PharMericaÔâµ½Money MessageµÄ¹¥»÷Ó°Ïì580ÍòÈË

Ðû²¼Ê±¼ä 2023-05-16

1¡¢PharMericaÔâµ½Money MessageµÄ¹¥»÷Ó°Ïì580ÍòÈË


¾Ý5ÔÂ13ÈÕ±¨µÀ £¬£¬£¬£¬£¬ÃÀ¹ú¹ú¼ÒÒ©·¿ÍøÂçPharMerica¼°Æäĸ¹«Ë¾BrightSpring HealthÔâµ½ÁËMoney MessageµÄÀÕË÷¹¥»÷¡£ ¡£¡£3ÔÂ14ÈÕ £¬£¬£¬£¬£¬PharMericaÔÚϵͳÖз¢Ã÷¿ÉÒɻ £¬£¬£¬£¬£¬ÊÓ²ìÈ·¶¨3ÔÂ12ÈÕµ½3ÔÂ13ÈÕʱ´ú±£´æÎ´¾­ÊÚȨµÄ»á¼û £¬£¬£¬£¬£¬µ¼Ö²¿·ÖÐÅϢй¶¡£ ¡£¡£ÕâÓëMoney MessageÉù³ÆµÄ¹¥»÷±¬·¢ÔÚ3ÔÂ28ÈÕÓÐÊÕÖ§¡£ ¡£¡£5ÔÂ12ÈÕ £¬£¬£¬£¬£¬PharMericaÌá½»µÄÊý¾Ýй¶±¨¸æ³Æ¹²ÓÐ5815591ÈËÊܵ½Ó°Ïì¡£ ¡£¡£Ð¹Â¶ÐÅÏ¢Éæ¼°ÐÕÃû¡¢µØµã¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢Ò©ÎïºÍ¿µ½¡°ü¹ÜÐÅÏ¢¡£ ¡£¡£


https://www.databreaches.net/ransomware-attack-on-pharmerica-affected-5-8-million-patients/


2¡¢ÃÀ¹ú½»Í¨²¿(USDOT)ϵͳÔâµ½¹¥»÷½ü24ÍòÔ±¹¤ÐÅϢй¶


ýÌå5ÔÂ13ÈÕ³Æ £¬£¬£¬£¬£¬ÃÀ¹ú½»Í¨²¿(USDOT)²¿·ÖÔ±¹¤µÄСÎÒ˽¼ÒÐÅϢй¶¡£ ¡£¡£Ð¹Â¶Ô´ÓÚ´¦Öóͷ£TRANServe½»Í¨¸£ÀûµÄϵͳÔâµ½¹¥»÷ £¬£¬£¬£¬£¬USDOTÌåÏÖûÓÐÈκν»Í¨Ç徲ϵͳÊܵ½Ó°Ïì¡£ ¡£¡£¸Ã²¿·ÖÕýÔÚÊÓ²ìÕâÒ»ÊÂÎñ £¬£¬£¬£¬£¬²¢¹Ø±ÕÁ˽»Í¨¸£ÀûϵͳµÄ»á¼û £¬£¬£¬£¬£¬Ö±µ½Ëü»Ö¸´¡£ ¡£¡£¸ÃÊÂÎñÓ°ÏìÁË114000ÃûÏÖÔ±¹¤ºÍ123000ÃûǰԱ¹¤¡£ ¡£¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÕßÉí·Ý £¬£¬£¬£¬£¬Ò²²»ÇåÎúÊÇ·ñÓÐСÎÒ˽¼ÒÐÅÏ¢±»ºÚ¿ÍʹÓᣠ¡£¡£


https://www.yahoo.com/news/data-237-000-us-government-232707971.html


3¡¢·Ñ³ÇÎÊѯ±¨Ôâµ½ÍøÂç¹¥»÷µ¼ÖÂÔËÓªÔÝʱÖÐÖ¹


¾ÝýÌå5ÔÂ15ÈÕ±¨µÀ £¬£¬£¬£¬£¬·Ñ³ÇÎÊѯ±¨£¨Philadelphia Inquirer£©Ôâµ½ÍøÂç¹¥»÷ £¬£¬£¬£¬£¬±¬·¢ÁË27ÄêÀ´×îÑÏÖØµÄÔËÓªÖÐÖ¹¡£ ¡£¡£¹¥»÷±¬·¢ÔÚ5ÔÂ14ÈÕ £¬£¬£¬£¬£¬µ¼Ö¸ñ¨ÖÜÈÕµÄÓ¡Ë¢°æÎÞ·¨Ó¡Ë¢ £¬£¬£¬£¬£¬¸Ã¹«Ë¾ÕýÔÚÆð¾¢»Ö¸´Ó¡Ë¢ÓªÒµ¡£ ¡£¡£¿ÉÊÇÐÂÎÅÓªÒµµÄÍøÕ¾ÖÜÈÕÈÔÔÚÔËÐÐ £¬£¬£¬£¬£¬µ«¸üÐÂËÙÂʱÈÕý³£ÇéÐÎÏÂÂý¡£ ¡£¡£¾ÝϤ £¬£¬£¬£¬£¬Ô±¹¤ÔÚÖÜÁùÔçÉÏ·¢Ã÷¸Ã±¨µÄÄÚÈÝÖÎÀíϵͳÎÞ·¨Õý³£ÊÂÇéʱ £¬£¬£¬£¬£¬Ê״η¢Ã÷Á˴˴ι¥»÷¡£ ¡£¡£¸Ã±¨ÉçÕýÔÚ¶Ô¹¥»÷¹æÄ£ºÍÏêϸĿµÄ¾ÙÐÐÊÓ²ì £¬£¬£¬£¬£¬Ô±¹¤ÖÁÉÙÔÚ±¾Öܶþ֮ǰÎÞ·¨Ôڰ칫ÊҰ칫¡£ ¡£¡£


https://www.bleepingcomputer.com/news/security/philadelphia-inquirer-operations-disrupted-after-cyberattack/


4¡¢SentinelLabs·¢Ã÷¶à¸ö»ùÓÚBabukÔ´´úÂëµÄÀÕË÷Èí¼þ


SentinelLabsÔÚ5ÔÂ11ÈÕ͸¶ £¬£¬£¬£¬£¬Ô½À´Ô½¶àµÄÀÕË÷Èí¼þ½ÓÄÉй¶µÄBabukÔ´´úÂëÀ´¿ª·¢Õë¶ÔVMware ESXiЧÀÍÆ÷µÄLinux¼ÓÃܳÌÐò¡£ ¡£¡£Ñо¿Ö°Ô±ÔÚ2022ÄêϰëÄêÖÁ2023ÄêÉϰëÄê·¢Ã÷ÁË9ÖÖ»ùÓÚBabukµÄÀÕË÷Èí¼þ±äÌå¡£ ¡£¡£ÕâЩÀÕË÷Èí¼þ°üÀ¨Play(.FinDom)¡¢Mario(.emario)¡¢Conti POC(.conti)¡¢REvilÓÖÃûRevix(.rhkrc)¡¢Cylance ransomware¡¢Dataf Locker¡¢RorschachÓÖÃûBabLock¡¢Lock4ºÍRTM Locker¡£ ¡£¡£


https://www.sentinelone.com/labs/hypervisor-ransomware-multiple-threat-actor-groups-hop-on-leaked-babuk-code-to-build-esxi-lockers/


5¡¢Brightly³ÆÆäSchoolDudeƽ̨Óû§µÄÐÅÏ¢ºÍƾ֤й¶


ýÌå5ÔÂ15ÈÕ±¨µÀ £¬£¬£¬£¬£¬Î÷ÃÅ×ÓµÄ×Ó¹«Ë¾Brightly Software³ÆÆäSchoolDudeƽ̨Óû§µÄÐÅÏ¢ºÍƾ֤й¶¡£ ¡£¡£Æ¾Ö¤Êý¾Ýй¶֪ͨ £¬£¬£¬£¬£¬¹¥»÷ÕßÓÚ4ÔÂ20ÈÕÈëÇÖÁËBrightlyµÄϵͳ £¬£¬£¬£¬£¬²¢ÓÚ4ÔÂ28ÈÕ±»·¢Ã÷ £¬£¬£¬£¬£¬Ó°ÏìÁË2964292ÃûSchoolDudeµÄÓû§¡£ ¡£¡£´Ë´ÎÊÂÎñй¶ÁËÐÕÃû¡¢ÓʼþµØµã¡¢ÕÊ»§ÃÜÂëºÈµç»°ºÅÂëµÈ¡£ ¡£¡£BrightlyÖØÖÃÁËËùÓÐSchoolDudeÓû§µÄÃÜÂë £¬£¬£¬£¬£¬²¢½¨ÒéÓû§ÊµÊ±¸ü¸ÄʹÓÃÁËÏàͬÃÜÂëµÄÆäËüÕÊ»§µÄÃÜÂë¡£ ¡£¡£


https://www.securityweek.com/brightly-software-notifying-3-million-schooldude-users-of-data-breach/


6¡¢KasperskyÐû²¼2023ÄêÀÕË÷Èí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ


5ÔÂ11ÈÕ £¬£¬£¬£¬£¬KasperskyÐû²¼ÁË2023ÄêÀÕË÷Èí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ¡£ ¡£¡£×î¾ßÓ°ÏìÁ¦µÄÀÕË÷×éÖ¯ÔÚÒÑÍùÒ»Ä걬·¢×ª±ä £¬£¬£¬£¬£¬2022ÄêÉϰëÄêÊÇLockBit¡¢REvilºÍConti £¬£¬£¬£¬£¬2022ϰëÄêÊÇLockBit¡¢BlackBastaºÍBlackCat £¬£¬£¬£¬£¬2023ÄêQ1ÊÇLockBit¡¢Vice SocietyºÍBlackCat¡£ ¡£¡£2022ÄêÀÕË÷Èí¼þµÄÕ¼½ÏÁ¿Ö®2021ÄêÂÔÓÐϽµ £¬£¬£¬£¬£¬´Ó51.9%Ͻµµ½39.8%¡£ ¡£¡£Kaspersky¶Ô2023ÄêµÄÕ¹ÍûÊǸü¶àµÄǶÈëʽ¹¦Ð§¡¢ÀÄÓÃDriverÒÔ¼°½ÓÄÉÆäËü¶ñÒâÈí¼þ¼Ò×åµÄ´úÂë¡£ ¡£¡£


https://securelist.com/new-ransomware-trends-in-2023/109660/