Íйܹ«Ë¾CloudNordicÔâÀÕË÷¹¥»÷ËùÓпͻ§Êý¾Ýɥʧ

Ðû²¼Ê±¼ä 2023-08-24

1¡¢Íйܹ«Ë¾CloudNordicÔâÀÕË÷¹¥»÷ËùÓпͻ§Êý¾Ýɥʧ


¾Ý8ÔÂ23ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬µ¤ÂóÍйܹ«Ë¾CloudNordicºÍAzeroCloudÔâµ½ÀÕË÷¹¥»÷£¬£¬£¬£¬£¬£¬£¬´ó²¿·Ö¿Í»§µÄÊý¾Ýɥʧ¡£¡£¡£¡£ÕâÁ½¸öÆ·ÅÆÊôÓÚͳһ¼Ò¹«Ë¾£¬£¬£¬£¬£¬£¬£¬¹¥»÷±¬·¢ÔÚ8ÔÂ18ÈÕÆÆÏþ¡£¡£¡£¡£¸Ã¹«Ë¾³ÎÇå²»»áÏò¹¥»÷Õß½»Êê½ð£¬£¬£¬£¬£¬£¬£¬µ«²»ÐÒµÄÊÇ£¬£¬£¬£¬£¬£¬£¬ÏµÍ³ºÍÊý¾Ý»Ö¸´Àú³Ì²¢²»Ë³Ë죬£¬£¬£¬£¬£¬£¬CloudNordicɥʧÁË´ó´ó¶¼¿Í»§µÄËùÓÐÊý¾Ý¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬£¬Õâ´Î¹¥»÷½ö¼ÓÃÜÁËÊý¾Ý£¬£¬£¬£¬£¬£¬£¬Ã»ÓÐÈκÎÊý¾Ý±»»á¼û»òй¶¡£¡£¡£¡£´Ë´Î¹¥»÷Ó°ÏìÁËÊý°Ù¼Òµ¤ÂóµÄ¹«Ë¾£¬£¬£¬£¬£¬£¬£¬ËûÃÇɥʧÁË´æ´¢ÔÚÔÆÖеÄËùÓÐÄÚÈÝ£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÍøÕ¾¡¢µç×ÓÓʼþºÍÎĵµµÈ¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾µÄÔËÓªÈÔ±£´æºÜ´óÎÊÌâ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/hosting-firm-says-it-lost-all-customer-data-after-ransomware-attack/


2¡¢DuoLingo 260ÍòÓû§µÄÊý¾ÝÔÚBreachedÂÛ̳¹ûÕæ


¾ÝýÌå8ÔÂ22ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬260ÍòDuoLingoÓû§µÄÊý¾ÝÔÚºÚ¿ÍÂÛ̳BreachedÉÏй¶¡£¡£¡£¡£1Ô·Ý£¬£¬£¬£¬£¬£¬£¬ÓÐÈËÔøÔÚÒѹرյÄBreachedÉÏÒÔ1500ÃÀÔªµÄ¼ÛÇ®³öÊÛ260ÍòDuoLingoÓû§µÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨µÇ¼Ãû¡¢ÕæÊµÐÕÃû¡¢ÓʼþµØµãºÍDuoLingoЧÀÍÏà¹ØµÄÄÚ²¿ÐÅÏ¢µÈ·Ç¹ûÕæÐÅÏ¢¡£¡£¡£¡£8ÔÂ21ÈÕ£¬£¬£¬£¬£¬£¬£¬260ÍòÓû§Êý¾ÝÓÖ±»¹ûÕæÔÚаæBreachedÉÏ£¬£¬£¬£¬£¬£¬£¬½öÐè8¸öÕ¾µã»ý·Ö£¬£¬£¬£¬£¬£¬£¬¼ÛֵΪ2.13ÃÀÔª¡£¡£¡£¡£ÕâЩÊý¾ÝÊÇͨ¹ýAPIץȡµÄ£¬£¬£¬£¬£¬£¬£¬¸Ã½Ó¿ÚÖÁÉÙ×Ô3ÔÂÆð¾ÍÒѹûÕæ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/scraped-data-of-26-million-duolingo-users-released-on-hacking-forum/


3¡¢ÃÀ¹ú¹ú·À¹«Ë¾BelcanÉèÖùýʧ³¬µÈÖÎÀíԱƾ֤й¶


ýÌå8ÔÂ23Èճƣ¬£¬£¬£¬£¬£¬£¬ÃÀ¹úÕþ¸®ºÍ¹ú·À³Ð°üÉÌBelcanµÄ³¬µÈÖÎÀíԱƾ֤й¶¡£¡£¡£¡£5ÔÂ15ÈÕ£¬£¬£¬£¬£¬£¬£¬Ñо¿ÍŶӷ¢Ã÷ÁËÒ»¸ö¿ª·ÅµÄKibanaʵÀý£¬£¬£¬£¬£¬£¬£¬Éæ¼°Belcan¼°ÆäÔ±¹¤ºÍ»ù´¡ÉèÊ©µÄÃô¸ÐÐÅÏ¢¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢°üÀ¨ÖÎÀíÔ±µç×ÓÓʼþ¡¢ÖÎÀíÔ±ÃÜÂ루ʹÓÃbcrypt´¦Öóͷ££©¡¢ÖÎÀíÔ±Óû§Ãû¡¢ÖÎÀíÔ±½ÇÉ«ºÍÄÚ²¿ÍøÂçµØµãµÈ¡£¡£¡£¡£ÕâЩÐÅÏ¢¿ÉÓÃÀ´Ê¶±ð±£´æÎó²îµÄÒ×±»¹¥»÷ϵͳ£¬£¬£¬£¬£¬£¬£¬²¢Ìṩ½Ï¸ßȨÏÞµÄÕÊ»§Æ¾Ö¤£¬£¬£¬£¬£¬£¬£¬½«¸øÕû¸ö¹©Ó¦Á´´øÀ´Î£º¦¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬¸ÃÎÊÌâÒѱ»½â¾ö¡£¡£¡£¡£


https://cybernews.com/security/belcan-leaks-admin-password-flaws/


4¡¢SnatchÉù³ÆÒÑÈëÇÖÄϷǹú·À²¿²¢»ñÈ¡1.6 TBµÄÊý¾Ý


8ÔÂ22ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬£¬£¬ÀÕË÷ÍÅ»ïSnatch½«ÄϷǹú·À²¿Ìí¼Óµ½ÆäÊý¾ÝÐ¹Â¶ÍøÕ¾¡£¡£¡£¡£¸ÃÍÅ»ïÉù³ÆÇÔÈ¡Á˾üÊÂÌõÔ¼¡¢ÄÚ²¿ºôºÅºÍСÎÒ˽¼ÒÐÅÏ¢µÈ£¬£¬£¬£¬£¬£¬£¬×ܼÆ1.6TBÊý¾Ý¡£¡£¡£¡£ÈôÊǴ˴ι¥»÷»ñµÃ֤ʵ£¬£¬£¬£¬£¬£¬£¬ÉñÃØÐÅÏ¢µÄй¶½«¶Ô¼ÓÈëËùͬµÄ×éÖ¯×é³ÉÑÏÖØÎ£º¦¡£¡£¡£¡£×èÖ¹ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬¸ÃÊý¾ÝÐ¹Â¶ÍøÕ¾ÒÑÎÞ·¨»á¼û¡£¡£¡£¡£2022Äê10Ô£¬£¬£¬£¬£¬£¬£¬SnatchÔøÉù³ÆÈëÇÖÁË·¨¹úHENSOLDT France£¬£¬£¬£¬£¬£¬£¬ÕâÊÇÒ»¼ÒרÃÅ´Óʾüʺ͹ú·Àµç×Ó²úÆ·µÄ¹«Ë¾¡£¡£¡£¡£


https://securityaffairs.com/149760/cyber-crime/snatch-ransomware-department-of-defence-south-africa.html


5¡¢SymantecÅû¶CarderbeeÕë¶ÔÖйúÏã¸ÛµÄ¹¥»÷»î¶¯


8ÔÂ22ÈÕ£¬£¬£¬£¬£¬£¬£¬SymantecÅû¶ÁËCarderbeeÕë¶ÔÖйúÏã¸ÛµÄ¹¥»÷»î¶¯¡£¡£¡£¡£Ñо¿Ö°Ô±ÓÚ4Ô·¢Ã÷ÁËCarderbeeµÄµÚÒ»¸ö»î¶¯¼£Ï󣬣¬£¬£¬£¬£¬£¬µ«¹¥»÷»î¶¯»ò¿ÉÒÔ×·Ëݵ½2021Äê9Ô¡£¡£¡£¡£¹¥»÷ÕßʹÓÃÕýµ±µÄCobra DocGuardÈí¼þÖ´Ðй©Ó¦Á´¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ä¿µÄÊÇÔÚÄ¿µÄÅÌËã»úÉÏ×°ÖúóÃÅKorplug£¨ÓÖÃûPlugX£©¡£¡£¡£¡£¹¥»÷»î¶¯»¹Ê¹ÓÃÁËÕýµ±µÄMicrosoftÖ¤ÊéÊðÃûµÄ¶ñÒâÈí¼þ¡£¡£¡£¡£¸Ã»î¶¯µÄ´ó´ó¶¼Ä¿µÄλÓÚÖйúÏã¸Û£¬£¬£¬£¬£¬£¬£¬Ò²ÓÐÒ»²¿·ÖλÓÚÑÇÖÞµÄÆäËüµØÇø¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬£¬¹ØÓÚCarderbee»î¶¯ÈÔÓÐһЩδ½âÖ®ÃÕ£¬£¬£¬£¬£¬£¬£¬ºÃ±ÈÈ·ÇеÄÄ¿µÄ¹æÄ£ÈÔ²»ÇåÎú¡£¡£¡£¡£


https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/carderbee-software-supply-chain-certificate-abuse


6¡¢Ó¢¹úIT¹«Ë¾Swan RetailÔâµ½¹¥»÷Ó°ÏìÊý°Ù¼ÒÁãÊÛÉÌ


ýÌå8ÔÂ22ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬Ó¢¹úIT¹«Ë¾Swan RetailÔâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÁËÔ¼300¼ÒÁãÊÛÉÌ¡£¡£¡£¡£8ÔÂ13ÈÕ£¬£¬£¬£¬£¬£¬£¬Õâ¼ÒÁãÊÛÖÎÀíºÍEPOS½â¾ö¼Æ»®ÌṩÉÌ·¢Ã÷¶à¸öºǫ́ϵͳ·ºÆðÊÖÒÕÎÊÌ⣬£¬£¬£¬£¬£¬£¬µ¼ÖÂЧÀÍÖÐÖ¹¡£¡£¡£¡£ÆäÐû²¼ÉùÃ÷ÌåÏÖÔâµ½ÁËÍøÂç¹¥»÷²¢ÒÑѸËÙ×ö³ö·´Ó¦£¬£¬£¬£¬£¬£¬£¬¿ÉÊÇûÓÐ˵Ã÷¹¥»÷ÀàÐÍ¡£¡£¡£¡£´Ë´Î¹¥»÷Ó°ÏìÁËÏÕЩËùÓÐÐÐÒµµÄ×ÔÁ¦ÁãÊÛÉÌ£¬£¬£¬£¬£¬£¬£¬²¢¸øÐí¶à¹©Ó¦ÉÌ´øÀ´ÑÏÖØµÄ¾­¼ÃËðʧ¡£¡£¡£¡£¸Ã¹«Ë¾µÄЧÀÍ×ÔÖÜÈÕÒÔÀ´Ò»Ö±´¦ÓÚÔÝͣ״̬£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚÕýÔÚ»Ö¸´ÖС£¡£¡£¡£


https://www.hackread.com/cyberattack-uk-swan-retail-affects-retailers/