ÃÀ¹ú¼ÓÖݳ¤Ì²ÊÐÔâµ½ÍøÂç¹¥»÷ÊÐÕþϵͳ¹Ø±ÕÊýÈÕ
Ðû²¼Ê±¼ä 2023-11-21¾ÝýÌå11ÔÂ18ÈÕ±¨µÀ£¬ÃÀ¹ú¼ÓÀû¸£ÄáÑÇÖݳ¤Ì²ÊÐÔâµ½¹¥»÷£¬¹Ø±ÕÁ˲¿ÃÅITϵͳÒÔ·ÀÖ¹¹¥»÷Á÷´«¡£¹¥»÷·¢ÉúÓÚ11ÔÂ14ÈÕ£¬²¢Î´Ó°Ïì½ô¼±·þÎñ£¬µ«¹«¹²ÊÂÒµ½É·ÑµÈ²¿ÃÅÔÚÏß·þÎñÊܵ½Ó°Ïì¡£½ØÖÁÉÏÖÜÎ壬¸ÃÊÐÔ¤¼Æ¿ÉÄÜÐèÒª¼¸ÌìµÄʱ¼ä½øÐлָ´¡£Ä¿Ç°£¬³¤Ì²ÊÐÒÑÐû²¼½øÈë½ô¼±×´Ì¬¡£¹¥»÷ÈÔÔÚÊÓ²ìÖУ¬Éв»Çå³þ¹¥»÷ÀàÐÍÒÔ¼°ÊÇ·ñ´æÔÚÊý¾Ýй¶£¬Ò²Ã»Óй¥»÷ÕßÉù³Æ¶Ô´ËÊÂÂôÁ¦¡£
https://www.databreaches.net/long-beach-declares-local-emergency-after-cyber-incident/
2¡¢Áè¼Ý200ÍòÍÁ¶úÆä¹«ÃñµÄÒßÃç½ÓÖּǼ±»¹ûÈ»ÔÚ°µÍø
¾Ý11ÔÂ20ÈÕ±¨µÀ£¬ºÚ¿ÍÔÚ°µÍø¹ûÈ»ÁËÁè¼Ý200ÍòÍÁ¶úÆä¹«ÃñµÄÏêϸÐÅÏ¢¡£Ð¹Â¶ÐÅÏ¢°üÂÞÒ½ÉúºÍ»¼ÕßµÄÍÁ¶úÆäÉí·ÝÖ¤ºÅÂ루¼ò³ÆTCKN£©¡¢ÒßÃç½ÓÖÖÈÕÆÚºÍÀàÐÍ¡¢ÆäËüÒßÃç½ÓÖֺ͹©Ó¦Á´ÏêÇéµÈ£¬¿ÉÄÜÔ´ÓÚÐÅϢй¶©¶´¡£ËäÈ»Êý¾ÝÊÇ9ÔÂ10ÈÕй¶µÄ£¬µ«Ñо¿ÈËÔ±ÈÏΪʼþ·¢ÉúÔÚ4ÔÂ4ÈÕ¡£´ËÍ⣬ÓÉÓÚ»¼ÕßµÄTCKN±»²¿ÃÅɾ¼õ£¬¶øÒ½ÉúµÄTCKNÔòÍêÕûÏÔʾ£¬Õâ±íÃ÷ÕâЩÊý¾Ý¿ÉÄÜÊÇ´ÓÍÁ¶úÆäÒ½ÁÆÌṩÉÌ»òÎÀÉú²¿Ê¹ÓõÄÔÚÏ߯½Ì¨»ò·þÎñÖÐÇÔÈ¡µÄ¡£¸Ãʼþ¿ÉÄÜй¶Á˸ùúÔ¼70%Ò½ÉúµÄPII¡£
https://www.hackread.com/hacker-leaks-turkish-citizens-vaccination-records/
3¡¢Ä¦¸ùÊ¿µ¤Àû¾ÍÊý¾Ýй¶Ê¼þ¸æ¿¢ºÍ½âͬÒâÅâ³¥650ÍòÃÀÔª
ýÌå11ÔÂ17Èճƣ¬Ä¦¸ùÊ¿µ¤ÀûÓë¸÷ÖݾÍÁ½ÆðÊý¾Ýй¶Ê¼þ¸æ¿¢ºÍ½â£¬Ô¸ÒâÅâ³¥650ÍòÃÀÔª¡£µ¼ÖÂËßËϵÄʼþ·¢ÉúÔÚ2016ÄêºÍ2019Äê¡£Õâ¼Ò¹«Ë¾Æ¸ÇëÁËÒ»¼ÒûÓÐÊý¾ÝÏú»Ù¾ÑéµÄ¹«Ë¾´¦Öñ¨·ÏµÄÉ豸£¬µ¼ÖÂÊý°ÙÍò¿Í»§µÄ¸öÈËÐÅÏ¢ÃæÁÙ·çÏÕ¡£ÔÚµÚ¶þÆðʼþÖУ¬Ä¦¸ùÊ¿µ¤ÀûÔÚ´¦Öñ¨·ÏÉ豸¹ý³ÌÖз¢ÏÖÁË42̨¶ªÊ§µÄ·þÎñÆ÷£¬ËùÓзþÎñÆ÷¶¼¿ÉÄܰüÂÞδ¼ÓÃܵĿͻ§ÐÅÏ¢¡£ÏÖÔÚ£¬Ä¦¸ùÊ¿µ¤ÀûÒªÏò¸÷ÖÝÖ§¸¶650ÍòÃÀÔª£¬²¢½ÓÄÉÐëÒª´ëÊ©±£»¤¿Í»§Êý¾Ý¡£
https://www.databreaches.net/states-settle-with-morgan-stanley-for-6-5-million-over-data-security-incidents/
4¡¢FortinetÅû¶FortiSIEMÖеÄ©¶´CVE-2023-36553
11ÔÂ17ÈÕ±¨µÀ³Æ£¬FortinetÅû¶ÁËFortiSIEM³ÂËß·þÎñÆ÷ÖеÄϵͳÃüÁî×¢Èë©¶´£¨CVE-2023-36553£¬CVSSÆÀ·Ö9.3£©¡£¸Ã©¶´ÊÇÌØÊâÔªËØÖкͲ»Í×µ¼Öµģ¬Î´¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓøÃ©¶´£¬Í¨¹ý·¢ËÍÌØÖÆµÄAPIÇëÇóÀ´Ö´ÐÐÃüÁî¡£ÕâÊÇÊÇÄÚ²¿·¢ÏÖµÄÁíÒ»¸ö©¶´£¨CVE-2023-34992£©µÄ±äÌ壬¹«Ë¾ÓÚ10Ô³õÐÞ¸´Á˸é¶´¡£Ä¿Ç°Éв»Çå³þ¸Ã©¶´ÊÇ·ñÒѱ»ÀûÓá£
https://securityaffairs.com/154301/security/fortinet-fortisiem-os-command-injection.html
5¡¢Unit 42Ðû²¼Stately Taurus¹¥»÷»î¶¯µÄ·ÖÎö³ÂËß
11ÔÂ17ÈÕ£¬Unit 42Ðû²¼ÁËÔÚ8Ô·ÝÊӲ쵽ÈýÆðStately Taurus¹¥»÷»î¶¯µÄ·ÖÎö³ÂËß¡£µÚÒ»¸ö»î¶¯·¢ÉúÔÚ8ÔÂ1ÈÕ£¬Ñо¿ÈËÔ±·¢ÏÖÁËÍйÜÔÚGoogle DriveÉϵÄStately Taurus£¬¹¥»÷Õß½«¶ñÒâÈí¼þ°üÅäÖÃΪZIPÎļþ230728 meeting minutes.zip¡£8ÔÂ3ÈÕ·¢ÏÖÁ˵ڶþ¸ö»î¶¯£¬¶ñÒâÈí¼þ°üÃûΪNUG'sForeignPolicyStrategy.zip¡£µÚÈý¸ö»î¶¯ÔڽṹÉÏÓëµÚÒ»¸ö»î¶¯Ïàͬ£¬´´½¨ÓÚ8ÔÂ16ÈÕ£¬µ«ÊÇÆäZIPºÍEXEµÄÎļþÃûÊÇLabor Statement.zip¡£
https://unit42.paloaltonetworks.com/stately-taurus-targets-philippines-government-cyberespionage/
6¡¢SentinelLabsÐû²¼Ó¡¶È¹ÍÓ¶ºÚ¿ÍÍÅ»ïAppinµÄ³ÂËß
11ÔÂ16ÈÕ£¬SentinelLabsÐû²¼Á˹ØÓÚÓ¡¶È¹ÍÓ¶ºÚ¿ÍÍÅ»ïAppin Software SecurityµÄ³ÂËß¡£ËüµÄ·ÇÕýʽÃû³ÆÎªAppin Security Group (ASG)£¬ÓëÓ¡¶Èµ±Ç°µÄAPT»î¶¯Óкܴó¹ØÏµ£¬ÖÁÉÙ´Ó2009ÄêÆð¾Í¿ªÕ¹ÁËÐж¯¡£¸ÃÍÅ»ïµÄÄ¿±ê·¶Î§±é²¼È«Çò£¬°üÂÞÃÀ¹ú¡¢¼ÓÄôó¡¢Ó¡¶È¡¢Ãåµé¡¢¿ÆÍþÌØ¡¢ÃϼÓÀ¹ú¡¢°¢À²®ÁªºÏÇõ³¤¹úºÍ°Í»ù˹̹µÈ¡£³ýÁËÀûÓÃÀ´×ÔµÚÈý·½µÄ´óÐÍ»ù´¡ÉèÊ©½øÐÐÊý¾Ýй¶¡¢C2¡¢µöÓã¹¥»÷ºÍÉèÖÃÓÕ¶üÍøÕ¾Í⣬¾Ý˵Ëü»¹ÒÀÀµVervata¡¢VupenºÍCore SecurityµÈ˽Ӫ¹©Ó¦ÉÌÌṩµÄ¼äµýÈí¼þºÍ©¶´ÀûÓ÷þÎñ¡£
https://www.sentinelone.com/labs/elephant-hunting-inside-an-indian-hack-for-hire-group/