ºÚ¿Í¹ûÈ»µç×ÓÒÕ½çEAµÄÊý¾Ý£¬°üÂÞFIFA 21ÓÎÏ·Ô´Â룻PythonÐû²¼Äþ¾²¸üУ¬ÐÞ¸´PyPI´æ´¢¿âÖжà¸ö©¶´
Ðû²¼Ê±¼ä 2021-08-021.ºÚ¿Í¹ûÈ»µç×ÓÒÕ½çEAµÄÊý¾Ý£¬°üÂÞFIFA 21ÓÎÏ·Ô´Âë
7ÔÂ26ÈÕÐÇÆÚÒ»£¬ºÚ¿ÍÔÚ°µÍø¹ûÈ»µç×ÓÒÕ½çEAµÄÊý¾Ý£¬°üÂÞFIFA 21ÓÎÏ·Ô´Âë¡¢FrostBiteÓÎÏ·ÒýÇæºÍµ÷ÊÔ¹¤¾ßÔ´´úÂëµÈÐÅÏ¢¡£¸Ãʼþ×î³õÓÚ6ÔÂ10ÈÕÅû¶£¬ÆäʱºÚ¿ÍÉù³ÆÇÔÈ¡Á˸ù«Ë¾780GBµÄÊý¾Ý£¬²¢Ô¸ÒâÒÔ2800ÍòÃÀÔªµÄ¼Û¸ñ³öÊÛ¡£µ«ÒòΪ±»µÁÊý¾Ý´ó¶àÊÇÔ´´úÂë¶ÔÍøÂç·¸×ïÍÅ»ïÀ´ËµÃ»ÓÐÈκμÛÖµ£¬Òò´Ë²¢Î´ÕÒµ½Âò¼Ò¡£Ö®ºóºÚ¿ÍÊÔͼÀÕË÷EA£¬ÔÚ7ÔÂ14ÈÕÐû²¼ÁË1.3GBµÄFIFAÔ´´úÂë×÷ΪÑù±¾£¬²¢ÔÚ2Öܺó¹ûÈ»ÁËÈ«²¿Êý¾Ý¡£
ÔÎÄÁ´½Ó£º
https://therecord.media/hackers-leak-full-ea-data-after-failed-extortion-attempt/
2.Ñо¿ÍŶӳÆDarkSide»òÒÔBlackMatterÖ®ÃûÖØÐ»عé
Ñо¿ÍŶӳÆÀÕË÷ÍÅ»ïDarkSide¿ÉÄÜÒÑÖØÐÂÃüÃûΪеÄBlackMatterÖØÐ»ع顣DarkSideÔÚ¹¥»÷ÃÀ¹ú×î´óµÄȼÁϹܵÀColonial Pipelineºó£¬ÓÚ½ñÄê5ÔÂͻȻ¹Ø±Õ¡£ÉÏÖÜ£¬Ñо¿ÈËÔ±·¢ÏÖеÄÀÕË÷Èí¼þBlackMatter¡£·ÖÎö·¢ÏÖ£¬¶þÕßʹÓõļÓÃÜ·¨Ê½¼¸ºõÏàͬ£¬°üÂÞDarkSideËùÌØÓеÄ×Ô½ç˵Salsa20¾ØÕó¡£´ËÍ⣬¶þÕß¶¼Ê¹ÓÃÁËDarkSide¶ÀÕ¼µÄRSA-1024ʵÏÖ¡¢½ÓÄÉÁËÏàͬµÄ¼ÓÃÜËã·¨¶øÇÒÊý¾ÝÐ¹Â¶ÍøÕ¾¶¼Ê¹ÓÃÁËÀàËÆµÄÓïÑÔ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/darkside-ransomware-gang-returns-as-new-blackmatter-operation/
3.RiskIQ·¢ÏÖ¶íÂÞ˹Bear TracksÁè¼Ý30¸ö»îÔ¾µÄC2
RiskIQµÄÑо¿ÈËÔ±·¢ÏÖÁ˶íÂÞ˹APT29£¨ÓÖ³ÆBear Tracks£©Áè¼Ý30¸ö»îÔ¾µÄC2¡£´Ë´ÎÊӲ쿪ʼÓÚ2021Äê6ÔÂ11ÈÕ£¬Ñо¿ÈËÔ±·¢ÏÖÓë¶íÂÞ˹µÄÍâ¹úÇ鱨¾Ö(SVR)ÓйصÄAPT×éÖ¯Bear TracksÕýÔÚ»ý¼«µØÀûÓöñÒâÈí¼þWellMessºÍWellMail£¬ËüÃÇÔÚÒÔÇ°ÔøÓÃÓÚÕë¶ÔÓ¢¹ú¡¢ÃÀ¹úºÍ¼ÓÄôóCOVID-19Ñо¿µÄ¼äµý»î¶¯¡£´ËÍ⣬RiskIQ»¹¹ûÈ»ÁËÕâ30¶ą̀·þÎñÆ÷µÄÍêÕûÐÅÏ¢£¬²¢Ô¤¼ÆAPT29»áÀûÓÃÕâЩ·þÎñÆ÷¼ÌÐøÇÔȡ֪ʶ²úȨ¡£
ÔÎÄÁ´½Ó£º
https://www.riskiq.com/blog/external-threat-management/apt29-bear-tracks/
4.PythonÐû²¼Äþ¾²¸üУ¬ÐÞ¸´PyPI´æ´¢¿âÖжà¸ö©¶´
PythonÍŶÓÐû²¼Äþ¾²¸üУ¬ÐÞ¸´ÁËPython Package Index (PyPI)´æ´¢¿âÖеÄ3¸ö©¶´¡£´Ë´ÎÐÞ¸´µÄ©¶´ÖУ¬×îÑÏÖØµÄÒ»¸öÔÊÐí¹¥»÷ÕßÔÚPyPIµÄ»ù´¡ÉèÊ©ÉÏÔËÐÐÃüÁÀ´ÇÔÈ¡´úÂë¿âÖеÄÁîÅÆ»òÆäËüÃÜÂ룬¶øÇÒÕâЩÁîÅÆ»òÃÜÂ뻹¿É±»ÓÃÀ´·ÃÎʺ͸͝PyPI´úÂë¡£ÁíÍâÁ½¸ö©¶´ÖУ¬Ò»¸öÔÊÐí¹¥»÷Õßɾ³ý²»ÔÚÆä¿ØÖÆÏµÄÏîÄ¿µÄÎĵµ£¬¶øÁíÒ»¸öÔÊÐí¹¥»÷Õßɾ³ý²»ÔÚÆä¿ØÖÆÏµÄÏîÄ¿ÖеĽÇÉ«¡£
ÔÎÄÁ´½Ó£º
https://therecord.media/python-team-fixes-bug-that-allowed-takeover-of-pypi-repository/
5.KasperskyÐû²¼2021ÄêQ2 DDoS¹¥»÷Ì¬ÊÆµÄ·ÖÎö³ÂËß
KasperskyÐû²¼ÁË2021ÄêQ2 DDoS¹¥»÷Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬Q2Ïà¶Ô±ÈÁ¦Æ½¾²£¬ÓëÉÏÒ»¼¾¶ÈÏà±ÈDDoS¹¥»÷×ÜÊýÂÔÓÐϽµ£¬Ô¤¼ÆÕâÒ»Ç÷ÊÆ»áÁ¬Ðøµ½Q3¡£´ËÍ⣬Q2 DDoS¹¥»÷Á¬ÐøµÄʱ¼äÒ²½Ó½ü³£Ì¬£¬²îÒìʱÆÚÖ®¼äµÄµßô¤·ù¶È²»Áè¼Ý30%¡£Q2Ôâµ½DDoS¹¥»÷×î¶àµÄÊÇÃÀ¹ú£¨36%£©£¬Æä´ÎÊÇÖйú£¨10.28%£©ºÍ²¨À¼£¨6.34%£©¡£DDoS¹¥»÷×î»îÔ¾µÄÒ»ÌìÊÇ6ÔÂ2ÈÕ£¬·¢ÉúÁË1164´Î¹¥»÷£»×µÄÒ»´Î¹¥»÷Á¬ÐøÁË776Сʱ£¨Áè¼Ý32Ì죩£»60%µÄDDoS¹¥»÷ʹÓÃÁËUDPºé·º£»½©Ê¬ÍøÂçC&C·þÎñÆ÷×î¶àµÄÊÇÃÀ¹ú£¨47.95%£©¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/ddos-attacks-in-q2-2021/103424/
6.KasperskyÐû²¼2021ÄêQ2 APT¹¥»÷Ì¬ÊÆµÄ·ÖÎö³ÂËß
KasperskyÐû²¼ÁË2021ÄêQ2 APT¹¥»÷Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬×î½ü¼¸¸öÔ·¢ÉúÁ˶àÆð¹©Ó¦Á´¹¥»÷£¬ÆäÖв»·¦¹¥»÷¼¼Êõº¬Á¿µÍµ«Í¬ÑùÀֳɣ¬ÀýÈçBountyGlad¡¢CoughingDownºÍÕë¶ÔCodecovµÄ¹¥»÷¡£APTÍÅ»ïÖ÷ҪʹÓÃÉç»á¹¤³Ì¹¥»÷¿ª¶ËÈëÇÖÄ¿±êÍøÂ磬ҲÓв¿ÃÅ×éÖ¯ÀûÓÃÁãÈÕ©¶´¹¥»÷ÍøÂç¡£APT×éÖ¯»¹»á²»Í£Ë¢Ðº͸üÐÂËûÃǵŤ¾ß¼¯£º²»½ö°üÂÞÐÂÆ½Ì¨£¬»¹°üÂÞʹÓÃµÄÆäËüÓïÑÔ¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/apt-trends-report-q2-2021/103517/