ExchangeÖжϵ¼ÖÂÓû§ÎÞ·¨·¢ËÍÓʼþ²¢´¥·¢503ÃýÎó
°ä²¼¹¦·ò 2023-07-191¡¢ExchangeÖжϵ¼ÖÂÓû§ÎÞ·¨·¢ËÍÓʼþ²¢´¥·¢503ÃýÎó
¾Ý7ÔÂ18ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬MicrosoftÔÚµ÷²é³ÖÐøµÄExchange OnlineÖжÏÊÂÎñ¡£¡£¡£¡£¡£Microsoft³Æ£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚ×î½ü¶Ôfree/busy»ù´¡ÉèÊ©½øÐÐÁ˸ü¸Ä£¬£¬£¬£¬£¬£¬£¬µ¼Ö²¿ÃÅÓû§ÎÞ·¨·¢Ë͵ç×ÓÓʼþ¡£¡£¡£¡£¡£¸ÃÊÂÎñÓ°ÏìÁËÃÀ¹ú¡¢Å·ÖÞ¡¢Ó¡¶ÈºÍÓ¢¹úµÄÓû§¡£¡£¡£¡£¡£¾ßÌåÀ´Ëµ£¬£¬£¬£¬£¬£¬£¬ÊÜÓ°ÏìÓû§ÔÚ·¢ËÍÓʼþʱ¿ÉÄÜ»áÓöµ½ÎÊÌ⣬£¬£¬£¬£¬£¬£¬²¢ÏÔʾ¡°503 5.5.1ÃýÎóµÄºÅÁîÐòÁÓ×±µÄÃýÎóÌáÐÑ¡£¡£¡£¡£¡£¾ÝÃÀ¹ú¶«²¿¹¦·ò7ÔÂ18ÈÕ06:39¸üУ¬£¬£¬£¬£¬£¬£¬Î¢Èí°µÊ¾Öжϵĵ××ÓÔÒòÒѵõ½½â¾ö£¬£¬£¬£¬£¬£¬£¬µ«ÈÔÓÐЧ»§·´Ó³ÔÚ·¢ËÍÓʼþʱ´æÔÚÎÊÌâ¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/microsoft/microsoft-exchange-online-hit-by-new-outage-blocking-emails/
2¡¢Å²Íþ¹«Ë¾TomraÔâµ½´ó¹æÄ£¹¥»÷²¿ÃÅϵÍÂäÙʱ¹Ø¹Ø
ýÌå7ÔÂ18Èճƣ¬£¬£¬£¬£¬£¬£¬Å²Íþ¹«Ë¾Tomraй©ÆäÔâµ½ÁË´ó¹æÄ£ÍøÂç¹¥»÷¡£¡£¡£¡£¡£ÕâÊÇÒ»¼Ò»ØÊպͲɿó¹«Ë¾£¬£¬£¬£¬£¬£¬£¬ÔÚ2022ÄêµÄ½»Ò×¶î´ïµ½12ÒÚÃÀÔª¡£¡£¡£¡£¡£¹¥»÷ʼÓÚÉÏÖÜÄ©7ÔÂ16ÈÕ£¬£¬£¬£¬£¬£¬£¬ÎªÁ˶ôÔì¹¥»÷£¬£¬£¬£¬£¬£¬£¬Tomra¹Ø¹ØÁ˲¿ÃÅ·þÎñ¡£¡£¡£¡£¡£ÔÚ¼¯ÍŲãÃæ£¬£¬£¬£¬£¬£¬£¬ÆäÄÚ²¿IT·þÎñºÍ²¿Ãźó¶ÜÀûÓÃÒÀÈ»´¦ÓÚÀëÏß״̬£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÁ˹©¸øÁ´ÖÎÀí£¬£¬£¬£¬£¬£¬£¬ÖØÒªµÄ°ì¹«µØÖ·´¦ÓÚÀëÏß״̬£¬£¬£¬£¬£¬£¬£¬Ô±¹¤±»ÒªÇóÔ¶³Ì°ì¹«¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬£¬ÉÐÎÞºÚ¿ÍÍÅ»ïÐû³ÆÎª´ËÊÂÕÆ¹Ü¡£¡£¡£¡£¡£
https://www.theregister.com/2023/07/18/tomra_cyberattack/
3¡¢WordfenceÅû¶ÀûÓÃWPÖ§¸¶²å¼þ·ì϶½Ù³ÖÍøÕ¾µÄ¹¥»÷
7ÔÂ17ÈÕ£¬£¬£¬£¬£¬£¬£¬WordfenceÅû¶ÁËÀûÓÃWordPress WooCommerce Payments²å¼þÖзì϶µÄ´ó¹æÄ£¹¥»÷»î¶¯¡£¡£¡£¡£¡£¹¥»÷ÆðÍ·ÓÚ7ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬£¬²¢ÔÚÖÜÁù´ïµ½·åÖµ£¬£¬£¬£¬£¬£¬£¬Õë¶Ô15.7Íò¸öÍøÕ¾ÌáÒéÁË130Íò´Î¹¥»÷¡£¡£¡£¡£¡£Õâ´Î»î¶¯ÀûÓÃÁË3ÔÂ23ÈÕ±»½¨¸´µÄ·ì϶CVE-2023-28121£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÀûÓø÷ì϶ÔÚÖ¸±êÉ豸ÉÏ×°ÖÃWP Console²å¼þ»ò´´½¨ÖÎÀíÔ¹ØË»§¡£¡£¡£¡£¡£¶ÔÓÚ×°ÖÃÁËWP ConsoleµÄϵͳ£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÀûÓòå¼þÖ´ÐÐPHP´úÂ룬£¬£¬£¬£¬£¬£¬ÔÚ·þÎñÆ÷ÉÏ×°ÖÃÎļþÉÏ´«·¨Ê½£¬£¬£¬£¬£¬£¬£¬¼´±ã·ì϶±»½¨¸´ºó£¬£¬£¬£¬£¬£¬£¬¸Ã·¨Ê½ÈÔ¿ÉÓÃ×÷ºóÃÅ¡£¡£¡£¡£¡£
https://www.wordfence.com/blog/2023/07/massive-targeted-exploit-campaign-against-woocommerce-payments-underway/
4¡¢vpnMentor·¢ÏÖ¶à¸öÔ¼»áÀûÓõÄÔ¼230Íò±Ê¼Í¼й¶
vpnMentorÔÚ7ÔÂ17ÈÕ³ÆÆäÒ»¸öÔ̺¬Ô¼Äª230Íò±Ê¼Í¼µÄÎÞÃÜÂë±£»£»£»£»£»¤µÄÊý¾Ý¿â¡£¡£¡£¡£¡£½øÒ»´ëÊ©²éÏÔʾ£¬£¬£¬£¬£¬£¬£¬ÕâЩÊý¾ÝÉæ¼°¶à¸öÔ¼»áÀûÓ㬣¬£¬£¬£¬£¬£¬¿ÉÄÜÓÉÓÚÕâЩÀûÓÃÊôÓÚͳһ¸ö¹«Ë¾£¬£¬£¬£¬£¬£¬£¬»òÓÉͳһ¹«Ë¾¿ª·¢¡£¡£¡£¡£¡£Ð¹Â¶¼Í¼¹²2357896Ìõ£¬£¬£¬£¬£¬£¬£¬×Ü´óÓ×340.6 GB£¬£¬£¬£¬£¬£¬£¬Ô̺¬ÐÕÃû¡¢Õʺš¢µç×ÓÓʼþºÍÃÜÂëµÈÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬ÉõÖÁ»¹ÓÐ969571ÕÅÓû§Í¼Ïñ¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬¸ÃÊý¾Ý¿â»¹Ô̺¬¹«¿ªµÄSDKÎļþ£¬£¬£¬£¬£¬£¬£¬Õâ¿ÉÄܻᱻ¹¥»÷ÕßÓÃÓÚ´´½¨´øÓаµ²Ø¶ñÒâÖ°ÄÜ»ò·ì϶µÄÀûÓ÷¨Ê½¡£¡£¡£¡£¡£
https://www.vpnmentor.com/news/report-419dating-breach/
5¡¢JumpCloud¹«¿ªÆä½üÆÚÔâµ½µÄ°²È«ÊÂÎñµÄϸ½ÚÐÅÏ¢
ýÌå7ÔÂ18Èճƣ¬£¬£¬£¬£¬£¬£¬ÃÀ¹úÆóÒµÈí¼þ¹«Ë¾JumpCloud¹«¿ªÁËÆä½üÆÚÔâµ½µÄ°²È«ÊÂÎñµÄÏêÇé¡£¡£¡£¡£¡£Ô¼ÄªÒ»¸öÔÂǰ£¬£¬£¬£¬£¬£¬£¬Ò»¸öÓɹú¶ÈÖ§³ÖµÄºÚ¿ÍÍÅ»ïÈëÇÖÁËÆäϵͳ¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ6ÔÂ27ÈÕ·¢ÏÖÁËÕâÒ»ÊÂÎñ£¬£¬£¬£¬£¬£¬£¬¼´¹¥»÷Õßͨ¹ýÓã²æÊ½´¹µö¹¥»÷ÈëÇÔìäϵͳһÖܺ󡣡£¡£¡£¡£Ö®ºó¶Ô¸ÃÊÂÎñ·¢Õ¹µ÷²é£¬£¬£¬£¬£¬£¬£¬·¢ÏÖÕâ´Î¹¥»÷µÄÕë¶ÔÐÔ¼«Ç¿£¬£¬£¬£¬£¬£¬£¬Ö»Õë¶ÔÌØ¶¨¿Í»§£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß½«Êý¾Ý×¢ÈëÁËJumpCloudµÄºÅÁî¿ò¼Ü¡£¡£¡£¡£¡£ÎªÁËÓ¦¶ÔÕâ´Î¹¥»÷£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾¾ö¶¨¸ü»»APIÃÜÔ¿²¢³Á½¨±»ÈëÇֵĻù´¡ÉèÊ©¡£¡£¡£¡£¡£
https://securityaffairs.com/148547/apt/jumpcloud-nation-state-actor-attack.html
6¡¢FACCT°ä²¼¹ØÓÚRedCurl×î½ü¹¥»÷ºÍ¹¤¾ßµÄ·ÖÎö»ã±¨
7ÔÂ17ÈÕ£¬£¬£¬£¬£¬£¬£¬FACCT°ä²¼»ã±¨³Æ£¬£¬£¬£¬£¬£¬£¬RedCurl½üÆÚ¹¥»÷ÁËÒ»¼Ò¶íÂÞ˹µÄ´óÐÍÒøÐкÍÒ»¼Ò°Ä´óÀûÑǵĹ«Ë¾¡£¡£¡£¡£¡£FAACT°µÊ¾£¬£¬£¬£¬£¬£¬£¬RedCurlÔøÁ½´Î³¢ÊÔ¹¥»÷Õâ¼Ò¶íÂÞË¹ÒøÐУ¬£¬£¬£¬£¬£¬£¬ÔÚ2022Äê11ÔµĵÚÒ»´Î³¢ÊÔÖУ¬£¬£¬£¬£¬£¬£¬ËûÃÇʹÓÃÁË´¹µöÓʼþ£¬£¬£¬£¬£¬£¬£¬µ«Ê§°ÜÁË¡£¡£¡£¡£¡£ÔÚ½ñÄê5Ô£¬£¬£¬£¬£¬£¬£¬¸ÃÍÅ»ï³É¹¦ÈëÇÖÁ˸ÃÒøÐеÄÒ»Ãû³Ð°üÉÌ£¬£¬£¬£¬£¬£¬£¬ÒÔÈëÇÖÖ¸±êµÄ»ù´¡ÉèÊ©¡£¡£¡£¡£¡£6Ô£¬£¬£¬£¬£¬£¬£¬RedCurlÔÚ¶Ô°Ä´óÀûÑǹ«Ë¾µÄ¹¥»÷ÖÐʹÓÃÁËÒ»ÑùµÄÕ½ÊõºÍ¹¤¾ß¡£¡£¡£¡£¡£×êÑÐÈËÔ±»¹·¢ÏÖÁËÕâЩ»î¶¯Ê¹ÓõÄй¤¾ßRedCurl.SimpleDownloader£¬£¬£¬£¬£¬£¬£¬Ä¿Ç°ÈÔÔÚ¿ª·¢ÖС£¡£¡£¡£¡£
https://www.facct.ru/blog/redcurl-2023/


¾©¹«Íø°²±¸11010802024551ºÅ