MetaºÍÃÀ¹úÁ½¼ÒÒ½ÁÆ»ú¹¹±»ÆðËßÍøÂ综ÕßÐÅϢͶ·Å¹ã¸æ

Ðû²¼Ê±¼ä 2022-08-01
1¡¢MetaºÍÃÀ¹úÁ½¼ÒÒ½ÁÆ»ú¹¹±»ÆðËßÍøÂ综ÕßÐÅϢͶ·Å¹ã¸æ

      

¾ÝýÌå7ÔÂ30ÈÕ±¨µÀ £¬£¬£¬¼ÓÖݱ±Çø¶ÔMeta¡¢UCSFÒ½ÁÆÖÐÐĺÍDignity¿µ½¡Ò½ÁÆ»ù½ð»áÌáÆðÕûÌåËßËÏ £¬£¬£¬Ö¸¿ØËûÃDz»·¨ÍøÂçÓйػ¼ÕßµÄÒ½ÁÆÊý¾Ý²¢ÓÃÓÚ¶¨ÏòͶ·Å¹ã¸æ¡£¡£¡£¡£ ¡£¡£¡£·¨ÔºÎļþÏÔʾ £¬£¬£¬»¼ÕßÔÚFacebookºÍÓÊÏäÖÐÊÕµ½ÁËÓÐÕë¶ÔÐÔµÄ¹ã¸æ £¬£¬£¬ÕâЩ¹ã¸æÔÚûÓпÆÑ§Ö§³ÖµÄÇéÐÎÏÂÐû´«¼²²¡ºÍÒ½ÁÆÐ§ÀÍ¡£¡£¡£¡£ ¡£¡£¡£Meta PixelÊÇÒ»¶Î´úÂë £¬£¬£¬¿ÉÒÔ×¢ÈëÈκÎÍøÕ¾ £¬£¬£¬ÒÔ¾ÙÐÐ·Ã¿ÍÆÊÎö¡¢Êý¾ÝÍøÂçºÍ¶¨ÏòͶ·Å¹ã¸æ¡£¡£¡£¡£ ¡£¡£¡£Æ¾Ö¤Í¶Ëß £¬£¬£¬±»·¢Ã÷ʹÓÃÁËMeta PixelµÄ33¼ÒÒ½Ôº½öÔÚ2020Äê¾Í¹²ÊÕÖÎÁË2600¶àÍòÃû»¼Õß¡£¡£¡£¡£ ¡£¡£¡£


https://www.bleepingcomputer.com/news/security/meta-us-hospitals-sued-for-using-healthcare-data-to-target-ads/


2¡¢ShinyHuntersÍÅ»ïµÄÖ÷Òª³ÉÔ±ÔÚÀ­°ÍÌØ¹ú¼Ê»ú³¡±»²¶ 

      

ýÌå7ÔÂ31ÈÕ³Æ £¬£¬£¬Èû°Í˹µÙ°²¡¤À­ÎÚ¶û£¨ÓÖÃûSezyo£©ÓÚ2022Äê6ÔÂ1ÈÕÔÚÀ­°ÍÌØ¹ú¼Ê»ú³¡±»²¶¡£¡£¡£¡£ ¡£¡£¡£ËûÊÇShinyHuntersÍÅ»ïµÄÖ÷Òª³ÉÔ±Ö®Ò» £¬£¬£¬ÔøÈëÇÖÁËÊý°Ù¸öÃÀ¹ú×éÖ¯¡£¡£¡£¡£ ¡£¡£¡£³ýÁËÀ­ÎÚ¶û £¬£¬£¬ÉÐÓÐÆäËû4Ãû·¨¹úסÃñÓ¦Áª°îÊÓ²ì¾ÖµÄÒªÇó½ÓÊÜÁËÎÊѶ¡£¡£¡£¡£ ¡£¡£¡£ÃÀ¹úÏÖÔÚÒªÇóÒÔÍøÂçڲƭºÍÍøÂç·¸·¨µÄÖ¸¿Ø½«ÏÓÒÉÈËÒý¶Éµ½ÃÀ¹ú £¬£¬£¬È»¶øÀ­ÎÚ¶ûµÄ״ʦ¾Ü¾øÁËÕâÒ»ÒªÇó £¬£¬£¬³Æ¸Ã°¸¼þÊôÓÚ·¨¹úͳÁì¹æÄ£ £¬£¬£¬ÓÉÓÚÎ¥·¨ÐÐΪÊÇÓÉ·¨¹ú¹úÃñÔÚ·¨¹ú¾ÙÐеÄ¡£¡£¡£¡£ ¡£¡£¡£·¨¹úL'Obs±¨µÀ £¬£¬£¬ÏÓÒÉÈ˱»²¶ºóÒ»Ö±±»¹ØÑºÔÚTifletÀÎÓü £¬£¬£¬²¢ÃæÁÙ×Å116ÄêµÄî¿Ïµ¡£¡£¡£¡£ ¡£¡£¡£


https://www.hackread.com/alleged-shinyhunters-hacker-group-member-arrested/


3¡¢AdrasteaÉù³ÆÒÑÈëÇÖÅ·ÖÞµ¼µ¯ÖÆÔìÉÌMBDA²¢ÇÔÈ¡60GBÊý¾Ý

      

¾Ý7ÔÂ31ÈÕ±¨µÀ £¬£¬£¬AdrasteaÉù³ÆÒÑÈëÇÖMBDA²¢ÇÔÈ¡60 GBÊý¾Ý¡£¡£¡£¡£ ¡£¡£¡£MBDAÊÇÅ·ÖÞµÄÒ»¼Ò¿ç¹úµ¼µ¯¿ª·¢É̺ÍÖÆÔìÉÌ £¬£¬£¬ÓÉ·¨¹ú¡¢Ó¢¹úºÍÒâ´óÀûÖ÷ÒªµÄµ¼µ¯ÏµÍ³¹«Ë¾£¨A¨¦rospatiale¨CMatra¡¢BAE SystemsºÍFinmeccanica£©ºÏ²¢¶ø³É¡£¡£¡£¡£ ¡£¡£¡£AdrasteaÌåÏÖ £¬£¬£¬ËûÃÇÔÚ¹«Ë¾µÄ»ù´¡ÉèÊ©Öз¢Ã÷ÁËÑÏÖØÎó²î £¬£¬£¬²¢ÒÑÏÂÔØÉæ¼°¾üÊÂÏîÄ¿¡¢ÉÌÒµ»î¶¯¡¢ÌõԼЭÒéÒÔ¼°ÓëÆäËü¹«Ë¾Í¨Ñ¶ÐÅÏ¢µÄ60 GBÊý¾Ý¡£¡£¡£¡£ ¡£¡£¡£×÷Ϊ¹¥»÷µÄÖ¤¾Ý £¬£¬£¬AdrasteaÐû²¼ÁËÒ»¸öÁ´½Ó £¬£¬£¬°üÀ¨ÓëÏîÄ¿ºÍͨѶÏà¹ØµÄÄÚ²¿Îļþ¡£¡£¡£¡£ ¡£¡£¡£ÏÖÔÚ £¬£¬£¬Éв»ÇåÎú¹ØÓڴ˴ι¥»÷µÄϸ½ÚÐÅÏ¢¡£¡£¡£¡£ ¡£¡£¡£


https://securityaffairs.co/wordpress/133881/data-breach/mbda-alleged-data-breach.html


4¡¢SharpTongueʹÓöñÒâä¯ÀÀÆ÷À©Õ¹ÇÔȡĿµÄµÄÓʼþÊý¾Ý

      

¾ÝVolexityÔÚ7ÔÂ28ÈÕ±¨µÀ £¬£¬£¬³¯ÏʺڿÍÍÅ»ïSharpTongueÔÚ»ùÓÚChromiumµÄä¯ÀÀÆ÷Éϰ²ÅŶñÒâÀ©Õ¹³ÌÐò £¬£¬£¬Ö¼ÔÚ´ÓGmailºÍAOLÇÔÈ¡µç×ÓÓʼþÊý¾Ý¡£¡£¡£¡£ ¡£¡£¡£¾ÝϤ £¬£¬£¬¸ÃÍÅ»ïÓëÒ»¸ö³ÆÎªKimsukyµÄÍÅ»ïÓÐËùÖØµþ¡£¡£¡£¡£ ¡£¡£¡£SharpTongueÖ÷ÒªÕë¶ÔΪÃÀ¹ú¡¢Å·Ö޺ͺ«¹úµÄ×éÖ¯ÊÂÇé £¬£¬£¬´ÓÊÂÉæ¼°³¯ÏÊ¡¢ºËÎÊÌâ¡¢ÎäÆ÷ϵͳµÈ¶Ô³¯ÏʾßÓÐÕ½ÂÔÒâÒåµÄÎÊÌâµÄÄ¿µÄ¡£¡£¡£¡£ ¡£¡£¡£Ôڴ˴λÖÐ £¬£¬£¬¹¥»÷ÕßÊ×ÏÈ´Ó±»Ñ¬È¾µÄÍøÕ¾ÊÖ¶¯ÇÔȡװÖÃÀ©Õ¹ËùÐèµÄÎļþ £¬£¬£¬Ò»µ©Àֳɹ¥»÷Ä¿µÄWindowsϵͳ £¬£¬£¬¾Í»áÌæ»»ä¯ÀÀÆ÷µÄÊ×Ñ¡ÏîºÍÇå¾²Ê×Ñ¡Ïî £¬£¬£¬ÔÙͨ¹ýVBS¾ç±¾ÊÖ¶¯×°ÖöñÒâÀ©Õ¹SHARPEXT¡£¡£¡£¡£ ¡£¡£¡£


https://www.volexity.com/blog/2022/07/28/sharptongue-deploys-clever-mail-stealing-browser-extension-sharpext/


5¡¢Ó¢¹úWooton UpperѧУÔâµ½Hive¹¥»÷±»ÀÕË÷50ÍòÓ¢°÷

      

ýÌå7ÔÂ28ÈÕ³Æ £¬£¬£¬Ó¢¹ú±´µÂ¸£µÂ¿¤µÄWooton Upper SchoolÔâµ½¹¥»÷ºó £¬£¬£¬±»ÀÕË÷500000Ó¢°÷¡£¡£¡£¡£ ¡£¡£¡£¹¥»÷Ô´ÓÚHive £¬£¬£¬¸ÃÍÅ»ïÒÑÏòѧÉúºÍ¼Ò³¤·¢ËÍÐÂÎÅ £¬£¬£¬³ÆËûÃÇÔÚÊýÖÜǰÈëÇÖÁËWoottonµÄϵͳ £¬£¬£¬²¢Ïë·¨¼ÓÃÜÁËWoottonËùÓеÄЧÀÍÆ÷ £¬£¬£¬°üÀ¨½ð²®ÀûѧԺ(Kimberley College) £¬£¬£¬ÇÔÈ¡Á˼Òͥסַ¡¢ÒøÐÐÏêϸÐÅÏ¢¡¢Ò½ÁƼͼºÍѧÉúµÄÐÄÀíÆÀ¹ÀµÈÐÅÏ¢¡£¡£¡£¡£ ¡£¡£¡£¸ÃѧУÈÏÕæÈËÒÑÈ·ÈÏÔâµ½ÁËÍøÂç¹¥»÷ £¬£¬£¬ËûÃÇÕýÔÚÖÆ¶©ÍýÏëÀ´ÖØÐÞÆäITϵͳ¡£¡£¡£¡£ ¡£¡£¡£ÏÖÔÚÎÞ·¨È·¶¨»Ö¸´ËùÐèʱ¼ä £¬£¬£¬µÚÈý·½½¨ÒéΪ7µ½10¸öÊÂÇéÈÕ¡£¡£¡£¡£ ¡£¡£¡£


https://www.infosecurity-magazine.com/news/ransomware-group-500000-school/


6¡¢ENISAÐû²¼¹ØÓÚ2021ÄêÖØ´óµçÐÅÇå¾²ÊÂÎñµÄ»ã×ܱ¨¸æ

      

7ÔÂ28ÈÕ±¨µÀ £¬£¬£¬ENISAÐû²¼¹ØÓÚ2021ÄêÖØ´óµçÐÅÇå¾²ÊÂÎñµÄ»ã×ܱ¨¸æ¡£¡£¡£¡£ ¡£¡£¡£±¨¸æ°üÀ¨ÁËÀ´×Ô26¸öÅ·Ã˳ÉÔ±¹ú(MS)ºÍ2¸öEFTA¹ú¼ÒµÄÕþ¸®Ìá½»µÄ168ÆðÊÂÎñ±¨¸æµÄÏà¹ØÊý¾Ý £¬£¬£¬Óû§ËðʧµÄ×Üʱ¼ä£¨Í¨¹ý¶Ôÿ¸öÊÂÎñµÄÓû§Êý³ËÒÔСʱÊýµÃ³ö£©Îª51.06ÒÚ¸öÓû§Ð¡Ê±¡£¡£¡£¡£ ¡£¡£¡£2021ÄêÉϱ¨µÄÊÂÎñÖÐÓÐ4.16%Éæ¼°OTTͨѶЧÀÍ£»£»£»±»±ê¼ÇΪ¶ñÒâÊÂÎñÊýÄ¿´Ó2020ÄêµÄ4%ÉÏÉýµ½2021ÄêµÄ8%£»£»£»ÏµÍ³¹ÊÕÏÈÔÔÚÓ°Ïì·½ÃæÕ¼ÓÐÖ÷µ¼Ö°Î» £¬£¬£¬ÔÚ2021ÄêÔì³ÉÁË3.63ÒÚÓû§Ð¡Ê±µÄËðʧ £¬£¬£¬¶ø2020ÄêΪ4.19ÒÚ¡£¡£¡£¡£ ¡£¡£¡£


https://securityaffairs.co/wordpress/133756/reports/telecom-security-incidents-2021-enisa.html