ExchangeÖÐÖ¹µ¼ÖÂÓû§ÎÞ·¨·¢ËÍÓʼþ²¢´¥·¢503¹ýʧ

Ðû²¼Ê±¼ä 2023-07-19

1¡¢ExchangeÖÐÖ¹µ¼ÖÂÓû§ÎÞ·¨·¢ËÍÓʼþ²¢´¥·¢503¹ýʧ


¾Ý7ÔÂ18ÈÕ±¨µÀ£¬£¬£¬ £¬£¬£¬£¬£¬MicrosoftÕýÔÚÊÓ²ìÒ»Á¬µÄExchange OnlineÖÐÖ¹ÊÂÎñ¡£ ¡£¡£¡£¡£¡£¡£¡£Microsoft³Æ£¬£¬£¬ £¬£¬£¬£¬£¬ÓÉÓÚ×î½ü¶Ôfree/busy»ù´¡ÉèÊ©¾ÙÐÐÁ˸ü¸Ä£¬£¬£¬ £¬£¬£¬£¬£¬µ¼Ö²¿·ÖÓû§ÎÞ·¨·¢Ë͵ç×ÓÓʼþ¡£ ¡£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñÓ°ÏìÁËÃÀ¹ú¡¢Å·ÖÞ¡¢Ó¡¶ÈºÍÓ¢¹úµÄÓû§¡£ ¡£¡£¡£¡£¡£¡£¡£ÏêϸÀ´Ëµ£¬£¬£¬ £¬£¬£¬£¬£¬ÊÜÓ°ÏìÓû§ÔÚ·¢ËÍÓʼþʱ¿ÉÄÜ»áÓöµ½ÎÊÌ⣬£¬£¬ £¬£¬£¬£¬£¬²¢ÏÔʾ¡°503 5.5.1¹ýʧµÄÏÂÁîÐòÁС±µÄ¹ýʧÌáÐÑ¡£ ¡£¡£¡£¡£¡£¡£¡£¾ÝÃÀ¹ú¶«²¿Ê±¼ä7ÔÂ18ÈÕ06:39¸üУ¬£¬£¬ £¬£¬£¬£¬£¬Î¢ÈíÌåÏÖÖÐÖ¹µÄ»ù´¡Ôµ¹ÊÔ­ÓÉÒÑ»ñµÃ½â¾ö£¬£¬£¬ £¬£¬£¬£¬£¬µ«ÈÔÓÐÓû§·´Ó¦ÔÚ·¢ËÍÓʼþʱ±£´æÎÊÌâ¡£ ¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-exchange-online-hit-by-new-outage-blocking-emails/


2¡¢Å²Íþ¹«Ë¾TomraÔâµ½´ó¹æÄ£¹¥»÷²¿·ÖϵͳÔÝʱ¹Ø±Õ


 Ã½Ìå7ÔÂ18Èճƣ¬£¬£¬ £¬£¬£¬£¬£¬Å²Íþ¹«Ë¾Tomra͸¶ÆäÔâµ½ÁË´ó¹æÄ£ÍøÂç¹¥»÷¡£ ¡£¡£¡£¡£¡£¡£¡£ÕâÊÇÒ»¼Ò½ÓÄɺͲɿó¹«Ë¾£¬£¬£¬ £¬£¬£¬£¬£¬ÔÚ2022ÄêµÄÓªÒµ¶îµÖ´ï12ÒÚÃÀÔª¡£ ¡£¡£¡£¡£¡£¡£¡£¹¥»÷ʼÓÚÉÏÖÜÄ©7ÔÂ16ÈÕ£¬£¬£¬ £¬£¬£¬£¬£¬ÎªÁË×èÖ¹¹¥»÷£¬£¬£¬ £¬£¬£¬£¬£¬Tomra¹Ø±ÕÁ˲¿·ÖЧÀÍ¡£ ¡£¡£¡£¡£¡£¡£¡£ÔÚ¼¯ÍŲãÃæ£¬£¬£¬ £¬£¬£¬£¬£¬ÆäÄÚ²¿ITЧÀͺͲ¿·Öºǫ́ӦÓÃÈÔÈ»´¦ÓÚÀëÏß״̬£¬£¬£¬ £¬£¬£¬£¬£¬Ó°ÏìÁ˹©Ó¦Á´ÖÎÀí£¬£¬£¬ £¬£¬£¬£¬£¬Ö÷ÒªµÄ°ì¹«ËùÔÚ´¦ÓÚÀëÏß״̬£¬£¬£¬ £¬£¬£¬£¬£¬Ô±¹¤±»ÒªÇóÔ¶³Ì°ì¹«¡£ ¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬ £¬£¬£¬£¬£¬ÉÐÎÞºÚ¿ÍÍÅ»ïÉù³ÆÎª´ËÊÂÈÏÕæ¡£ ¡£¡£¡£¡£¡£¡£¡£


https://www.theregister.com/2023/07/18/tomra_cyberattack/


3¡¢WordfenceÅû¶ʹÓÃWPÖ§¸¶²å¼þÎó²îÐ®ÖÆÍøÕ¾µÄ¹¥»÷


7ÔÂ17ÈÕ£¬£¬£¬ £¬£¬£¬£¬£¬WordfenceÅû¶ÁËʹÓÃWordPress WooCommerce Payments²å¼þÖÐÎó²îµÄ´ó¹æÄ£¹¥»÷»î¶¯¡£ ¡£¡£¡£¡£¡£¡£¡£¹¥»÷×îÏÈÓÚ7ÔÂ14ÈÕ£¬£¬£¬ £¬£¬£¬£¬£¬²¢ÔÚÖÜÁùµÖ´ï·åÖµ£¬£¬£¬ £¬£¬£¬£¬£¬Õë¶Ô15.7Íò¸öÍøÕ¾ÌᳫÁË130Íò´Î¹¥»÷¡£ ¡£¡£¡£¡£¡£¡£¡£´Ë´Î»î¶¯Ê¹ÓÃÁË3ÔÂ23ÈÕ±»ÐÞ¸´µÄÎó²îCVE-2023-28121£¬£¬£¬ £¬£¬£¬£¬£¬¹¥»÷ÕßʹÓøÃÎó²îÔÚÄ¿µÄ×°±¸ÉÏ×°ÖÃWP Console²å¼þ»ò½¨ÉèÖÎÀíÔ±ÕË»§¡£ ¡£¡£¡£¡£¡£¡£¡£¹ØÓÚ×°ÖÃÁËWP ConsoleµÄϵͳ£¬£¬£¬ £¬£¬£¬£¬£¬¹¥»÷ÕßʹÓòå¼þÖ´ÐÐPHP´úÂ룬£¬£¬ £¬£¬£¬£¬£¬ÔÚЧÀÍÆ÷ÉÏ×°ÖÃÎļþÉÏ´«³ÌÐò£¬£¬£¬ £¬£¬£¬£¬£¬×ÝÈ»Îó²î±»ÐÞ¸´ºó£¬£¬£¬ £¬£¬£¬£¬£¬¸Ã³ÌÐòÈÔ¿ÉÓÃ×÷ºóÃÅ¡£ ¡£¡£¡£¡£¡£¡£¡£


https://www.wordfence.com/blog/2023/07/massive-targeted-exploit-campaign-against-woocommerce-payments-underway/


4¡¢vpnMentor·¢Ã÷¶à¸öÔ¼»áÓ¦ÓõÄÔ¼230ÍòÌõ¼Í¼й¶


vpnMentorÔÚ7ÔÂ17ÈÕ³ÆÆäÒ»¸ö°üÀ¨Ô¼Äª230ÍòÌõ¼Í¼µÄÎÞÃÜÂë±£»£»£»£» £»¤µÄÊý¾Ý¿â¡£ ¡£¡£¡£¡£¡£¡£¡£½øÒ»³ÌÐò²éÏÔʾ£¬£¬£¬ £¬£¬£¬£¬£¬ÕâЩÊý¾ÝÉæ¼°¶à¸öÔ¼»áÓ¦Ó㬣¬£¬ £¬£¬£¬£¬£¬¿ÉÄÜÓÉÓÚÕâЩӦÓÃÊôÓÚͳһ¸ö¹«Ë¾£¬£¬£¬ £¬£¬£¬£¬£¬»òÓÉͳһ¹«Ë¾¿ª·¢¡£ ¡£¡£¡£¡£¡£¡£¡£Ð¹Â¶¼Í¼¹²2357896Ìõ£¬£¬£¬ £¬£¬£¬£¬£¬×ܾÞϸ340.6 GB£¬£¬£¬ £¬£¬£¬£¬£¬°üÀ¨ÐÕÃû¡¢Õʺš¢µç×ÓÓʼþºÍÃÜÂëµÈÐÅÏ¢£¬£¬£¬ £¬£¬£¬£¬£¬ÉõÖÁÉÐÓÐ969571ÕÅÓû§Í¼Ïñ¡£ ¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬ £¬£¬£¬£¬£¬¸ÃÊý¾Ý¿â»¹°üÀ¨¹ûÕæµÄSDKÎļþ£¬£¬£¬ £¬£¬£¬£¬£¬Õâ¿ÉÄܻᱻ¹¥»÷ÕßÓÃÓÚ½¨Éè´øÓÐÒþ²Ø¶ñÒ⹦Ч»òÎó²îµÄÓ¦ÓóÌÐò¡£ ¡£¡£¡£¡£¡£¡£¡£


https://www.vpnmentor.com/news/report-419dating-breach/


5¡¢JumpCloud¹ûÕæÆä½üÆÚÔâµ½µÄÇå¾²ÊÂÎñµÄϸ½ÚÐÅÏ¢


ýÌå7ÔÂ18Èճƣ¬£¬£¬ £¬£¬£¬£¬£¬ÃÀ¹úÆóÒµÈí¼þ¹«Ë¾JumpCloud¹ûÕæÁËÆä½üÆÚÔâµ½µÄÇå¾²ÊÂÎñµÄÏêÇé¡£ ¡£¡£¡£¡£¡£¡£¡£Ô¼ÄªÒ»¸öÔÂǰ£¬£¬£¬ £¬£¬£¬£¬£¬Ò»¸öÓɹú¼ÒÖ§³ÖµÄºÚ¿ÍÍÅ»ïÈëÇÖÁËÆäϵͳ¡£ ¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ6ÔÂ27ÈÕ·¢Ã÷ÁËÕâÒ»ÊÂÎñ£¬£¬£¬ £¬£¬£¬£¬£¬¼´¹¥»÷Õßͨ¹ýÓã²æÊ½´¹ÂÚ¹¥»÷ÈëÇÖÆäϵͳһÖܺó¡£ ¡£¡£¡£¡£¡£¡£¡£Ö®ºó¶Ô¸ÃÊÂÎñÕö¿ªÊӲ죬£¬£¬ £¬£¬£¬£¬£¬·¢Ã÷´Ë´Î¹¥»÷µÄÕë¶ÔÐÔ¼«Ç¿£¬£¬£¬ £¬£¬£¬£¬£¬Ö»Õë¶ÔÌØ¶¨¿Í»§£¬£¬£¬ £¬£¬£¬£¬£¬¹¥»÷Õß½«Êý¾Ý×¢ÈëÁËJumpCloudµÄÏÂÁî¿ò¼Ü¡£ ¡£¡£¡£¡£¡£¡£¡£ÎªÁËÓ¦¶Ô´Ë´Î¹¥»÷£¬£¬£¬ £¬£¬£¬£¬£¬¸Ã¹«Ë¾¾öÒéÌæ»»APIÃÜÔ¿²¢ÖØÐÞ±»ÈëÇֵĻù´¡ÉèÊ©¡£ ¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.com/148547/apt/jumpcloud-nation-state-actor-attack.html


6¡¢FACCTÐû²¼¹ØÓÚRedCurl×î½ü¹¥»÷ºÍ¹¤¾ßµÄÆÊÎö±¨¸æ


7ÔÂ17ÈÕ£¬£¬£¬ £¬£¬£¬£¬£¬FACCTÐû²¼±¨¸æ³Æ£¬£¬£¬ £¬£¬£¬£¬£¬RedCurl½üÆÚ¹¥»÷ÁËÒ»¼Ò¶íÂÞ˹µÄ´óÐÍÒøÐкÍÒ»¼Ò°Ä´óÀûÑǵĹ«Ë¾¡£ ¡£¡£¡£¡£¡£¡£¡£FAACTÌåÏÖ£¬£¬£¬ £¬£¬£¬£¬£¬RedCurlÔøÁ½´ÎʵÑé¹¥»÷Õâ¼Ò¶íÂÞË¹ÒøÐУ¬£¬£¬ £¬£¬£¬£¬£¬ÔÚ2022Äê11ÔµĵÚÒ»´ÎʵÑéÖУ¬£¬£¬ £¬£¬£¬£¬£¬ËûÃÇʹÓÃÁË´¹ÂÚÓʼþ£¬£¬£¬ £¬£¬£¬£¬£¬µ«Ê§°ÜÁË¡£ ¡£¡£¡£¡£¡£¡£¡£ÔÚ½ñÄê5Ô£¬£¬£¬ £¬£¬£¬£¬£¬¸ÃÍÅ»ïÀÖ³ÉÈëÇÖÁ˸ÃÒøÐеÄÒ»Ãû³Ð°üÉÌ£¬£¬£¬ £¬£¬£¬£¬£¬ÒÔÈëÇÖÄ¿µÄµÄ»ù´¡ÉèÊ©¡£ ¡£¡£¡£¡£¡£¡£¡£6Ô£¬£¬£¬ £¬£¬£¬£¬£¬RedCurlÔÚ¶Ô°Ä´óÀûÑǹ«Ë¾µÄ¹¥»÷ÖÐʹÓÃÁËÏàͬµÄÕ½ÂԺ͹¤¾ß¡£ ¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±»¹·¢Ã÷ÁËÕâЩ»î¶¯Ê¹ÓõÄй¤¾ßRedCurl.SimpleDownloader£¬£¬£¬ £¬£¬£¬£¬£¬ÏÖÔÚÈÔÔÚ¿ª·¢ÖС£ ¡£¡£¡£¡£¡£¡£¡£


https://www.facct.ru/blog/redcurl-2023/