PharMericaÔâµ½Money MessageµÄ¹¥»÷Ó°Ïì580ÍòÈË

Ðû²¼Ê±¼ä 2023-05-16

1¡¢PharMericaÔâµ½Money MessageµÄ¹¥»÷Ó°Ïì580ÍòÈË


¾Ý5ÔÂ13ÈÕ±¨µÀ£¬£¬£¬£¬£¬ÃÀ¹ú¹ú¼ÒÒ©·¿ÍøÂçPharMerica¼°Æäĸ¹«Ë¾BrightSpring HealthÔâµ½ÁËMoney MessageµÄÀÕË÷¹¥»÷¡£¡£¡£¡£¡£3ÔÂ14ÈÕ£¬£¬£¬£¬£¬PharMericaÔÚϵͳÖз¢Ã÷¿ÉÒɻ£¬£¬£¬£¬£¬ÊÓ²ìÈ·¶¨3ÔÂ12ÈÕµ½3ÔÂ13ÈÕʱ´ú±£´æÎ´¾­ÊÚȨµÄ»á¼û£¬£¬£¬£¬£¬µ¼Ö²¿·ÖÐÅϢй¶¡£¡£¡£¡£¡£ÕâÓëMoney MessageÉù³ÆµÄ¹¥»÷±¬·¢ÔÚ3ÔÂ28ÈÕÓÐÊÕÖ§¡£¡£¡£¡£¡£5ÔÂ12ÈÕ£¬£¬£¬£¬£¬PharMericaÌá½»µÄÊý¾Ýй¶±¨¸æ³Æ¹²ÓÐ5815591ÈËÊܵ½Ó°Ïì¡£¡£¡£¡£¡£Ð¹Â¶ÐÅÏ¢Éæ¼°ÐÕÃû¡¢µØµã¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢Ò©ÎïºÍ¿µ½¡°ü¹ÜÐÅÏ¢¡£¡£¡£¡£¡£


https://www.databreaches.net/ransomware-attack-on-pharmerica-affected-5-8-million-patients/


2¡¢ÃÀ¹ú½»Í¨²¿(USDOT)ϵͳÔâµ½¹¥»÷½ü24ÍòÔ±¹¤ÐÅϢй¶


ýÌå5ÔÂ13Èճƣ¬£¬£¬£¬£¬ÃÀ¹ú½»Í¨²¿(USDOT)²¿·ÖÔ±¹¤µÄСÎÒ˽¼ÒÐÅϢй¶¡£¡£¡£¡£¡£Ð¹Â¶Ô´ÓÚ´¦Öóͷ£TRANServe½»Í¨¸£ÀûµÄϵͳÔâµ½¹¥»÷£¬£¬£¬£¬£¬USDOTÌåÏÖûÓÐÈκν»Í¨Ç徲ϵͳÊܵ½Ó°Ïì¡£¡£¡£¡£¡£¸Ã²¿·ÖÕýÔÚÊÓ²ìÕâÒ»ÊÂÎñ£¬£¬£¬£¬£¬²¢¹Ø±ÕÁ˽»Í¨¸£ÀûϵͳµÄ»á¼û£¬£¬£¬£¬£¬Ö±µ½Ëü»Ö¸´¡£¡£¡£¡£¡£¸ÃÊÂÎñÓ°ÏìÁË114000ÃûÏÖÔ±¹¤ºÍ123000ÃûǰԱ¹¤¡£¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÕßÉí·Ý£¬£¬£¬£¬£¬Ò²²»ÇåÎúÊÇ·ñÓÐСÎÒ˽¼ÒÐÅÏ¢±»ºÚ¿ÍʹÓᣡ£¡£¡£¡£


https://www.yahoo.com/news/data-237-000-us-government-232707971.html


3¡¢·Ñ³ÇÎÊѯ±¨Ôâµ½ÍøÂç¹¥»÷µ¼ÖÂÔËÓªÔÝʱÖÐÖ¹


¾ÝýÌå5ÔÂ15ÈÕ±¨µÀ£¬£¬£¬£¬£¬·Ñ³ÇÎÊѯ±¨£¨Philadelphia Inquirer£©Ôâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬±¬·¢ÁË27ÄêÀ´×îÑÏÖØµÄÔËÓªÖÐÖ¹¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ5ÔÂ14ÈÕ£¬£¬£¬£¬£¬µ¼Ö¸ñ¨ÖÜÈÕµÄÓ¡Ë¢°æÎÞ·¨Ó¡Ë¢£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÕýÔÚÆð¾¢»Ö¸´Ó¡Ë¢ÓªÒµ¡£¡£¡£¡£¡£¿ÉÊÇÐÂÎÅÓªÒµµÄÍøÕ¾ÖÜÈÕÈÔÔÚÔËÐУ¬£¬£¬£¬£¬µ«¸üÐÂËÙÂʱÈÕý³£ÇéÐÎÏÂÂý¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬Ô±¹¤ÔÚÖÜÁùÔçÉÏ·¢Ã÷¸Ã±¨µÄÄÚÈÝÖÎÀíϵͳÎÞ·¨Õý³£ÊÂÇéʱ£¬£¬£¬£¬£¬Ê״η¢Ã÷Á˴˴ι¥»÷¡£¡£¡£¡£¡£¸Ã±¨ÉçÕýÔÚ¶Ô¹¥»÷¹æÄ£ºÍÏêϸĿµÄ¾ÙÐÐÊӲ죬£¬£¬£¬£¬Ô±¹¤ÖÁÉÙÔÚ±¾Öܶþ֮ǰÎÞ·¨Ôڰ칫ÊҰ칫¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/philadelphia-inquirer-operations-disrupted-after-cyberattack/


4¡¢SentinelLabs·¢Ã÷¶à¸ö»ùÓÚBabukÔ´´úÂëµÄÀÕË÷Èí¼þ


SentinelLabsÔÚ5ÔÂ11ÈÕ͸¶£¬£¬£¬£¬£¬Ô½À´Ô½¶àµÄÀÕË÷Èí¼þ½ÓÄÉй¶µÄBabukÔ´´úÂëÀ´¿ª·¢Õë¶ÔVMware ESXiЧÀÍÆ÷µÄLinux¼ÓÃܳÌÐò¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÔÚ2022ÄêϰëÄêÖÁ2023ÄêÉϰëÄê·¢Ã÷ÁË9ÖÖ»ùÓÚBabukµÄÀÕË÷Èí¼þ±äÌå¡£¡£¡£¡£¡£ÕâЩÀÕË÷Èí¼þ°üÀ¨Play(.FinDom)¡¢Mario(.emario)¡¢Conti POC(.conti)¡¢REvilÓÖÃûRevix(.rhkrc)¡¢Cylance ransomware¡¢Dataf Locker¡¢RorschachÓÖÃûBabLock¡¢Lock4ºÍRTM Locker¡£¡£¡£¡£¡£


https://www.sentinelone.com/labs/hypervisor-ransomware-multiple-threat-actor-groups-hop-on-leaked-babuk-code-to-build-esxi-lockers/


5¡¢Brightly³ÆÆäSchoolDudeƽ̨Óû§µÄÐÅÏ¢ºÍƾ֤й¶


ýÌå5ÔÂ15ÈÕ±¨µÀ£¬£¬£¬£¬£¬Î÷ÃÅ×ÓµÄ×Ó¹«Ë¾Brightly Software³ÆÆäSchoolDudeƽ̨Óû§µÄÐÅÏ¢ºÍƾ֤й¶¡£¡£¡£¡£¡£Æ¾Ö¤Êý¾Ýй¶֪ͨ£¬£¬£¬£¬£¬¹¥»÷ÕßÓÚ4ÔÂ20ÈÕÈëÇÖÁËBrightlyµÄϵͳ£¬£¬£¬£¬£¬²¢ÓÚ4ÔÂ28ÈÕ±»·¢Ã÷£¬£¬£¬£¬£¬Ó°ÏìÁË2964292ÃûSchoolDudeµÄÓû§¡£¡£¡£¡£¡£´Ë´ÎÊÂÎñй¶ÁËÐÕÃû¡¢ÓʼþµØµã¡¢ÕÊ»§ÃÜÂëºÈµç»°ºÅÂëµÈ¡£¡£¡£¡£¡£BrightlyÖØÖÃÁËËùÓÐSchoolDudeÓû§µÄÃÜÂ룬£¬£¬£¬£¬²¢½¨ÒéÓû§ÊµÊ±¸ü¸ÄʹÓÃÁËÏàͬÃÜÂëµÄÆäËüÕÊ»§µÄÃÜÂë¡£¡£¡£¡£¡£


https://www.securityweek.com/brightly-software-notifying-3-million-schooldude-users-of-data-breach/


6¡¢KasperskyÐû²¼2023ÄêÀÕË÷Èí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ


5ÔÂ11ÈÕ£¬£¬£¬£¬£¬KasperskyÐû²¼ÁË2023ÄêÀÕË÷Èí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£×î¾ßÓ°ÏìÁ¦µÄÀÕË÷×éÖ¯ÔÚÒÑÍùÒ»Ä걬·¢×ª±ä£¬£¬£¬£¬£¬2022ÄêÉϰëÄêÊÇLockBit¡¢REvilºÍConti£¬£¬£¬£¬£¬2022ϰëÄêÊÇLockBit¡¢BlackBastaºÍBlackCat£¬£¬£¬£¬£¬2023ÄêQ1ÊÇLockBit¡¢Vice SocietyºÍBlackCat¡£¡£¡£¡£¡£2022ÄêÀÕË÷Èí¼þµÄÕ¼½ÏÁ¿Ö®2021ÄêÂÔÓÐϽµ£¬£¬£¬£¬£¬´Ó51.9%Ͻµµ½39.8%¡£¡£¡£¡£¡£Kaspersky¶Ô2023ÄêµÄÕ¹ÍûÊǸü¶àµÄǶÈëʽ¹¦Ð§¡¢ÀÄÓÃDriverÒÔ¼°½ÓÄÉÆäËü¶ñÒâÈí¼þ¼Ò×åµÄ´úÂë¡£¡£¡£¡£¡£


https://securelist.com/new-ransomware-trends-in-2023/109660/