¼ÓÃÜÇ®±ÒÂòÂôËùFTXÉêÇëÆÆ²úÔ¤¼ÆËðʧ¸ß´ï6ÒÚÃÀÔª
°ä²¼¹¦·ò 2022-11-15¾ÝýÌå11ÔÂ13ÈÕ±¨Â·£¬£¬£¬£¬£¬¼ÓÃÜÇ®±ÒÂòÂôËùFTXÔâµ½¹¥»÷£¬£¬£¬£¬£¬Óд«ÑԳƹ¥»÷ÕßÒÑÇÔÈ¡6ÒÚÃÀÔª¡£¡£¡£¡£¡£¹«Ë¾Ë¾·¨ÕÕ·÷Ryne Miller֤ʵÁËÕâ´Î¹¥»÷ÊÂÎñ£¬£¬£¬£¬£¬²¢°µÊ¾FTX USºÍFTX[dot]comÒѽ«ËùÓÐ×ʲú×ªÒÆµ½ÀäÇ®°üÖУ¬£¬£¬£¬£¬²¢µ÷²éÁË¿ÉÒɵÄÂòÂô¡£¡£¡£¡£¡£ÔÚ´óÁ¿¿Í»§Ìá¿îºó£¬£¬£¬£¬£¬¸Ã¼ÓÃÜÇ®±ÒÂòÂôËùÓÚÉÏÖÜÎåÉêÇëÆÆ²ú¡£¡£¡£¡£¡£¾Ý·͸Éçй©£¬£¬£¬£¬£¬ÖÁÉÙÓÐ10ÒÚÃÀÔªµÄ×ʽð´ÓÕâ¼Òµ¹¹ØµÄ¼ÓÃÜÇ®±ÒÂòÂôËùÁ÷³ö¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/138449/digital-id/ftx-alleged-hack.html
2¡¢ºÚ¿ÍÔÚ°µÍøÏúÊÛ¶íÂÞ˹Whoosh 720Íò¿Í»§µÄ¾ßÌåÐÅÏ¢
ýÌå11ÔÂ14Èճƣ¬£¬£¬£¬£¬¶íÂÞ˹³öÐзþÎñƽ̨Whoosh 720Íò¿Í»§µÄÐÅÏ¢ÒѾй¶¡£¡£¡£¡£¡£ÉÏÖÜÎ壬£¬£¬£¬£¬ºÚ¿ÍÔÚ°µÍøÏúÊÛ±»µÁÊý¾Ý£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬¿ÉÃâ·Ñ½Ó¼û¸Ã·þÎñµÄ´ÙÏú´úÂ룬£¬£¬£¬£¬ÒÔ¼°Óû§µÄÓ×ÎÒºÍÖ§¸¶¿¨ÐÅÏ¢¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚ±¾ÔÂÔçЩʱ³½È·ÈÏÕâ´Î¹¥»÷£¬£¬£¬£¬£¬Æäʱ³ÆÒѳɹ¦×èÖ¹Á˹¥»÷¡£¡£¡£¡£¡£Ö®ºóÓÖÓÚ11ÔÂ14ÈÕ°ä²¼Ò»·ÝÐÂÉêÃ÷£¬£¬£¬£¬£¬ÈϿɴæÔÚÊý¾Ýй¶ÎÊÌ⣬£¬£¬£¬£¬²¢ÒѲÉÈ¡´ëÊ©×èÖ¹Êý¾ÝµÄ·Ö·¢¡£¡£¡£¡£¡£Âô¼Ò°µÊ¾ËûÃÇÖ»Ïò5¸öÂò¼ÒÏúÊÛÕâЩÊý¾Ý£¬£¬£¬£¬£¬Ã¿¸ö4200ÃÀÔª£¬£¬£¬£¬£¬Ä¿Ç°»¹Ã»ÓÐÈ˲ɰì¸ÃÊý¾Ý¿â¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/whoosh-confirms-data-breach-after-hackers-sell-72m-user-records/
3¡¢Ó¢¹úÈü³µ³¡Silverstone CircuitÔâµ½RoyalµÄÀÕË÷¹¥»÷
¾Ý11ÔÂ10ÈÕ±¨Â·£¬£¬£¬£¬£¬Ó¢¹ú×îÊÜ»¶ÓµÄÈü³µ³¡ÒøÊ¯Èü·£¨Silverstone Circuit£©¿ÉÄÜÔâµ½ÁËÀÕË÷ÍÅ»ïRoyalµÄ¹¥»÷¡£¡£¡£¡£¡£ÒøÊ¯Èü·ÊÇ×Ô1950ÄêÒÔÀ´Ó¢¹ú´ó½±ÈüµÄÖ÷³¡£¬£¬£¬£¬£¬ÓÉÓ¢¹úÈü³µÊÖ¾ãÀÖ²¿(BRDC)ÔËÓª¡£¡£¡£¡£¡£¹¥»÷ÕßÓÚ11ÔÂ8ÈÕÔÚRoyalÀÕË÷Èí¼þµÄÍøÕ¾ÁгöÁËSilverstone£¬£¬£¬£¬£¬µ«²¢Î´¾ßÌå×¢Ã÷»ñÈ¡ÁËÄÄЩÀàÐ͵ÄÐÅÏ¢¡£¡£¡£¡£¡£Óë´Ëͬʱ£¬£¬£¬£¬£¬¸Ã¹«Ë¾Ð¹Â©ÆäÔÚµ÷²é¸ÃÊÂÎñ¡£¡£¡£¡£¡£RoyalÊÇÒ»¸öÏà¶Ô½ÏеĺڿÍÍŻ£¬£¬£¬£¬ÆäÊê½ð´Ó25Íòµ½200ÍòÃÀÔª²»µÈ¡£¡£¡£¡£¡£
https://therecord.media/popular-uk-motor-racing-circuit-investigating-ransomware-attack/
4¡¢FRwLÍÅ»ïʹÓÃÐÂÀÕË÷Èí¼þSomnia¹¥»÷ÎÚ¿ËÀ¼µÄ¶à¸ö×éÖ¯
ÎÚ¿ËÀ¼ÍÆËã»úÓ¦¼±Ó××飨CERT-UA£©11ÔÂ11ÈÕÅû¶ÁËFRwL£¨±ðÃûZ-Team£©ÐÂÒ»ÂֵĹ¥»÷»î¶¯¡£¡£¡£¡£¡£¹¥»÷ÕßʹÓÃÁ˼ÙÒâAdvanced IP ScannerÈí¼þµÄÍøÕ¾À´ÓÕʹָ±êÏÂÔØ×°Ö÷¨Ê½¡£¡£¡£¡£¡£ÏÖʵÉÏ£¬£¬£¬£¬£¬×°Ö÷¨Ê½»áʹÓÃVidarÇÔÈ¡·¨Ê½Ï°È¾ÏµÍ³£¬£¬£¬£¬£¬²¢ÇÔÈ¡Telegram»á»°Êý¾ÝÀ´½ÚÔìËûÃǵÄÕÊ»§¡£¡£¡£¡£¡£¶øºó£¬£¬£¬£¬£¬Ëû»áÀûÓÃÖ¸±êµÄTelegramÕÊ»§À´ÇÔÈ¡VPNÏνÓÊý¾Ý£¬£¬£¬£¬£¬Ö´Ðи÷Àà¼à¶½ºÍÔ¶³Ì½Ó¼û»î¶¯¡£¡£¡£¡£¡£¸Ã»ú¹¹»¹Ö¸³ö£¬£¬£¬£¬£¬ÕâЩ¹¥»÷ÖÐʹÓÃÁËеÄSomniaÀÕË÷Èí¼þ¡£¡£¡£¡£¡£
https://cert.gov.ua/article/2724253
5¡¢ºÚ¿ÍÍÅ»ïWorokͨ¹ý°µ²ØÔÚPNGͼÏñÖеĺóÃÅÇÔÈ¡Êý¾Ý
AvastÓÚ11ÔÂ10ÈÕ³ÆÆä·¢ÏÖºÚ¿ÍÍÅ»ïWorok½«¶ñÒâÈí¼þ°µ²ØÔÚ¿´ËÆÎÞº¦µÄPNGͼÏñÎļþ¡£¡£¡£¡£¡£×êÑÐÈËÔ±°µÊ¾£¬£¬£¬£¬£¬¾ßÌåµÄ³õʼ¹¥»÷ý½éÒÀȻδ֪£¬£¬£¬£¬£¬µ«ËûÃÇÔÚ±»Ï°È¾É豸Öз¢ÏÖÁË4¸öDLL£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬CLRLoader¡£¡£¡£¡£¡£ÔÚºáÏò»î¶¯ÖУ¬£¬£¬£¬£¬¹¥»÷Õß½«½Ù³ÖµÄDLLÎļþ·ÅÈë%SYSTEMROOT%\System32²¢Ô¶³ÌÆô¶¯ÏàÓ¦µÄ·þÎñ¡£¡£¡£¡£¡£ÖµÍ×ÌùÐĵÄÊÇ£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓÃDropBox´æ´¢¿â´ÓÖ¸±êÖÐÍøÂçÊý¾Ý£¬£¬£¬£¬£¬²¢ÔÚ×îºó½×¶ÎʹÓÃDropBox API½øÐÐͨѶ¡£¡£¡£¡£¡£
https://decoded.avast.io/martinchlumecky/png-steganography/
6¡¢Kaspersky°ä²¼2022ÄêǰÈý¼¾¶È¼ÓÃܽٳÖÌ¬ÊÆµÄ·ÖÎö»ã±¨
11ÔÂ10ÈÕ£¬£¬£¬£¬£¬Kaspersky°ä²¼ÁË2022ÄêǰÈý¼¾¶È¼ÓÃܽٳÖÌ¬ÊÆµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£»ã±¨Ö¸³ö£¬£¬£¬£¬£¬2022ÄêQ3£¬£¬£¬£¬£¬ÏÕЩÿ6¸öÀûÓóÛÃû·ì϶µÄ°¸ÀýÖоÍÓÐÒ»¸öÅã°é×Å¿ó¹¤Èí¼þµÄϰȾ¡£¡£¡£¡£¡£Óë2021ÄêQ3Ïà±È£¬£¬£¬£¬£¬2022ÄêQ3¶ñÒâ¿ó¹¤Ð±äÖÖµÄÊýÁ¿Ôö³¤ÁËÈý±¶¶à£¬£¬£¬£¬£¬³¬¹ýÁË15Íò¡£¡£¡£¡£¡£2022ÄêQ1£¬£¬£¬£¬£¬ÊܶñÒâ¿ó¹¤Èí¼þÓ°ÏìµÄÓû§ÊýÁ¿×î¶à£¨³¬¹ý500000£©£¬£¬£¬£¬£¬¶øÐµĶñÒâ¿ó¹¤±äÖÖÊýÁ¿ÖÁÉÙ¡£¡£¡£¡£¡£Ôâµ½´ËÀ๥»÷Óû§ÊýÁ¿×î¶àµÄ¹ú¶ÈÊǰ£Èû¶í±ÈÑÇ£¬£¬£¬£¬£¬¸Ã¹ú¹Ù·½²»ÈÝʹÓüÓÃÜÇ®±Ò¡£¡£¡£¡£¡£Monero(XMR)ÊǶñÒâÍÚ¿óÖÐ×îÊ¢ÐеļÓÃÜÇ®±Ò¡£¡£¡£¡£¡£
https://securelist.com/cryptojacking-report-2022/107898/


¾©¹«Íø°²±¸11010802024551ºÅ