°ÍÎ÷½ðÈÚ¹«Ë¾IuguÊý¾Ý¿âÅäÖÃÃýÎóй¶1.7 TBÊý¾Ý£»£»£»£»£»×êÑÐÈËÔ±³Æ³¬¹ý53Íò¸ö»ªÎªÊÖ»úϰȾJoker¶ñÒâÈí¼þ
°ä²¼¹¦·ò 2021-04-121.°ÍÎ÷½ðÈÚ¹«Ë¾IuguÊý¾Ý¿âÅäÖÃÃýÎóй¶1.7 TBÊý¾Ý

×êÑÐÈËÔ±Bob DiachenkoÓÚÉÏÖÜÈý·¢ÏÖ£¬£¬£¬£¬£¬£¬°ÍÎ÷½ðÈڿƼ¼IuguÒòÊý¾Ý¿â·þÎñÆ÷ÅäÖÃÃýÎóй¶1.7 TBÊý¾Ý¡£¡£¡£¡£¡£¡£¡£Õâ´ÎÊÂÎñй¶ÁË´Ó2013Äêµ½2021ÄêµÄÃô¸ÐÊý¾Ý£¬£¬£¬£¬£¬£¬Ô̺¬¿Í»§µç×ÓÓʼþ¡¢Óû§Ãû¡¢µç»°ºÅÂëºÍµØÖ·¡¢ÂòÂô¼Í¼¡¢ÎĵµºÍÆäËû²ÆÕþ¾ßÌåÐÅÏ¢µÈ¡£¡£¡£¡£¡£¡£¡£IuguÈ·ÈϸÃÊý¾Ý¿â¶³öÁËԼĪÁ½¸öÓ×ʱ£¬£¬£¬£¬£¬£¬½öй¶Á˱¸·ÝÊý¾ÝÖÐԼĪ1£¥µÄ¿ÉÓÃÐÅÏ¢£¬£¬£¬£¬£¬£¬Ä¿Ç°Ð¹Â¶µÄÊý¾ÝÒѱ»±£»£»£»£»£»¤ÆðÀ´¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://canaltech.com.br/seguranca/vazamento-expoe-17-tb-de-dados-dos-clientes-da-fintech-brasileira-iugu-na-web-182312/
2.×êÑÐÈËÔ±³Æ³¬¹ý53Íò¸ö»ªÎªÊÖ»úϰȾJoker¶ñÒâÈí¼þ

°²È«¹«Ë¾Doctor Web³Æ³¬¹ý53Íò¸ö»ªÎªÊÖ»úÔÚÆä¹Ù·½É̵êAppGalleryÏÂÔØÁËÊÜJoker£¨±ðÃûBread£©¶ñÒâÈí¼þϰȾµÄÀûÓᣡ£¡£¡£¡£¡£¡£Joker¿É±»ÓÃÀ´Ö´ÐÐ¿í·ºµÄ¶ñÒâ²Ù×÷£¬£¬£¬£¬£¬£¬Ô̺¬½ûÓÃGoogle Play±£»£»£»£»£»¤·þÎñ¡¢×°ÖöñÒâÀûÓ÷¨Ê½¡¢ÌìÉúÐéαÆÀÂÛºÍÏÔʾ¸æ°×µÈ¡£¡£¡£¡£¡£¡£¡£Éæ¼°µÄÀûÓÃÔ̺¬Ô̺¬Ðé¹¹¼üÅÌ¡¢Ïà»ú¡¢Æô¶¯Æ÷¡¢ÔÚÏßMessenger¡¢ÌùÖ½ÍøÂç¡¢×ÅÉ«·¨Ê½ºÍÓÎÏ·µÈ£¬£¬£¬£¬£¬£¬ÆäÖдóÎÞÊýÀûÓÃÀ´×ÔÓÚͳһλ¿ª·¢ÈËÔ±£¨É½Î÷¿ìÀ´ÅÄÍøÂç¼¼ÊõÓÐÏÞ¹«Ë¾£©¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/116643/malware/huawei-store-joker-malware.html
3.MicrosoftÍŶӷ¢ÏÖºÚ¿ÍÀûÓÃÍøÕ¾µÄÁªÏµ±í·Ö·¢IcedID

MicrosoftÍŶӷ¢ÏÖÐÂÒ»ÂÖ´¹µö¹¥»÷ÀûÓúϷ¨ÍøÕ¾µÄÁªÏµ±íÀ´·Ö·¢ÒøÐÐľÂíIcedID¡£¡£¡£¡£¡£¡£¡£IcedIDÓÚ2017Äê³õ´Î±»·¢ÏÖ£¬£¬£¬£¬£¬£¬¿ÉÇÔȡʹ´¦ºÍ²ÆÕþÐÅÏ¢£¬£¬£¬£¬£¬£¬²¢ÔÚÖ¸±êÍøÂçÉϺáÏòÒÆ¶¯£¬£¬£¬£¬£¬£¬ÒÔ×°ÖÃÀÕË÷Èí¼þTrickbot¡¢QakbotºÍRyukµÈÆäËüpayload¡£¡£¡£¡£¡£¡£¡£Microsoft·¢ÏÖºÚ¿ÍÀûÓúϷ¨ÍøÕ¾µÄÁªÏµ±íÈÆ¹ýÁËÖ¸±êÆóÒµµÄÓʼþÍø¹Ø£¬£¬£¬£¬£¬£¬²¢ÒÔËßËÏÍþвΪÖ÷Ì⣬£¬£¬£¬£¬£¬ÓÕʹÊܺ¦È˵ã»÷ÓʼþÖеÄÖ¤¾ÝÎļþ£¬£¬£¬£¬£¬£¬À´ÏÂÔØ²¢×°ÖÃIcedID¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/attackers-deliver-legal-threats-icedid-malware-via-contact-forms/
4.ÒÁÀʵÄÄÉ̹×Ⱥ˵çÕ¾·¢×̱äÂÒ£¬£¬£¬£¬£¬£¬»òÎªÍøÂç¹¥»÷ËùÖÂ

ÉÏÖÜÈÕ£¬£¬£¬£¬£¬£¬ÒÁÀʵÄÄÉ̹×È£¨Natanz£©ºËµçÕ¾²úÉúÁ˱äÂÒ£¬£¬£¬£¬£¬£¬»òÓëÒÔÉ«ÁÐÓйصÄÍøÂç¹¥»÷ËùÖ¡£¡£¡£¡£¡£¡£¡£ÒÔÉ«ÁеĺڿÍÔøÔÚ2010Ä꿪·¢Á˶ñÒâÈí¼þStuxnet²¢¹¥»÷ÁËÄÉ̹×ȹ¤³§£¬£¬£¬£¬£¬£¬·ÛËéÁ˸ú˵糧µÄ1000¶ą̀ÀëÐÄÀí¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬ÒÁÀʵ±¾ÖÈÔÔÚµ÷²éÕâÆð±äÂÒ£¬£¬£¬£¬£¬£¬²¢Ö»Ð¹Â©Õâ´Î¹¥»÷ûÓÐÔì³ÉÈκΰܻµ»ò´«È¾¡£¡£¡£¡£¡£¡£¡£µ«¾Ý±¾µØÃ½Ì屨·£¬£¬£¬£¬£¬£¬ÊÂÎñµÄÓ°ÏìºÍÔì³ÉµÄËðʧ±ÈÒÁÀʵ±¾ÖËù¹«¿ªµÄÇé¿öÒªÑϳÁµÃ¶à¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/116668/cyber-warfare-2/iran-accident-natanz-cyberattack.html
5.Analyst1°ä²¼ÓйØÀÕË÷ÍÅ»ïÁªÃËCartelµÄ·ÖÎö»ã±¨

Analyst1°ä²¼ÁËÓйØÀÕË÷ÍÅ»ïÁªÃËCartelµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£CartelÁªÅ£¶úÒªÔ̺¬ËĸöÀÕË÷ÍŻTwisted Spider¡¢Viking Spider¡¢Wizard SpiderºÍLockbit¡£¡£¡£¡£¡£¡£¡£ÆäÖУ¬£¬£¬£¬£¬£¬Twisted SpiderÒÑÀûÓÃEgregorºÍMazeÀÕË÷Èí¼þ»ñÀûÖÁÉÙ7500ÍòÃÀÔª£»£»£»£»£»Viking SpiderÓÚ2019Äê12ÔÂÆðÍ·»îÔ¾£¬£¬£¬£¬£¬£¬ÀûÓÃÁËRagnar Locker²¢Ö§³ÖDDoS¹¥»÷£»£»£»£»£»Wizard SpiderÓÚ2018Äê8ÔÂÆðÍ·»îÔ¾£¬£¬£¬£¬£¬£¬Ê¹ÓÃÁËGogalocker¡¢MegaCortex¡¢RyukºÍConti£»£»£»£»£»LockbitÓÚ2020Äê9Ô³õ´Î³öÏÖ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://analyst1.com/blog/ransom-mafia-analysis-of-the-worlds-first-ransomware-cartel
6.Unit 42°ä²¼ÓйضñÒâÈí¼þEmotet¹¥»÷°¸ÀýµÄ×êÑл㱨

Unit 42°ä²¼ÁËÓйضñÒâÈí¼þEmotet¹¥»÷°¸ÀýµÄ×êÑл㱨¡£¡£¡£¡£¡£¡£¡£¸Ã»ã±¨·ÖÎöÁËEmotetµÄÖØÒªÂß¼¡¢¼ÓÃÜ»úÔìºÍC2·þÎñÆ÷µÈ¼¼Êõ¡£¡£¡£¡£¡£¡£¡£EmotetÒÑÔÚÒ°±í»îÔ¾ÊýÄ꣬£¬£¬£¬£¬£¬Ö±ÖÁ2021Äê1Ô±»·¨Âɲ¿Ãŵ·»ÙÆä»ù´¡ÉèÊ©¡£¡£¡£¡£¡£¡£¡£Òò¶ø£¬£¬£¬£¬£¬£¬Æä¹¥»÷Õ½ÊõºÍ¼¼ÊõËæ×Ź¦·òµÄÍÆÒÆ¶ø²»ÐÝ·¢Õ¹£¬£¬£¬£¬£¬£¬¹¥»÷Á´ÒѾ¼«¶È³ÉÊìÇÒ¸´ÔÓ¡£¡£¡£¡£¡£¡£¡£¸Ã×êÑл㱨ÌṩÁËÒ»¸öEmotet C2ͨѶʾÀý£¬£¬£¬£¬£¬£¬Ô̺¬ÁËC2·þÎñÆ÷IPÑ¡ÔñºÍÊý¾Ý¼ÓÃÜ£¬£¬£¬£¬£¬£¬Äܹ»¸üºÃµØÏàʶEmotetÀûÓÃÕâÖÖ¸´Ôӵļ¼ÊõÀ´Èƹý°²È«¼ì²âµÄ·½Ê½¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://unit42.paloaltonetworks.com/emotet-command-and-control/


¾©¹«Íø°²±¸11010802024551ºÅ