ÄÜÔ´ÐÐÒµ³Ð°üÉÌENGlobalÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬£¬ITϵͳ»á¼ûÊÜÏÞ

Ðû²¼Ê±¼ä 2024-12-04

1. ÄÜÔ´ÐÐÒµ³Ð°üÉÌENGlobalÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬£¬ITϵͳ»á¼ûÊÜÏÞ


12ÔÂ3ÈÕ£¬£¬£¬£¬£¬£¬£¬ENGlobal CorporationÊÇÒ»¼ÒÔÚÄÜÔ´ÐÐÒµÉè¼ÆºÍÖÆ×÷×Ô¶¯¿ØÖÆÏµÍ³µÄÖ÷Òª³Ð°üÉÌ£¬£¬£¬£¬£¬£¬£¬¿ËÈÕ֤ʵÆäÕýÃæÁÙÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬£¬¸Ã¹¥»÷×è°­ÁËÆäÕý³£ÔËÓª¡£ ¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ11ÔÂ25ÈÕ·¢Ã÷ÕâÒ»¹¥»÷£¬£¬£¬£¬£¬£¬£¬²¢ËæºóÏòÃÀ¹ú֤ȯÉúÒâίԱ»áÌá½»ÁËÏà¹Ø±¨¸æ¡£ ¡£¡£¡£¡£¾Ý³Æ£¬£¬£¬£¬£¬£¬£¬Ò»¸öÍþвÐÐΪÕß²»·¨»á¼ûÁ˹«Ë¾µÄÐÅÏ¢ÊÖÒÕϵͳ£¬£¬£¬£¬£¬£¬£¬²¢¼ÓÃÜÁ˲¿·ÖÊý¾ÝÎļþ£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂENGlobalÏÞÖÆÁËÔ±¹¤¶ÔITϵͳµÄ»á¼û£¬£¬£¬£¬£¬£¬£¬½öÏÞÓÚÐëÒªµÄÓªÒµÔËÓª¡£ ¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬¹«Ë¾ÕýÔÚ½ÓÄɶàÏî²½·¥½â¾öÎÊÌ⣬£¬£¬£¬£¬£¬£¬°üÀ¨Æô¶¯ÄÚ²¿ÊÓ²ìºÍÔ¼ÇëÍâ²¿ÍøÂçÇ徲ר¼Ò£¬£¬£¬£¬£¬£¬£¬µ«ÖÜÈ«»Ö¸´ITϵͳ»á¼ûȨÏÞµÄʱ¼äÉв»ÇåÎú£¬£¬£¬£¬£¬£¬£¬ÇÒÉÐÎÞ·¨È·¶¨ÕâÒ»ÊÂÎñÊÇ·ñ»á¶Ô¹«Ë¾²ÆÎñÒµ¼¨±¬·¢ÖØ´óÓ°Ïì¡£ ¡£¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬£¬£¬£¬£¬£¬ENGlobalÔø±¨¸æÉϸö¼¾¶ÈÊÕÈë¿¿½ü600ÍòÃÀÔª£¬£¬£¬£¬£¬£¬£¬½ñÄêǰ¾Å¸öÔÂÊÕÈëΪ1840ÍòÃÀÔª£¬£¬£¬£¬£¬£¬£¬ÇҸù«Ë¾×¨ÃÅΪÃÀ¹ú¹ú·À¹¤ÒµÌṩ½»Ô¿³××Ô¶¯»¯ºÍÒDZíϵͳ¡£ ¡£¡£¡£¡£ÀàËÆÉæ¼°ENGlobalºÍ֮ǰ½­É­×ԿصÄÀÕË÷Èí¼þ¹¥»÷¿ÉÄÜ»áй¶ÃÀ¹úÕþ¸®ÉèÊ©µÄÃô¸ÐÎļþ¡¢ÌõÔ¼ºÍÍýÏ룬£¬£¬£¬£¬£¬£¬Òý·¢ÁìÍÁÇå¾²²¿¹ÙÔ±µÄСÐÄ¡£ ¡£¡£¡£¡£


https://therecord.media/energy-industry-contractor-ransomware-disruption


2. µ¤Âó×î´óÍøÂçÌṩÉÌTDC NetÈí¼þ¸üÐÂÒý·¢´ó¹æÄ£µçÐÅÖÐÖ¹


11ÔÂ28ÈÕ£¬£¬£¬£¬£¬£¬£¬µ¤Âó×î´óµÄÍøÂçÌṩÉÌTDC NetÔÚ11ÔÂ27ÈÕÔâÓö´ó¹æÄ£µçÐÅÖÐÖ¹£¬£¬£¬£¬£¬£¬£¬Ôµ¹ÊÔ­Óɹé×ïÓÚ×ÅʵʩµÄÈí¼þ¸üС£ ¡£¡£¡£¡£´Ë´ÎÖÐÖ¹µ¼ÖÂÊýǧÃû¿Í»§ÎÞ·¨²¦´òµç»°£¬£¬£¬£¬£¬£¬£¬°üÀ¨½ôÆÈЧÀ͵绰112£¬£¬£¬£¬£¬£¬£¬¸ø¿Í»§´øÀ´¼«´óδ±ã¡£ ¡£¡£¡£¡£¾ÝABCÐÂÎű¨µÀ£¬£¬£¬£¬£¬£¬£¬TDC Net²»ÒÔΪ´Ë´ÎÖÐÖ¹ÊÇÓÉÍøÂç¹¥»÷ÒýÆðµÄ¡£ ¡£¡£¡£¡£´Ë´ÎÊÂÎñ»¹µ¼ÖÂÖÁÉÙÒ»¼ÒÒ½Ôº±»ÆÈïÔÌ­·ÇÒªº¦Ò½ÁÆÐ§ÀÍ£¬£¬£¬£¬£¬£¬£¬Çå¾²²¿·ÖÒ²ÔÚ½ÖÉÏѲÂßÒÔѰÕÒÐèÒª×ÊÖúµÄÈË¡£ ¡£¡£¡£¡£TDC NetÒѽÓÄɲ½·¥ÐÞ¸´ÎÊÌ⣬£¬£¬£¬£¬£¬£¬ÔÊÐí¿Í»§²¦´òµç»°£¬£¬£¬£¬£¬£¬£¬µ«ÉùÒôÖÊÁ¿ÓÐËùϽµ¡£ ¡£¡£¡£¡£ÔËÓªÉ̽¨Òé¿Í»§ÔÚ²¦´ò112֮ǰÏÈÈ¡³öSIM¿¨¡£ ¡£¡£¡£¡£TDC NetÌá¹©ÒÆ¶¯¡¢¹âÏ˺ÍÍ­ÏßЧÀÍ£¬£¬£¬£¬£¬£¬£¬ÓÉTDC GroupÓÚ2019Ä꽨É裬£¬£¬£¬£¬£¬£¬ÆäÀúÊ·¿ÉÒÔ×·Ëݵ½1879Ä꣬£¬£¬£¬£¬£¬£¬ÆäʱÑÇÀúɽ´ó¡¤¸ñÀ×¶òÄ·¡¤±´¶ûµÄ±´¶ûµç»°¹«Ë¾ÔÚµ¤Âó¿ªÉèÁË·Ö¹«Ë¾£¬£¬£¬£¬£¬£¬£¬1881ÄêÔڸ籾¹þ¸ù¿ªÉèÁ˵ÚÒ»¼Òµç»°½»Á÷»ú¡£ ¡£¡£¡£¡£


https://www.datacenterdynamics.com/en/news/danish-telco-tdc-net-suffers-telecoms-outage-impacts-emergency-calls/


3. ˹ÍÐÀû¼¯ÍÅÔÚÔâÊÜÀÕË÷Èí¼þ¹¥»÷ºóÔÚÃÀ¹úÉêÇëÐÝÒµ


12ÔÂ3ÈÕ£¬£¬£¬£¬£¬£¬£¬Ë¹ÍÐÀû¼¯ÍÅÃÀ¹ú¹«Ë¾½üÆÚÉêÇëÁËÐÝÒµ£¬£¬£¬£¬£¬£¬£¬ÕâÒ»¾öÒéÊÇÔÚÂÄÀúÁËһϵÁÐÖØ´ó¹¥»÷Ö®ºó×ö³öµÄ¡£ ¡£¡£¡£¡£8Ô·Ý£¬£¬£¬£¬£¬£¬£¬¸Ã¼¯ÍÅÔâÊÜÁËÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂÆäITϵͳ£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÆóÒµ×ÊÔ´ÍýÏëÆ½Ì¨£¬£¬£¬£¬£¬£¬£¬ÔâÊÜÑÏÖØÆÆË𣬣¬£¬£¬£¬£¬£¬ÆÈʹÕû¸ö¼¯ÍÅתΪÊÖ¶¯²Ù×÷£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÁ˰üÀ¨»á¼ÆÔÚÄÚµÄÒªº¦Á÷³Ì£¬£¬£¬£¬£¬£¬£¬Ô¤¼ÆÒªµ½2025ÄêÍ·²Å»ªÖÜÈ«»Ö¸´¡£ ¡£¡£¡£¡£ÕâÒ»ÊÂÎñ»¹µ¼ÖÂ˹ÍÐÀûÃÀ¹ú×Ó¹«Ë¾ÎÞ·¨Ïò´û·½Ìṩ²ÆÎñ±¨¸æ£¬£¬£¬£¬£¬£¬£¬±»´û·½Ö¸¿ØÍÏÇ·ÁË7800ÍòÃÀÔªµÄÕ®Îñ¡£ ¡£¡£¡£¡£¶øÔÚ7Ô·Ý£¬£¬£¬£¬£¬£¬£¬Ë¹ÍÐÀû¼¯ÍÅÔÚ¶íÂÞ˹µÄÁ½¼ÒÄð¾Æ³§±»Ã»ÊÕ£¬£¬£¬£¬£¬£¬£¬Ôµ¹ÊÔ­ÓÉÊǸü¯Íż°ÆäÊ×´´ÈËÓÈÀл·òÀÕ±»Ö¸¶¨Îª¡°¼«¶Ë·Ö×Ó¡±£¬£¬£¬£¬£¬£¬£¬ÕâÓëËûÃÇÔÚÎÚ¿ËÀ¼Õ½Õùʱ´úΪÎÚ¿ËÀ¼ÔÖÀ迪չµÄÈËÐÔÖ÷ÒåÔ®ÖúÊÂÇéºÍÏà¹ØÓªÏú»î¶¯Óйء£ ¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬Ë¹ÍÐÀû¼¯ÍÅ»¹Óë¶íÂÞ˹¹úÓÐÆóÒµ¾Í·üÌØ¼ÓÉ̱êȨÕö¿ªÁ˳¤´ï23ÄêµÄ·¨Í¥¶·Õù£¬£¬£¬£¬£¬£¬£¬ºÄ×ÊÊýÍòÍòÃÀÔª¡£ ¡£¡£¡£¡£¹«Ë¾Ê×´´ÈËл·òÀÕÒ²ÒòÆ·ÆÀÆÕ¾©ÕþȨ¶ø±»ÆÈÌÓÀë¶íÂÞ˹£¬£¬£¬£¬£¬£¬£¬²¢ÔÚÈðÊ¿»ñµÃºÇ»¤ºÍÓ¢¹ú¹«ÃñÉí·Ý¡£ ¡£¡£¡£¡£ÕâЩÊÂÎñÅäºÏµ¼ÖÂÁË˹ÍÐÀû¼¯ÍÅÃÀ¹ú¹«Ë¾µÄÐÝÒµÉêÇë¡£ ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/vodka-maker-stoli-files-for-bankruptcy-in-us-after-ransomware-attack/


4. CloudflareÓòÃûÔâÀÄÓãºÍøÂç´¹ÂÚÓë¶ñÒâ»î¶¯¼¤Ôö


12ÔÂ3ÈÕ£¬£¬£¬£¬£¬£¬£¬CloudflareµÄ¡°pages.dev¡±ºÍ¡°workers.dev¡±ÓòÃûÒòÆäÆ·ÅÆÐÅÓþ¡¢Ð§ÀͿɿ¿ÐԺ͵ÍʹÓñ¾Ç®£¬£¬£¬£¬£¬£¬£¬ÕýÔ½À´Ô½¶àµØ±»ÍøÂç·¸·¨·Ö×ÓÀÄÓÃÓÚÍøÂç´¹ÂÚºÍÆäËû¶ñÒâ»î¶¯¡£ ¡£¡£¡£¡£¾ÝÍøÂçÇå¾²¹«Ë¾Fortra±¨¸æ£¬£¬£¬£¬£¬£¬£¬Óë2023ÄêÏà±È£¬£¬£¬£¬£¬£¬£¬ÕâЩÓòÃûµÄÀÄÓÃÂÊÉÏÉýÁË100%ÖÁ250%¡£ ¡£¡£¡£¡£Cloudflare Pages×÷Ϊǰ¶Ë¿ª·¢Ö°Ô±Æ½Ì¨£¬£¬£¬£¬£¬£¬£¬±»ÓÃÓÚÍйÜÖÐÐÄÍøÂç´¹ÂÚÒ³Ãæ£¬£¬£¬£¬£¬£¬£¬½«Êܺ¦ÕßÖØ¶¨Ïòµ½¶ñÒâÍøÕ¾£¬£¬£¬£¬£¬£¬£¬Èçð³äµÄMicrosoft Office365µÇÂ¼Ò³Ãæ¡£ ¡£¡£¡£¡£FortraÖ¸³ö£¬£¬£¬£¬£¬£¬£¬Õë¶ÔCloudflare PagesµÄÍøÂç´¹ÂÚ¹¥»÷ÔöÌíÁË198%£¬£¬£¬£¬£¬£¬£¬Ô¤¼Æµ½Äêµ×¹¥»÷×ÜÊý½«Áè¼Ý1600Æð¡£ ¡£¡£¡£¡£Í¬Ê±£¬£¬£¬£¬£¬£¬£¬Cloudflare WorkersÎÞЧÀÍÆ÷ÅÌËãÆ½Ì¨Ò²±»ÀÄÓ㬣¬£¬£¬£¬£¬£¬°üÀ¨¾ÙÐÐDDoS¹¥»÷¡¢°²ÅÅÍøÂç´¹ÂÚÍøÕ¾¡¢×¢ÈëÓк¦¾ç±¾ºÍ±©Á¦ÆÆ½âÃÜÂëµÈ¡£ ¡£¡£¡£¡£Fortra±¨¸æ³Æ£¬£¬£¬£¬£¬£¬£¬Õë¶ÔCloudflare WorkersµÄÍøÂç´¹ÂÚ¹¥»÷¼¤Ôö104%£¬£¬£¬£¬£¬£¬£¬Ô¤¼Æµ½Äêµ××ÜÊý½«µÖ´ï½ü6000Æð¡£ ¡£¡£¡£¡£Óû§Ó¦ÑéÖ¤URLµÄÕæÊµÐÔ²¢¼¤»îË«ÒòËØÉí·ÝÑéÖ¤µÈÇå¾²²½·¥£¬£¬£¬£¬£¬£¬£¬ÒÔÌá·ÀÕâЩÀÄÓÃÐÐΪ¡£ ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/cloudflares-developer-domains-increasingly-abused-by-threat-actors/


5. WhatsUp GoldÑÏÖØÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬£¬¼±Ðè¸üÐÂÇå¾²²¹¶¡


12ÔÂ3ÈÕ£¬£¬£¬£¬£¬£¬£¬Progress WhatsUp Gold±»·¢Ã÷±£´æÒ»¸ö±àºÅΪCVE-2024-8785µÄÑÏÖØÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬£¬¸ÃÎó²îÓÉTenableÔÚ2024Äê8ÔÂÖÐÑ®·¢Ã÷£¬£¬£¬£¬£¬£¬£¬CVSS v3.1ÆÀ·Ö¸ß´ï9.8¡£ ¡£¡£¡£¡£Îó²î±£´æÓÚNmAPI.exeÀú³ÌÖУ¬£¬£¬£¬£¬£¬£¬ÓÉÓÚ´«ÈëÊý¾ÝÑé֤ȱ·¦£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õ߿ɷ¢ËÍÌØÖÆÇëÇóÐ޸ĻòÁýÕÖWindows×¢²á±íÏ£¬£¬£¬£¬£¬£¬½ø¶ø¿ØÖÆWhatsUp GoldµÄÉèÖÃÎļþ¶ÁȡλÖᣠ¡£¡£¡£¡£¹¥»÷Õß¿Éͨ¹ýnetTcpBindingŲÓÃUpdateFailoverRegistryValues²Ù×÷£¬£¬£¬£¬£¬£¬£¬¸ü¸Ä×¢²á±íÖµ»ò½¨ÉèÐÂÖµ£¬£¬£¬£¬£¬£¬£¬Ê¹Ð§ÀÍÖØÆôʱ´ÓÔ¶³Ì¹²Ïí¶ÁÈ¡ÉèÖÃÎļþ£¬£¬£¬£¬£¬£¬£¬Ö´ÐÐí§ÒâÔ¶³Ì¿ÉÖ´ÐÐÎļþ¡£ ¡£¡£¡£¡£¸ÃÎó²îÎÞÐèÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬£¬ÇÒNmAPI.exeЧÀÍ¿Éͨ¹ýÍøÂç»á¼û£¬£¬£¬£¬£¬£¬£¬Î£º¦¼«´ó¡£ ¡£¡£¡£¡£Progress SoftwareÓÚ9ÔÂ24ÈÕÐû²¼Á˰üÀ¨ÐÞ¸´´ËÎó²îÔÚÄÚµÄÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬½¨ÒéϵͳÖÎÀíÔ±¾¡¿ìÉý¼¶µ½°æ±¾24.0.1¡£ ¡£¡£¡£¡£½üÆÚ£¬£¬£¬£¬£¬£¬£¬WhatsUp GoldÒѶà´Î³ÉΪºÚ¿Í¹¥»÷Ä¿µÄ£¬£¬£¬£¬£¬£¬£¬Ê¹ÓùûÕæÎó²î»ñÈ¡ÆðÔ´»á¼ûȨÏÞ»ò½ÓÊÜÖÎÀíÔ±ÕÊ»§£¬£¬£¬£¬£¬£¬£¬Òò´ËʵʱӦÓÃÇå¾²¸üÐÂÖÁ¹ØÖ÷Òª¡£ ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/exploit-released-for-critical-whatsup-gold-rce-flaw-patch-now/


6. µÂÖ´·¨²¿·Öµ·»ÙCrimenetworkÍøÂç·¸·¨Êг¡£¬£¬£¬£¬£¬£¬£¬¾Ð²¶ÖÎÀíÔ±


12ÔÂ3ÈÕ£¬£¬£¬£¬£¬£¬£¬µÂ¹úÖ´·¨²¿·Öµ·»ÙÁ˵ÂÓïµØÇø×î´óµÄÍøÂç·¸·¨Êг¡Crimenetwork£¬£¬£¬£¬£¬£¬£¬²¢¾Ð²¶ÁËÆäÖÎÀíÔ±£¬£¬£¬£¬£¬£¬£¬×ïÃûÊÇЭÖúÏúÊÛ¶¾Æ·¡¢ÇÔÈ¡Êý¾ÝºÍÌṩ²»·¨Ð§ÀÍ¡£ ¡£¡£¡£¡£¸ÃÊг¡½¨ÉèÓÚ2012Ä꣬£¬£¬£¬£¬£¬£¬¹Ø±ÕʱӵÓÐÁè¼Ý100Ãû×¢²áÂô¼ÒºÍ10ÍòÓû§£¬£¬£¬£¬£¬£¬£¬ÆäÖдó´ó¶¼Î»ÓÚµÂÓï¹ú¼Ò¡£ ¡£¡£¡£¡£Óû§¿ÉÒÔʹÓñÈÌØ±Ò»òÄÑÒÔ×·×ٵļÓÃÜÇ®±ÒÃÅÂÞ±ÒÖ§¸¶ÉÌÆ·ºÍЧÀÍ£¬£¬£¬£¬£¬£¬£¬ÉúÒâÁ¿Öش󣬣¬£¬£¬£¬£¬£¬Æ½Ì¨´ÓÖÐ׬ȡÌá³É¡¢Ô¶©ÔÄ·ÑºÍ¹ã¸æÊÕÈë¡£ ¡£¡£¡£¡£±»²¶µÄÖÎÀíÔ±ÊÇÒ»Ãû29ËêµÄÏÓÒÉÈË£¬£¬£¬£¬£¬£¬£¬ÃæÁÙ¶àÏîÖ¸¿Ø¡£ ¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬µÂ¹úÖ´·¨²¿·Ö»¹ÖÒÑԳƣ¬£¬£¬£¬£¬£¬£¬ÒÑ»ñµÃÓйظÃÍøÂç·¸·¨Æ½Ì¨×¢²á»áÔ±µÄÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬Î´À´¿ÉÄÜ»á¾Ð²¶¸ü¶àÏÓÒÉÈË¡£ ¡£¡£¡£¡£´Ë´ÎÐж¯Êǵ¹ú½üÆÚ·´ÍøÂç·¸·¨Ðж¯µÄÒ»²¿·Ö£¬£¬£¬£¬£¬£¬£¬»¹Éæ¼°ÆäËûÖøÃû°¸¼þ£¬£¬£¬£¬£¬£¬£¬Èç²é·âDstat.cc DDoSÉó²éƽ̨ºÍ²é»ñ47¼Ò¼ÓÃÜÇ®±ÒÉúÒâЧÀÍ»ú¹¹¡£ ¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/police-seizes-largest-german-online-crime-marketplace-arrests-admin/