ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵꣻ£»£»£»£»£»Î¢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò
Ðû²¼Ê±¼ä 2021-07-051.ÈðµäÁ¬Ëø³¬ÊÐCoopÒòKaseya¹©Ó¦Á´¹¥»÷¹Ø±ÕÊý°Ù¼ÒÃŵê

ÈðµäÁ¬Ëø³¬ÊÐCoop³ÆÆäÔâµ½ÁËKaseya¹©Ó¦Á´¹¥»÷£¬£¬Êý°Ù¼ÒÃÅµê¹Ø±Õ¡£¡£¡£CoopµÄ½²»°ÈËÌåÏÖÆäÓÚÉÏÖÜÎåÍíÉÏ6µã30·Ö×óÓÒ·¢Ã÷ÓÐÉÙÊýÃŵ귺ÆðÎÊÌ⣬£¬µ«Ò»Ò¹Ö®ºóÆä´ó²¿·ÖÃŵ궼±»ÆÈ¹Ø±Õ£¬£¬°üÀ¨ÊÕÒøÌ¨ºÍ×ÔÖú½áÕËÔÚÄÚµÄÕû¸öÖ§¸¶ÏµÍ³¶¼ÖÐÖ¹ÁË¡£¡£¡£±ðµÄ£¬£¬CoopûÓÐʹÓÃKesayaÈí¼þ£¬£¬ÓÉÓÚËûÃǵÄÒ»¸öÈí¼þÌṩÉÌʹÓÃÁ˸ÃÈí¼þ¶øÊܵ½Ó°Ïì¡£¡£¡£Çå¾²¹«Ë¾HuntressLabs³Æ£¬£¬´Ë´Î¹¥»÷»î¶¯µÄÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬£¬ÖÁÉÙÓÐ200¼Ò×éÖ¯Êܵ½Ó°Ïì¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/119663/cyber-crime/coop-supermarket-kaseya-ransomware-attack.html
2.΢ÈíǰԱ¹¤ÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000Íò

΢Èíǰ³õ¼¶¹¤³ÌʦVolodymyr KvashukʹÓõçÉÌÆ½Ì¨Îó²î³öÊÛXboxÀñÎ│׬Ǯ1000ÍòÃÀÔª¡£¡£¡£ËûµÄÍŶӵÄÖ÷ҪĿµÄÊÇÄ£ÄâMicrosoftÔÚÏß¹ºÖÃÀ´·¢Ã÷¸¶¿îÎÊÌâ¡£¡£¡£ÕâЩÐéÄâÕÊ»§¿ÉÒÔ±»ÏµÍ³Ê¶±ð£¬£¬ÔÚÍøÕ¾¹ºÖù¤¾ßʱ²»»áÊÕµ½ÈκβúÆ·£¬£¬¿ÉÊǵ±¹ºÖÃXboxÀñÎ│£¬£¬½«»ñµÃÒ»¸öÍêÈ«ÓÐÓõÄ25λ´úÂë¡£¡£¡£Ëû²¢Î´½«¸ÃÎó²î֪ͨÆäÉÏ˾£¬£¬¶øÊÇʹÓÃÆä׬Ǯ¡£¡£¡£Ö®ºó£¬£¬Ëû×ܹ²Ê¹ÓøÃÎó²îÇÔÈ¡²¢³öÊÛÁËÁè¼Ý152000ÕÅXboxÀñÎ│£¬£¬¼ÛÖµ1010ÍòÃÀÔª¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://news.softpedia.com/news/microsoft-engineer-stole-10m-by-selling-xbox-gift-cards-533416.shtml
3.Ñо¿Ö°Ô±Åû¶¶à¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤

Dr. WebÑо¿Ö°Ô±Åû¶ÁË9¸öAndroidľÂíÇÔÈ¡FacebookÓû§Æ¾Ö¤¡£¡£¡£ÕâЩӦÓÃαװ³ÉÎÞº¦µÄÕÕÆ¬±à¼¡¢ÓÅ»¯¡¢½¡ÉíºÍÕ¼ÐdzÌÐò£¬£¬À´ÓÕʹÊܺ¦ÕߵǼFacebookÕË»§£¬£¬²¢Ê¹ÓÃÒ»¶ÎJavaScript´úÂëÐ®ÖÆÊäÈëµÄƾ֤¡£¡£¡£ËäÈ»´Ë´Î»î¶¯ËƺõÊÇרÃÅÕë¶ÔFacebookÕÊ»§£¬£¬µ«Dr.WebÖÒÑԳƣ¬£¬ÕâÖÖ¹¥»÷Ò²¿ÉÒÔ¼ÓÔØÈÎºÎÆäËüÕýµ±ÍøÂçÆ½Ì¨µÄµÇÂ¼Ò³Ãæ£¬£¬À´ÇÔÈ¡ÆäËüЧÀ͵ĵǼÃûºÍÃÜÂë¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/07/android-apps-with-58-million-installs.html
4.ÃÀ¹ú°ü¹Ü¹«Ë¾AJG³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬¿Í»§ÐÅϢй¶

ÃÀ¹úArthur J. Gallagher (AJG) ³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬¿Í»§ÐÅϢй¶¡£¡£¡£AJGÊÇÃÀ¹úµÄÈ«Çò°ü¹Ü¾¼ÍºÍΣº¦ÖÎÀí¹«Ë¾£¬£¬×÷ΪȫÇò×î´óµÄ°ü¹Ü¾¼ÍÉÌÖ®Ò»£¬£¬ÓªÒµÆÕ±é49¸ö¹ú¼Ò/µØÇø¡£¡£¡£¹¥»÷±¬·¢ÔÚ2020Äê6ÔÂ3ÈÕÖÁ2020Äê9ÔÂ26ÈÕʱ´ú£¬£¬ÆäÔÚ2020Äê9ÔÂ28ÈÕÅû¶¸ÃÊÂÎñ²¢³ÆÃ»ÓÐÊý¾Ýй¶¡£¡£¡£µ«ÔÚËæºóµÄÊӲ췢Ã÷£¬£¬7376È˵ÄÃô¸ÐÐÅϢй¶£¬£¬°üÀ¨Éç»áÇå¾²ºÅÂë»ò˰ºÅ¡¢¼ÝÕÕ¡¢»¤ÕÕ¡¢³öÉúÈÕÆÚ¡¢Óû§ÃûºÍÃÜÂë¡¢Ô±¹¤Ê¶ÓÖÃû¡¢²ÆÎñÕË»§»òÐÅÓÿ¨ÐÅÏ¢¡¢µç×ÓÊðÃû¡¢Ò½ÁÆÐÅÏ¢¡¢°ü¹ÜÐÅÏ¢ÒÔ¼°ÉúÎïʶ±ðÐÅÏ¢µÈ¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/us-insurance-giant-ajg-reports-data-breach-after-ransomware-attack/
5.Unit 42Ðû²¼2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ

Unit 42Ðû²¼ÁË2021Äê2ÔÂÖÁ4ÔÂÍøÂç¹¥»÷Ç÷ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£±¨¸æÖ¸³ö£¬£¬2Ôµ½4Ô¹²·ÖÅÉÁË4969¸öеÄCVE±àºÅ£¬£¬ÆäÖÐÑÏÖØµÄÎó²îΪ598¸ö£¬£¬Õ¼±È15.5%£¬£¬POC¿ÉÓÃÐÔΪ9.4%£»£»£»£»£»£»¸ß¼¶µÄΪ1659¸ö£¬£¬Õ¼±È43.1%£¬£¬POC¿ÉÓÃÐÔΪ8.1%£»£»£»£»£»£»ÖеÈΪ1592¸ö£¬£¬Õ¼±È41.4%£¬£¬POC¿ÉÓÃÐÔΪ7.0%¡£¡£¡£ÔÚ¹¥»÷ÀàÐÍ·½Ã棬£¬´úÂëÖ´Ðй¥»÷Õ¼±È×î´ó£¬£¬Îª45.6%£»£»£»£»£»£»¶ø¹¥»÷µÄÆðÔ´µØ·½Ã棬£¬ÆäÖÐ×î¶àµÄÀ´×ÔÓÚÃÀ¹ú£¬£¬Æä´ÎÊǶíÂÞ˹ºÍÖйú¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://unit42.paloaltonetworks.com/network-attack-trends-february-april-2021/
6.WatchGuardÐû²¼2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ

WatchGuardÐû²¼ÁË2021ÄêµÚÒ»¼¾¶È»¥ÁªÍøÇå¾²ÆÊÎö±¨¸æ¡£¡£¡£±¨¸æÖ¸³ö£¬£¬ÔÚ2020ÄêQ1¼ì²âµ½µÄÍþвÖÐÓÐ74%ÊÇÁãÈÕÎó²î¶ñÒâÈí¼þ£¬£¬µÖ´ïÁËÀúʷиߡ£¡£¡£5ÖÖеĶñÒâÈí¼þUrsu¡¢Trojan.IFrame¡¢XML.JSLoader¡¢ZmutzyºÍZum.Androm½øÈëÁËÊ®´ó¶ñÒâÈí¼þµÄÅÅÐаñ¡£¡£¡£±ðµÄ£¬£¬´Ó3ÔÂ24ÈÕ(µÚÒ»´Î·¢Ã÷IPS¹¥»÷)µ½3ÔÂ⣬£¬Õë¶ÔProxyLogin Exchange ServerÎó²îµÄ¹¥»÷ÔöÌíÁË1600%¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.watchguard.com/wgrd-resource-center/security-report-q1-2021


¾©¹«Íø°²±¸11010802024551ºÅ