³¯ºÚ¿ÍʹÓÃαÔìµÄÉ罻ýÌåÕÊ»§½«Çå¾²Ñо¿Ö°Ô±×÷ΪĿµÄ £»£» £» £»£»£»£»ÒÁÀÊTA453µÄÐÂÐж¯BadBloodÖ¼ÔÚÇÔȡҽѧÑо¿ÕßµÄЧ¹û

Ðû²¼Ê±¼ä 2021-04-02

1.Ó¡¶ÈECU WorldwideѬȾMount Locker£¬£¬£¬ £¬£¬£¬£¬£¬2TBÊý¾Ýй¶


1.jpg


ECU WorldwideÊÇÎÞÓªÔË´¬µÄ¹«¹²³ÐÔËÈË(NVOCC)£¬£¬£¬ £¬£¬£¬£¬£¬Ö÷Òª´Óʼ¯×°ÏäµÄÆ´ÏäÔËÊä(LCL)£¬£¬£¬ £¬£¬£¬£¬£¬ÊÇÓ¡¶È×î´óµÄÉÏÊй«Ë¾Ö®Ò»¡£ ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚ2ÔÂ16ÈÕ±¨¸æÆäÔâµ½ÁËÍøÂç¹¥»÷£¬£¬£¬ £¬£¬£¬£¬£¬µ¼Ö²¿·ÖÔÚÏ߯½Ì¨ºÍµç×ÓÓʼþϵͳÔÝʱÖÐÖ¹¡£ ¡£¡£¡£¡£¡£¡£ÀÕË÷Èí¼þÍÅ»ïMount LockerÓÚÉÏÖÜÈÕÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾·¢Ìû³ÆËûÃÇ´ÓECUÇÔÈ¡ÁË2TBµÄÊý¾Ý£¬£¬£¬ £¬£¬£¬£¬£¬µ«ÈÔδ¹ûÕæÓйØÕâЩÊý¾ÝµÄÈκÎÐÅÏ¢£¬£¬£¬ £¬£¬£¬£¬£¬Òò´ËÉв»ÇåÎúй¶Êý¾ÝµÄÀàÐÍ¡£ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.freightwaves.com/news/hackers-threaten-shipping-firm-ecu-worldwide-with-data-leak


2.Òâ´óÀûBoggi MilanoÔâµ½Ragnarok¹¥»÷£¬£¬£¬ £¬£¬£¬£¬£¬40GBÊý¾Ý±»ÇÔ


2.jpg


Òâ´óÀûÄÐ×°Æ·ÅÆBoggi MilanoÔâµ½ºÚ¿Í×éÖ¯RagnarokµÄ¹¥»÷£¬£¬£¬ £¬£¬£¬£¬£¬40GBÊý¾Ý±»ÇÔ¡£ ¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ±¾ÖÜÈý£¬£¬£¬ £¬£¬£¬£¬£¬¸Ã¹«Ë¾ÏÖÔÚÕýÔÚÓëÓйز¿·ÖÏàÖú¶Ô´ËÊÂÕö¿ªÊӲ졣 ¡£¡£¡£¡£¡£¡£RagnarokÍÅ»ïÌåÏÖËûÃÇÒÑÇÔȡԼ40 GBµÄÊý¾Ý£¬£¬£¬ £¬£¬£¬£¬£¬ÆäÖаüÀ¨ÖîÈçн×ÊÐÅÏ¢Ö®ÀàµÄÈËÁ¦×ÊÔ´Îļþ¡£ ¡£¡£¡£¡£¡£¡£ÄÚ²¿ÈËʿ֤ʵ£¬£¬£¬ £¬£¬£¬£¬£¬Õâ¿ÉÄÜÊÇÒ»´ÎÀÕË÷Èí¼þ¹¥»÷¡£ ¡£¡£¡£¡£¡£¡£FBIÔ¤¼Æ£¬£¬£¬ £¬£¬£¬£¬£¬´Ó2013Äêµ½2019ÄêÊܺ¦ÕßÒÑÏòºÚ¿ÍÖ§¸¶ÖÁÉÙ1.435ÒÚÃÀÔªµÄÊê½ð¡£ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bloomberg.com/news/articles/2021-03-31/hackers-target-italian-menswear-boggi-milano-with-ransomware


3.GoogleÇå¾²¸üУ¬£¬£¬ £¬£¬£¬£¬£¬ÐÞ¸´ChromeÖеÄɳÏäÌÓÒݵÈ8¸öÎó²î


3.jpg


GoogleÓÚ±¾ÖÜÐû²¼ÁËÇå¾²¸üУ¬£¬£¬ £¬£¬£¬£¬£¬ÐÞ¸´ÁËChromeÖаüÀ¨É³ÏäÌÓÒÝÔÚÄÚµÄ8¸öÎó²î¡£ ¡£¡£¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄ×îΪÑÏÖØµÄÎó²îÊǽØÍ¼³ÌÐòÖÐÊͷźóʹÓÃÎó²î£¨CVE-2021-21194£©£¬£¬£¬ £¬£¬£¬£¬£¬¿Éµ¼ÖÂChromeɳÏäÌÓÒÝ£¬£¬£¬ £¬£¬£¬£¬£¬¹¥»÷Õß½«¸ÃÎó²îÓëäÖȾÆ÷ÖÐÎó²îÁ¬ÏµÊ¹ÓÿÉÒÔÔÚÄ¿µÄ×°±¸ÖÐÖ´ÐÐí§Òâ´úÂë¡£ ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬ £¬£¬£¬£¬£¬´Ë´Î¸üл¹ÐÞ¸´ÁËV8ÖеÄÊͷźóʹÓÃÎó²î£¨CVE-2021-21195£©¡¢TabStripÖеĶѻº³åÇøÒç³öÎó²î£¨CVE-2021-21196ºÍCVE-2021-21197£©ÒÔ¼°IPCÖеÄÔ½½ç¶ÁÈ¡£ ¡£¡£¡£¡£¡£¡£¨CVE-2021-21198£©µÈÎó²î¡£ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/116165/security/chrome-sandbox-escape.html


4.Group-IBÅû¶Õë¶ÔÓ¡Äá½ðÈÚ»ú¹¹µÄÕ©Æ­»î¶¯£¬£¬£¬ £¬£¬£¬£¬£¬Éæ¼°200Íò¿Í»§


4.jpg


Group-IBÅû¶Õë¶ÔÓ¡¶ÈÄáÎ÷ÑÇ´óÐͽðÈÚ»ú¹¹µÄÕ©Æ­»î¶¯£¬£¬£¬ £¬£¬£¬£¬£¬Éæ¼°Áè¼Ý200Íò¿Í»§¡£ ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÔÚTwitterÉÏαװ³ÉÒøÐдú±í»ò¿Í»§ÊÖÒÕÖ§³ÖÀ´½Ó´¥Êܺ¦Õߣ¬£¬£¬ £¬£¬£¬£¬£¬×îÖÕÄ¿µÄÊÇ͵ȡÆäÒøÐÐÖеÄ×ʽð¡£ ¡£¡£¡£¡£¡£¡£¸Ã»î¶¯ÒѶÔÖÁÉÙÓÐÆß¼Ò×éÖ¯Ìᳫ¹¥»÷£¬£¬£¬ £¬£¬£¬£¬£¬Õë¶ÔÁè¼Ý200ÍòÓ¡ÄáÒøÐеĿͻ§¡£ ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬ £¬£¬£¬£¬£¬´Ó1Ô³õµÄ600¸öαÔìTwitterÕ˺ŵ½3Ô·ݵÄ1600¸ö£¬£¬£¬ £¬£¬£¬£¬£¬¸Ã»î¶¯µÄ¹æÄ£À©´óÁË2.5±¶£¬£¬£¬ £¬£¬£¬£¬£¬Æ½¾ùÌìÌì¶¼»á½¨ÉèÊýÊ®¸öÕÊ»§¡£ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/116173/cyber-crime/5-star-customer-service-fraudsters-launch-massive-campaign-against-indonesias-major-banks-on-twitter.html


5.³¯ºÚ¿ÍʹÓÃαÔìµÄÉ罻ýÌåÕÊ»§½«Çå¾²Ñо¿Ö°Ô±×÷ΪĿµÄ


5.jpg


GoogleµÄÍþвÆÊÎöС×飨TAG£©·¢Ã÷£¬£¬£¬ £¬£¬£¬£¬£¬³¯ÏʺڿÍʹÓÃαÔìµÄÉ罻ýÌåÕÊ»§½«Çå¾²Ñо¿Ö°Ô±×÷ΪĿµÄ¡£ ¡£¡£¡£¡£¡£¡£ºÚ¿Í½¨ÉèÁËÃûΪSecuriElite¹«Ë¾µÄÍøÕ¾£¬£¬£¬ £¬£¬£¬£¬£¬²¢Éù³ÆÕâÊÇλÓÚÍÁ¶úÆäµÄÒ»¼ÒÇå¾²¹«Ë¾£¬£¬£¬ £¬£¬£¬£¬£¬Ìá¹©ÉøÍ¸²âÊÔ¡¢Èí¼þÇå¾²ÆÀ¹ÀºÍÎó²îʹÓõÈЧÀÍ¡£ ¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹½¨ÉèÁËÐéαµÄTwitterºÍLinkedInÕ˺Å£¬£¬£¬ £¬£¬£¬£¬£¬ÒÔÓëDZÔÚÄ¿µÄ¾ÙÐл¥¶¯¡£ ¡£¡£¡£¡£¡£¡£SecuriEliteÍøÕ¾Ò³Ãæµ×²¿Ò²ÓÐÖ¸Ïò¸Ã×éÖ¯PGP¹«Ô¿µÄÁ´½Ó£¬£¬£¬ £¬£¬£¬£¬£¬Çå¾²Ñо¿Ô±Ò»µ©µã»÷¸ÃÁ´½Ó¾Í»áѬȾ¶ñÒâÈí¼þ¡£ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/google-north-korean-hackers-target-security-researchers-again/


6.ÒÁÀÊTA453µÄÐÂÐж¯BadBloodÖ¼ÔÚÇÔȡҽѧÑо¿ÕßµÄЧ¹û


6.jpg


Proofpoint·¢Ã÷ÒÁÀʵÄAPT×éÖ¯TA453£¨Ò²³ÆÎªCharming Kitten£©µÄÐÂÐж¯BadBloodÖ¼ÔÚÇÔȡҽѧÑо¿ÕßµÄЧ¹û¡£ ¡£¡£¡£¡£¡£¡£¸Ã»î¶¯Ö÷Òª±¬·¢ÓÚ2020ÄêϰëÄ꣬£¬£¬ £¬£¬£¬£¬£¬TA453ʹÓÃÍøÂç´¹ÂÚ¹¥»÷£¬£¬£¬ £¬£¬£¬£¬£¬×¨ÃÅÕë¶ÔÃÀ¹úºÍÒÔÉ«ÁдÓÊ»ùÒò¡¢Éñ¾­²¡Ñ§ºÍÖ×ÁöѧÑо¿µÄ¸ß¼¶Ò½Ñ§×¨ÒµÈËÊ¿¡£ ¡£¡£¡£¡£¡£¡£ÔÚÈ¥Äê12ÔµÄÒ»´Î¹¥»÷ÖУ¬£¬£¬ £¬£¬£¬£¬£¬ºÚ¿Íαװ³ÉÒÔÉ«ÁÐÖøÃûµÄÎïÀíѧ¼Ò£¬£¬£¬ £¬£¬£¬£¬£¬·¢ËÍÒÔºËÎäÆ÷ΪÖ÷ÌâµÄÓʼþÀ´ÇÔȡĿµÄÓû§µÄMicrosoftƾ֤¡£ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/charming-kitten-pounces-on-researchers/165129/