T-MobileÎ¥¹æÐÐΪµ¼ÖÂGoogle Fi²¿·Ö¿Í»§Êý¾Ýй¶
Ðû²¼Ê±¼ä 2023-02-03
¾Ý2ÔÂ1ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬¹È¸èµÄµÄ¹Ù·½Òƶ¯ÐéÄâÍøÂçÔËÓªÉÌ(MVNO)Google Fi͸¶£¬£¬£¬£¬£¬£¬£¬Ö÷ÒªÍøÂçÌṩÉ̵ÄÎ¥¹æÐÐΪµ¼ÖÂÆä²¿·Ö¿Í»§µÄÊý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£ËäÈ»¹È¸èûÓÐÌáµ½ÔâÍøÂçÌṩÉÌÊÇË£¬£¬£¬£¬£¬£¬£¬µ«¾ÝÐÅËûÃÇÖ¸µÄÊÇT-Mobile¡£¡£¡£¡£¡£¡£¡£1ÔÂ19ÈÕ£¬£¬£¬£¬£¬£¬£¬T-Mobile͸¶ËüÔÚ2022Äê11Ô±¬·¢ÁËÊý¾Ýй¶£¬£¬£¬£¬£¬£¬£¬Éæ¼°Ô¼3700ÍòÓû§µÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£´Ë´Îй¶µÄÐÅÏ¢°üÀ¨ÕÊ»§×´Ì¬¡¢µç»°ºÅÂ롢ЧÀÍÍýÏëÏêϸÐÅÏ¢ºÍSMS¿¨ÐòÁкŵȣ¬£¬£¬£¬£¬£¬£¬ÕâЩÊý¾Ý¿É±»ÓÃÓÚÖ´ÐÐSIM¿¨½»Á÷¹¥»÷¡£¡£¡£¡£¡£¡£¡£
https://www.hackread.com/google-fi-data-breached-t-mobile-hack/
2¡¢F5ÐÞ¸´ÆäBIG-IPÖеÄÃûÌÃ×Ö·û´®Îó²îCVE-2023-22374
2ÔÂ1ÈÕ£¬£¬£¬£¬£¬£¬£¬F5ÐÞ¸´ÆäBIG-IPÖпɵ¼ÖÂDoSºÍí§Òâ´úÂëÖ´ÐеÄÎó²î£¨CVE-2023-22374£©¡£¡£¡£¡£¡£¡£¡£ÕâÊÇiControl SOAPÖеÄÃûÌÃ×Ö·û´®Îó²î£¬£¬£¬£¬£¬£¬£¬¿É±»¾ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷ÕßÓÃÀ´µ¼ÖÂiControl SOAP CGIÀú³ÌÍ߽⻣»£»£»£»òÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£ÔÚ×°±¸Ä£Ê½BIG-IPÖУ¬£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²î¿ÉÒÔ¿çÔ½Çå¾²½çÏß¡£¡£¡£¡£¡£¡£¡£¹©Ó¦ÉÌÖ¸³ö£¬£¬£¬£¬£¬£¬£¬ÒªÊ¹ÓÃÏÂÁîÖ´Ðй¥»÷£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß±ØÐèÍøÂçÓйØÍйÜÒ×±»¹¥»÷×é¼þµÄÄ¿µÄÇéÐεÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬Ö»ÓпØÖƲãÃæÊܵ½´ËÎó²îµÄÓ°Ï죬£¬£¬£¬£¬£¬£¬Êý¾Ý²ãÃæ²»»áÊܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/141728/security/f5-big-ip-bug.html
3¡¢HeadCrabÒÑѬȾ1200̨RedisЧÀÍÆ÷Ö¼ÔÚÍÚ¾òMonero
Aqua SecurityÔÚ2ÔÂ1ÈÕÅû¶ÁËÕë¶ÔRedisЧÀÍÆ÷µÄÐÂÐͶñÒâÈí¼þHeadCrab¡£¡£¡£¡£¡£¡£¡£×Ô2021Äê9ÔÂÒÔÀ´£¬£¬£¬£¬£¬£¬£¬HeadCrabÒѾѬȾÁËÖÁÉÙ1200̨ЧÀÍÆ÷£¬£¬£¬£¬£¬£¬£¬ÒÔ¹¹½¨Ò»¸öÍÚ¾òMonero¼ÓÃÜÇ®±ÒµÄ½©Ê¬ÍøÂç¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓÃÒ»ÖÖÎÞÊðÀíºÍ¹Å°åɱ¶¾½â¾ö¼Æ»®ÎÞ·¨¼ì²âµ½µÄ¶¨ÖƶñÒâÈí¼þ£¬£¬£¬£¬£¬£¬£¬À´ÆÆËð´ó×ÚµÄRedisЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Æù½ñΪֹ£¬£¬£¬£¬£¬£¬£¬ÔÚÂíÀ´Î÷ÑÇ¡¢Ó¡¶È¡¢µÂ¹ú¡¢Ó¢¹úºÍÃÀ¹ú¾ùÒѼͼµ½´ó×ÚµÄѬȾ£¬£¬£¬£¬£¬£¬£¬¹¥»÷µÄȪԴÉв»Ã÷È·¡£¡£¡£¡£¡£¡£¡£
https://blog.aquasec.com/headcrab-attacks-servers-worldwide-with-novel-state-of-art-redis-malware
4¡¢DDoSaaSƽ̨Passion±»ÓÃÓÚ¹¥»÷Î÷Å·µØÇøµÄÒ½ÁÆ»ú¹¹
ýÌå2ÔÂ1Èճƣ¬£¬£¬£¬£¬£¬£¬ÔÚ½üÆÚÕë¶ÔÃÀ¹úºÍÅ·ÖÞµÄÒ½ÁÆ»ú¹¹µÄ¹¥»÷ÖУ¬£¬£¬£¬£¬£¬£¬·¢Ã÷ÁËÒ»ÖÖÃûΪPassionµÄÐÂDDoS¼´Ð§ÀÍ(DDoSaaS)ƽ̨¡£¡£¡£¡£¡£¡£¡£PassionÓÚ1Ô³õÊ״α»ÍƳö£¬£¬£¬£¬£¬£¬£¬¶ÔÈÕ±¾ºÍÄϷǵÄ×éÖ¯ÍøÕ¾Ö´ÐÐÁ˶à´Î¹¥»÷¡£¡£¡£¡£¡£¡£¡£PassionÌṩʮÖÖ¹¥»÷ǰÑÔµÄÑ¡Ï£¬£¬£¬£¬£¬£¬ÔÊÐíÓû§Æ¾Ö¤ÐèÒª¶¨Öƹ¥»÷£¬£¬£¬£¬£¬£¬£¬ÉõÖÁ×éºÏǰÑÔÒÔÈÆ¹ýÄ¿µÄµÄ»º½â²½·¥¡£¡£¡£¡£¡£¡£¡£Radware͸¶£¬£¬£¬£¬£¬£¬£¬ÔÚ1ÔÂ27ÈյĹ¥»÷»î¶¯ÖУ¬£¬£¬£¬£¬£¬£¬Passion±»ÓÃÓÚÕë¶ÔÊÇÃÀ¹ú¡¢ÆÏÌÑÑÀ¡¢Î÷°àÑÀ¡¢µÂ¹ú¡¢²¨À¼¡¢·ÒÀ¼¡¢Å²Íþ¡¢ºÉÀ¼ºÍÓ¢¹úµÄÒ½ÁÆ»ú¹¹¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/new-ddos-as-a-service-platform-used-in-recent-attacks-on-hospitals/
5¡¢Ñо¿Ö°Ô±·¢Ã÷Ice BreakerÕë¶ÔÓÎÏ·¹«Ë¾µÄ¹¥»÷»î¶¯
¾ÝýÌå2ÔÂ1ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬£¬Security Joes·¢Ã÷ÁËIce BreakerÕë¶ÔÓÎÏ·¹«Ë¾µÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£¸Ã»î¶¯ÖÁÉÙ´Ó2022Äê9ÔÂ×îÏÈ£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õßð³ä¿Í»§£¬£¬£¬£¬£¬£¬£¬ÒÔÕÊ»§×¢²áÎÊÌâΪÄó´ÊÓëÓÎÏ·¹«Ë¾µÄÖ§³ÖÊðÀí¾ÙÐжԻ°£¬£¬£¬£¬£¬£¬£¬È»ºó±Þ²ßÆä·¿ªDropboxÉÏÍÐ¹ÜµÄÆÁÄ»½ØÍ¼¡£¡£¡£¡£¡£¡£¡£µã»÷½ØÍ¼Á´½Ó»áµ¼Ö¼ìË÷LNK payload£¬£¬£¬£¬£¬£¬£¬»òÕß×÷Ϊ±¸·ÝÑ¡ÏîµÄVBScriptÎļþ£¬£¬£¬£¬£¬£¬£¬Ç°Õß±»ÉèÖÃΪÏÂÔØ²¢ÔËÐаüÀ¨Node.jsÖ²Èë³ÌÐòµÄMSI°ü£¬£¬£¬£¬£¬£¬£¬VBS»áÏÂÔØHoudini RAT¡£¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2023/02/experts-warn-of-ice-breaker.html
6¡¢ResecurityÐû²¼¹ØÓÚÐÂÀÕË÷Èí¼þNevadaµÄÆÊÎö±¨¸æ
1ÔÂ30ÈÕ£¬£¬£¬£¬£¬£¬£¬ResecurityÐû²¼Á˹ØÓÚÐÂÀÕË÷Èí¼þNevadaµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£NevadaÓÚ2022Äê12ÔÂ10ÈÕ×îÏÈÔÚRAMPÂÛ̳ÉÏÍÆ¹ã£¬£¬£¬£¬£¬£¬£¬¾ßÓлùÓÚRustµÄlocker¡¢ÊµÊ±Ì¸ÅÐ̸ÌìÃÅ»§ÒÔ¼°ÔÚTorÍøÂçÖÐΪ·ÖÖ§×éÖ¯ºÍÄ¿µÄÌṩµÄ×ÔÁ¦Óò¡£¡£¡£¡£¡£¡£¡£Õë¶ÔWindowsµÄNevada±äÌåͨ¹ý¿ØÖÆÌ¨Ö´ÐУ¬£¬£¬£¬£¬£¬£¬ÆälockerʹÓÃSalsa20Ëã·¨¶Ô´óÓÚ512KBµÄÎļþ¾ÙÐмäЪ¼ÓÃÜ¡£¡£¡£¡£¡£¡£¡£Linux/VMware ESXi°æ±¾Ê¹ÓÃÓëWindowsÏàͬµÄ¼ÓÃÜËã·¨£¨Salsa20£©£¬£¬£¬£¬£¬£¬£¬µ«¿ÉÄܱ£´æBug£¬£¬£¬£¬£¬£¬£¬Ëü»áÌø¹ýËùÓоÞϸÔÚ512KBµ½1.25MBÖ®¼äµÄÎļþ¡£¡£¡£¡£¡£¡£¡£
https://resecurity.com/blog/article/nevada-ransomware-waiting-for-the-next-dark-web-jackpot


¾©¹«Íø°²±¸11010802024551ºÅ