ExchangeÖÐÖ¹µ¼ÖÂÓû§ÎÞ·¨·¢ËÍÓʼþ²¢´¥·¢503¹ýʧ
Ðû²¼Ê±¼ä 2023-07-191¡¢ExchangeÖÐÖ¹µ¼ÖÂÓû§ÎÞ·¨·¢ËÍÓʼþ²¢´¥·¢503¹ýʧ
¾Ý7ÔÂ18ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬MicrosoftÕýÔÚÊÓ²ìÒ»Á¬µÄExchange OnlineÖÐÖ¹ÊÂÎñ¡£¡£¡£¡£Microsoft³Æ£¬£¬£¬£¬£¬£¬ÓÉÓÚ×î½ü¶Ôfree/busy»ù´¡ÉèÊ©¾ÙÐÐÁ˸ü¸Ä£¬£¬£¬£¬£¬£¬µ¼Ö²¿·ÖÓû§ÎÞ·¨·¢Ë͵ç×ÓÓʼþ¡£¡£¡£¡£¸ÃÊÂÎñÓ°ÏìÁËÃÀ¹ú¡¢Å·ÖÞ¡¢Ó¡¶ÈºÍÓ¢¹úµÄÓû§¡£¡£¡£¡£ÏêϸÀ´Ëµ£¬£¬£¬£¬£¬£¬ÊÜÓ°ÏìÓû§ÔÚ·¢ËÍÓʼþʱ¿ÉÄÜ»áÓöµ½ÎÊÌ⣬£¬£¬£¬£¬£¬²¢ÏÔʾ¡°503 5.5.1¹ýʧµÄÏÂÁîÐòÁС±µÄ¹ýʧÌáÐÑ¡£¡£¡£¡£¾ÝÃÀ¹ú¶«²¿Ê±¼ä7ÔÂ18ÈÕ06:39¸üУ¬£¬£¬£¬£¬£¬Î¢ÈíÌåÏÖÖÐÖ¹µÄ»ù´¡Ôµ¹ÊÔÓÉÒÑ»ñµÃ½â¾ö£¬£¬£¬£¬£¬£¬µ«ÈÔÓÐÓû§·´Ó¦ÔÚ·¢ËÍÓʼþʱ±£´æÎÊÌâ¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/microsoft/microsoft-exchange-online-hit-by-new-outage-blocking-emails/
2¡¢Å²Íþ¹«Ë¾TomraÔâµ½´ó¹æÄ£¹¥»÷²¿·ÖϵͳÔÝʱ¹Ø±Õ
ýÌå7ÔÂ18Èճƣ¬£¬£¬£¬£¬£¬Å²Íþ¹«Ë¾Tomra͸¶ÆäÔâµ½ÁË´ó¹æÄ£ÍøÂç¹¥»÷¡£¡£¡£¡£ÕâÊÇÒ»¼Ò½ÓÄɺͲɿó¹«Ë¾£¬£¬£¬£¬£¬£¬ÔÚ2022ÄêµÄÓªÒµ¶îµÖ´ï12ÒÚÃÀÔª¡£¡£¡£¡£¹¥»÷ʼÓÚÉÏÖÜÄ©7ÔÂ16ÈÕ£¬£¬£¬£¬£¬£¬ÎªÁË×èÖ¹¹¥»÷£¬£¬£¬£¬£¬£¬Tomra¹Ø±ÕÁ˲¿·ÖЧÀÍ¡£¡£¡£¡£ÔÚ¼¯ÍŲãÃæ£¬£¬£¬£¬£¬£¬ÆäÄÚ²¿ITЧÀͺͲ¿·Öºǫ́ӦÓÃÈÔÈ»´¦ÓÚÀëÏß״̬£¬£¬£¬£¬£¬£¬Ó°ÏìÁ˹©Ó¦Á´ÖÎÀí£¬£¬£¬£¬£¬£¬Ö÷ÒªµÄ°ì¹«ËùÔÚ´¦ÓÚÀëÏß״̬£¬£¬£¬£¬£¬£¬Ô±¹¤±»ÒªÇóÔ¶³Ì°ì¹«¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬ÉÐÎÞºÚ¿ÍÍÅ»ïÉù³ÆÎª´ËÊÂÈÏÕæ¡£¡£¡£¡£
https://www.theregister.com/2023/07/18/tomra_cyberattack/
3¡¢WordfenceÅû¶ʹÓÃWPÖ§¸¶²å¼þÎó²îÐ®ÖÆÍøÕ¾µÄ¹¥»÷
7ÔÂ17ÈÕ£¬£¬£¬£¬£¬£¬WordfenceÅû¶ÁËʹÓÃWordPress WooCommerce Payments²å¼þÖÐÎó²îµÄ´ó¹æÄ£¹¥»÷»î¶¯¡£¡£¡£¡£¹¥»÷×îÏÈÓÚ7ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬²¢ÔÚÖÜÁùµÖ´ï·åÖµ£¬£¬£¬£¬£¬£¬Õë¶Ô15.7Íò¸öÍøÕ¾ÌᳫÁË130Íò´Î¹¥»÷¡£¡£¡£¡£´Ë´Î»î¶¯Ê¹ÓÃÁË3ÔÂ23ÈÕ±»ÐÞ¸´µÄÎó²îCVE-2023-28121£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓøÃÎó²îÔÚÄ¿µÄ×°±¸ÉÏ×°ÖÃWP Console²å¼þ»ò½¨ÉèÖÎÀíÔ±ÕË»§¡£¡£¡£¡£¹ØÓÚ×°ÖÃÁËWP ConsoleµÄϵͳ£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓòå¼þÖ´ÐÐPHP´úÂ룬£¬£¬£¬£¬£¬ÔÚЧÀÍÆ÷ÉÏ×°ÖÃÎļþÉÏ´«³ÌÐò£¬£¬£¬£¬£¬£¬×ÝÈ»Îó²î±»ÐÞ¸´ºó£¬£¬£¬£¬£¬£¬¸Ã³ÌÐòÈÔ¿ÉÓÃ×÷ºóÃÅ¡£¡£¡£¡£
https://www.wordfence.com/blog/2023/07/massive-targeted-exploit-campaign-against-woocommerce-payments-underway/
4¡¢vpnMentor·¢Ã÷¶à¸öÔ¼»áÓ¦ÓõÄÔ¼230ÍòÌõ¼Í¼й¶
vpnMentorÔÚ7ÔÂ17ÈÕ³ÆÆäÒ»¸ö°üÀ¨Ô¼Äª230ÍòÌõ¼Í¼µÄÎÞÃÜÂë±£»£»£»£»¤µÄÊý¾Ý¿â¡£¡£¡£¡£½øÒ»³ÌÐò²éÏÔʾ£¬£¬£¬£¬£¬£¬ÕâЩÊý¾ÝÉæ¼°¶à¸öÔ¼»áÓ¦Ó㬣¬£¬£¬£¬£¬¿ÉÄÜÓÉÓÚÕâЩӦÓÃÊôÓÚͳһ¸ö¹«Ë¾£¬£¬£¬£¬£¬£¬»òÓÉͳһ¹«Ë¾¿ª·¢¡£¡£¡£¡£Ð¹Â¶¼Í¼¹²2357896Ìõ£¬£¬£¬£¬£¬£¬×ܾÞϸ340.6 GB£¬£¬£¬£¬£¬£¬°üÀ¨ÐÕÃû¡¢Õʺš¢µç×ÓÓʼþºÍÃÜÂëµÈÐÅÏ¢£¬£¬£¬£¬£¬£¬ÉõÖÁÉÐÓÐ969571ÕÅÓû§Í¼Ïñ¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬¸ÃÊý¾Ý¿â»¹°üÀ¨¹ûÕæµÄSDKÎļþ£¬£¬£¬£¬£¬£¬Õâ¿ÉÄܻᱻ¹¥»÷ÕßÓÃÓÚ½¨Éè´øÓÐÒþ²Ø¶ñÒ⹦Ч»òÎó²îµÄÓ¦ÓóÌÐò¡£¡£¡£¡£
https://www.vpnmentor.com/news/report-419dating-breach/
5¡¢JumpCloud¹ûÕæÆä½üÆÚÔâµ½µÄÇå¾²ÊÂÎñµÄϸ½ÚÐÅÏ¢
ýÌå7ÔÂ18Èճƣ¬£¬£¬£¬£¬£¬ÃÀ¹úÆóÒµÈí¼þ¹«Ë¾JumpCloud¹ûÕæÁËÆä½üÆÚÔâµ½µÄÇå¾²ÊÂÎñµÄÏêÇé¡£¡£¡£¡£Ô¼ÄªÒ»¸öÔÂǰ£¬£¬£¬£¬£¬£¬Ò»¸öÓɹú¼ÒÖ§³ÖµÄºÚ¿ÍÍÅ»ïÈëÇÖÁËÆäϵͳ¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ6ÔÂ27ÈÕ·¢Ã÷ÁËÕâÒ»ÊÂÎñ£¬£¬£¬£¬£¬£¬¼´¹¥»÷Õßͨ¹ýÓã²æÊ½´¹ÂÚ¹¥»÷ÈëÇÖÆäϵͳһÖܺ󡣡£¡£¡£Ö®ºó¶Ô¸ÃÊÂÎñÕö¿ªÊӲ죬£¬£¬£¬£¬£¬·¢Ã÷´Ë´Î¹¥»÷µÄÕë¶ÔÐÔ¼«Ç¿£¬£¬£¬£¬£¬£¬Ö»Õë¶ÔÌØ¶¨¿Í»§£¬£¬£¬£¬£¬£¬¹¥»÷Õß½«Êý¾Ý×¢ÈëÁËJumpCloudµÄÏÂÁî¿ò¼Ü¡£¡£¡£¡£ÎªÁËÓ¦¶Ô´Ë´Î¹¥»÷£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾¾öÒéÌæ»»APIÃÜÔ¿²¢ÖØÐÞ±»ÈëÇֵĻù´¡ÉèÊ©¡£¡£¡£¡£
https://securityaffairs.com/148547/apt/jumpcloud-nation-state-actor-attack.html
6¡¢FACCTÐû²¼¹ØÓÚRedCurl×î½ü¹¥»÷ºÍ¹¤¾ßµÄÆÊÎö±¨¸æ
7ÔÂ17ÈÕ£¬£¬£¬£¬£¬£¬FACCTÐû²¼±¨¸æ³Æ£¬£¬£¬£¬£¬£¬RedCurl½üÆÚ¹¥»÷ÁËÒ»¼Ò¶íÂÞ˹µÄ´óÐÍÒøÐкÍÒ»¼Ò°Ä´óÀûÑǵĹ«Ë¾¡£¡£¡£¡£FAACTÌåÏÖ£¬£¬£¬£¬£¬£¬RedCurlÔøÁ½´ÎʵÑé¹¥»÷Õâ¼Ò¶íÂÞË¹ÒøÐУ¬£¬£¬£¬£¬£¬ÔÚ2022Äê11ÔµĵÚÒ»´ÎʵÑéÖУ¬£¬£¬£¬£¬£¬ËûÃÇʹÓÃÁË´¹ÂÚÓʼþ£¬£¬£¬£¬£¬£¬µ«Ê§°ÜÁË¡£¡£¡£¡£ÔÚ½ñÄê5Ô£¬£¬£¬£¬£¬£¬¸ÃÍÅ»ïÀÖ³ÉÈëÇÖÁ˸ÃÒøÐеÄÒ»Ãû³Ð°üÉÌ£¬£¬£¬£¬£¬£¬ÒÔÈëÇÖÄ¿µÄµÄ»ù´¡ÉèÊ©¡£¡£¡£¡£6Ô£¬£¬£¬£¬£¬£¬RedCurlÔÚ¶Ô°Ä´óÀûÑǹ«Ë¾µÄ¹¥»÷ÖÐʹÓÃÁËÏàͬµÄÕ½ÂԺ͹¤¾ß¡£¡£¡£¡£Ñо¿Ö°Ô±»¹·¢Ã÷ÁËÕâЩ»î¶¯Ê¹ÓõÄй¤¾ßRedCurl.SimpleDownloader£¬£¬£¬£¬£¬£¬ÏÖÔÚÈÔÔÚ¿ª·¢ÖС£¡£¡£¡£
https://www.facct.ru/blog/redcurl-2023/


¾©¹«Íø°²±¸11010802024551ºÅ