ÃÀ·¨ÔºÊÚȨ΢Èí½ÓÊܳ¯ÏÊAPT37¿ØÖƵÄ50¸öÓòÃû£»£»£»£»£»haveibeenpwnedÊÕ¼Factualй¶µÄ250ÍòÓû§Êý¾Ý

Ðû²¼Ê±¼ä 2019-12-31

1.ÃÀ¹ú»á¼ÆÊ¦ÊÂÎñËùMoss AdamsÔâºÚ¿ÍÈëÇÖ£¬£¬ £¬£¬£¬£¬£¬¿Í»§Êý¾Ý±»µÁ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾




ÃÀ¹ú×î´óµÄ¹«¹²»á¼ÆÊ¦ÊÂÎñËùÖ®Ò»Moss AdamsÅû¶Êý¾Ýй¶ÊÂÎñ£¬£¬ £¬£¬£¬£¬£¬ÏêϸÀ´Ëµ£¬£¬ £¬£¬£¬£¬£¬ºÚ¿ÍÓÚ2019Äê10ÔÂ10ÈÕÀֳɽÓÊÜÁËÒ»ÃûÔ±¹¤µÄµç×ÓÓÊÏäÕË»§£¬£¬ £¬£¬£¬£¬£¬²¢»á¼ûÁ˰üÀ¨¿Í»§ÐÕÃûºÍÉç»áÇå¾²ºÅÂëÔÚÄÚµÄÃô¸ÐÐÅÏ¢£¨PII£©¡£¡£¡£¡£¡£¡£¡£Æ¾Ö¤¸Ã¹«Ë¾Ðû²¼µÄÊý¾Ýй¶֪ͨ£¬£¬ £¬£¬£¬£¬£¬Ã»ÓÐÆäËüÐÅÏ¢Êܵ½Ó°Ï죬£¬ £¬£¬£¬£¬£¬ºÚ¿ÍҲûÓлá¼û¹«Ë¾µÄÄÚ²¿ÍøÂç¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ã»ÓÐÅû¶ÊÜÓ°Ïì¼òÖ±ÇÐÈËÊý£¬£¬ £¬£¬£¬£¬£¬Ò²¿ÉÄÜÊǸÃÊý×ÖÉÐδȷ¶¨¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖÒѽÓÄÉÊʵ±µÄÇå¾²ºÍЧÀͻָ´°ì·¨£¬£¬ £¬£¬£¬£¬£¬²¢ÎªÊÜÓ°ÏìµÄ¿Í»§ÆôÓÃÉí·Ý͵ÇÔ°ü¹ÜÍýÏë¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.technadu.com/moss-adams-discloses-data-breach-exposing-names-social-security-numbers/88684/



2.haveibeenpwnedÊÕ¼Factualй¶µÄ250ÍòÓû§Êý¾Ý


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾



haveibeenpwnedÍøÕ¾ÊÕ¼ÁËFactualй¶µÄ250ÍòÓû§Êý¾Ý£¬£¬ £¬£¬£¬£¬£¬¾Ý³ÆÕâЩÊý¾ÝµÄй¶ÈÕÆÚΪ2017Äê3ÔÂ22ÈÕ£¬£¬ £¬£¬£¬£¬£¬Ô­Ê¼Êý¾Ý¼¯¹²°üÀ¨800ÍòÐÐÊý¾Ý£¬£¬ £¬£¬£¬£¬£¬µ«È¥ÖغóΪԼ250Íò£¨2461696£©£¬£¬ £¬£¬£¬£¬£¬Êý¾Ý°üÀ¨Óû§µÄµç×ÓÓʼþµØµã¡¢¹«Ë¾Ãû³Æ¡¢µØµãºÍµç»°ºÅÂë¡£¡£¡£¡£¡£¡£¡£Factual»ØÓ¦³ÆÕâЩÊý¾ÝÊÇÓëÉÌÒµºÍÆäËüÐËȤµãÓйصĹûÕæÊý¾Ý¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://haveibeenpwned.com/PwnedWebsites#Factual



3.HelloTech¹«Ë¾ÒâÍâй¶²¿·Ö³Ð°üÉÌÒþ˽ÐÅÏ¢


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾




HelloTech¹«Ë¾Ðû²¼Êý¾Ýй¶֪ͨ³Æ£¬£¬ £¬£¬£¬£¬£¬¸Ã¹«Ë¾²¿·Ö×ÔÁ¦³Ð°üÉ̵ÄÃô¸ÐÐÅÏ¢±»ÒâÍâÐû²¼ÔÚ¹«ÍøÉÏ£¬£¬ £¬£¬£¬£¬£¬¸Ã¹«Ë¾ÔÚ½Óµ½±¨¸æºóÁ¬Ã¦¶ÔÕâЩÊý¾Ý½ÓÄÉÁ˱£»£»£»£»£»¤²½·¥£¬£¬ £¬£¬£¬£¬£¬µ«²»¿ÉÈ·¶¨ËüÃÇÊÇ·ñÒÑÔâ»á¼û¡£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñ±¬·¢ÔÚ11ÔÂ15ÈÕ£¬£¬ £¬£¬£¬£¬£¬¿ÉÄÜй¶µÄÊý¾Ý°üÀ¨ÐÕÃû¡¢µØµã¡¢¼ÝÕÕÐÅÏ¢¡¢ÕÕÆ¬µÈ£¬£¬ £¬£¬£¬£¬£¬µ«²»°üÀ¨ÈκÎÉç»áÇå¾²ºÅÂëºÍ²ÆÎñÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Î´Í¸Â¶ÊÜÓ°ÏìµÄÏêϸÈËÊý£¬£¬ £¬£¬£¬£¬£¬µ«ÌåÏÖ½«ÎªÊÜÓ°ÏìµÄÈËÌṩһÄêµÄÃâ·ÑÐÅÓÃ¼à¿ØÐ§ÀÍ¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://oag.ca.gov/system/files/General%20Notice%20Z507_v02.PDF



4.Lumber LiquidatorsÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬ £¬£¬£¬£¬£¬ÊÕÈëËðʧ´ï800ÍòÃÀÔª


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾



Lumber Liquidators¹«Ë¾ÔÚ8ÔÂ21ÈÕÔâµ½¶ñÒâÈí¼þ¹¥»÷£¬£¬ £¬£¬£¬£¬£¬ÆäÅÌËã»úϵͳ¹Ø±Õ¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾µÄÁãÊÛÔ±¹¤ÎÞ·¨Éó²é²úÆ·¼ÛÇ®»ò¿â´æ£¬£¬ £¬£¬£¬£¬£¬ËûÃDZØÐèͨ¹ýµç»°»ò´ÓÆäСÎÒ˽¼Òµç×ÓÓʼþÕÊ»§ÏòÅäËÍÖÐÐÄ·¢ËͶ©µ¥£¬£¬ £¬£¬£¬£¬£¬²¢ÔÚÖ½Éϼͼ¿Í»§µÄÐÅÓÿ¨ÐÅÏ¢£¬£¬ £¬£¬£¬£¬£¬Ã¿´ÎÉúÒâ×î¶àÆÆ·Ñ°ëСʱµÄʱ¼ä¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚ11ÔµÄÊÓ²ìÎļþÖÐÌåÏÖ£¬£¬ £¬£¬£¬£¬£¬´Ë´Î¹¥»÷Ô¤¼ÆÔì³ÉÁË600ÍòÖÁ800ÍòÃÀÔªµÄÊÕÈëËðʧ¡£¡£¡£¡£¡£¡£¡£



Ô­ÎÄÁ´½Ó£º

https://www.salon.com/2019/12/29/like-voldemort-ransomware-is-too-scary-to-be-named_partner/



5.Ñо¿ÍŶÓÐû²¼APT×éÖ¯BRONZE PRESIDENTµÄÆÊÎö±¨¸æ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾



SecureworksÍþвÇ鱨ÖÐÐÄÐû²¼¹ØÓÚAPT×éÖ¯BRONZE PRESIDENTµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£BRONZE PRESIDENTÖ÷ÒªÕë¶Ô·ÇÕþ¸®×éÖ¯ºÍÄÏÑǼ°¶«Ñǹú¼ÒµÄÕþ¸®ºÍÖ´·¨»ú¹¹£¬£¬ £¬£¬£¬£¬£¬¸Ã×éÖ¯¿ª·¢ÁË×Ô¼ºµÄÔ¶¿Ø¹¤¾ß£¬£¬ £¬£¬£¬£¬£¬²¢Ê¹ÓöàÖÖ¹ûÕæ¿ÉÓõŤ¾ß¼¯¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÊӲ쵽¸Ã×é֯ʹÓùýµÄ¹¤¾ß°üÀ¨£ºCobalt Strike¡¢Ô¶¿ØÄ¾ÂíPlugX¡¢ORat¡¢RCSession¡¢Nbtscan¡¢Nmap¼°Wmiexec¡£¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯¿ÉÄÜÔçÔÚ2014Äê¾Í×îÏÈÁ˹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£



Ô­ÎÄÁ´½Ó£º

https://www.secureworks.com/research/bronze-president-targets-ngos



6.ÃÀ·¨ÔºÊÚȨ΢Èí½ÓÊܳ¯ÏÊAPT37¿ØÖƵÄ50¸öÓòÃû


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾



΢ÈíÀֳɽÓÊÜÁËÓɳ¯ÏʺڿÍ×éÖ¯APT37¿ØÖƵÄ50¸öÓòÃû£¬£¬ £¬£¬£¬£¬£¬ÕâЩÓòÃû±»¸Ã×éÖ¯ÓÃÀ´Ìá³«ÍøÂç¹¥»÷£¬£¬ £¬£¬£¬£¬£¬°üÀ¨·¢ËÍ´¹ÂÚÓʼþºÍÍйܴ¹ÂÚÒ³ÃæµÈ¡£¡£¡£¡£¡£¡£¡£Î¢ÈíÌåÏÖÆäÊý×Ö·¸·¨²¿·Ö£¨DCU£©ºÍÍþвÇ鱨ÖÐÐÄ£¨MSTIC£©ÒѾ­¼àÊÓAPT37³¤´ïÊýÔµÄʱ¼ä£¬£¬ £¬£¬£¬£¬£¬²¢ÓÚ12ÔÂ18ÈÕÔÚ¸¥¼ªÄáÑÇÖÝ·¨Ôº¶Ô¸Ã×éÖ¯ÌáÆðËßËÏ¡£¡£¡£¡£¡£¡£¡£¸Ã·¨ÔºÊÚÓè΢ÈíȨÏÞÒÔ½ÓÊÜAPT37ÔÚ·¸·¨»î¶¯ÖÐʹÓõÄ50¸öÓòÃû¡£¡£¡£¡£¡£¡£¡£Î¢Èí¸ß¹ÜÌåÏÖ¸Ã×éÖ¯µÄ´ó´ó¶¼Ä¿µÄ¶¼Î»ÓÚÃÀ¹ú¡¢ÈÕ±¾ÒÔ¼°º«¹ú¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/microsoft-takes-down-50-domains-operated-by-north-korean-hackers/