MetaºÍÃÀ¹úÁ½¼ÒÒ½ÁÆ»ú¹¹±»ÆðËßÍøÂ综ÕßÐÅϢͶ·Å¹ã¸æ
Ðû²¼Ê±¼ä 2022-08-01
¾ÝýÌå7ÔÂ30ÈÕ±¨µÀ£¬¼ÓÖݱ±Çø¶ÔMeta¡¢UCSFÒ½ÁÆÖÐÐĺÍDignity¿µ½¡Ò½ÁÆ»ù½ð»áÌáÆðÕûÌåËßËÏ£¬Ö¸¿ØËûÃDz»·¨ÍøÂçÓйػ¼ÕßµÄÒ½ÁÆÊý¾Ý²¢ÓÃÓÚ¶¨ÏòͶ·Å¹ã¸æ¡£·¨ÔºÎļþÏÔʾ£¬»¼ÕßÔÚFacebookºÍÓÊÏäÖÐÊÕµ½ÁËÓÐÕë¶ÔÐÔµÄ¹ã¸æ£¬ÕâЩ¹ã¸æÔÚûÓпÆÑ§Ö§³ÖµÄÇéÐÎÏÂÐû´«¼²²¡ºÍÒ½ÁÆ·þÎñ¡£Meta PixelÊÇÒ»¶Î´úÂ룬¿ÉÒÔ×¢ÈëÈκÎÍøÕ¾£¬ÒÔ¾ÙÐÐ·Ã¿ÍÆÊÎö¡¢Êý¾ÝÍøÂçºÍ¶¨ÏòͶ·Å¹ã¸æ¡£Æ¾Ö¤Í¶Ëߣ¬±»·¢Ã÷ʹÓÃÁËMeta PixelµÄ33¼ÒÒ½Ôº½öÔÚ2020Äê¾Í¹²ÊÕÖÎÁË2600¶àÍòÃû»¼Õß¡£
https://www.bleepingcomputer.com/news/security/meta-us-hospitals-sued-for-using-healthcare-data-to-target-ads/
2¡¢ShinyHuntersÍÅ»ïµÄÖ÷Òª³ÉÔ±ÔÚÀ°ÍÌØ¹ú¼Ê»ú³¡±»²¶
ýÌå7ÔÂ31Èճƣ¬Èû°Í˹µÙ°²¡¤ÀÎÚ¶û£¨ÓÖÃûSezyo£©ÓÚ2022Äê6ÔÂ1ÈÕÔÚÀ°ÍÌØ¹ú¼Ê»ú³¡±»²¶¡£ËûÊÇShinyHuntersÍÅ»ïµÄÖ÷Òª³ÉÔ±Ö®Ò»£¬ÔøÈëÇÖÁËÊý°Ù¸öÃÀ¹ú×éÖ¯¡£³ýÁËÀÎÚ¶û£¬ÉÐÓÐÆäËû4Ãû·¨¹úסÃñÓ¦Áª°îÊÓ²ì¾ÖµÄÒªÇó½ÓÊÜÁËÎÊѶ¡£ÃÀ¹úÏÖÔÚÒªÇóÒÔÍøÂçڲƺÍÍøÂç·¸·¨µÄÖ¸¿Ø½«ÏÓÒÉÈËÒý¶Éµ½ÃÀ¹ú£¬È»¶øÀÎÚ¶ûµÄ״ʦ¾Ü¾øÁËÕâÒ»ÒªÇ󣬳Ƹð¸¼þÊôÓÚ·¨¹úͳÁì¹æÄ££¬ÓÉÓÚÎ¥·¨ÐÐΪÊÇÓÉ·¨¹ú¹úÃñÔÚ·¨¹ú¾ÙÐеġ£·¨¹úL'Obs±¨µÀ£¬ÏÓÒÉÈ˱»²¶ºóÒ»Ö±±»¹ØÑºÔÚTifletÀÎÓü£¬²¢ÃæÁÙ×Å116ÄêµÄî¿Ïµ¡£
https://www.hackread.com/alleged-shinyhunters-hacker-group-member-arrested/
3¡¢AdrasteaÉù³ÆÒÑÈëÇÖÅ·ÖÞµ¼µ¯ÖÆÔìÉÌMBDA²¢ÇÔÈ¡60GBÊý¾Ý
¾Ý7ÔÂ31ÈÕ±¨µÀ£¬AdrasteaÉù³ÆÒÑÈëÇÖMBDA²¢ÇÔÈ¡60 GBÊý¾Ý¡£MBDAÊÇÅ·ÖÞµÄÒ»¼Ò¿ç¹úµ¼µ¯¿ª·¢É̺ÍÖÆÔìÉÌ£¬ÓÉ·¨¹ú¡¢Ó¢¹úºÍÒâ´óÀûÖ÷ÒªµÄµ¼µ¯ÏµÍ³¹«Ë¾£¨A¨¦rospatiale¨CMatra¡¢BAE SystemsºÍFinmeccanica£©ºÏ²¢¶ø³É¡£AdrasteaÌåÏÖ£¬ËûÃÇÔÚ¹«Ë¾µÄ»ù´¡ÉèÊ©Öз¢Ã÷ÁËÑÏÖØÎó²î£¬²¢ÒÑÏÂÔØÉæ¼°¾üÊÂÏîÄ¿¡¢ÉÌÒµÔ˶¯¡¢ÌõÔ¼ÐÒéÒÔ¼°ÓëÆäËü¹«Ë¾Í¨Ñ¶ÐÅÏ¢µÄ60 GBÊý¾Ý¡£×÷Ϊ¹¥»÷µÄÖ¤¾Ý£¬AdrasteaÐû²¼ÁËÒ»¸öÁ´½Ó£¬°üÀ¨ÓëÏîÄ¿ºÍͨѶÏà¹ØµÄÄÚ²¿Îļþ¡£ÏÖÔÚ£¬Éв»ÇåÎú¹ØÓڴ˴ι¥»÷µÄϸ½ÚÐÅÏ¢¡£
https://securityaffairs.co/wordpress/133881/data-breach/mbda-alleged-data-breach.html
4¡¢SharpTongueʹÓöñÒâä¯ÀÀÆ÷À©Õ¹ÇÔȡĿµÄµÄÓʼþÊý¾Ý
¾ÝVolexityÔÚ7ÔÂ28ÈÕ±¨µÀ£¬³¯ÏʺڿÍÍÅ»ïSharpTongueÔÚ»ùÓÚChromiumµÄä¯ÀÀÆ÷Éϰ²ÅŶñÒâÀ©Õ¹³ÌÐò£¬Ö¼ÔÚ´ÓGmailºÍAOLÇÔÈ¡µç×ÓÓʼþÊý¾Ý¡£¾ÝϤ£¬¸ÃÍÅ»ïÓëÒ»¸ö³ÆÎªKimsukyµÄÍÅ»ïÓÐËùÖØµþ¡£SharpTongueÖ÷ÒªÕë¶ÔΪÃÀ¹ú¡¢Å·Ö޺ͺ«¹úµÄ×éÖ¯ÊÂÇ飬´ÓÊÂÉæ¼°³¯ÏÊ¡¢ºËÎÊÌâ¡¢ÎäÆ÷ϵͳµÈ¶Ô³¯ÏʾßÓÐÕ½ÂÔÒâÒåµÄÎÊÌâµÄÄ¿µÄ¡£ÔÚ´Ë´ÎÔ˶¯ÖУ¬¹¥»÷ÕßÊ×ÏÈ´Ó±»Ñ¬È¾µÄÍøÕ¾ÊÖ¶¯ÇÔȡװÖÃÀ©Õ¹ËùÐèµÄÎļþ£¬Ò»µ©Àֳɹ¥»÷Ä¿µÄWindowsϵͳ£¬¾Í»áÌæ»»ä¯ÀÀÆ÷µÄÊ×Ñ¡ÏîºÍÇå¾²Ê×Ñ¡ÏÔÙͨ¹ýVBS¾ç±¾ÊÖ¶¯×°ÖöñÒâÀ©Õ¹SHARPEXT¡£
https://www.volexity.com/blog/2022/07/28/sharptongue-deploys-clever-mail-stealing-browser-extension-sharpext/
5¡¢Ó¢¹úWooton UpperѧУÔâµ½Hive¹¥»÷±»ÀÕË÷50ÍòÓ¢°÷
ýÌå7ÔÂ28Èճƣ¬Ó¢¹ú±´µÂ¸£µÂ¿¤µÄWooton Upper SchoolÔâµ½¹¥»÷ºó£¬±»ÀÕË÷500000Ó¢°÷¡£¹¥»÷Ô´ÓÚHive£¬¸ÃÍÅ»ïÒÑÏòѧÉúºÍ¼Ò³¤·¢ËÍÐÂÎÅ£¬³ÆËûÃÇÔÚÊýÖÜǰÈëÇÖÁËWoottonµÄϵͳ£¬²¢Ïë·¨¼ÓÃÜÁËWoottonËùÓеķþÎñÆ÷£¬°üÀ¨½ð²®ÀûѧԺ(Kimberley College)£¬ÇÔÈ¡Á˼Òͥסַ¡¢ÒøÐÐÏêϸÐÅÏ¢¡¢Ò½ÁƼͼºÍѧÉúµÄÐÄÀíÆÀ¹ÀµÈÐÅÏ¢¡£¸ÃѧУÈÏÕæÈËÒÑÈ·ÈÏÔâµ½ÁËÍøÂç¹¥»÷£¬ËûÃÇÕýÔÚÖÆ¶©ÍýÏëÀ´ÖØÐÞÆäITϵͳ¡£ÏÖÔÚÎÞ·¨È·¶¨»Ö¸´ËùÐèʱ¼ä£¬µÚÈý·½½¨ÒéΪ7µ½10¸öÊÂÇéÈÕ¡£
https://www.infosecurity-magazine.com/news/ransomware-group-500000-school/
6¡¢ENISAÐû²¼¹ØÓÚ2021ÄêÖØ´óµçÐÅÇå¾²ÊÂÎñµÄ»ã×ܱ¨¸æ
7ÔÂ28ÈÕ±¨µÀ£¬ENISAÐû²¼¹ØÓÚ2021ÄêÖØ´óµçÐÅÇå¾²ÊÂÎñµÄ»ã×ܱ¨¸æ¡£±¨¸æ°üÀ¨ÁËÀ´×Ô26¸öÅ·Ã˳ÉÔ±¹ú(MS)ºÍ2¸öEFTA¹ú¼ÒµÄÕþ¸®Ìá½»µÄ168ÆðÊÂÎñ±¨¸æµÄÏà¹ØÊý¾Ý£¬Óû§ËðʧµÄ×Üʱ¼ä£¨Í¨¹ý¶Ôÿ¸öÊÂÎñµÄÓû§Êý³ËÒÔСʱÊýµÃ³ö£©Îª51.06ÒÚ¸öÓû§Ð¡Ê±¡£2021ÄêÉϱ¨µÄÊÂÎñÖÐÓÐ4.16%Éæ¼°OTTͨѶ·þÎñ£»±»±ê¼ÇΪ¶ñÒâÊÂÎñÊýÄ¿´Ó2020ÄêµÄ4%ÉÏÉýµ½2021ÄêµÄ8%£»ÏµÍ³¹ÊÕÏÈÔÔÚÓ°Ïì·½ÃæÕ¼ÓÐÖ÷µ¼Ö°Î»£¬ÔÚ2021ÄêÔì³ÉÁË3.63ÒÚÓû§Ð¡Ê±µÄËðʧ£¬¶ø2020ÄêΪ4.19ÒÚ¡£
https://securityaffairs.co/wordpress/133756/reports/telecom-security-incidents-2021-enisa.html


¾©¹«Íø°²±¸11010802024551ºÅ