ÂíÀ´Î÷ÑÇË®Îñ¹«Ë¾RanhillÊý¾Ý¿âºÍ±¸·Ý±»DESORDENɾ³ý
Ðû²¼Ê±¼ä 2023-07-281¡¢ÂíÀ´Î÷ÑÇË®Îñ¹«Ë¾RanhillÊý¾Ý¿âºÍ±¸·Ý±»DESORDENɾ³ý
¾ÝýÌå7ÔÂ26ÈÕ±¨µÀ£¬DESORDENÍÅ»ïÉù³Æ¹¥»÷ÁËÂíÀ´Î÷ÑÇÖ÷ÒªµÄË®ÎñºÍ¹©µç¹«Ë¾Ranhill Utilities Berhad¡£¹¥»÷Õß³ÆÆä»÷¹¥»÷ÁËRanhillµÄ¼Æ·ÑÓªÒµºÍ¹©Ë®ÓªÒµ£¬Ó°ÏìÁË100¶àÍò¿Í»§¡£²¢Í¸Â¶¹¥»÷ʼÓÚ2021Äê11Ô£¬Ö®ºóDESORDENÒ»Ö±±£´æÓÚËûÃǵÄϵͳÖС£½ñÄê7ÔÂ17ÈÕ£¬¹¥»÷ÕßÈëÇÖÁ˸ù«Ë¾µÄʵʱ¼Æ·ÑϵͳLIVE Billing£¬²¢ÓÚ7ÔÂ18ÈÕµ½19ÈÕ£¬ÇÔÈ¡Á˼ƷÑϵͳÖеÄËùÓÐÊý¾Ý¿â£¬²¢É¾³ýÁ˱¸·ÝºÍÊý¾Ý¿â¡£DESORDEN³ÆÒѾÇÔÈ¡Êý°ÙGBµÄÊý¾Ý£¬RanhillÉÐδ¶Ô´Ëʱ×÷³ö»ØÓ¦¡£
https://www.databreaches.net/major-malaysian-water-utilities-company-hit-by-hackers-ranhill-offline-hackers-claim-databases-and-backups-deleted/
2¡¢ÃÀ¹úÕþ¸®·þÎñ³Ð°üÉÌMaximusÁè¼Ý800ÍòÈ˵ÄÐÅϢй¶
¾Ý7ÔÂ26ÈÕ±¨µÀ£¬ÃÀ¹úÕþ¸®·þÎñ³Ð°üÉÌMaximus͸¶800ÖÁ1100ÍòÈ˵ÄÐÅϢй¶¡£MaximusÖ÷ÒªÈÏÕæÖÎÀíÃÀ¹úÕþ¸®×ÊÖúµÄÏîÄ¿£¬ÄêÊÕÈëԼΪ42.5ÒÚÃÀÔª£¬ÓªÒµÆÕ±éÃÀ¹ú¡¢¼ÓÄô󡢰ĴóÀûÑǺÍÓ¢¹ú¡£ÊӲ췢Ã÷£¬ºÚ¿ÍʹÓÃÁËMOVEit TransferÖеÄÎó²î¡£7ÔÂ25ÈÕ£¬Clop½«MaximusÌí¼Óµ½ÆäÍøÕ¾µÄ±»¹¥»÷Ä¿µÄÁбíÖС£MaximusÏÖÔÚÍýÏëÔÚ×èÖ¹2023Äê6ÔÂ30Èյļ¾¶ÈÖмͼԼ1500ÍòÃÀÔªµÄÓöȣ¬ÕâÊǸù«Ë¾¶Ô´Ë´ÎÊÂÎñÏà¹ØµÄÊÓ²ìºÍµ÷½âÔ˶¯ÓöÈ×ܶîµÄ¹ÀËã¡£
https://www.bleepingcomputer.com/news/security/8-million-people-hit-by-data-breach-at-us-govt-contractor-maximus/
3¡¢Ò½ÁÆ×°±¸ÌṩÉÌCardioCommÔâµ½¹¥»÷·þÎñÔÝʱÖÐÖ¹
ýÌå7ÔÂ26Èճƣ¬¼ÓÄôóÏûÐÄÔà¼à²âÊÖÒÕÌṩÉÌCardioComm SolutionsÔâµ½¹¥»÷£¬µ¼Ö·þÎñÔÝʱÖÐÖ¹¡£¸Ã¹«Ë¾ÌåÏÖ£¬ÔÚÆä·þÎñÆ÷±¬·¢Çå¾²ÊÂÎñºó£¬ÓªÒµÔËÓª½«Êܵ½ÊýÌìÉõÖÁ¸ü³¤Ê±¼äµÄÓ°Ïì¡£ÏÖÔÚ£¬CardioCommÍøÕ¾ÎÞ·¨»á¼û£¬²¢ÏÔʾ¡°ÎÒÃǵķþÎñÕýÔÚÂÄÀúÍ£»ú¡±¡£ÆäÐí¶à²úÆ·Ò²Ó°Ï죬ÆäÖаüÀ¨Ò»¿îÊÖ³ÖʽÐĵçͼ(ECG)¼à²âÒÇHeartCheck CardiBeat£¬Ëü¿Éͨ¹ýÀ¶ÑÀÅþÁ¬µ½Óû§µÄÖÇÄÜÊÖ»ú½«¼ì²âЧ¹ûת´ï¸øÒ½Éú¡£ÏÖÔÚÉв»ÇåÎúÖÐÖ¹¹æÄ£ÒÔ¼°ÊÂÎñÐÔ×Ó£¬µ«ÆäÕýÔÚÆð¾¢»Ö¸´Êý¾Ý²¢ÖØÐÞÆä·þÎñÆ÷ÇéÐΣ¬ÕâÅú×¢¿ÉÄÜÊÇÀÕË÷¹¥»÷µÈÆÆËðÐÔ¹¥»÷¡£
https://techcrunch.com/2023/07/26/cardiocomm-ecg-monitoring-cyberattack/
4¡¢Sophos·¢Ã÷Õë¶Ô±±ÃÀ¿Æ¼¼ºÍ·ÇÓªÀû×éÖ¯µÄNitrogenÔ˶¯
SophosÔÚ7ÔÂ26ÈÕÅû¶ÁËÖ÷ÒªÕë¶Ô±±ÃÀ¿Æ¼¼ºÍ·ÇÓªÀû×éÖ¯µÄNitrogen³õʼ»á¼û¶ñÒâÈí¼þÔ˶¯µÄϸ½Ú¡£¸ÃÔ˶¯Ê¹ÓÃGoogleºÍBingËÑË÷¹ã¸æÀ´ÍƹãαÔìµÄÈí¼þÍøÕ¾£¬Ö¼ÔÚ»ñµÃÆóҵϵͳµÄ»á¼ûȨÏÞ²¢°²ÅÅCobalt StrikeºÍºÍÀÕË÷Èí¼þµÈ¹¤¾ß¡£NitrogenÔ˶¯µÄÓÕ¶üÈí¼þ°üÀ¨AnyDesk¡¢WinSCP¡¢Cisco AnyConnectºÍTreeSize Free¡£ÏÖÔÚÉÐδȷ¶¨¹¥»÷ÕßµÄÄ¿µÄ£¬µ«Ñ¬È¾Á´ËµÃ÷¿ÉÄÜÓÃÓÚ°²ÅÅÀÕË÷Èí¼þ¡£Trend MicroÔø±¨µÀ¸Ã¹¥»÷Á´ÖÁÉÙÔÚÒ»¸ö¹¥»÷°¸ÀýÖÐ×°ÖÃÁËBlackCat¡£Google½²»°È˳ÆÒѾ¼ì²âµ½¶ñÒâÔ˶¯£¬²¢É¾³ýÁËÎ¥·´ÆäÕþ²ßµÄ¹ã¸æ¡£
https://news.sophos.com/en-us/2023/07/26/into-the-tank-with-nitrogen/
5¡¢Metabase QÅû¶Õë¶ÔÀ¶¡ÃÀÖ޵Ľ©Ê¬ÍøÂçFenixµÄ¹¥»÷
7ÔÂ26ÈÕ±¨µÀ³Æ£¬Metabase Q·¢Ã÷ÁËн©Ê¬ÍøÂçFenixµÄ¹¥»÷Ô˶¯£¬Ö÷ÒªÕë¶ÔÄ«Î÷¸çºÍÖÇÀû»á¼ûÕþ¸®·þÎñµÄÓû§¡£¸ÃÔ˶¯Ã°³äÁËÄ«Î÷¸çServicio de Administraci¨®n Tributaria(SAT)ºÍÖÇÀûServicio de Impuestos Internos(SII)µÄ¹Ù·½ÃÅ»§ÍøÕ¾£¬²¢½«Ä¿µÄÖض¨Ïòµ½ÕâЩÍøÕ¾¡£ÕâЩαÔìµÄÍøÕ¾ÌáÐÑÓû§ÏÂÔØËùνµÄÇå¾²¹¤¾ß£¬ÕâÏÖʵÉÏ×°ÖÃÁ˶ñÒâÈí¼þµÄ³õʼ½×¶Î£¬×îÖջᵼÖÂƾ֤µÈÃô¸ÐÐÅϢй¶¡£
https://www.metabaseq.com/fenix-botnet/
6¡¢NetenrichÐû²¼»ùÓÚAIµÄºÚ¿Í¹¤¾ßFraudGPTµÄÆÊÎö±¨¸æ
7ÔÂ25ÈÕ£¬NetenrichÐû²¼ÁËÓÖÒ»¸ö»ùÓÚAIµÄкڿ͹¤¾ßFraudGPTµÄÆÊÎö±¨¸æ¡£ÕâÊÇһСÎÒ˽¼Ò¹¤ÖÇÄÜ»úеÈË£¬ÓÃÓÚ½¨ÉèÓã²æʽ´¹ÂÚÓʼþ¡¢Æƽ⹤¾ßÒÔ¼°Ë¢¿¨µÈ¡£¸Ã¹¤¾ßÖÁÉÙ×Ô7ÔÂ22ÈÕÆð¾Í×îÏÈÔÚÖÖÖÖ°µÍøÊг¡ºÍTelegramƽ̨ÉϳöÊÛ£¬¶©ÔÄÓöÈΪÿÔÂ200ÃÀÔª£¬»òÒ»Äê1700ÃÀÔª¡£¿ª·¢Õß»¹ÌåÏÖ£¬¸Ã¹¤¾ß¾ßÓпª·¢¶ñÒâ´úÂë¡¢¿ª·¢ÎÞ·¨¼ì²âµÄ¶ñÒâÈí¼þºÍ²éÕÒÎó²îµÈ¹¦Ð§¡£ÓëFraudGPTÀàËƵÄWormGPTÓÚ7ÔÂ13ÈÕ±»ÍƳö¡£
https://netenrich.com/blog/fraudgpt-the-villain-avatar-of-chatgpt