Google·¢Ã÷¶à¸öÍÅ»ïʹÓÃWinRARÎó²îCVE-2023-38831

Ðû²¼Ê±¼ä 2023-10-20

1¡¢Google·¢Ã÷¶à¸öÍÅ»ïʹÓÃWinRARÎó²îCVE-2023-38831


Google TAGÔÚ10ÔÂ18Èճƣ¬£¬£¬£¬£¬£¬ £¬·¢Ã÷Á˶à¸öºÚ¿ÍÍÅ»ïʹÓÃWinRARÖÐÎó²î£¨CVE-2023-38831£©µÄ¹¥»÷»î¶¯¡£¡£ ¡£¡£¡£¡£ÔÚ9Ô³õµÄÒ»´Î¹¥»÷ÖУ¬£¬£¬£¬£¬£¬ £¬SandwormʹÓÃð³äµÄÎÚ¿ËÀ¼ÎÞÈË»úÅàѵѧУԼÇ뺯£¬£¬£¬£¬£¬£¬ £¬Í¨¹ý´¹ÂÚ¹¥»÷Èö²¥Rhadamanthys¡£¡£ ¡£¡£¡£¡£ATP28ʹÓøÃÎó²îÈö²¥Õë¶ÔÄÜÔ´»ù´¡ÉèÊ©µÄ¶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬ £¬Ëü»¹Ê¹ÓöñÒâPowerShell¾ç±¾(IRONJAW)ÇÔÈ¡ä¯ÀÀÆ÷ƾ֤¡£¡£ ¡£¡£¡£¡£APT40ʹÓøÃÎó²îÕë¶Ô°Í²¼ÑÇм¸ÄÚÑÇ·Ö·¢ISLANDSTAGERºÍBOXRAT¡£¡£ ¡£¡£¡£¡£


https://blog.google/threat-analysis-group/government-backed-actors-exploiting-winrar-vulnerability/


2¡¢¿¨Î÷Å·ClassPad½ÌÓýƽ̨Ôâµ½ÈëÇÖµ¼Ö¿ͻ§Êý¾Ýй¶


¾Ý10ÔÂ19ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬ÈÕ±¾µç×Ó²úÆ·ÖÆÔìÉÌ¿¨Î÷Å·(Casio)͸¶£¬£¬£¬£¬£¬£¬ £¬ÆäClassPad½ÌÓýƽ̨µÄЧÀÍÆ÷Ôâµ½ÈëÇÖ£¬£¬£¬£¬£¬£¬ £¬Ó°ÏìÁËÀ´×Ô149¸ö¹ú¼Ò/µØÇøµÄ¿Í»§¡£¡£ ¡£¡£¡£¡£¿£¿£¿ £¿£¿¨Î÷Å·ÓÚ10ÔÂ11ÈÕ¼ì²âµ½¸ÃÊÂÎñ£¬£¬£¬£¬£¬£¬ £¬Ôµ¹ÊÔ­ÓÉÊÇ¿ª·¢ÇéÐÎÖеÄClassPadÊý¾Ý¿â±¬·¢¹ÊÕÏ¡£¡£ ¡£¡£¡£¡£ÓÐÖ¤¾ÝÅú×¢£¬£¬£¬£¬£¬£¬ £¬¹¥»÷ÕßÔÚ10ÔÂ12ÈÕ»á¼ûÁ˿ͻ§ÐÅÏ¢¡£¡£ ¡£¡£¡£¡£×èÖ¹10ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬ £¬¹¥»÷Õß»ñµÃÁËÈÕ±¾¿Í»§µÄ91921Ìõ¼Í¼£¬£¬£¬£¬£¬£¬ £¬ÒÔ¼°ÆäËü148¸ö¹ú¼Ò/µØÇø¿Í»§µÄ35049Ìõ¼Í¼¡£¡£ ¡£¡£¡£¡£Ö»¹Ü±»ÈëÇÖµÄÊý¾Ý¿âÏÖÔÚÎÞ·¨»á¼û£¬£¬£¬£¬£¬£¬ £¬µ«ClassPad.netÓ¦ÓÃÈÔÔÚÔËÐС£¡£ ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/casio-discloses-data-breach-impacting-customers-in-149-countries/


3¡¢ºÚ¿ÍÔÚ°µÍøÔٴιûÕæ410ÍòÌõ23andMeÓû§µÄÐÅÏ¢µµ°¸


¾Ý10ÔÂ18ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬ £¬ºÚ¿ÍGolemÔÚ°µÍøBreachForumsй¶ÁË410Íò¸ö23andMe¿Í»§µÄ×ÊÁÏ¡£¡£ ¡£¡£¡£¡£ÆäÖаüÀ¨Ó¢¹ú¿Í»§µÄ4011607Êý¾Ý£¬£¬£¬£¬£¬£¬ £¬Éæ¼°ÍõÊÒ¡¢ÂÞ˹²ñ¶ûµÂ¼Ò×åºÍÂå¿Ë·ÆÀÕ¼Ò×åµÄÒÅ´«ÐÅÏ¢£¬£¬£¬£¬£¬£¬ £¬ÒÔ¼°139172ÌõµÂ¹ú¿Í»§µÄÊý¾Ý¡£¡£ ¡£¡£¡£¡£23andMeÌåÏÖ£¬£¬£¬£¬£¬£¬ £¬ËûÃÇÒÑÒâʶµ½ÐµÄÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬£¬£¬ £¬²¢ÕýÔÚ¾ÙÐÐÊӲ졣¡£ ¡£¡£¡£¡£±¾Ô³õ£¬£¬£¬£¬£¬£¬ £¬¹¥»÷Õß»¹Ôø¹ûÕæÁË100ÍòµÂÒáÓÌÌ«È˵ÄÊý¾Ý£¬£¬£¬£¬£¬£¬ £¬23andMe½«¸ÃÊÂÎñ¹éÒòÓÚײ¿â¹¥»÷¡£¡£ ¡£¡£¡£¡£ÕâЩй¶ÊÂÎñµ¼ÖÂ23andMeÃæÁÙ×Å´ó×ÚµÄËßËÏ¡£¡£ ¡£¡£¡£¡£

 

https://www.bleepingcomputer.com/news/security/hacker-leaks-millions-of-new-23andme-genetic-data-profiles/


4¡¢IT¹«Ë¾DNA MicroϵͳÉèÖùýʧ82Íò¿Í»§µÄÐÅϢй¶


ýÌå10ÔÂ18Èճƣ¬£¬£¬£¬£¬£¬ £¬ÃÀ¹ú¼ÓÖݵÄIT¹«Ë¾DNA MicroÓÉÓÚϵͳÉèÖùýʧ£¬£¬£¬£¬£¬£¬ £¬Ð¹Â¶ÁËÁè¼Ý820000Ãû¿Í»§µÄÊý¾Ý¡£¡£ ¡£¡£¡£¡£8ÔÂ16ÈÕ£¬£¬£¬£¬£¬£¬ £¬Ñо¿ÍŶӷ¢Ã÷ÁË3¸ö¿ª·ÅµÄKibanaʵÀý£¬£¬£¬£¬£¬£¬ £¬°üÀ¨ÊôÓÚDNA MicroµÄÊý¾Ý£¬£¬£¬£¬£¬£¬ £¬ÆäÖÐ×î´óµÄÊý¾Ý´æ´¢¸ß´ï81GB¡£¡£ ¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢Éæ¼°ÐÕÃû¡¢µç»°¡¢±£ÐÞË÷Åâ״̬¡¢ÊÖ»úÐͺź͹ú¼ÊÒÆ¶¯×°±¸Ê¶±ðÂë(IMEI)ºÅÂëµÈ¡£¡£ ¡£¡£¡£¡£ÊÓ²ìÏÔʾÊý¾Ý¿ª·ÅÁËÒÑÖÁÉÙ6¸öÔ£¬£¬£¬£¬£¬£¬ £¬¸Ã¹«Ë¾ÔÚ»ñϤй¶ÊÂÎñºóÒÑÐÞ¸´¸ÃÎÊÌâ¡£¡£ ¡£¡£¡£¡£


https://securityaffairs.com/152673/data-breach/dna-micro-data-leak.html


5¡¢ÀÕË÷ÍÅ»ïTrigonaÔâµ½Ukrainian Cyber AllianceµÄ¹¥»÷


10ÔÂ19ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬£¬ £¬ÀÕË÷ÍÅ»ïÔâµ½ÁËUkrainian Cyber Alliance£¨¼ò³ÆUCA£©µÄ¹¥»÷¡£¡£ ¡£¡£¡£¡£UCAͨ¹ýConfluenceÊý¾ÝÖÐÐĺÍЧÀÍÆ÷ÖеÄÎó²î£¨CVE-2023-22515£©£¬£¬£¬£¬£¬£¬ £¬»ñµÃÁËTrigona»ù´¡ÉèÊ©µÄ»á¼ûȨÏÞ¡£¡£ ¡£¡£¡£¡£UCA½²»°ÈËÌåÏÖ£¬£¬£¬£¬£¬£¬ £¬ËûÃǵ·»ÙÁËTrigonaµÄ10̨ЧÀÍÆ÷£¬£¬£¬£¬£¬£¬ £¬»¹ÇÔÈ¡ÁË¿ª·¢ÕßÇéÐΡ¢¼ÓÃÜÇ®±ÒÈÈÇ®°üÒÔ¼°Ô´´úÂëºÍÊý¾Ý¿âµÄ¼Í¼¡£¡£ ¡£¡£¡£¡£ÔÚ»ñµÃËùÓпÉÓÃÊý¾Ýºó£¬£¬£¬£¬£¬£¬ £¬UCAɾ³ý²¢¹Ø±ÕÁËËûÃǵÄÍøÕ¾£¬£¬£¬£¬£¬£¬ £¬»¹Ðû²¼ÁËÖÎÀíÃæ°åÍøÕ¾µÄÃÜÔ¿¡£¡£ ¡£¡£¡£¡£


https://therecord.media/trigona-ransomware-group-website-takedown-ukrainian-cyber-alliance


6¡¢KasperskyÅû¶ʹÓÃMATAÕë¶Ô¶«Å·Ê®¼¸¼Ò¹«Ë¾µÄ»î¶¯


10ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬ £¬KasperskyÐû²¼±¨¸æ£¬£¬£¬£¬£¬£¬ £¬Åû¶ÁËʹÓÃаæºóÃÅ¿ò¼ÜMATAÕë¶Ô¶«Å·¹ú¼ÒµÄ¹¥»÷»î¶¯¡£¡£ ¡£¡£¡£¡£¸Ã»î¶¯ÔÚ2022Äê8ÔÂÖÁ2023Äê5Ô»îÔ¾£¬£¬£¬£¬£¬£¬ £¬Õë¶Ô¶«Å·Ê¯ÓͺÍ×ÔÈ»ÆøÐÐÒµÒÔ¼°¹ú·À¹¤ÒµÁìÓòµÄÊ®¼¸¼Ò¹«Ë¾¡£¡£ ¡£¡£¡£¡£¹¥»÷»î¶¯½ÓÄÉÓã²æÊ½´¹ÂÚÓʼþ£¬£¬£¬£¬£¬£¬ £¬ÓÕÆ­Ä¿µÄÏÂÔØ¶ñÒâ¿ÉÖ´ÐÐÎļþ£¬£¬£¬£¬£¬£¬ £¬Ê¹ÓÃInternet ExplorerÖеÄCVE-2021-26411Æô¶¯Ñ¬È¾Á´¡£¡£ ¡£¡£¡£¡£¸üа汾µÄMATAÁ¬ÏµÁËÒ»¸ö¼ÓÔØ³ÌÐò¡¢Ò»¸öÖ÷ÒªµÄľÂíºÍÒ»¸öÐÅÏ¢ÇÔÈ¡³ÌÐò£¬£¬£¬£¬£¬£¬ £¬¿ÉÒÔÔÚÄ¿µÄÖн¨ÉèºóÃŲ¢»ñµÃ³¤ÆÚÐÔ¡£¡£ ¡£¡£¡£¡£


https://securelist.com/updated-mata-attacks-industrial-companies-in-eastern-europe/110829/