NitroRansomwareÒªÇóʹÓÃDiscord NitroÀñÎïÖ§¸¶Êê½ð£»£»£»ÃÀ¹úÖÆ²Ã28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜÇ®±ÒµØµã

Ðû²¼Ê±¼ä 2021-04-20

1.NitroRansomwareÒªÇóʹÓÃDiscord NitroÀñÎïÖ§¸¶Êê½ð


1.jpg


ÃûΪNitroRansomwareµÄÐÂÀÕË÷Èí¼þÒªÇóÊܺ¦ÕßʹÓÃDiscord NitroÀñÎï´úÂë×÷ΪÊê½ð¡£¡£ ¡£¡£¸ÃÀÕË÷Èí¼þαװ³É¿ÉÒÔÌìÉúÃâ·ÑNitroÀñÎï´úÂëµÄÓ¦Óà £¬£¬£¬ £¬£¬»á¼ÓÃÜÊܺ¦ÕßÎļþ²¢Ìí¼Ó.givemenitroÀ©Õ¹Ãû £¬£¬£¬ £¬£¬È»ºó½«Æä×ÀÃæ¸ÄΪÉúÆøµÄDiscord±ê¼Ç¡£¡£ ¡£¡£Ö®ºó £¬£¬£¬ £¬£¬ÆäÒªÇóÊܺ¦ÕßÔÚÈý¸öСʱÄÚÌṩÃâ·ÑµÄNitroÀñÎï´úÂë £¬£¬£¬ £¬£¬²»È»½«É¾³ýÊܺ¦ÕߵļÓÃÜÎļþ¡£¡£ ¡£¡£DiscordµÄ¸½¼Ó³ÌÐòNitroÐèÿÔÂÆÆ·Ñ9.9ÃÀÔª¶©ÔÄ £¬£¬£¬ £¬£¬¹ºÖÃʱ¿ÉÒÔ×ÔÓÃÒ²¿ÉÒÔ×÷ΪÀñÎïÔùÓèËûÈË¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/discord-nitro-gift-codes-now-demanded-as-ransomware-payments/


2.ÃÀ¹úÖÆ²Ã28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜÇ®±ÒµØµã


2.jpg


ÃÀ¹úÕþ¸®ÔÚ±¾ÖÜÖÆ²ÃÁË28¸ö¼ÓÃÜÇ®±ÒµØµã £¬£¬£¬ £¬£¬¾Ý³ÆÕâЩµØµãÓëÉæ¼°¶íÂÞË¹ÍøÂç¹¥»÷»ò×ÌÈÅÑ¡¾Ù»î¶¯µÄ×éÖ¯ºÍСÎÒ˽¼ÒÓйØ¡£¡£ ¡£¡£ÃÀ¹úÕþ¸®»¹ÌåÏÖ £¬£¬£¬ £¬£¬ÕâЩ»î¶¯ÊÇÓɶíÂÞ˹Áª°îÇå¾²¾Ö£¨FSB£©ºÍ¶íÂÞ˹Ö÷ÒªÇ鱨¾Ö£¨GRU£©¿ªÕ¹µÄ £¬£¬£¬ £¬£¬²¢ÇÒÒѾ­»ñµÃÁËÁù¼ÒÓë¶íÂÞ˹ÓÐÏàÖúµÄ¹«Ë¾µÄ×ÊÖú¡£¡£ ¡£¡£±ðµÄ £¬£¬£¬ £¬£¬ÃûΪSESµÄ°Í»ù˹̹¹«Ë¾Ïò»¥ÁªÍøÑо¿»ú¹¹(IRA)ÌṩÐéαÉí·ÝÀ´ÌÓ±ÜÃÀ¹úµÄÖÆ²Ã £¬£¬£¬ £¬£¬Æä¼ÓÃÜÇ®±ÒµØµãÒÑͨ¹ý26900±ÊÉúÒâÊÕµ½Á˼ÛÖµÁè¼Ý250ÍòÃÀÔªµÄÊý×ÖÇ®±Ò¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-sanctions-cryptocurrency-addresses-linked-to-russian-cyberactivities/


3.FireEyeµÄÍŶÓÑÝʾÔõÑùÆÆ½âÓ¦Óò¢Ð®ÖÆÖÇÄܵç±í


3.png


FireEyeµÄMandiantÍŶÓÑÝʾÁËÔõÑùÉøÍ¸µ½±±ÃÀµÄ¹«ÓÃÊÂÒµÍøÂç²¢ÈëÇÖÆä¹¤Òµ¿ØÖÆÏµÍ³ £¬£¬£¬ £¬£¬À´Ð®ÖÆÆäÖÇÄܵç±í¡£¡£ ¡£¡£ÔÚ¹¥»÷µÄµÚÒ»½×¶Î £¬£¬£¬ £¬£¬MandiantÍŶӽÓÄÉÁËTEMP.VelesÔÚTRITON¹¥»÷ʱ´úʹÓõÄÊÖÒÕÀ´ÆÆËðOTÍøÂç¡£¡£ ¡£¡£ÊµÏÖÁ˶ÔÊÂÇéÕ¾µÄ¿ØÖƺóʹÓÿªÔ´¹¥»÷ÐÔÇå¾²¹¤¾ß£¨OST£©À´»ñµÃÓòÖÎÀíԱȨÏÞ £¬£¬£¬ £¬£¬×îºó·¢³ö¶Ï¿ªÖÇÄܵç±íµÄÏÂÁî¡£¡£ ¡£¡£¶àÄêÀ´ £¬£¬£¬ £¬£¬È«Çò¹¤Òµ×é֯ʹÓõÄICS/SCADAϵͳÊܵ½µÄ¹¥»÷ÊýĿѸËÙÔöÌí £¬£¬£¬ £¬£¬ÆäÖÐ×îÑÏÖØµÄÊÇ2015ÄêÊǶÔÎÚ¿ËÀ¼µçÍøµÄ¹¥»÷ºÍ2017ÄêTriton¶ÔÉ³ÌØÊ¯»¯³§µÄ¹¥»÷¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/117001/ics-scada/ot-network-hack-smart-meters.html


4.°ÍÎ÷¹ú¼ÒͼÊé¹ÝÁ¬ÔâÁ½´ÎÀÕË÷Èí¼þ¹¥»÷ £¬£¬£¬ £¬£¬Êý¾Ýй¶


4.jpg


°ÍÎ÷¹ú¼ÒͼÊé¹ÝÁ¬ÔâÁ½´ÎÀÕË÷Èí¼þ¹¥»÷ £¬£¬£¬ £¬£¬²¿·ÖÊý¾Ýй¶¡£¡£ ¡£¡£µÚÒ»´Î¹¥»÷±¬·¢ÔÚÖÜÈÕ£¨4ÔÂ11ÈÕ£© £¬£¬£¬ £¬£¬°ÍÎ÷¹ú¼ÒͼÊé¹ÝÔÚ·¢Ã÷¹¥»÷ºóÁ¬Ã¦¹Ø±ÕÁËЧÀÍÆ÷ £¬£¬£¬ £¬£¬ÒÔ±ÜÃâ¶ñÒâÈí¼þµÄÈö²¥ºÍÐµĹ¥»÷¡£¡£ ¡£¡£¿ÉÊÇ £¬£¬£¬ £¬£¬ÉÏÖܶþ£¨4ÔÂ13ÈÕ£©¸ÃÍøÕ¾Ôٴα»¼¤»î²¢Ôâµ½Á˵ڶþ´Î¹¥»÷ £¬£¬£¬ £¬£¬²¢±»¼û¸æ²¿·ÖÊý¾ÝÒѱ»ÇÔÈ¡¡£¡£ ¡£¡£ÏÖÔÚ £¬£¬£¬ £¬£¬¸ÃͼÊé¹ÝÒѽ«´ËÊÂ֪ͨÕþ¸®×éÖ¯ £¬£¬£¬ £¬£¬²¢ÁªºÏÇå¾²°ì¹«ÊÒ¶Ô´ËÊÂÕö¿ªÁËÊӲ졣¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://olhardigital.com.br/en/2021/04/16/safety/national-library-website-victim-ransomware-attack/


5.McAfeeÐû²¼2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ


5.jpg


McAfeeÐû²¼ÁË2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£ ¡£¡£±¨¸æ³Æ £¬£¬£¬ £¬£¬2020ÄêQ4ƽ¾ùÿ·ÖÖӿɼì²âµ½648¸öÍþв £¬£¬£¬ £¬£¬±ÈQ3ÔöÌíÁË10£¥ £¬£¬£¬ £¬£¬±ÈQ2ÔöÌíÁË40£¥ £¬£¬£¬ £¬£¬Ê¼ÖÕ³ÊÒ»Á¬ÉÏÉýÇ÷ÊÆ¡£¡£ ¡£¡£±¨¸æ»¹Ö¸³ö2020ÄêϰëÄêÔÚÒ°Íâ·¢Ã÷µÄ¹¥»÷ÊýÄ¿¼¤ÔöµÄÖ÷ÒªÔµ¹ÊÔ­ÓÉÊÇÒÔCOVIDΪÖ÷ÌâµÄ¹¥»÷ºÍPowerShellľÂíµÄ¼¤Ôö £¬£¬£¬ £¬£¬ÒÔ¼°SolarWindsÎó²îºÍSunburst¶ñÒâÈí¼þµÄÒ»Á¬ÉìÕÅ¡£¡£ ¡£¡£Ïà±ÈÓÚQ3 £¬£¬£¬ £¬£¬Q4µÄPowerShellÊýÄ¿ÔöÌíÁË208% £¬£¬£¬ £¬£¬Õë¶ÔofficeµÄ¶ñÒâÈí¼þÊýÄ¿ÔöÌíÁË199%¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.mcafee.com/enterprise/en-us/lp/threats-reports/apr-2021.html


6.Check PointÐû²¼2020ÄêÒÆ¶¯Çå¾²µÄÆÊÎö±¨¸æ


6.jpg


Check Point ResearchÐû²¼ÁË2020ÄêÒÆ¶¯Çå¾²µÄÆÊÎö±¨¸æ¡£¡£ ¡£¡£¸Ã±¨¸æÊ×´Î½ÒÆÆÁËÕë¶ÔÆóÒµÒÆ¶¯×°±¸µÄ×îÐÂÍþв £¬£¬£¬ £¬£¬´Ó¶ñÒâÓ¦Óõ½ÀÕË÷Èí¼þ¹¥»÷ £¬£¬£¬ £¬£¬ÒÔ¼°Ê¹ÓÃÆóÒµÒÆ¶¯×°±¸ÖÎÀíµÄ¹¥»÷¡£¡£ ¡£¡£±¨¸æÖ¸³ö £¬£¬£¬ £¬£¬2020Äê £¬£¬£¬ £¬£¬97%µÄ×éÖ¯ÃæÁÙʹÓÃÁ˶àÖÖ¹¥»÷ǰÑÔµÄÒÆ¶¯Çå¾²Íþв£»£»£»46%µÄ×éÖ¯ÖÐÓÐÖÁÉÙÒ»ÃûÔ±¹¤ÏÂÔØÁ˶ñÒâµÄÒÆ¶¯Ó¦ÓóÌÐò£»£»£»È«ÇòÖÁÉÙÓÐ40%µÄÒÆ¶¯×°±¸×Ô¼º¾ÍÈÝÒ×Êܵ½ÍøÂç¹¥»÷¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://pages.checkpoint.com/mobile-security-report-2021.html