ÁªºÏ¹úÇéÐÎÍýÏëÊðµÄGit´æ´¢¿âй¶Áè¼Ý10Íò¸öµÄÔ±¹¤ÐÅÏ¢£»£» £»ºÚ¿ÍÈëÇÖParlerÓ¦Óò¢½¨ÉèÖÎÀíÔ±ÏÂÔØ70TBÊý¾Ý

Ðû²¼Ê±¼ä 2021-01-12
1.ÁªºÏ¹úÇéÐÎÍýÏëÊðµÄGit´æ´¢¿âй¶Áè¼Ý10Íò¸öµÄÔ±¹¤ÐÅÏ¢


1.jpg


¸Ã¹ûÕæµÄgitĿ¼ÖаüÀ¨ÁË´ó×ÚÃô¸ÐÎļþ£¬£¬ÈçÓëÇéÐÎÊðºÍÁªºÏ¹ú¹ú¼ÊÀ͹¤×éÖ¯ÆäËûÔÚÏßϵͳÏà¹ØµÄ´¿Îı¾Êý¾Ý¿âƾ֤£¬£¬ÖÎÀíÔ±µÄÊý¾Ý¿âƾ֤ºÍÇéÐÎÊðµÄÔ´´úÂë¿âµÈ¡£¡£¡£¡£±ðµÄ£¬£¬´Ë´ÎÊÂÎñ»¹Ð¹Â¶ÁËÔ±¹¤µÄPII£¬£¬ÈçÔ±¹¤ÂÃÐÐÀúÊ·¡¢Éú³Ýͳ¼ÆÊý¾Ý£¨¹ú¼®¡¢ÐÔ±ðºÍн¼¶£©¡¢ÏîÄ¿×ʽðȪԴ¼Í¼¡¢Ô±¹¤¼Í¼ºÍ¾ÍÒµÆÀ¹À±¨¸æµÈ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/united-nations-data-breach-exposed-over-100k-unep-staff-records/


2.ºÚ¿ÍÈëÇÖParlerÓ¦Óò¢½¨ÉèÖÎÀíÔ±ÏÂÔØ70TBÊý¾Ý


2.jpg


ºÚ¿ÍÉù³Æ£¬£¬ËûÃÇ1ÔÂ6ÈÕÏÂÔØÁËParlerÖÐԼĪ70µ½80TBµÄÊý¾Ý£¬£¬ÆäÖаüÀ¨¶À¼ÒÌû×Ó¡¢ÕÕÆ¬¡¢ÊÓÆµºÍÐÂÎÅ¡£¡£¡£¡£Éç½»ÍøÂçParlerÔÚÖÜÒ»ÇåÔç±»ÏÂÏߣ¬£¬µ«ºÚ¿ÍÔÚÆäÀëÏßÖ®Ç°ÍøÂçÁË´ó×ÚµÄÊý¾Ý¡£¡£¡£¡£donk_enby³Æ£¬£¬ÓÉÓÚParlerµÄµç»°ºÍµç×ÓÓʼþÑé֤ЧÀÍʧȥ×÷Ó㬣¬ÆäÔÚParlerϵͳÖÐÒÔÖÎÀíÔ±Óû§Éí·Ý½¨ÉèÁËÕÊ»§£¬£¬²¢Ïë·¨µÇ¼ÁËÕÊ»§£¬£¬Ö®ºóʹÓÃÐÂÕÊ»§ÏÂÔØÁËÊý¾Ý²¢¾ÙÐÐת´¢¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/security-researchers-leak-70tb-parler-data/


3.Æû³µ¹²ÏíЧÀÍCommunautoÔâ¹¥»÷£¬£¬Êý¾Ý±»¼ÓÃܲ¢Ð¹Â¶


3.jpg


¼ÓÄôóÆû³µ¹²ÏíЧÀÍCommunautoÓÚ1ÔÂ8ÈÕÌåÏÖÆäÔâµ½Á˹¥»÷¡£¡£¡£¡£¸Ã¹«Ë¾³Æ£¬£¬Ðí¶àЧÀÍÆ÷¶¼ÒѾ­±»Ëø¶¨ÁË£¬£¬Êý¾ÝÒ²±»¼ÓÃÜÁË¡£¡£¡£¡£ºÚ¿ÍÏÖÔÚÎÞ·¨»ñÈ¡Óû§ÃÜÂëºÍÐÅÓÿ¨ºÅÂ룬£¬µ«Æä¿ÉÄÜÒѾ­ÍµÈ¡ÁËÓû§Ãû¡¢½ÖµÀµØµãºÍµç×ÓÓʼþµØµã¡£¡£¡£¡£ÆäCEO Benoit RobertÌåÏÖ£¬£¬´Ë´Î¹¥»÷µ¼ÖÂÆäÐí¶à»î¶¯ÖÐÖ¹£¬£¬¸¶¿îºÍ·¢Æ±ÖÎÀí·½ÃæÒ²·ºÆðÑÓÎ󡣡£¡£¡£ÏÖÔÚ£¬£¬ÊÓ²ìÈÔÔÚ¼ÌÐø£¬£¬ÒÔ¸ü׼ȷµØÈ·¶¨ÄÄЩÊý¾Ý±»µÁ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://canadalive.news/2021/01/08/communauto-car-sharing-service-victim-of-a-cyberattack/


4.ÇÔȡĦ¸ù´óͨ8000Íò¸ö¿Í»§ÐÅÏ¢µÄºÚ¿Í±»ÅÐ12Äêî¿Ïµ


4.jpg


ÃÀ¹úÒ»¼Ò·¨ÔºÓÚÉÏÖÜËÄÅд¦ÇÔÈ¡ÁËĦ¸ù´óͨ¿Í»§ÐÅÏ¢µÄ¶íÂÞ˹ºÚ¿ÍAndrei Tyurin 12Äêî¿Ïµ¡£¡£¡£¡£Tyurin±»¿ØµçÄÔÈëÇÖ¡¢µçÐÅڲƭ¡¢ÒøÐÐÕ©Æ­ºÍ²»·¨ÍøÂç¶Ä²©·¸·¨,ÆäÇÔÈ¡ÁËĦ¸ù´óͨ(J.P. Morgan Chase)8000Íò¸ö¿Í»§µÄÐÅÏ¢¡£¡£¡£¡£³ý´ËÖ®Í⣬£¬Æä»¹¹¥»÷¹ýE * Trade¡¢Ê·¿¼ÌØÖ¤È¯ºÍ»ª¶û½ÖÈÕ±¨¡£¡£¡£¡£¾Ý³Æ£¬£¬ËûÒÑ´Ó¹¥»÷»î¶¯ÖлñµÃÁË1900ÍòÃÀÔªµÄ¾»ÊÕÈë¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/01/russian-hacker-gets-12-years-prison-for.html


5.Ç÷ÊÆ¿Æ¼¼Ðû²¼ÓйØEarth Wendigo¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ


5.jpg


Ç÷ÊÆ¿Æ¼¼Ðû²¼ÁËÓйØEarth Wendigo¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£¡£¸Ã×éÖ¯×Ô2019Äê5ÔÂÒÔÀ´×îÏȹ¥»÷»î¶¯£¬£¬Ö÷ÒªÕë¶ÔÖйų́ÍåµÄ×éÖ¯¡¢Ñо¿»ú¹¹ºÍ´óѧ£¬£¬Ö¼ÔÚͨ¹ý½«JavaScriptºóÃÅ×¢Èëµ½WebmailϵͳÖУ¬£¬À´´ÓÄ¿µÄ×éÖ¯ÖÐÇÔÈ¡µç×ÓÓʼþ¡£¡£¡£¡£½øÒ»³ÌÐò²é·¢Ã÷£¬£¬³ýÁËÕë¶ÔÖйų́ÍåµÄ¹¥»÷»î¶¯£¬£¬ºÚ¿Í»¹ÏòÖ§³ÖÖ§³ÖÎ÷²Ø¡¢Î¬Îá¶ûµØÇø»òÖйúÏã¸ÛµÄÔ˶¯µÄ¼¤½ø·Ö×Ó·¢ËͰüÀ¨¶ñÒâÁ´½ÓµÄµç×ÓÓʼþ£¬£¬ÒÔ¾ÙÐÐÓã²æÊ½´¹ÂÚ¹¥»÷¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.trendmicro.com/en_us/research/21/a/earth-wendigo-injects-javascript-backdoor-to-service-worker-for-.html


6.AdvancedIntelligenceºÍHYASÐû²¼RyukµÄÆÊÎö±¨¸æ


6.jpg


Advanced IntelligenceºÍHYASÐû²¼ÁËÓйØÀÕË÷Èí¼þ×éÖ¯RyukµÄÆÊÎö±¨¸æ¡£¡£¡£¡£±¨¸æ³Æ£¬£¬RyukÊÇÄÚ²¿³ÉÊ죬£¬ÓÐÕë¶ÔÐÔµÄÍøÂç·¸·¨×éÖ¯£¬£¬¶ÔÈ«ÌìÏÂÐí¶àÐÐÒµ¶¼¾ßÓÐÆÆËðÐÔÓ°Ïì¡£¡£¡£¡£RyukÖ÷ÒªÒÔ±ÈÌØ±ÒµÄÐÎʽ¸¶¿î£¬£¬Éæ¼°µ½61¸ö¸¶¿îµØµã£¬£¬Á½¸öÖ÷ÒªµÄÉúÒâËùÊÇHuobiºÍBinance£¬£¬¾ùλÓÚÑÇÖÞ¡£¡£¡£¡£±ðµÄ£¬£¬ÔÚ×·×ÙÁËÊôÓÚRyukµÄÒÑÖªµØµãµÄ±ÈÌØ±ÒÉúÒâÖ®ºó£¬£¬Ñо¿Ö°Ô±Ô¤¼ÆÆä׬Ǯ¿ÉÄÜÒÑÁè¼Ý1.5ÒÚÃÀÔª¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.advanced-intel.com/post/crime-laundering-primer-inside-ryuk-crime-crypto-ledger-risky-asian-crypto-traders