Lotus²Á³ýÈí¼þÆØ¹â£ºÔøÌ±»¾Î¯ÄÚÈðÀ­ÄÜԴϵͳ

Ðû²¼Ê±¼ä 2026-04-22

1. Lotus²Á³ýÈí¼þÆØ¹â£ºÔøÌ±»¾Î¯ÄÚÈðÀ­ÄÜԴϵͳ


4ÔÂ21ÈÕ£¬£¬£¬È¥Äê12ÔÂÖÐÑ®£¬£¬£¬Ò»ÖÖ´Ëǰδ±»¼Í¼¡¢ÃûΪLotusµÄÊý¾Ý²Á³ý¶ñÒâÈí¼þ±»ÓÃÓÚÕë¶ÔίÄÚÈðÀ­ÄÜÔ´ºÍ¹«ÓÃÊÂÒµ×éÖ¯µÄ¶¨Ïò¹¥»÷¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÑù±¾´ÓίÄÚÈðÀ­µÄһ̨»úеÉÏ´«ÖÁ¹ûÕæÆ½Ì¨ºó£¬£¬£¬±»¿¨°Í˹»ùÑо¿Ö°Ô±²¶»ñ²¢ÆÊÎö¡£¡£¡£¡£Lotus²Á³ýÆ÷µÄ¹¥»÷Àú³Ì·ÖΪÁ½¸ö½×¶Î¡£¡£¡£¡£ÔÚ̱»¾½×¶Î֮ǰ£¬£¬£¬¹¥»÷ÕßÊ×ÏÈÖ´ÐÐÁ½¸öÅú´¦Öóͷ£¾ç±¾Îª×îÖÕÔØºÉÆÌ·¡£¡£¡£¡£µÚÒ»½×¶Î¾ç±¾£¨OhSyncNow.bat£©»á½ûÓÃWindowsµÄ¡°UI0Detect¡±Ð§ÀÍ£¬£¬£¬²¢Ö´ÐÐXMLÎļþ¼ì²éÒÔЭµ÷¿çÓòϵͳµÄÖ´ÐС£¡£¡£¡£µ±Ìض¨Ìõ¼þÖª×ãʱ£¬£¬£¬µÚ¶þ½×¶Î¾ç±¾£¨notesreg.bat£©±»´¥·¢£ºËü»áö¾ÙÓû§¡¢Í¨¹ý¸ü¸ÄÃÜÂë½ûÓÃÕË»§¡¢×¢Ïú»î¶¯»á»°¡¢½ûÓÃËùÓÐÍøÂç½Ó¿Ú£¬£¬£¬²¢Í£Óûº´æµÇ¼ÐÅÏ¢¡£¡£¡£¡£Ëæºó£¬£¬£¬¶ñÒâ´úÂëö¾ÙÇý¶¯Æ÷£¬£¬£¬Ê¹Óá°diskpart clean all¡±ÏÂÁ´ÅÅÌËùÓи²Ð´ÎªÁ㣬£¬£¬²¢Í¨¹ý¡°robocopy¡±ÏÂÁîÁýÕÖĿ¼ÄÚÈÝ¡£¡£¡£¡£Ëü»¹»áÅÌËã¿ÉÓÿռ䣬£¬£¬Óá°fsutil¡±½¨ÉèÒ»¸öÌîÂú´ÅÅ̵ÄÎļþ£¬£¬£¬Ê¹²Á³ýÊý¾Ý¸üÄѻָ´¡£¡£¡£¡£ÔÚ×¼±¸ºÃÊý¾ÝÏú»ÙÇéÐβ¢Ö´Ðв¿·Ö²Á³ý²Ù×÷ºó£¬£¬£¬Åú´¦Öóͷ£¾ç±¾½âÃܲ¢Ö´ÐÐLotus²Á³ýÆ÷×÷Ϊ×îÖÕÓÐÓÃÔØºÉ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/new-lotus-data-wiper-used-against-venezuelan-energy-utility-firms/


2. NGate±äÖÖ¹¥»÷°ÍÎ÷£º½èHandyPayÇÔÈ¡NFCÖ§¸¶Êý¾Ý


4ÔÂ21ÈÕ£¬£¬£¬ÍøÂçÇå¾²Ñо¿Ö°Ô±·¢Ã÷ÁËÒ»ÖÖÃûΪNGateµÄAndroid¶ñÒâÈí¼þ¼Ò×åµÄбäÖÖ¡£¡£¡£¡£Óë֮ǰÀÄÓÿªÔ´¹¤¾ßNFCGateµÄ×ö·¨²î±ð£¬£¬£¬Ð°汾ͨ¹ýľÂí»¯Ò»¿îÃûΪHandyPayµÄÕýµ±Ó¦ÓóÌÐòÀ´ÊµÏÖNFCÖм̹¥»÷¡£¡£¡£¡£NGate£¨ÓÖÃûNFSkate£©×îÔçÓÚ2024Äê8Ô±»¹ûÕæ¼Í¼£¬£¬£¬Æä½¹µãÄÜÁ¦ÊÇÖ´ÐÐÖм̹¥»÷ÒÔÇÔÈ¡·Ç½Ó´¥Ê½Ö§¸¶Êý¾Ý¡£¡£¡£¡£×îаæNGateÖ÷ÒªÕë¶Ô°ÍÎ÷Óû§£¬£¬£¬ÕâÊÇ´ËÀ๥»÷Ê×´ÎרÃÅÃé×¼Õâ¸öÄÏÃÀ¹ú¼Ò¡£¡£¡£¡£±»Ö²ÈëľÂíµÄHandyPayÓ¦ÓÃͨ¹ýÁ½ÖÖÇþµÀÈö²¥£ºÒ»ÊÇαװ³ÉÀïÔ¼ÈÈÄÚ¬ÖÝ²ÊÆ±»ú¹¹ÔËÓªµÄ²ÊÆ±ÍøÕ¾£¬£¬£¬¶þÊÇͨ¹ýÒ»¿îËùνµÄÒøÐп¨±£»£»£»£»£»£»¤Ó¦ÓõÄGoogle PlayÒ³Ãæ¡£¡£¡£¡£Ðéα²ÊÆ±ÍøÕ¾ÓÕÆ­Óû§µã»÷°´Å¥·¢ËÍWhatsAppÐÂÎÅÒÔÁìÈ¡½±½ð£¬£¬£¬ËæºóÖ¸µ¼Óû§ÏÂÔØ±»Ö²Èë¶ñÒâ´úÂëµÄHandyPayÓ¦Óᣡ£¡£¡£¸ÃÓ¦ÓÃ×°Öúó»áÒªÇóÓû§½«ÆäÉèÖÃΪĬÈÏÖ§¸¶Ó¦Ó㬣¬£¬½Ó×ÅÊܺ¦Õ߻ᱻҪÇóÊäÈëÖ§¸¶¿¨PINÂë²¢½«¿¨Æ¬¿¿½üÖ§³ÖNFC¹¦Ð§µÄÊÖ»ú¡£¡£¡£¡£Ò»µ©Íê³É£¬£¬£¬¶ñÒâÈí¼þ¼´²¶»ñNFC¿¨Æ¬Êý¾Ý²¢´«ÊäÖÁ¹¥»÷Õß×°±¸£¬£¬£¬Ê¹ÆäÄܹ»Ê¹ÓÃÇÔÈ¡µÄÐÅÏ¢´ÓATM»úÈ¡¿î¡£¡£¡£¡£¾ÝÆÀ¹À£¬£¬£¬´Ë´Î¶ñÒâ»î¶¯Ô¼ÄªÊ¼ÓÚ2025Äê11Ô¡£¡£¡£¡£


https://thehackernews.com/2026/04/ngate-campaign-targets-brazil.html


3. Ä«Î÷¸çBe Prime±»ºÚ£¬£¬£¬ºÚ¿ÍÉù³ÆÇÔÈ¡¼à¿ØÓë¿Í»§Êý¾Ý


4ÔÂ21ÈÕ£¬£¬£¬Ä«Î÷¸çIT»ù´¡ÉèÊ©ÓëÊý×Ö»¯×ªÐ͹«Ë¾Be PrimeÕýÔÚ´¦Öóͷ£Ò»ÆðÍøÂçÇå¾²ÊÂÎñµÄÉÆºóÊÂÇé¡£¡£¡£¡£´Ëǰ£¬£¬£¬Ò»Ãû¼ÙÃû¡°dylanmarly¡±µÄ¹¥»÷ÕßÔÚÍøÂç·¸·¨ÂÛ̳ÉÏÐû²¼ÐÂÎÅ£¬£¬£¬Éù³ÆÒÑÈëÇָù«Ë¾£¬£¬£¬²¢Ðû²¼Á˾ݳÆÊÇBe Prime¿Í»§°ì¹«ÊÒÊÓÆµ¼à¿ØÂ¼ÏñµÄ½ØÍ¼¡£¡£¡£¡£×ܲ¿Î»ÓÚÃÉÌØÀ×µÄBe Prime֤ʵ£¬£¬£¬ÖÜËĸù«Ë¾ÔâÓöÁËÒ»Æð¡°ÍøÂçÇå¾²ÊÂÎñ¡±¡£¡£¡£¡£¹¥»÷ÕßÐû²¼µÄÆÁÄ»½ØÍ¼ÏÔʾ£¬£¬£¬ÆäÒÑ»ñµÃBe PrimeµÄCisco Meraki Vision¿ØÖÆÃæ°åµÄ»á¼ûȨÏÞ£¬£¬£¬ÈôÊôʵ£¬£¬£¬Õ⽫ÔÊÐí¹¥»÷Õß»á¼û¿Í»§°ì¹«ÊÒµÄʵʱ¼à¿Ø»­Ã棬£¬£¬°üÀ¨¸©î«²î±ðÍŶÓÊÂÇéÇøµÄÉãÏñÍ·¡£¡£¡£¡£±ðµÄ£¬£¬£¬dylanmarly»¹Ð¹Â¶Á˾ݳƼÛÖµ12.6GBµÄÊý¾Ý£¬£¬£¬ÕâЩÊý¾ÝÊôÓڸù«Ë¾¼°ÆäһЩ×ÅÃû¿Í»§£¬£¬£¬ÆäÖаüÀ¨ÄÜÔ´¾ÞÍ·¡¢×ÅÃûÁãÊÛÆ·ÅƼ°ÌìÏÂÁ¬ËøÒ©µê¡£¡£¡£¡£¾Ý¹¥»÷ÕßÐðÊö£¬£¬£¬ÆäÖ®ÒÔÊÇÄܹ»»á¼ûÖÎÀíÔ±ÕË»§£¬£¬£¬ÊÇÓÉÓÚBe PrimeûÓÐʵÑéË«ÒòËØÉí·ÝÑéÖ¤¡£¡£¡£¡£¹¥»÷Õß»¹Éù³Æ»ñÈ¡ÁËMeraki APIÃÜÔ¿£¬£¬£¬²¢Ê¹ÓÃÕâЩÃÜÔ¿¿ØÖÆÁËÊýǧ̨Be PrimeÍøÂç×°±¸£¬£¬£¬°üÀ¨Æä¿Í»§µÄÇå¾²ÉãÏñÍ·»­Ãæ¡£¡£¡£¡£Be PrimeÔÚ¹ûÕæÉùÃ÷ÖÐÈÏ¿ÉÔâÊÜÍøÂç¹¥»÷£¬£¬£¬²¢ÌåÏÖÕýÔÚÓë˼¿ÆTalosÇå¾²ÍŶÓÏàÖú¾ÙÐÐÐÞ¸´¡£¡£¡£¡£


https://www.theregister.com/2026/04/21/be_prime_cctv_leak/


4. BlueskyÔâÇ×ÒÁÀʺڿÍDDoS¹¥»÷£¬£¬£¬Ð§ÀÍÖÐÖ¹24Сʱ


4ÔÂ21ÈÕ£¬£¬£¬È¥ÖÐÐÄ»¯¿ªÔ´É罻ýÌåÆ½Ì¨BlueskyÓÚ4ÔÂ15ÈÕÔâÓöÁËÒ»´ÎÖØ´óµÄÂþÑÜʽ¾Ü¾øÐ§ÀÍ£¨DDoS£©¹¥»÷£¬£¬£¬µ¼ÖÂÆäЧÀÍÖÐÖ¹Ô¼24Сʱ¡£¡£¡£¡£¸Ãƽ̨ÀàËÆÓÚX£¨Ç°ÉíΪTwitter£©£¬£¬£¬ÔÊÐíÓû§Ðû²¼¶ÌÐÂÎÅ¡¢Í¼Æ¬ºÍÊÓÆµ£¬£¬£¬Í¬Ê±Ìṩ¶ÔËã·¨¡¢Êý¾ÝºÍÄÚÈÝÉóºËµÄ¸ü¶à¿ØÖÆÈ¨¡£¡£¡£¡£´Ë´Î¹¥»÷ÈÅÂÒÁËÐÅÏ¢Á÷¡¢Í¨Öª¡¢»°ÌâºÍËÑË÷¹¦Ð§£¬£¬£¬Ôì³É¼äЪÐÔЧÀÍÖÐÖ¹¡£¡£¡£¡£Ò»¸öÃûΪ¡°313ÍŶӡ±µÄÇ×ÒÁÀʺڿÍ×éÖ¯Éù³Æ¶Ô´Ë´Î¹¥»÷ÈÏÕæ£¬£¬£¬Í¹ÏÔÁËÉ罻ýÌåÆ½Ì¨ÃæÁÙµÄÈÕÒæÔöÌíµÄÍþвÒÔ¼°Ð­Í¬¹¥»÷Ðж¯µÄÓ°Ïì¡£¡£¡£¡£Bluesky¹«Ë¾Ðû²¼Í¨¸æ³Æ£¬£¬£¬ÆäÍŶÓÓÚ2026Äê4ÔÂ15ÈÕ̫ƽÑóʱ¼äÍíÉÏ11:40×óÓÒÊÕµ½Ó¦ÓóÌÐò¼äЪÐÔÖÐÖ¹µÄ±¨¸æ£¬£¬£¬²¢Á¬Ò¹ÊÂÇéÒÔ»º½âÕâ´ÎÖØ´óµÄDDoS¹¥»÷£¬£¬£¬¸Ã¹¥»÷ÔÚ°×ÌìÓúÑÝÓúÁÒ¡£¡£¡£¡£¹«Ë¾Ç¿µ÷£¬£¬£¬Ã»Óз¢Ã÷ÈκÎδ¾­ÊÚȨ»á¼ûÓû§Ë½ÈËÊý¾ÝµÄÖ¤¾Ý£¬£¬£¬²¢È·ÈÏÒѽ«¹¥»÷µÄÓ°Ïì½µÖÁ×îµÍ£¬£¬£¬×èÖ¹Á˳¤Ê±¼äµÄÍ£»£»£»£»£»£»ú¡£¡£¡£¡£313ÍŶÓÊÇÒ»¸öÇ×ÒÁÀʵĺڿÍ×éÖ¯£¬£¬£¬ÆäÍøÂç»î¶¯ÓëÕþÖÎÇý¶¯Ç×½üÏà¹Ø£¬£¬£¬°üÀ¨DDoS¹¥»÷¡¢ÍøÒ³¸Ä¶¯¡¢ÍøÂç´¹ÂÚºÍÊý¾Ýй¶µÈ¡£¡£¡£¡£


https://securityaffairs.com/191059/security/bluesky-hit-by-24-hour-ddos-attack-as-pro-iran-group-claims-responsibility.html


5. DigitalMintǰԱ¹¤ÈÏ¿ÉÏòBlackCatй¶̸ÅÐÉñÃØ


4ÔÂ21ÈÕ£¬£¬£¬41ËêµÄAngelo Martino£¬£¬£¬ÔøÊÇÍøÂçÇå¾²ÊÂÎñÏìÓ¦¹«Ë¾DigitalMintµÄÒ»ÃûÔ±¹¤£¬£¬£¬¿ËÈÕÈÏ¿ÉÔÚ2023ÄêʹÓÃBlackCat£¨ALPHV£©ÀÕË÷Èí¼þ¹¥»÷ÃÀ¹ú¹«Ë¾¡£¡£¡£¡£ËûÓëÁíÍâÁ½ÃûͬΪÀÕË÷Èí¼þ̸ÅÐÕßµÄͬ»ï33ËêµÄRyan Clifford GoldbergºÍ28ËêµÄKevin Tyler Martinһͬ±»Ö¸¿Ø·¸Óд®Ä±Ú²Æ­ÀÕË÷×ÌÈÅÖݼÊÉÌÒµ¡¢Ú²Æ­ÀÕË÷×ÌÈÅÖݼÊÉÌÒµÒÔ¼°¾ÓÐÄÆÆËðÊܱ£»£»£»£»£»£»¤ÅÌËã»úµÈ×ïÐС£¡£¡£¡£Martino×î³õÔÚ2025Äê10ÔÂµÄÆðËßÊéÖнö±»ÁÐΪ¡°Í¬Ä±1¡±£¬£¬£¬µ«ÔÚ3Ô·ݽâ·âµÄ·¨Í¥ÎļþÖб»ÕýʽµãÃû¡£¡£¡£¡£MartinºÍGoldbergÒ²ÈÏ¿ÉÁËÏà¹ØÍ¬Ä±×ïÐУ¬£¬£¬Ã¿È˽«ÃæÁÙ×î¸ß20ÄêµÄî¿Ïµ¡£¡£¡£¡£Æ¾Ö¤·¨Í¥Îļþ£¬£¬£¬MartinoÔÚµ£µ±ÎåÃûÊܺ¦ÕßµÄ̸Åдú±íʱ´ú£¬£¬£¬ÏòBlackCatÀÕË÷Èí¼þÔËÓªÉÌй¶ÁËÓйØÊܺ¦Õß̸ÅÐ̬¶ÈºÍ°ü¹Üµ¥ÏÞ¶îµÄÉñÃØÐÅÏ¢£¬£¬£¬×ÊÖúÍøÂç·¸·¨·Ö×ÓË÷È¡Á˾¡¿ÉÄܸߵÄÊê½ð¡£¡£¡£¡£2023Äê4ÔÂÖÁ2025Äê4ÔÂʱ´ú£¬£¬£¬ËûÓëͬ»ïÒ»Æð¼ÓÈëÁ˶àÆðBlackCatÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£¡£ÈýÃû±»¸æÔÚÒÔBlackCat¹ØÁªÖ°Ô±Éí·Ý»î¶¯Ê±£¬£¬£¬ÏòÊܺ¦ÕßË÷ÒªÊê½ð£¬£¬£¬²¢Íþвй¶ÔÚ¼ÓÃÜϵͳǰÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£¼ì·½Ôö²¹³Æ£¬£¬£¬ÈýÈËÏòBlackCatÖÎÀíÔ±Ö§¸¶ÁËËùÓÐÊê½ðÊÕÈëµÄ20%£¬£¬£¬ÒÔ»»È¡»á¼ûÀÕË÷Èí¼þºÍڲƭÀÕË÷ÃÅ»§ÍøÕ¾µÄȨÏÞ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/former-ransomware-negotiator-pleads-guilty-to-blackcat-attacks/


6. ÃÀ¹úÈý¼ÒÒ½ÁÆ»ú¹¹Êý¾Ýй¶£¬£¬£¬Ó°Ïì½ü60ÍòÈË


4ÔÂ21ÈÕ£¬£¬£¬ÃÀ¹úÈý¼ÒÒ½ÁƱ£½¡»ú¹¹½üÆÚÅû¶ÁËÊý¾Ýй¶ÊÂÎñ£¬£¬£¬¹²Ó°Ïì½ü60ÍòÈË¡£¡£¡£¡£ÆäÖУ¬£¬£¬±±µÂ¿ËÈøË¹ÖÝÐÐΪ¿µ½¡ÖÎÀí¾ÖÅû¶µÄÎ¥¹æÊÂÎñ¹æÄ£×î´ó£¬£¬£¬Ó°ÏìÁË285,000ÈË¡£¡£¡£¡£¸Ã×é֯ΪÐÄÀí¿µ½¡ºÍÒ©ÎïÀÄÓÃÎÊÌâÌṩ×ÊÔ´£¬£¬£¬ÓÚ2026Äê3ÔÂ͸¶£¬£¬£¬ÆäÔÚ2025Äê10Ô¼ì²âµ½ÍøÂçÈëÇÖ¡£¡£¡£¡£ÊÓ²ìÏÔʾ£¬£¬£¬Î´¾­ÊÚȨµÄÖ°Ô±¿ÉÄÜ»á¼û²¢ÇÔÈ¡Á˰üÀ¨Ð¡ÎÒ˽¼ÒÐÅÏ¢µÄÎļþ¡£¡£¡£¡£±¾ÖÜÅû¶µÄµÚ¶þ¼Ò»ú¹¹ÊÇÄÏÒÁÀûŵÒÁƤ·ô²¡ÕïËù£¬£¬£¬ÊÜÓ°ÏìÈËÊý´ï16Íò¡£¡£¡£¡£Õâ¼Ò×ܲ¿Î»ÓÚÒÁÀûŵÒÁÖÝÈûÀÕÄ·µÄƤ·ôÕչ˻¤Ê¿¹©Ó¦ÉÌÔÚÒ»·ÝÊý¾Ýй¶֪ͨÖÐÌåÏÖ£¬£¬£¬¹«Ë¾ÓÚ2025Äê11ÔÂÏÂÑ®·¢Ã÷ÁËÒ»ÆðÍøÂçÇå¾²ÊÂÎñ¡£¡£¡£¡£2026Äê3Ô³õÍê³ÉµÄÊÓ²ìÏÔʾ£¬£¬£¬´æ´¢Ð¡ÎÒ˽¼ÒÐÅÏ¢µÄÎļþÔ⵽й¶¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬½ñÄê2Ô£¬£¬£¬InsomniaÀÕË÷Èí¼þ×éÖ¯ÒÑÔÚÆäÍøÕ¾ÉϽ«¸ÃÕïËùÁÐÈë¹¥»÷Ãûµ¥£¬£¬£¬Éù³ÆÇÔÈ¡ÁË15ÍòÃû»¼ÕßµÄÐÅÏ¢£¬£¬£¬²¢Ð¹Â¶Á˾ݳƴӸÃÒ½ÁÆ»ú¹¹ÏµÍ³ÖÐÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£µÚÈýÆðÖØ´óÊý¾Ýй¶ÊÂÎñ±¬·¢ÔÚÊ¥°²¶«ÄáÒ½Ôº£¬£¬£¬¸ÃÒ½ÔºÏòÃÀ¹úÎÀÉúÓ빫ÖÚЧÀͲ¿±¨¸æ³Æ£¬£¬£¬Ò»Æðµç×ÓÓʼþÇå¾²ÊÂÎñµ¼ÖÂ146,000È˵ÄÐÅϢй¶¡£¡£¡£¡£Õâ¼ÒλÓÚÒÁÀûŵÒÁÖÝÖ¥¼Ó¸çµÄÒ½ÔºÌåÏÖ£¬£¬£¬Á½ÃûÔ±¹¤µÄµç×ÓÓʼþÕË»§Ôâµ½ÈëÇÖ£¬£¬£¬µ¼Ö»¼ÕßµÄСÎÒ˽¼ÒÐÅÏ¢ºÍ¿µ½¡ÐÅϢй¶¡£¡£¡£¡£ÈëÇÖÊÂÎñ±¬·¢ÔÚ2025Äê2Ô¡£¡£¡£¡£


https://www.securityweek.com/data-breaches-at-healthcare-organizations-in-illinois-and-texas-affect-600000/