Rotech ÌåÏÖ¿ÉÄÜÊܵ½ÏàÖúͬ°é·ÉÀûÆÖ±»ºÚ¿Í¹¥»÷µÄÓ°Ïì

Ðû²¼Ê±¼ä 2024-02-26
1. Rotech ÌåÏÖ¿ÉÄÜÊܵ½ÏàÖúͬ°é·ÉÀûÆÖ±»ºÚ¿Í¹¥»÷µÄÓ°Ïì


2ÔÂ24ÈÕ£¬ £¬£¬ÃÀ¹úÒ½ÁÆ×°±¸ÌṩÉÌ Rotech Healthcare (ROTK.O)ÕýÔÚÉó²é¿ÉÄÜÒòÆäÏàÖúͬ°é·ÉÀûÆÖ(PHG.AS)ÔâÓöÍøÂçÇå¾²Îó²î¶øÊܵ½µÄÓ°Ïì¡£¡£¡£×ܲ¿Î»ÓÚ°ÂÀ¼¶àµÄ Rotech ÔÚÒ»·ÝÉùÃ÷ÖÐÌåÏÖ£¬ £¬£¬ÏúÊÛÓÃÓÚÖÎÁÆË¯ÃߺôÎüÔÝÍ£µÄºôÎü×°±¸ºÍºôÎü»úµÄ Respironics ¹«Ë¾ÓÚ 6 Ô 5 ÈÕ»ñÖª±¬·¢Ò»ÆðÒþ˽ÊÂÎñ£¬ £¬£¬Î´¾­ÊÚȨµÄµÚÈý·½Ê¹ÓÃÈí¼þ»á¼ûÆäЧÀÍÆ÷ÉÏ´æ´¢µÄÐÅÏ¢¡£¡£¡£ºÉÀ¼¿µ½¡ÊÖÒÕ¹«Ë¾·ÉÀûÆÖÔÚÒ»·âµç×ÓÓʼþ»Ø¸´ÖÐÌåÏÖ£¬ £¬£¬¸Ã¹«Ë¾Ïò¿Í»§×ª´ïÁËÒ»ÆðÉæ¼° MOVEit Transfer µÄÍøÂçÇå¾²ÊÂÎñ£¬ £¬£¬MOVEit Transfer ÊÇÒ»¿îµÚÈý·½Èí¼þÓ¦ÓóÌÐò£¬ £¬£¬¿ÉÈÃÒ½ÁƱ£½¡ÌṩÉÌ´Ó 12 Ô 20 ÈÕ×îÏÈ´«Êä°üÀ¨ÖÎÁÆÊý¾ÝµÄ»¼ÕßÎļþ¡£¡£¡£¹«Ë¾ÓÚ 12 Ô 26 ÈÕÌṩÁËÒ»·Ý»¼ÕßÃûµ¥£¬ £¬£¬ÆäÖаüÀ¨ÕýÔÚÉó²éµÄ¿ÉÄÜÊÜÓ°ÏìµÄСÎÒ˽¼Ò¡£¡£¡£ËüûÓÐÌṩ¿ÉÄÜÊܵ½Ó°ÏìµÄ»¼ÕßµÄÈκÎÏêϸÐÅÏ¢¡£¡£¡£


https://www.reuters.com/technology/cybersecurity/rotech-says-third-party-hacked-partner-philips-respironics-2024-02-23/


2. µçÐÅÌṩÉÌ TANGERINE ÔâÊܵÄÊý¾Ýй¶ӰÏìÁË 23 ÍòÈË


2ÔÂ23ÈÕ£¬ £¬£¬°Ä´óÀûÑǵçÐÅÌṩÉÌ Tangerine Åû¶ÁËÒ»ÆðÓ°ÏìÔ¼ 23 ÍòÈ˵ÄÊý¾Ýй¶ÊÂÎñ¡£¡£¡£¸ÃµçÐŹ«Ë¾Í¨ÖªÁ˰ĴóÀûÑÇÍøÂçÇå¾²ÖÐÐĺͰĴóÀûÑÇÐÅϢרԱ°ì¹«ÊÒ¡£¡£¡£ ¸ÃµçÐÅÌṩÉÌÖ¸³ö£¬ £¬£¬Ã»ÓÐÈκβÆÎñÐÅÏ¢£¨ÐÅÓÿ¨»ò½è¼Ç¿¨ºÅÂë¡¢ÒøÐÐÏêϸÐÅÏ¢£©Êܵ½Ð¹Â¶¡£¡£¡£¸Ã¹«Ë¾»¹È·ÈÏ£¬ £¬£¬´Ë´Î¹¥»÷²¢Î´Ó°ÏìÆä nbn? »òÒÆ¶¯Ð§À͵ĿÉÓÃÐÔ»òÔËÐС£¡£¡£ Ì»Â¶µÄÐÅÏ¢°üÀ¨È«Ãû¡¢³öÉúÈÕÆÚ¡¢ÊÖ»úºÅÂë¡¢µç×ÓÓʼþµØµã¡¢ÓÊÕþµØµãºÍ Tangerine Õ˺Å¡£¡£¡£ ÔÚÒâʶµ½Çå¾²Îó²îºó£¬ £¬£¬¸Ã¹«Ë¾¶Ô¸ÃÊÂÎñÌᳫÁËÊӲ죬 £¬£¬ÊÓ²ìÈÔÔÚ¾ÙÐÐÖС£¡£¡£¸Ã¹«Ë¾Ô¼ÇëÁËÍøÂçר¼ÒÀ´ÊÓ²ì¸ÃÊÂÎñ£¬ £¬£¬×¨¼Ò·¢Ã÷¹¥»÷Õß»ñµÃÁ˶Բ»Çå¾²µÄÒÅÁôÊý¾Ý¿âµÄ»á¼ûȨÏÞ¡£¡£¡£ ¸Ã¹«Ë¾ÒÑÓÚ 2024 Äê 2 Ô 21 ÈÕÐÇÆÚÈýͨ¹ýµç×ÓÓʼþ֪ͨÊÜÓ°ÏìµÄСÎÒ˽¼Ò¡£¡£¡£ ¸ÃÊÂÎñ²¢Î´Ó°ÏìÊܶàÖØÉí·ÝÑéÖ¤ (MFA) ±£»£»£»£»£»£»¤µÄ¿Í»§ÕÊ»§¡£¡£¡£


https://securityaffairs.com/159528/data-breach/telco-provider-tangerine-data-breach.html


3. ºÚ¿Íй¶ÓëÂåÉ¼í¶¹ú¼Ê»ú³¡Ïà¹ØµÄ 250 Íò˽ÈË·É»úËùÓÐÕßÊý¾Ý


2ÔÂ23ÈÕ£¬ £¬£¬IntelBroker Éù³Æ½ÓÄÉÁËÒ»Ïî´óµ¨Ðж¯£¬ £¬£¬ÈëÇÖÁËÂåÉ¼í¶¹ú¼Ê»ú³¡µÄÊý¾Ý¿â£¬ £¬£¬ÇÔÈ¡ÁËÊôÓÚ˽ÈË·É»úËùÓÐÕߵĴó×ÚÉñÃØÓû§Êý¾Ý¡ª¡ª¾ÝºÚ¿Í³Æ£¬ £¬£¬´Ë´Îй¶±¬·¢ÔÚ 2024 Äê 2 Ô¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬ £¬£¬´Ë´Îй¶ÊÂÎñ²»Éæ¼°Èκοͻ§»òÂÃÐÐÕßÊý¾Ý¡£¡£¡£È»¶ø£¬ £¬£¬¸ÃÊÂÎñÏÔÈ»Òѵ¼Ö 250 ÍòÌõ¼Í¼Ô⵽й¶£¬ £¬£¬ÆäÖаüÀ¨Ãô¸ÐÐÅÏ¢£¬ £¬£¬ÀýÈ磺ȫÃû¡¢×¢²á»á¼ÆÊ¦ºÅÂë¡¢µç×ÓÓʼþµØµã¡¢¹«Ë¾Ãû³Æ¡¢·É»úÐͺš¢ºÍβºÅ£¨Ö¸Í¿ÔÚ·É»úβ²¿µÄʶÓÖÃû£©¡£¡£¡£IntelBroker ÔÚÎÛÃûÕÑÖøµÄºÚ¿ÍºÍÍøÂç·¸·¨Æ½Ì¨ Breach Forums ÉϹûÕæÅû¶ÁËÕâÒ»Îó²î£¬ £¬£¬ÎªËûÃÇÒѾ­ÆÕ±éµÄºÚ¿ÍÊÂÎñÔöÌíÁËÁíÒ»Æð±¸ÊÜÖõÄ¿µÄºÚ¿ÍÊÂÎñ¡£¡£¡£IntelBroker ֮ǰµÄºÚ¿Í¹¥»÷µÄÖøÃûÄ¿µÄ°üÀ¨Weee! ÔÓ»õƽ̨¡¢Í¨ÓÃµçÆø¡¢ÈËÁ¦×ÊÔ´¾ÞÍ·Robert Half£¬ £¬£¬ÒÔ¼°×î½üÉæ¼°²¿·ÖFacebook MarketplaceÊý¾Ý¿â¡£¡£¡£


https://www.hackread.com/hackers-leak-private-plane-owners-data-la-airport-breach/


4. Avast Òò³öÊÛÏûºÄÕßä¯ÀÀÊý¾Ý¶ø±»·£¿£¿£¿£¿£¿£¿î 1650 ÍòÃÀÔª


2ÔÂ24ÈÕ£¬ £¬£¬FTC ·¢Ã÷ Avast ͨ¹ýÆä·À²¡¶¾²úÆ·ÍøÂçÁË´ó×ÚСÎÒ˽¼ÒÊý¾Ý£¬ £¬£¬È»ºó½«Æä³öÊÛ¸ø 100 ¶à¸öµÚÈý·½£¬ £¬£¬µ«Î´Åû¶Æä×ö·¨¡£¡£¡£ÃÀ¹úÁª°îÉÌҵίԱ»á (FTC) ÒªÇó·À²¡¶¾Çå¾²ÌṩÉÌ Avast Ö§¸¶ 1,650 ÍòÃÀÔª·£¿£¿£¿£¿£¿£¿î£¬ £¬£¬ÒÔÁËÈ´¸Ã¹«Ë¾¼°Æä×Ó¹«Ë¾ÔÚÉù³ÆÆä²úÆ·±£»£»£»£»£»£»¤ÏûºÄÕߺóÏòµÚÈý·½³öÊÛºÍÔÊÐí Web ä¯ÀÀÊý¾ÝµÄÖ¸¿Ø´ÓÕâÑùµÄÔÚÏ߸ú×Ù¡£¡£¡£FTCÌåÏÖ£¬ £¬£¬ÕýÈçͶËßÖÐËùÊö£¬ £¬£¬ Avast ÍøÂçÁËÏûºÄÕßä¯ÀÀÊý¾Ý£¬ £¬£¬²¢ÔÚδ¾­Í¨Öª»òÔ޳ɵÄÇéÐÎÏÂÎÞÏÞÆÚ´æ´¢ÕâЩÊý¾Ý¡£¡£¡£±ðµÄ£¬ £¬£¬FTC »¹Éù³Æ£¬ £¬£¬Avast Éù³Æ½«Í¨¹ý×èÖ¹µÚÈý·½¸ú×ÙÀ´±£»£»£»£»£»£»¤Óû§Òþ˽£¬ £¬£¬µ«È´Í¨¹ý×Ó¹«Ë¾ Jumpshot Ïò 100 ¶à¸öµÚÈý·½³öÊÛ¿Éʶ±ðµÄä¯ÀÀÊý¾Ý£¬ £¬£¬ÕâÊÇÓÕÆ­Óû§µÄÐÐΪ¡£¡£¡£Avast ×Ô 2014 ÄêÒÔÀ´Ò»Ö±Ê¹ÓÃÓû§×°±¸ÉÏ×°ÖõķÀ²¡¶¾Èí¼þÍøÂçÏûºÄÕßä¯ÀÀÊý¾Ý¡£¡£¡£ä¯ÀÀÊý¾Ý»áй¶Óû§µÄ˽ÈËÐÅÏ¢£¬ £¬£¬ÀýÈç×Ú½ÌÐÅÑö¡¢¿µ½¡ÎÊÌâ¡¢²ÆÎñ״̬¡¢ÕþÖÎ̬¶ÈºÍÆäËûÃô¸ÐÐÅÏ¢¡£¡£¡£


https://www.darkreading.com/cyber-risk/ftc-orders-avast-to-pay-16-5m-for-selling-consumer-browsing-data


5. Õë¶ÔʯÓͺÍ×ÔÈ»ÆøÐÐÒµµÄРMaaS InfoStealer ¶ñÒâÈí¼þ»î¶¯


2ÔÂ22ÈÕ£¬ £¬£¬Cofense Intelligence ÕýÔÚ¸ú×ÙÒ»Ïî¸ß¼¶»î¶¯£¬ £¬£¬¸Ã»î¶¯ÒÑÀֳɵִïʯÓͺÍ×ÔÈ»ÆøÐÐÒµµÄÔ¤ÆÚÄ¿µÄ¡£¡£¡£¸Ã»î¶¯ÌṩÁËÒ»ÖÖ²»³£¼ûµ«ÏȽøµÄ¶ñÒâÈí¼þ¼´Ð§ÀÍÐÅÏ¢ÇÔÈ¡³ÌÐò£¬ £¬£¬¼´Rhadamanthys Stealer¡£¡£¡£ÔÚÖ´·¨²¿·ÖÈ¡µÞ LockBit ÀÕË÷Èí¼þ×éÖ¯£¨×î»îÔ¾µÄÀÕË÷Èí¼þ¼´Ð§ÀÍ (RaaS) Ö®Ò»£©ºóµÄ¼¸ÌìÄÚ£¬ £¬£¬ÕâÖÖеĸ߼¶ÍøÂç´¹Âڻ½ÓÄÉÁË×î½ü¸üеÄMaaS¡£¡£¡£Rhadamanthys StealerÊÇÒ»ÖÖ²»³£¼ûµ«ºÜÊÇÏȽøµÄ¶ñÒâÈí¼þ¼´Ð§ÀÍ£¬ £¬£¬Ê״ηºÆðÓÚ 2022 Ä꣬ £¬£¬½ÓÄÉ C++ ±à³ÌÓïÑÔ±àд¡£¡£¡£¸ÃÇÔÈ¡³ÌÐòʵÏÖÁ˶àÖÖ¹¦Ð§À´×ÊÖú×ÅʵÏÖ¶àÖÖÇÔÈ¡¹¦Ð§¡£¡£¡£ÇÔÈ¡³ÌÐòµÄÖ÷ÒªÓÃ;ÊÇÈÃÍþвÐÐΪÕßÇÔȡװ±¸ÐÅÏ¢¡¢ÎĵµÎļþ¡¢¼ÓÃÜÇ®±ÒÇ®°üÒÔ¼°´æ´¢ÔÚÖÖÖÖÓ¦ÓóÌÐòºÍä¯ÀÀÆ÷ÖÐµÄÆ¾Ö¤¡£¡£¡£Æ¾Ö¤ Cyberint µÄ±¨¸æ£¬ £¬£¬¸Ã¶ñÒâÈí¼þ×î½üÊÕµ½ÁË 5.0 µÄÖØ´ó¸üУ¬ £¬£¬Îª¹ºÖøÃЧÀ͵ÄÍþвÐÐΪÕßÌṩÁËÔ½·¢¿É¶¨ÖƵÄÌåÑ飬 £¬£¬²¢ÔÊÐí½ÓÄÉÌØÁíÍâ²½·¥À´Ó¦¶ÔÇå¾²ºÍʹÓÃÎó²î¡£¡£¡£


https://securityboulevard.com/2024/02/new-maas-infostealer-malware-campaign-targeting-oil-gas-sector/


6. Akira ÀÕË÷Èí¼þÉù³Æ¶Ô  Quik Pawn Shop ÍøÂç¹¥»÷ÈÏÕæ


2ÔÂ23ÈÕ£¬ £¬£¬Quik Pawn Shops ½¨ÉèÓÚ 1978 Ä꣬ £¬£¬Ò»Ö±ÎªÃɸçÂíÀû¡¢²®Ã÷º²¡¢Äª±È¶ûºÍËþ˹¿¨Â¬ÈøµØÇø 15 ¸öËùÔڵĿͻ§ÌṩЧÀÍ¡£¡£¡£¸Ã¹«Ë¾ÌṩһϵÁнðÈÚЧÀÍ£¬ £¬£¬°üÀ¨µäµ±´û¿î¡¢²úȨ´û¿î¡¢ÏÖ½ðµæ¿î¡¢·ÖÆÚ´û¿îºÍ֧Ʊ¶ÒÏÖ£¬ £¬£¬Ò»Ö±ÊÇÐí¶àÐèÒª¿ìËÙ½ðÈÚ½â¾ö¼Æ»®µÄÈËÖµµÃÐÅÈεÄ×ÊÔ´¡£¡£¡£´Ë´Î¹¥»÷±³ºóµÄÍøÂç·¸·¨·Ö×ÓÉù³Æ´Ó Quik Pawn Shop µÄϵͳÖлñÈ¡ÁË 140 GB µÄÎļþ£¬ £¬£¬ÒÔ¼°°üÀ¨´ó×Ú¿Í»§ÐÅÏ¢µÄÊý¾Ý¿â¡£¡£¡£ÕâЩÊý¾Ý°üÀ¨Êý°ÙÍòÌõ¼Í¼£¬ £¬£¬ÆäÖаüÀ¨³öÉúÈÕÆÚ¡¢µØµã¡¢Éç»áÇå¾²ºÅÂëºÍ½ðÈÚÉúÒâÀúÊ·µÈÃô¸ÐÏêϸÐÅÏ¢¡£¡£¡£Óû§ÔÚ Quik Pawn Shop ÍøÕ¾ÉÏ¿´µ½µÄ¹ýʧÐÂÎÅ¡°DNS_PROBE_FINISHED_NXDOMAIN¡±Í¨³£ÌåÏÖÓòÃûϵͳ (DNS) ²éÕÒÀú³Ì·ºÆð¹ÊÕÏ¡£¡£¡£ÕâÑù¿ÉÒÔ±ÜÃâä¯ÀÀÆ÷½«ÓòÃûÆÊÎöΪIPµØµã£¬ £¬£¬´Ó¶øµ¼ÖÂÎÞ·¨¼ÓÔØÍøÕ¾¡£¡£¡£Quik Pawn Shop ÔâÓöµÄÊý¾ÝÇå¾²Îó²î¿ÉÄܻᱬ·¢ÑÏÖØÓ°Ï죬 £¬£¬Î£¼°Ãô¸ÐÐÅÏ¢µÄÉñÃØÐÔºÍÍêÕûÐÔ¡£¡£¡£Ôڵ䵱ÐÐÖУ¬ £¬£¬¾­³£´ÓÖ÷¹ËÄÇÀïÍøÂçСÎÒ˽¼ÒÊý¾Ý£¬ £¬£¬Ì»Â¶µÄΣº¦ÌØÊâ¸ß¡£¡£¡£


https://thecyberexpress.com/quik-pawn-shop-cyberattack/?&web_view=true