ÈÕ±¾¾ü¹¤ÆóÒµ´¨Æé³Á¹¤Ôâµ½¹¥»÷£¬£¬ £¬£¬£¬£¬£¬»ò½«µ¼ÖÂÊý¾Ýй¶ £»£»£»£»£»£»£»£»Á¢ÌÕÍð¹ú¶È¹«¹²ÎÀÉúÖÐÐÄϰȾEmotet£¬£¬ £¬£¬£¬£¬£¬ÏµÍÂäÙʱ¹Ø¹Ø

°ä²¼¹¦·ò 2020-12-31
1.ÈÕ±¾¾ü¹¤ÆóÒµ´¨Æé³Á¹¤Ôâµ½¹¥»÷£¬£¬ £¬£¬£¬£¬£¬»ò½«µ¼ÖÂÊý¾Ýй¶


1.png


ÈÕ±¾¾ü¹¤ÆóÒµ´¨Æé³Á¹¤Ôâµ½¹¥»÷£¬£¬ £¬£¬£¬£¬£¬»ò½«µ¼ÖÂÊý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£¡£´¨Æé³Á¹¤£¨Kawasaki£©³Æ£¬£¬ £¬£¬£¬£¬£¬2020Äê6ÔÂ11ÈÕÓÐδ¾­ÊÚȨµÄµÚÈý·½´ÓÌ©¹ú´¦Ê´¦½Ó¼ûÁËÈÕ±¾µÄ·þÎñÆ÷£¬£¬ £¬£¬£¬£¬£¬ÔÚ·¢ÏÖ¸ÃÎÊÌâºóÁ½¸öÕ¾µãÖ®¼äµÄËùÓÐͨѶ¶¼±»ÖÕ³¡¡£¡£¡£¡£¡£¡£¡£¡£Ëæºó£¬£¬ £¬£¬£¬£¬£¬¸Ã¹«Ë¾ÓÖ·¢ÏÖÁËÆäËûº£±íÕ¾µã£¨Ó¡¶ÈÄáÎ÷ÑÇ¡¢·ÆÂɱöºÍÃÀ¹ú£©Î´¾­ÊÚȨ½Ó¼ûÈÕ±¾·þÎñÆ÷µÄÇé¿ö£¬£¬ £¬£¬£¬£¬£¬²¢¶Â½ØÍ¨Ñ¶¡£¡£¡£¡£¡£¡£¡£¡£´¨Æé³ÆÕâ´Î¹¥»÷ʹÓÃÁËÏȽø¼¼Êõ¶øÃ»ÓÐÁôÏÂÈκκۼ£ºÍÖ¤¾Ý£¬£¬ £¬£¬£¬£¬£¬µ«¹«Ë¾Êý¾Ý»òÐíÒѾ­Ð¹Â¶¡£¡£¡£¡£¡£¡£¡£¡£ËùÓб»ÖÕÖ¹µÄͨѶÓÚ11ÔÂ30ÈÕ¸´Ô­Õý³£¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/112765/data-breach/kawasaki-heavy-industries-cyber-attack.html


2.Á¢ÌÕÍð¹ú¶È¹«¹²ÎÀÉúÖÐÐÄϰȾEmotet£¬£¬ £¬£¬£¬£¬£¬ÏµÍÂäÙʱ¹Ø¹Ø


2.png


Á¢ÌÕÍð¹ú¶È¹«¹²ÎÀÉúÖÐÐÄ£¨NVSC£©ºÍ¼¸¸ö³ÇÊеÄÄÚÍøÏ°È¾Á˶ñÒâÈí¼þEmotet£¬£¬ £¬£¬£¬£¬£¬ÏµÍÂäÙʱ¹Ø¹Ø¡£¡£¡£¡£¡£¡£¡£¡£NVSC³Æ£¬£¬ £¬£¬£¬£¬£¬ºÚ¿Íͨ¹ý»Ø¸´µÄÓʼþ·Ö·¢¶ñÒâÈí¼þ£¬£¬ £¬£¬£¬£¬£¬Ê¹ÓÃÁËÊÜÃÜÂë± £»£»£»£»£»£»£»£»¤¸½¼þ²¢½«ÃÜÂë·ÅÔÚÓʼþÕýÎÄÄÚ£¬£¬ £¬£¬£¬£¬£¬ÒÔÈÆ¹ýɱ¶¾Èí¼þµÄ¼ì²â¡£¡£¡£¡£¡£¡£¡£¡£ÊÜϰȾµÄÍÆËã»ú±ÉÈËÔØ¶ñÒâÈí¼þºó»áÁ¢¼´·¢ËÍÐéαµç×ÓÓʼþ»ò½øÐÐÆäËû¶ñÒâ»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£NVSCµç×ÓÓʼþϵͳÒÑÔÚ±¾ÖܶþÆðÍ·ÁÙʱ¹Ø¹Ø£¬£¬ £¬£¬£¬£¬£¬ÒÔ×èÖ¹¸Ã²¡¶¾µÄ½øÒ»²½´«²¼¡£¡£¡£¡£¡£¡£¡£¡£ÕâÊǽñÄêµÚ¶þ´ÎÕë¶Ô¿¹ÌÕÍðµÄ´óÐÍEmotet¹¥»÷»î¶¯£¬£¬ £¬£¬£¬£¬£¬µÚÒ»´Î²úÉúÓÚ10Ô·Ý¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/emotet-malware-hits-lithuanias-national-public-health-center/    


3.¼ÓÃÜÇ®±Òƽ̨VoyagerµÄDNSÅäÖÃÔâµ½´Û¸Ä£¬£¬ £¬£¬£¬£¬£¬ÂòÂôÔÝÍ£


3.png


¼ÓÃÜÇ®±Òƽ̨VoyagerµÄDNSÅäÖÃÔâµ½´Û¸Ä£¬£¬ £¬£¬£¬£¬£¬µ¼ÖÂÂòÂôÔÝÍ£¡£¡£¡£¡£¡£¡£¡£¡£Voyager Digital LLCÊÇÒ»ÖÖ¼ÓÃÜÇ®±Ò¾­¼Íƽ̨£¬£¬ £¬£¬£¬£¬£¬ÔÊÐíͶ×ÊÕß½øÐÐ×ʲúÂòÂô¡£¡£¡£¡£¡£¡£¡£¡£12ÔÂ28ÈÕ¸ÃÆ½Ì¨ºöÈ»¹Ø¹Ø£¬£¬ £¬£¬£¬£¬£¬²¢°ä·¢µ±Ç°ÔÚ½øÐÐÊØ»¤¡£¡£¡£¡£¡£¡£¡£¡£VoyagerËæºóй©ÆäÔâµ½Á˹¥»÷£¬£¬ £¬£¬£¬£¬£¬DNSÅäÖÃÔâµ½´Û¸Ä£¬£¬ £¬£¬£¬£¬£¬²¢Î´Í¸Â©ÓйØÕâ´Î¹¥»÷µÄ¸ü¶à¾ßÌåÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£VoyagerÀûÓÃÔÚ³ÁÐÂÉÏÏߺóµÇ³öÁËËùÓÐЧ»§£¬£¬ £¬£¬£¬£¬£¬²¢½¨ÒéËûÃdzÁÖÃÃÜÂë²¢ÅäÖÃ2FA¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬ £¬£¬£¬£¬£¬Voyager°µÊ¾¹¥»÷δ³É¹¦£¬£¬ £¬£¬£¬£¬£¬Óû§ËùÓÐ×ʽðºÍ¼ÓÃÜÇ®±Ò¶¼Êǰ²È«µÄ¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/voyager-cryptocurrency-broker-halted-trading-due-to-cyberattack/


4.ºÚ¿ÍÔÚ°µÍøÐ¹Â¶½ðÈÚ¹«Ë¾StaircaseµÄÃô¸ÐÊý¾Ý


4.png


ºÚ¿ÍÔÚ°µÍøÐ¹Â¶°Â¿ËÀ¼½ðÈÚ¹«Ë¾StaircaseµÄÃô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£±¾Ô³õStaircaseÔâµ½NetWalkerµÄ¹¥»÷£¬£¬ £¬£¬£¬£¬£¬²¢±»ÀÕË÷Ô¼15ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¡£¡£Òòδ°´Ê±Ö§¸¶Êê½ð£¬£¬ £¬£¬£¬£¬£¬Ä¿Ç°ºÚ¿ÍÒÑÔÚ¶à¸öµÚÈý·½Îļþ¹²ÏíÍøÕ¾ÉϹ«¿ªµÁ×ßµÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾³Æ£¬£¬ £¬£¬£¬£¬£¬Ä¿Ç°Òѽ«Õâ´Îй©ÊÂÎñ·î¸æÆä¿Í»§£¬£¬ £¬£¬£¬£¬£¬²¢ÔÚЭÖú±¾µØ¾¯·½¶Ô´ËʽøÐе÷²é¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.stuff.co.nz/business/industries/123831316/hackers-publish-client-data-stripped-from-auckland-financial-services-company-on-dark-web


5.NZBGeekÒòÔâµ½¹¥»÷ÍøÕ¾å´»ú£¬£¬ £¬£¬£¬£¬£¬Óû§Êý¾Ý±»µÁ


5.png


NZBGeekÒòÔâµ½¹¥»÷µ¼ÖÂÍøÕ¾å´»ú£¬£¬ £¬£¬£¬£¬£¬Óû§Êý¾Ý±»µÁ¡£¡£¡£¡£¡£¡£¡£¡£NZBGeekÊÇÒ»¸öÌṩË÷Òý·þÎñºÍÎļþ¹²ÏíµÄ¸öÈËÉçÇø£¬£¬ £¬£¬£¬£¬£¬ÌṩÁ˳¬¹ý50Íò¸öNZBË÷Òý¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ð¹Â©£¬£¬ £¬£¬£¬£¬£¬ºÚ¿ÍÀûÓÃSQL·ì϶ºÍ»ùÓÚJavascriptµÄ¼üÅ̼ͼ·¨Ê½ÇÔÈ¡ÁËÊý¾Ý¿âµÄ¸±±¾£¬£¬ £¬£¬£¬£¬£¬ÆäÖÐÔ̺¬Óû§Ãû¡¢ÃÜÂë¡¢µç×ÓÓʼþµØÖ·ºÍ×îºóÏνӵÄIPµØÖ·¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬ £¬£¬£¬£¬£¬ÔÚ²úÉú¹¥»÷ʱËûÃǵÄË÷ÒýÆ÷ºÍAPI·þÎñÆ÷ÉϵÄÓ²ÅÌÇý¶¯Æ÷¾ù³öÏÖÁ˹ÊÕÏ£¬£¬ £¬£¬£¬£¬£¬µ¼ÖÂÍøÕ¾å´»ú¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚµ÷²é´ËÊÂÎñ£¬£¬ £¬£¬£¬£¬£¬Ä¿Ç°³ýAPI±í£¬£¬ £¬£¬£¬£¬£¬ËùÓÐϵͳÈÔ´¦ÓÚÀëÏß״̬¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/usenet-indexer-nzbgeek-hacked-database-stolen/


6.WasabiÔÆ´æ´¢·þÎñÒòDNS½âÎöÎÊÌâµ¼ÖÂÖжÏ13¸öÓ×ʱ


6.png


WasabiÔÆ´æ´¢·þÎñÒòDNS½âÎöÎÊÌâµ¼ÖÂÖжÏ13¸öÓ×ʱ¡£¡£¡£¡£¡£¡£¡£¡£12ÔÂ28ÈÕÏÂÎç2:30 ESTÓû§·¢ÏÖÎÞ·¨½Ó¼ûwasabisys.comÉϵĴ洢Ͱ£¬£¬ £¬£¬£¬£¬£¬WasabiÔÚÖжϻ㱨ÖгÆÊÇÓÉÓÚDNS½âÎöÎÊÌâµ¼Ö¡£¡£¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬ £¬£¬£¬£¬£¬¸Ãƽ̨Óû§ÉÏ´«Á˶ñÒâÈí¼þ£¬£¬ £¬£¬£¬£¬£¬ÆäÓòÃû³Æ×¢²áÉÌ·¢ÏÖºóÏëҪͨ¹ýµç×ÓÓʼþ֪ͨWasabi£¬£¬ £¬£¬£¬£¬£¬È´°Ñ»ã±¨×ª·¢µ½ÁËÃýÎóµÄµØÖ·£¬£¬ £¬£¬£¬£¬£¬Ê¹µÃWasabiδµÃµ½Í¨Öª¡£¡£¡£¡£¡£¡£¡£¡£¶ø¸Ã×¢²áÉÌÒòδµÃµ½»Ø¸´¶øÔÝÍ£Á˸ÃÓò£¬£¬ £¬£¬£¬£¬£¬WasabiÔÚµÃÖª¸ÃÊÂÎñºóɾ³ýÁËÍйܶñÒâÈí¼þ²¢ÒªÇó³Áм¤¸ÃËÀÓò£¬£¬ £¬£¬£¬£¬£¬Æ½Ì¨ÔÚ12ÔÂ29ÈÕÏÂÎç12:57 ESTÖÕÓڵõ½¸´Ô­¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/wasabi-cloud-storage-service-knocked-offline-for-hosting-malware/