ÑÇÖÞijÁ½¸öÊý¾ÝÖÐÐı»ºÚÉæ¼°Æ»¹û¡¢Î¢ÈíºÍÈýÐǵȹ«Ë¾
Ðû²¼Ê±¼ä 2023-02-221¡¢ÑÇÖÞijÁ½¸öÊý¾ÝÖÐÐı»ºÚÉæ¼°Æ»¹û¡¢Î¢ÈíºÍÈýÐǵȹ«Ë¾
¾ÝýÌå2ÔÂ21ÈÕ±¨µÀ£¬ºÚ¿ÍÈëÇÖÁËλÓÚÑÇÖÞµÄÁ½¸öÊý¾ÝÖÐÐÄ£¬ÇÔÈ¡ÁËÆ»¹û¡¢ÓŲ½¡¢Î¢Èí¡¢ÈýÐÇ¡¢°¢Àï°Í°ÍµÈ¿Æ¼¼¹«Ë¾µÄµÇ¼ƾ֤£¬²¢Ô¶³Ì·ÃÎÊÁËÕâЩ×éÖ¯µÄ¼à¿ØÉãÏñÍ·¡£Äþ¾²¹«Ë¾Resecurity×î³õÔÚ2021Äê9ÔÂÈ·¶¨ÁËÊý¾Ýй¶Ê¼þ£¬µ«ÊÇÖ±µ½2023Äê2ÔÂ20ÈÕ£¬ºÚ¿ÍMinimalman²ÅÔÚºÚ¿ÍÂÛ̳BreachforumsÉϹûÈ»ÁËÕâЩÊý¾Ý¡£¾ÝϤ£¬ÕâÁ½¸öÊý¾ÝÖÐÐͼÔÚ2023Äê1ÔÂÇ¿ÖÆËùÓпͻ§¸ü¸ÄÃÜÂë¡£
https://www.hackread.com/data-centers-hack-data-leak/
2¡¢ÆÏÌÑÑÀÊÐÕþ¹©Ë®¹«Ë¾Aguas do PortoÔâµ½LockbitµÄ¹¥»÷
¾Ý2ÔÂ20ÈÕ±¨µÀ£¬ÆÏÌÑÑÀÊÐÕþ¹©Ë®¹«Ë¾Aguas do PortoÔâµ½ÁËÀÕË÷ÍÅ»ïLockbitµÄ¹¥»÷¡£LockbitÒѽ«Aguas do PortoÌí¼Óµ½ÆäTorÍøÕ¾µÄ±»¹¥»÷Ä¿±êÁбíÖУ¬²¢ÍþвҪй¶±»µÁÊý¾Ý£¬½ØÖ¹ÈÕÆÚΪ2023Äê3ÔÂ7ÈÕ¡£µ«ÉÐδÐû²¼±»µÁÊý¾ÝÑù±¾×÷Ϊ¹¥»÷Ö¤¾Ý£¬Òò´Ë²»Çå³þ¸ÃÍÅ»ïÇÔÈ¡µÄÊý¾ÝÁ¿ºÍÊý¾ÝÀàÐÍ¡£¸Ã¹©Ë®¹«Ë¾ÓÚ1ÔÂ30ÈÕ³ÆÆäÔâµ½¹¥»÷£¬²¿ÃÅ·þÎñÊܵ½Ó°Ï죬µ«¹©Ë®ºÍÎÀÉúÉèÊ©²¢Î´ÊÜÓ°Ïì¡£
https://securityaffairs.com/142477/cyber-crime/lockbit-water-utility-aguas-do-porto.html
3¡¢ÀÕË÷ÍÅ»ï0mega¹ûÈ»ÃÀ¹úAviacodeÁè¼Ý200 GBµÄÎļþ
ýÌå2ÔÂ20Èճƣ¬0mega¹ûÈ»ÁËAviacodeÁè¼Ý200 GBµÄÎļþ¡£AviacodeÖ÷ÒªÌṩҽÁƱàÂë·þÎñ¡¢Ò½ÁƱàÂëÉ󼯡¢±àÂë¾Ü¾ø¹ÜÀí¡¢ÁÙ´²Îĵµ¸ïÐÂÒÔ¼°Õ˵¥ºÍË÷ÅâµÄÊÕÈëÖÜÆÚ¹ÜÀí¡£2ÔÂ11ÈÕ£¬0megaÐû²¼Á˱»µÁÊý¾Ý£¬ÆäÖаüÂÞÓйØÔ±¹¤ºÍ³Ð°üÉ̵ÄÐÅÏ¢¡£0mega·¢ÑÔÈ˳ƣ¬ËûÃÇÔçÔÚ2023Äê1ÔÂ1ÈվͼÓÃÜÁËAviacode£¬µ«¸Ã¹«Ë¾´Óδ»ØÓ¦¹ýËûÃÇ¡£½ØÖÁĿǰ£¬Aviacode¼°Æäĸ¹«Ë¾GeBBS¾ùδ»ØÓ¦Ñо¿ÈËÔ±¹ØÓÚ´ËʼþµÄѯÎÊ¡£
https://www.databreaches.net/aviacode-remains-silent-after-0mega-dumps-200-gb-of-their-files/
4¡¢SideCopyÕë¶ÔÓ¡¶ÈµÄÕþ¸®»ú¹¹·Ö·¢ºóÃÅReverseRAT
2ÔÂ21ÈÕ±¨µÀ³Æ£¬Äþ¾²¹«Ë¾ThreatMon·¢ÏÖÁËÕë¶ÔÓ¡¶ÈÕþ¸®»ú¹¹µÄÓã²æÊ½µöÓã»î¶¯£¬Ö¼ÔÚ·Ö·¢ÃûΪReverseRATµÄºóÃÅ¡£¸Ã»î¶¯±»¹éÒòÓÚSideCopyÍŻѬȾʼÓÚÒ»·â°üÂÞÆôÓúêµÄWordÎĵµµÄµç×ÓÓʼþ£¬¸ÃÎĵµÎ±×°³ÉÓ¡¶ÈͨÐŲ¿¹ØÓÚAndroidÍþвºÍÔ¤·ÀµÄ×Éѯ¡£Ò»µ©´ò¿ªÎļþ²¢ÆôÓú꣬Ëü¾Í»á´¥·¢¶ñÒâ´úÂëµÄÖ´ÐУ¬´Ó¶øµ¼ÖÂÔÚµÄϵͳÉϰ²×°ReverseRAT¡£ReverseRATµÄ¹¦Ð§°üÂÞ½ØÆÁ¡¢ÏÂÔØºÍÖ´ÐÐÎļþÒÔ¼°½«ÎļþÉÏ´«µ½C2·þÎñÆ÷µÈ¡£
https://thehackernews.com/2023/02/researchers-warn-of-reverserat-backdoor.html
5¡¢ÀûÎïÆÖNHSÒ½ÔºÐÅÍлù½ðÉÏÍòÃûÔ±¹¤µÄ¸öÈËÐÅϢй¶
ýÌå2ÔÂ17ÈÕ±¨µÀ£¬ÀûÎïÆÖNHSÒ½ÔºÐÅÍлù½ðµÄÔ¼14000ÃûÔ±¹¤Òѱ»¼û¸æ£¬ÓÉÓÚÈËΪ´íÎó£¬ËûÃǵÄÊý¾ÝÒÑй¶¡£¾ÝϤ£¬Ò»·Ý°üÂÞÈËΪÐÅÏ¢µÄÎļþ±»·¢Ë͸øÁËÊý°ÙÃûNHS¾ÀíºÍ24¸öÍⲿÕË»§£¬Éæ¼°ÐÕÃû¡¢NI±àºÅ¡¢ÐÔ±ð¡¢ÖÖ×åºÍнˮµÈ¡£Ä¿Ç°£¬24¸öÍⲿÊÕ¼þÈ˾ùÒÑÊÕµ½Í¨Öª²¢È·ÈÏɾ³ýÁ˸ÃÎļþ¡£ÂÉËùµÄÖ´·¨×ܼàÌåÏÖ£¬Èç¹û¸öÈËÐÅÏ¢±»·¢Ë͸ø´íÎóµÄÊÕ¼þÈË£¬·¢¼þÈËÃ÷ÏÔÎ¥·´ÁËGDPR£¬Ô±¹¤ÓÐÀíÓÉ»ñµÃÅâ³¥¡£
https://www.infosecurity-magazine.com/news/data-leak-hits-thousands-of-nhs/
6¡¢VaronisÐû²¼¹ØÓÚÀÕË÷Èí¼þHardBit 2.0µÄ·ÖÎö³ÂËß
2ÔÂ20ÈÕ£¬VaronisÐû²¼Á˹ØÓÚÀÕË÷Èí¼þHardBit 2.0µÄ·ÖÎö³ÂËß¡£HardBitµÄµÚÒ»¸ö°æ±¾ÓÚ2022Äê10Ô±»·¢ÏÖ£¬2.0°æÓÚ2022Äê11ÔÂÍÆ³ö£¬ÈÔÈ»ÊÇĿǰÁ÷ÐеıäÌå¡£Óë´ó¶àÊýÀÕË÷Èí¼þ²îÒ죬HardBitûÓÐÊý¾ÝÐ¹Â¶ÍøÕ¾£¬Ò²Ã»ÓÐʹÓÃË«ÖØÀÕË÷¼ÆÄ±¡£¹ØÓÚ¼ÓÃܽ׶Σ¬HardBit 2.0²¢²»ÏñÐí¶àÀÕË÷Èí¼þÄÇÑù½«¼ÓÃÜÊý¾ÝдÈëÎļþ¸±±¾²¢É¾³ýÔ¼þ£¬¶øÊÇ´ò¿ªÎļþÓüÓÃÜÊý¾ÝÁýÕÖÆäÄÚÈÝ¡£ÕâÖÖÒªÁìʹÑо¿ÈËÔ±¸üÄѻֻظ´Ê¼Îļþ£¬²¢¿É¼Ó¿ì¼ÓÃÜËÙ¶È¡£
https://www.varonis.com/blog/hardbit-2.0-ransomware