Å·ÖÞÒøÐÐÖÎÀí¾ÖµÄExchange·þÎñÆ÷Ôâµ½¹¥»÷£»£»£»£» £»£»£»£»FlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬£¬£¬£¬£¬ £¬²¢ÓÀÔ¶ÖÕ³¡Ê¹ÓÃAccellio

°ä²¼¹¦·ò 2021-03-09

1.FlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬£¬£¬£¬£¬ £¬²¢ÓÀÔ¶ÖÕ³¡Ê¹ÓÃAccellion


1.jpg


×ܲ¿Î»ÓÚÃÜЪ¸ùÖݵÄFlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬£¬£¬£¬£¬ £¬²¢°ä·¢½«ÓÀÔ¶ÖÕ³¡Ê¹ÓÃAccellion¡£¡£¡£¡£¡£¡£¸ÃÒøÐÐÊÇFlagstar BancorpµÄ×Ó¹«Ë¾£¬£¬£¬£¬£¬£¬£¬ £¬ÎªÃÀ¹ú¿Í»§ÌṩµÖѺºÍÆäËû½ðÈÚ·þÎñ¡£¡£¡£¡£¡£¡£Õâ´ÎÊý¾Ýй¶ÊÇÓÉÓÚÆäʹÓõĴ«Êä´óÎļþµÄAccellion FTAÎļþ¹²Ïí·¨Ê½´æÔÚÒѱ»ÔÚÒ°ÀûÓõÄ0day¶øµ¼ÖµÄ¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯³ÆÆäÓÚ2021Äê1ÔÂ22ÈÕµÃÖª´ËÊÂÎñ£¬£¬£¬£¬£¬£¬£¬ £¬Ä¿Ç°²¢Î´Ð¹Â©Ó°ÏìµÄ¿Í»§ÊýÁ¿ÒÔ¼°Ð¹Â¶Êý¾ÝµÄÖÖÀ࣬£¬£¬£¬£¬£¬£¬ £¬µ«°µÊ¾Flagstar½«ÓÀÔ¶ÖÕ³¡Ê¹ÓÃAccellionÎļþ¹²ÏíÆ½Ì¨¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/flagstar-bank-customer-data-breached-through-accellion-hack/


2.ÃÀ¹ú˾·¨²¿ÖÒ¸æ¼ÙÒâÖÝÀ͹¤¾ÖÇÔÈ¡¹«ÃñÐÅÏ¢µÄ»î¶¯


2.jpg


ÃÀ¹ú˾·¨²¿ÖÒ¸æ¼ÙÒâÖÝÀ͹¤¾Ö£¨SWA£©ÇÔÈ¡¹«ÃñµÄÓ×ÎÒÐÅÏ¢ºÍÆäËûÃô¸ÐÊý¾ÝµÄ»î¶¯¡£¡£¡£¡£¡£¡£ÔÚ´ËÀà»î¶¯ÖУ¬£¬£¬£¬£¬£¬£¬ £¬ºÚ¿Í´î½¨ÁËαÔìµÄSWAÍøÕ¾£¬£¬£¬£¬£¬£¬£¬ £¬²¢·¢ËÍÔ̺¬Î±ÔìSWAÍøÕ¾Á´½ÓµÄÀ¬»ø¶ÌÐź͵ç×ÓÓʼþ£¬£¬£¬£¬£¬£¬£¬ £¬À´Êèµ¼Êܺ¦Õß½Ó¼ûÕâÐ©ÍøÕ¾¡£¡£¡£¡£¡£¡£Ö®ºóÓÕʹ¹«ÃñÔÚ¸ÃÍøÕ¾ÉêÇëʧҵ¾ÈÖú£¬£¬£¬£¬£¬£¬£¬ £¬ÒÔÇÔÈ¡ÆäÓ×ÎÒÉí·ÝÐÅÏ¢µÈÊý¾Ý¡£¡£¡£¡£¡£¡£×îºó£¬£¬£¬£¬£¬£¬£¬ £¬ºÚ¿Í»áÀûÓÃÍøÂçµ½µÄÐÅÏ¢À´½øÐÐÉí·ÝµÁÓᣡ£¡£¡£¡£¡£ÃÀ¹ú˾·¨²¿°µÊ¾ÔÚÃÀ¹úÓÐ1000ÍòʧҵÕߣ¬£¬£¬£¬£¬£¬£¬ £¬ÌáÐÑËûÃǸõ±°ÑÎÈÍøÂç´¹µö¹¥»÷¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/u-s-doj-unemployment-benefit-websites-steal-data/    


3.½Ý¿ËÊ×¶¼¹«¹²ÖÎÀíϵͳÔâ´ó¹æÄ£¹¥»÷£¬£¬£¬£¬£¬£¬£¬ £¬ÊÂÎñÔÚµ÷²éÖÐ


3.jpg


½Ý¿ËµÄÊ×¶¼²¼À­¸ñÊеĹ«¹²ÖÎÀíϵͳÔâ´ó¹æÄ£¹¥»÷£¬£¬£¬£¬£¬£¬£¬ £¬ÊÂÎñÔÚµ÷²éÖС£¡£¡£¡£¡£¡£¸ÃÊÐÊг¤den¨§k H?ib°µÊ¾£¬£¬£¬£¬£¬£¬£¬ £¬Æä¹«¹²ÖÎÀíϵͳÔâµ½¹¥»÷£¬£¬£¬£¬£¬£¬£¬ £¬·þÎñÆ÷ÏÕЩûÓÐÊܵ½ÇÖº¦£¬£¬£¬£¬£¬£¬£¬ £¬µ«µç×ÓÓʼþϵͳÒѱ»¹Ø¹Ø¡£¡£¡£¡£¡£¡£½Ý¿ËÀ͹¤ºÍÉç»áÊÂÎñ²¿³¤JanaMal¨¢?ov¨¢°µÊ¾¸Ã²¿Ò²Ôâµ½ÁËÏ®»÷£¬£¬£¬£¬£¬£¬£¬ £¬µ«²¢Î´Ìṩ¸ü¶àϸ½Ú¡£¡£¡£¡£¡£¡£¾Ý±¨Â·£¬£¬£¬£¬£¬£¬£¬ £¬¸ÃÊйÙÔ±ÒÑÏò½Ý¿Ë¹ú¶ÈÍøÂçºÍÐÅÏ¢¾Ö£¨NUKIB£©»ã±¨´ËÊÂÎñ£¬£¬£¬£¬£¬£¬£¬ £¬Ä¿Ç°ÉÐÎÞ¼£ÏóÅú×¢ÊÇË­½øÐÐÁËÕâ´Î¹¥»÷¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.euronews.com/2021/03/05/czech-officials-in-prague-hit-by-massive-cyber-attack


4.Å·ÖÞÒøÐÐÖÎÀí¾ÖµÄExchange·þÎñÆ÷Ôâµ½¹¥»÷£¬£¬£¬£¬£¬£¬£¬ £¬Óʼþϵͳ¹Ø¹Ø


4.jpg


Å·ÖÞÒøÐÐÖÎÀí¾Ö£¨EBA£©³ÆÆäExchange·þÎñÆ÷Ôâµ½¹¥»÷£¬£¬£¬£¬£¬£¬£¬ £¬ËùÓÐÓʼþϵͳÒѾ­¹Ø¹Ø¡£¡£¡£¡£¡£¡£EBAÊÇÅ·ÖÞ½ðÈÚ¼à¹ÜϵͳµÄÒ»²¿ÃÅ£¬£¬£¬£¬£¬£¬£¬ £¬ËüÕÆ¹Ü¼à¶½Å·ÃËÒøÐÐÒµµÄÕûÌåÓÐÐòÔË×÷¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬£¬ £¬¸ÃÊÂÎñÈÔÔÚµ÷²éÖУ¬£¬£¬£¬£¬£¬£¬ £¬Éв»È·¶¨ºÚ¿Í½Ó¼ûÁËʲôÊý¾Ý¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯ÔÚÉÏÖÜÈյijõ´ëÊ©²é³Æ£¬£¬£¬£¬£¬£¬£¬ £¬¹¥»÷Õß¿ÉÄÜÒѾ­½Ó¼ûÁË´æ´¢ÔÚµç×ÓÓʼþ·þÎñÆ÷ÉϵÄÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£¡£µ«ÔÚ±¾ÖÜÒ»µÄ²¹³ä¸üÐÂÖаµÊ¾£¬£¬£¬£¬£¬£¬£¬ £¬µç×Óȡ֤¹ý³ÌÖÐûÓз¢ÏÖÊý¾Ýй¶µÄ¼£Ï󡣡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/european-banking-authority-discloses-exchange-server-hack/


5.Motus°ä²¼ÓйØ2021ÄêÒÔÀ´Ô¶³Ì¹¤×÷Ç÷ÏòµÄ·ÖÎö»ã±¨


5.jpg


Motus°ä²¼ÁËÓйØ2021ÄêÒÔÀ´Ô¶³Ì¹¤×÷Ç÷ÏòµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£»ã±¨·¢ÏÖ£¬£¬£¬£¬£¬£¬£¬ £¬Èç½ñ£¬£¬£¬£¬£¬£¬£¬ £¬½«½ü56£¥µÄÔ±¹¤ÔÚ½øÐÐÓëÔ¶³Ì¼æÈݵŤ×÷£¬£¬£¬£¬£¬£¬£¬ £¬67£¥µÄÆóÒµµ«Ô¸¾Ó¼Ò¹¤×÷µÄÕþ²ß¿ÉÄܳ־ûòÓÀÔ¶µØÎ¬³ÖÏÂÈ¥¡£¡£¡£¡£¡£¡£¸Ã»ã±¨»¹ÏÔʾ£¬£¬£¬£¬£¬£¬£¬ £¬ÓÐ83£¥µÄ¹«Ë¾¸¨µ¼Õß°µÊ¾ËûÃǵÄ×éÖ¯Òѳɹ¦×ªÒƵ½Ô¶³Ì¹¤×÷¡£¡£¡£¡£¡£¡£¶ø68%µÄÕÐÆ¸¾­ÀíÒÔΪ£¬£¬£¬£¬£¬£¬£¬ £¬Ëæ×ʦ·òµÄÍÆÒÆ£¬£¬£¬£¬£¬£¬£¬ £¬Ô¶³Ì¹¤×÷±äµÃÔ½À´Ô½ÈÝÒ×£¬£¬£¬£¬£¬£¬£¬ £¬³ÖÕâÖÖ¸ÅÏëµÄÈËÊýÏà½Ï2020Äê6ÔÂÔö³¤ÁË14%¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.motus.com/remote-work-policies-to-remain/


6.Group-IB°ä²¼2020-2021ÄêÀÕË÷Èí¼þµÄ·ÖÎö»ã±¨


6.jpg


Group-IB°ä²¼ÁË2020-2021ÄêÀÕË÷Èí¼þµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£»ã±¨Ö¸³ö£¬£¬£¬£¬£¬£¬£¬ £¬ÀÕË÷Èí¼þ¹¥»÷ÔÚÈ¥ÄêÔö³¤ÁËÒ»±¶ÒÔÉÏ£¬£¬£¬£¬£¬£¬£¬ £¬¹æÄ£ºÍ¸´ÔÓÐÔ¾ù³ÊÉÏÉýÇ÷Ïò¡£¡£¡£¡£¡£¡£ÀÕË÷Èí¼þÍÅ»ïµÄÖ§³ö¾ùÔÈÔÚ1µ½200ÍòÃÀÔªÖ®¼ä£¬£¬£¬£¬£¬£¬£¬ £¬³öÏÖÁ˺ܶàеÄ×éÖ¯£¬£¬£¬£¬£¬£¬£¬ £¬ÀýÈçonti¡¢EgregorºÍDarkSide£¬£¬£¬£¬£¬£¬£¬ £¬ËûÃÇÖØÒªÕë¶Ô±±ÃÀºÍÅ·Ö޵ĴóÐ͹«Ë¾¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬ £¬È¥ÄêµÄ¹¥»÷ÊýÁ¿Ôö³¤ÁË150£¥£¬£¬£¬£¬£¬£¬£¬ £¬¾ùÔÈÊê½ðÔö³¤ÁËÁ½±¶£¬£¬£¬£¬£¬£¬£¬ £¬´ïµ½170000ÃÀÔª£¬£¬£¬£¬£¬£¬£¬ £¬¾ùÔÈÔì³ÉÁË18ÌìµÄÍ£»£»£»£» £»£»£»£»ú¹¦·ò¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/resources/threat-research/ransomware-2021.html