ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû£»£»£»ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë

Ðû²¼Ê±¼ä 2021-06-03

1.ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû


1.jpg


ÃÀ¹ú˾·¨²¿ÒѲé·âNOBELIUMÔÚÕë¶ÔÃÀ¹ú¹ú¼Ê¿ª·¢Êð (USAID) µÄ¹¥»÷ÖÐʹÓõÄÓòÃû¡£¡£¡£¡£¡£¡£Î¢ÈíÓÚÉÏÖÜËÄÊ×´ÎÅû¶Á˴˴δ¹ÂÚ¹¥»÷£¬£¬£¬£¬£¬£¬Á¥ÊôÓÚ¶íÂÞ˹Ç鱨»ú¹¹SVRµÄNOBELIUM£¨ÓÖÃûAPT29£©Ã°³äUSAID£¬£¬£¬£¬£¬£¬ Ïò150 ¶à¸ö×éÖ¯·¢ËÍÁË3000¶à·â´¹ÂÚÓʼþ¡£¡£¡£¡£¡£¡£´Ë´Î²é·âµÄÁ½¸öÓòÃû»®·ÖΪtheyardservice[.]comºÍworldhomeoutlet[.]com£¬£¬£¬£¬£¬£¬Ö÷ÒªÓÃÓÚÎüÊÕ´ÓÊܺ¦ÕßÄÇÀïй¶µÄÊý¾Ý£¬£¬£¬£¬£¬£¬²¢·¢ËÍÏÂÁî¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-seizes-domains-used-by-apt29-in-recent-usaid-phishing-attacks/


2.ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë


2.jpg


Group-IB·¢Ã÷ºÚ¿ÍÔÚ°µÍø³öÊÛDDoS-GuardµÄÊý¾Ý¿â¡£¡£¡£¡£¡£¡£DDoS-GuardÊǶíÂÞ˹µÄÒ»¼ÒÔÚÏß»ù´¡ÉèʩЧÀÍÌṩÉÌ£¬£¬£¬£¬£¬£¬ÔøÔÚ½ñÄê1ÔÂ×ÊÖú±»AWSƽ̨¾Ü¾øµÄÉç½»Ó¦ÓÃParlerÖØÐÂÉÏÏß¡£¡£¡£¡£¡£¡£ºÚ¿ÍÓÚ5ÔÂ26ÈÕÔÚºÚ¿ÍÂÛ̳exploit[.]in³öÊÛ¸ÃÊý¾Ý¿â£¬£¬£¬£¬£¬£¬³Æ°üÀ¨DDoS-Guard¿Í»§µÄÐÅÏ¢£¬£¬£¬£¬£¬£¬ÈçÐÕÃû¡¢IP µØµãºÍ¸¶¿îÐÅÏ¢µÈ£¬£¬£¬£¬£¬£¬ÒÔ¼°DDoS-Guard »ù´¡ÉèÊ©µÄÔ´´úÂë¡£¡£¡£¡£¡£¡£×î³õµÄÆðÅļÛΪ50ÍòÃÀÔª£¬£¬£¬£¬£¬£¬ºóÓÖ½µÎª35ÍòÃÀÔª¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/media/ddos-guard-database/


3.Ñо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancyProductDesignerÖÐ0dayµÄ¹¥»÷


3.jpg


WordfenceÑо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancy Product Designer²å¼þÖÐ0dayµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¸ÃÓ¦ÓÃÊÇWordPress¡¢WooCommerceºÍShopifyµÄ¿ÉÊÓ»¯²úÆ·ÉèÖòå¼þ£¬£¬£¬£¬£¬£¬ÔÊÐí¿Í»§Ê¹ÓÃ×Ô¼ºµÄͼÐκÍÄÚÈÝ×Ô½ç˵²úÆ·¡£¡£¡£¡£¡£¡£¸ÃÎó²îÊÇÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬¿ÉÓÃÀ´Èƹý×èÖ¹¶ñÒâÎļþÉÏ´«µÄÄÚÖüì²éÔÚÍøÕ¾ÉÏÖ´ÐÐPHPÎļþ¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ´Ë´Î¹¥»÷»î¶¯ÓÚ2021Äê1ÔÂ30ÈÕ×îÏÈ£¬£¬£¬£¬£¬£¬ºÚ¿ÍÒÔµçÉÌÍøÕ¾ÎªÄ¿µÄ£¬£¬£¬£¬£¬£¬ÊÔͼÇÔÈ¡ÆäÊý¾Ý¿âÖеĶ©µ¥ÐÅÏ¢£¬£¬£¬£¬£¬£¬½¨ÒéÓû§Á¬Ã¦×°ÖÃ6ÔÂ2ÈÕÐû²¼µÄ²¹¶¡¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/critical-wordpress-plugin-zero-day-under-active-exploitation/


4.ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾FujiFilm³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷


4.jpg


ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾£¨FujiFilm£©³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬ÓʼþºÍµç»°ÏµÍ³ÖÐÖ¹¡£¡£¡£¡£¡£¡£FujiFilm×î³õÒÔ¹âѧ½ºÆ¬ºÍÏà»úΪÖ÷£¬£¬£¬£¬£¬£¬ºóÓÖÉæ¼°Ò©Æ·¡¢´æ´¢×°±¸¡¢¸´Ó¡»úºÍ´òÓ¡»ú (XEROX) ÒÔ¼°ÊýÂëÏà»úµÈ²úÆ·£¬£¬£¬£¬£¬£¬2020ÊÕÈëΪ201ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾³Æ¹¥»÷±¬·¢ÔÚ6ÔÂ1ÈÕÍíÉÏ£¬£¬£¬£¬£¬£¬Ö®ºóÁ¬Ã¦Ð­µ÷È«ÇòµÄ·Ö¹«Ë¾²¢¹Ø±ÕÁËËùÓÐÊÜÓ°Ïìϵͳ¡£¡£¡£¡£¡£¡£FUJIFILM²¢Î´Ö¸³öÀÕË÷ÍÅ»ïµÄÃû³Æ£¬£¬£¬£¬£¬£¬µ«Advanced IntelÌåÏÖFUJIFILMÓÚ5ÔÂ15ÈÕѬȾÁËQbotľÂí£¬£¬£¬£¬£¬£¬Òò´Ë´Ë´Î¹¥»÷¿ÉÄÜÓëREvilÓйØ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fujifilm-shuts-down-network-after-suspected-ransomware-attack/


5.°×¹¬Ö¤ÊµJBSÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓйØ£¬£¬£¬£¬£¬£¬±¸·ÝϵͳδÊÜÓ°Ïì


5.jpg


°×¹¬Ö¤ÊµJBSÔÚ5ÔÂ30ÈÕÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓйØ¡£¡£¡£¡£¡£¡£´Ë´Î¹¥»÷¶ÔJBSµÄÔËÓª±¬·¢ÁËÖØ´óµÄÓ°Ï죬£¬£¬£¬£¬£¬¾Ýͳ¼Æ£¬£¬£¬£¬£¬£¬Å£µÄÍÀÔ×Á¿±ÈÉÏÖÜϽµÁË22%£¬£¬£¬£¬£¬£¬¶øÖíµÄÍÀÔ×Á¿ÔòϽµÁË20%¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬£¬£¬£¬±¸·ÝЧÀÍÆ÷²¢Î´Êܵ½Ó°Ï죬£¬£¬£¬£¬£¬ÆäÕýÔÚÓëµÚÈý·½ÏàÖúÒÔ¾¡¿ì»Ö¸´ÊÜÓ°Ïìϵͳ£¬£¬£¬£¬£¬£¬Ô¤¼Æ´ó²¿·Ö¹¤³§ÔÚ6ÔÂ3ÈÕÓ¦¸Ã¿ÉÒÔÔËÐС£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬FBIÒÑÈ·¶¨´Ë´Î¹¥»÷¿É¹éÒòÓÚREvilÍŻ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118490/cyber-crime/jbs-attack-russian-origin.html


6.ThreatpostÐû²¼2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ


6.jpg


ThreatpostÐû²¼ÁË2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ¡£¡£¡£¡£¡£¡£ÀÕË÷Èí¼þÊÇÒ»ÖÖÈÕÒæÑÏÖØµÄÍþв£¬£¬£¬£¬£¬£¬×î½ü¼¸¸öÔ£¬£¬£¬£¬£¬£¬´ËÀàÍøÂç·¸·¨µÄÖØ´óÐÔºÍÁ¢ÒìˮƽһֱÌá¸ß¡£¡£¡£¡£¡£¡£¸Ã±¨¸æ´Ó6¸ö·½Ã棺ÀÕË÷Èí¼þµÄÐÂÇ÷ÊÆ¡¢ÀÕË÷Èí¼þ¾­¼Ã¹éÄÉ×ۺϡ¢ÀÕË÷Èí¼þ¹¥»÷µÄ±¾Ç®¡¢ÍøÂç°ü¹ÜÖú³¤ÀÕË÷Èí¼þÖ§¸¶¼¤Ôö¡¢48СʱÀÕË÷Èí¼þ¹¥»÷ÈÕÖ¾ºÍ×èÖ¹ÀÕË÷Èí¼þµÄÊÊÓÃÖ¸ÄÏ£¬£¬£¬£¬£¬£¬ÆÊÎöÁ˽üÆÚÀÕË÷Èí¼þÉú³¤µÄÐÂÇ÷ÊÆ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/ebooks/2021-the-evolution-of-ransomware/