¸ù¿ªÉèÁ˵ÚÒ»¼Òµç»°½»Á÷»ú¡£


https://www.datacenterdynamics.com/en/news/danish-telco-tdc-net-suffers-telecoms-outage-impacts-emergency-calls/


3. ˹ÍÐÀû¼¯ÍÅÔÚÔâÊÜÀÕË÷Èí¼þ¹¥»÷ºóÔÚÃÀ¹úÉêÇëÐÝÒµ


12ÔÂ3ÈÕ£¬Ë¹ÍÐÀû¼¯ÍÅÃÀ¹ú¹«Ë¾½üÆÚÉêÇëÁËÐÝÒµ£¬ÕâÒ»¾öÒéÊÇÔÚÂÄÀúÁËһϵÁÐÖØ´ó¹¥»÷Ö®ºó×ö³öµÄ¡£8Ô·Ý£¬¸Ã¼¯ÍÅÔâÊÜÁËÀÕË÷Èí¼þ¹¥»÷£¬µ¼ÖÂÆäITϵͳ£¬°üÀ¨ÆóÒµ×ÊÔ´ÍýÏëƽ̨£¬ÔâÊÜÑÏÖØÆÆËð£¬ÆÈʹÕû¸ö¼¯ÍÅתΪÊÖ¶¯²Ù×÷£¬Ó°ÏìÁË°üÀ¨»á¼ÆÔÚÄÚµÄÒªº¦Á÷³Ì£¬Ô¤¼ÆÒªµ½2025ÄêÍ·²Å»ªÖÜÈ«»Ö¸´¡£ÕâÒ»ÊÂÎñ»¹µ¼ÖÂ˹ÍÐÀûÃÀ¹ú×Ó¹«Ë¾ÎÞ·¨Ïò´û·½Ìṩ²ÆÎñ±¨¸æ£¬±»´û·½Ö¸¿ØÍÏÇ·ÁË7800ÍòÃÀÔªµÄÕ®Îñ¡£¶øÔÚ7Ô·Ý£¬Ë¹ÍÐÀû¼¯ÍÅÔÚ¶íÂÞ˹µÄÁ½¼ÒÄð¾Æ³§±»Ã»ÊÕ£¬Ôµ¹ÊÔ­ÓÉÊǸü¯Íż°ÆäÊ×´´ÈËÓÈÀл·òÀÕ±»Ö¸¶¨Îª¡°¼«¶Ë·Ö×Ó¡±£¬ÕâÓëËûÃÇÔÚÎÚ¿ËÀ¼Õ½Õùʱ´úΪÎÚ¿ËÀ¼ÔÖÀ迪չµÄÈËÐÔÖ÷ÒåÔ®ÖúÊÂÇéºÍÏà¹ØÓªÏúÔ˶¯ÓйØ¡£±ðµÄ£¬Ë¹ÍÐÀû¼¯ÍÅ»¹Óë¶íÂÞ˹¹úÓÐÆóÒµ¾Í·üÌؼÓÉ̱êȨÕö¿ªÁ˳¤´ï23ÄêµÄ·¨Í¥¶·Õù£¬ºÄ×ÊÊýÍòÍòÃÀÔª¡£¹«Ë¾Ê×´´ÈËл·òÀÕÒ²ÒòÆ·ÆÀÆÕ¾©ÕþȨ¶ø±»ÆÈÌÓÀë¶íÂÞ˹£¬²¢ÔÚÈðÊ¿»ñµÃºÇ»¤ºÍÓ¢¹ú¹«ÃñÉí·Ý¡£ÕâЩÊÂÎñÅäºÏµ¼ÖÂÁË˹ÍÐÀû¼¯ÍÅÃÀ¹ú¹«Ë¾µÄÐÝÒµÉêÇë¡£


https://www.bleepingcomputer.com/news/security/vodka-maker-stoli-files-for-bankruptcy-in-us-after-ransomware-attack/


4. CloudflareÓòÃûÔâÀÄÓãºÍøÂç´¹ÂÚÓë¶ñÒâÔ˶¯¼¤Ôö


12ÔÂ3ÈÕ£¬CloudflareµÄ¡°pages.dev¡±ºÍ¡°workers.dev¡±ÓòÃûÒòÆäÆ·ÅÆÐÅÓþ¡¢·þÎñ¿É¿¿ÐԺ͵ÍʹÓñ¾Ç®£¬ÕýÔ½À´Ô½¶àµØ±»ÍøÂç·¸·¨·Ö×ÓÀÄÓÃÓÚÍøÂç´¹ÂÚºÍÆäËû¶ñÒâÔ˶¯¡£¾ÝÍøÂçÇå¾²¹«Ë¾Fortra±¨¸æ£¬Óë2023ÄêÏà±È£¬ÕâЩÓòÃûµÄÀÄÓÃÂÊÉÏÉýÁË100%ÖÁ250%¡£Cloudflare Pages×÷Ϊǰ¶Ë¿ª·¢Ö°Ô±Æ½Ì¨£¬±»ÓÃÓÚÍйÜÖÐÐÄÍøÂç´¹ÂÚÒ³Ã棬½«Êܺ¦ÕßÖض¨Ïòµ½¶ñÒâÍøÕ¾£¬Èçð³äµÄMicrosoft Office365µÇ¼ҳÃæ¡£FortraÖ¸³ö£¬Õë¶ÔCloudflare PagesµÄÍøÂç´¹ÂÚ¹¥»÷ÔöÌíÁË198%£¬Ô¤¼Æµ½Äêµ×¹¥»÷×ÜÊý½«Áè¼Ý1600Æð¡£Í¬Ê±£¬Cloudflare WorkersÎÞ·þÎñÆ÷ÅÌËãƽ̨Ҳ±»ÀÄÓ㬰üÀ¨¾ÙÐÐDDoS¹¥»÷¡¢°²ÅÅÍøÂç´¹ÂÚÍøÕ¾¡¢×¢ÈëÓк¦¾ç±¾ºÍ±©Á¦ÆƽâÃÜÂëµÈ¡£Fortra±¨¸æ³Æ£¬Õë¶ÔCloudflare WorkersµÄÍøÂç´¹ÂÚ¹¥»÷¼¤Ôö104%£¬Ô¤¼Æµ½Äêµ××ÜÊý½«µÖ´ï½ü6000Æð¡£Óû§Ó¦ÑéÖ¤URLµÄÕæʵÐÔ²¢¼¤»îË«ÒòËØÉí·ÝÑéÖ¤µÈÇå¾²²½·¥£¬ÒÔÌá·ÀÕâЩÀÄÓÃÐÐΪ¡£


https://www.bleepingcomputer.com/news/security/cloudflares-developer-domains-increasingly-abused-by-threat-actors/


5. WhatsUp GoldÑÏÖØÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¼±Ðè¸üÐÂÇå¾²²¹¶¡


12ÔÂ3ÈÕ£¬Progress WhatsUp Gold±»·¢Ã÷±£´æÒ»¸ö±àºÅΪCVE-2024-8785µÄÑÏÖØÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¸ÃÎó²îÓÉTenableÔÚ2024Äê8ÔÂÖÐÑ®·¢Ã÷£¬CVSS v3.1ÆÀ·Ö¸ß´ï9.8¡£Îó²î±£´æÓÚNmAPI.exeÀú³ÌÖУ¬ÓÉÓÚ´«ÈëÊý¾ÝÑé֤ȱ·¦£¬¹¥»÷Õß¿É·¢ËÍÌØÖÆÇëÇóÐ޸ĻòÁýÕÖWindows×¢²á±íÏ½ø¶ø¿ØÖÆWhatsUp GoldµÄÉèÖÃÎļþ¶ÁȡλÖ᣹¥»÷Õß¿Éͨ¹ýnetTcpBindingŲÓÃUpdateFailoverRegistryValues²Ù×÷£¬¸ü¸Ä×¢²á±íÖµ»ò½¨ÉèÐÂÖµ£¬Ê¹·þÎñÖØÆôʱ´ÓÔ¶³Ì¹²Ïí¶ÁÈ¡ÉèÖÃÎļþ£¬Ö´ÐÐí§ÒâÔ¶³Ì¿ÉÖ´ÐÐÎļþ¡£¸ÃÎó²îÎÞÐèÉí·ÝÑéÖ¤£¬ÇÒNmAPI.exe·þÎñ¿Éͨ¹ýÍøÂç»á¼û£¬Î£º¦¼«´ó¡£Progress SoftwareÓÚ9ÔÂ24ÈÕÐû²¼ÁË°üÀ¨ÐÞ¸´´ËÎó²îÔÚÄÚµÄÇå¾²¸üУ¬½¨ÒéϵͳÖÎÀíÔ±¾¡¿ìÉý¼¶µ½°æ±¾24.0.1¡£½üÆÚ£¬WhatsUp GoldÒѶà´Î³ÉΪºÚ¿Í¹¥»÷Ä¿µÄ£¬Ê¹ÓùûÕæÎó²î»ñÈ¡ÆðÔ´»á¼ûȨÏÞ»ò½ÓÊÜÖÎÀíÔ±ÕÊ»§£¬Òò´ËʵʱӦÓÃÇå¾²¸üÐÂÖÁ¹ØÖ÷Òª¡£


https://www.bleepingcomputer.com/news/security/exploit-released-for-critical-whatsup-gold-rce-flaw-patch-now/


6. µÂÖ´·¨²¿·Öµ·»ÙCrimenetworkÍøÂç·¸·¨Êг¡£¬¾Ð²¶ÖÎÀíÔ±


12ÔÂ3ÈÕ£¬µÂ¹úÖ´·¨²¿·Öµ·»ÙÁ˵ÂÓïµØÇø×î´óµÄÍøÂç·¸·¨Êг¡Crimenetwork£¬²¢¾Ð²¶ÁËÆäÖÎÀíÔ±£¬×ïÃûÊÇЭÖúÏúÊÛ¶¾Æ·¡¢ÇÔÈ¡Êý¾ÝºÍÌṩ²»·¨·þÎñ¡£¸ÃÊг¡½¨ÉèÓÚ2012Ä꣬¹Ø±ÕʱӵÓÐÁè¼Ý100Ãû×¢²áÂô¼ÒºÍ10ÍòÓû§£¬ÆäÖдó´ó¶¼Î»ÓÚµÂÓï¹ú¼Ò¡£Óû§¿ÉÒÔʹÓñÈÌرһòÄÑÒÔ×·×ٵļÓÃÜÇ®±ÒÃÅÂÞ±ÒÖ§¸¶ÉÌÆ·ºÍ·þÎñ£¬ÉúÒâÁ¿ÖØ´ó£¬Æ½Ì¨´ÓÖÐ׬ȡÌá³É¡¢Ô¶©ÔķѺ͹ã¸æÊÕÈë¡£±»²¶µÄÖÎÀíÔ±ÊÇÒ»Ãû29ËêµÄÏÓÒÉÈË£¬ÃæÁÙ¶àÏîÖ¸¿Ø¡£±ðµÄ£¬µÂ¹úÖ´·¨²¿·Ö»¹ÖÒÑԳƣ¬ÒÑ»ñµÃÓйظÃÍøÂç·¸·¨Æ½Ì¨×¢²á»áÔ±µÄÐÅÏ¢£¬Î´À´¿ÉÄÜ»á¾Ð²¶¸ü¶àÏÓÒÉÈË¡£´Ë´ÎÐж¯Êǵ¹ú½üÆÚ·´ÍøÂç·¸·¨Ðж¯µÄÒ»²¿·Ö£¬»¹Éæ¼°ÆäËûÖøÃû°¸¼þ£¬Èç²é·âDstat.cc DDoSÉó²éƽ̨ºÍ²é»ñ47¼Ò¼ÓÃÜÇ®±ÒÉúÒâ·þÎñ»ú¹¹¡£


https://www.bleepingcomputer.com/news/security/police-seizes-largest-german-online-crime-marketplace-arrests-admin/