PayPalÒòй¶3.5Íò¿Í»§µÄСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢±»ÆðËß

Ðû²¼Ê±¼ä 2023-03-07

1¡¢PayPalÒòй¶3.5Íò¿Í»§µÄСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢±»ÆðËß


ýÌå3ÔÂ4Èճƣ¬£¬£¬ £¬£¬£¬PayPalÒòй¶½ü35000¿Í»§µÄСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢ÃæÁÙÕûÌåËßËÏ¡£¡£¡£¡£¡£¡£Ô­¸æAshley PillardºÍDestiny RuckerÌáÆðËßËÏ£¬£¬£¬ £¬£¬£¬³Æ¸Ã¹«Ë¾µÄÊèºöµ¼ÖÂÊý¾Ýй¶ÊÂÎñ¡£¡£¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬ £¬£¬£¬PayPalÔÚ2023Äê1ÔÂ19ÈÕ×îÏÈÁªÏµÓû§²¢·¢ËÍÊý¾Ýй¶֪ͨ£¬£¬£¬ £¬£¬£¬Ú¹ÊÍ˵ËûÃǵÄÕË»§ÔÚ2022Äê12ÔÂ6ÈÕÖÁ8ÈÕÔâµ½¹¥»÷¡£¡£¡£¡£¡£¡£Æ¾Ö¤ËßËÏ£¬£¬£¬ £¬£¬£¬PayPalδÄÜʵÑé»ù±¾µÄÇå¾²²½·¥»ò×ñÊØÁª°îÉÌҵίԱ»áÖÆ¶©µÄÐÐÒµÊý¾Ý±£»£»£»£»¤±ê×¼ºÍÖ¸ÄÏ£¬£¬£¬ £¬£¬£¬µ¼ÖÂÐÕÃûºÍÉç»áÇå¾²ºÅÂëµÈÐÅϢй¶¡£¡£¡£¡£¡£¡£¸ÃËßËÏÒÑÓÚÉÏÖÜËÄÔÚÃÀ¹ú¼ÓÀû¸£ÄáÑÇÖݱ±ÇøµØÒªÁìÔºÌáÆð¡£¡£¡£¡£¡£¡£


https://www.hackread.com/paypal-sued-over-data-breach/


2¡¢Ñо¿Ö°Ô±·¢Ã÷Õë¶ÔÆóÒµ¼¶Â·ÓÉÆ÷µÄжñÒâÈí¼þHiatusRAT


Lumen Black Lotus LabsÔÚ3ÔÂ6ÈÕÅû¶ÁËÕë¶ÔÆóÒµ¼¶Â·ÓÉÆ÷µÄ¹¥»÷»î¶¯£¬£¬£¬ £¬£¬£¬Éæ¼°À­¶¡ÃÀÖÞ¡¢Å·Ö޺ͱ±ÃÀµÈµØÇø¡£¡£¡£¡£¡£¡£¸Ã»î¶¯±»³ÆÎªHiatus£¬£¬£¬ £¬£¬£¬Ëü»áѬȾ¼¶Â·ÓÉÆ÷²¢×°ÖÃÁ½¸ö¶ñÒâ¶þ½øÖÆÎļþ£¬£¬£¬ £¬£¬£¬Ô¶³Ì»á¼ûľÂíHiatusRATÒÔ¼°ÔÚÄ¿µÄ×°±¸Éϲ¶»ñÊý¾Ý°üµÄtcpdump±äÌå¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÖ÷ÒªÕë¶ÔÔËÐÐi386¼Ü¹¹µÄEoL DrayTek VigorÐͺÅ2960ºÍ3900£¬£¬£¬ £¬£¬£¬×èÖ¹2023Äê2ÔÂÖÐÑ®£¬£¬£¬ £¬£¬£¬Ô¼100̨·ÓÉÆ÷Òѱ»ÈëÇÖ¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄÐͺÅÊǸߴø¿í·ÓÉÆ÷£¬£¬£¬ £¬£¬£¬¿ÉÒÔÖ§³ÖÊý°ÙÃûÔ¶³ÌÔ±¹¤µÄVPNÅþÁ¬¡£¡£¡£¡£¡£¡£Òò´ËÍÆ²â¹¥»÷ÕßѬȾĿµÄÒÔÍøÂçÊý¾Ý£¬£¬£¬ £¬£¬£¬²¢½¨ÉèÒþ²ØµÄÊðÀíÍøÂç¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2023/03/new-hiatusrat-malware-targets-business.html


3¡¢»ªÊ¢¶Ù¹«½»¹«Ë¾Pierce Transit±»LockBitÀÕË÷200ÍòÃÀÔª


¾Ý3ÔÂ3ÈÕ±¨µÀ£¬£¬£¬ £¬£¬£¬»ªÊ¢¶ÙÖݵÄÒ»¼Ò¹«¹²½»Í¨ÔËÓªÉÌPierce TransitÔâµ½LockBitµÄ¹¥»÷£¬£¬£¬ £¬£¬£¬±»ÀÕË÷200ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¹¥»÷×îÏÈÓÚ2023Äê2ÔÂ14ÈÕ×îÏÈ£¬£¬£¬ £¬£¬£¬¸Ã¹«Ë¾²»µÃ²»ÊµÑéÔÝʱ±äͨ²½·¥£¬£¬£¬ £¬£¬£¬ÒÔά³ÖÌìÌìµÄ¹«½»Ð§ÀÍ¡£¡£¡£¡£¡£¡£2ÔÂ28ÈÕ£¬£¬£¬ £¬£¬£¬LockBitÐû²¼ÁËPierce Transit¹¥»÷ÊÂÎñµÄÏêÇ飬£¬£¬ £¬£¬£¬Éù³ÆÇÔÈ¡ÁËÌõÔ¼¡¢¿Í»§ÐÅÏ¢¡¢±£ÃÜЭæÅºÍÐżþµÈÐÅÏ¢£¬£¬£¬ £¬£¬£¬ÕâЩÊý¾ÝÏÖÔÚ¶¼ÔÚ³öÊÛ¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬ £¬£¬£¬Pierce TransitµÄ´ó²¿·ÖÔËÓªÒÑÍêÈ«»Ö¸´£¬£¬£¬ £¬£¬£¬ÆäÌåÏÖÍýÏëʵÑéеÄÍøÂçÇå¾²¼à¿Ø¹¤¾ßºÍÇå¾²²½·¥¡£¡£¡£¡£¡£¡£


https://www.malwarebytes.com/blog/news/2023/03/public-transportation-service-pierce-transit-struck-by-lockbit-ransomware


4¡¢GunAuction.comÍøÕ¾±»ºÚ56.5Íò¸öÕË»§µÄÐÅϢй¶


¾ÝýÌå3ÔÂ2ÈÕ±¨µÀ£¬£¬£¬ £¬£¬£¬ºÚ¿ÍÈëÇÖÁËGunAuction.com²¢ÇÔÈ¡ÁËÓû§µÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£2022Äêµ×£¬£¬£¬ £¬£¬£¬Ñо¿Ö°Ô±ÔÚÊôÓںڿ͵ÄÒ»¸öÉèÖùýʧµÄЧÀÍÆ÷ÉÏ·¢Ã÷ÁËÕâЩ±»µÁÊý¾Ý¡£¡£¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢Éæ¼°ÐÕÃû¡¢×¡Ö·¡¢Ã÷ÎÄÃÜÂëºÍµç»°ºÅÂëµÈ¡£¡£¡£¡£¡£¡£TechCrunch³ÆÆäÄܹ»ÑéÖ¤Ñù±¾Êý¾ÝµÄÕæÊµÐÔ£¬£¬£¬ £¬£¬£¬µ«Éв»ÇåÎúÕâЩÊý¾ÝÓжàС£¡£¡£¡£¡£¡£HaveIBeenPwned±¨¸æÌåÏÖ£¬£¬£¬ £¬£¬£¬¹¥»÷±¬·¢ÔÚÈ¥Äê12Ô£¬£¬£¬ £¬£¬£¬Ó°ÏìÁË56.5Íò¸öÕË»§¡£¡£¡£¡£¡£¡£


https://securityaffairs.com/142920/data-breach/gunauction-site-data-breach.html


5¡¢Ñо¿Ö°Ô±·¢Ã÷Booking.comÉϿɵ¼ÖÂÕÊ»§Ð®ÖƵÄÎó²î


Salt SecurityÓÚ3ÔÂ2ÈÕ³ÆÆä·¢Ã÷ÁËÔÚÏßÂÃÐÐÉçBooking.comÉϵÄÇå¾²Îó²î¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷µÄÎó²î¼¯ÖÐBooking.comʵÑéOAuthµÄ·½·¨ÉÏ£¬£¬£¬ £¬£¬£¬Éæ¼°OAuthÓëFacebookµÄ¼¯³É¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÓÕʹĿµÄµã»÷ÌØÖÆÁ´½Ó£¬£¬£¬ £¬£¬£¬Í¨¹ýÀÄÓÃOAuthµÇ¼»úÖÆÀ´²¶»ñÒѵÇÈÎÃü»§µÄÉí·ÝÑéÖ¤´úÂë¡£¡£¡£¡£¡£¡£È»ºó¹¥»÷Õß»á¼ûËûÃÇ×Ô¼ºµÄÕÊ»§£¬£¬£¬ £¬£¬£¬ÔÚÓ¦ÓÃÏòÔ¤¶©Ð§ÀÍÆ÷·¢Ë͵ÄÉí·ÝÑéÖ¤ÇëÇóÖУ¬£¬£¬ £¬£¬£¬½«×Ô¼ºµÄ´úÂëÌæ»»ÎªÄ¿µÄµÄ´úÂë¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓÃÕâЩÎó²î¿ÉÍêÈ«¿ØÖÆÄ¿µÄÕÊ»§£¬£¬£¬ £¬£¬£¬À´ÇÔȡСÎÒ˽¼ÒÐÅÏ¢²¢Ö´ÐÐ×÷·Ï»òÔ¤¶¨µÈ²Ù×÷¡£¡£¡£¡£¡£¡£¸ÃÎÊÌ⻹ӰÏìÁËBooking.comµÄæ¢ÃÃÍøÕ¾Kayak.com¡£¡£¡£¡£¡£¡£


https://salt.security/blog/traveling-with-oauth-account-takeover-on-booking-com


6¡¢LookoutÐû²¼2022ÄêÒÆ¶¯ÍøÂç´¹ÂÚ¹¥»÷Ì¬ÊÆµÄÆÊÎö±¨¸æ


3ÔÂ1ÈÕ£¬£¬£¬ £¬£¬£¬LookoutÐû²¼ÁË2022ÄêÈ«ÇòÒÆ¶¯ÍøÂç´¹ÂÚÌ¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£±¨¸æ³Æ£¬£¬£¬ £¬£¬£¬2022ÄêÊÇÓÐÊ·ÒÔÀ´Òƶ¯´¹ÂÚ¹¥»÷×î¶àµÄÒ»Ä꣬£¬£¬ £¬£¬£¬Ã¿¸ö¼¾¶È¶¼ÓÐÁè¼Ý30%µÄСÎÒ˽¼ÒºÍÆóÒµÓû§Ôâµ½¹¥»÷¡£¡£¡£¡£¡£¡£Êܵ½¸ß¶Èî¿ÏµµÄÐÐÒµ£¬£¬£¬ £¬£¬£¬°üÀ¨°ü¹Ü¡¢ÒøÐС¢Ö´·¨¡¢Ò½ÁƱ£½¡ºÍ½ðÈÚЧÀÍ£¬£¬£¬ £¬£¬£¬×îÒ×Ôâµ½¹¥»÷¡£¡£¡£¡£¡£¡£·Çµç×ÓÓʼþµÄ´¹ÂÚ¹¥»÷Ò²ÔÚ¼¤Ôö£¬£¬£¬ £¬£¬£¬ÓïÒô´¹ÂÚ¡¢¶ÌÐÅ´¹ÂںͶþάÂë´¹ÂÚÔÚ2022ÄêQ2¶ÈÔöÌíÁËÆß±¶¡£¡£¡£¡£¡£¡£¹ØÓÚÔâµ½ÒÆ¶¯´¹ÂÚ¹¥»÷µÄÆóÒµ¶øÑÔ£¬£¬£¬ £¬£¬£¬Ëðʧ¿ÉÄÜÊÇÖØ´óµÄ¡£¡£¡£¡£¡£¡£LookoutÅÌËãµÃ³ö£¬£¬£¬ £¬£¬£¬´ËÀ๥»÷¶ÔÒ»¸öÓµÓÐ5000ÃûÔ±¹¤µÄ×éÖ¯µÄDZÔÚÄê¶È²ÆÎñÓ°ÏìÊǽü400ÍòÃÀÔª¡£¡£¡£¡£¡£¡£


https://www.lookout.com/form/the-global-state-of-mobile-phishing-report