Barracuda±Þ²ßÆóÒµÌæ»»ÊÜÓ°ÏìESG×ÝÈ»×°ÖÃÈκΰ汾²¹¶¡

Ðû²¼Ê±¼ä 2023-06-09

1¡¢Barracuda±Þ²ßÆóÒµÌæ»»ÊÜÓ°ÏìESG×ÝÈ»×°ÖÃÈκΰ汾²¹¶¡


¾ÝýÌå6ÔÂ7ÈÕ±¨µÀ£¬Barracuda±Þ²ßÆóÒµÊµÊ±Ìæ»»ÊÜÓ°ÏìµÄµç×ÓÓʼþÇå¾²Íø¹Ø(ESG)×°±¸£¬ÎÞÂÛËûÃÇ×°ÖÃÁËʲô°æ±¾¼¶±ðµÄ²¹¶¡¡£Îó²î±»×·×ÙΪCVE-2023-2868£¬±£´æÓÚµç×ÓÓʼþ¸½¼þɸѡÄ£¿éÖУ¬ÓÚ5ÔÂ19ÈÕ±»·¢Ã÷£¬¸Ã¹«Ë¾ÓÚ5ÔÂ20ÈÕºÍ21ÈÕÐû²¼ÁËÁ½¸ö²¹¶¡À´ÐÞ¸´¸ÃÎÊÌâ¡£¾ÝÊӲ죬¸ÃÎó²îÒѱ»Ê¹Ó㬹¥»÷ÊÂÎñÖÁÉÙ¿ÉÒÔ×·Ëݵ½2022Äê10Ô¡£Ñо¿Ö°Ô±ÁªÏµBarracudaµÄ½²»°ÈË£¬Ñ¯ÎʹØÓÚΪʲôÐèÒªÖÜÈ«Ìæ»»ESGµÄ¸ü¶àϸ½Úʱ£¬Ã»ÓÐÁ¬Ã¦»ñµÃ»Ø¸´¡£


https://securityaffairs.com/147211/hacking/barracuda-esg-cve-2023-2868-replacement.html


2¡¢Î¢ÈíOneDriveÔâµ½DDoS¹¥»÷È«ÇòÓû§ÎÞ·¨»á¼û·þÎñ


¾Ý6ÔÂ8ÈÕ±¨µÀ£¬Î¢ÈíÕýÔÚÊӲ쵼ÖÂÈ«Çò¹æÄ£ÄÚµÄOneDriveÎÞ·¨»á¼ûÔÆÎļþÍйܷþÎñµÄÎÊÌâ¡£Óû§ÔÚʵÑé·­¿ªOneDriveÍøÕ¾Ê±£¬»á¿´µ½¡°Ç¸ØÆ£¬·ºÆð¹ýʧ¡±ºÍ¡°´ËÒ³ÃæÏÖÔÚÎÞ·¨Õý³£ÊÂÇ顱µÄ¹ýʧÐÂÎÅ¡£ËäÈ»¸Ã¹«Ë¾Ã»ÓÐÌṩÈκιØÓÚµ¼ÖÂÖÐÖ¹ÎÊÌâµÄϸ½ÚÐÅÏ¢£¬µ«Anonymous SudanÉù³Æ¶Ô´ËÊÂÈÏÕæ¡£Î¢Èí³Æ£¬ÖÐÖ¹Ö»Ó°ÏìÁËonedrive.live.comÓò£¬Ê¹ÓÃ×ÀÃæ¿Í»§¶Ë¡¢Í¬²½¿Í»§¶Ë»òOffice¿Í»§¶Ë»á¼ûOneDrive·þÎñ²»ÊÜÓ°Ïì¡£¸ÃÍÅ»ïÔÚ±¾ÖÜ»¹DDoS¹¥»÷Á˶à¸öMicrosoft·þÎñ£¬ÈçOutlookºÍSharePointµÈ¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-onedrive-down-worldwide-following-claims-of-ddos-attacks/


3¡¢È«Çò×î´óµÄÀ­Á´ÖÆÔìÉÌYKKµÄÔâµ½LockBitµÄÀÕË÷¹¥»÷


ýÌå6ÔÂ8Èճƣ¬ÈÕ±¾À­Á´¹«Ë¾YKK͸¶£¬ÆäλÓÚÃÀ¹úµÄϵͳÔÚ×î½ü¼¸ÖÜÔâµ½¹¥»÷¡£ËüÊÇÌìÏÂÉÏ×î´óµÄÀ­Á´ÖÆÔìÉÌ£¬ÄêÊÕÈëÁè¼Ý60ÒÚÃÀÔª¡£¸Ã¹«Ë¾³Æ£¬ËûÃÇʵʱ×èÖ¹Á˹¥»÷£¬¸ÃÊÂÎñ²¢Î´¶ÔÔËÓªºÍ·þÎñ±¬·¢ÊµÖÊÐÔÓ°Ï죬ҲûÓÐÖ¤¾ÝÅúעСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢ÒÔ¼°ÖªÊ¶²úȨÊܵ½Ó°Ïì¡£LockBitÓÚ6ÔÂ2ÈÕÔÚÆäÍøÕ¾ÉÏÁгöÁËYKK£¬²¢ÍþвҪÔÚ6ÔÂ16ÈÕ֮ǰй¶´Ó¸Ã¹«Ë¾ÇÔÈ¡µÄÊý¾Ý¡£


https://therecord.media/ykk-zipper-manufacturer-cyberattack-us-operations


4¡¢ÈÕ±¾ÖÆÒ©¹«Ë¾ÎÀ²Ä(Eisai)͸¶Æä²¿·Ö·þÎñÆ÷Òѱ»¼ÓÃÜ


6ÔÂ8ÈÕ±¨µÀ³Æ£¬¶«¾©µÄÖÆÒ©¹«Ë¾ÎÀ²Ä(Eisai)Åû¶ÆäÔâµ½ÁËÀÕË÷¹¥»÷£¬²¿·Ö·þÎñÆ÷Òѱ»¼ÓÃÜ¡£¹¥»÷±¬·¢ÔÚ6ÔÂ3ÈÕÉîÒ¹£¬ÕâÊǹ¥»÷Õß°²ÅżÓÃÜÆ÷µÄ³£¼ûʱ¼ä£¬ÓÉÓÚITÍŶÓÔÚÖÜÄ©ÈËÊÖȱ·¦£¬ÎÞ·¨ÓÐÓÃÓ¦¶ÔÒì³£ÇéÐΡ£¸Ã¹«Ë¾ÌåÏÖ£¬ÆäÔÚº£ÄÚÍâµÄ¼¸¸öϵͳ£¬°üÀ¨ÎïÁ÷ϵͳ£¬Òѱ»ÆÈÏÂÏß²¢×èÖ¹·þÎñ£¬Ö±µ½ÊӲ쿢Ê¡£¿ÉÊÇ£¬¹«Ë¾ÍøÕ¾ºÍÓʼþͨѶÈÔÈ»¿ÉÓá£ÏÖÔÚ»¹Ã»ÓÐÀÕË÷ÍÅ»ïÉù³Æ¶Ô´Ë´Î¹¥»÷ÈÏÕæ¡£


https://therecord.media/eisai-japan-pharmaceutical-giant-ransomware


5¡¢Ð¶ñÒâÈí¼þFractureiserÖ÷ÒªÕë¶ÔMinecraftµÄÍæ¼Ò


6ÔÂ7ÈÕ£¬Ñо¿Ö°Ô±Åû¶ÁËеĶñÒâÈí¼þFractureiserÕë¶ÔMinecraftµÄÍæ¼ÒµÄ¹¥»÷Ô˶¯¡£¹¥»÷ʼÓÚ¼¸¸öCurseForgeºÍBukkitÕÊ»§±»ÈëÇÖ£¬²¢±»ÓÃÀ´Ïò²å¼þºÍÄ£×é×¢Èë¶ñÒâ´úÂ롣ȻºóËüÃDZ»Ê¢ÐеÄmodpack½ÓÄÉ£¬ÀýÈçÏÂÔØÁ¿Áè¼Ý460ÍòµÄBetter Minecraft¡£ÊÜÓ°ÏìµÄÍæ¼Ò°üÀ¨ÔÚÒÑÍùÈýÖÜÄÚ´ÓCurseForgeºÍdev.bukkit.orgÏÂÔØÄ£×é»ò²å¼þµÄÈË£¬µ«Ñ¬È¾µÄˮƽÉÐÓдý³ä·ÖÏàʶ¡£Ñо¿Ö°Ô±ÌáÐÑÍæ¼ÒÔÚÏÂÔØÄ£×éʱҪ¸ñÍâСÐÄ£¬ÓÉÓÚÕâ¸öFractureiserÔ˶¯ÈÔÔÚ¾ÙÐÐÖС£


https://www.bleepingcomputer.com/news/security/new-fractureiser-malware-used-curseforge-minecraft-mods-to-infect-windows-linux/


6¡¢KasperskyÐû²¼2023ÄêµÚÒ»¼¾¶ÈITÍþÐ²Ì¬ÊÆµÄ±¨¸æ


6ÔÂ7ÈÕ£¬KasperskyÐû²¼ÁË2023ÄêµÚÒ»¼¾¶ÈITÍþÐ²Ì¬ÊÆµÄ±¨¸æ¡£±¨¸æÖ¸³ö£¬ÓÐÕë¶ÔÐԵĹ¥»÷·½Ã棬°üÀ¨BlueNoroffÒýÈëÁËÈÆ¹ýMotWµÄÐÂÒªÁì¡¢Roaming MantisʵÑéÁËеÄDNS changerÒÔ¼°Óë¶íÎÚ³åÍ»Ïà¹ØµÄÐÂAPT×éÖ¯BadMagic·ºÆð¡£ÔÚÆäËü¶ñÒâÈí¼þ·½Ã棬PrilexÕë¶Ô·Ç½Ó´¥Ê½ÐÅÓÿ¨ÉúÒâ¡¢ºÚ¿ÍʹÓÃαÔìµÄTorä¯ÀÀÆ÷ÇÔÈ¡¼ÓÃÜÇ®±Ò¡¢ÓëChatGPTÏà¹ØµÄÍþвÔöÌíÒÔ¼°Í¨¹ýËÑË÷ÒýÇæ¾ÙÐжñÒâ¹ã¸æÔ˶¯µÈ¡£


https://securelist.com/it-threat-evolution-q1-2023/109838/