9月25日:谷歌网络安全部门周五表示,黑客组织ShinyHunters在绕过夏季攻击后部署的防御措施后,已重新对Oracle PeopleSoft软件中的安全漏洞进行“大规模利用”。
Sept 25 : Google's cybersecurity unit said on Friday that hacking group ShinyHunters has renewed "mass exploitation" of a security flaw in Oracle's PeopleSoft software, after skirting defenses put up following attacks in the summer.
Mandiant在一份威胁情报报告中发布了这一公告,该报告发布几天前,ShinyHunters声称其已窃取FBI人员数据,并对多起重大数据泄露事件负责。
Mandiant made the announcement in a threat intelligence report released days after ShinyHunters, which has claimed responsibility for several major data breaches, said it had stolen FBI personnel data.
这种不断演变的攻击性质可能会让依赖PeopleSoft进行人力资源及其他关键职能的组织敲响警钟,并加剧人们对即使资源充足的机构也易受攻击的担忧。
The evolving nature of the attack is likely to ring alarm bells at organizations that rely on PeopleSoft for human resources and other critical functions, and heighten concerns about the vulnerability of even well-resourced institutions.
Alphabet旗下谷歌的该部门表示,ShinyHunters在5月27日至6月9日的攻击中利用了Oracle PeopleSoft企业软件中的一个漏洞,主要影响了大学。
The unit of Alphabet's Google said ShinyHunters exploited a bug in Oracle's PeopleSoft enterprise software in attacks from May 27 through June 9 that mainly affected universities.
Mandiant称,黑客适应了5月至6月攻击后发布的防御指南,并针对那些实施了Web应用防火墙规则但未应用Oracle发布的补丁来修复该漏洞的组织。
Mandiant said the hackers adapted to defensive guidance published after the May-June attacks and targeted organizations that implemented web application firewall rules but did not apply an update that Oracle issued to patch the vulnerability.
该部门表示,未指明受害者,但称最新攻击影响了全球数十个系统,涉及高等教育、科技、医疗、农业、交通和政府等多个领域。
It said, without identifying victims, that the latest attack affected dozens of systems globally in sectors as varied as higher education, technology, healthcare, agriculture, transportation and government.
ShinyHunters表示,它利用PeopleSoft中的漏洞访问了FBI数据。路透社无法证实这一说法。Oracle未回应置评请求。联邦调查局周三发表声明称,正在“积极调查”报告的泄露事件。
ShinyHunters has said it accessed FBI data using a vulnerability in PeopleSoft. Reuters has not been able to corroborate the claim. Oracle did not respond to requests for comment. In a statement issued Wednesday, the Federal Bureau of Investigation said it was "aggressively investigating" the reported breach.
路透社此前报道,ShinyHunters曝光了在FBI敏感部门工作的人员姓名,并获取了医疗和精神病学记录。
ShinyHunters exposed the names of personnel working in sensitive FBI units and acquired medical and psychiatric records, Reuters previously reported.