FBIÖÒÑÔ²»·¨·Ö×ÓÕýÔÚÓÕÆ­IC3ÍøÂç·¸·¨¾Ù±¨ÍøÕ¾

Ðû²¼Ê±¼ä 2025-09-23

1. FBIÖÒÑÔ²»·¨·Ö×ÓÕýÔÚÓÕÆ­IC3ÍøÂç·¸·¨¾Ù±¨ÍøÕ¾


9ÔÂ19ÈÕ£¬£¬ÃÀ¹úÁª°îÊÓ²ì¾Ö£¨FBI£©¿ËÈÕÐû²¼½ôÆÈÖÒÑÔ£¬£¬Ö¸³öÍøÂç·¸·¨·Ö×ÓÕý´ó×Ú½¨É軥ÁªÍø·¸·¨Í¶ËßÖÐÐÄ£¨IC3£©¹Ù·½ÍøÕ¾µÄÐéα°æ±¾£¬£¬ÒÔÇÔÈ¡¹«ÖÚСÎÒ˽¼ÒÐÅÏ¢²¢ÊµÑé¶þ´Î¹¥»÷¡£¡£¡£¡£¡£¡£IC3×÷ΪFBIÔËÓªµÄ¹Ù·½Æ½Ì¨£¬£¬ÈÏÕæ´¦Öóͷ£Éí·Ý͵ÇÔ¡¢ÍøÂç´¹ÂÚ¡¢ÅÄÂôڲƭµÈÍøÂç·¸·¨Í¶Ëß¡£¡£¡£¡£¡£¡£¾ÝFBIÅû¶£¬£¬2023Äê12ÔÂÖÁ2025Äê2ÔÂʱ´ú£¬£¬ÒÑÊÕµ½³¬100ÆðIC3ð³äÕ©Æ­±¨¸æ¡£¡£¡£¡£¡£¡£Õ©Æ­Õßͨ¹ýÉ罻ýÌå×Ô¶¯½Ó´¥Êܺ¦Õߣ¬£¬»Ñ³ÆÐ­Öú×·»ØËðʧ×ʽ𣬣¬ÓÕµ¼Æä»á¼ûαÔìÍøÕ¾¡£¡£¡£¡£¡£¡£ÕâЩÐéÎ±ÍøÕ¾Í¨¹ýƴд¹ýʧURL£¨Èç¡°ic3.org¡±¡°ic3.com¡±£©¡¢Ìæ»»¶¥¼¶ÓòÃû¡¢µÍÖÊÁ¿Í¼Ðλò²»×¨ÒµÅŰæÓÕÆ­Óû§£¬£¬ÇÔÈ¡ÐÕÃû¡¢×¡Ö·¡¢µç»°¡¢ÒøÐÐÐÅÏ¢µÈÃô¸ÐÊý¾Ý£¬£¬µ¼ÖÂÉí·Ý͵ÇÔ¡¢½ðÈÚÕ©Æ­¼°Éç»á¹¤³Ì¹¥»÷Σº¦¼¤Ôö¡£¡£¡£¡£¡£¡£ÎªÌá·À´ËÀàÕ©Æ­£¬£¬FBI½¨Ò鹫ÖÚÖ±½Óͨ¹ýä¯ÀÀÆ÷ÊäÈë¡°http://www.ic3.gov¡±»á¼û¹Ù·½ÍøÕ¾£¬£¬×èֹʹÓÃËÑË÷ÒýÇæ£¬£¬ÓÈÆäСÐÄ¡°ÔÞÖú¡±Ð§¹û£¬£¬Õ©Æ­Õß³£Ê¹Óø¶·Ñ¹ã¸æÐ®ÖÆÕýµ±ÍøÕ¾Á÷Á¿¡£¡£¡£¡£¡£¡£Í¬Ê±£¬£¬½öÔÚÏÔÊ¾ËøÐÎͼ±ê»òHTTPSµÄ.govÍøÕ¾ÉϹ²ÏíÃô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£IC3Ç¿µ÷£¬£¬Æä¹Ù·½ÇþµÀ²»»áͨ¹ýµç»°¡¢Óʼþ¡¢É罻ýÌå»ò¹«¹²ÂÛֱ̳½ÓÁªÏµÐ¡ÎÒ˽¼Ò£¬£¬Ò²²»»áÒªÇóÖ§¸¶ÓöÈÒÔ×·»ØËðʧ×ʽ𡣡£¡£¡£¡£¡£


https://cybernews.com/security/fbi-warns-bad-actors-spoofing-ic3-internet-crime-reporting-website/


2. Ò°ÊÞÏÈÉúÒòÎ¥¹æÍøÂç¶ùͯÐÅÏ¢ÔâÕû¸Ä


9ÔÂ20ÈÕ£¬£¬ÃÀ¹ú×ÅÃûYouTube²©Ö÷¡°Ò°ÊÞÏÈÉú¡±£¨MrBeast£¬£¬±¾Ãû¼ªÃס¤ÌÆÄÉÉ­£©Òòδ»ñ¼Ò³¤ÔÞ³ÉÍøÂç13ËêÒÔ϶ùͯСÎÒ˽¼ÒÐÅÏ¢£¬£¬±»ÃÀ¹úÉÌҵˢоÖÌìÏÂÏîÄ¿£¨BBB National Programs£©ÆìϵĶùͯ¹ã¸æÉó²é×飨CARU£©È϶¨Î¥·´¡¶¶ùͯÔÚÏßÒþ˽±£»£»£»£»£»£»¤¹æÔò¡·£¨COPPA£©£¬£¬²¢´¥·¢ÆäƵµÀ¼°¹ØÁªÆ·ÅÆ¡°Feastables¡±µÄÊý¾ÝÍøÂçÓë¹ã¸æÍ¶·ÅÁ÷³ÌÕû¸Ä¡£¡£¡£¡£¡£¡£CARUÖ¸³ö£¬£¬ÌÆÄÉÉ­ÔÚÁ½´Î³é½±»î¶¯ÖÐÒªÇóÓû§ÌṩȫÃû¡¢µç»°¡¢µØµã¼°ÓÊÏäµÈÃô¸ÐÐÅÏ¢£¬£¬µ«Î´ÉèÖüҳ¤Ô޳ɻúÖÆ£¬£¬µ¼Ö¶ùͯÐÅÏ¢±»Ö±ÎüÍøÂç¡£¡£¡£¡£¡£¡£ÀýÈ磬£¬Æäͨ¹ý¡°Feastables¡±ÇÉ¿ËÁ¦°ô¶þάÂëÆ¾Ö¤ÌᳫµÄ³é½±»î¶¯£¬£¬ÔÊÐíÆµÈÔÌá½»Õ߿ɻñ1ÍòÃÀÔª½±½ð£¬£¬È´Î´ÌṩÈκμҳ¤ÑéÖ¤ÇþµÀ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬¡°Feastables¡±¹ÙÍø±£´æÒ»Á¬µ¯´°ÓÕµ¼Óû§ÌîдÓÊÏä¼°µç»°ºÅÂëµÄÐÐΪ£¬£¬ÇÒÏà¹ØÊý¾Ý±»´«ÊäÖÁµÚÈý·½£¬£¬½øÒ»²½¼Ó¾çÁËÒþ˽й¶Σº¦¡£¡£¡£¡£¡£¡£Æ¾Ö¤COPPA»®¶¨£¬£¬ÃæÏò13ËêÒÔ϶ùͯµÄÔÚÏßЧÀͱØÐèͨ¹ý¿ÉÑéÖ¤µÄ¼Ò³¤Ô޳ɻúÖÆ·½¿ÉÍøÂçСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£CARUÇ¿µ÷£¬£¬ÌÆÄÉÉ­µÄ4.36ÒÚ¶©ÔÄÕßÖаüÀ¨´ó×Ú¶ùͯÓû§£¬£¬ÆäÎ¥¹æÐÐΪÒÑ×é³ÉϵͳÐÔÒþ˽±£»£»£»£»£»£»¤È±Ê§¡£¡£¡£¡£¡£¡£


https://therecord.media/watchdog-mrbeast-youtube-privacy-colection


3. StellantisÔâµÚÈý·½Æ½Ì¨ÈëÇÖÖÂ1800ÍòÌõ¿Í»§Êý¾Ýй¶


9ÔÂ22ÈÕ£¬£¬Æû³µÖÆÔì¾ÞÍ·StellantisÓÚ¿ËÈÕ֤ʵ£¬£¬¹¥»÷Õßͨ¹ýÈëÇÖÆä±±ÃÀ¿Í»§Ð§ÀÍÔËÓªµÄµÚÈý·½Ð§ÀÍÌṩÉÌÆ½Ì¨£¬£¬ÇÔÈ¡Á˲¿·Ö±±ÃÀ¿Í»§Êý¾Ý¡£¡£¡£¡£¡£¡£StellantisÓÉÆ¯ºóÑ©ÌúÁú¼¯ÍÅÓë·ÆÑÇÌØ¿ËÀ³Ë¹ÀÕÆû³µ¹«Ë¾ÓÚ2021ÄêºÏ²¢½¨É裬£¬ÏÖΪȫÇòÓªÊÕ×î¸ßµÄÆû³µ¹«Ë¾Ö®Ò»¼°ÏúÁ¿µÚÎå´óÖÆÔìÉÌ£¬£¬ÆìÏÂÓµÓа¢¶û·¨¡¤ÂÞÃÜÅ·¡¢¿ËÀ³Ë¹ÀÕ¡¢Ñ©ÌúÁúµÈ14¸öÆ·ÅÆ£¬£¬ÓªÒµÁýÕÖ130¶à¸ö¹ú¼Ò¡£¡£¡£¡£¡£¡£¾Ý¹«Ë¾ÉùÃ÷£¬£¬´Ë´Îй¶½öÉæ¼°¿Í»§ÁªÏµÐÅÏ¢£¬£¬Òò±»ÈëÇÖÆ½Ì¨Î´´æ´¢²ÆÎñ»òÃô¸ÐСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£ÊÂÎñ±¬·¢ºó£¬£¬StellantisÁ¬Ã¦Æô¶¯ÊÂÎñÏìÓ¦»úÖÆ£¬£¬Õö¿ªÖÜÈ«ÊӲ첢¿ØÖÆÊÂ̬£¬£¬Í¬Ê±Í¨ÖªÏà¹Ø²¿·Ö²¢ÏòÊÜÓ°Ïì¿Í»§·¢³ö¾¯Ê¾£¬£¬ÌáÐÑСÐÄÍøÂç´¹ÂÚ¹¥»÷£¬£¬Îðµã»÷¿ÉÒÉÁ´½Ó»ò·ÖÏíСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£¾Ý³Æ´Ë´Î¹¥»÷ÓëShinyHuntersÀÕË÷¼¯ÍŽüÆÚÌᳫµÄSalesforceÊý¾Ýй¶ÊÂÎñÏà¹Ø¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/automaker-giant-stellantis-confirms-data-breach-after-salesforce-hack/


4. ÃÀ¹ú¹«¹²¹ã²¥µµ°¸¹ÝIDORÎó²îÖÂÀúÊ·ÄÚÈÝй¶


9ÔÂ22ÈÕ£¬£¬ÃÀ¹ú¹«¹²¹ã²¥µµ°¸¹Ý£¨AAPB£©±¾ÔÂÇÄÈ»ÐÞ¸´ÁËÒ»¸ö±£´æ¶àÄêµÄÇå¾²Îó²î£¬£¬¸ÃÎó²îÔÊÐíÓû§Í¨¹ýTampermonkey¾ç±¾Ê¹Óò»Çå¾²Ö±½Ó¹¤¾ßÒýÓã¨IDOR£©È±ÏÝ£¬£¬Èƹý»á¼û¿ØÖÆÏÂÔØÊܱ£»£»£»£»£»£»¤µÄ˽ÈËýÌåÄÚÈÝ¡£¡£¡£¡£¡£¡£ÄäÃûÍøÂçÇå¾²Ñо¿Ö°Ô±Åû¶£¬£¬¸ÃÎó²îÖÁÉÙ×Ô2021ÄêÆðÒѱ»Ê¹Ó㬣¬Ö»¹ÜÆäÔøÏòAAPB±¨¸æµ«Î´»ñʵʱ´¦Öóͷ£¡£¡£¡£¡£¡£¡£ÐÞ¸´ºó£¬£¬AAPBͨѶ˾ÀíEmily BalkÇ¿µ÷½«ÔöÇ¿µµ°¸¹ÝÇå¾²ÐÔ£¬£¬Í¬Ê±¼á³Ö¡°Ãâ·Ñ»ñÈ¡¹«¹²Ã½ÌåÀúÊ·¡±µÄʹÃü¡£¡£¡£¡£¡£¡£AAPBÓÉWGBH½ÌÓý»ù½ð»áºÍ¹ú»áͼÊé¹ÝÁªºÏÔËÓª£¬£¬×÷Ϊ·ÇÓªÀû»ú¹¹£¬£¬ÆäʹÃüÊÇÍøÂç¡¢Êý×Ö»¯²¢ÉúÑÄÃÀ¹ú¹«¹²¹ã²¥ºÍµçÊÓÖÆ×÷µÄÀúÊ·ÄÚÈÝ¡£¡£¡£¡£¡£¡£Îó²îÈö²¥Â·¾¶Ê¼ÓÚLost Media Wiki DiscordƵµÀ¶Ô¡¶Ö¥Âé½Ö¡·¡°Î÷·½Ð°¶ñÅ®Îס±¾ç¼¯Ð¹Â¶µÄÌÖÂÛ£¬£¬ºóÀ©É¢ÖÁDiscordÉúÑÄС×飬£¬µ¼ÖÂÊܱ£»£»£»£»£»£»¤ÄÚÈÝÔÚÊý¾Ý¶Ú»ýÕßÉçȺÖнøÒ»²½Èö²¥¡£¡£¡£¡£¡£¡£ÕâЩÉçȺÒÔ´æµµÈí¼þ¡¢Ã½ÌåµÈÐÎʽΪ½¹µã£¬£¬³£ÓÎ×ßÓÚ°æÈ¨»ÒÉ«µØ´ø£¬£¬Ä£ºýÁËÕýµ±ÉúÑÄÓëÊý×ÖµÁ°æµÄ½çÏß¡£¡£¡£¡£¡£¡£Ö»¹ÜÎó²îÒÑÐÞ¸´£¬£¬µ«Êý¾Ý¶Ú»ýÉçÇøÄÚ¹²ÏíµÄÄÚÈÝÁ¿ÈÔ²»Ã÷È·¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/american-archive-of-public-broadcasting-fixes-bug-exposing-restricted-media/


5. ComicFormºÚ¿Í×éÖ¯Õë¶Ô¶«Å·¶à¹ú·¢¶¯ÍøÂç´¹ÂÚ¹¥»÷


9ÔÂ22ÈÕ£¬£¬ComicFormºÚ¿Í×éÖ¯4ÔÂÒÔÀ´Õë¶Ô°×¶íÂÞ˹¡¢¹þÈø¿Ë˹̹¼°¶íÂÞ˹µÄ¹¤Òµ¡¢½ðÈÚ¡¢ÂÃÓΡ¢ÉúÎïÊÖÒÕ¡¢Ñо¿ºÍÉÌÒµÁìÓòÌá³«ÍøÂç´¹ÂÚ¹¥»÷¡£¡£¡£¡£¡£¡£¾ÝÍøÂçÇå¾²¹«Ë¾F6ÆÊÎö£¬£¬¹¥»÷Á´ÒÔ¡°ÆÚ´ýÊðÃûÎļþ¡±¡°¸¶¿î·¢Æ±¡±µÈÖ÷ÌâÓʼþΪÓÕ¶ü£¬£¬ÓÕµ¼ÊÕ¼þÈË·­¿ª°üÀ¨¶ñÒâ¿ÉÖ´ÐÐÎļþµÄRR´æµµ¡£¡£¡£¡£¡£¡£ÕâЩÓʼþʹÓöíÓï»òÓ¢ÓïÌÜд£¬£¬Ô´×Ô.ru¡¢.by¡¢.kzÓòÃû£¬£¬×îÖÕͨ¹ý»ìÏýµÄ.NET¼ÓÔØ³ÌÐòÆô¶¯¡°MechMatrix Pro.dll¡±£¬£¬²¢°²ÅÅFormbook¶ñÒâÈí¼þͶ·ÅÆ÷¡°Montero.dll¡±£¬£¬Í¬Ê±½¨ÉèÍýÏëʹÃü¡¢ÉèÖÃMicrosoft Defenderɨ³ýÏîÒÔÌӱܼì²â¡£¡£¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬¶ñÒâ¶þ½øÖÆÎļþ°üÀ¨Ö¸ÏòòùòðÏÀµÈÂþ»­GIFµÄTumblrÁ´½Ó£¬£¬Òò´Ë¸Ã×éÖ¯µÃÃû¡°ComicForm¡±¡£¡£¡£¡£¡£¡£F6Ñо¿Ô±Ö¸³ö£¬£¬ÕâЩGIF½öΪ´úÂëαװ£¬£¬Î´¼ÓÈëÏÖʵ¹¥»÷¡£¡£¡£¡£¡£¡£´Ë´Î¹¥»÷ÓëÇ×¶í×éÖ¯SectorJ149Õë¶Ôº«¹úµÄ¹¥»÷±£´æ¹ØÁª¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯2024Äê11ÔÂÆðÒÔº«¹úÖÆÔìÒµ¡¢ÄÜÔ´¡¢°ëµ¼ÌåÐÐҵΪĿµÄ£¬£¬Í¨¹ýÓã²æÊ½´¹ÂÚÓʼþ·Ö·¢Lumma Stealer¡¢Remcos RATµÈ¶ñÒâÈí¼þ£¬£¬Æä¹¥»÷´Ó¾­¼ÃÀûÒæ×ªÏòÕþÖÎÄ¿µÄ¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2025/09/comicform-and-sectorj149-hackers-deploy.html


6. LastPass¾¯Ê¾macOSÓû§Ìá·ÀαװʢÐÐÈí¼þµÄ¶ñÒâÈí¼þ¹¥»÷


9ÔÂ22ÈÕ£¬£¬LastPass¿ËÈÕÐû²¼ÖÒÑÔ£¬£¬Ö¸³öÕë¶ÔmacOSÓû§µÄÍøÂç¹¥»÷»î¶¯Õýͨ¹ýαװ³ÉÊ¢ÐÐÈí¼þµÄ¶ñÒâÈí¼þ¾ÙÐÐÈö²¥¡£¡£¡£¡£¡£¡£¹¥»÷ÕßʹÓÃڲƭÐÔGitHub´æ´¢¿â£¬£¬Á¬ÏµËÑË÷ÒýÇæÓÅ»¯£¨SEO£©Õ½ÂÔ£¬£¬ÔÚGoogleºÍBingÉÏÍÆ¹ãÕâЩÐéαӦÓᣡ£¡£¡£¡£¡£ÕâЩӦÓÃÔÚ"ClickFix"¹¥»÷ÖÐͶ·ÅAtomic£¨AMOS£©ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ£¬£¬¸Ã¶ñÒâÈí¼þ×÷ΪЧÀÍÿÔÂÊÕ·Ñ1000ÃÀÔª£¬£¬½üÆÚÐÂÔöºóÃÅ×é¼þ£¬£¬ÔÊÐí¹¥»÷ÕßÒ»Á¬¡¢Òþ²ØµØ»á¼ûÊÜѬȾϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÄ£ÄâÁËÁè¼Ý100ÖÖÈí¼þ½â¾ö¼Æ»®£¬£¬°üÀ¨1Password¡¢Dropbox¡¢Confluence¡¢RobinhoodµÈ×ÅÃû²úÆ·£¬£¬Í¨¹ý¶à¸öÕË»§½¨Éè´ó×ÚÓÕÆ­ÐÔGitHub´æ´¢¿â£¬£¬ÓÅ»¯ËÑË÷ÅÅÃûÒÔÌÓ±Üɾ³ý¡£¡£¡£¡£¡£¡£Óû§µã»÷´æ´¢¿âÖеÄ"ÏÂÔØ°´Å¥"»á±»Ö¸µ¼ÖÁ¸¨ÖúÕ¾µã£¬£¬ÌáÐÑÕ³ÌùÏÂÁîµ½ÖÕ¶ËÖ´ÐÐ×°Öᣡ£¡£¡£¡£¡£¸ÃÏÂÁîͨ¹ýcurlÇëÇóbase64±àÂëµÄURL£¬£¬½«AMOSÓÐÓøºÔØ£¨install.sh£©ÏÂÔØÖÁ/tmpĿ¼¡£¡£¡£¡£¡£¡£´ËÀ๥»÷ʹÓÃÓû§¶ÔÏÂÁîµÄ²»ÏàʶʵÑé¹¥»÷£¬£¬ÊôÓڵ䷶µÄ"ClickFix"¹¥»÷ģʽ¡£¡£¡£¡£¡£¡£Ö»¹ÜLastPassÒ»Á¬¼à¿Ø²¢±¨¸æÐéα´æ´¢¿â£¬£¬µ«ÐÂÕË»§×Ô¶¯»¯½¨Éèµ¼ÖÂÎÊÌâÒ»Á¬±£´æ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/lastpass-fake-password-managers-infect-mac-users-with-malware/