Sumo LogicµÄAWSÕÊ»§Ôâµ½ÈëÇÖ½¨Òé¿Í»§ÖØÖÃAPIÃÜÔ¿

Ðû²¼Ê±¼ä 2023-11-10

1¡¢Sumo LogicµÄAWSÕÊ»§Ôâµ½ÈëÇÖ½¨Òé¿Í»§ÖØÖÃAPIÃÜÔ¿


 ¾ÝýÌå11ÔÂ8ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬Çå¾²ºÍÊý¾ÝÆÊÎö¹«Ë¾Sumo Logic·¢Ã÷ÆäAWSÕÊ»§Ôâµ½ÈëÇÖ£¬£¬£¬£¬£¬£¬½¨Òé¿Í»§ÖØÖÃAPIÃÜÔ¿¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬£¬£¬£¬ËûÃÇÓÚ11ÔÂ3ÈÕ·¢Ã÷¹¥»÷ÕßʹÓÃÇÔÈ¡µÄƾ֤»ñµÃÁËSumo Logic AWSÕË»§µÄ»á¼ûȨÏÞ£¬£¬£¬£¬£¬£¬ÏÖÔÚ»¹Ã»Óз¢Ã÷ÆäÍøÂç»òϵͳÊܵ½Ó°Ï죬£¬£¬£¬£¬£¬¿Í»§Êý¾ÝÒ²ÒѼÓÃÜ¡£¡£¡£¡£¡£¡£ÎªÁËÓ¦¶Ô´ËÊ£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾Ëø¶¨ÁËÊÜÓ°ÏìµÄ»ù´¡ÉèÊ©£¬£¬£¬£¬£¬£¬²¢ÖØÖÃÁËÆä»ù´¡ÉèÊ©µÄËùÓпÉÄÜ̻¶µÄƾ֤¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬Sumo Logic½¨Òé¿Í»§ÖØÖÃÓÃÓÚ»á¼ûÆäЧÀÍµÄÆ¾Ö¤»òÓëSumo Logic¹²ÏíµÄÓÃÓÚ»á¼ûÆäËüϵͳµÄƾ֤¡£¡£¡£¡£¡£¡£


https://securityaffairs.com/153882/security/sumo-logic-security-breach.html


2¡¢ChatGPT±¬·¢¹ÊÕÏå´»úÊýСʱ¸Ã¹«Ë¾µÄAPIÒ²Êܵ½Ó°Ïì


¾Ý11ÔÂ8ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬OpenAIµÄChatGPTÒòÑÏÖØµÄ¹ÊÕϹرգ¬£¬£¬£¬£¬£¬ÖÐÖ¹»¹Ó°ÏìÁ˸ù«Ë¾µÄÓ¦ÓóÌÐò±à³Ì½Ó¿Ú(API)¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄ¿Í»§»á¿´µ½¡°ËƺõÍÉ»¯ÁË¡±µÄ¹ýʧÌáÐÑ£¬£¬£¬£¬£¬£¬ÒÔ¼°ÅÌÎÊʱÏÔʾ¡°ÌìÉú»Ø¸´Ê±·ºÆð¹ýʧ¡±¡£¡£¡£¡£¡£¡£11ÔÂ8ÈÕ11:05£¬£¬£¬£¬£¬£¬OpenAIÌåÏÖÊÜÓ°ÏìµÄЧÀÍÒѻָ´ÉÏÏß¡£¡£¡£¡£¡£¡£¾Ý11ÔÂ9ÈÕµÄ×îÐÂÐÂÎÅ£¬£¬£¬£¬£¬£¬OpenAI֤ʵÖÜÈýµÄChatGPT¼°ÆäAPI±¬·¢µÄÖÐÖ¹ÊÇDDoS¹¥»÷µ¼Öµġ£¡£¡£¡£¡£¡£Anonymous SudanÔÚTelegramÉÏÉù³Æ¶Ô´Ë´Î¹¥»÷ÈÏÕæ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/technology/chatgpt-down-after-major-outage-impacting-openai-systems/


3¡¢¾©´ÉAVX͸¶ÀÕË÷¹¥»÷µ¼ÖÂ39000È˵ÄÐÅϢй¶


11ÔÂ9ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬£¬Kyocera AVX Components Corporation(KAVX)ÕýÔÚ·¢ËÍÀÕË÷¹¥»÷µ¼ÖµÄÊý¾Ýй¶µÄ֪ͨ¡£¡£¡£¡£¡£¡£Í¨ÖªÖÐÌåÏÖ£¬£¬£¬£¬£¬£¬ËüÓÚ10ÔÂ10ÈÕ·¢Ã÷ºÚ¿ÍÔÚ2ÔÂ16ÈÕÖÁ3ÔÂ30ÈÕ»á¼ûÁËÆäϵͳ£¬£¬£¬£¬£¬£¬µ¼Ö²¿·Öϵͳ±»¼ÓÃܺÍijЩЧÀÍÔÝʱÖÐÖ¹¡£¡£¡£¡£¡£¡£KAVXÊӲ췢Ã÷39111È˵ÄÐÅϢй¶£¬£¬£¬£¬£¬£¬²¢½«ÎªËûÃÇÌṩ12¸öÔµİµÍø¼à¿ØºÍÃÜÂëй¶ЧÀÍ¡£¡£¡£¡£¡£¡£LockBitÔøÉù³ÆÓÚ5ÔÂ26ÈÕÈëÇÖÁËKAVX£¬£¬£¬£¬£¬£¬²¢¹ûÕæÁ˶à¸ö±»µÁÊý¾ÝÑù±¾£¬£¬£¬£¬£¬£¬°üÀ¨»¤ÕÕɨÃè¡¢²ÆÎñÎļþºÍ±£ÃÜЭÒéµÈ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/kyocera-avx-says-ransomware-attack-impacted-39-000-individuals/


4¡¢US RadiologyÒò2021ÄêµÄÀÕË÷¹¥»÷±»·£¿£¿ £¿£¿î45ÍòÃÀÔª


ýÌå11ÔÂ9Èճƣ¬£¬£¬£¬£¬£¬ÒòδÐÞ¸´Îó²îµ¼ÖÂÀÕË÷¹¥»÷£¬£¬£¬£¬£¬£¬US Radiology±»Å¦Ô¼AG·£¿£¿ £¿£¿î45ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬Ë¾·¨²¿³¤Ç¿µ÷Îó²îCVE-2021-20016Òѱ»ÀÕË÷ÍÅ»ï¶à´ÎʹÓᣡ£¡£¡£¡£¡£US RadiologyÎÞ·¨×°Öù̼þ²¹¶¡ÓÉÓÚÆäÓ²¼þÒÑ´¦ÓÚEOL½×¶Î£¬£¬£¬£¬£¬£¬²»ÔÙ±»Ö§³Ö¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÍýÏëÓÚ2021Äê7ÔÂÌæ»»Ó²¼þ£¬£¬£¬£¬£¬£¬µ«×îÖÕ¸ÃÏîÄ¿±»ÍƳ١£¡£¡£¡£¡£¡£ÓÉÓÚÎó²îδ»ñµÃ½â¾ö£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÓÚ2021Äê12ÔÂ8ÈÕÔâµ½ÀÕË÷¹¥»÷£¬£¬£¬£¬£¬£¬µ¼Ö½ü20ÍòÃû»¼ÕßµÄÃô¸ÐÐÅϢй¶¡£¡£¡£¡£¡£¡£³ýÁË·£¿£¿ £¿£¿îÍ⣬£¬£¬£¬£¬£¬¸Ã¹«Ë¾»¹±ØÐèÉý¼¶ÆäITϵͳ¡¢Ô¼ÇëרÈËÖÎÀíÆäÊý¾ÝÇå¾²ÍýÏë¡¢¼ÓÃÜËùÓÐÃô¸ÐµÄ»¼ÕßÐÅÏ¢²¢¿ª·¢ÉøÍ¸²âÊÔÍýÏë¡£¡£¡£¡£¡£¡£


https://therecord.media/new-york-attorney-general-fines-radiology-firm-after-ransomware-attack


5¡¢Group-IBÅû¶ÀÕË÷Èí¼þÔËÓªÍÅ»ïFarnetworkµÄÉÌҵģʽ


11ÔÂ9ÈÕ£¬£¬£¬£¬£¬£¬Group-IB¶ÁËÀÕË÷Èí¼þÔËÓªÍÅ»ïFarnetworkµÄÉÌҵģʽ¡£¡£¡£¡£¡£¡£FarnetworkÔÚ2019ÄêÖÁ2021Äê¼ä£¬£¬£¬£¬£¬£¬×ÊÖúJSWORM¡¢Nefilim¡¢KarmaºÍNemty¾ÙÐжñÒâÈí¼þ¿ª·¢ºÍÔËÓªÖÎÀí£¬£¬£¬£¬£¬£¬²¢ÔÚ2022Ä꽨ÉèÁËÀÕË÷Èí¼þ¼´Ð§ÀÍ(RaaS)Nokoyawa¡£¡£¡£¡£¡£¡£2023Äê2Ô£¬£¬£¬£¬£¬£¬farnetwork×îÏÈÕÐļNokoyawaµÄÁ¥ÊôÍŻ£¬£¬£¬£¬£¬ËüÌṩÏֳɵĻá¼ûȨÏÞ¡£¡£¡£¡£¡£¡£¹¥»÷Àֳɺ󣬣¬£¬£¬£¬£¬Á¥ÊôÍÅ»ï»ñµÃ65%µÄÊê½ð£¬£¬£¬£¬£¬£¬½©Ê¬ÍøÂçËùÓÐÕß»ñµÃ20%£¬£¬£¬£¬£¬£¬ÀÕË÷Èí¼þËùÓÐÕß»ñµÃ15%¡£¡£¡£¡£¡£¡£×èÖ¹½ñÄê10Ô£¬£¬£¬£¬£¬£¬NokoyawaµÄÍøÕ¾×èÖ¹ÔËÓª£¬£¬£¬£¬£¬£¬×ܹ²ÁгöÁË35¸ö±»¹¥»÷Ä¿µÄ¡£¡£¡£¡£¡£¡£


https://www.group-ib.com/blog/farnetwork/


6¡¢Check PointÐû²¼10Ô·ÝÈ«ÇòÍþвָÊýµÄÆÊÎö±¨¸æ


11ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬Check PointÐû²¼ÁË10Ô·ÝÈ«ÇòÍþвָÊýµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£FormbookÊÇ10Ô·Ý×î³£¼ûµÄ¶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬Ó°ÏìÁËÈ«Çò3%µÄʵÌ壬£¬£¬£¬£¬£¬Æä´ÎÊÇNJRat£¨2%£©£¬£¬£¬£¬£¬£¬´ÓµÚÁùλÉÏÉýÖÁµÚ¶þλ¡£¡£¡£¡£¡£¡£½ÌÓýºÍÑо¿ÐÐÒµÈÔÈ»ÊÇÊܵ½¹¥»÷×îÑÏÖØµÄÐÐÒµ£¬£¬£¬£¬£¬£¬Æä´ÎÊÇͨѶÒÔ¼°¾üÕþÐÐÒµ¡£¡£¡£¡£¡£¡£10Ô·Ý×î³£±»Ê¹ÓõÄÎó²îÊÇZyxel ZyWALLÏÂÁî×¢ÈëÎó²î(CVE-2023-28771)£¬£¬£¬£¬£¬£¬Ó°ÏìÁËÈ«Çò42%µÄʵÌå¡£¡£¡£¡£¡£¡£×î³£¼ûµÄÒÆ¶¯¶ñÒâÈí¼þÊÇAnubis£¬£¬£¬£¬£¬£¬Æä´ÎÊÇAhMythºÍHiddad¡£¡£¡£¡£¡£¡£


https://blog.checkpoint.com/security/october-2023s-most-wanted-malware-njrat-jumps-to-second-place-while-agenttesla-spreads-through-new-file-sharing-mal-spam-campaign/