Å·ÖÞÒøÐÐÖÎÀí¾ÖµÄExchangeЧÀÍÆ÷Ôâµ½¹¥»÷£»£»£»£»FlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬£¬£¬²¢ÓÀÊÀ×èֹʹÓÃAccellio

Ðû²¼Ê±¼ä 2021-03-09

1.FlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬£¬£¬²¢ÓÀÊÀ×èֹʹÓÃAccellion


1.jpg


×ܲ¿Î»ÓÚÃÜЪ¸ùÖݵÄFlagstarÒøÐеĿͻ§ÐÅϢй¶£¬£¬£¬£¬£¬²¢Ðû²¼½«ÓÀÊÀ×èֹʹÓÃAccellion¡£¡£¡£¡£¸ÃÒøÐÐÊÇFlagstar BancorpµÄ×Ó¹«Ë¾£¬£¬£¬£¬£¬ÎªÃÀ¹ú¿Í»§ÌṩµäÖÊºÍÆäËû½ðÈÚЧÀÍ¡£¡£¡£¡£´Ë´ÎÊý¾Ýй¶ÊÇÓÉÓÚÆäʹÓõĴ«Êä´óÎļþµÄAccellion FTAÎļþ¹²Ïí³ÌÐò±£´æÒѱ»ÔÚҰʹÓõÄ0day¶øµ¼Öµġ£¡£¡£¡£¸Ã×éÖ¯³ÆÆäÓÚ2021Äê1ÔÂ22ÈÕµÃÖª´ËÊÂÎñ£¬£¬£¬£¬£¬ÏÖÔÚ²¢Î´Í¸Â¶Ó°ÏìµÄ¿Í»§ÊýÄ¿ÒÔ¼°Ð¹Â¶Êý¾ÝµÄÖÖÀ࣬£¬£¬£¬£¬µ«ÌåÏÖFlagstar½«ÓÀÊÀ×èֹʹÓÃAccellionÎļþ¹²ÏíÆ½Ì¨¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/flagstar-bank-customer-data-breached-through-accellion-hack/


2.ÃÀ¹ú˾·¨²¿ÖÒÑÔð³äÖÝÀ͹¤¾ÖÇÔÈ¡¹«ÃñÐÅÏ¢µÄ»î¶¯


2.jpg


ÃÀ¹ú˾·¨²¿ÖÒÑÔð³äÖÝÀ͹¤¾Ö£¨SWA£©ÇÔÈ¡¹«ÃñµÄСÎÒ˽¼ÒÐÅÏ¢ºÍÆäËûÃô¸ÐÊý¾ÝµÄ»î¶¯¡£¡£¡£¡£ÔÚ´ËÀà»î¶¯ÖУ¬£¬£¬£¬£¬ºÚ¿Í´î½¨ÁËαÔìµÄSWAÍøÕ¾£¬£¬£¬£¬£¬²¢·¢ËͰüÀ¨Î±ÔìSWAÍøÕ¾Á´½ÓµÄÀ¬»ø¶ÌÐź͵ç×ÓÓʼþ£¬£¬£¬£¬£¬À´Ö¸µ¼Êܺ¦Õß»á¼ûÕâÐ©ÍøÕ¾¡£¡£¡£¡£Ö®ºóÓÕʹ¹«ÃñÔÚ¸ÃÍøÕ¾ÉêÇëʧҵ¾ÈÔ®£¬£¬£¬£¬£¬ÒÔÇÔÈ¡ÆäСÎÒ˽¼ÒÉí·ÝÐÅÏ¢µÈÊý¾Ý¡£¡£¡£¡£×îºó£¬£¬£¬£¬£¬ºÚ¿Í»áʹÓÃÍøÂçµ½µÄÐÅÏ¢À´¾ÙÐÐÉí·ÝµÁÓᣡ£¡£¡£ÃÀ¹ú˾·¨²¿ÌåÏÖÔÚÃÀ¹úÓÐ1000ÍòʧҵÕߣ¬£¬£¬£¬£¬ÌáÐÑËûÃÇÓ¦µ±×¢ÖØÍøÂç´¹ÂÚ¹¥»÷¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/u-s-doj-unemployment-benefit-websites-steal-data/    


3.½Ý¿ËÊ×¶¼¹«¹²ÖÎÀíϵͳÔâ´ó¹æÄ£¹¥»÷£¬£¬£¬£¬£¬ÊÂÎñÔÚÊÓ²ìÖÐ


3.jpg


½Ý¿ËµÄÊ×¶¼²¼À­¸ñÊеĹ«¹²ÖÎÀíϵͳÔâ´ó¹æÄ£¹¥»÷£¬£¬£¬£¬£¬ÊÂÎñÔÚÊÓ²ìÖС£¡£¡£¡£¸ÃÊÐÊг¤den¨§k H?ibÌåÏÖ£¬£¬£¬£¬£¬Æä¹«¹²ÖÎÀíϵͳÔâµ½¹¥»÷£¬£¬£¬£¬£¬Ð§ÀÍÆ÷ÏÕЩûÓÐÊܵ½Ë𺦣¬£¬£¬£¬£¬µ«µç×ÓÓʼþϵͳÒѱ»¹Ø±Õ¡£¡£¡£¡£½Ý¿ËÀ͹¤ºÍÉç»áÊÂÎñ²¿³¤JanaMal¨¢?ov¨¢ÌåÏָò¿Ò²Ôâµ½ÁËÏ®»÷£¬£¬£¬£¬£¬µ«²¢Î´Ìṩ¸ü¶àϸ½Ú¡£¡£¡£¡£¾Ý±¨µÀ£¬£¬£¬£¬£¬¸ÃÊйÙÔ±ÒÑÏò½Ý¿Ë¹ú¼ÒÍøÂçºÍÐÅÏ¢¾Ö£¨NUKIB£©±¨¸æ´ËÊÂÎñ£¬£¬£¬£¬£¬ÏÖÔÚÉÐÎÞ¼£ÏóÅú×¢ÊÇË­¾ÙÐÐÁ˴˴ι¥»÷¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.euronews.com/2021/03/05/czech-officials-in-prague-hit-by-massive-cyber-attack


4.Å·ÖÞÒøÐÐÖÎÀí¾ÖµÄExchangeЧÀÍÆ÷Ôâµ½¹¥»÷£¬£¬£¬£¬£¬Óʼþϵͳ¹Ø±Õ


4.jpg


Å·ÖÞÒøÐÐÖÎÀí¾Ö£¨EBA£©³ÆÆäExchangeЧÀÍÆ÷Ôâµ½¹¥»÷£¬£¬£¬£¬£¬ËùÓÐÓʼþϵͳÒѾ­¹Ø±Õ¡£¡£¡£¡£EBAÊÇÅ·ÖÞ½ðÈÚî¿ÏµÏµÍ³µÄÒ»²¿·Ö£¬£¬£¬£¬£¬ËüÈÏÕæ¼àÊÓÅ·ÃËÒøÐÐÒµµÄÕûÌåÓÐÐòÔË×÷¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬¸ÃÊÂÎñÈÔÔÚÊÓ²ìÖУ¬£¬£¬£¬£¬Éв»È·¶¨ºÚ¿Í»á¼ûÁËʲôÊý¾Ý¡£¡£¡£¡£¸Ã×éÖ¯ÔÚÉÏÖÜÈյijõ³ÌÐò²é³Æ£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÒѾ­»á¼ûÁË´æ´¢ÔÚµç×ÓÓʼþЧÀÍÆ÷ÉϵÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£µ«ÔÚ±¾ÖÜÒ»µÄÔö²¹¸üÐÂÖÐÌåÏÖ£¬£¬£¬£¬£¬µç×Óȡ֤Àú³ÌÖÐûÓз¢Ã÷Êý¾Ýй¶µÄ¼£Ï󡣡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/european-banking-authority-discloses-exchange-server-hack/


5.MotusÐû²¼ÓйØ2021ÄêÒÔºóÔ¶³ÌÊÂÇéÇ÷ÊÆµÄÆÊÎö±¨¸æ


5.jpg


MotusÐû²¼ÁËÓйØ2021ÄêÒÔºóÔ¶³ÌÊÂÇéÇ÷ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£±¨¸æ·¢Ã÷£¬£¬£¬£¬£¬ÏÖÔÚ£¬£¬£¬£¬£¬¿ìÒª56£¥µÄÔ±¹¤ÕýÔÚ¾ÙÐÐÓëÔ¶³Ì¼æÈݵÄÊÂÇ飬£¬£¬£¬£¬67£¥µÄÆóҵϣÍû¾Ó¼ÒÊÂÇéµÄÕþ²ßÄܹ»ºã¾Ã»òÓÀÊÀµØ¼á³ÖÏÂÈ¥¡£¡£¡£¡£¸Ã±¨¸æ»¹ÏÔʾ£¬£¬£¬£¬£¬ÓÐ83£¥µÄ¹«Ë¾Ïòµ¼ÕßÌåÏÖËûÃǵÄ×éÖ¯ÒÑÀÖ³É×ªÒÆµ½Ô¶³ÌÊÂÇé¡£¡£¡£¡£¶ø68%µÄÕÐÆ¸Ë¾ÀíÒÔΪ£¬£¬£¬£¬£¬Ëæ×Åʱ¼äµÄÍÆÒÆ£¬£¬£¬£¬£¬Ô¶³ÌÊÂÇé±äµÃÔ½À´Ô½ÈÝÒ×£¬£¬£¬£¬£¬³ÖÕâÖÖ¿´·¨µÄÈËÊýÏà½Ï2020Äê6ÔÂÔöÌíÁË14%¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.motus.com/remote-work-policies-to-remain/


6.Group-IBÐû²¼2020-2021ÄêÀÕË÷Èí¼þµÄÆÊÎö±¨¸æ


6.jpg


Group-IBÐû²¼ÁË2020-2021ÄêÀÕË÷Èí¼þµÄÆÊÎö±¨¸æ¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬ÀÕË÷Èí¼þ¹¥»÷ÔÚÈ¥ÄêÔöÌíÁËÒ»±¶ÒÔÉÏ£¬£¬£¬£¬£¬¹æÄ£ºÍÖØ´óÐÔ¾ù³ÊÉÏÉýÇ÷ÊÆ¡£¡£¡£¡£ÀÕË÷Èí¼þÍÅ»ïµÄÖ§³öƽ¾ùÔÚ1µ½200ÍòÃÀÔªÖ®¼ä£¬£¬£¬£¬£¬·ºÆðÁËÐí¶àеÄ×éÖ¯£¬£¬£¬£¬£¬ÀýÈçonti¡¢EgregorºÍDarkSide£¬£¬£¬£¬£¬ËûÃÇÖ÷ÒªÕë¶Ô±±ÃÀºÍÅ·Ö޵ĴóÐ͹«Ë¾¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬È¥ÄêµÄ¹¥»÷ÊýÄ¿ÔöÌíÁË150£¥£¬£¬£¬£¬£¬Æ½¾ùÊê½ðÔöÌíÁËÁ½±¶£¬£¬£¬£¬£¬µÖ´ï170000ÃÀÔª£¬£¬£¬£¬£¬Æ½¾ùÔì³ÉÁË18ÌìµÄÍ£»£»£»£»úʱ¼ä¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/resources/threat-research/ransomware-2021.html