1¡¢Ó¡¶ÈISP Hathway½ü400ÍòÓû§µÄ¸öÈËÐÅÏ¢±»¹ûÈ»
¾ÝýÌå1ÔÂ9ÈÕ±¨µÀ£¬Ä³ºÚ¿Í×î½ü¹ûÈ»ÁËÒ»¸öÊý¾Ý¿â£¬Éù³Æ¸ÃÊý¾Ý¿âÓëHathway£¨ÒÔǰ³ÆÎª BITV Cable Networks£¬ÕýʽÃû³ÆÎª Hathway Cable & Datacom Ltd£©Óйء£Hathway ÊÇÓ¡¶ÈÁìÏȵĻ¥ÁªÍø·þÎñÌṩÉÌ (ISP) ºÍÓÐÏßµçÊÓ·þÎñÔËÓªÉÌ¡£ºÚ¿ÍÔÚÊý¾Ý¿âй¶ÂÛ̳ÉÏ·¢±íµÄÌû×ÓÖÐ͸¶£¬Êý¾Ýй¶Ê¼þ·¢ÉúÔÚ 2023 Äê 12 Ô£¬ÆäʱËûÃÇÀûÓà Laravel ¿ò¼ÜÓ¦Ó÷¨Ê½£¨ÄÚÈݹÜÀíϵͳ£©ÖдæÔÚµÄÄþ¾²Â©¶´ÀÖ³ÉÍ»ÆÆÁË Hathway µÄ·ÀÓù´ëÊ©(CMS)¡£¶Ôй¶µÄÊý¾Ý·ÖÎöÏÔʾ£¬Óû§ÊýÁ¿Îª 3500 Íò¡£´ËÍ⣬ÕâЩÕÊ»§µÄºÜ´óÒ»²¿ÃÅËÆºõÊÇÐéÄâÕÊ»§»òÖØ¸´ÕÊ»§¡£È¥µôÕâÐ©ÖØ¸´ÕË»§ºó£¬ÊÜÓ°ÏìÕË»§µÄʵ¼ÊÊýÁ¿¼õÉÙÖÁ½ü 400 Íò¸ö£¬Ô¶µÍÓÚ×î³õÉù³ÆµÄ 4100 Íò¸öÕË»§¡£¸ÃºÚ¿ÍΪDZÔÚÊܺ¦Õß¿ª·¢Á˰µÍøËÑË÷ÒýÇæ¡£¸Ã¹¤¾ßÔÊÐíËûÃÇËÑË÷ËûÃǵĵç×ÓÓʼþµØÖ·ºÍµç»°ºÅÂ룬ÒÔ¼ì²éËûÃǵÄÊý¾ÝÊÇ·ñй¶¡£
2¡¢°ÍÀ¹ç×î´óÔËÓªÉÌTigoÔâµ½Black HuntµÄÀÕË÷¹¥»÷
1ÔÂ9ÈÕ£¬Tigo Business ÔÚÉÏÖÜÔâÊÜÍøÂç¹¥»÷£¬Ó°Ïì¸Ã¹«Ë¾ÒµÎñ²¿ÃŵÄÔÆºÍÍйܷþÎñºó£¬°ÍÀ¹ç¾ü·½¾Í Black Hunt ÀÕË÷Èí¼þ¹¥»÷·¢³ö¾¯¸æ¡£Tigo ÊǰÍÀ¹ç×î´óµÄÒÆ¶¯ÔËÓªÉÌ£¬Æä Tigo ÒµÎñ²¿ÃÅΪÆóÒµÌṩÊý×Ö½â¾ö·½°¸£¬°üÂÞÍøÂçÄþ¾²×Éѯ¡¢ÔƺÍÊý¾ÝÖÐÐÄÍйÜÒÔ¼°¹ãÓòÍø (WAN) ½â¾ö·½°¸¡£Tigo Business µÄÒ»·ÝÉùÃ÷ÖÐдµÀ¡£ÍøÉϱ¨µÀµÄ´ó²¿ÃÅÐÂÎŶ¼½û¾øÈ·£¬´Ë´Î¹¥»÷²¢Î´Ó°ÏìÆä»¥ÁªÍø¡¢µç»°·þÎñºÍ Tigo Money µç×ÓÇ®°ü¡£ËäÈ» Tigo ûÓÐÌṩÓйØÍøÂç¹¥»÷µÄÈκÎϸ½Ú£¬µ«É罻ýÌåÉϵĴóÁ¿±¨µÀ±íÃ÷ËûÃÇÔâÊÜÁË Black Hunt ÀÕË÷Èí¼þµÄ¹¥»÷¡£Áè¼Ý 330 ̨·þÎñÆ÷±»¼ÓÃÜ£¬±¸·ÝÊý¾ÝÔÚ¹¥»÷ÆÚ¼äÔâµ½ÆÆ»µ¡£ËäÈ»ÀÕË÷×ÖÌõÉù³ÆºÚ¿ÍÔÚ¹¥»÷¹ý³ÌÖÐÇÔÈ¡Êý¾Ý£¬µ«Ä¿Ç°»¹Ã»ÓÐÈκÎÒÑÖªµÄÀÕË÷Èí¼þй¶±»µÁÊý¾ÝµÄʵÀý¡£
3¡¢ÍÁ¶úÆäºÚ¿Íͨ¹ýMSSQL·þÎñÆ÷Á÷´«MIMICÀÕË÷Èí¼þ
1ÔÂ10ÈÕýÌ屨µÀ£¬Securonix ÍþвÑо¿ÍŶÓÒ»Ö±ÔÚ¼à¿ØÕýÔÚ½øÐеÄÍþв»î¶¯ RE#TURGENCE£¬¸Ã»î¶¯Éæ¼°Ãé×¼ºÍÀûÓà MSSQL Êý¾Ý¿â·þÎñÆ÷À´»ñÈ¡³õʼ·ÃÎÊȨÏÞ¡£ÍþвÐÐΪÕßËÆºõÒÔÃÀ¹ú¡¢Å·Ã˺ÍÀ¶¡ÃÀÖÞ¹ú¼ÒΪĿ±ê£¬¶øÇÒ¾ßÓо¼Ã¶¯»ú¡£Ò»°ã¹¥»÷»î¶¯ÒªÃ´³öÊÛ¶ÔÊÜѬȾÖ÷»úµÄ¡°·ÃÎÊȨ¡±£¬ÒªÃ´×îÖÕ½»¸¶ÀÕË÷Èí¼þpayload¡£ÕâЩϸ½ÚÊǹ¥»÷ÕßÔÚÒ»´ÎÖØ´ó OPSEC£¨²Ù×÷Äþ¾²£©¹ÊÕÏÆÚ¼ä·¢Ïֵ쬴Ó×î³õ·ÃÎÊ MIMIC ÀÕË÷Èí¼þµ½ÔÚÊܺ¦ÓòÉϲ¿Êð MIMIC ÀÕË÷Èí¼þ£¬¸ÃʼþµÄʱ¼äԼĪΪһ¸öÔ¡£¸Ã»î¶¯µÄ³õʼ·ÃÎʲ¿ÃÅÓëÈ¥ÄêдµÄDB#JAMMERÀàËÆ£¬Ò²É漰ͨ¹ý±©Á¦ÆÆ½â¹ÜÀíÃÜÂë½øÐÐÖ±½Ó MSSQL ·ÃÎÊ¡£
4¡¢Water Curupiraͨ¹ýµöÓã»î¶¯·Ö·¢PikaBot Loader
1ÔÂ9ÈÕ£¬Pikabot ÊÇÒ»ÖÖ¼ÓÔØ·¨Ê½¶ñÒâÈí¼þ£¬ÎÒÃÇÔÚ 2023 ÄêµÚÒ»¼¾¶ÈÔÚÈëÇÖ¼¯ Water Curupira ÏÂ×·×Ùµ½µÄÍþв¼ÓÈëÕßÔÚÀ¬»øÓʼþ»î¶¯Öлý¼«Ê¹ÓøöñÒâÈí¼þ£¬ËæºóÔÚ 6 Ôµ׷ºÆðÒ»´ÎÖжϣ¬Ò»Ö±Á¬Ðøµ½ 2023 Äê 9 Ô³õ. ÆäËûÑо¿ÈËÔ±´ËǰÒÑ×¢Òâµ½ËüÓëQakbot·Ç³£ÏàËÆ£¬ºóÕßÓÚ2023 Äê 8 Ô±»Ö´·¨²¿ÃÅÈ¡µÞ¡£2023 Äê×îºóÒ»¸ö¼¾¶È£¬Óë Pikabot Ïà¹ØµÄÍøÂçµöÓã»î¶¯ÊýÁ¿ÓÐËùÔö¼Ó£¬ÓëÈ¡µÞʱ¼äÒ»ÖÂQakbot £¬Pikabot µÄ¹¥»÷Õß¿ªÕ¹ÍøÂçµöÓã»î¶¯£¬Í¨¹ýÆäÁ½¸ö×é¼þ£¨¼ÓÔØ·¨Ê½ºÍºËÐÄÄ£¿é£©Ãé×¼Êܺ¦Õߣ¬ÕâÁ½¸ö×é¼þÔÊÐíδ¾ÊÚȨµÄÔ¶³Ì·ÃÎÊ£¬²¢ÔÊÐíͨ¹ýÓëÆäÃüÁîºÍ¿ØÖÆ (C&C) ·þÎñÆ÷½¨Á¢µÄÁ¬½ÓÖ´ÐÐÈÎÒâÃüÁî¡£Pikabot ÊÇÒ»ÖÖÅÓ´óµÄ¶à½×¶Î¶ñÒâÈí¼þ£¬ÔÚͬһÎļþÖоßÓмÓÔØ·¨Ê½ºÍºËÐÄÄ£¿é£¬ÒÔ¼°½âÃÜµÄ shellcode£¬¿É´ÓÆä×ÊÔ´ÖнâÃÜÁíÒ»¸ö DLL Îļþ¡£
5¡¢IBMÐû²¼¹ØÓÚ¶Ô2024ÄêÍøÂçÄþ¾²Ç÷ÊÆµÄÔ¤²â³ÂËß
´ÓÊÀ½ç´óʵ½¾¼Ã£¬20234ÄêÊÇÄÑÒÔÔ¤²âµÄÒ»Äê¡£ÍøÂçÄþ¾²²¢Ã»ÓÐÆ«ÀëÕâ¸öÖ÷Ì⣬´øÀ´ÁËһЩÒâÏë²»µ½µÄ±ä»¯¡£2024 Äê¶ÔÓÚÍøÂç·¸×ï·Ö×ÓÀ´Ëµ½«ÊÇæµµÄÒ»Ä꣬ÒòΪÁ¬ÐøµÄµØÔµÕþÖνôÕžÖÊÆ¡¢ÃÀ¹úºÍÅ·Ã˵ÄÖØ´óÑ¡¾ÙÒÔ¼°ÊÀ½çÉÏ×î´óµÄÌåÓýÈüÊ£¨°ÍÀè°ÂÔ˻ᣩ¶¼ÔÚ¼¸¸öÔÂÄÚ¾ÙÐС£µ½Ä¿Ç°ÎªÖ¹£¬ÍøÂç·¸×ï·Ö×Ó´Ó¶àÄêÀ´Ð¹Â¶µÄÊýÊ®ÒÚÊý¾ÝÖÐÊÕ¼¯µÄÊý¾Ý»ñÀûµÄ·½Ê½·Ç³£ÓÐÏÞ¡£°µÍøÉÏÓÐÊýÒÔ°ÙÍò¼ÆµÄÓÐЧÆóҵƾ֤£¬¶øÇÒÊýÁ¿»¹ÔÚÁ¬ÐøÔö¼Ó£¬¹¥»÷ÕßÕýÔÚ½«Éí·ÝÎäÆ÷»¯£¬½«ÆäÊÓΪ·ÃÎÊÌØÈ¨ÕÊ»§µÄÃØÃÜÊֶΡ£ÀÕË÷Èí¼þ¿ÉÄÜ»áÔÚ 2024 ÄêÃæÁÙË¥ÍË£¬ÒòΪԽÀ´Ô½¶àµÄ¹ú¼ÒÔÊÐí²»Ö§¸¶Êê½ð£¬Ô½À´Ô½ÉÙµÄÆóÒµÇü·þÓÚ¼ÓÃÜϵͳµÄѹÁ¦¡ª¡ªÑ¡Ôñ½«×ʽð×ªÒÆµ½Öؽ¨ÏµÍ³¶ø²»ÊǽâÃÜϵͳ¡£
6¡¢Cisco TalosÐû²¼ÀÕË÷Èí¼þBabukµÄ±äÌåTortillaµÄ½âÃÜÆ÷
¾ÝýÌå1ÔÂ10ÈÕ±¨µÀ£¬Talos ÓÚ 2021 Äê 11 ÔÂÊ×´ÎÅû¶ÁËTortilla »î¶¯£¬¹¥»÷ÀûÓÃMicrosoft Exchange ·þÎñÆ÷ÖÐµÄ ProxyShell ȱÏÝÔÚÊܺ¦Õß»·¾³ÖÐͶ·ÅÀÕË÷Èí¼þ¡£Tortilla ÊÇÖÚ¶à ÀÕË÷Èí¼þ±äÌåÖ®Ò»£¬ÕâЩ±äÌåµÄÎļþ¼ÓÃܶñÒâÈí¼þ»ùÓÚй¶µÄ Babuk Ô´´úÂë¡£ÆäÖаüÂÞ Rook¡¢Night Sky¡¢Pandora¡¢Nokoyawa¡¢Cheerscrypt¡¢AstraLocker 2.0¡¢ESXiArgs¡¢Rorschach¡¢RTM Locker ºÍ RA GroupµÈ¡£µÂ¹úÍøÂçÄþ¾²¹«Ë¾Äþ¾²Ñо¿ÊµÑéÊÒ (SRLabs) Ðû²¼ÁËÒ»¿îÃûΪBlack Basta Buster µÄ Black Basta ÀÕË÷Èí¼þ½âÃÜÆ÷£¬¸Ã½âÃÜÆ÷ÀûÓüÓÃÜ©¶´²¿ÃÅ»òÈ«²¿»Ö¸´Îļþ¡£