PharMericaÔâµ½Money MessageµÄ¹¥»÷Ó°Ïì580ÍòÈË

Ðû²¼Ê±¼ä 2023-05-16

1¡¢PharMericaÔâµ½Money MessageµÄ¹¥»÷Ó°Ïì580ÍòÈË


¾Ý5ÔÂ13ÈÕ±¨µÀ£¬£¬£¬£¬ £¬ÃÀ¹ú¹ú¼ÒÒ©·¿ÍøÂçPharMerica¼°Æäĸ¹«Ë¾BrightSpring HealthÔâµ½ÁËMoney MessageµÄÀÕË÷¹¥»÷¡£¡£¡£3ÔÂ14ÈÕ£¬£¬£¬£¬ £¬PharMericaÔÚϵͳÖз¢Ã÷¿ÉÒɻ£¬£¬£¬£¬ £¬ÊÓ²ìÈ·¶¨3ÔÂ12ÈÕµ½3ÔÂ13ÈÕʱ´ú±£´æÎ´¾­ÊÚȨµÄ»á¼û£¬£¬£¬£¬ £¬µ¼Ö²¿·ÖÐÅϢй¶¡£¡£¡£ÕâÓëMoney MessageÉù³ÆµÄ¹¥»÷±¬·¢ÔÚ3ÔÂ28ÈÕÓÐÊÕÖ§¡£¡£¡£5ÔÂ12ÈÕ£¬£¬£¬£¬ £¬PharMericaÌá½»µÄÊý¾Ýй¶±¨¸æ³Æ¹²ÓÐ5815591ÈËÊܵ½Ó°Ïì¡£¡£¡£Ð¹Â¶ÐÅÏ¢Éæ¼°ÐÕÃû¡¢µØµã¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢Ò©ÎïºÍ¿µ½¡°ü¹ÜÐÅÏ¢¡£¡£¡£


https://www.databreaches.net/ransomware-attack-on-pharmerica-affected-5-8-million-patients/


2¡¢ÃÀ¹ú½»Í¨²¿(USDOT)ϵͳÔâµ½¹¥»÷½ü24ÍòÔ±¹¤ÐÅϢй¶


ýÌå5ÔÂ13Èճƣ¬£¬£¬£¬ £¬ÃÀ¹ú½»Í¨²¿(USDOT)²¿·ÖÔ±¹¤µÄСÎÒ˽¼ÒÐÅϢй¶¡£¡£¡£Ð¹Â¶Ô´ÓÚ´¦Öóͷ£TRANServe½»Í¨¸£ÀûµÄϵͳÔâµ½¹¥»÷£¬£¬£¬£¬ £¬USDOTÌåÏÖûÓÐÈκν»Í¨Ç徲ϵͳÊܵ½Ó°Ïì¡£¡£¡£¸Ã²¿·ÖÕýÔÚÊÓ²ìÕâÒ»ÊÂÎñ£¬£¬£¬£¬ £¬²¢¹Ø±ÕÁ˽»Í¨¸£ÀûϵͳµÄ»á¼û£¬£¬£¬£¬ £¬Ö±µ½Ëü»Ö¸´¡£¡£¡£¸ÃÊÂÎñÓ°ÏìÁË114000ÃûÏÖÔ±¹¤ºÍ123000ÃûǰԱ¹¤¡£¡£¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÕßÉí·Ý£¬£¬£¬£¬ £¬Ò²²»ÇåÎúÊÇ·ñÓÐСÎÒ˽¼ÒÐÅÏ¢±»ºÚ¿ÍʹÓᣡ£¡£


https://www.yahoo.com/news/data-237-000-us-government-232707971.html


3¡¢·Ñ³ÇÎÊѯ±¨Ôâµ½ÍøÂç¹¥»÷µ¼ÖÂÔËÓªÔÝʱÖÐÖ¹


¾ÝýÌå5ÔÂ15ÈÕ±¨µÀ£¬£¬£¬£¬ £¬·Ñ³ÇÎÊѯ±¨£¨Philadelphia Inquirer£©Ôâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬ £¬±¬·¢ÁË27ÄêÀ´×îÑÏÖØµÄÔËÓªÖÐÖ¹¡£¡£¡£¹¥»÷±¬·¢ÔÚ5ÔÂ14ÈÕ£¬£¬£¬£¬ £¬µ¼Ö¸ñ¨ÖÜÈÕµÄÓ¡Ë¢°æÎÞ·¨Ó¡Ë¢£¬£¬£¬£¬ £¬¸Ã¹«Ë¾ÕýÔÚÆð¾¢»Ö¸´Ó¡Ë¢ÓªÒµ¡£¡£¡£¿ÉÊÇÐÂÎÅÓªÒµµÄÍøÕ¾ÖÜÈÕÈÔÔÚÔËÐУ¬£¬£¬£¬ £¬µ«¸üÐÂËÙÂʱÈÕý³£ÇéÐÎÏÂÂý¡£¡£¡£¾ÝϤ£¬£¬£¬£¬ £¬Ô±¹¤ÔÚÖÜÁùÔçÉÏ·¢Ã÷¸Ã±¨µÄÄÚÈÝÖÎÀíϵͳÎÞ·¨Õý³£ÊÂÇéʱ£¬£¬£¬£¬ £¬Ê״η¢Ã÷Á˴˴ι¥»÷¡£¡£¡£¸Ã±¨ÉçÕýÔÚ¶Ô¹¥»÷¹æÄ£ºÍÏêϸĿµÄ¾ÙÐÐÊӲ죬£¬£¬£¬ £¬Ô±¹¤ÖÁÉÙÔÚ±¾Öܶþ֮ǰÎÞ·¨Ôڰ칫ÊҰ칫¡£¡£¡£


https://www.bleepingcomputer.com/news/security/philadelphia-inquirer-operations-disrupted-after-cyberattack/


4¡¢SentinelLabs·¢Ã÷¶à¸ö»ùÓÚBabukÔ´´úÂëµÄÀÕË÷Èí¼þ


SentinelLabsÔÚ5ÔÂ11ÈÕ͸¶£¬£¬£¬£¬ £¬Ô½À´Ô½¶àµÄÀÕË÷Èí¼þ½ÓÄÉй¶µÄBabukÔ´´úÂëÀ´¿ª·¢Õë¶ÔVMware ESXiЧÀÍÆ÷µÄLinux¼ÓÃܳÌÐò¡£¡£¡£Ñо¿Ö°Ô±ÔÚ2022ÄêϰëÄêÖÁ2023ÄêÉϰëÄê·¢Ã÷ÁË9ÖÖ»ùÓÚBabukµÄÀÕË÷Èí¼þ±äÌå¡£¡£¡£ÕâЩÀÕË÷Èí¼þ°üÀ¨Play(.FinDom)¡¢Mario(.emario)¡¢Conti POC(.conti)¡¢REvilÓÖÃûRevix(.rhkrc)¡¢Cylance ransomware¡¢Dataf Locker¡¢RorschachÓÖÃûBabLock¡¢Lock4ºÍRTM Locker¡£¡£¡£


https://www.sentinelone.com/labs/hypervisor-ransomware-multiple-threat-actor-groups-hop-on-leaked-babuk-code-to-build-esxi-lockers/


5¡¢Brightly³ÆÆäSchoolDudeƽ̨Óû§µÄÐÅÏ¢ºÍƾ֤й¶


ýÌå5ÔÂ15ÈÕ±¨µÀ£¬£¬£¬£¬ £¬Î÷ÃÅ×ÓµÄ×Ó¹«Ë¾Brightly Software³ÆÆäSchoolDudeƽ̨Óû§µÄÐÅÏ¢ºÍƾ֤й¶¡£¡£¡£Æ¾Ö¤Êý¾Ýй¶֪ͨ£¬£¬£¬£¬ £¬¹¥»÷ÕßÓÚ4ÔÂ20ÈÕÈëÇÖÁËBrightlyµÄϵͳ£¬£¬£¬£¬ £¬²¢ÓÚ4ÔÂ28ÈÕ±»·¢Ã÷£¬£¬£¬£¬ £¬Ó°ÏìÁË2964292ÃûSchoolDudeµÄÓû§¡£¡£¡£´Ë´ÎÊÂÎñй¶ÁËÐÕÃû¡¢ÓʼþµØµã¡¢ÕÊ»§ÃÜÂëºÈµç»°ºÅÂëµÈ¡£¡£¡£BrightlyÖØÖÃÁËËùÓÐSchoolDudeÓû§µÄÃÜÂ룬£¬£¬£¬ £¬²¢½¨ÒéÓû§ÊµÊ±¸ü¸ÄʹÓÃÁËÏàͬÃÜÂëµÄÆäËüÕÊ»§µÄÃÜÂë¡£¡£¡£


https://www.securityweek.com/brightly-software-notifying-3-million-schooldude-users-of-data-breach/


6¡¢KasperskyÐû²¼2023ÄêÀÕË÷Èí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ


5ÔÂ11ÈÕ£¬£¬£¬£¬ £¬KasperskyÐû²¼ÁË2023ÄêÀÕË÷Èí¼þÌ¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£×î¾ßÓ°ÏìÁ¦µÄÀÕË÷×éÖ¯ÔÚÒÑÍùÒ»Ä걬·¢×ª±ä£¬£¬£¬£¬ £¬2022ÄêÉϰëÄêÊÇLockBit¡¢REvilºÍConti£¬£¬£¬£¬ £¬2022ϰëÄêÊÇLockBit¡¢BlackBastaºÍBlackCat£¬£¬£¬£¬ £¬2023ÄêQ1ÊÇLockBit¡¢Vice SocietyºÍBlackCat¡£¡£¡£2022ÄêÀÕË÷Èí¼þµÄÕ¼½ÏÁ¿Ö®2021ÄêÂÔÓÐϽµ£¬£¬£¬£¬ £¬´Ó51.9%Ͻµµ½39.8%¡£¡£¡£Kaspersky¶Ô2023ÄêµÄÕ¹ÍûÊǸü¶àµÄǶÈëʽ¹¦Ð§¡¢ÀÄÓÃDriverÒÔ¼°½ÓÄÉÆäËü¶ñÒâÈí¼þ¼Ò×åµÄ´úÂë¡£¡£¡£


https://securelist.com/new-ransomware-trends-in-2023/109660/