Å·ÖÞÒøÐÐÖÎÀí¾ÖµÄExchangeЧÀÍÆ÷Ôâµ½¹¥»÷£» £»£»£»£»£»FlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬ £¬£¬£¬²¢ÓÀÊÀ×èֹʹÓÃAccellio

Ðû²¼Ê±¼ä 2021-03-09

1.FlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬ £¬£¬£¬²¢ÓÀÊÀ×èֹʹÓÃAccellion


1.jpg


×ܲ¿Î»ÓÚÃÜЪ¸ùÖݵÄFlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬ £¬£¬£¬²¢Ðû²¼½«ÓÀÊÀ×èֹʹÓÃAccellion¡£ ¡£¡£¸ÃÒøÐÐÊÇFlagstar BancorpµÄ×Ó¹«Ë¾£¬£¬£¬ £¬£¬£¬ÎªÃÀ¹ú¿Í»§ÌṩµäÖÊºÍÆäËû½ðÈÚЧÀÍ¡£ ¡£¡£´Ë´ÎÊý¾Ýй¶ÊÇÓÉÓÚÆäʹÓõĴ«Êä´óÎļþµÄAccellion FTAÎļþ¹²Ïí³ÌÐò±£´æÒѱ»ÔÚҰʹÓõÄ0day¶øµ¼ÖµÄ¡£ ¡£¡£¸Ã×éÖ¯³ÆÆäÓÚ2021Äê1ÔÂ22ÈÕµÃÖª´ËÊÂÎñ£¬£¬£¬ £¬£¬£¬ÏÖÔÚ²¢Î´Í¸Â¶Ó°ÏìµÄ¿Í»§ÊýÄ¿ÒÔ¼°Ð¹Â¶Êý¾ÝµÄÖÖÀ࣬£¬£¬ £¬£¬£¬µ«ÌåÏÖFlagstar½«ÓÀÊÀ×èֹʹÓÃAccellionÎļþ¹²ÏíÆ½Ì¨¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/flagstar-bank-customer-data-breached-through-accellion-hack/


2.ÃÀ¹ú˾·¨²¿ÖÒÑÔð³äÖÝÀ͹¤¾ÖÇÔÈ¡¹«ÃñÐÅÏ¢µÄ»î¶¯


2.jpg


ÃÀ¹ú˾·¨²¿ÖÒÑÔð³äÖÝÀ͹¤¾Ö£¨SWA£©ÇÔÈ¡¹«ÃñµÄСÎÒ˽¼ÒÐÅÏ¢ºÍÆäËûÃô¸ÐÊý¾ÝµÄ»î¶¯¡£ ¡£¡£ÔÚ´ËÀà»î¶¯ÖУ¬£¬£¬ £¬£¬£¬ºÚ¿Í´î½¨ÁËαÔìµÄSWAÍøÕ¾£¬£¬£¬ £¬£¬£¬²¢·¢ËͰüÀ¨Î±ÔìSWAÍøÕ¾Á´½ÓµÄÀ¬»ø¶ÌÐź͵ç×ÓÓʼþ£¬£¬£¬ £¬£¬£¬À´Ö¸µ¼Êܺ¦Õß»á¼ûÕâÐ©ÍøÕ¾¡£ ¡£¡£Ö®ºóÓÕʹ¹«ÃñÔÚ¸ÃÍøÕ¾ÉêÇëʧҵ¾ÈÔ®£¬£¬£¬ £¬£¬£¬ÒÔÇÔÈ¡ÆäСÎÒ˽¼ÒÉí·ÝÐÅÏ¢µÈÊý¾Ý¡£ ¡£¡£×îºó£¬£¬£¬ £¬£¬£¬ºÚ¿Í»áʹÓÃÍøÂçµ½µÄÐÅÏ¢À´¾ÙÐÐÉí·ÝµÁÓᣠ¡£¡£ÃÀ¹ú˾·¨²¿ÌåÏÖÔÚÃÀ¹úÓÐ1000ÍòʧҵÕߣ¬£¬£¬ £¬£¬£¬ÌáÐÑËûÃÇÓ¦µ±×¢ÖØÍøÂç´¹ÂÚ¹¥»÷¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/u-s-doj-unemployment-benefit-websites-steal-data/    


3.½Ý¿ËÊ×¶¼¹«¹²ÖÎÀíϵͳÔâ´ó¹æÄ£¹¥»÷£¬£¬£¬ £¬£¬£¬ÊÂÎñÔÚÊÓ²ìÖÐ


3.jpg


½Ý¿ËµÄÊ×¶¼²¼À­¸ñÊеĹ«¹²ÖÎÀíϵͳÔâ´ó¹æÄ£¹¥»÷£¬£¬£¬ £¬£¬£¬ÊÂÎñÔÚÊÓ²ìÖС£ ¡£¡£¸ÃÊÐÊг¤den¨§k H?ibÌåÏÖ£¬£¬£¬ £¬£¬£¬Æä¹«¹²ÖÎÀíϵͳÔâµ½¹¥»÷£¬£¬£¬ £¬£¬£¬Ð§ÀÍÆ÷ÏÕЩûÓÐÊܵ½Ë𺦣¬£¬£¬ £¬£¬£¬µ«µç×ÓÓʼþϵͳÒѱ»¹Ø±Õ¡£ ¡£¡£½Ý¿ËÀ͹¤ºÍÉç»áÊÂÎñ²¿³¤JanaMal¨¢?ov¨¢ÌåÏָò¿Ò²Ôâµ½ÁËÏ®»÷£¬£¬£¬ £¬£¬£¬µ«²¢Î´Ìṩ¸ü¶àϸ½Ú¡£ ¡£¡£¾Ý±¨µÀ£¬£¬£¬ £¬£¬£¬¸ÃÊйÙÔ±ÒÑÏò½Ý¿Ë¹ú¼ÒÍøÂçºÍÐÅÏ¢¾Ö£¨NUKIB£©±¨¸æ´ËÊÂÎñ£¬£¬£¬ £¬£¬£¬ÏÖÔÚÉÐÎÞ¼£ÏóÅú×¢ÊÇË­¾ÙÐÐÁ˴˴ι¥»÷¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.euronews.com/2021/03/05/czech-officials-in-prague-hit-by-massive-cyber-attack


4.Å·ÖÞÒøÐÐÖÎÀí¾ÖµÄExchangeЧÀÍÆ÷Ôâµ½¹¥»÷£¬£¬£¬ £¬£¬£¬Óʼþϵͳ¹Ø±Õ


4.jpg


Å·ÖÞÒøÐÐÖÎÀí¾Ö£¨EBA£©³ÆÆäExchangeЧÀÍÆ÷Ôâµ½¹¥»÷£¬£¬£¬ £¬£¬£¬ËùÓÐÓʼþϵͳÒѾ­¹Ø±Õ¡£ ¡£¡£EBAÊÇÅ·ÖÞ½ðÈÚî¿ÏµÏµÍ³µÄÒ»²¿·Ö£¬£¬£¬ £¬£¬£¬ËüÈÏÕæ¼àÊÓÅ·ÃËÒøÐÐÒµµÄÕûÌåÓÐÐòÔË×÷¡£ ¡£¡£ÏÖÔÚ£¬£¬£¬ £¬£¬£¬¸ÃÊÂÎñÈÔÔÚÊÓ²ìÖУ¬£¬£¬ £¬£¬£¬Éв»È·¶¨ºÚ¿Í»á¼ûÁËʲôÊý¾Ý¡£ ¡£¡£¸Ã×éÖ¯ÔÚÉÏÖÜÈյijõ³ÌÐò²é³Æ£¬£¬£¬ £¬£¬£¬¹¥»÷Õß¿ÉÄÜÒѾ­»á¼ûÁË´æ´¢ÔÚµç×ÓÓʼþЧÀÍÆ÷ÉϵÄСÎÒ˽¼ÒÐÅÏ¢¡£ ¡£¡£µ«ÔÚ±¾ÖÜÒ»µÄÔö²¹¸üÐÂÖÐÌåÏÖ£¬£¬£¬ £¬£¬£¬µç×Óȡ֤Àú³ÌÖÐûÓз¢Ã÷Êý¾Ýй¶µÄ¼£Ïó¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/european-banking-authority-discloses-exchange-server-hack/


5.MotusÐû²¼ÓйØ2021ÄêÒÔºóÔ¶³ÌÊÂÇéÇ÷ÊÆµÄÆÊÎö±¨¸æ


5.jpg


MotusÐû²¼ÁËÓйØ2021ÄêÒÔºóÔ¶³ÌÊÂÇéÇ÷ÊÆµÄÆÊÎö±¨¸æ¡£ ¡£¡£±¨¸æ·¢Ã÷£¬£¬£¬ £¬£¬£¬ÏÖÔÚ£¬£¬£¬ £¬£¬£¬¿ìÒª56£¥µÄÔ±¹¤ÕýÔÚ¾ÙÐÐÓëÔ¶³Ì¼æÈݵÄÊÂÇ飬£¬£¬ £¬£¬£¬67£¥µÄÆóҵϣÍû¾Ó¼ÒÊÂÇéµÄÕþ²ßÄܹ»ºã¾Ã»òÓÀÊÀµØ¼á³ÖÏÂÈ¥¡£ ¡£¡£¸Ã±¨¸æ»¹ÏÔʾ£¬£¬£¬ £¬£¬£¬ÓÐ83£¥µÄ¹«Ë¾Ïòµ¼ÕßÌåÏÖËûÃǵÄ×éÖ¯ÒÑÀÖ³É×ªÒÆµ½Ô¶³ÌÊÂÇé¡£ ¡£¡£¶ø68%µÄÕÐÆ¸Ë¾ÀíÒÔΪ£¬£¬£¬ £¬£¬£¬Ëæ×Åʱ¼äµÄÍÆÒÆ£¬£¬£¬ £¬£¬£¬Ô¶³ÌÊÂÇé±äµÃÔ½À´Ô½ÈÝÒ×£¬£¬£¬ £¬£¬£¬³ÖÕâÖÖ¿´·¨µÄÈËÊýÏà½Ï2020Äê6ÔÂÔöÌíÁË14%¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.motus.com/remote-work-policies-to-remain/


6.Group-IBÐû²¼2020-2021ÄêÀÕË÷Èí¼þµÄÆÊÎö±¨¸æ


6.jpg


Group-IBÐû²¼ÁË2020-2021ÄêÀÕË÷Èí¼þµÄÆÊÎö±¨¸æ¡£ ¡£¡£±¨¸æÖ¸³ö£¬£¬£¬ £¬£¬£¬ÀÕË÷Èí¼þ¹¥»÷ÔÚÈ¥ÄêÔöÌíÁËÒ»±¶ÒÔÉÏ£¬£¬£¬ £¬£¬£¬¹æÄ£ºÍÖØ´óÐÔ¾ù³ÊÉÏÉýÇ÷ÊÆ¡£ ¡£¡£ÀÕË÷Èí¼þÍÅ»ïµÄÖ§³öƽ¾ùÔÚ1µ½200ÍòÃÀÔªÖ®¼ä£¬£¬£¬ £¬£¬£¬·ºÆðÁËÐí¶àеÄ×éÖ¯£¬£¬£¬ £¬£¬£¬ÀýÈçonti¡¢EgregorºÍDarkSide£¬£¬£¬ £¬£¬£¬ËûÃÇÖ÷ÒªÕë¶Ô±±ÃÀºÍÅ·Ö޵ĴóÐ͹«Ë¾¡£ ¡£¡£±ðµÄ£¬£¬£¬ £¬£¬£¬È¥ÄêµÄ¹¥»÷ÊýÄ¿ÔöÌíÁË150£¥£¬£¬£¬ £¬£¬£¬Æ½¾ùÊê½ðÔöÌíÁËÁ½±¶£¬£¬£¬ £¬£¬£¬µÖ´ï170000ÃÀÔª£¬£¬£¬ £¬£¬£¬Æ½¾ùÔì³ÉÁË18ÌìµÄÍ£» £»£»£»£»£»úʱ¼ä¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/resources/threat-research/ransomware-2021.html