ÃÀ¹úÃÜЪ¸ù´óѧÔâµ½¹¥»÷ËùÓÐϵͳºÍ·þÎñÁÙʱÖжÏ
°ä²¼¹¦·ò 2023-08-311¡¢ÃÀ¹úÃÜЪ¸ù´óѧÔâµ½¹¥»÷ËùÓÐϵͳºÍ·þÎñÁÙʱÖжÏ
¾ÝýÌå8ÔÂ29ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬ÃÀ¹úÃÜЪ¸ù´óѧ(UM)Ôâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬£¬ËùÓÐϵͳºÍ·þÎñÁÙʱÖжϡ£¡£¡£¡£¡£¡£¡£¡£ÔÚÉÏÖÜÈÕ£¬£¬£¬£¬£¬£¬£¬ÃÜЪ¸ù´óѧ²úÉúÁËÍøÂ簲ȫÊÂÎñ£¬£¬£¬£¬£¬£¬£¬Ñ§ÌóÆÔÚ¾¹ý×ÐϸÆÀ¹Àºó¾ö¶¨¶Â½Ø»¥ÁªÍø¡£¡£¡£¡£¡£¡£¡£¡£ÕâÔ̺¬ÓÐÏߺÍWiFiÐ£Ô°Íø¡¢M-Pathways¡¢eResearch¡¢DARTÒÔ¼°Ñ§Éú×¢²áÖÐʹÓõÄËùÓÐϵͳ¡£¡£¡£¡£¡£¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬£¬£¬ÊÂÎñ²úÉúÔÚÐÂѧÄêǰϦ£¬£¬£¬£¬£¬£¬£¬ÆäʱѧÉúºÍÀÏʦÕý³ï±¸¿ª¿Î¡£¡£¡£¡£¡£¡£¡£¡£Òò¶ø£¬£¬£¬£¬£¬£¬£¬UM¾ö¶¨ÃâÈ¥8Ô·ݵÄÓâÆÚ×¢²á»òÍ˸à»ðÓᣡ£¡£¡£¡£¡£¡£¡£ÔÚÏß·þÎñ¿ÉÄܱØÒª¼¸ÌìÄÜÁ¦¸´Ô£¬£¬£¬£¬£¬£¬£¬¸ÃУҲûÓлØÓ¦ÕâÊÇ·ñÊÇÀÕË÷¹¥»÷µÄÖÃÆÀÒªÇ󡣡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/university-of-michigan-shuts-down-network-after-cyberattack/
2¡¢Forever 21ÅûÂ¶Ò»Â·Éæ¼°½ü54ÍòÔ±¹¤µÄÊý¾Ýй¶ÊÂÎñ
¾Ý8ÔÂ30ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬Ê±ÉÐÁãÊÛÉÌForever 21֪ͨԼ54ÍòÃû²Î¼Ó¹«Ë¾½¡È«´òËãµÄÔ±¹¤£¬£¬£¬£¬£¬£¬£¬ËûÃǵÄÐÅÏ¢Òѱ»Ð¹Â¶¡£¡£¡£¡£¡£¡£¡£¡£Forever 21³Æ£¬£¬£¬£¬£¬£¬£¬ËûÃÇÔÚ3ÔÂ20ÈÕ·¢ÏÖÒ»Â·ÍøÂ簲ȫÊÂÎñ¡£¡£¡£¡£¡£¡£¡£¡£ËæºóµÄµ÷²éÈ·¶¨£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÔÚ1ÔÂ5ÈÕÖÁ3ÔÂ21ÈÕ½Ó¼ûÁËForever 21µÄ²¿ÃÅϵͳ¡£¡£¡£¡£¡£¡£¡£¡£¹ÌÈ»Forever 21ûÓв¢Ã»ÓÐÕ¶¶¤½ØÌúµØËµÓÐÀÕË÷ÒªÇ󣬣¬£¬£¬£¬£¬£¬µ«ËûÃÇÔÚÐÅÖеĴë´ÇÅú×¢£¬£¬£¬£¬£¬£¬£¬²»½öÓÐÀÕË÷ÒªÇ󣬣¬£¬£¬£¬£¬£¬²¢ÇÒForever 21»¹Ïò¹¥»÷Õß½»ÁËÊê½ð£¬£¬£¬£¬£¬£¬£¬ÒÔ»ñµÃɾ³ýÊý¾ÝµÄ±£ÕÏ¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñÓ°ÏìÁË539207Ó×ÎÒ£¬£¬£¬£¬£¬£¬£¬ËûÃǽ«»ñµÃ12¸öÔµÄÉí·Ý¼à¿Ø·þÎñ¡£¡£¡£¡£¡£¡£¡£¡£
https://www.databreaches.net/forever-21-notifies-540000-of-breach-affecting-employees-enrolled-in-firms-health-plan/
3¡¢·áÌïµÄ¶©µ¥ÏµÍ³³öÏÖ¹ÊÕϵ¼ÖÂ14¸ö³ö²ú³µ¼äÍ£²ú36Ó×ʱ
ýÌå8ÔÂ30Èճƣ¬£¬£¬£¬£¬£¬£¬ÈÕ±¾·áÌ﹫˾µÄ¶©µ¥ÏµÍ³³öÏÖ¹ÊÕÏ£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂ14¸ö³ö²ú³µ¼äµÄ28Ìõ³ö²úÏßÍ£²ú¡£¡£¡£¡£¡£¡£¡£¡£¹ÊÕÏÆðÍ·ÓÚ±¾ÖÜÒ»Íí¼ä£¬£¬£¬£¬£¬£¬£¬³ö²úÓÚ±¾ÖÜÈý°´´òË㸴ԡ£¡£¡£¡£¡£¡£¡£¡£Õâ¼ÒÆû³µÔì×÷ÉÌÒÔÆä¾«Òæ¶¨Ê±µÄ³ö²úϵͳÎÅÃû£¬£¬£¬£¬£¬£¬£¬²¢ÒÔΪ¸Ãϵͳ·Ç³£¿£¿£¿£¿£¿£¿£¿£¿¿µÃס¡£¡£¡£¡£¡£¡£¡£¡£ÕâÒâζ×Å·áÌïÆû³µµÄÁ㲿¼þ¿â´æÁ¿¼«µÍ£¬£¬£¬£¬£¬£¬£¬ÏÕЩÔÚ±ØÒª×°Öõ½Æû³µÉÏʹØâЩÁã¼þ²Å»á¾Íλ¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚÖܶþ°µÊ¾£¬£¬£¬£¬£¬£¬£¬ÏµÍ³¹ÊÕϲ¢·Ç¹¥»÷µ¼Öµģ¬£¬£¬£¬£¬£¬£¬µ«ËûÃǽ«³ÖÐøµ÷²éÔÒò¡£¡£¡£¡£¡£¡£¡£¡£
https://www.theregister.com/2023/08/30/toyota_japan_production_resumes/
4¡¢MandiantÅû¶UNC4841ÀûÓÃBarracuda·ì϶¹¥»÷µÄϸ½Ú
MandiantÔÚ8ÔÂ30ÈÕÅû¶Á˹ØÓÚUNC4841ÀûÓÃBarracuda·ì϶µÄ¹¥»÷»î¶¯µÄϸ½Ú¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÕâ´Î¹¥»÷»î¶¯ÖУ¬£¬£¬£¬£¬£¬£¬½üÈý·ÖÖ®Ò»±»¹¥»÷µÄÉ豸ÊôÓÚµ±¾Ö»ú¹¹£¬£¬£¬£¬£¬£¬£¬ÆäÖдóÎÞÊýÊÇÔÚ2022Äê10ÔÂÖÁ12ÔÂÆÚ¼ä²úÉúµÄ¡£¡£¡£¡£¡£¡£¡£¡£´ó²¿ÃŹ¥»÷Õë¶ÔÃÀÖÞ(55%)£¬£¬£¬£¬£¬£¬£¬Æä´ÎÊÇÅ·ÖÞ¡¢Öж«ºÍ·ÇÖÞ(24%)ÒÔ¼°ÑÇÌ«µØÓò(22%)¡£¡£¡£¡£¡£¡£¡£¡£Mandiant»¹¹«¿ªÁËUNC4841Èý¸öÓÐÕë¶ÔÐԵŤ¾ßSKIPJACK¡¢ DEPTHCHARGEºÍFOXTROTµÄϸ½Ú£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°ËüÊÇÈôºÎºáÏòÒÆ¶¯µÄ¡£¡£¡£¡£¡£¡£¡£¡£FBIÔøÔÚÉÏÖܰ䲼¹«¸æ³ÆÕë¶ÔBarracuda·ì϶µÄ²¹¶¡ÎÞЧ£¬£¬£¬£¬£¬£¬£¬½¨ÒéÓû§¾¡¿ì¸ôÀëºÍ¸ü»»±»ºÚµÄÉ豸¡£¡£¡£¡£¡£¡£¡£¡£
https://www.mandiant.com/resources/blog/unc4841-post-barracuda-zero-day-remediation
5¡¢Juniper·¢ÏÖDreamBusÀûÓÃRocketMQ·ì϶µÄ¹¥»÷»î¶¯
8ÔÂ28ÈÕ£¬£¬£¬£¬£¬£¬£¬Juniper³ÆÆä·¢ÏÖÁ˽©Ê¬ÍøÂçDreamBusÀûÓÃRocketMQ·ì϶µÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£±»ÀûÓõÄÊÇÒ»¸öÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2023-33246£©£¬£¬£¬£¬£¬£¬£¬ÓÚ5Ô·ݱ»Åû¶¡£¡£¡£¡£¡£¡£¡£¡£Juniper³Æ£¬£¬£¬£¬£¬£¬£¬ÔÚ6ÔÂÉÏÑ®·¢ÏÖÁ˳õ´ÎÀûÓø÷ì϶µÄ¹¥»÷»î¶¯£¬£¬£¬£¬£¬£¬£¬ÖØÒªÕë¶ÔRocketMQµÄĬÈÏ10911¶Ë¿ÚºÍÆäËü7¸ö¶Ë¿Ú¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÀûÓÿªÔ´¿úËŹ¤¾ßinteractshÈ·¶¨Èí¼þ°æ±¾£¬£¬£¬£¬£¬£¬£¬»¹´ÓTor´úÀí·þÎñÏÂÔØ¶ñÒâbash¾ç±¾reketed£¬£¬£¬£¬£¬£¬£¬ËüÊÇDreamBusÖ÷Ä£¿£¿£¿£¿£¿£¿£¿£¿é£¨ELFÎļþ£©µÄÏÂÔØºÍ×°Ö÷¨Ê½¡£¡£¡£¡£¡£¡£¡£¡£Õâ´Î»î¶¯µÄÖØÒªÖ÷ÕÅËÆºõÊÇÃÅÂÞ±ÒµÄÍڿ󡣡£¡£¡£¡£¡£¡£¡£
https://blogs.juniper.net/en-us/threat-research/dreambus-botnet-resurfaces-targets-rocketmq-vulnerability
6¡¢Flashpoint°ä²¼ÐºڿÍÂÛ̳RansomedµÄ·ÖÎö»ã±¨
8ÔÂ28ÈÕ£¬£¬£¬£¬£¬£¬£¬Flashpoint°ä²¼Á˹ØÓÚкڿÍÂÛ̳RansomedµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£¡£8ÔÂ15ÈÕ£¬£¬£¬£¬£¬£¬£¬Ransomed³ÉΪһ¸öеĺڿÍÂÛ̳¡£¡£¡£¡£¡£¡£¡£¡£µ«ÔÚRansomedµÄ»î¶¯ÕæÕýÆðͷ֮ǰ£¬£¬£¬£¬£¬£¬£¬¸ÃÍøÕ¾¾ÍÔâµ½ÁËDDoS¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£×÷Ϊ»ØÓ¦£¬£¬£¬£¬£¬£¬£¬¸ÃÍøÕ¾µÄÔËÓªÍÅ»ïѸËÙ½«Æä³ÁËÜΪһ¸öÀÕË÷Èí¼þ²©¿Í¡£¡£¡£¡£¡£¡£¡£¡£RansomedÔÚÀûÓÃÒ»ÖÖеÄÀÕË÷Õ½Êõ£¬£¬£¬£¬£¬£¬£¬ËûÃÇͨ¹ýÅ·Ã˵ÄGDPRµÈÊý¾Ý±£»£»£»£»£»£»£»¤·¨À´Íþвָ±ê£¬£¬£¬£¬£¬£¬£¬ÈôÊÇËûÃDz»½»Êê½ð¾Í»á±»·£¿£¿£¿£¿£¿£¿£¿£¿î¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°Éв»Ã÷ÏÔ¸ÃÍÅ»ïÊÇ·ñÕæµÄÔÚ²¿ÊðÀÕË÷Èí¼þ£¬£¬£¬£¬£¬£¬£¬»òÕßÖ»ÊÇÐû³ÆÊý¾Ý±»µÁ¡£¡£¡£¡£¡£¡£¡£¡£Flashpot°µÊ¾£¬£¬£¬£¬£¬£¬£¬Ransomed±³ºóµÄºÚ¿Í¿ÉÄÜÓëBreachForumsºÍExposedµÈÊý¾ÝÐ¹Â¶ÍøÕ¾ÓйØÁª¡£¡£¡£¡£¡£¡£¡£¡£
https://flashpoint.io/blog/ransomed-uncertain-cyber-threat/


¾©¹«Íø°²±¸11010802024551ºÅ