µçÉÌÆ½Ì¨Mercari³ÆÆäÊܵ½Codecov¹©Ó¦Á´¹¥»÷Ó°Ï죻£»£»Ó¢¹úOne CallѬȾDarkSide£¬£¬£¬ £¬£¬£¬±»ÀÕË÷1500ÍòÓ¢°÷

Ðû²¼Ê±¼ä 2021-05-24

1.µçÉÌÆ½Ì¨Mercari³ÆÆäÊܵ½Codecov¹©Ó¦Á´¹¥»÷Ó°Ïì


1.jpg


µçÉÌÆ½Ì¨Mercari³ÆÆäÊܵ½Codecov¹©Ó¦Á´¹¥»÷µÄÓ°Ï죬£¬£¬ £¬£¬£¬´ó×Ú¿Í»§ÐÅϢй¶¡£¡£¡£ ¡£¡£¡£MercariÊÇÒ»¼ÒÈÕ±¾ÉÏÊй«Ë¾£¬£¬£¬ £¬£¬£¬×èÖ¹2017Ä꣬£¬£¬ £¬£¬£¬ÆäÓ¦ÓóÌÐòÔÚÈ«ÇòµÄÏÂÔØÁ¿ÒÑÁè¼Ý1ÒڴΡ£¡£¡£ ¡£¡£¡£´Ë´ÎÊÂÎñй¶ÁË17085ÌõÉæ¼°¿Í»§ÕÊ»§µÄÐÅÏ¢£¬£¬£¬ £¬£¬£¬°üÀ¨ÒøÐдúÂë¡¢·ÖÐдúÂë¡¢ÕʺźͳÖÓÐÈ˵È£»£»£»7966ÌõMercariºÍMerpayÏàÖúͬ°éµÄÐÅÏ¢£¬£¬£¬ £¬£¬£¬°üÀ¨ÐÕÃû¡¢³öÉúÈÕÆÚ¡¢Á¥Êô¹ØÏµºÍÓʼþµØµãµÈ£»£»£»ÒÔ¼°2615ÌõÔ±¹¤ÐÅÏ¢µÈ¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/e-commerce-giant-suffers-major-data-breach-in-codecov-incident/


2.Ó¡¶ÈÄáÎ÷ÑÇÕþ¸®ÏÖÈ·ÈÏÆä²¿·Ö¹«ÃñµÄÉç±£ÐÅÏ¢ÒÑй¶


2.jpg


ÉÏÖÜ£¬£¬£¬ £¬£¬£¬Ò»¸öÃûΪKotzµÄºÚ¿ÍÔÚ°µÍø¹ûÕæÁ˲¿·ÖÓ¡ÄṫÃñµÄÊý¾Ý£¬£¬£¬ £¬£¬£¬²¢Éù³ÆÆäÓµÓÐÒ»¸öËùÓÐ2.7ÒÚ¹«ÃñµÄÊý¾Ý¡£¡£¡£ ¡£¡£¡£ºÚ¿Í¹ûÕæµÄÊý¾Ý°üÀ¨100Íò¸öÓ¡ÄṫÃñµÄÐÕÃû¡¢Éí·ÝºÅÂë¡¢ÆÜÉíµØµãºÍµç»°ºÅÂëµÈ¡£¡£¡£ ¡£¡£¡£ÏÖÔÚ£¬£¬£¬ £¬£¬£¬Ó¡¶ÈÄáÎ÷ÑǵÄͨѶºÍÐÅÏ¢²¿È·ÈÏÆä²¿·Ö¹«ÃñµÄÉç±£ÐÅÏ¢ÒÑй¶£¬£¬£¬ £¬£¬£¬µ«¼á³ÆÐ¹Â¶ÐÅÏ¢µÄ¹æÄ£±ÈºÚ¿ÍÉù³ÆµÄҪСµÃ¶à¡£¡£¡£ ¡£¡£¡£¸Ã¹úÕþ¸®ÌåÏÖÒѽÓÄɲ½·¥±ÜÃâ±»µÁÊý¾ÝµÄÀ©É¢£¬£¬£¬ £¬£¬£¬²¢ÒÑ×ÅÊÖÓÚй¶ԴͷµÄÊӲ졣¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118148/data-breach/indonesia-social-security-data-breach.html


3.DominoÔÙ´ÎÔâµ½¹¥»÷£¬£¬£¬ £¬£¬£¬1.8ÒÚ¶©µ¥µÄÐÅÏ¢±»¹ûÕæ


3.jpg


Ñо¿Ö°Ô±Rajshekhar Rajaharia³ÆºÚ¿ÍÔÚ°µÍø½¨ÉèÁËÒ»¸öËÑË÷ÒýÇæ£¬£¬£¬ £¬£¬£¬¹ûÕæÁËDomino's India 1.8ÒÚ¶©µ¥µÄÐÅÏ¢¡£¡£¡£ ¡£¡£¡£´Ë´Î¹ûÕæµÄÐÅÏ¢°üÀ¨¿Í»§ÐÕÃû¡¢µç×ÓÓʼþ¡¢µç»°ºÅÂëºÍGPSλÖõÈ¡£¡£¡£ ¡£¡£¡£Jubilant¹«Ë¾Ö¤ÊµÁË´Ë´Î×ß©ÊÂÎñ£¬£¬£¬ £¬£¬£¬²¢ÌåÏÖûÓÐÈκβÆÎñÐÅϢй¶£¬£¬£¬ £¬£¬£¬¸ÃÊÂÎñҲδ¶ÔÆäÓªÒµÔËÓªÔì³ÉÓ°Ïì¡£¡£¡£ ¡£¡£¡£ÕâÊÇDominoÔÚÒÑÍùµÄÁ½¸öÔÂÄÚ±¬·¢µÄµÚ¶þ´ÎÊý¾Ýй¶£¬£¬£¬ £¬£¬£¬ÔçÔÚ4Ô³õ£¬£¬£¬ £¬£¬£¬Ä³ºÚ¿Í¾ÍÇÔÈ¡ÁËDominos 13TBµÄÊý¾Ý¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.moneycontrol.com/news/technology/dominos-india-suffers-data-breach-details-of-18-crore-orders-on-sale-6926731.html


4.Ó¢¹úOne CallѬȾDarkSide£¬£¬£¬ £¬£¬£¬±»ÀÕË÷1500ÍòÓ¢°÷


4.jpg


Ó¢¹úµÄ°ü¹Ü¹«Ë¾One CallѬȾDarkSide£¬£¬£¬ £¬£¬£¬Óʼþϵͳ¡¢ÍøÕ¾ºÍµç»°Ïß·Êܵ½Ó°Ïì¡£¡£¡£ ¡£¡£¡£¾ÝϤ£¬£¬£¬ £¬£¬£¬¹¥»÷±¬·¢ÔÚ5ÔÂ12ÈÕÍíÉÏ»ò13ÈÕÆÆÏþ£¬£¬£¬ £¬£¬£¬Ô±¹¤ÔÚÉϰ¶ÏµÍ³×¼±¸ÊÂÇéʱ·¢Ã÷ÆäÅÌËã»úÒѱ»ÀÕË÷Èí¼þѬȾ¡£¡£¡£ ¡£¡£¡£Êê½ð¼Í¼ҪÇóÖ§¸¶1500ÍòÓ¢°÷£¬£¬£¬ £¬£¬£¬²»È»½«¹ûÕæ¿Í»§µÄÃÜÂëºÍÒøÐÐÐÅÏ¢µÈ¡£¡£¡£ ¡£¡£¡£Ö»¹Ü¹¥»÷±¬·¢ÔÚÒ»¸ö¶àÐÇÆÚǰ£¬£¬£¬ £¬£¬£¬µ«One CallÈÔδ½ÒÏþÏà¹ØÉùÃ÷£¬£¬£¬ £¬£¬£¬Ö»ÊǸæË߿ͻ§ËüÓöµ½ÁËÊÖÒÕÎÊÌâ¡£¡£¡£ ¡£¡£¡£Ö±µ½ºÚ¿Í½«Ð¹Â¶ÐÅÏ¢µÄ½ØÍ¼¹ûÕæµ½°µÍø£¬£¬£¬ £¬£¬£¬Æä¿Í»§²Å»ñϤÁË´Ë´ÎÊÂÎñ¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.doncasterfreepress.co.uk/news/leaked-one-call-staff-messages-confirm-cyber-security-incident-as-major-crime-unit-called-in-3243731


5.CyberNews·¢Ã÷ºÚ¿Í¿ÉʹÓÃAPIÃÜÔ¿ÇÔÈ¡¼ÓÃÜÇ®±Ò


5.jpg


CyberNewsÑо¿Ö°Ô±·¢Ã÷ºÚ¿Í¿ÉʹÓÃAPIÃÜÔ¿£¬£¬£¬ £¬£¬£¬ÔÚûÓб»ÊÚÓèÌá¿îµÄÇéÐÎÏ´ÓÊܺ¦ÕßµÄÕË»§ÇÔÈ¡¼ÓÃÜÇ®±Ò¡£¡£¡£ ¡£¡£¡£Ëæ×żÓÃÜÇ®±ÒÊг¡ÔÚÒÑÍù¼¸ÄêµÄ±¬Õ¨Ê½ÔöÌí£¬£¬£¬ £¬£¬£¬¹«Ë¾×îÏÈÌṩÖÖÖÖÓ¦ÓóÌÐòºÍЧÀÍÀ´×ÊÖúÉúÒâÕß¼ò»¯ÉúÒâÁ÷³Ì¡£¡£¡£ ¡£¡£¡£ÉúÒâÕß¿ÉÊÚȨµÚÈý·½Ó¦ÓÃͨ¹ýAPIÃÜÔ¿»á¼ûËûÃÇÔÚ¼ÓÃÜÇ®±ÒÉúÒâËùµÄÕË»§²¢Ö´ÐÐÖݪֲÙ×÷¡£¡£¡£ ¡£¡£¡£ºÚ¿Í¿ÉÒÔÈÝÒ×µØÈƹýAPIÃÜÔ¿Éϵġ°½öÉúÒ⡱ÉèÖ㬣¬£¬ £¬£¬£¬´ÓÊܺ¦ÕßÕË»§ÖÐÇÔÈ¡×ʽ𡣡£¡£ ¡£¡£¡£ÕâÑù×öÉõÖÁÎÞÐè»ñµÃÄ¿µÄÕË»§µÄƾ֤»òÌá¿îȨ£¬£¬£¬ £¬£¬£¬Ù²È»³ÉΪһÖÖÐÂÐ˵폷¨ÉÌҵģʽ¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://cybernews.com/security/report-how-cybercriminals-abuse-api-keys-to-steal-millions/


6.Unit 42Ðû²¼ÓйØÀÕË÷Èí¼þ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ


6.jpg


Unit 42Ðû²¼ÁËÓйØÀÕË÷Èí¼þ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£ ¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬ £¬£¬£¬ÔÚÒÑÍùµÄ¼¸ÄêÖУ¬£¬£¬ £¬£¬£¬ÀÕË÷¹¥»÷»î¶¯µÄÊýÄ¿¼±¾çÉÏÉý¡£¡£¡£ ¡£¡£¡£2020ÄêÖ§¸¶µÄƽ¾ùÊê½ðÁè¼Ý31.2ÍòÃÀÔª£¬£¬£¬ £¬£¬£¬±È2019ÄêÔöÌíÁË171£¥£¬£¬£¬ £¬£¬£¬µ½ÏÖÔÚΪֹ£¬£¬£¬ £¬£¬£¬ÕâÒ»Êý×ÖÓÖÔöÌíÁ˽üÁ½±¶£¬£¬£¬ £¬£¬£¬µÖ´ï85ÍòÃÀÔª¡£¡£¡£ ¡£¡£¡£¶ø¹ØÓÚ´óÐÍÆóÒµ£¬£¬£¬ £¬£¬£¬Êê½ð½ð¶îƽ¾ù¿¿½ü300ÍòÃÀÔª¡£¡£¡£ ¡£¡£¡£È¥Äê×î¸ßµÄÊê½ð½ð¶î´Ó1500ÍòÃÀÔªÔöÌíµ½3000ÍòÃÀÔª£¬£¬£¬ £¬£¬£¬ÏÖÔÚÄêÔò¸ß´ï5000ÍòÃÀÔª¡£¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/breaking-down-ransomware-attacks/