FBIÖÒÑÔ²»·¨·Ö×ÓÕýÔÚÓÕÆIC3ÍøÂç·¸·¨¾Ù±¨ÍøÕ¾
Ðû²¼Ê±¼ä 2025-09-231. FBIÖÒÑÔ²»·¨·Ö×ÓÕýÔÚÓÕÆIC3ÍøÂç·¸·¨¾Ù±¨ÍøÕ¾
9ÔÂ19ÈÕ£¬ÃÀ¹úÁª°îÊÓ²ì¾Ö£¨FBI£©¿ËÈÕÐû²¼½ôÆÈÖÒÑÔ£¬Ö¸³öÍøÂç·¸·¨·Ö×ÓÕý´ó×Ú½¨É軥ÁªÍø·¸·¨Í¶ËßÖÐÐÄ£¨IC3£©¹Ù·½ÍøÕ¾µÄÐéα°æ±¾£¬ÒÔÇÔÈ¡¹«ÖÚСÎÒ˽¼ÒÐÅÏ¢²¢ÊµÑé¶þ´Î¹¥»÷¡£IC3×÷ΪFBIÔËÓªµÄ¹Ù·½Æ½Ì¨£¬ÈÏÕæ´¦Öóͷ£Éí·Ý͵ÇÔ¡¢ÍøÂç´¹ÂÚ¡¢ÅÄÂôڲƵÈÍøÂç·¸·¨Í¶Ëß¡£¾ÝFBIÅû¶£¬2023Äê12ÔÂÖÁ2025Äê2ÔÂʱ´ú£¬ÒÑÊÕµ½³¬100ÆðIC3ð³äթƱ¨¸æ¡£Õ©ÆÕßͨ¹ýÉ罻ýÌå×Ô¶¯½Ó´¥Êܺ¦Õߣ¬»Ñ³ÆÐÖú×·»ØËðʧ×ʽð£¬ÓÕµ¼Æä»á¼ûαÔìÍøÕ¾¡£ÕâЩÐéÎ±ÍøÕ¾Í¨¹ýƴд¹ýʧURL£¨Èç¡°ic3.org¡±¡°ic3.com¡±£©¡¢Ìæ»»¶¥¼¶ÓòÃû¡¢µÍÖÊÁ¿Í¼Ðλò²»×¨ÒµÅŰæÓÕÆÓû§£¬ÇÔÈ¡ÐÕÃû¡¢×¡Ö·¡¢µç»°¡¢ÒøÐÐÐÅÏ¢µÈÃô¸ÐÊý¾Ý£¬µ¼ÖÂÉí·Ý͵ÇÔ¡¢½ðÈÚթƼ°Éç»á¹¤³Ì¹¥»÷Σº¦¼¤Ôö¡£ÎªÌá·À´ËÀàÕ©Æ£¬FBI½¨Ò鹫ÖÚÖ±½Óͨ¹ýä¯ÀÀÆ÷ÊäÈë¡°http://www.ic3.gov¡±»á¼û¹Ù·½ÍøÕ¾£¬×èֹʹÓÃËÑË÷ÒýÇæ£¬ÓÈÆäСÐÄ¡°ÔÞÖú¡±Ð§¹û£¬Õ©ÆÕß³£Ê¹Óø¶·Ñ¹ã¸æÐ®ÖÆÕýµ±ÍøÕ¾Á÷Á¿¡£Í¬Ê±£¬½öÔÚÏÔÊ¾ËøÐÎͼ±ê»òHTTPSµÄ.govÍøÕ¾ÉϹ²ÏíÃô¸ÐÐÅÏ¢¡£IC3Ç¿µ÷£¬Æä¹Ù·½ÇþµÀ²»»áͨ¹ýµç»°¡¢Óʼþ¡¢É罻ýÌå»ò¹«¹²ÂÛֱ̳½ÓÁªÏµÐ¡ÎÒ˽¼Ò£¬Ò²²»»áÒªÇóÖ§¸¶ÓöÈÒÔ×·»ØËðʧ×ʽð¡£
https://cybernews.com/security/fbi-warns-bad-actors-spoofing-ic3-internet-crime-reporting-website/
2. Ò°ÊÞÏÈÉúÒòÎ¥¹æÍøÂç¶ùͯÐÅÏ¢ÔâÕû¸Ä
9ÔÂ20ÈÕ£¬ÃÀ¹ú×ÅÃûYouTube²©Ö÷¡°Ò°ÊÞÏÈÉú¡±£¨MrBeast£¬±¾Ãû¼ªÃס¤ÌÆÄÉÉ£©Òòδ»ñ¼Ò³¤ÔÞ³ÉÍøÂç13ËêÒÔ϶ùͯСÎÒ˽¼ÒÐÅÏ¢£¬±»ÃÀ¹úÉÌҵˢоÖÌìÏÂÏîÄ¿£¨BBB National Programs£©ÆìϵĶùͯ¹ã¸æÉó²é×飨CARU£©È϶¨Î¥·´¡¶¶ùͯÔÚÏßÒþ˽±£»¤¹æÔò¡·£¨COPPA£©£¬²¢´¥·¢ÆäƵµÀ¼°¹ØÁªÆ·ÅÆ¡°Feastables¡±µÄÊý¾ÝÍøÂçÓë¹ã¸æÍ¶·ÅÁ÷³ÌÕû¸Ä¡£CARUÖ¸³ö£¬ÌÆÄÉÉÔÚÁ½´Î³é½±Ô˶¯ÖÐÒªÇóÓû§ÌṩȫÃû¡¢µç»°¡¢µØµã¼°ÓÊÏäµÈÃô¸ÐÐÅÏ¢£¬µ«Î´ÉèÖüҳ¤Ô޳ɻúÖÆ£¬µ¼Ö¶ùͯÐÅÏ¢±»Ö±ÎüÍøÂç¡£ÀýÈ磬Æäͨ¹ý¡°Feastables¡±ÇÉ¿ËÁ¦°ô¶þάÂëÆ¾Ö¤ÌᳫµÄ³é½±Ô˶¯£¬ÔÊÐíÆµÈÔÌá½»Õ߿ɻñ1ÍòÃÀÔª½±½ð£¬È´Î´ÌṩÈκμҳ¤ÑéÖ¤ÇþµÀ¡£±ðµÄ£¬¡°Feastables¡±¹ÙÍø±£´æÒ»Á¬µ¯´°ÓÕµ¼Óû§ÌîдÓÊÏä¼°µç»°ºÅÂëµÄÐÐΪ£¬ÇÒÏà¹ØÊý¾Ý±»´«ÊäÖÁµÚÈý·½£¬½øÒ»²½¼Ó¾çÁËÒþ˽й¶Σº¦¡£Æ¾Ö¤COPPA»®¶¨£¬ÃæÏò13ËêÒÔ϶ùͯµÄÔÚÏß·þÎñ±ØÐèͨ¹ý¿ÉÑéÖ¤µÄ¼Ò³¤Ô޳ɻúÖÆ·½¿ÉÍøÂçСÎÒ˽¼ÒÐÅÏ¢¡£CARUÇ¿µ÷£¬ÌÆÄÉɵÄ4.36ÒÚ¶©ÔÄÕßÖаüÀ¨´ó×Ú¶ùͯÓû§£¬ÆäÎ¥¹æÐÐΪÒÑ×é³ÉϵͳÐÔÒþ˽±£»¤È±Ê§¡£
https://therecord.media/watchdog-mrbeast-youtube-privacy-colection
3. StellantisÔâµÚÈý·½Æ½Ì¨ÈëÇÖÖÂ1800ÍòÌõ¿Í»§Êý¾Ýй¶
9ÔÂ22ÈÕ£¬Æû³µÖÆÔì¾ÞÍ·StellantisÓÚ¿ËÈÕ֤ʵ£¬¹¥»÷Õßͨ¹ýÈëÇÖÆä±±ÃÀ¿Í»§·þÎñÔËÓªµÄµÚÈý·½·þÎñÌṩÉÌÆ½Ì¨£¬ÇÔÈ¡Á˲¿·Ö±±ÃÀ¿Í»§Êý¾Ý¡£StellantisÓÉÆ¯ºóÑ©ÌúÁú¼¯ÍÅÓë·ÆÑÇÌØ¿ËÀ³Ë¹ÀÕÆû³µ¹«Ë¾ÓÚ2021ÄêºÏ²¢½¨É裬ÏÖΪȫÇòÓªÊÕ×î¸ßµÄÆû³µ¹«Ë¾Ö®Ò»¼°ÏúÁ¿µÚÎå´óÖÆÔìÉÌ£¬ÆìÏÂÓµÓа¢¶û·¨¡¤ÂÞÃÜÅ·¡¢¿ËÀ³Ë¹ÀÕ¡¢Ñ©ÌúÁúµÈ14¸öÆ·ÅÆ£¬ÓªÒµÁýÕÖ130¶à¸ö¹ú¼Ò¡£¾Ý¹«Ë¾ÉùÃ÷£¬´Ë´Îй¶½öÉæ¼°¿Í»§ÁªÏµÐÅÏ¢£¬Òò±»ÈëÇÖÆ½Ì¨Î´´æ´¢²ÆÎñ»òÃô¸ÐСÎÒ˽¼ÒÐÅÏ¢¡£ÊÂÎñ±¬·¢ºó£¬StellantisÁ¬Ã¦Æô¶¯ÊÂÎñÏìÓ¦»úÖÆ£¬Õö¿ªÖÜÈ«ÊӲ첢¿ØÖÆÊÂ̬£¬Í¬Ê±Í¨ÖªÏà¹Ø²¿·Ö²¢ÏòÊÜÓ°Ïì¿Í»§·¢³ö¾¯Ê¾£¬ÌáÐÑСÐÄÍøÂç´¹ÂÚ¹¥»÷£¬Îðµã»÷¿ÉÒÉÁ´½Ó»ò·ÖÏíСÎÒ˽¼ÒÐÅÏ¢¡£¾Ý³Æ´Ë´Î¹¥»÷ÓëShinyHuntersÀÕË÷¼¯ÍŽüÆÚÌᳫµÄSalesforceÊý¾Ýй¶ÊÂÎñÏà¹Ø¡£
https://www.bleepingcomputer.com/news/security/automaker-giant-stellantis-confirms-data-breach-after-salesforce-hack/
4. ÃÀ¹ú¹«¹²¹ã²¥µµ°¸¹ÝIDORÎó²îÖÂÀúÊ·ÄÚÈÝй¶
9ÔÂ22ÈÕ£¬ÃÀ¹ú¹«¹²¹ã²¥µµ°¸¹Ý£¨AAPB£©±¾ÔÂÇÄÈ»ÐÞ¸´ÁËÒ»¸ö±£´æ¶àÄêµÄÇå¾²Îó²î£¬¸ÃÎó²îÔÊÐíÓû§Í¨¹ýTampermonkey¾ç±¾Ê¹Óò»Çå¾²Ö±½Ó¹¤¾ßÒýÓã¨IDOR£©È±ÏÝ£¬Èƹý»á¼û¿ØÖÆÏÂÔØÊܱ£»¤µÄ˽ÈËýÌåÄÚÈÝ¡£ÄäÃûÍøÂçÇå¾²Ñо¿Ö°Ô±Åû¶£¬¸ÃÎó²îÖÁÉÙ×Ô2021ÄêÆðÒѱ»Ê¹Óã¬Ö»¹ÜÆäÔøÏòAAPB±¨¸æµ«Î´»ñʵʱ´¦Öóͷ£¡£ÐÞ¸´ºó£¬AAPBͨѶ˾ÀíEmily BalkÇ¿µ÷½«ÔöÇ¿µµ°¸¹ÝÇå¾²ÐÔ£¬Í¬Ê±¼á³Ö¡°Ãâ·Ñ»ñÈ¡¹«¹²Ã½ÌåÀúÊ·¡±µÄʹÃü¡£AAPBÓÉWGBH½ÌÓý»ù½ð»áºÍ¹ú»áͼÊé¹ÝÍŽáÔËÓª£¬×÷Ϊ·ÇÓªÀû»ú¹¹£¬ÆäʹÃüÊÇÍøÂç¡¢Êý×Ö»¯²¢ÉúÑÄÃÀ¹ú¹«¹²¹ã²¥ºÍµçÊÓÖÆ×÷µÄÀúÊ·ÄÚÈÝ¡£Îó²îÈö²¥Â·¾¶Ê¼ÓÚLost Media Wiki DiscordƵµÀ¶Ô¡¶Ö¥Âé½Ö¡·¡°Î÷·½Ð°¶ñÅ®Îס±¾ç¼¯Ð¹Â¶µÄÌÖÂÛ£¬ºóÀ©É¢ÖÁDiscordÉúÑÄС×飬µ¼ÖÂÊܱ£»¤ÄÚÈÝÔÚÊý¾Ý¶Ú»ýÕßÉçȺÖнøÒ»²½Èö²¥¡£ÕâЩÉçȺÒÔ´æµµÈí¼þ¡¢Ã½ÌåµÈÐÎʽΪ½¹µã£¬³£ÓÎ×ßÓÚ°æÈ¨»ÒÉ«µØ´ø£¬Ä£ºýÁËÕýµ±ÉúÑÄÓëÊý×ÖµÁ°æµÄ½çÏß¡£Ö»¹ÜÎó²îÒÑÐÞ¸´£¬µ«Êý¾Ý¶Ú»ýÉçÇøÄÚ¹²ÏíµÄÄÚÈÝÁ¿ÈÔ²»Ã÷È·¡£
https://www.bleepingcomputer.com/news/security/american-archive-of-public-broadcasting-fixes-bug-exposing-restricted-media/
5. ComicFormºÚ¿Í×éÖ¯Õë¶Ô¶«Å·¶à¹ú·¢¶¯ÍøÂç´¹ÂÚ¹¥»÷
9ÔÂ22ÈÕ£¬ComicFormºÚ¿Í×éÖ¯4ÔÂÒÔÀ´Õë¶Ô°×¶íÂÞ˹¡¢¹þÈø¿Ë˹̹¼°¶íÂÞ˹µÄ¹¤Òµ¡¢½ðÈÚ¡¢ÂÃÓΡ¢ÉúÎïÊÖÒÕ¡¢Ñо¿ºÍÉÌÒµÁìÓòÌá³«ÍøÂç´¹ÂÚ¹¥»÷¡£¾ÝÍøÂçÇå¾²¹«Ë¾F6ÆÊÎö£¬¹¥»÷Á´ÒÔ¡°ÆÚ´ýÊðÃûÎļþ¡±¡°¸¶¿î·¢Æ±¡±µÈÖ÷ÌâÓʼþΪÓÕ¶ü£¬ÓÕµ¼ÊÕ¼þÈË·¿ª°üÀ¨¶ñÒâ¿ÉÖ´ÐÐÎļþµÄRR´æµµ¡£ÕâЩÓʼþʹÓöíÓï»òÓ¢ÓïÌÜд£¬Ô´×Ô.ru¡¢.by¡¢.kzÓòÃû£¬×îÖÕͨ¹ý»ìÏýµÄ.NET¼ÓÔØ³ÌÐòÆô¶¯¡°MechMatrix Pro.dll¡±£¬²¢°²ÅÅFormbook¶ñÒâÈí¼þͶ·ÅÆ÷¡°Montero.dll¡±£¬Í¬Ê±½¨ÉèÍýÏëʹÃü¡¢ÉèÖÃMicrosoft Defenderɨ³ýÏîÒÔÌӱܼì²â¡£ÖµµÃ×¢ÖØµÄÊÇ£¬¶ñÒâ¶þ½øÖÆÎļþ°üÀ¨Ö¸ÏòòùòðÏÀµÈÂþ»GIFµÄTumblrÁ´½Ó£¬Òò´Ë¸Ã×éÖ¯µÃÃû¡°ComicForm¡±¡£F6Ñо¿Ô±Ö¸³ö£¬ÕâЩGIF½öΪ´úÂëαװ£¬Î´¼ÓÈëÏÖʵ¹¥»÷¡£´Ë´Î¹¥»÷ÓëÇ×¶í×éÖ¯SectorJ149Õë¶Ôº«¹úµÄ¹¥»÷±£´æ¹ØÁª¡£¸Ã×éÖ¯2024Äê11ÔÂÆðÒÔº«¹úÖÆÔìÒµ¡¢ÄÜÔ´¡¢°ëµ¼ÌåÐÐҵΪĿµÄ£¬Í¨¹ýÓã²æÊ½´¹ÂÚÓʼþ·Ö·¢Lumma Stealer¡¢Remcos RATµÈ¶ñÒâÈí¼þ£¬Æä¹¥»÷´Ó¾¼ÃÀûÒæ×ªÏòÕþÖÎÄ¿µÄ¡£
https://thehackernews.com/2025/09/comicform-and-sectorj149-hackers-deploy.html
6. LastPass¾¯Ê¾macOSÓû§Ìá·ÀαװʢÐÐÈí¼þµÄ¶ñÒâÈí¼þ¹¥»÷
9ÔÂ22ÈÕ£¬LastPass¿ËÈÕÐû²¼ÖÒÑÔ£¬Ö¸³öÕë¶ÔmacOSÓû§µÄÍøÂç¹¥»÷Ô˶¯Õýͨ¹ýαװ³ÉÊ¢ÐÐÈí¼þµÄ¶ñÒâÈí¼þ¾ÙÐÐÈö²¥¡£¹¥»÷ÕßʹÓÃÚ²ÆÐÔGitHub´æ´¢¿â£¬ÍŽáËÑË÷ÒýÇæÓÅ»¯£¨SEO£©Õ½ÂÔ£¬ÔÚGoogleºÍBingÉÏÍÆ¹ãÕâЩÐéαӦÓá£ÕâЩӦÓÃÔÚ"ClickFix"¹¥»÷ÖÐͶ·ÅAtomic£¨AMOS£©ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ£¬¸Ã¶ñÒâÈí¼þ×÷Ϊ·þÎñÿÔÂÊÕ·Ñ1000ÃÀÔª£¬½üÆÚÐÂÔöºóÃÅ×é¼þ£¬ÔÊÐí¹¥»÷ÕßÒ»Á¬¡¢Òþ²ØµØ»á¼ûÊÜѬȾϵͳ¡£¹¥»÷ÕßÄ£ÄâÁËÁè¼Ý100ÖÖÈí¼þ½â¾ö¼Æ»®£¬°üÀ¨1Password¡¢Dropbox¡¢Confluence¡¢RobinhoodµÈ×ÅÃû²úÆ·£¬Í¨¹ý¶à¸öÕË»§½¨Éè´ó×ÚÓÕÆÐÔGitHub´æ´¢¿â£¬ÓÅ»¯ËÑË÷ÅÅÃûÒÔÌÓ±Üɾ³ý¡£Óû§µã»÷´æ´¢¿âÖеÄ"ÏÂÔØ°´Å¥"»á±»Ö¸µ¼ÖÁ¸¨ÖúÕ¾µã£¬ÌáÐÑÕ³ÌùÏÂÁîµ½ÖÕ¶ËÖ´ÐÐ×°Ö᣸ÃÏÂÁîͨ¹ýcurlÇëÇóbase64±àÂëµÄURL£¬½«AMOSÓÐÓøºÔØ£¨install.sh£©ÏÂÔØÖÁ/tmpĿ¼¡£´ËÀ๥»÷ʹÓÃÓû§¶ÔÏÂÁîµÄ²»ÏàʶʵÑé¹¥»÷£¬ÊôÓڵ䷶µÄ"ClickFix"¹¥»÷ģʽ¡£Ö»¹ÜLastPassÒ»Á¬¼à¿Ø²¢±¨¸æÐéα´æ´¢¿â£¬µ«ÐÂÕË»§×Ô¶¯»¯½¨Éèµ¼ÖÂÎÊÌâÒ»Á¬±£´æ¡£
https://www.bleepingcomputer.com/news/security/lastpass-fake-password-managers-infect-mac-users-with-malware/


¾©¹«Íø°²±¸11010802024551ºÅ