À×ŵ¼°´ïÆõÑǿͻ§Êý¾ÝÒòµÚÈý·½Ð¹Â¶ÔâÇÔ

Ðû²¼Ê±¼ä 2025-10-09

1. À×ŵ¼°´ïÆõÑǿͻ§Êý¾ÝÒòµÚÈý·½Ð¹Â¶ÔâÇÔ


10ÔÂ3ÈÕ£¬£¬£¬£¬£¬ £¬Ó¢¹úÀ×ŵÓë´ïÆõÑÇ¿ËÈÕÏò¿Í»§·¢³ö֪ͨ£¬£¬£¬£¬£¬ £¬³ÆÒòµÚÈý·½¹©Ó¦ÉÌÔâÊÜÍøÂç¹¥»÷£¬£¬£¬£¬£¬ £¬µ¼Ö²¿·Ö¿Í»§Ãô¸ÐÐÅϢй¶¡£¡£¡£À×ŵ×÷ΪÄêÓªÊÕ³¬550ÒÚÃÀÔª¡¢ÓµÓÐ17ÍòÃûÔ±¹¤¡¢Äê²úÁ¿220ÍòÁ¾µÄ·¨¹úÆû³µ¾ÞÍ·£¬£¬£¬£¬£¬ £¬Æä×Ó¹«Ë¾´ïÆõÑÇÒÔʵ»Ý¿É¿¿µÄ³µÐÍÖøÃû¡£¡£¡£´Ë´ÎÊÂÎñÔ´ÓÚδǩ×ֵĵÚÈý·½¹©Ó¦ÉÌϵͳ±»ÈëÇÖ£¬£¬£¬£¬£¬ £¬Ð¹Â¶Êý¾Ý°üÀ¨¿Í»§ÐÕÃû¡¢ÐԱ𡢵绰ºÅÂë¡¢µç×ÓÓʼþ¡¢ÓÊÕþµØµã¡¢³µÁ¾Ê¶ÓÖÃûÂë¼°¹ÒºÅºÅÂëµÈ£¬£¬£¬£¬£¬ £¬µ«ÒøÐлò²ÆÎñÐÅϢδÊܲ¨¼°¡£¡£¡£¹¥»÷Õß¿ÉÄÜʹÓÃÕâЩÐÅÏ¢¾ÙÐд¹ÂÚ¹¥»÷¡¢Õ©Æ­»òÉç»á¹¤³Ì¹¥»÷¡£¡£¡£À×ŵǿµ÷£¬£¬£¬£¬£¬ £¬Ä¿µÄ¹«Ë¾ÒѸôÀëÊÂÎñ²¢É¨³ýÍþв£¬£¬£¬£¬£¬ £¬Ó¢¹úÐÅϢרԱ°ì¹«ÊÒ£¨ICO£©µÈÕþ¸®ÒÑ»ñÖªÇéÐΡ£¡£¡£À×ŵÌåÏÖÒòÌõÔ¼ÏÞÖÆÎÞ·¨Í¸Â¶¹©Ó¦ÉÌÐÅÏ¢£¬£¬£¬£¬£¬ £¬ÇÒÊÜÓ°Ïì¿Í»§ÊýÄ¿Ôݲ»Ã÷È·¡£¡£¡£À×ŵ½¨ÒéÊÜÓ°Ïì¿Í»§Ð¡ÐÄδÇëÇóµÄµç»°ºÍÓʼþ£¬£¬£¬£¬£¬ £¬ÇÐÎð͸¶ÃÜÂë¡£¡£¡£


https://www.bleepingcomputer.com/news/security/renault-and-dacia-uk-warn-of-data-breach-impacting-customers/


2. ·ðÂÞÀï´ïÒ½ÉúÓ°Ïñ¼¯Íų¬17ÍòÈËÊý¾Ýй¶


10ÔÂ6ÈÕ£¬£¬£¬£¬£¬ £¬ÃÀ¹ú·ðÂÞÀï´ïÖÝÒ½ÉúÓ°Ïñ¼¯ÍÅ£¨Doctors Imaging Group£©¿ËÈÕÅû¶һÆð´ó¹æÄ£Êý¾Ýй¶ÊÂÎñ¡£¡£¡£¸Ã¼¯ÍÅÔÚÅÁÀ­ÌØ¿¨ºÍ¸Ç¶÷˹ά¶ûÉèÓÐЧÀÍ´¦µÄ·ÅÉä¿ÆÕïËù£¬£¬£¬£¬£¬ £¬ÓÚ2024Äê11ÔÂ5ÈÕÖÁ11ÈÕʱ´úÔâºÚ¿ÍÈëÇÖÍøÂçϵͳ£¬£¬£¬£¬£¬ £¬¹¥»÷ÕßÀֳɸ´ÖƲ¿·ÖÎļþ¡£¡£¡£¾­ÓɽüÒ»ÄêµÄÊӲ죬£¬£¬£¬£¬ £¬¸Ã»ú¹¹ÓÚ2025Äê8ÔÂÏÂÑ®Íê³ÉÊӲ첢ת´ïÃÀ¹úÎÀÉúÓ빫ÖÚЧÀͲ¿£¨HHS£©£¬£¬£¬£¬£¬ £¬È·ÈÏ´Ë´ÎÊÂÎñÓ°ÏìÁè¼Ý17.1ÍòÈË¡£¡£¡£Ð¹Â¶Êý¾Ýº­¸Ç»¼ÕßÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬ £¬°üÀ¨ÐÕÃû¡¢µØµã¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢½ðÈÚÕ˺𢲡ÀúºÅ¡¢¿µ½¡°ü¹ÜÐÅÏ¢¼°Ò½ÁÆË÷Åâ¼Í¼µÈ¡£¡£¡£Ö»¹ÜÏÖÔÚÉÐÎÞÖ¤¾ÝÅú×¢ÒøÐлò²ÆÎñÐÅÏ¢±»ÇÔ£¬£¬£¬£¬£¬ £¬µ«Éç»áÇå¾²ºÅÂëµÈ½¹µãÉí·ÝÐÅÏ¢µÄй¶£¬£¬£¬£¬£¬ £¬ÒÑʹÊÜÓ°ÏìÕßÃæÁÙÉí·Ý͵ÇÔ¡¢½ðÈÚÕ©Æ­¼°¾«×¼Ò½ÁÆÕ©Æ­µÄÖØ´óΣº¦¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬£¬£¬ £¬¸ÃÊÂÎñδÃ÷È·ÊÇ·ñÉæ¼°ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬ £¬ÒàÎÞÒÑÖªÍøÂç·¸·¨ÍÅ»ïÐû³Æ¶Ô´ËÈÏÕæ¡£¡£¡£Ò½ÉúÓ°Ïñ¼¯ÍÅÔÚ֪ͨÖÐÇ¿µ÷£¬£¬£¬£¬£¬ £¬ÒѽÓÄɲ½·¥¸ôÀëÊÜÓ°Ïìϵͳ²¢É¨³ýÍþв£¬£¬£¬£¬£¬ £¬µ«ÊÜÏÞÓÚÌõÔ¼Ìõ¿î¼°ÊÓ²ìÏ£Íû£¬£¬£¬£¬£¬ £¬ÔÝÎÞ·¨Åû¶ÏêϸÊÜÓ°Ïì¿Í»§ÊýÄ¿¼°ÉæÊµÚÈý·½¹©Ó¦ÉÌÉí·Ý¡£¡£¡£¼¯ÍލÒéÊÜÓ°Ïì¿Í»§Ç×½ü¼à¿ØÐ¡ÎÒ˽¼ÒÕË»§Òì³££¬£¬£¬£¬£¬ £¬Ð¡ÐÄ´¹ÂÚÓʼþ¼°Î´ÊÚȨͨѶ£¬£¬£¬£¬£¬ £¬²¢°´ÆÚ¸üÐÂÃÜÂë¡£¡£¡£


https://www.securityweek.com/data-breach-at-doctors-imaging-group-impacts-171000-people/


3. Rainwalk³èÎï°ü¹Üй¶158 GBÃÀ¹ú¿Í»§ºÍ³èÎïÊý¾Ý


10ÔÂ6ÈÕ£¬£¬£¬£¬£¬ £¬ÄÏ¿¨ÂÞÀ´ÄÉÖݳèÎïЧÀ͹«Ë¾Rainwalk PetÒòÊý¾Ý¿âÉèÖùýʧµ¼Ö´ó¹æÄ£Êý¾Ýй¶£¬£¬£¬£¬£¬ £¬ÍøÂçÇå¾²Ñо¿Ô±Jeremiah Fowler·¢Ã÷¸ÃδÉèÃÜÂë±£»£»£»¤»ò¼ÓÃܵÄ158GBÊý¾Ý¿âºó£¬£¬£¬£¬£¬ £¬Í¨¹ýWebsite Planet֤ʵÊÂÎñÕæÊµÐÔ¡£¡£¡£´Ë´ÎÐ¹Â¶Éæ¼°Ô¼8.5Íò·ÝÎļþ£¬£¬£¬£¬£¬ £¬°üÀ¨³èÎï°ü¹ÜË÷Åâ¡¢ÊÞÒ½Õ˵¥µÈÃô¸Ð¼Í¼£¬£¬£¬£¬£¬ £¬Ïêϸ̻¶¿Í»§ÐÕÃû¡¢µç»°¡¢µØµã¡¢ÓÊÏä¼°²¿·ÖÐÅÓÿ¨ºÅ£¬£¬£¬£¬£¬ £¬ÒÔ¼°³èÎïÐÕÃû¡¢Æ·ÖÖ¡¢²¡Ê·¡¢Ð¾Æ¬ºÅÂëµÈÉî¶ÈÐÅÏ¢¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬£¬£¬ £¬Êý¾Ý¿âÔÚ±»Çå¾²¼Ó¹ÌÇ°ÔøÒ»Á¬¿É»á¼û½üÒ»¸öÔ£¬£¬£¬£¬£¬ £¬ÏÖʵ̻¶ʱ³¤¼°ÊÇ·ñÔâ¶ñÒâ»á¼ûÈÔ´ý²éÖ¤¡£¡£¡£´Ë´ÎÊÂÎñ͹ÏÔ³èÎïÊý¾ÝÓëСÎÒ˽¼ÒÉí·ÝÐÅÏ¢£¨PII£©¹ØÁªºóµÄ¸ßΣº¦ÐÔ£¬£¬£¬£¬£¬ £¬³èÎïÐÅϢȱ·¦Ö±½ÓÖ´·¨±£»£»£»¤£¬£¬£¬£¬£¬ £¬µ«µ±ÓëPII½áÊÊʱ£¬£¬£¬£¬£¬ £¬È´³ÉÎªÍøÂç·¸·¨·Ö×ÓÑÛÖеġ°¸ß¼ÛֵĿµÄ¡±¡£¡£¡£ÀýÈ磬£¬£¬£¬£¬ £¬·¸·¨·Ö×Ó¿ÉʹÓÃй¶µÄ΢оƬºÅÂë·¢ËÍ¡°Ðø·Ñ¡±Õ©Æ­Óʼþ£¬£¬£¬£¬£¬ £¬»òͨ¹ýαÔìÊÞÒ½Õ˵¥ÊµÑ龫׼ڲƭ£»£»£»°ü¹Ü¹«Ë¾ÒàÃæÁÙÐéαË÷Åâµ¼ÖµIJÆÎñËðʧΣº¦¡£¡£¡£¸üÑÏËàµÄÊÇ£¬£¬£¬£¬£¬ £¬Rainwalk PetÔø½¨Òé¿Í»§Í¨¹ý·¢ËͶþάÂëÖÁVenmo»ñÈ¡Í˿£¬£¬£¬£¬ £¬ÕâÒ»Á÷³Ì±£´æ±»·¸·¨·Ö×Ó½ØÁô¸¶¿îµÄΣº¦¡£¡£¡£


https://hackread.com/rainwalk-pet-insurance-158-gb-customer-pet-data/


4. ÷è÷ëÀÕË÷Èí¼þ¹¥»÷÷¿ËÂ×±¤Ïع«Á¢Ñ§Ð£


10ÔÂ7ÈÕ£¬£¬£¬£¬£¬ £¬¿ËÈÕ£¬£¬£¬£¬£¬ £¬¶íÂÞË¹ÍøÂç·¸·¨×éÖ¯÷è÷ëÐû³Æ¶Ô¸¥¼ªÄáÑÇÖÝ÷¿ËÂ×±¤Ïع«Á¢Ñ§Ð££¨MCPS£©µÄÀÕË÷Èí¼þ¹¥»÷ÈÏÕæ¡£¡£¡£¸ÃÊÂÎñµ¼ÖÂѧУÔËÓªÑÏÖØÊÜ×裬£¬£¬£¬£¬ £¬Î÷ϯ±»ÆÈʹÓÃÖ½±ÊºÍ°×°å½Ìѧ£¬£¬£¬£¬£¬ £¬»¥ÁªÍøÏµÍ³ÖÐÖ¹Ò»Öܺó»Ö¸´¡£¡£¡£÷è÷ëÉù³ÆÇÔÈ¡ÁË305GBÃô¸ÐÊý¾Ý£¬£¬£¬£¬£¬ £¬º­¸Ç²ÆÎñ¼Í¼¡¢²¦¿îÎļþ¡¢Ô¤Ëã¼°¶ùͯҽÁƵµ°¸£¬£¬£¬£¬£¬ £¬²¢Ðû²¼Ñù±¾Í¼Æ¬×ôÖ¤¡£¡£¡£Ñ§ÇøÈÏÕæÈË˹¿ÆÌØ¡¤ÎÖÄÉ֤ʵ¹¥»÷ÕßÉí·Ý£¬£¬£¬£¬£¬ £¬µ«Ã÷È·ÌåÏÖ¡°²»ÍýÏëÖ§¸¶Êê½ð¡±£¬£¬£¬£¬£¬ £¬×îÖÕ¾öÒ齫ȡ¾öÓÚÊÓ²ìЧ¹û¼°Îļþ¼ÓÃÜ/й¶Ö鯽¡£¡£¡£÷è÷ë×éÖ¯×Ô2022Äêµ×ÒÔ¡°ÀÕË÷Èí¼þ¼´Ð§ÀÍ£¨RaaS£©¡±Ä£Ê½ÔËÓª£¬£¬£¬£¬£¬ £¬Í¨¹ý´¹ÂÚÓʼþÈö²¥¶ñÒâÈí¼þ£¬£¬£¬£¬£¬ £¬Á¥Êô³ÉÔ±Åó·ÖÊê½ð¡£¡£¡£2025Ä꣬£¬£¬£¬£¬ £¬¸Ã×éÖ¯ÒÑÐû³Æ¶Ô103ÆðÈ·ÈÏÊÂÎñºÍ470Æðδ¾­Ö¤ÊµÊÂÎñÈÏÕæ£¬£¬£¬£¬£¬ £¬½ÌÓý»ú×é³ÉΪÖ÷ҪĿµÄ¡£¡£¡£³ýMCPSÍ⣬£¬£¬£¬£¬ £¬Î÷ÐÂÄ«Î÷¸ç´óѧ¡¢²©ÌØÍÐÌØÏØ¹«Á¢Ñ§Ð£µÈÒ²Ôâ¹¥»÷¡£¡£¡£


https://www.infosecurity-magazine.com/news/qilin-ransomware-mecklenburg/


5. µç×Ó¾ÞÍ·°²¸»ÀûÈ·ÈÏÊý¾Ýй¶£¬£¬£¬£¬£¬ £¬±»µÁÊý¾ÝÎÞ·¨¶ÁÈ¡


10ÔÂ7ÈÕ£¬£¬£¬£¬£¬ £¬µç×ÓÔª¼þ·ÖÏúḚ́²¸»Àû¿ËÈÕ֤ʵÔâÓöÊý¾Ýй¶£¬£¬£¬£¬£¬ £¬µ«Ç¿µ÷ÆäרÓÐÏúÊÛ¹¤¾ßδÊÜÓ°Ï죬£¬£¬£¬£¬ £¬ÇÒδ¾­¸Ã¹¤¾ßÎÞ·¨¶ÁÈ¡´ó²¿·Ö±»µÁÊý¾Ý¡£¡£¡£ÊÂÎñÔ´ÓÚÍⲿÍйÜÔÆ´æ´¢ÔâδÊÚȨ»á¼û£¬£¬£¬£¬£¬ £¬¸Ã´æ´¢Ö§³ÖEMEA£¨Å·ÖÞ¡¢Öж«¡¢·ÇÖÞ£©µØÇøÄÚ²¿ÏúÊÛ¹¤¾ß¡£¡£¡£ÍþвÐÐΪÕßÐû³ÆÇÔÈ¡1.3TBѹËõÊý¾Ý£¨Ï൱ÓÚ7-12TBԭʼÊý¾Ý£©£¬£¬£¬£¬£¬ £¬º­¸ÇEMEA¼°ÆäËûµØÇøÔËӪϸ½Ú£¬£¬£¬£¬£¬ £¬°üÀ¨ÀúÊ·ÏúÊÛµã¼Í¼¡¢Ç±ÔÚÏúÊÛʱ»ú¡¢¿Í»§ÁªÏµ·½·¨£¨ÈçÔ±¹¤ÓÊÏ䣩¼°²¿·ÖСÎÒ˽¼ÒÉí·ÝÐÅÏ¢£¨PII£©¡£¡£¡£°²¸»ÀûÖ¸³ö£¬£¬£¬£¬£¬ £¬ÈôÊý¾ÝÊôGDPR½ç˵µÄÃô¸ÐÐÅÏ¢Ôòδй¶£¬£¬£¬£¬£¬ £¬´¿Îı¾Ñù±¾ÒÑ֤ʵ±£´æPII£¬£¬£¬£¬£¬ £¬µ«ÕûÌåÓ°ÏìÓÐÏÞ¡£¡£¡£°²¸»ÀûÓÚ9ÔÂ26ÈÕ·¢Ã÷Îó²îºó£¬£¬£¬£¬£¬ £¬Ñ¸ËÙÔÚAzure/DatabricksÇéÐÎÖÐÂÖ»»ËùÓÐÉñÃØ£¬£¬£¬£¬£¬ £¬µ±ÍíÍê³É²Ù×÷ÇÒδ·¢Ã÷ºóÐøÎ´ÊÚȨ»î¶¯¡£¡£¡£ÊÂÎñ½öÏÞEMEAµØÇøµ¥¸öϵͳ£¬£¬£¬£¬£¬ £¬Î´ÈÅÂÒÈ«ÇòÔËÓª¡£¡£¡£ºÚ¿ÍÔÚ°µÍø½¨ÉèйÃÜÍøÕ¾£¬£¬£¬£¬£¬ £¬Ðû²¼Ñù±¾Ê©Ñ¹Êê½ðÖ§¸¶£¬£¬£¬£¬£¬ £¬°²¸»ÀûÃ÷È·¾Ü¾ø²¢Ç¿µ÷¡°¾­¼ÃÀûÒæÇý¶¯¡±µÄ¹¥»÷ÐÔ×Ó¡£¡£¡£¹«Ë¾ÒÑÏòî¿Ïµ²¿·Öת´ï£¬£¬£¬£¬£¬ £¬²¢½«Ö±½ÓÁªÏµÊÜÓ°Ïì¿Í»§ºÍ¹©Ó¦ÉÌ£¬£¬£¬£¬£¬ £¬µ«ÊÜÓ°ÏìÈËÊýÉв»Ã÷È·¡£¡£¡£


https://www.bleepingcomputer.com/news/security/electronics-giant-avnet-confirms-breach-says-stolen-data-unreadable/


6. ClopÍÅ»ïʹÓÃOracle EBSÁãÈÕÎó²îÌᳫÊý¾Ý͵ÇÔ¹¥»÷


10ÔÂ7ÈÕ£¬£¬£¬£¬£¬ £¬¾ÝÍøÂçÇå¾²¹«Ë¾CrowdStrikeÅû¶£¬£¬£¬£¬£¬ £¬ClopÀÕË÷Èí¼þÍÅ»ï×Ô2025Äê8Ô³õÆð£¬£¬£¬£¬£¬ £¬Ò»Á¬Ê¹ÓÃOracleµç×ÓÉÌÎñÌ×¼þ£¨EBS£©µÄÒªº¦ÁãÈÕÎó²îCVE-2025-61882ʵÑéÊý¾Ý͵ÇÔ¹¥»÷¡£¡£¡£¸ÃÎó²îλÓÚEBS²¢·¢´¦Öóͷ£×é¼þµÄBI Publisher IntegrationÄ£¿ £¿£¿£¿£¿é£¬£¬£¬£¬£¬ £¬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õßͨ¹ýµ¥¸öHTTPÇëÇóʵÏÖÔ¶³Ì´úÂëÖ´ÐУ¬£¬£¬£¬£¬ £¬ÎÞÐèÓû§½»»¥ÇÒ¹¥»÷ÖØÆ¯ºóµÍ¡£¡£¡£OracleÒÑÓÚÖÜÄ©Ðû²¼²¹¶¡ÐÞ¸´´ËÎó²î£¬£¬£¬£¬£¬ £¬µ«Îó²îÁ´ÌØÕ÷ʹÆäÈԾ߸ßΣÐÔ¡£¡£¡£CrowdStrikeÆÀ¹ÀÒÔΪ£¬£¬£¬£¬£¬ £¬³ýClopÍ⣬£¬£¬£¬£¬ £¬Íþв×éÖ¯Graceful Spider¿ÉÄÜÒ²¼ÓÈëÁ˹¥»÷£¬£¬£¬£¬£¬ £¬ÇÒ²»É¨³ýÆäËûÊìϤOracle EBSµÄÍþвÐÐΪÕß¼ÓÈë¡£¡£¡£Ê×´ÎÒÑÖª¹¥»÷±¬·¢ÓÚ8ÔÂ9ÈÕ£¬£¬£¬£¬£¬ £¬µ«ÊÓ²ìÈÔÔÚ¾ÙÐÐÖС£¡£¡£10ÔÂ3ÈÕÎó²î¿´·¨ÑéÖ¤£¨PoC£©Åû¶ºó£¬£¬£¬£¬£¬ £¬ÍþвÐÐΪÕß¿ÉÄܼÓËÙ¿ª·¢ÎäÆ÷»¯PoC£¬£¬£¬£¬£¬ £¬Õë¶Ô̻¶ÔÚ»¥ÁªÍøµÄEBSÓ¦ÓÃÌᳫ¹¥»÷¡£¡£¡£OracleÒѽôÆÈ±Þ²ß¿Í»§ÓÅÏÈÐÞ²¹Îó²î£¬£¬£¬£¬£¬ £¬Ç¿µ÷Ò»Á¬Ê¹ÓÃÊÜÖ§³Ö°æ±¾²¢Á¬Ã¦Ó¦ÓÃÇå¾²¸üС£¡£¡£


https://www.bleepingcomputer.com/news/security/oracle-zero-day-exploited-in-clop-data-theft-attacks-since-early-august/