• Ìá½»ÐèÇó
    *
    *

    *
    *
    *
    Á¢¼´Ìá½»
    µã»÷¡±Á¢¼´Ìá½»¡±£¬±íÃ÷ÎÒÀí½â²¢Í¬Òâ ¡¶»Æ½ð³Ç¿Æ¼¼Òþ˽Ìõ¿î¡·

    logo

      ²úÆ·Óë·þÎñ
      ½â¾ö·½°¸
      ¼¼ÊõÖ§³Ö
      ºÏ×÷·¢Õ¹
      ¹ØÓڻƽð³Ç

      ÉêÇëÊÔÓÃ
        ÿÖܻƽð³Ç¹ÙÍøËÙµÝ??? | Ñо¿ÈËÔ±·¢ÏÖThe GentlemenÀÕË÷×éÖ¯·¢ÆðµÄ¹¥»÷»î¶¯
        ·¢²¼Ê±¼ä£º2025-09-22 ÔĶÁ´ÎÊý£º 2198 ´Î

        ±¾ÖÜÈȵãʼþÍþвÇ鱨

        1¡¢Ñо¿ÈËÔ±·¢ÏÖThe GentlemenÀÕË÷×éÖ¯·¢ÆðµÄ¹¥»÷»î¶¯

        2025Äê8Ô£¬Ñо¿ÈËÔ±µ÷²éÁËÒ»³¡ÓÉThe GentlemenÀÕË÷×éÖ¯·¢ÆðµÄÐÂÐÍÀÕË÷Èí¼þ»î¶¯£¬¸Ã×éÖ¯ÊÇÒ»¸öÐÂÐËÇÒ´Ëǰδ±»¼Ç¼µÄÀÕË÷×éÖ¯¡£¸Ã×éÖ¯Õë¶Ô¶à¸öÐÐÒµºÍµØÇø½øÐй¥»÷£¬ÖØµã¹Ø×¢ÖÆÔìÒµ¡¢½¨ÖþÒµ¡¢Ò½ÁƱ£½¡ºÍ±£ÏÕÒµµÈһϵÁÐÐÐÒµ£¬¹¥»÷·¶Î§ÖÁÉÙ¸²¸Ç17¸ö¹ú¼Ò¡£¸ÃÀÕË÷×éÖ¯ÀûÓúϷ¨µÄÇý¶¯³ÌÐòÀ´½øÐйæ±Ü£¬ÀÄÓÃ×é²ßÂÔ¶ÔÏó£¨GPO£©´Ù½øÓò·¶Î§µÄÆÆ»µ£¬²¢²¿ÊðÁËÖ¼ÔÚ½ûÓû·¾³ÖÐÏÖÓлƽð³Ç¹ÙÍø½â¾ö·½°¸µÄ×Ô¶¨Òå¶ñÒ⹤¾ß¡£The GentlemenÀÕË÷×é֯ʹÓÃWinSCP½øÐмÓÃܵÄÊý¾ÝÍâ´«£¬ÒÔ¼°Í¨¹ýAnyDeskÔ¶³Ì·ÃÎÊÈí¼þºÍÐÞ¸Ä×¢²á±íÉèÖÃÀ´½¨Á¢³Ö¾Ã»¯»úÖÆ¡£¸ÃÀÕË÷×éÖ¯»áÁôÏÂÒ»¸öÃû³ÆÎª¡°README-GENTLEMEN.txt¡±µÄÀÕË÷ÐÅ£¬±»¼ÓÃÜÎļþµÄÀ©Õ¹Ãû»á±»¸ü¸ÄΪ¡°.7mtzhh¡±¡£


        ²Î¿¼Á´½Ó£º

        https://www.trendmicro.com/en_us/research/25/i/unmasking-the-gentlemen-ransomware.html

        2¡¢Ñо¿ÈËÔ±¶ÔCyberVolkÀÕË÷Èí¼þ½øÐзÖÎö

        CyberVolkÀÕË÷×éÖ¯³öÏÖÓÚ2024Äê5Ô¡£¸Ã×éÖ¯½üÆÚÉù³ÆÒѶÔÈÕ±¾¡¢·¨¹úºÍÓ¢¹úµÈ¹úµÄ¹Ø¼ü»ù´¡ÉèÊ©ÒÔ¼°¿ÆÑ§»ú¹¹·¢¶¯Á˹¥»÷¡£TelegramÊǸÃ×éÖ¯Ö÷ҪʹÓõÄͨÐÅÇþµÀ¡£¸ÃÀÕË÷Èí¼þÓÃÓÚ¼ÓÃܵÄÃÜÔ¿ÔÚÖ÷º¯ÊýÆô¶¯Ö®Ç°Éú³É£¬ËùÓÐÎļþ¶¼Ê¹ÓÃÏàͬµÄ¶Ô³ÆÃÜÔ¿½øÐмÓÃÜ£¬¶øÓÃÓÚ¼ÓÃܵÄËã·¨ÊÇAESºÍChaCha20-Poly1305¡£ÓÃÓÚ¼ÓÃܵÄNonceÖµ¶ÔÓÚÿ¸öÎļþ¶¼ÊÇËæ»úÉú³ÉµÄ¡£È»¶ø£¬ÓÉÓÚ¸Ãֵδ´æ´¢ÔÚ¼ÓÃÜÎļþÖУ¬Òò´Ë±»¼ÓÃܵÄÎļþÎÞ·¨±»½âÃÜ¡£



        ²Î¿¼Á´½Ó£º

        https://asec.ahnlab.com/en/90077/

        3¡¢AkiraÀÕË÷×éÖ¯ÕýÔÚÀûÓÃCVE-2024-40766½øÐй¥»÷»î¶¯

        AkiraÀÕË÷×éÖ¯ÕýÔÚ»ý¼«ÀûÓÃCVE-2024-40766©¶´ÒÔ»ñÈ¡¶ÔSonicWallÉ豸µÄ·ÃÎÊȨÏÞ¡£¹¥»÷ÕßÕýÀûÓøûƽð³Ç¹ÙÍøÂ©¶´£¬Í¨¹ýδ´ò²¹¶¡µÄSonicWall SSL VPN¶ËµãÈëÇÖÄ¿±êÍøÂç¡£SonicWallÔçÔÚÈ¥Äê8Ô¾ͷ¢²¼ÁËÕë¶ÔCVE-2024-40766µÄ²¹¶¡£¬²¢½«Æä±ê¼ÇΪÒѱ»»ý¼«ÀûÓ᣸é¶´ÔÊÐíδ¾­ÊÚȨµÄ×ÊÔ´·ÃÎÊ£¬²¢¿ÉÄܵ¼Ö·À»ðǽ±ÀÀ£¡£°Ä´óÀûÑÇÍøÂç»Æ½ð³Ç¹ÙÍøÖÐÐÄ£¨ACSC£©¶Ô´Ë·¢³ö¾¯±¨£¬¾¯¸æ¸÷×é֯עÒâÕâһеĶñÒâ»î¶¯£¬²¢¶Ø´ÙÁ¢¼´²ÉÈ¡Ðж¯¡£ÍøÂç»Æ½ð³Ç¹ÙÍø¹«Ë¾Ò²·¢ÏÖÁËÀàËÆµÄ¼£Ï󣬳ÆAkiraÀÕË÷×éÖ¯¶ÔSonicWallÉ豸µÄ¹¥»÷×î½üÔٴλîÔ¾¡£


        ²Î¿¼Á´½Ó£º

        https://www.bleepingcomputer.com/news/security/akira-ransomware-exploiting-critical-sonicwall-sslvpn-bug-again/

        4¡¢KillSecÀÕË÷×éÖ¯Éù³Æ¶ÔMedicSolution½øÐй¥»÷

        2025Äê9ÔÂ8ÈÕ£¬KillSecÀÕË÷×éÖ¯Éù³Æ¶Ô°ÍÎ÷Ò½ÁÆÐÐÒµÈí¼þ½â¾ö·½°¸ÌṩÉÌMedicSolution·¢¶¯ÁËÍøÂç¹¥»÷¡£Ð¹Â¶µÄÊý¾Ý×ÜÁ¿³¬¹ý34GB£¬°üº¬³¬¹ý94818¸öÎļþ£¬°üÀ¨£ºÒ½ÁÆÆÀ¹À¡¢Ò½Ñ§ÊµÑéÊÒ½á¹û¡¢X¹âƬ¡¢Î´¾­´¦ÀíµÄ»¼ÕßÕÕÆ¬£¨°üÀ¨ÏÔʾÉíÌ岿λµÄÕÕÆ¬£©¡¢Óëδ³ÉÄêÈËÏà¹ØµÄ¼Ç¼¡£Ñо¿ÈËÔ±·¢ÏÖ£¬Ð¹Â¶µÄÊý¾ÝÎļþÊôÓÚ°ÍÎ÷µ±µØµÄÒ½ÁÆ»ú¹¹ºÍҽѧʵÑéÊÒ£¬°üÀ¨µ«²»ÏÞÓÚVita Exame¡¢Clinica Especo Vida¡¢Centro Diagnostico Toledo¡¢Labclinic¡¢Laborat¨®rio AlvaroµÈ¡£



        ²Î¿¼Á´½Ó£º

        https://www.resecurity.com/blog/article/killsec-ransomware-is-attacking-healthcare-institutions-in-brazil

        5¡¢INC RansomÀÕË÷×éÖ¯Éù³ÆÈëÇÖ°ÍÄÃÂí²ÆÕþ¾­¼Ã²¿


        °ÍÄÃÂí²ÆÕþ¾­¼Ã²¿£¨MEF£©Í¸Â¶£¬Æäһ̨¼ÆËã»ú¿ÉÄÜÔÚÒ»´ÎÍøÂç¹¥»÷ÖÐÔâµ½ÈëÇÖ¡£¸ÃÕþ¸®²¿ÃÅÖ¸³ö£¬ËûÃÇÒÑÆô¶¯Õë¶Ô´ËÀàÇé¿öµÄ»Æ½ð³Ç¹ÙÍø³ÌÐò£¬²¢±íʾʼþÒѵõ½¶ôÖÆ£¬²¢Î´Ó°ÏìÆäºËÐÄϵͳ¡£MEF±íʾ£¬¸öÈ˺ͻú¹¹Êý¾ÝÊǻƽð³Ç¹ÙÍøµÄ£¬²¢ÇÒÒѲÉÈ¡´ëÊ©À´·ÀֹδÀ´·¢ÉúÀàËÆÊ¼þ¡£È»¶ø£¬INC RansomÀÕË÷×é֯ͨ¹ýÆäÊý¾ÝÐ¹Â¶ÍøÕ¾·¢²¼ÏûÏ¢£¬Éù³Æ¶ÔMEF·¢¶¯Á˹¥»÷£¬²¢±íʾ´ÓMEFµÄϵͳÖÐÇÔÈ¡Á˳¬¹ý1.5TBµÄÊý¾Ý£¬°üÀ¨µç×ÓÓʼþ¡¢²ÆÎñÎļþ¡¢Ô¤ËãÏêÇéµÈ¡£Ä¿Ç°MEFÉÐδ¶Ô´Ë½øÐÐ֤ʵ¡£

        ²Î¿¼Á´½Ó£º

        https://www.bleepingcomputer.com/news/security/panama-ministry-of-economy-discloses-breach-claimed-by-inc-ransomware/

        Ãâ·ÑÊÔÓÃ
        ·þÎñÈÈÏß

        ÂíÉÏ×Éѯ

        400-811-3777

        »Øµ½¶¥²¿


        ¡¾ÍøÕ¾µØÍ¼¡¿¡¾sitemap¡¿