ij¿ç¹ú¹«Ë¾Òò50ÒÚ´Î×Ô¶¯²¦ºÅµç»°±»FCC·£¿î½ü3ÒÚÃÀÔª

Ðû²¼Ê±¼ä 2023-08-08

1¡¢Ä³¿ç¹ú¹«Ë¾Òò50ÒÚ´Î×Ô¶¯²¦ºÅµç»°±»FCC·£¿î½ü3ÒÚÃÀÔª


¾ÝýÌå8ÔÂ4ÈÕ±¨µÀ£¬ÃÀ¹úFCC¶ÔÒ»¼Ò¿ç¹úÍøÂ繫˾·£¿î299997000ÃÀÔª£¬Ô­ÒòÊǸù«Ë¾ÔÚ2021ÄêÈý¸öÔÂÄÚÏòÁè¼Ý5ÒÚ¸öµç»°ºÅÂ벦´òÁË50ÒÚ´Î×Ô¶¯²¦ºÅµç»°¡£FCC³Æ£¬¸Ã¹«Ë¾Î¥·´Á˶àÏî×Ô¶¯É§Èŵ绰½ûÁ°üÂÞδ¾­ÊÂÏÈÃ÷ȷͬÒâ¾ÍÏòÊÖ»ú²¦´òÔ¤ÏÈÂ¼ÖÆµÄÓïÒôµç»°¡¢Î´¾­ÊéÃæÍ¬ÒⲦ´òµç»°ÓªÏúµç»°¡¢²¦´ò¹ú¼Ò½ûÖ¹ºô½Ð¹ÒºÅ²áÉϵĺÅÂëÒÔ¼°Î´ÄÜÔÚ¿ªÊ¼Ê±Ê¶±ðÀ´µçÕßµÄÉí·ÝµÈ¡£´ËÍ⣬ÕâЩµç»°ÓªÏúʹÓÃÀ´µçÏÔʾÆÛÆ­¹¤¾ßÀ´ÑÚ¸ÇÆäʵ¼ÊÀ´Ô´£¬ÕâҲΥ·´ÁËÖ´·¨¡£Èç¹ûÊÜÖÆ²ÃʵÌåδÄܼ°Ê±ÂÄÐи¶¿îÒåÎñ£¬ÃÀ¹ú˾·¨²¿½«½éÈë¡£


https://www.bleepingcomputer.com/news/security/extended-warranty-robocallers-fined-300-million-after-5-billion-scam-calls/


2¡¢ÃÀ¹úÏÄÍþÒÄË«×Ó×ù±±ÌìÎĄ̈Ôâµ½¹¥»÷µ¼ÖÂÔËÓªÔÝʱÖжÏ


ýÌå8ÔÂ3ÈÕ±¨µÀ³Æ£¬ÃÀ¹ú¹ú¼ÒÌìÎÄѧÖÐÐÄÔâµ½¹¥»÷£¬µ¼ÖÂÏÄÍþÒÄÒ»¸öÌìÎĄ̈µÄÔËÓªÊܵ½Ó°Ïì¡£ÃÀ¹ú¹ú¼Ò¿ÆÑ§»ù½ð»áµÄ¹ú¼Ò¹âѧºìÍâÌìÎÄѧÑо¿ÊµÑéÊÒ£¨NOIRLab£©³ÆÆä·¢ÏÖ¹¥»÷ºóÁ¢¼´½ÓÄÉ´ëÊ©£¬²¢³öÓÚ½÷É÷¿¼ÂǹرÕÁËË«×Ó×ùÌìÎĄ̈¼ÆËã»úϵͳ¡£Ä¿Ç°£¬Ë«×Ó×ùÍøÕ¾ºÍÌá°¸¹¤¾ßÒÑÀëÏߣ¬µ«NOIRLabÍøÕ¾ÈÔ±£³ÖÔÚÏß״̬¡£¸ÃʵÑéÊÒûÓÐ͸¶ÕâÊÇ·ñÊÇÀÕË÷¹¥»÷£¬µ«ÌåÏÖÕâ¶ÔNOIRLabÖÐÐĵįäËü»ù´¡ÉèʩûÓÐÓ°Ïì¡£


https://therecord.media/gemini-north-observatory-cyberattack


3¡¢Î÷°àÑÀµÄÖÁÉÙ72¸öÍøÕ¾Ôâµ½NoName057µÄDDoS¹¥»÷


¾Ý8ÔÂ7ÈÕ±¨µÀ£¬Î÷°àÑÀÖÁÉÙ72¸öÍøÕ¾Ôâµ½¶íÂÞ˹ºÚ¿ÍÍÅ»ïNoName057µÄDDoS¹¥»÷¡£¹¥»÷·¢ÉúÔÚ7ÔÂ19ÈÕÖÁ30ÈÕÖ®¼ä£¬Ó°ÏìÁËÒøÐС¢µçÐÅÌṩÉÌ¡¢Ã½ÌåºÍÂÃÓι«Ë¾¡£±»¹¥»÷ÍøÕ¾»¹°üÂÞ×ÜÀí¹ÙÛ¡La Moncloa¡¢·¨Ôº¡¢Ë¾·¨²¿¡¢¹úÍÁÕþ²ß²¿ÒÔ¼°¹ú·À²¿»ú¹¹Isdefe¡£¾ÝϤ£¬´Ë´Î¹¥»÷²¢Î´µ¼ÖÂÈκÎÃô¸ÐÊý¾Ýй¶¡£NoName057»¹Ôø¼ÓÈëÁËÓ벨À¼¡¢Á¢ÌÕÍðÒÔ¼°½Ý¿Ë¹²ºÍ¹ú×ÜͳºòÑ¡ÈËÏà¹ØµÄ¹¥»÷¡£


https://www.infosecurity-magazine.com/news/russian-hacktivists-overwhelm/


4¡¢PhylumÔÚNPMÖмì²âµ½¶à¸öÇÔÈ¡¿ª·¢ÈËÔ±Êý¾ÝµÄ¶ñÒâ°ü


8ÔÂ4ÈÕ±¨µÀ³Æ£¬PhylumÔÚnpm±£Ö¤ÀíÆ÷Éϼì²âµ½Á˶à¸ö²îÒìµÄ¡°test¡±°ü£¬Ö¼ÔÚй¶¿ª·¢ÈËÔ±µÄÔ´´úÂëºÍÆäËü»úÃÜÐÅÏ¢¡£ÕâЩ°ü¾ùÓÉͬһ¸önpmÓû§malikrukd4732Ðû²¼£¬²¢°üÂÞÈý¸öÎļþ¡£ÕâЩÄ£¿éÆô¶¯JavaScript£¨¡°index.js¡±£©£¬ÆäÖаüÂÞ½«ÐÅϢй¶µ½Ô¶³Ì·þÎñÆ÷µÄ´úÂë¡£¶ñÒâ´úÂëÕë¶ÔµÄÎļþºÍĿ¼¿ÉÄܰüÂÞÃô¸ÐÊý¾Ý£¬ÀýÈçÖÚ¶àÓ¦ÓúͷþÎñµÄƾ¾Ý¡£Ñо¿ÈËÔ±ÍÆ²âÕâÊÇÒ»ÆðÖ÷ÒªÕë¶Ô¼ÓÃÜ»õ±ÒÁìÓòµÄ¹¥»÷»î¶¯¡£


https://securityaffairs.com/149165/hacking/npm-highly-targeted-attacks.html


5¡¢TrustwaveÅû¶Chrome¶ñÒâÈí¼þRilideµÄ¶àÆð¹¥»÷»î¶¯


8ÔÂ3ÈÕ£¬TrustwaveÅû¶ÁËRilideбäÌåµÄ¶àÆð¹¥»÷»î¶¯¡£RilideÕë¶Ô»ùÓÚChromiumµÄä¯ÀÀÆ÷£¬Ö¼ÔÚÇÔÈ¡Ãô¸ÐÊý¾ÝºÍ¼ÓÃÜ»õ±Ò£¬Ð°汾¿ÉÈÆ¹ýGoogleµÄChrome Extension Manifest V3¡£½üÆÚ·¢ÏֵĵÚÒ»¸ö»î¶¯Ê¹ÓÃPowerPointÓÕ¶üºÍαÔìµÄPalo Alto GlobalProtect²å¼þÀ´Õë¶ÔÆóÒµÓû§¡£µÚ¶þ¸ö»î¶¯Ê¹ÓÃTwitterÐû´«Î±ÔìµÄP2EÓÎÏ·£¬×îÖÕ»á·Ö·¢RilideºÍRedline Stealer¡£µÚÈý¸ö»î¶¯Ö÷ÒªÕë¶Ô°Ä´óÀûÑǺÍÓ¢¹úÄ¿±êµÄÒøÐÐÊý¾Ý£¬½ÓÄÉÆæÌصÄÒªÁì¼ÓÔØÀ©Õ¹·¨Ê½¡£


https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/new-rilide-stealer-version-targets-banking-data-and-works-around-google-chrome-manifest-v3/


6¡¢BlackBerryÐû²¼2023ÄêQ2ÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß


8ÔÂ3ÈÕ±¨µÀ£¬BlackBerryÐû²¼ÁË2023ÄêQ2ÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£³ÂËߺ­¸ÇÁË3ÔÂÖÁ5ÔÂÊӲ쵽µÄ¹¥»÷£¬¸Ã¹«Ë¾Éù³ÆÔÚ´ËÆÚ¼äÄÚ×èÖ¹ÁË150Íò´Î¹¥»÷£¬ÆäÖÐ55000´Î¹¥»÷Õë¶Ô¹«¹²ÐÐÒµ¡£¹¥»÷Õ߯½¾ùÿ·ÖÖÓÖ´ÐÐÔ¼11.5´Î¹¥»÷£¬Ã¿·ÖÖÓÔ¼1.7¸öеĶñÒâÈí¼þÑù±¾¡£Ò½ÁƱ£½¡ºÍ½ðÈÚ·þÎñÐÐÒµÊÇÊܵ½¹¥»÷×î¶àµÄÐÐÒµÖ®Ò»¡£´ËÍ⣬APT28ºÍLazarus Group·Ç³£»îÔ¾£¬ËûÃÇ֮ǰµÄ¹¥»÷Ö÷ÒªÕë¶ÔÃÀ¹ú¡¢Å·Ö޺ͺ«¹ú¡£


https://www.blackberry.com/us/en/solutions/threat-intelligence/2023/threat-intelligence-report-august