ºÚ¿ÍÉù³ÆÒѾÈëÇÖÃÀ¹úÁª°î³Ð°üÉÌ Acuity²¢³öÊÛ ICE ºÍ USCIS µÄÊý¾Ý
Ðû²¼Ê±¼ä 2024-03-113ÔÂ9ÈÕ£¬£¬£¬£¬£¬ÎÛÃûÕÑÖøµÄºÚ¿ÍIntelBrokerÉù³Æ¶Ô×î½ü±¬·¢µÄÒ»ÆðÊý¾Ýй¶ÊÂÎñÈÏÕæ£¬£¬£¬£¬£¬¾Ý³Æ¸ÃÊÂÎñµÄÄ¿µÄÊÇλÓÚ¸¥¼ªÄáÑÇÖÝÀ×˹¶ÙµÄÁª°î³Ð°üÉÌ Acuity Inc.¡£¡£¡£¡£¡£¡£¡£´Ë´Îй¶µ¼ÖÂÃÀ¹úÁ½¸öÖøÃûÕþ¸®ÊµÌåµÄÃô¸ÐÊý¾ÝºÍÎļþ±»µÁ£ºÃÀ¹úÒÆÃñºÍº£¹ØÖ´·¨¾Ö (ICE) ÒÔ¼°ÃÀ¹ú¹«ÃñºÍÒÆÃñЧÀÍ¾Ö (USCIS)¡£¡£¡£¡£¡£¡£¡££¬£¬£¬£¬£¬Acuity Inc . ÊÇÒ»¼ÒÁª°îÊÖÒÕ×Éѯ¹«Ë¾£¬£¬£¬£¬£¬×ܲ¿Î»ÓÚ¸¥¼ªÄáÑÇÖÝÀ×˹¶Ù¡£¡£¡£¡£¡£¡£¡£ËûÃÇΪÁª°î»ú¹¹£¬£¬£¬£¬£¬ÌØÊâÊÇÄÇЩרעÓÚ¹ú¼ÒÇå¾²ºÍ¹«¹²Çå¾²µÄ»ú¹¹ÌṩÉîÖ¿µÄÐÐҵרҵ֪ʶ¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬£¬£¬ËûÃǵĽ¹µãʹÃüÊÇ×ÊÖúÕâЩ»ú¹¹ÍýÏëδÀ´£¬£¬£¬£¬£¬Ìá¸ßΪ¹«ÃñЧÀ͵ÄÄÜÁ¦£¬£¬£¬£¬£¬²¢Í¨¹ýÁ¢ÒìµÄÊÖÒÕ½â¾ö¼Æ»®ºÍ¾ÓÉÑéÖ¤µÄÖÎÀíÊÖÒÕÌṩ¿ÉȨºâµÄЧ¹û¡£¡£¡£¡£¡£¡£¡£ÕâЩÁîÈËÕ𾪵Ä˵·¨·ºÆðÔÚÎÛÃûÕÑÖøµÄÍøÂç·¸·¨ºÍºÚ¿ÍÂÛ̳Breach Forums×î½üµÄһƪÌû×ÓÖС£¡£¡£¡£¡£¡£¡£Hackread.com ¶À¼Ò֤ʵ£¬£¬£¬£¬£¬±»µÁÊý¾ÝÏÖÔÚÕýÔÚÂÛ̳ÉÏÒÔ½ö 3,000 ÃÀÔªµÄÃÅÂÞ±Ò (XMR) ¼ÓÃÜÇ®±Ò³öÊÛ¡£¡£¡£¡£¡£¡£¡£
https://www.hackread.com/hacker-breach-federal-contractor-acuity-ice-uscis-data/
2. ÃÀ¹ú¶¥¼¶ÍøÂçÇå¾²»ú¹¹ÔâºÚ¿Í¹¥»÷²¢±»ÆÈ¹Ø±Õ²¿·Öϵͳ
3ÔÂ8ÈÕ£¬£¬£¬£¬£¬ÈÏÕæÍøÂçÇå¾²µÄÁª°î»ú¹¹½²»°È˺ÍÊìϤ¸ÃÊÂÎñµÄÃÀ¹ú¹ÙÔ±¸æËß CNN£¬£¬£¬£¬£¬¸Ã»ú¹¹ÉϸöÔ·¢Ã÷×Ô¼ºÔâµ½ºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬²¢±»ÆÈ¹Ø±ÕÁ½¸öÒªº¦ÅÌËã»úϵͳ¡£¡£¡£¡£¡£¡£¡£¾ÝÏàʶÇéÐεÄÃÀ¹ú¹ÙԱ͸¶£¬£¬£¬£¬£¬ÃÀ¹úÍøÂçÇå¾²ºÍ»ù´¡ÉèÊ©Çå¾²¾ÖÊÜÓ°ÏìµÄϵͳ֮һÔËÐÐ×ÅÒ»ÏîÍýÏ룬£¬£¬£¬£¬ÔÊÐíÁª°î¡¢Öݺ͸¸Ä¸¹ÙÔ±¹²ÏíÍøÂçºÍÎïÀíÇå¾²ÆÀ¹À¹¤¾ß¡£¡£¡£¡£¡£¡£¡£ÐÂÎÅÈËÊ¿³Æ£¬£¬£¬£¬£¬ÁíÒ»¸öÕÆÎÕ×Å»¯Ñ§ÉèÊ©Çå¾²ÆÀ¹ÀµÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎúËÊǴ˴κڿ͹¥»÷µÄÄ»ºóºÚÊÖ£¬£¬£¬£¬£¬µ«Õâ´ÎºÚ¿Í¹¥»÷ÊÇͨ¹ýÓÌËûÖÝ IT ¹«Ë¾ Ivanti ¿ª·¢µÄÊ¢ÐÐÐéÄâרÓÃÍøÂçÈí¼þÖеÄÎó²î±¬·¢µÄ¡£¡£¡£¡£¡£¡£¡£¼¸ÖÜÀ´£¬£¬£¬£¬£¬CISA Ò»Ö±±Þ²ßÁª°î»ú¹¹ºÍ˽Ӫ¹«Ë¾¸üÐÂÆäÈí¼þ»ò½ÓÄÉÆäËû·ÀÓù²½·¥£¬£¬£¬£¬£¬ÒÔÓ¦¶ÔºÚ¿ÍÆÕ±éʹÓà Ivanti Îó²îµÄÇéÐΡ£¡£¡£¡£¡£¡£¡£ËäÈ»ÕâÓÐһЩ¼¥Ð¦Òâ棬£¬£¬£¬£¬µ«×ÝÈ»ÊÇÍøÂçÇå¾²»ú¹¹»ò¹ÙÔ±Ò²¿ÉÄܳÉΪºÚ¿Í¹¥»÷µÄÊܺ¦Õß¡£¡£¡£¡£¡£¡£¡£ÊÂʵ£¬£¬£¬£¬£¬ËûÃÇÒÀÀµÓëÆäËûÈËÏàͬµÄÊÖÒÕ¡£¡£¡£¡£¡£¡£¡£
https://edition.cnn.com/2024/03/08/politics/top-us-cybersecurity-agency-cisa-hacked/index.html
3. ¶íÂÞ˹ºÚ¿ÍÈëÇÖ΢Èí£¬£¬£¬£¬£¬ÇÔÈ¡Ãô¸ÐÔ´´úÂëºÍÉñÃØ
3ÔÂ9ÈÕ£¬£¬£¬£¬£¬Î¢ÈíÌṩÁËÓйضíÂÞ˹¹ú¼ÒÖ§³ÖµÄÃûΪ Midnight Blizzard »ò Nobelium µÄºÚ¿Í×éÖ¯ÌᳫµÄÖØ´óÇÒÒ»Á¬µÄÍøÂç¹¥»÷µÄ×îÐÂÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¸Ã¹¥»÷ÓÚ 2024 Äê 1 ÔÂÊ״μì²âµ½£¬£¬£¬£¬£¬×î½ü¼¸ÖÜ´ó·ùÉý¼¶£¬£¬£¬£¬£¬ÓÉÓÚºÚ¿ÍÊÔͼʹÓÃÇÔÈ¡µÄÊý¾ÝÆÆËð Microsoft µÄÄÚ²¿ÏµÍ³ºÍÔ´´úÂë´æ´¢¿â¡£¡£¡£¡£¡£¡£¡£Î¢ÈíÔÚһƪ²©¿ÍÎÄÕÂÖÐ͸¶£¬£¬£¬£¬£¬Midnight Blizzard ÓÚ 1 Ô 12 ÈÕÉøÍ¸Á˸ù«Ë¾µÄ¹«Ë¾µç×ÓÓʼþϵͳ£¬£¬£¬£¬£¬Ê¹ºÚ¿ÍÄܹ»ÇÔÈ¡Ãô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£¡£ËäÈ»ÃæÏò¿Í»§µÄϵͳÉÐδÊܵ½Ë𺦣¬£¬£¬£¬£¬µ«ºÚ¿ÍÕýÔÚʹÓÃÇÔÈ¡µÄÐÅÏ¢¶Ô΢ÈíµÄϵͳÌᳫԽÀ´Ô½¼¤½øµÄÃÜÂëÅçÉä¹¥»÷¡£¡£¡£¡£¡£¡£¡£ËäÈ»´Ë´Îй¶µÄËùÓйæÄ£ÈÔÔÚÊÓ²ìÖУ¬£¬£¬£¬£¬µ«Î¢ÈíÌåÏÖ£¬£¬£¬£¬£¬ËüÒѾʵÑéÁËÔöÇ¿µÄÇå¾²¿ØÖÆ¡¢¼à¿ØºÍÍþв¼ì²â¹¦Ð§£¬£¬£¬£¬£¬ÒÔÓ¦¶ÔÎçÒ¹±©Ñ©µÄÎÞÇé¹¥»÷¡£¡£¡£¡£¡£¡£¡£Midnight Blizzard ÖÁÉÙ´Ó 2018 Äê×îÏÈ»îÔ¾£¬£¬£¬£¬£¬ÊÇÒ»¸öÊܶíÂÞ˹Íâ¹úÇ鱨»ú¹¹Ö§³ÖµÄÖøÃûºÚ¿Í×éÖ¯¡£¡£¡£¡£¡£¡£¡£ËüÖ÷ÒªÕë¶ÔÃÀ¹úºÍÅ·ÖÞµÄÕþ¸®»ú¹¹¡¢·ÇÕþ¸®×éÖ¯ºÍ¿Æ¼¼¹«Ë¾£¬£¬£¬£¬£¬Ä¿µÄÊǾÙÐÐÌØ¹¤»î¶¯ºÍÇé±¨ÍøÂ磬£¬£¬£¬£¬ÒÔÖ§³Ö¶íÂÞ˹µÄÀûÒæ¡£¡£¡£¡£¡£¡£¡£
https://www.cyberkendra.com/2024/03/russian-hackers-breach-microsoft-steal.html
4. Bifrost ľÂíµÄ Linux ±äÌåͨ¹ýÓòÃûÇÀ×¢Ìӱܼì²â
3ÔÂ7ÈÕ£¬£¬£¬£¬£¬Ò»ÖÖÒÑÓÐ 20 ÄêÀúÊ·µÄÌØÂåÒÁľÂí×î½üÖØÐ·ºÆð£¬£¬£¬£¬£¬ÆäбäÖÖÒÔ Linux ΪĿµÄ£¬£¬£¬£¬£¬²¢Ã°³äÊÜÐÅÈεÄÍйÜÓòÀ´Ìӱܼì²â¡£¡£¡£¡£¡£¡£¡£Palo Alto Networks µÄÑо¿Ö°Ô±·¢Ã÷ÁËBifrost£¨ÓÖÃû Bifrose£©¶ñÒâÈí¼þµÄРLinux ±äÌ壬£¬£¬£¬£¬¸Ã±äÌåʹÓÃÒ»ÖÖ³ÆÎª¡°ÓòÃûÇÀ×¢¡±µÄÓÕÆÐÔ×ö·¨À´Ä£ÄâÕýµ±µÄ VMware Óò£¬£¬£¬£¬£¬´Ó¶øÊ¹¶ñÒâÈí¼þÄܹ»ÔÚÀ×´ïÏÂÔËÐС£¡£¡£¡£¡£¡£¡£BifrostÊÇÒ»ÖÖÔ¶³Ì»á¼ûÌØÂåÒÁľÂí (RAT)£¬£¬£¬£¬£¬×Ô 2004 ÄêÒÔÀ´Ò»Ö±»îÔ¾£¬£¬£¬£¬£¬²¢´ÓÊÜѬȾµÄÏµÍ³ÍøÂçÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬ÀýÈçÖ÷»úÃûºÍ IP µØµã¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±Ö¸³ö£¬£¬£¬£¬£¬¹¥»÷Õßͨ³£Í¨¹ýµç×ÓÓʼþ¸½¼þ»ò¶ñÒâÍøÕ¾·Ö·¢ Bifrost£¬£¬£¬£¬£¬µ«ËûÃÇûÓÐÏêϸ˵Ã÷зºÆðµÄ Linux ±äÌåµÄ³õʼ¹¥»÷ÏòÁ¿¡£¡£¡£¡£¡£¡£¡£Ö»¹Ü Bifrost RAT ¿ÉÄÜÊǶñÒâÈí¼þµÄÀÏÏȽø£¬£¬£¬£¬£¬µ«ËüÈÔÈ»¶ÔСÎÒ˽¼ÒºÍ×éÖ¯×é³ÉÖØ´óÇÒÒ»Ö±ÑݱäµÄÍþв£¬£¬£¬£¬£¬ÌØÊâÊǽÓÄÉÓòÃû·ÂðÀ´Ìӱܼì²âµÄбäÖÖ¡£¡£¡£¡£¡£¡£¡£
https://www.darkreading.com/cloud-security/stealthy-bifrost-rat-linux-variants-use-typosquatting-to-evade-detection-
5. ±ÈÀûʱơ¾Æ´«Ææ¶Åά¶ûµÄÆ¡¾Æ³§ÒòÀÕË÷Èí¼þ×èÖ¹Éú²ú
3ÔÂ7ÈÕ£¬£¬£¬£¬£¬±ÈÀûʱơ¾ÆÄðÔìÉÌ Duvel ÌåÏÖ£¬£¬£¬£¬£¬ÀÕË÷Èí¼þ¹¥»÷Òѵ¼ÖÂÆäÉèÊ©ÏÝÈë̱»¾£¬£¬£¬£¬£¬¶øÆä IT ÍŶÓÕýÔÚÆð¾¢ÐÞ¸´Ë𻵡£¡£¡£¡£¡£¡£¡£ÓйظÃÊÂÎñµÄÏêϸÐÅϢͨ³£ºÜÉÙ£¬£¬£¬£¬£¬ÓÉÓڸù«Ë¾³ýÁËÏòýÌå½ÒÏþÁ˼ò¶ÌÉùÃ÷Í⣬£¬£¬£¬£¬ÉÐδ¹ûÕæ´Ë´ÎÍ»ÈëÊÂÎñ¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎú´Ë´ÎÏ®»÷ÊÇÄĸö×éÖ¯ËùΪ¡£¡£¡£¡£¡£¡£¡£Duvel Moortgat ²»µ«½« Duvel ´øµ½ÁËÊÐËÁ»õ¼Ü¡¢²ÍÌüºÍ¾Æ°É£¬£¬£¬£¬£¬»¹ÎªÆäËûÊܽӴýµÄ¾ÆÆ·´øÀ´ÁË La Chouffe¡¢Vedett¡¢Firestone Walker µÈ¡£¡£¡£¡£¡£¡£¡£AartsÌåÏÖ£¬£¬£¬£¬£¬·ÛË¿ÃDz»±Øµ£ÐũӦÎÊÌ⣬£¬£¬£¬£¬ÓÉÓÚ Breendonk ¹¤³§¿â´æ¸»×㣬£¬£¬£¬£¬²¢ÇҸù«Ë¾²¢²»µ£ÐÄÍøÕ¾ÔÝʱͣ»£»£»£»£»£»£»úʱµÄ¶©µ¥ÍÆÐÐÇéÐΡ£¡£¡£¡£¡£¡£¡£ÆäËûÔâÊÜÀÕË÷Èí¼þ¹¥»÷µÄÖÆÔì×é֯ͨ³£Ã»ÓÐÄÇôÐÒÔË£¬£¬£¬£¬£¬ÈκÎÀàÐ͵ÄÍ£»£»£»£»£»£»£»ú¶¼¿ÉÄܶÔÔËÓªºÍ²ÆÎñÔì³ÉË𺦡£¡£¡£¡£¡£¡£¡£Õâ¾ÍÊÇΪʲô¸ÃÐÐÒµ³ÉΪÀÕË÷Èí¼þ·¸·¨·Ö×ӵij£¼ûÄ¿µÄ£¬£¬£¬£¬£¬ÓÉÓÚËûÃÇÖªµÀ´ÓÀíÂÛÉϽ²£¬£¬£¬£¬£¬ÖÆÔìÉ̸üÓж¯Á¦¿ìËÙÖ§¸¶Êê½ð£¬£¬£¬£¬£¬´Ó¶ø×î´óÏ޶ȵØïÔ̼ÛÇ®¸ß°ºµÄÍ£»£»£»£»£»£»£»úʱ¼ä¡£¡£¡£¡£¡£¡£¡£
https://www.theregister.com/2024/03/07/no_piss_up_in_duvels/
6. 2023 ÄêÍøÂç·¸·¨ËðʧÁè¼Ý 125 ÒÚÃÀÔª
3ÔÂ7ÈÕ£¬£¬£¬£¬£¬FBIÍøÂç·¸·¨Í¶ËßÖÐÐÄ£¨IC3£©Ðû²¼ÁË2023ÄêÄê¶È±¨¸æ£¬£¬£¬£¬£¬±¨¸æÏÔʾ£¬£¬£¬£¬£¬¸Ã»ú¹¹ÊÕµ½µÄÍøÂç·¸·¨Í¶ËßÊýÄ¿ÓëÉÏÒ»ÄêÏà±ÈÔöÌíÁ˽ü10%¡£¡£¡£¡£¡£¡£¡£2023 Ä꣬£¬£¬£¬£¬ÃÀ¹úÍøÂç·¸·¨Êܺ¦ÕßÏò FBI Ìá³öÁËÁè¼Ý 88 ÍòÆðͶËߣ¬£¬£¬£¬£¬±¨¸æËðʧ×ܶîÁè¼Ý 125 ÒÚÃÀÔª£¬£¬£¬£¬£¬±È 2022 ÄêÔöÌíÁË 22%¡£¡£¡£¡£¡£¡£¡£ÒÑÍùÎåÄ꣬£¬£¬£¬£¬Ö´·¨»ú¹¹ÊÕµ½½ü 380 ÍòÆðͶËߣ¬£¬£¬£¬£¬Ëðʧ×ܶî´ï 374 ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£¡£ÍøÂç´¹ÂÚÈÔȻռͶËßµÄ×î¸ß±ÈÀý£¬£¬£¬£¬£¬Æä´ÎÊÇСÎÒ˽¼ÒÊý¾Ýй¶¡¢²»¸¶¿î»ò²»ËÍ»õÕ©Æ¡¢ÀÕË÷ºÍÊÖÒÕÖ§³ÖÕ©Æ¡£¡£¡£¡£¡£¡£¡£¾ÍËðʧ¶øÑÔ£¬£¬£¬£¬£¬Í¶×ÊÚ²ÆËðʧ×îΪ²ÒÖØ£¬£¬£¬£¬£¬2023 ÄêËðʧ´ï 45.7 ÒÚÃÀÔª£¬£¬£¬£¬£¬¸ßÓÚ 2022 ÄêµÄ 33.1 ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£¡£Æä´ÎÊÇÉÌÒµµç×ÓÓʼþй¶ (BEC)£¬£¬£¬£¬£¬Êܺ¦ÕßÉù³Æ×ܹ²ËðʧÁË 29 ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£¡£ÊÖÒÕÖ§³ÖÕ©Æ¡¢Ð¡ÎÒ˽¼ÒÊý¾Ýй¶¡¢Áµ°®Õ©Æ¡¢Êý¾Ýй¶¡¢Õþ¸®Ã°³äÒÔ¼°²»¸¶¿î/²»½»¸¶ÍýÏë¾ùÔì³ÉÊýÒÚÃÀÔªµÄËðʧ¡£¡£¡£¡£¡£¡£¡£ÔÚÀÕË÷Èí¼þ·½Ã棬£¬£¬£¬£¬FBI ÊÕµ½ÁË 2800 ¶àÆðͶËߣ¬£¬£¬£¬£¬Ëðʧ×ܼƽü 6000 ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¡£×îÊܹ¥»÷µÄÐÐÒµÊÇÒ½ÁƱ£½¡¡¢Òªº¦ÖÆÔì¡¢Õþ¸®ÉèÊ©¡¢IT ºÍ½ðÈÚЧÀÍ¡£¡£¡£¡£¡£¡£¡£
https://www.securityweek.com/fbi-cybercrime-losses-exceeded-12-5-billion-in-2023/


¾©¹«Íø°²±¸11010802024551ºÅ