ºÚ¿ÍÐû³ÆÒÑ»ñµÃ4ÒÚTwitterÓû§ÐÅÏ¢²¢ÊÔͼÏúÊÛ

°ä²¼¹¦·ò 2022-12-27
1¡¢ºÚ¿ÍÐû³ÆÒÑ»ñµÃ4ÒÚTwitterÓû§ÐÅÏ¢²¢ÊÔͼ½«ÆäÏúÊÛ

      

¾ÝýÌå12ÔÂ25ÈÕ±¨Â·£¬ £¬£¬£¬£¬£¬£¬ÃûΪRyushiµÄ¹¥»÷ÕßÔÚºÚ¿ÍÂÛ̳BreachedÉÏÏúÊÛ4ÒÚTwitterÓû§µÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£Âô¼ÒÐû³Æ¸ÃÊý¾Ý¿âÊǸöÈ˵ģ¬ £¬£¬£¬£¬£¬£¬²¢ÌṩÁË1000¸öÕÊ»§µÄÐÅÏ¢×÷ΪÑù±¾£¬ £¬£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬Donald Trump JRºÍBrian KrebsµÈÈË¡£¡£¡£¡£¡£¡£¡£¡£ºÚ¿Í»¹Ô¼ÇëTwitterºÍElon Musk²É°ìÕâЩÊý¾Ý£¬ £¬£¬£¬£¬£¬£¬ÒÔÔ¤·ÀGDPRµÄ· £¿£¿£¿£¿£¿î¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°ÉÐÎÞ·¨ºËʵÂô¼ÒµÄ˵·¨¡£¡£¡£¡£¡£¡£¡£¡£Êý¾Ý¿âÊÛ¼ÛΪ200000ÃÀÔª£¬ £¬£¬£¬£¬£¬£¬¾ÝϤÊÇʹÓÃTwitterÓÚ2022Äê1Ô½¨¸´µÄAPI·ì϶½øÐÐÍøÂçµÄ¡£¡£¡£¡£¡£¡£¡£¡£ÁíÒ»ºÚ¿ÍÒ²³ÆÀûÓô˷ì϶ץȡÁË1700ÍòÓû§µÄÊý¾Ý£¬ £¬£¬£¬£¬£¬£¬µ«ÊDz»»áÏúÊÛ¡£¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/139993/data-breach/twitter-400-million-users-leak.html


2¡¢MetaÒÔ7.25ÒÚÃÀÔªºÍ½âCambridge Analytica¼¯ÌåËßËÏ

      

¾Ý12ÔÂ23ÈÕ±¨Â·£¬ £¬£¬£¬£¬£¬£¬Facebookĸ¹«Ë¾MetaÒÑÔÞ³ÉÖ§¸¶7.25ÒÚÃÀÔª£¬ £¬£¬£¬£¬£¬£¬ÒԺͽâ¸Ã¹«Ë¾ÔÊÐíµÚÈý·½£¨Ô̺¬Cambridge Analytica£©½Ó¼ûÓû§Ó×ÎÒÊý¾ÝµÄ¼¯ÌåËßËÏ¡£¡£¡£¡£¡£¡£¡£¡£Õâ¸æ×´ËÏʼÓÚ2018Ä꣬ £¬£¬£¬£¬£¬£¬ÆäʱFacebookÓû§Ôð¹Ö¸ÃÉç½»ÍøÂçÆ½Ì¨Î¥·´ÒþÖԹ涨£¬ £¬£¬£¬£¬£¬£¬ÓëµÚÈý·½¹²ÏíÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£ËßËϳƣ¬ £¬£¬£¬£¬£¬£¬Cambridge AnalyticaÔÚδ¾­Óû§Ô޳ɵÄÇé¿öÏÂÍøÂçºÍÀûÓÃÁË8700ÍòFacebookÓû§µÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£¾Ý³Æ£¬ £¬£¬£¬£¬£¬£¬ÕâЩÐÅÏ¢±»ÓÃÀ´¿ª·¢Èí¼þÊèµ¼ÃÀ¹úÑ¡ÃñÖ§³ÖÌØÀÊÆÕ¡£¡£¡£¡£¡£¡£¡£¡£2019Äê7Ô£¬ £¬£¬£¬£¬£¬£¬ÃÀ¹úµ±¾ÖÒÔÎóµ¼Óû§ÎªÓɶÔFacebook´¦ÒÔ50ÒÚÃÀÔªµÄ· £¿£¿£¿£¿£¿î¡£¡£¡£¡£¡£¡£¡£¡£Í¬Ô£¬ £¬£¬£¬£¬£¬£¬FacebookÔÞ³ÉÖ§¸¶1ÒÚÃÀÔªÒÔ¸æÖÕÖ¸¿Ø¡£¡£¡£¡£¡£¡£¡£¡£


https://therecord.media/meta-to-settle-cambridge-analytica-class-action-for-725-million/


3¡¢×êÑÐÈËÔ±Åû¶¿ªÔ´²©¿Íƽ̨GhostÖеÄÁ½¸ö°²È«·ì϶

      

ýÌå12ÔÂ22Èճƣ¬ £¬£¬£¬£¬£¬£¬Cisco Talos·¢ÏÖ¿ªÔ´²©¿Íƽ̨GhostÖдæÔÚÁ½¸ö°²È«·ì϶¡£¡£¡£¡£¡£¡£¡£¡£ÆäÖнÏΪÑϳÁµÄÊÇÉí·ÝÈÆ¹ý·ì϶£¨CVE-2022-41654£¬ £¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ9.6£©£¬ £¬£¬£¬£¬£¬£¬ÔÊÐí·ÇÌØÈ¨Óû§£¨¼´»áÔ±£©¶ÔʱÊÂͨѶÉèÖýøÐÐδ¾­ÊÚȨµÄÅú¸Ä¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬ £¬£¬£¬£¬£¬£¬ÍøÕ¾ÖÎÀíԱĬÈÏÇé¿öÏÂÔÚʱÊÂͨѶÖÐ×¢ÈëJavaScriptµÄÄÜÁ¦¿É±»ÀûÓ㬠£¬£¬£¬£¬£¬£¬ÔÚ±à×ëͨѶʱ´¥·¢À´´´½¨ËÁÒâµÄÖÎÀíÔ¹ØË»§¡£¡£¡£¡£¡£¡£¡£¡£ÁíÒ»¸öÊǵǼְÄÜÖеÄö¾Ù·ì϶£¨CVE-2022-41697£©£¬ £¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂÃô¸ÐÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬ £¬£¬£¬£¬£¬£¬GhostÒÑÔÚ×îа汾µÄCMSÉϽâ¾öÁËÕâÁ½¸ö·ì϶¡£¡£¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2022/12/two-new-security-flaws-reported-in.html


4¡¢±ÈÀûʱóÒ×ÒøÐÐDegroof Petercam²úÉúÊý¾Ýй¶

      

¾ÝLe Soir 12ÔÂ22ÈÕ±¨Â·£¬ £¬£¬£¬£¬£¬£¬±ÈÀûʱóÒ×ÒøÐÐDegroof Petercam²úÉúÊý¾Ýй¶£¬ £¬£¬£¬£¬£¬£¬Ó°ÏìÁËÊý°Ù¼Ò±ÈÀûʱµÄ¹«Ë¾¡£¡£¡£¡£¡£¡£¡£¡£¾ÝϤ£¬ £¬£¬£¬£¬£¬£¬¸ÃÒøÐеÄÒ»ÃûÔ±¹¤ÀÄÓÃÆä¶Ô¿Í»§ÐÅÏ¢µÄ½Ó¼ûȨ·¸·¨ÏÂÔØÁ˿ͻ§Îļþ¡£¡£¡£¡£¡£¡£¡£¡£Le SoirµÄ½ãÃÃÆµÂ·RTLÓÚ12ÔÂ9ÈÕÊÕµ½ÒøÐеÄ֪ͨ£¬ £¬£¬£¬£¬£¬£¬³ÆÆäÊý¾ÝÒÑй¶¡£¡£¡£¡£¡£¡£¡£¡£Degroof PetercamÒ²ÒѾ­È·ÈÏÕâ´Îй¶ÊÂÎñ¡£¡£¡£¡£¡£¡£¡£¡£¾Ý¸ÃÒøÐн²»°È˳ƣ¬ £¬£¬£¬£¬£¬£¬Ö»ÓÐרҵµÄ¹ÉƱÆÚȨ´òËã(SOP) ÕË»§»áÊܵ½¸ÃÊÂÎñµÄÓ°Ï죬 £¬£¬£¬£¬£¬£¬µ«¾Ý³ÆÊý°Ù¼Ò¸÷Àà¹æÄ£µÄ±ÈÀûʱ¹«Ë¾¶¼Êܵ½ÁËÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£


https://www.databreaches.net/data-leak-at-degroof-petercam-affects-hundreds-of-belgian-companies/


5¡¢Prodaft·¢ÏÖFIN7ʹÓÃ×Ô¶¯¹¥»÷ƽ̨CheckmarksµÄ»î¶¯

      

ProdaftÔÚ12ÔÂ22ÈÕ³ÆÆä·¢ÏÖFIN7ʹÓÃÒ»¸ö×Ô¶¯¹¥»÷ƽ̨Checkmarks£¬ £¬£¬£¬£¬£¬£¬À´ÈëÇÖ¹«Ë¾ÍøÂç¡¢ÇÔÈ¡Êý¾Ý²¢Æ¾¾Ý²ÆÕþ¹æÄ£Ñ¡ÔñÀÕË÷¹¥»÷µÄÖ¸±ê¡£¡£¡£¡£¡£¡£¡£¡£CheckmarksÀûÓÃÁËMicrosoft ExchangeºÍSQL ×¢Èë·ì϶£¬ £¬£¬£¬£¬£¬£¬´Ó2021Äê6ÔÂÆðÍ·¾Í±»ÓÃÓÚ×Ô¶¯¿úËŹ«Ë¾ÍøÂçÖÐÒ×±»¹¥»÷µÄ¶Ëµã£¬ £¬£¬£¬£¬£¬£¬¶øºóͨ¹ýPowerShell·Ö·¢web shellÀ´»ñÈ¡½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬ £¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±·¢ÏÖFIN7ÓëDarkside¡¢REvilºÍLockBitµÈ¶à¸öÀÕË÷ÍÅ»ïÓйأ¬ £¬£¬£¬£¬£¬£¬²¢Ê¹ÓÃÁËÐÂSSHºóÃÅ£¬ £¬£¬£¬£¬£¬£¬Í¨¹ýOnionÓòʹÓ÷´ÏòSSHÏνÓ(SFTP)´ÓÖ¸±êÉ豸ÖÐÇÔÈ¡Îļþ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/fin7-hackers-create-auto-attack-platform-to-breach-exchange-servers/


6¡¢SentinelOne°ä²¼¹ØÓÚVice SocietyÍÅ»ïµÄ·ÖÎö»ã±¨

      

12ÔÂ22ÈÕ£¬ £¬£¬£¬£¬£¬£¬SentinelOne°ä²¼»ã±¨³Æ£¬ £¬£¬£¬£¬£¬£¬Vice SocietyÆðͷʹÓÃеÄ×Ô½ç˵¼ÓÃÜ·¨Ê½¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÔÚ¸ÃÍÅ»ï×î½üµÄÒ»´Î¹¥»÷Öз¢ÏÖÁËÐÂÀÕË÷Èí¼þPolyVice£¬ £¬£¬£¬£¬£¬£¬Ëüѡȡ»ìºÏ¼ÓÃܹ滮£¬ £¬£¬£¬£¬£¬£¬½«·Ç¶Ô³Æ¼ÓÃÜÓëNTRUEncryptËã·¨Ïà½áºÏ£¬ £¬£¬£¬£¬£¬£¬¶Ô³Æ¼ÓÃÜÓëChaCha20-Poly1305Ëã·¨Ïà½áºÏ¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±´§Ä¦£¬ £¬£¬£¬£¬£¬£¬Õâ¿ÉÄÜÊÇVice Society´ÓÒ»¼ÒΪÆäËûÀÕË÷ÍÅ»ïÌṩÀàËÆ¹¤¾ßµÄ×éÖ¯´¦²É¹ºµÄ¡£¡£¡£¡£¡£¡£¡£¡£¸Ã±äÌåÓÚ2022Äê7ÔÂ13ÈÕ³õ´ÎÔÚÒ°±í³öÏÖ£¬ £¬£¬£¬£¬£¬£¬µ«Ö±µ½ºÜ¾ÃÒÔÀ´²Å±»¸Ã×éÖ¯Æëȫѡȡ¡£¡£¡£¡£¡£¡£¡£¡£·ÖÎöÅú×¢£¬ £¬£¬£¬£¬£¬£¬PolyViceÓëChillyºÍSunnyDayµÄ´úÂëÓµÓÐÀàËÆÐÔ£¬ £¬£¬£¬£¬£¬£¬Ö°ÄÜ100%Æ¥Å䣬 £¬£¬£¬£¬£¬£¬Ö»ÓÐһЩϸ½Ú·ÖÆç¡£¡£¡£¡£¡£¡£¡£¡£


https://www.sentinelone.com/labs/custom-branded-ransomware-the-vice-society-group-and-the-threat-of-outsourced-development/