д¹Âڻð³äMicrosoft TeamsÕë¶ÔOffice 365Óû§£»£»£»£»Åµ»ùÑÇÍþвÇ鱨ʵÑéÊÒÐû²¼2020ÄêÍþвÇ鱨±¨¸æ

Ðû²¼Ê±¼ä 2020-10-26

1.д¹Âڻð³äMicrosoft TeamsÕë¶ÔOffice 365Óû§


1.png


Abnormal Security·¢Ã÷д¹Âڻð³äMicrosoft TeamsÕë¶ÔOffice 365Óû§¡£¡£¡£¡£¡£¡£ ¡£ÕâЩ´¹ÂÚÓʼþÊÇÒÔTeamsÖÐÓÐлΪÖ÷Ìâ·¢Ë͵Ä£¬ £¬£¬£¬£¬£¬£¬¿´ÆðÀ´ÏñÊÇMicrosoft TeamsµÄ×Ô¶¯Í¨Öª£¬ £¬£¬£¬£¬£¬£¬ÓÃÀ´¼û¸æÊܺ¦ÕßÓдí¹ýµÄ̸Ìì¡£¡£¡£¡£¡£¡£ ¡£ÓʼþÓÕʹÊܺ¦Õßµã»÷Team»Ø¸´Á´½Ó£¬ £¬£¬£¬£¬£¬£¬ÒÔÖØ¶¨Ïòµ½´¹ÂÚÍøÕ¾£¬ £¬£¬£¬£¬£¬£¬À´ÇÔÈ¡Office 365Óû§µÄƾ֤¡£¡£¡£¡£¡£¡£ ¡£Ñо¿Ö°Ô±ÊӲ쵽£¬ £¬£¬£¬£¬£¬£¬¹¥»÷ÕßÒѾ­Ê¹ÓøÃÔ˶¯¹¥»÷ÁË15000ÖÁ50000¸öOffice 365Óû§¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/109938/cyber-crime/microsoft-teams-phishing-attacks.html


2.EmotetÆôÓÃÐÂÄ£°å£¬ £¬£¬£¬£¬£¬£¬Ê¹ÓðüÀ¨¶ñÒâºêµÄWordÎĵµÈö²¥


2.png


Emotet±¾ÖÜÆôÓÃÁËÒ»¸öÐÂÄ£°å£¬ £¬£¬£¬£¬£¬£¬¸ÃÄ£°åαװ³ÉMicrosoft OfficeÐÂÎÅ£¬ £¬£¬£¬£¬£¬£¬ÒªÇóÓû§¸üÐÂMicrosoft WordÒÔÌí¼Óй¦Ð§¡£¡£¡£¡£¡£¡£ ¡£EmotetÊÇÒ»ÖÖ¶ñÒâÈí¼þ£¬ £¬£¬£¬£¬£¬£¬»áͨ¹ý´øÓжñÒâºêµÄWordÎĵµµÄµç×ÓÓʼþÈö²¥¡£¡£¡£¡£¡£¡£ ¡£ÎªÁËÓÕÆ­Óû§ÆôÓú꣬ £¬£¬£¬£¬£¬£¬Emotetαװ³ÉMicrosoft OfficeÐÂÎÅ£¬ £¬£¬£¬£¬£¬£¬ÒªÇóÓû§ÆôÓñ༭ºÍÆôÓÃÄÚÈÝ£¬ £¬£¬£¬£¬£¬£¬ÒÔÖ´ÐжñÒâºê¡£¡£¡£¡£¡£¡£ ¡£ÕâЩ¶ñÒâºê½«ÏÂÔØEmotet¶ñÒâÈí¼þ£¬ £¬£¬£¬£¬£¬£¬²¢½«Æä×°Öõ½Êܺ¦Õߵģ¥LocalAppData£¥Îļþ¼ÐÖС£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/emotet-malware-now-wants-you-to-upgrade-microsoft-word/


3.·ÒÀ¼VastaamoÐÄÖÎÁÆÖÐÐÄÔâ¹¥»÷£¬ £¬£¬£¬£¬£¬£¬¿Í»§ÐÅÏ¢¿ÉÄܱ»µÁ


3.png


·ÒÀ¼VastaamoÐÄÖÎÁÆÖÐÐÄÔâ¹¥»÷£¬ £¬£¬£¬£¬£¬£¬¿Í»§ÐÅÏ¢¿ÉÄܱ»µÁ¡£¡£¡£¡£¡£¡£ ¡£VastaamoÊÇ·ÒÀ¼¹«¹²ÎÀÉúϵͳµÄ·Ö°üÉÌ£¬ £¬£¬£¬£¬£¬£¬ÔÚ±±Å·¹ú¼ÒÓÐ550Íò·ÖÖ§»ú¹¹¡£¡£¡£¡£¡£¡£ ¡£·ÒÀ¼ÄÚÕþ²¿³¤Maria Ohisalo³Æ£¬ £¬£¬£¬£¬£¬£¬´Ë´ÎÊÂÎñÊÇÁîÈËÕð¾ªÇÒºÜÊÇÑÏÖØµÄÊÂÎñ£¬ £¬£¬£¬£¬£¬£¬Õþ¸®ÕýÔÚΪ´Ë´ÎÊÂÎñµÄÊܺ¦ÕßÌṩ¿ìËÙµÄΣ»£»£»£»úÔ®Öú¡£¡£¡£¡£¡£¡£ ¡£VastaamoÌåÏÖµÚÒ»´Î¹¥»÷±¬·¢ÔÚ2018Äê11Ô£¬ £¬£¬£¬£¬£¬£¬ÆäÊý¾ÝÔÚ11ÔÂβÖÁ´ÎÄê3ÔÂÖ®¼ä±»ÇÔÈ¡¡£¡£¡£¡£¡£¡£ ¡£¹ú¼ÒÊÓ²ì¾ÖÌåÏÖ£¬ £¬£¬£¬£¬£¬£¬ÉÏÍòÃûVastaamo¿Í»§µÄСÎÒ˽¼ÒÊý¾Ý»òÒѱ»µÁ¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/finland-shocked-therapy-center-hacking-client-blackmail


4.TrustwaveÐû²¼ÊÖÒÕÇ÷ÊÆÓ°ÏìÆóÒµ·À»¤Õ½ÂÔµÄÆÊÎö±¨¸æ


4.png


TrustwaveÐû²¼ÁËÒ»·Ý±¨¸æ£¬ £¬£¬£¬£¬£¬£¬ÐÎòÁËÊÖÒÕÇ÷ÊÆ¡¢¹¥»÷Σº¦ºÍ¹æÔòÔõÑùÓ°Ïì×éÖ¯Êý¾ÝµÄ´æ´¢ºÍ±£»£»£»£»¤·½·¨¡£¡£¡£¡£¡£¡£ ¡£ÊӲ췢Ã÷£¬ £¬£¬£¬£¬£¬£¬Ëæ×ÅÊÂÇé¸ºÔØÏòÍâǨáã¡¢¶ÔÔÆÐ§À͵Ĺ¥»÷ÔöÌíÒÔ¼°ÀÕË÷Èí¼þµÄÉú³¤£¬ £¬£¬£¬£¬£¬£¬ÆóÒµÔÚ±£»£»£»£»¤Êý¾ÝÇå¾²·½ÃæÃæÁÙÖØ´óѹÁ¦¡£¡£¡£¡£¡£¡£ ¡£96%µÄÊÜ·ÃÕßÌåÏÖ£¬ £¬£¬£¬£¬£¬£¬ËûÃÇÍýÏëÔÚδÀ´Á½ÄêÄÚ½«Ãô¸ÐÊý¾Ý×ªÒÆµ½ÔÆÉÏ£¬ £¬£¬£¬£¬£¬£¬ÆäÖÐ52%µÄÊÜ·ÃÕßÍýÏ뽫¸ßÃô¸ÐÊý¾Ý°üÀ¨ÔÚÄÚ¡£¡£¡£¡£¡£¡£ ¡£µ±±»Îʼ°ÔÚÊý×ÖתÐÍÍýÏëÖÐÈ·±£Êý¾ÝÇå¾²µÄÖ÷ÒªÐÔʱ£¬ £¬£¬£¬£¬£¬£¬Æ½¾ùµÃ·ÖΪ4.6·Ö(Âú·ÖΪ5·Ö)¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/10/22/organizations-data-protection-strategy/


5.ŵ»ùÑÇÍþвÇ鱨ʵÑéÊÒÐû²¼2020ÄêÍþвÇ鱨±¨¸æ


5.png


ŵ»ùÑÇÍþвÇ鱨ʵÑéÊÒÐû²¼2020ÄêÍþвÇ鱨±¨¸æ£¬ £¬£¬£¬£¬£¬£¬³ÆIoTѬȾÊÂÎñ¼±¾çÔöÌí¡£¡£¡£¡£¡£¡£ ¡£±¨¸æÏÔʾ£¬ £¬£¬£¬£¬£¬£¬ÔÚÒÆ¶¯ºÍWi-FiÍøÂçÉϵÄËùÓÐѬȾÖУ¬ £¬£¬£¬£¬£¬£¬IoT×°±¸ËùÕ¼±ÈÀýΪ32.72%£¬ £¬£¬£¬£¬£¬£¬¸ßÓÚ2019ÄêµÄ16.17%£¬ £¬£¬£¬£¬£¬£¬ÕâÒ»Ç÷ÊÆÓëÁªÍø×°±¸¼ÌÐøÔÚ¼ÒÍ¥ºÍÆóÒµÇéÐÎÖÐÆÕ¼°ÏàÎǺÏ¡£¡£¡£¡£¡£¡£ ¡£±ðµÄ£¬ £¬£¬£¬£¬£¬£¬PCsΪѬȾÖ÷ҪĿµÄ£¬ £¬£¬£¬£¬£¬£¬Windows/pcÔÚËùÓÐѬȾÖÐÕ¼38.92%£¬ £¬£¬£¬£¬£¬£¬±È2019ÄêµÄ35.82%ÂÔÓÐÉÏÉý¡£¡£¡£¡£¡£¡£ ¡£Ä¾ÂíµÄ±ÈÀý´Ó2019ÄêµÄ34%ÉÏÉýµ½74%£¬ £¬£¬£¬£¬£¬£¬¶øÈ䳿ºÍ²¡¶¾µÄÏà±ÈÕÕÀý¶¼ÓÐËùϽµ¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://onestore.nokia.com/asset/210088


6.ÃÀ¹úBoyne ResortsѬȾWastedLocker£¬ £¬£¬£¬£¬£¬£¬Ô¤¶©ÏµÍ³ÊÜÓ°Ïì


6.png


Boyne ResortsÔâµ½WastedLockerÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬£¬£¬£¬Ó°ÏìÁËÕû¸ö¹«Ë¾µÄÔ¤¶©ÏµÍ³¡£¡£¡£¡£¡£¡£ ¡£Boyne ResortsÊÇ×ܲ¿Î»ÓÚÃÀ¹úµÄ»¬Ñ©ºÍ¸ß¶û·ò¶È¼Ù´å£¬ £¬£¬£¬£¬£¬£¬ÔÚÃÀ¹úºÍ¼ÓÄôóı»®11¼ÒÂùÝ£¬ £¬£¬£¬£¬£¬£¬²¢ÓµÓÐ11000ÃûÔ±¹¤¡£¡£¡£¡£¡£¡£ ¡£×÷Ϊ´Ë¹¥»÷µÄÒ»²¿·Ö£¬ £¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾±»¼ÓÃܵÄÎļþÒѱ»ÖØÃüÃû£¬ £¬£¬£¬£¬£¬£¬²¢Ìí¼ÓÁË.easy2lock À©Õ¹Ãû¡£¡£¡£¡£¡£¡£ ¡£ÏÖÔÚ£¬ £¬£¬£¬£¬£¬£¬Õû¸ö¹«Ë¾µÄÔ¤¶©ÏµÍ³¶¼Êܵ½¹¥»÷µÄÓ°Ï죬 £¬£¬£¬£¬£¬£¬¿Í»§ÎÞ·¨Í¨¹ý¸÷ÂùݵÄÔÚÏßϵͳԤ¶¨¡£¡£¡£¡£¡£¡£ ¡£Boyne ResortsûÓлظ´Óйش˴ι¥»÷µÄ¸ü¶àϸ½Ú£¬ £¬£¬£¬£¬£¬£¬µ«ÆäÔ¤¶©ÏµÍ³»òÐí½«Ôٹرռ¸Ìì¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/wastedlocker-ransomware-hits-boyne-resorts-ski-resort-operator/