ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵꣻ£»£»£»£»£»Î¢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò

Ðû²¼Ê±¼ä 2021-07-05

1.ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵê


1.jpg


ÈðµäÁ¬Ëø³¬ÊÐCoop³ÆÆäÔâµ½ÁËKaseya¹©Ó¦Á´¹¥»÷£¬ £¬£¬£¬£¬£¬£¬Êý°Ù¼ÒÃÅµê¹Ø±Õ¡£¡£¡£¡£¡£CoopµÄ½²»°ÈËÌåÏÖÆäÓÚÉÏÖÜÎåÍíÉÏ6µã30·Ö×óÓÒ·¢Ã÷ÓÐÉÙÊýÃŵ귺ÆðÎÊÌ⣬ £¬£¬£¬£¬£¬£¬µ«Ò»Ò¹Ö®ºóÆä´ó²¿·ÖÃŵ궼±»ÆÈ¹Ø±Õ£¬ £¬£¬£¬£¬£¬£¬°üÀ¨ÊÕÒøÌ¨ºÍ×ÔÖú½áÕËÔÚÄÚµÄÕû¸öÖ§¸¶ÏµÍ³¶¼ÖÐÖ¹ÁË¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬£¬£¬£¬CoopûÓÐʹÓÃKesayaÈí¼þ£¬ £¬£¬£¬£¬£¬£¬ÓÉÓÚËûÃǵÄÒ»¸öÈí¼þÌṩÉÌʹÓÃÁ˸ÃÈí¼þ¶øÊܵ½Ó°Ïì¡£¡£¡£¡£¡£Çå¾²¹«Ë¾HuntressLabs³Æ£¬ £¬£¬£¬£¬£¬£¬´Ë´Î¹¥»÷»î¶¯µÄÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬ £¬£¬£¬£¬£¬£¬ÖÁÉÙÓÐ200¼Ò×éÖ¯Êܵ½Ó°Ïì¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/119663/cyber-crime/coop-supermarket-kaseya-ransomware-attack.html


2.΢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò


2.jpg


΢Èíǰ³õ¼¶¹¤³ÌʦVolodymyr KvashukʹÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000ÍòÃÀÔª¡£¡£¡£¡£¡£ËûµÄÍŶӵÄÖ÷ҪĿµÄÊÇÄ£ÄâMicrosoftÔÚÏß¹ºÖÃÀ´·¢Ã÷¸¶¿îÎÊÌâ¡£¡£¡£¡£¡£ÕâЩÐéÄâÕÊ»§¿ÉÒÔ±»ÏµÍ³Ê¶±ð£¬ £¬£¬£¬£¬£¬£¬ÔÚÍøÕ¾¹ºÖù¤¾ßʱ²»»áÊÕµ½ÈκβúÆ·£¬ £¬£¬£¬£¬£¬£¬¿ÉÊǵ±¹ºÖÃXboxÀñÎ│£¬ £¬£¬£¬£¬£¬£¬½«»ñµÃÒ»¸öÍêÈ«ÓÐÓõÄ25λ´úÂë¡£¡£¡£¡£¡£Ëû²¢Î´½«¸ÃÎó²î֪ͨÆäÉÏ˾£¬ £¬£¬£¬£¬£¬£¬¶øÊÇʹÓÃÆä׬Ǯ¡£¡£¡£¡£¡£Ö®ºó£¬ £¬£¬£¬£¬£¬£¬Ëû×ܹ²Ê¹ÓøÃÎó²îÇÔÈ¡²¢³öÊÛÁËÁè¼Ý152000ÕÅXboxÀñÎ│£¬ £¬£¬£¬£¬£¬£¬¼ÛÖµ1010ÍòÃÀÔª¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/microsoft-engineer-stole-10m-by-selling-xbox-gift-cards-533416.shtml


3.Ñо¿Ö°Ô±Åû¶¶à¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤


3.jpg


Dr. WebÑо¿Ö°Ô±Åû¶ÁË9¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤¡£¡£¡£¡£¡£ÕâЩӦÓÃαװ³ÉÎÞº¦µÄÕÕÆ¬±à¼­¡¢ÓÅ»¯¡¢½¡ÉíºÍÕ¼ÐdzÌÐò£¬ £¬£¬£¬£¬£¬£¬À´ÓÕʹÊܺ¦ÕߵǼFacebookÕË»§£¬ £¬£¬£¬£¬£¬£¬²¢Ê¹ÓÃÒ»¶ÎJavaScript´úÂëÐ®ÖÆÊäÈëµÄƾ֤¡£¡£¡£¡£¡£ËäÈ»´Ë´Î»î¶¯ËƺõÊÇרÃÅÕë¶ÔFacebookÕÊ»§£¬ £¬£¬£¬£¬£¬£¬µ«Dr.WebÖÒÑԳƣ¬ £¬£¬£¬£¬£¬£¬ÕâÖÖ¹¥»÷Ò²¿ÉÒÔ¼ÓÔØÈÎºÎÆäËüÕýµ±ÍøÂçÆ½Ì¨µÄµÇÂ¼Ò³Ãæ£¬ £¬£¬£¬£¬£¬£¬À´ÇÔÈ¡ÆäËüЧÀ͵ĵǼÃûºÍÃÜÂë¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/07/android-apps-with-58-million-installs.html


4.ÃÀ¹ú°ü¹Ü¹«Ë¾AJG³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬£¬£¬£¬¿Í»§ÐÅϢй¶


4.jpg


ÃÀ¹úArthur J. Gallagher (AJG) ³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬£¬£¬£¬¿Í»§ÐÅϢй¶¡£¡£¡£¡£¡£AJGÊÇÃÀ¹úµÄÈ«Çò°ü¹Ü¾­¼ÍºÍΣº¦ÖÎÀí¹«Ë¾£¬ £¬£¬£¬£¬£¬£¬×÷ΪȫÇò×î´óµÄ°ü¹Ü¾­¼ÍÉÌÖ®Ò»£¬ £¬£¬£¬£¬£¬£¬ÓªÒµÆÕ±é49¸ö¹ú¼Ò/µØÇø¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ2020Äê6ÔÂ3ÈÕÖÁ2020Äê9ÔÂ26ÈÕʱ´ú£¬ £¬£¬£¬£¬£¬£¬ÆäÔÚ2020Äê9ÔÂ28ÈÕÅû¶¸ÃÊÂÎñ²¢³ÆÃ»ÓÐÊý¾Ýй¶¡£¡£¡£¡£¡£µ«ÔÚËæºóµÄÊӲ췢Ã÷£¬ £¬£¬£¬£¬£¬£¬7376È˵ÄÃô¸ÐÐÅϢй¶£¬ £¬£¬£¬£¬£¬£¬°üÀ¨Éç»áÇå¾²ºÅÂë»ò˰ºÅ¡¢¼ÝÕÕ¡¢»¤ÕÕ¡¢³öÉúÈÕÆÚ¡¢Óû§ÃûºÍÃÜÂë¡¢Ô±¹¤Ê¶ÓÖÃû¡¢²ÆÎñÕË»§»òÐÅÓÿ¨ÐÅÏ¢¡¢µç×ÓÊðÃû¡¢Ò½ÁÆÐÅÏ¢¡¢°ü¹ÜÐÅÏ¢ÒÔ¼°ÉúÎïʶ±ðÐÅÏ¢µÈ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-insurance-giant-ajg-reports-data-breach-after-ransomware-attack/


5.Unit 42Ðû²¼2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ


5.jpg


Unit 42Ðû²¼ÁË2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬ £¬£¬£¬£¬£¬£¬2Ôµ½4Ô¹²·ÖÅÉÁË4969¸öеÄCVE±àºÅ£¬ £¬£¬£¬£¬£¬£¬ÆäÖÐÑÏÖØµÄÎó²îΪ598¸ö£¬ £¬£¬£¬£¬£¬£¬Õ¼±È15.5%£¬ £¬£¬£¬£¬£¬£¬POC¿ÉÓÃÐÔΪ9.4%£»£»£»£»£»£»¸ß¼¶µÄΪ1659¸ö£¬ £¬£¬£¬£¬£¬£¬Õ¼±È43.1%£¬ £¬£¬£¬£¬£¬£¬POC¿ÉÓÃÐÔΪ8.1%£»£»£»£»£»£»ÖеÈΪ1592¸ö£¬ £¬£¬£¬£¬£¬£¬Õ¼±È41.4%£¬ £¬£¬£¬£¬£¬£¬POC¿ÉÓÃÐÔΪ7.0%¡£¡£¡£¡£¡£ÔÚ¹¥»÷ÀàÐÍ·½Ã棬 £¬£¬£¬£¬£¬£¬´úÂëÖ´Ðй¥»÷Õ¼±È×î´ó£¬ £¬£¬£¬£¬£¬£¬Îª45.6%£»£»£»£»£»£»¶ø¹¥»÷µÄÆðÔ´µØ·½Ã棬 £¬£¬£¬£¬£¬£¬ÆäÖÐ×î¶àµÄÀ´×ÔÓÚÃÀ¹ú£¬ £¬£¬£¬£¬£¬£¬Æä´ÎÊǶíÂÞ˹ºÍÖйú¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/network-attack-trends-february-april-2021/


6.WatchGuardÐû²¼2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ


6.jpg


WatchGuardÐû²¼ÁË2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬ £¬£¬£¬£¬£¬£¬ÔÚ2020ÄêQ1¼ì²âµ½µÄÍþвÖÐÓÐ74%ÊÇÁãÈÕÎó²î¶ñÒâÈí¼þ£¬ £¬£¬£¬£¬£¬£¬µÖ´ïÁËÀúʷиß¡£¡£¡£¡£¡£5ÖÖеĶñÒâÈí¼þUrsu¡¢Trojan.IFrame¡¢XML.JSLoader¡¢ZmutzyºÍZum.Androm½øÈëÁËÊ®´ó¶ñÒâÈí¼þµÄÅÅÐаñ¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬£¬£¬£¬´Ó3ÔÂ24ÈÕ(µÚÒ»´Î·¢Ã÷IPS¹¥»÷)µ½3ÔÂ⣬ £¬£¬£¬£¬£¬£¬Õë¶ÔProxyLogin Exchange ServerÎó²îµÄ¹¥»÷ÔöÌíÁË1600%¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.watchguard.com/wgrd-resource-center/security-report-q1-2021