网络安全日报 2022年09月08日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、Zyxel 修补了 NAS 固件中的严重漏洞
https://www.securityweek.com/zyxel-patches-critical-vulnerability-nas-firmware 2、以色列国防部长的清洁工为黑客组织从事间谍活动而被判刑
https://www.securityweek.com/israeli-defence-ministers-cleaner-sentenced-spying-attempt 3、Moobot 僵尸网络重新归来,针对易受攻击的 D-Link 路由器
https://securityaffairs.co/wordpress/135414/malware/moobot-botnet-targets-d-link.html 4、国际执法行动捣毁了出售被盗凭证和信用卡的网站WT1SHOP
https://thehackernews.com/2022/09/authorities-shut-down-wt1shop-site-for.html 5、TA505黑客组织使用TeslaGun面板管理ServHelper后门
https://thehackernews.com/2022/09/ta505-hackers-using-teslagun-panel-to.html 6、研究人员发现Minecraft是黑客最喜欢用来传播恶意代码的游戏
https://www.bleepingcomputer.com/news/security/minecraft-is-hackers-favorite-game-title-for-hiding-malware/ 7、韩国政府 YouTube 频道遭黑客入侵,借马斯克形象推广加密货币骗局
https://www.cnbeta.com/articles/tech/1312855.htm 8、伦敦最大的巴士运营商遭遇网络攻击
https://www.infosecurity-magazine.com/news/londons-biggest-bus-operator-hit/ 9、国际刑警组织捣毁跨国勒索软件团伙
https://securityaffairs.co/wordpress/135357/cyber-crime/interpol-dismantled-sextortion-ring.html 10、Ares银行木马新增Departed Qakbot域生成算法
https://www.zscaler.com/blogs/security-research/ares-banking-trojan-learns-old-tricks-adds-defunct-qakbot-dga
网络安全日报 2022年09月07日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、谷歌修补了 2022 年第六个 Chrome 零日漏洞
https://www.securityweek.com/google-patches-sixth-chrome-zero-day-2022 2、洛杉矶联合学区信息技术系统遭勒索软件攻击
https://www.securityweek.com/huge-los-angeles-unified-school-district-hit-cyberattack 3、反恶意软件测试标准组织 (AMTSO) 发布《物联网安全产品测试指南》
https://www.securityweek.com/amtso-publishes-guidance-testing-iot-security-products 4、Worok 黑客组织针对亚洲知名公司和政府
https://thehackernews.com/2022/09/worok-hackers-target-high-profile-asian.html 5、研究人员发现针对Linux的新型恶意代码Shikitega
https://cybersecurity.att.com/blogs/labs-research/shikitega-new-stealthy-malware-targeting-linux 6、研究人员警告开发人员注意PyPI下载后自动执行代码的功能
https://thehackernews.com/2022/09/warning-pypi-feature-executes-code.html 7、Instagram 违反了 GDPR 被爱尔兰监管机构罚款 4 亿美元
https://www.securityweek.com/irish-watchdog-fines-instagram-405m-euros-teen-data-case 8、知乎在移动端和Web端嵌入盲水印
https://www.solidot.org/story?sid=72670 9、智利消费者保护局受到勒索软件攻击
https://www.inforisktoday.com/chile-consumer-protection-agency-hit-by-ransomware-attack-a-19990 10、三星承认泄露部分美国客户的详细信息
https://thehackernews.com/2022/09/samsung-admits-data-breach-that-exposed.html
网络安全日报 2022年09月06日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、QNAP 警告利用零日漏洞的新 Deadbolt 勒索软件攻击
https://securityaffairs.co/wordpress/135347/malware/qnap-deadbolt-ransomware-new-attacks.html 2、研究人员发现了一种新的可绕过MFA的网钓即服务 (PhaaS):EvilProxy
https://securityaffairs.co/wordpress/135318/cyber-crime/evilproxy-phishing-as-a-service.html 3、CVERC发布西北工业大学遭美国NSA网络攻击事件调查报告
https://www.cverc.org.cn/head/zhaiyao/news20220905-NPU.htm 4、研究人员在Google Play发现升级后的SharkBot恶意软件
https://www.bleepingcomputer.com/news/security/sharkbot-malware-sneaks-back-on-google-play-to-steal-your-logins/ 5、反电信网络诈骗法表决通过,12月 1 日起施行
https://www.cnbeta.com/articles/tech/1311585.htm 6、Neopets 称黑客进入其系统达 18 个月之久
https://www.bleepingcomputer.com/news/security/neopets-says-hackers-had-access-to-its-systems-for-18-months/ 7、因印度的新网络安全规定,主要 VPN 服务商关闭印度服务器
https://www.solidot.org/story?sid=72652 8、2022 年国家网络安全宣传周将于 9 月 5 日至 11 日举行
https://www.secrss.com/articles/46488 9、美国警方被曝利用 Fog Reveal 收集的应用数据展开大规模监视
https://www.cnbeta.com/articles/tech/1311597.htm 10、TikTok否认数据泄露,据称暴露了超过20亿用户的信息
https://thehackernews.com/2022/09/tiktok-denies-data-breach-reportedly.html
网络安全日报 2022年09月05日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、KeyBank 的用户个人数据遭黑客窃取
https://www.securityweek.com/keybank-hackers-third-party-provider-stole-customer-data 2、一种新的网络钓鱼诈骗针对美国运通持卡人
https://securityaffairs.co/wordpress/135292/hacking/phishing-scam-targets-american-express.html 3、黑客入侵了 Yandex Taxi 应用,导致莫斯科出现大规模交通拥堵
https://securityaffairs.co/wordpress/135280/hacktivism/anonyomus-hacked-yandex-taxi.html 4、美国国税局 (IRS) 泄露了大约 12万名纳税人的机密信息
https://securityaffairs.co/wordpress/135271/security/irs-data-leak.html 5、BlackCat 勒索软件攻击了意大利能源机构GSE
https://www.bleepingcomputer.com/news/security/blackcat-ransomware-claims-attack-on-italian-energy-agency/ 6、CodeRAT远控木马的源代码已在GitHub上泄露
https://www.bleepingcomputer.com/news/security/malware-dev-open-sources-coderat-after-being-exposed/ 7、Damart服装公司遭Hive勒索软件攻击
https://www.bleepingcomputer.com/news/security/damart-clothing-store-hit-by-hive-ransomware-2-million-demanded/ 8、Chrome修复了新的零日漏洞CVE-2022-3075
https://www.bleepingcomputer.com/news/security/google-chrome-emergency-update-fixes-new-zero-day-used-in-attacks/ 9、Contec Healthcare生命体征患者监护仪中发现多个漏洞
https://www.hipaajournal.com/multiple-vulnerabilities-identified-in-contec-health-vital-signs-patient-monitors/ 10、三星披露称7月遭受黑客攻击导致客户信息泄露
https://www.bleepingcomputer.com/news/security/samsung-discloses-data-breach-after-july-hack/
网络安全日报 2022年09月02日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、赛门铁克在1800多个移动应用中发现了硬编码的 AWS 凭证
https://www.securityweek.com/hardcoded-aws-credentials-1800-mobile-apps-highlight-supply-chain-issues 2、Ragnar Locker勒索软件团伙攻击和窃取了葡萄牙TAP航空公司数据
https://www.securityweek.com/ransomware-gang-claims-customer-data-stolen-tap-air-portugal-hack 3、苹果发布了最近披露的旧款iPhone和iPad的WebKit零日补丁
https://securityaffairs.co/wordpress/135136/security/apple-security-flaws-iphone.html 4、研究人员披露了新兴的跨平台BianLian勒索软件攻击
https://thehackernews.com/2022/09/researchers-detail-emerging-cross.html 5、高度规避的 Magecart JavaScript Skimmer 在野外活跃
https://blog.cyble.com/2022/09/01/highly-evasive-magecart-javascript-skimmer-active-in-the-wild/ 6、《最终幻想 14》玩家受到了二维码钓鱼攻击
https://www.malwarebytes.com/blog/news/2022/08/final-fantasy-14-players-targeted-by-qr-code-phishing 7、骗子越来越多地瞄准DeFi平台来窃取加密货币
https://securityaffairs.co/wordpress/135017/cyber-crime/fbi-warns-defi-attacks.html 8、2022上半年IoT漏洞披露的增加,环比增长57%
https://www.helpnetsecurity.com/2022/08/29/vulnerability-disclosures-iot-devices/ 9、TikTok曝高危漏洞允许一键式帐户劫持,回应称已修复
https://www.freebuf.com/articles/343500.html 10、WatchGuard 防火墙漏洞允许设备被接管
https://portswigger.net/daily-swig/watchguard-firewall-exploit-threatens-appliance-takeover
网络安全日报 2022年09月01日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、WordPress 6.0.2 修补可能影响数百万旧网站的漏洞
https://www.securityweek.com/wordpress-602-patches-vulnerability-could-impact-millions-legacy-sites 2、Chrome 发布105版本,修补多个高危漏洞
https://www.securityweek.com/chrome-105-patches-critical-high-severity-vulnerabilities 3、TikTok Android 应用中的一个漏洞可能允许劫持用户的帐户
https://securityaffairs.co/wordpress/135125/mobile-2/tiktok-android-app-bug.html 4、意大利石油巨头 ENI 公司网络遭入侵
https://securityaffairs.co/wordpress/135116/hacking/eni-suffered-cyberattack.html 5、俄罗斯流媒体平台 Start 披露了影响 750 万用户的数据泄露事件
https://securityaffairs.co/wordpress/135069/data-breach/start-data-breach.html 6、攻击者利用ModernLoader传播挖矿程序及RedLine窃密木马
https://thehackernews.com/2022/08/hackers-use-modernloader-to-infect.html 7、研究人员设计基于图的算法发现了180个Node.js相关漏洞
https://www.securityweek.com/academics-devise-open-source-tool-hunting-nodejs-security-flaws 8、黑客利用韦伯望远镜拍摄的图像传播恶意软件
https://securityaffairs.co/wordpress/135090/malware/gowebbfuscator-james-webb-space-telescope.html 9、美国陆军本周宣布对外招募网络战部队人员
https://www.secrss.com/articles/46345 10、Google Play 禁止 VPN 应用屏蔽广告
https://www.solidot.org/story?sid=72614
网络安全日报 2022年08月30日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、谷歌为开源项目启动漏洞赏金计划
https://www.securityweek.com/google-launches-bug-bounty-program-open-source-projects 2、全球最大图书发行商 Baker & Taylor 遭勒索软件攻击
https://securityaffairs.co/wordpress/135026/cyber-crime/baker-taylor-ransomware.html 3、CSTIS发布关于畅捷通T+漏洞造成勒索攻击隐患的风险提示
https://mp.weixin.qq.com/s/Y4sd7vwOGhQe0S3XM5wgWw 4、Borat RAT恶意软件同时具备远控、勒索及窃密功能
https://cyware.com/news/borat-rat-this-unique-triple-threat-is-one-nasty-package-df572aa4 5、国家卫健委等三部门发布《医疗卫生机构网络安全管理办法》
https://www.freebuf.com/news/343278.html 6、软件公司老板黑进40多家金融机构 盗指令炒股赚百万获刑
https://www.cnbeta.com/articles/tech/1309769.htm 7、因涉嫌未经同意收集人脸信息,Snap 以 2.4 亿元达成和解
https://www.secrss.com/articles/46298 8、累计被安装了 140 万次的5个 Chrome 扩展程序窃取用户数据
https://www.bleepingcomputer.com/news/security/chrome-extensions-with-14-million-installs-steal-browsing-data/ 9、美国外卖巨头DoorDash发生数据泄露事件
https://www.ithome.com/0/637/455.htm 10、北约对黑客在暗网中出售欧洲导弹集团涉密文件的情况进行调查
https://www.secrss.com/articles/46285
网络安全日报 2022年08月30日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、研究人员在数以万计的 WordPress 网站上发现了恶意插件
https://www.securityweek.com/malicious-plugins-found-25000-wordpress-websites-study 2、JFrog 研究员披露了影响 OPC UA 协议的多个漏洞的详细信息
https://www.securityweek.com/details-disclosed-opc-ua-vulnerabilities-exploited-ics-hacking-competition 3、美国 FTC 起诉数据分析公司 Kochava 出售敏感和地理位置数据
https://securityaffairs.co/wordpress/135004/security/ftc-sued-data-broker-kochava.html 4、自 2019 年以来,Nitrokod 挖矿软件感染了 11 个国家/地区的系统
https://securityaffairs.co/wordpress/134985/cyber-crime/nitrokod-crypto-miner-campaign.html 5、Akasa Air 遭受影响乘客个人信息的数据泄露
https://www.indiatoday.in/india/story/akasa-airlines-data-breach-passengers-personal-information-leaked-1993723-2022-08-29 6、LockBit勒索组织称未来将采用三重勒索策略
https://www.bleepingcomputer.com/news/security/lockbit-ransomware-gang-gets-aggressive-with-triple-extortion-tactic/ 7、研究发现 Google 追踪 39 种个人数据,苹果追踪 12 种
https://www.cnbeta.com/articles/tech/1308685.htm 8、工信部通报 47 款侵害用户权益 App 和 SDK,包括神州专车、虎扑等
https://www.ithome.com/0/637/267.htm 9、Foxmail 邮件客户端曝逻辑漏洞:一次点击即可命令执行
https://www.secrss.com/articles/46233 10、疑似借助用友畅捷通T+的勒索攻击爆发
https://www.huorong.cn/info/1661778944884.html
网络安全日报 2022年08月29日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、Atlassian 针对高危 Bitbucket 漏洞发布紧急补丁
https://www.securityweek.com/atlassian-ships-urgent-patch-critical-bitbucket-vulnerability 2、黑山国家基础设施遭到大规模“前所未有的”网络攻击
https://securityaffairs.co/wordpress/134900/cyber-warfare-2/montenegro-cyber-attack.html 3、攻击者滥用 Genshin Impact Anti-Cheat 驱动程序来禁用防病毒软件
https://securityaffairs.co/wordpress/134884/malware/anti-cheat-driver-disable-antivirus.html 4、Mercury APT 利用 SysAid 应用中的 Log4Shell 漏洞进行初始访问
https://securityaffairs.co/wordpress/134876/apt/mercury-exploit-log4shell-flaw.html 5、攻击Twilio、Cloudflare的黑客还攻击了其他 130 多个组织
https://www.securityweek.com/twilio-cloudflare-attacked-part-campaign-hit-over-130-organizations 6、Oracle SBC的漏洞可导致未授权访问或拒绝服务
https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/oracle-sbc-multiple-security-vulnerabilities-leading-to-unauthorized-access-and-denial-of-service/ 7、Binance高管声称黑客使用他的"Deepfake"视频来欺骗用户
https://www.euronews.com/next/2022/08/24/binance-executive-says-scammers-created-deepfake-hologram-of-him-to-trick-crypto-developer 8、Cyble称当下航空业是较易被作为攻击目标的行业
https://blog.cyble.com/2022/08/26/aviation-travel-industry-recovering-from-covid-turbulence-grounded-by-cyberattacks/ 9、TeamTNT已对云实例及容器环境实施了超过两年的攻击
https://www.infosecurity-magazine.com/news/teamtnt-targeted-cloud-instances/ 10、一个名为 Agenda 的新勒索软件针对亚洲和非洲的组织
https://securityaffairs.co/wordpress/134911/cyber-crime/agenda-ransomware.html
网络安全日报 2022年08月26日
免责声明:以下内容原文来自互联网的公共方式,仅用于有限分享,译文内容不代表蚁景网安实验室观点,因此第三方对以下内容进行分享、传播等行为,以及所带来的一切后果与译者和蚁景网安实验室无关。以下内容亦不得用于任何商业目的,若产生法律责任,译者与蚁景网安实验室一律不予承担。
1、密码管理软件公司 LastPass 遭遇数据泄露,导致源代码被盗
https://www.securityweek.com/lastpass-says-source-code-stolen-data-breach 2、Intellexa公司以 800 万美元价格提供 iOS&Android 设备漏洞利用服务
https://www.securityweek.com/leaked-docs-show-spyware-firm-offering-ios-android-hacking-services-8-million 3、谷歌宣布开源"Paranoid"加密测试库
https://www.securityweek.com/google-open-sources-paranoid-crypto-testing-library 4、Mozilla 修补了 Firefox、Thunderbird 中的高危漏洞
https://www.securityweek.com/mozilla-patches-high-severity-vulnerabilities-firefox-thunderbird-0 5、Nobelium APT 使用新的入侵后恶意软件 MagicWeb
https://securityaffairs.co/wordpress/134838/apt/nobelium-magicweb-tool.html 6、网络攻击者正在使用 Tox P2P 消息服务作为 C2 服务器
https://securityaffairs.co/wordpress/134806/malware/tox-p2p-c2-server.html 7、越来越多的攻击者利用 Sliver 工具包作为 Cobalt Strike 的替代品
https://www.bleepingcomputer.com/news/security/more-hackers-adopt-sliver-toolkit-as-a-cobalt-strike-alternative/ 8、研究人员发现了针对韩国政客和外交官的APT组织- Kimusky
https://thehackernews.com/2022/08/researchers-uncover-kimusky-infra.html 9、Quantum勒索软件攻击了多米尼加共和国政府机构
https://www.bleepingcomputer.com/news/security/quantum-ransomware-attack-disrupts-govt-agency-in-dominican-republic/ 10、RansomEXX声称对庞巴迪娱乐公司进行勒索攻击
https://www.bleepingcomputer.com/news/security/ransomexx-claims-ransomware-attack-on-sea-doo-ski-doo-maker/
第2页 第3页 第4页 第5页 第6页 第7页 第8页 第9页 第10页 第11页 第12页 第13页 第14页 第15页 第16页 第17页 第18页 第19页 第20页 第21页 第22页 第23页 第24页 第25页 第26页 第27页 第28页 第29页 第30页 第31页 第32页 第33页 第34页 第35页 第36页 第37页 第38页 第39页 第40页 第41页 第42页 第43页 第44页 第45页 第46页 第47页 第48页 第49页 第50页 第51页 第52页 第53页 第54页 第55页 第56页 第57页 第58页 第59页 第60页 第61页 第62页 第63页 第64页 第65页 第66页 第67页 第68页 第69页 第70页 第71页 第72页 第73页 第74页 第75页 第76页 第77页 第78页 第79页 第80页 第81页 第82页 第83页 第84页 第85页 第86页 第87页 第88页 第89页 第90页 第91页 第92页 第93页 第94页 第95页 第96页 第97页 第98页 第99页 第100页 第101页 第102页 第103页 第104页 第105页 第106页 第107页 第108页 第109页 第110页 第111页 第112页 第113页 第114页 第115页 第116页 第117页 第118页 第119页 第120页 第121页 第122页 第123页 第124页 第125页 第126页 第127页 第128页 第129页 第130页 第131页 第132页 第133页 第134页 第135页 第136页 第137页 第138页 第139页 第140页 第141页 第142页 第143页 第144页 第145页 第146页 第147页 第148页
蚁景网安学院火热招生中,限时领取大额优惠券,快来抢购吧~
扫码咨询客服了解招生最新内容和活动

