×êÑÐÈËÔ±·¢ÏÖBabuk LockerÀÕË÷Èí¼þµÄ¹¹½¨Æ÷ÒÑй¶£»£»£»£» £»£»£»DreamHostÔÆÊý¾Ý¿âÅäÖÃÃýÎóй¶8ÒÚÌõÓû§Óйؼͼ

°ä²¼¹¦·ò 2021-06-28

1.΢Èí³ÆÆäÔâµ½SolarWinds¹¥»÷±³ºóÍÅ»ïNobeliumµÄÈëÇÖ


1.jpg


΢Èí³ÆÆäÔâµ½Á˺ڿÍÍÅ»ïNobeliumµÄ¹¥»÷¡£¡£¡£¡£ ¡£NobeliumÊǶíÂÞ˹¹ú¶ÈÔÞÖúµÄºÚ¿Í×éÖ¯£¬ £¬£¬£¬ £¬ÓëSolarWinds¹©¸øÁ´¹¥»÷Óйأ¬ £¬£¬£¬ £¬Î¢Èí°µÊ¾¸ÃºÚ¿Í×éÖ¯Ò»ÏòÔÚ½øÐÐÃÜÂëÅçÈ÷¹¥»÷ºÍ±©Á¦¹¥»÷£¬ £¬£¬£¬ £¬ÒÔ»ñÈ¡¶Ô¹«Ë¾ÍøÂçµÄ½Ó¼ûȨÏÞ¡£¡£¡£¡£ ¡£Í¨¹ýµ÷²é£¬ £¬£¬£¬ £¬Î¢ÈíÔÚÆä¿Í»§Ö§³Ö´úÀíµÄÍÆËã»úÉϼì²âµ½Ò»¸öÐÅÏ¢ÇÔȡľÂí£¬ £¬£¬£¬ £¬ÇÔÈ¡Á˲¿Ãſͻ§µÄÓ×ÎÒÐÅÏ¢£¬ £¬£¬£¬ £¬¶øNobelium½«Ê¹ÓÃÕâЩÐÅÏ¢¶Ô΢ÈíµÄ¿Í»§½øÐÐÓÐÕë¶ÔÐÔµÄÍøÂç´¹µö¹¥»÷¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/nobelium-hackers-accessed-microsoft-customer-support-tools/


2.×êÑÐÈËÔ±·¢ÏÖBabuk LockerÀÕË÷Èí¼þµÄ¹¹½¨Æ÷ÒÑй¶


2.jpg


×êÑÐÈËÔ±ÔÚÍøÉÏ·¢ÏÖÁËBabuk LockerÀÕË÷Èí¼þµÄ¹¹½¨Æ÷£¨builder£©£¬ £¬£¬£¬ £¬ÈκÎDZÔڵķ¸×ïÍŻﶼÏÕЩÎÞÐ迪·¢¾ÍÄܹ»ÇáËÉ»ñµÃ¸ß¼¶ÀÕË÷Èí¼þ¡£¡£¡£¡£ ¡£¸Ãbuilder¿ÉÓÃÓÚ´´½¨×Ô½ç˵°æ±¾µÄBabuk LockerÀÕË÷Èí¼þ£¬ £¬£¬£¬ £¬À´¼ÓÃÜÍйÜÔÚWindowsϵͳ¡¢»ùÓÚARMµÄÍøÂç´æ´¢ÉϵÄÎļþÏνÓ(NAS)É豸ºÍVMWare ESXi·þÎñÆ÷£¬ £¬£¬£¬ £¬²¢ÌìÉú½âÃÜÆ÷¡£¡£¡£¡£ ¡£Ä¿Ç°£¬ £¬£¬£¬ £¬Éв»Ã÷ÏÔbuilderй¶ÊÇÓÉÓÚÔÚÊÛÂô¸øµÚÈý·½Ê±ÂòÂôʧ°Ü£¬ £¬£¬£¬ £¬»¹ÊDZ»¾ºÕùµÐÊÖ»ò°²È«×êÑÐÈËÔ±¹«¿ªµÄ¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/builder-for-babuk-locker-ransomware-leaked-online/


3.ÐÂÀÕË÷ÍÅ»ïHiveÔÚ°µÍø¹«¿ª¼ÓÄôóAltus GroupµÄÐÅÏ¢


3.jpg


ÐÂÀÕË÷ÍÅ»ïHiveÔÚ°µÍø¹«¿ª¼ÓÄôóóÒ׵زúÈí¼þ½â¾ö¹æ»®¹«Ë¾Altus GroupµÄÐÅÏ¢¡£¡£¡£¡£ ¡£¸Ã¹«Ë¾ÓÚ6ÔÂ14ÈÕ°ä·¢ÆäÊý¾Ý±»Ð¹Â¶£¬ £¬£¬£¬ £¬Ò»ÖܺóÓÖ³ÆÃ»ÓÐÖ¤¾ÝÅú×¢ÆäÊܵ½ÁËÓ°Ïì¡£¡£¡£¡£ ¡£×êÑÐÈËÔ±·¢ÏÔìäºó¶ÜϵͳºÍͨѶϵͳÖжϣ¬ £¬£¬£¬ £¬¶øÐÂÀÕË÷ÍÅ»ïHiveÔÚËüµÄÊý¾ÝÐ¹Â¶ÍøÕ¾HiveLeaksÉÏ´´½¨ÁËΨһµÄÒ»¸öÌõ¿î£¬ £¬£¬£¬ £¬¼´Altus Group¡£¡£¡£¡£ ¡£¸ÃÍÅ»ï°ä²¼µÄй¶ÎļþÑù±¾Ô̺¬ÒµÎñÊý¾ÝºÍÎĵµ£¬ £¬£¬£¬ £¬ÒÔ¼°ArgusÖ¤ÊéºÍ¿ª·¢ÓйصÄÎļþ¡£¡£¡£¡£ ¡£Ä¿Ç°£¬ £¬£¬£¬ £¬Altus GroupÉÐδ¶Ô´ËÊÂÎñ×÷³ö»ØÓ¦¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://cybernews.com/news/new-ransomware-group-hive-leaks-altus-group-sample-files/


4.DreamHostÔÆÊý¾Ý¿âÅäÖÃÃýÎóй¶8ÒÚÌõÓû§Óйؼͼ


4.jpg


Website Planet·¢ÏÖÃÀ¹úÍйܷþÎñÌṩÉÌDreamHostµÄÔÆÊý¾Ý¿âÅäÖÃÃýÎóй¶86GBµÄ8.14ÒÚÌõWordPressÓû§Óйؼͼ¡£¡£¡£¡£ ¡£ÕâЩÊý¾ÝËÆºõÄܹ»×·Òäµ½2018Ä꣬ £¬£¬£¬ £¬Ô̺¬WordPressµÇ¼µØÎ»URL¡¢ÐÕÃû¡¢µç×ÓÓʼþµØÖ·¡¢Óû§Ãû¡¢½ÇÉ«¡¢Ö÷»úIPµØÖ·¡¢¹¦·ò´ÁÒÔ¼°ÅäÖúͰ²È«ÐÅÏ¢¡£¡£¡£¡£ ¡£´Ë±í£¬ £¬£¬£¬ £¬²¿ÃÅÐÅÏ¢»¹ÓëʹÓÃ.govºÍ.eduÓʼþµØÖ·µÄÓû§ÓйØ¡£¡£¡£¡£ ¡£DreamHostÔÚÊÕµ½Êý¾Ýй¶֪ͨºóµÄÊýÓ×ʱÄÚÒѾ­½«¸ÃÊý¾Ý¿â±£»£»£»£» £»£»£»¤ÆðÀ´£¬ £¬£¬£¬ £¬µ«Éв»Ã÷ÏÔÆäÒѾ­Â¶³öÁ˶೤¹¦·ò¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/cloud-database-exposes-800m/


5.GitGuardian°ä²¼2021ÄêGitHubÉÏÊý¾Ýй¶µÄ·ÖÎö»ã±¨


5.jpg


GitGuardian°ä²¼ÁË2021ÄêGitHubÉÏÊý¾Ýй¶µÄ·ÖÎö»ã±¨¡£¡£¡£¡£ ¡£×Ô2017ÄêÒÔÀ´£¬ £¬£¬£¬ £¬GitGuardianÒ»ÏòÔÚɨÃèÔÚGitHubÉϹ«¿ªÌá½»µÄÿһ¸öSecret£¬ £¬£¬£¬ £¬²¢ºâÁ¿Á˹«¹²´æ´¢¿âÖÐÊý¾Ýй¶µÄÇé¿ö¡£¡£¡£¡£ ¡£ÖÁ½ñÓг¬¹ý5000Íò¿ª·¢ÈËԱʹÓÃGitHub£¬ £¬£¬£¬ £¬Ò»ÄêÄÚÓÐ6000Íò¸öн¨µÄ´æ´¢¿â£¬ £¬£¬£¬ £¬Ìá½»´ÎÊý³¬¹ý20ÒڴΡ£¡£¡£¡£ ¡£»ã±¨Ö¸³ö£¬ £¬£¬£¬ £¬¹«¹²GitHubÖÐÊý¾Ýй¶µÄÊýÁ¿Í¬±ÈÔö³¤ÁË20%£¬ £¬£¬£¬ £¬ÆäÖÐ15%µÄÐÂäį´×ÔÓÚ×éÖ¯µÄ¹«¹²´æ´¢¿âÖУ¬ £¬£¬£¬ £¬¶ø85%µÄÐÂäį´×ÔÓÚ¿ª·¢ÈËÔ±µÄÓ×ÎÒ´æ´¢¿âÖС£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://blog.gitguardian.com/state-of-secrets-sprawl-2021/


6.Akamai°ä²¼2020ÄêÕë¶ÔÓÎÏ·ÐÐÒµµÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨


6.jpg


Akamai°ä²¼ÁË2020ÄêÕë¶ÔÓÎÏ·ÐÐÒµµÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£¡£¡£¡£ ¡£»ã±¨Ö¸³ö£¬ £¬£¬£¬ £¬ÔÚCOVID-19ÆÚ¼ä£¬ £¬£¬£¬ £¬Õë¶ÔÊÓÆµÓÎÏ·ÐÐÒµµÄWebÀûÓù¥»÷µÄÔö³¤ËٶȸßÓÚÈÎºÎÆäËûÐÐÒµ£¬ £¬£¬£¬ £¬2020Äê´ËÀ๥»÷±ÈÈ¥Äêͬ±ÈÔö³¤ÁË340%£¬ £¬£¬£¬ £¬¹¥»÷×ÜÊý³¬¹ý2.4ÒڴΡ£¡£¡£¡£ ¡£ÆäÖУ¬ £¬£¬£¬ £¬ÖØÒªµÄ¹¥»÷·½Ê½ÊÇSQL×¢È룬 £¬£¬£¬ £¬Õ¼ËùÓй¥»÷µÄ59%£¬ £¬£¬£¬ £¬Æä´ÎΪ±¾µØÎļþÔ̺¬£¨24%£©¡¢¿çÕ¾¾ç±¾¹¥»÷£¨8%£©ºÍÔ¶³ÌÎļþÔ̺¬£¨7%£©¡£¡£¡£¡£ ¡£´Ë±í£¬ £¬£¬£¬ £¬×²¿â¹¥»÷Ҳͬ±ÈÔö³¤ÁË224%£¬ £¬£¬£¬ £¬×ܼƴﵽ½ü110ÒڴΡ£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.akamai.com/uk/en/multimedia/documents/state-of-the-internet/akamai-state-of-the-internet-gaming-in-a-pandemic.pdf