¼ÓÃÜÇ®±ÒÉúÒâËùFTXÉêÇëÐÝÒµÔ¤¼ÆËðʧ¸ß´ï6ÒÚÃÀÔª

Ðû²¼Ê±¼ä 2022-11-15
1¡¢¼ÓÃÜÇ®±ÒÉúÒâËùFTXÉêÇëÐÝÒµÔ¤¼ÆËðʧ¸ß´ï6ÒÚÃÀÔª

¾ÝýÌå11ÔÂ13ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬£¬¼ÓÃÜÇ®±ÒÉúÒâËùFTXÔâµ½¹¥»÷£¬£¬£¬£¬£¬£¬ £¬£¬Óд«ÑԳƹ¥»÷ÕßÒÑÇÔÈ¡6ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£¡£¹«Ë¾Ö´·¨ÕÕÁÏRyne Miller֤ʵÁ˴˴ι¥»÷ÊÂÎñ£¬£¬£¬£¬£¬£¬ £¬£¬²¢ÌåÏÖFTX USºÍFTX[dot]comÒѽ«ËùÓÐ×ʲú×ªÒÆµ½ÀäÇ®°üÖУ¬£¬£¬£¬£¬£¬ £¬£¬²¢ÊÓ²ìÁË¿ÉÒɵÄÉúÒâ¡£¡£¡£¡£¡£¡£¡£ÔÚ´ó×Ú¿Í»§Ìá¿îºó£¬£¬£¬£¬£¬£¬ £¬£¬¸Ã¼ÓÃÜÇ®±ÒÉúÒâËùÓÚÉÏÖÜÎåÉêÇëÐÝÒµ¡£¡£¡£¡£¡£¡£¡£¾Ý·͸Éç͸¶£¬£¬£¬£¬£¬£¬ £¬£¬ÖÁÉÙÓÐ10ÒÚÃÀÔªµÄ×ʽð´ÓÕâ¼Òµ¹±ÕµÄ¼ÓÃÜÇ®±ÒÉúÒâËùÁ÷³ö¡£¡£¡£¡£¡£¡£¡£

https://securityaffairs.co/wordpress/138449/digital-id/ftx-alleged-hack.html

2¡¢ºÚ¿ÍÔÚ°µÍø³öÊÛ¶íÂÞ˹Whoosh 720Íò¿Í»§µÄÏêϸÐÅÏ¢

ýÌå11ÔÂ14Èճƣ¬£¬£¬£¬£¬£¬ £¬£¬¶íÂÞ˹³öÐÐЧÀÍÆ½Ì¨Whoosh 720Íò¿Í»§µÄÐÅÏ¢ÒѾ­Ð¹Â¶¡£¡£¡£¡£¡£¡£¡£ÉÏÖÜÎ壬£¬£¬£¬£¬£¬ £¬£¬ºÚ¿ÍÔÚ°µÍø³öÊÛ±»µÁÊý¾Ý£¬£¬£¬£¬£¬£¬ £¬£¬ÆäÖаüÀ¨¿ÉÃâ·Ñ»á¼û¸ÃЧÀ͵ĴÙÏú´úÂ룬£¬£¬£¬£¬£¬ £¬£¬ÒÔ¼°Óû§µÄСÎÒ˽¼ÒºÍÖ§¸¶¿¨ÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚ±¾ÔÂÔçЩʱ¼äÈ·Èϴ˴ι¥»÷£¬£¬£¬£¬£¬£¬ £¬£¬Æäʱ³ÆÒÑÀÖ³É×èÖ¹Á˹¥»÷¡£¡£¡£¡£¡£¡£¡£Ö®ºóÓÖÓÚ11ÔÂ14ÈÕÐû²¼Ò»·ÝÐÂÉùÃ÷£¬£¬£¬£¬£¬£¬ £¬£¬ÈϿɱ£´æÊý¾Ýй¶ÎÊÌ⣬£¬£¬£¬£¬£¬ £¬£¬²¢ÒѽÓÄɲ½·¥×èÖ¹Êý¾ÝµÄ·Ö·¢¡£¡£¡£¡£¡£¡£¡£Âô¼ÒÌåÏÖËûÃÇÖ»Ïò5¸öÂò¼Ò³öÊÛÕâЩÊý¾Ý£¬£¬£¬£¬£¬£¬ £¬£¬Ã¿¸ö4200ÃÀÔª£¬£¬£¬£¬£¬£¬ £¬£¬ÏÖÔÚ»¹Ã»ÓÐÈ˹ºÖøÃÊý¾Ý¿â¡£¡£¡£¡£¡£¡£¡£

https://www.bleepingcomputer.com/news/security/whoosh-confirms-data-breach-after-hackers-sell-72m-user-records/

3¡¢Ó¢¹úÈü³µ³¡Silverstone CircuitÔâµ½RoyalµÄÀÕË÷¹¥»÷

¾Ý11ÔÂ10ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬£¬Ó¢¹ú×îÊܽӴýµÄÈü³µ³¡ÒøÊ¯ÈüµÀ£¨Silverstone Circuit£©¿ÉÄÜÔâµ½ÁËÀÕË÷ÍÅ»ïRoyalµÄ¹¥»÷¡£¡£¡£¡£¡£¡£¡£ÒøÊ¯ÈüµÀÊÇ×Ô1950ÄêÒÔÀ´Ó¢¹ú´ó½±ÈüµÄÖ÷³¡£¬£¬£¬£¬£¬£¬ £¬£¬ÓÉÓ¢¹úÈü³µÊÖ¾ãÀÖ²¿(BRDC)ÔËÓª¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÓÚ11ÔÂ8ÈÕÔÚRoyalÀÕË÷Èí¼þµÄÍøÕ¾ÁгöÁËSilverstone£¬£¬£¬£¬£¬£¬ £¬£¬µ«²¢Î´Ïêϸ˵Ã÷»ñÈ¡ÁËÄÄЩÀàÐ͵ÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£Óë´Ëͬʱ£¬£¬£¬£¬£¬£¬ £¬£¬¸Ã¹«Ë¾Í¸Â¶ÆäÕýÔÚÊÓ²ì¸ÃÊÂÎñ¡£¡£¡£¡£¡£¡£¡£RoyalÊÇÒ»¸öÏà¶Ô½ÏеĺڿÍÍŻ£¬£¬£¬£¬£¬ £¬£¬ÆäÊê½ð´Ó25Íòµ½200ÍòÃÀÔª²»µÈ¡£¡£¡£¡£¡£¡£¡£

https://therecord.media/popular-uk-motor-racing-circuit-investigating-ransomware-attack/

4¡¢FRwLÍÅ»ïʹÓÃÐÂÀÕË÷Èí¼þSomnia¹¥»÷ÎÚ¿ËÀ¼µÄ¶à¸ö×éÖ¯

ÎÚ¿ËÀ¼ÅÌËã»úÓ¦¼±Ð¡×飨CERT-UA£©11ÔÂ11ÈÕÅû¶ÁËFRwL£¨ÓÖÃûZ-Team£©ÐÂÒ»ÂֵĹ¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßʹÓÃÁËð³äAdvanced IP ScannerÈí¼þµÄÍøÕ¾À´ÓÕʹĿµÄÏÂÔØ×°ÖóÌÐò¡£¡£¡£¡£¡£¡£¡£ÏÖʵÉÏ£¬£¬£¬£¬£¬£¬ £¬£¬×°ÖóÌÐò»áʹÓÃVidarÇÔÈ¡³ÌÐòѬȾϵͳ£¬£¬£¬£¬£¬£¬ £¬£¬²¢ÇÔÈ¡Telegram»á»°Êý¾ÝÀ´¿ØÖÆËûÃǵÄÕÊ»§¡£¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬£¬£¬£¬ £¬£¬Ëû»áʹÓÃÄ¿µÄµÄTelegramÕÊ»§À´ÇÔÈ¡VPNÅþÁ¬Êý¾Ý£¬£¬£¬£¬£¬£¬ £¬£¬Ö´ÐÐÖÖÖÖ¼àÊÓºÍÔ¶³Ì»á¼û»î¶¯¡£¡£¡£¡£¡£¡£¡£¸Ã»ú¹¹»¹Ö¸³ö£¬£¬£¬£¬£¬£¬ £¬£¬ÕâЩ¹¥»÷ÖÐʹÓÃÁËеÄSomniaÀÕË÷Èí¼þ¡£¡£¡£¡£¡£¡£¡£

https://cert.gov.ua/article/2724253

5¡¢ºÚ¿ÍÍÅ»ïWorokͨ¹ýÒþ²ØÔÚPNGͼÏñÖеĺóÃÅÇÔÈ¡Êý¾Ý

AvastÓÚ11ÔÂ10ÈÕ³ÆÆä·¢Ã÷ºÚ¿ÍÍÅ»ïWorok½«¶ñÒâÈí¼þÒþ²ØÔÚ¿´ËÆÎÞº¦µÄPNGͼÏñÎļþ¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬ £¬£¬ÏêϸµÄ³õʼ¹¥»÷ǰÑÔÈÔȻδ֪£¬£¬£¬£¬£¬£¬ £¬£¬µ«ËûÃÇÔÚ±»Ñ¬È¾×°±¸Öз¢Ã÷ÁË4¸öDLL£¬£¬£¬£¬£¬£¬ £¬£¬ÆäÖаüÀ¨CLRLoader¡£¡£¡£¡£¡£¡£¡£ÔÚºáÏòÔ˶¯ÖУ¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷Õß½«Ð®ÖƵÄDLLÎļþ·ÅÈë%SYSTEMROOT%\System32²¢Ô¶³ÌÆô¶¯ÏìÓ¦µÄЧÀÍ¡£¡£¡£¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßʹÓÃDropBox´æ´¢¿â´ÓÄ¿µÄÖÐÍøÂçÊý¾Ý£¬£¬£¬£¬£¬£¬ £¬£¬²¢ÔÚ×îºó½×¶ÎʹÓÃDropBox API¾ÙÐÐͨѶ¡£¡£¡£¡£¡£¡£¡£

https://decoded.avast.io/martinchlumecky/png-steganography/

6¡¢KasperskyÐû²¼2022ÄêǰÈý¼¾¶È¼ÓÃÜÐ®ÖÆÌ¬ÊÆµÄÆÊÎö±¨¸æ


11ÔÂ10ÈÕ£¬£¬£¬£¬£¬£¬ £¬£¬KasperskyÐû²¼ÁË2022ÄêǰÈý¼¾¶È¼ÓÃÜÐ®ÖÆÌ¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬ £¬£¬2022ÄêQ3£¬£¬£¬£¬£¬£¬ £¬£¬ÏÕЩÿ6¸öʹÓÃ×ÅÃûÎó²îµÄ°¸ÀýÖоÍÓÐÒ»¸öÅãͬ×Å¿ó¹¤Èí¼þµÄѬȾ¡£¡£¡£¡£¡£¡£¡£Óë2021ÄêQ3Ïà±È£¬£¬£¬£¬£¬£¬ £¬£¬2022ÄêQ3¶ñÒâ¿ó¹¤Ð±äÖÖµÄÊýÄ¿ÔöÌíÁËÈý±¶¶à£¬£¬£¬£¬£¬£¬ £¬£¬Áè¼ÝÁË15Íò¡£¡£¡£¡£¡£¡£¡£2022ÄêQ1£¬£¬£¬£¬£¬£¬ £¬£¬ÊܶñÒâ¿ó¹¤Èí¼þÓ°ÏìµÄÓû§ÊýÄ¿×î¶à£¨Áè¼Ý500000£©£¬£¬£¬£¬£¬£¬ £¬£¬¶øÐµĶñÒâ¿ó¹¤±äÖÖÊýÄ¿×îÉÙ¡£¡£¡£¡£¡£¡£¡£Ôâµ½´ËÀ๥»÷Óû§ÊýÄ¿×î¶àµÄ¹ú¼ÒÊǰ£Èû¶í±ÈÑÇ£¬£¬£¬£¬£¬£¬ £¬£¬¸Ã¹ú¹Ù·½Õ¥È¡Ê¹ÓüÓÃÜÇ®±Ò¡£¡£¡£¡£¡£¡£¡£Monero(XMR)ÊǶñÒâÍÚ¿óÖÐ×îÊ¢ÐеļÓÃÜÇ®±Ò¡£¡£¡£¡£¡£¡£¡£


https://securelist.com/cryptojacking-report-2022/107898/