MedusaÀÕË÷Èí¼þ¹¥»÷ÃÜÎ÷Î÷±È×î´óÒ½Ôº
Ðû²¼Ê±¼ä 2026-03-191. MedusaÀÕË÷Èí¼þ¹¥»÷ÃÜÎ÷Î÷±È×î´óÒ½Ôº
3ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬MedusaÀÕË÷Èí¼þÍÅ»ï¿ËÈÕÐû³Æ¶ÔÃÜÎ÷Î÷±ÈÖÝ×î´óÒ½ÔºÃÜÎ÷Î÷±È´óѧҽѧÖÐÐÄ£¨UMMC£©¼°ÐÂÔóÎ÷ÖÝÅÁÈû¿ËÏØµÄÍøÂç¹¥»÷ÈÏÕæ¡£¡£¡£¡£¡£¡£¡£¸ÃÍŻﱻר¼ÒÒÔΪÔÚ¶íÂÞ˹¾³ÄÚÔËÓª£¬£¬£¬£¬£¬£¬ÏÖÔÚÒÑÏòÁ½¼Ò»ú¹¹»®·ÖË÷Òª80ÍòÃÀÔªÊê½ð¡£¡£¡£¡£¡£¡£¡£UMMCÊÇÃÜÎ÷Î÷±ÈÖÝ×îÖ÷ÒªµÄÒ½ÁÆ»ú¹¹£¬£¬£¬£¬£¬£¬ÓµÓÐ1ÍòÃûÔ±¹¤£¬£¬£¬£¬£¬£¬ÔËӪןÃÖÝΨһµÄ¶ùͯҽԺ¡¢Î¨ÖðÒ»¼¶´´ÉËÖÐÐÄ¡¢Î¨Ò»Ëļ¶ÐÂÉú¶ùÖØÖ¢¼à»¤ÊÒÒÔ¼°Î¨Ò»µÄÆ÷¹ÙÒÆÖ²ÏîÄ¿¡£¡£¡£¡£¡£¡£¡£2ÔÂ⣬£¬£¬£¬£¬£¬¸Ã»ú¹¹ÔâÊÜÍøÂç¹¥»÷ºóÖÜȫͣ°Ú9Ì죬£¬£¬£¬£¬£¬Ò½»¤Ö°Ô±±»ÆÈʹÓÃÄ£Ä⹤¾ß²Ù×÷ϸÃÜϵͳ¡£¡£¡£¡£¡£¡£¡£°©Ö¢ÊäÒºÖÐÐIJ»µÃ²»ÖØÐ°²ÅÅ»¼ÕßÔ¤Ô¼£¬£¬£¬£¬£¬£¬ÆäËû¿ÆÊÒÖ»ÄÜÒÀÀµÖ½±ÊÖÎÀíÎï×ʺÍÖÎÁÆ¡£¡£¡£¡£¡£¡£¡£UMMC¹Ø±ÕÁËËùÓÐ35¸öÕïËù£¬£¬£¬£¬£¬£¬µ«Ò½ÔººÍ¼±Õﲿ·Ö¼á³ÖÔËÓª¡£¡£¡£¡£¡£¡£¡£ÃÀ¹úÁª°îÊÓ²ì¾ÖºÍÁìÍÁÇå¾²²¿½éÈëÐÖú»Ö¸´ÊÂÇé¡£¡£¡£¡£¡£¡£¡£Ò½ÔºÓÚ3ÔÂ2ÈÕÖÜÈ«ÖØÐ¿ª·Å£¬£¬£¬£¬£¬£¬MedusaÍÅ»ïËæºóÉù³Æ¶Ô´ËÈÏÕæ£¬£¬£¬£¬£¬£¬ÍþвÓÚ3ÔÂ20ÈÕǰй¶´ÓÒ½ÔºÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£UMMC½²»°È˾ܾø¾ÍÊê½ðÍþв½ÒÏþ̸ÂÛ¡£¡£¡£¡£¡£¡£¡£ÅÁÈû¿ËÏØÓµÓнü60ÍòÉú³Ý£¬£¬£¬£¬£¬£¬Á½ÖÜǰÔâÓö¶ñÒâÈí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬Õþ¸®°ì¹«Êҵ绰ÏߺÍITϵͳ̱»¾¡£¡£¡£¡£¡£¡£¡£MedusaÍÅ»ïͬÑùÉù³Æ¶Ô´ËÈÏÕæ²¢Ë÷Òª80ÍòÃÀÔªÊê½ð¡£¡£¡£¡£¡£¡£¡£
https://therecord.media/medusa-ransomware-mississippi-cyber
2. Éí·Ý±£»£»£»£»£»¤¹«Ë¾AuraÔâ´¹ÂÚ¹¥»÷й¶90ÍòÓû§Êý¾Ý
3ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬Éí·Ý±£»£»£»£»£»¤¹«Ë¾Aura¿ËÈÕÈ·ÈÏ£¬£¬£¬£¬£¬£¬Î´¾ÊÚȨµÄµÚÈý·½Í¨¹ýÕë¶ÔÔ±¹¤µÄÓïÒô´¹ÂÚ¹¥»÷»ñÈ¡Á˽ü90ÍòÌõ¿Í»§¼Í¼£¬£¬£¬£¬£¬£¬°üÀ¨ÐÕÃûºÍµç×ÓÓʼþµØµãµÈÃô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾±¾ÖÜÏòÊÜÓ°ÏìÓû§·¢³ö֪ͨ£¬£¬£¬£¬£¬£¬²¢ÌåÏÖÒÑִ֪ͨ·¨²¿·Ö¡£¡£¡£¡£¡£¡£¡£AuraÊÇÒ»¼ÒÏûºÄÊý×ÖÇå¾²¹«Ë¾£¬£¬£¬£¬£¬£¬ÏúÊÛÉí·Ý͵ÇÔ±£»£»£»£»£»¤¡¢ÐÅÓúÍÚ²Æ¼à¿ØÒÔ¼°ÔÚÏßÇå¾²¹¤¾ß¡£¡£¡£¡£¡£¡£¡£´Ë´Îй¶µÄÊý¾ÝÔ´×Ô2021ÄêÊÕ¹ºµÄÒ»¼Ò¹«Ë¾ËùʹÓõÄÓªÏú¹¤¾ß£¬£¬£¬£¬£¬£¬Ì»Â¶ÁËÔ¼20,000ÃûÄ¿½ñ¿Í»§ºÍ15,000Ãûǰ¿Í»§µÄÓÐÏÞÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄ¿Í»§ÐÅÏ¢°üÀ¨È«Ãû¡¢µç×ÓÓʼþµØµã¡¢¼ÒͥסַºÍµç»°ºÅÂë¡£¡£¡£¡£¡£¡£¡£¹«Ë¾Ç¿µ÷£¬£¬£¬£¬£¬£¬Éç»áÇå¾²ºÅÂë¡¢ÕË»§ÃÜÂëºÍ²ÆÎñÐÅϢδÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£¡£Íþв×éÖ¯ShinyHunters±¾ÖÜÔçЩʱ¼äÔÚÆäÊý¾ÝÀÕË÷ÍøÕ¾ÉÏÉù³Æ¶Ô´Ë¹¥»÷ÈÏÕæ£¬£¬£¬£¬£¬£¬ÌåÏÖÇÔÈ¡ÁË12GB°üÀ¨¿Í»§Ð¡ÎÒ˽¼ÒÉí·ÝÐÅÏ¢(PII)¼°ÆóÒµÊý¾ÝµÄÎļþ¡£¡£¡£¡£¡£¡£¡£HaveIBeenPwned(HIBP)ЧÀÍÆÊÎöÁËй¶Êý¾Ý²¢½«ÆäÌí¼Óµ½Êý¾Ý¿âÖУ¬£¬£¬£¬£¬£¬Ö¸³ö¿Í»§Ð§ÀÍ̸ÂÛºÍIPµØµãÒ²±»Ì»Â¶¡£¡£¡£¡£¡£¡£¡£HIBPÌåÏÖ£¬£¬£¬£¬£¬£¬´Ë´ÎÊÂÎñÖÐ̻¶µÄ90%µç×ÓÓʼþµØµãÒѱ£´æÓÚÆäÒÑÍùÇå¾²ÊÂÎñÊý¾Ý¿âÖС£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/aura-confirms-data-breach-exposing-900-000-marketing-contacts/
3. CISA½«SharePointºÍZimbraÎó²îÁÐÈëKEVĿ¼
3ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬ÃÀ¹úÍøÂçÇå¾²ºÍ»ù´¡ÉèÊ©Çå¾²¾Ö(CISA)¿ËÈÕ½«Î¢ÈíSharePointºÍSynacorZimbraÐ×÷Ì×¼þµÄÁ½¸öÎó²îÌí¼Óµ½ÆäÒÑÖª±»Ê¹ÓÃÎó²î(KEV)Ŀ¼ÖС£¡£¡£¡£¡£¡£¡£Æ¾Ö¤Ô¼Êø²Ù×÷Ö¸ÁîBOD22-01£¬£¬£¬£¬£¬£¬Áª°îÃñÊ»ú¹¹±ØÐèÔÚ»®¶¨ÈÕÆÚǰÐÞ¸´ÕâЩÎó²î£¬£¬£¬£¬£¬£¬ÒÔ±£»£»£»£»£»¤ÍøÂçÃâÊÜʹÓÃÕâЩÎó²îµÄ¹¥»÷¡£¡£¡£¡£¡£¡£¡£µÚÒ»¸öÎó²î±àºÅΪCVE-2026-20963£¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ8.8£¬£¬£¬£¬£¬£¬ÊÇ΢ÈíOfficeSharePointÖеIJ»ÊÜÐÅÈÎÊý¾Ý·´ÐòÁл¯Îó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÊÚȨ¹¥»÷ÕßÔÚÍøÂçÉÏÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¡£CISAÒÑÏÂÁîÁª°î»ú¹¹ÔÚ2026Äê3ÔÂ21ÈÕǰÐÞ¸´´ËÎó²î¡£¡£¡£¡£¡£¡£¡£µÚ¶þ¸öÎó²î±àºÅΪCVE-2025-66376£¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ7.2£¬£¬£¬£¬£¬£¬ÊǾµäÓû§½çÃæÖеĴ洢ÐÍ¿çÕ¾¾ç±¾(XSS)Îó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔʹÓõç×ÓÓʼþHTMLÖеÄCSS@importÖ¸Áî¾ÙÐй¥»÷¡£¡£¡£¡£¡£¡£¡£Áª°î»ú¹¹ÐèÔÚ2026Äê4ÔÂ1ÈÕǰÐÞ¸´´ËÎó²î¡£¡£¡£¡£¡£¡£¡£×¨¼Ò½¨Òé˽Ӫ×éÖ¯Ò²Ó¦Éó²éKEVĿ¼²¢ÐÞ¸´Æä»ù´¡ÉèÊ©ÖеÄÏà¹ØÎó²î¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/189628/security/u-s-cisa-adds-microsoft-sharepoint-and-zimbra-flaws-to-its-known-exploited-vulnerabilities-catalog.html
4. ½ðÈÚЧÀÍÉÌMarquisÔâÀÕË÷¹¥»÷й¶67ÍòÓû§Êý¾Ý
3ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬µÂ¿ËÈøË¹ÖݽðÈÚЧÀÍÌṩÉÌMarquis¿ËÈÕÅû¶£¬£¬£¬£¬£¬£¬2025Äê8ÔÂÔâÊܵÄÀÕË÷Èí¼þ¹¥»÷µ¼ÖÂÁè¼Ý67ÍòÈ˵ÄÊý¾Ý±»µÁ£¬£¬£¬£¬£¬£¬¸ÃÊÂÎñ»¹Ó°ÏìÁËÃÀ¹ú74¼ÒÒøÐеÄÔËÓª¡£¡£¡£¡£¡£¡£¡£MarquisΪÃÀ¹ú700¶à¼ÒÒøÐС¢ÐÅÓÃÏàÖúÉçºÍµäÖÊ´û¿î»ú¹¹ÌṩÊý×ÖÓªÏú¡¢Êý¾ÝÆÊÎö¡¢ºÏ¹æºÍ¿Í»§¹ØÏµÖÎÀíЧÀÍ¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÔÚ12Ô³õÏòÃÀ¹ú˾·¨²¿Ìá½»µÄÊý¾Ýй¶֪ͨÖÐÌåÏÖ£¬£¬£¬£¬£¬£¬2025Äê8ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬ÍþвÐÐΪÕß¹¥ÏÝSonicWall·À»ðǽºó¶ÔÆäÍøÂçÌᳫÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÇÔÈ¡ÁË´ó×ÚСÎÒ˽¼ÒºÍ²ÆÎñÐÅÏ¢£¬£¬£¬£¬£¬£¬°üÀ¨Êܺ¦ÕßÐÕÃû¡¢³öÉúÈÕÆÚ¡¢µØµã¡¢µç»°ºÅÂë¡¢Éç»áÇå¾²ºÅÂë¡¢ÄÉ˰ÈËʶÓÖÃûÒÔ¼°²»º¬Çå¾²Âë»ò»á¼ûÂëµÄ²ÆÎñÕË»§ÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£MarquisÔÚ±¾ÖÜÏò672,075ÃûÊÜÓ°ÏìÕß·¢Ë͵ÄÊý¾Ýй¶֪ͨÐÅÖÐÌåÏÖ£º"ÊÂÎñ½öÏÞÓÚMarquisϵͳ£¬£¬£¬£¬£¬£¬Î´Ó°Ïì¿Í»§ÏµÍ³¡£¡£¡£¡£¡£¡£¡£"¿Í»§ÓÚ2025Äê12ÔÂ10ÈÕÉó²éÁËÊÜÓ°ÏìÎļþ£¬£¬£¬£¬£¬£¬ËæºóÆð¾¢ÑéÖ¤ºÍʶ±ðÐÅÏ¢¿ÉÄÜÊÜÊÂÎñÓ°ÏìµÄСÎÒ˽¼Ò£¬£¬£¬£¬£¬£¬²¢¾¡¿ì»ñȡСÎÒ˽¼Ò×îÐÂÓʼĵصãÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/marquis-ransomware-gang-stole-data-of-672-000-people-in-2025-cyberattack/
5. DarkSword iOSÎó²îʹÓù¤¾ß°üÇÔÈ¡¼ÓÃÜÇ®±ÒÇ®°üÊý¾Ý
3ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬ÐÂÐÍiOS×°±¸Îó²îʹÓù¤¾ß°üºÍ½»¸¶¿ò¼Ü"DarkSword"¿ËÈÕ±»·¢Ã÷ÓÃÓÚÇÔÈ¡ÆÕ±éСÎÒ˽¼ÒÐÅÏ¢£¬£¬£¬£¬£¬£¬°üÀ¨¼ÓÃÜÇ®±ÒÇ®°üÓ¦ÓÃÊý¾Ý¡£¡£¡£¡£¡£¡£¡£Òƶ¯Çå¾²¹«Ë¾LookoutÑо¿Ö°Ô±ÔÚÊÓ²ìCoruna¹¥»÷»ù´¡Éèʩʱ·¢Ã÷ÁËDarkSword£¬£¬£¬£¬£¬£¬¹È¸èÍþвÇ鱨С×éºÍiVerifyÒ²¼ÓÈëÁ˶ÔÕâһδ֪ÍþвµÄ×ÛºÏÆÊÎö¡£¡£¡£¡£¡£¡£¡£DarkSwordÕë¶ÔÔËÐÐiOS18.4ÖÁ18.7°æ±¾µÄiPhone£¬£¬£¬£¬£¬£¬Óë¶à¸öÍþвÐÐΪÕß¹ØÁª£¬£¬£¬£¬£¬£¬°üÀ¨ÒÉËÆ¶íÂÞ˹µÄUNC6353¡£¡£¡£¡£¡£¡£¡£¸Ã¹¤¾ß°üʹÓÃÁù¸öÎó²î£¬£¬£¬£¬£¬£¬±àºÅ»®·ÖΪCVE-2025-31277¡¢CVE-2025-43529¡¢CVE-2026-20700¡¢CVE-2025-14174¡¢CVE-2025-43510ºÍCVE-2025-43520¡£¡£¡£¡£¡£¡£¡£iVerifyÑо¿Ð§¹ûÅú×¢£¬£¬£¬£¬£¬£¬¸ÃÎó²îÁ´ÖÐʹÓõÄËùÓÐȱÏݾùΪÒÑÖªÎó²î£¬£¬£¬£¬£¬£¬Æ»¹ûÒÑÔÚ×îÐÂiOS°æ±¾ÖÐÐÞ¸´¡£¡£¡£¡£¡£¡£¡£¹È¸èÍþвÇ鱨С×éÌåÏÖ£¬£¬£¬£¬£¬£¬DarkSword×Ô2025Äê11ÔÂÒÔÀ´±»¶à¸öÍþвÐÐΪÕßʹÓ㬣¬£¬£¬£¬£¬°²ÅÅÁËÈý¸ö¶ñÒâÈí¼þ¼Ò×壺GHOSTBLADEÊÇJavaScriptÊý¾ÝÇÔÈ¡³ÌÐò£»£»£»£»£»GHOSTKNIFEÊÇ¿Éй¶ÖÖÖÖÊý¾ÝµÄºóÃÅ£»£»£»£»£»GHOSTSABERÊÇ¿Éö¾Ù×°±¸ºÍÕË»§¡¢Ö´ÐÐJavaScript´úÂëµÄJavaScriptºóÃÅ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/new-darksword-ios-exploit-used-in-infostealer-attack-on-iphones/
6. Nordstrom¹Ù·½ÓÊÏä·¢ËͼÓÃÜÇ®±Ò´¹ÂÚÓʼþ
3ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬ÃÀ¹ú¸ß¶Ë°Ù»õÁ¬ËøµêNordstromµÄ¿Í»§¿ËÈÕÊÕµ½À´×ÔÕýµ±¹«Ë¾ÓÊÏ䵨µãµÄÚ²ÆÓʼþ£¬£¬£¬£¬£¬£¬Íƹãαװ³ÉÊ¥ÅÁÌØÀï¿Ë½Ú´ÙÏú»î¶¯µÄ¼ÓÃÜÇ®±ÒȦÌס£¡£¡£¡£¡£¡£¡£¸ÃÓʼþÔÊÐíÊÕ¼þÈËÔÚÁ½Ð¡Ê±ÄÚ½«¼ÓÃÜÇ®±Ò´æÈëÌØ¶¨Ç®°üµØµã¿É»ñµÃË«±¶·µ»¹¡£¡£¡£¡£¡£¡£¡£Ú²ÆÓʼþÉù³Æ£º"½«¼ÓÃÜÇ®±Ò·¢ËÍÖÁÄúµÄÈκÎΨһ´æ¿îµØµã£¬£¬£¬£¬£¬£¬ÎÒÃǽ«Á¬Ã¦·µ»¹Äú·¢Ëͽð¶îµÄ200%¡£¡£¡£¡£¡£¡£¡£"¶àÃû¿Í»§ÔÚÉ罻ýÌåÉϱ¨¸æÊÕµ½´ËÀàÓʼþ£¬£¬£¬£¬£¬£¬²¿·Ö¿Í»§ÌåÏÖÓʼþ·¢Ë͵½ÁË´ÓδÔÚÏßй¶¹ýµÄµØµã¡£¡£¡£¡£¡£¡£¡£ÍþвÐÐΪÕß½ö¸øÓèÊÕ¼þÈËÁ½Ð¡Ê±Ðж¯Ê±¼ä£¬£¬£¬£¬£¬£¬ÖÆÔì½ôÆÈ¸ÐʹNordstrom¿Í»§¸ü¿ÉÄܻſ¼ÓÈë"ÉúÒâ"¶øºöÊÓȦÌ×¼£Ï󣬣¬£¬£¬£¬£¬ÈçÎÊÌâÖй«Ë¾Ãû³ÆÆ´Ð´¹ýʧΪ"Normstorm"¡£¡£¡£¡£¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬£¬ÓÉÓÚÓʼþÀ´×Ômailto:nordstrom@eml.nordstrom.comÕâÒ»NordstromÓÃÓÚÓªÏú¡¢ÏúÊۺʹÙÏúͨѶµÄ¹Ù·½µØµã£¬£¬£¬£¬£¬£¬ÈκÎÓÕÆ¼£Ï󶼿ÉÄܱ»ºöÊÓ£¬£¬£¬£¬£¬£¬ÕâÅú×¢±£´æÇå¾²Îó²î¡£¡£¡£¡£¡£¡£¡£Nordstromδ»ØÓ¦ÖÃÆÀÇëÇ󣬣¬£¬£¬£¬£¬µ«¿Í»§±¨¸æ¹«Ë¾·¢ËÍÁËÖÒÑÔÓʼþ£¬£¬£¬£¬£¬£¬±Þ²ß³ÉÔ±ºöÂÔ֮ǰµÄ"δ¾ÊÚȨ"Óʼþ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/nordstroms-email-system-abused-to-send-crypto-scams-to-customers/


¾©¹«Íø°²±¸11010802024551ºÅ