ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵꣻ£»£»£»£»£»£»Î¢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò

Ðû²¼Ê±¼ä 2021-07-05

1.ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵê


1.jpg


ÈðµäÁ¬Ëø³¬ÊÐCoop³ÆÆäÔâµ½ÁËKaseya¹©Ó¦Á´¹¥»÷£¬£¬ £¬£¬£¬ £¬Êý°Ù¼ÒÃÅµê¹Ø±Õ¡£¡£ ¡£¡£¡£CoopµÄ½²»°ÈËÌåÏÖÆäÓÚÉÏÖÜÎåÍíÉÏ6µã30·Ö×óÓÒ·¢Ã÷ÓÐÉÙÊýÃŵ귺ÆðÎÊÌ⣬£¬ £¬£¬£¬ £¬µ«Ò»Ò¹Ö®ºóÆä´ó²¿·ÖÃŵ궼±»ÆÈ¹Ø±Õ£¬£¬ £¬£¬£¬ £¬°üÀ¨ÊÕÒøÌ¨ºÍ×ÔÖú½áÕËÔÚÄÚµÄÕû¸öÖ§¸¶ÏµÍ³¶¼ÖÐÖ¹ÁË¡£¡£ ¡£¡£¡£±ðµÄ£¬£¬ £¬£¬£¬ £¬CoopûÓÐʹÓÃKesayaÈí¼þ£¬£¬ £¬£¬£¬ £¬ÓÉÓÚËûÃǵÄÒ»¸öÈí¼þÌṩÉÌʹÓÃÁ˸ÃÈí¼þ¶øÊܵ½Ó°Ïì¡£¡£ ¡£¡£¡£Çå¾²¹«Ë¾HuntressLabs³Æ£¬£¬ £¬£¬£¬ £¬´Ë´Î¹¥»÷»î¶¯µÄÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬£¬ £¬£¬£¬ £¬ÖÁÉÙÓÐ200¼Ò×éÖ¯Êܵ½Ó°Ïì¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/119663/cyber-crime/coop-supermarket-kaseya-ransomware-attack.html


2.΢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò


2.jpg


΢Èíǰ³õ¼¶¹¤³ÌʦVolodymyr KvashukʹÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000ÍòÃÀÔª¡£¡£ ¡£¡£¡£ËûµÄÍŶӵÄÖ÷ҪĿµÄÊÇÄ£ÄâMicrosoftÔÚÏß¹ºÖÃÀ´·¢Ã÷¸¶¿îÎÊÌâ¡£¡£ ¡£¡£¡£ÕâЩÐéÄâÕÊ»§¿ÉÒÔ±»ÏµÍ³Ê¶±ð£¬£¬ £¬£¬£¬ £¬ÔÚÍøÕ¾¹ºÖù¤¾ßʱ²»»áÊÕµ½ÈκβúÆ·£¬£¬ £¬£¬£¬ £¬¿ÉÊǵ±¹ºÖÃXboxÀñÎ│£¬£¬ £¬£¬£¬ £¬½«»ñµÃÒ»¸öÍêÈ«ÓÐÓõÄ25λ´úÂë¡£¡£ ¡£¡£¡£Ëû²¢Î´½«¸ÃÎó²î֪ͨÆäÉÏ˾£¬£¬ £¬£¬£¬ £¬¶øÊÇʹÓÃÆä׬Ǯ¡£¡£ ¡£¡£¡£Ö®ºó£¬£¬ £¬£¬£¬ £¬Ëû×ܹ²Ê¹ÓøÃÎó²îÇÔÈ¡²¢³öÊÛÁËÁè¼Ý152000ÕÅXboxÀñÎ│£¬£¬ £¬£¬£¬ £¬¼ÛÖµ1010ÍòÃÀÔª¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/microsoft-engineer-stole-10m-by-selling-xbox-gift-cards-533416.shtml


3.Ñо¿Ö°Ô±Åû¶¶à¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤


3.jpg


Dr. WebÑо¿Ö°Ô±Åû¶ÁË9¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤¡£¡£ ¡£¡£¡£ÕâЩӦÓÃαװ³ÉÎÞº¦µÄÕÕÆ¬±à¼­¡¢ÓÅ»¯¡¢½¡ÉíºÍÕ¼ÐdzÌÐò£¬£¬ £¬£¬£¬ £¬À´ÓÕʹÊܺ¦ÕߵǼFacebookÕË»§£¬£¬ £¬£¬£¬ £¬²¢Ê¹ÓÃÒ»¶ÎJavaScript´úÂëÐ®ÖÆÊäÈëµÄƾ֤¡£¡£ ¡£¡£¡£ËäÈ»´Ë´Î»î¶¯ËƺõÊÇרÃÅÕë¶ÔFacebookÕÊ»§£¬£¬ £¬£¬£¬ £¬µ«Dr.WebÖÒÑԳƣ¬£¬ £¬£¬£¬ £¬ÕâÖÖ¹¥»÷Ò²¿ÉÒÔ¼ÓÔØÈÎºÎÆäËüÕýµ±ÍøÂçÆ½Ì¨µÄµÇÂ¼Ò³Ãæ£¬£¬ £¬£¬£¬ £¬À´ÇÔÈ¡ÆäËüЧÀ͵ĵǼÃûºÍÃÜÂë¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/07/android-apps-with-58-million-installs.html


4.ÃÀ¹ú°ü¹Ü¹«Ë¾AJG³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬ £¬£¬£¬ £¬¿Í»§ÐÅϢй¶


4.jpg


ÃÀ¹úArthur J. Gallagher (AJG) ³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬ £¬£¬£¬ £¬¿Í»§ÐÅϢй¶¡£¡£ ¡£¡£¡£AJGÊÇÃÀ¹úµÄÈ«Çò°ü¹Ü¾­¼ÍºÍΣº¦ÖÎÀí¹«Ë¾£¬£¬ £¬£¬£¬ £¬×÷ΪȫÇò×î´óµÄ°ü¹Ü¾­¼ÍÉÌÖ®Ò»£¬£¬ £¬£¬£¬ £¬ÓªÒµÆÕ±é49¸ö¹ú¼Ò/µØÇø¡£¡£ ¡£¡£¡£¹¥»÷±¬·¢ÔÚ2020Äê6ÔÂ3ÈÕÖÁ2020Äê9ÔÂ26ÈÕʱ´ú£¬£¬ £¬£¬£¬ £¬ÆäÔÚ2020Äê9ÔÂ28ÈÕÅû¶¸ÃÊÂÎñ²¢³ÆÃ»ÓÐÊý¾Ýй¶¡£¡£ ¡£¡£¡£µ«ÔÚËæºóµÄÊӲ췢Ã÷£¬£¬ £¬£¬£¬ £¬7376È˵ÄÃô¸ÐÐÅϢй¶£¬£¬ £¬£¬£¬ £¬°üÀ¨Éç»áÇå¾²ºÅÂë»ò˰ºÅ¡¢¼ÝÕÕ¡¢»¤ÕÕ¡¢³öÉúÈÕÆÚ¡¢Óû§ÃûºÍÃÜÂë¡¢Ô±¹¤Ê¶ÓÖÃû¡¢²ÆÎñÕË»§»òÐÅÓÿ¨ÐÅÏ¢¡¢µç×ÓÊðÃû¡¢Ò½ÁÆÐÅÏ¢¡¢°ü¹ÜÐÅÏ¢ÒÔ¼°ÉúÎïʶ±ðÐÅÏ¢µÈ¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-insurance-giant-ajg-reports-data-breach-after-ransomware-attack/


5.Unit 42Ðû²¼2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ


5.jpg


Unit 42Ðû²¼ÁË2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ¡£¡£ ¡£¡£¡£±¨¸æÖ¸³ö£¬£¬ £¬£¬£¬ £¬2Ôµ½4Ô¹²·ÖÅÉÁË4969¸öеÄCVE±àºÅ£¬£¬ £¬£¬£¬ £¬ÆäÖÐÑÏÖØµÄÎó²îΪ598¸ö£¬£¬ £¬£¬£¬ £¬Õ¼±È15.5%£¬£¬ £¬£¬£¬ £¬POC¿ÉÓÃÐÔΪ9.4%£»£»£»£»£»£»£»¸ß¼¶µÄΪ1659¸ö£¬£¬ £¬£¬£¬ £¬Õ¼±È43.1%£¬£¬ £¬£¬£¬ £¬POC¿ÉÓÃÐÔΪ8.1%£»£»£»£»£»£»£»ÖеÈΪ1592¸ö£¬£¬ £¬£¬£¬ £¬Õ¼±È41.4%£¬£¬ £¬£¬£¬ £¬POC¿ÉÓÃÐÔΪ7.0%¡£¡£ ¡£¡£¡£ÔÚ¹¥»÷ÀàÐÍ·½Ã棬£¬ £¬£¬£¬ £¬´úÂëÖ´Ðй¥»÷Õ¼±È×î´ó£¬£¬ £¬£¬£¬ £¬Îª45.6%£»£»£»£»£»£»£»¶ø¹¥»÷µÄÆðÔ´µØ·½Ã棬£¬ £¬£¬£¬ £¬ÆäÖÐ×î¶àµÄÀ´×ÔÓÚÃÀ¹ú£¬£¬ £¬£¬£¬ £¬Æä´ÎÊǶíÂÞ˹ºÍÖйú¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/network-attack-trends-february-april-2021/


6.WatchGuardÐû²¼2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ


6.jpg


WatchGuardÐû²¼ÁË2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ¡£¡£ ¡£¡£¡£±¨¸æÖ¸³ö£¬£¬ £¬£¬£¬ £¬ÔÚ2020ÄêQ1¼ì²âµ½µÄÍþвÖÐÓÐ74%ÊÇÁãÈÕÎó²î¶ñÒâÈí¼þ£¬£¬ £¬£¬£¬ £¬µÖ´ïÁËÀúʷиß¡£¡£ ¡£¡£¡£5ÖÖеĶñÒâÈí¼þUrsu¡¢Trojan.IFrame¡¢XML.JSLoader¡¢ZmutzyºÍZum.Androm½øÈëÁËÊ®´ó¶ñÒâÈí¼þµÄÅÅÐаñ¡£¡£ ¡£¡£¡£±ðµÄ£¬£¬ £¬£¬£¬ £¬´Ó3ÔÂ24ÈÕ(µÚÒ»´Î·¢Ã÷IPS¹¥»÷)µ½3ÔÂ⣬£¬ £¬£¬£¬ £¬Õë¶ÔProxyLogin Exchange ServerÎó²îµÄ¹¥»÷ÔöÌíÁË1600%¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.watchguard.com/wgrd-resource-center/security-report-q1-2021