ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû£»£»£»£»ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë

Ðû²¼Ê±¼ä 2021-06-03

1.ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû


1.jpg


ÃÀ¹ú˾·¨²¿ÒѲé·âNOBELIUMÔÚÕë¶ÔÃÀ¹ú¹ú¼Ê¿ª·¢Êð (USAID) µÄ¹¥»÷ÖÐʹÓõÄÓòÃû¡£¡£¡£¡£¡£Î¢ÈíÓÚÉÏÖÜËÄÊ×´ÎÅû¶Á˴˴δ¹ÂÚ¹¥»÷£¬ £¬£¬£¬Á¥ÊôÓÚ¶íÂÞ˹Ç鱨»ú¹¹SVRµÄNOBELIUM£¨ÓÖÃûAPT29£©Ã°³äUSAID£¬ £¬£¬£¬ Ïò150 ¶à¸ö×éÖ¯·¢ËÍÁË3000¶à·â´¹ÂÚÓʼþ¡£¡£¡£¡£¡£´Ë´Î²é·âµÄÁ½¸öÓòÃû»®·ÖΪtheyardservice[.]comºÍworldhomeoutlet[.]com£¬ £¬£¬£¬Ö÷ÒªÓÃÓÚÎüÊÕ´ÓÊܺ¦ÕßÄÇÀïй¶µÄÊý¾Ý£¬ £¬£¬£¬²¢·¢ËÍÏÂÁî¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-seizes-domains-used-by-apt29-in-recent-usaid-phishing-attacks/


2.ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë


2.jpg


Group-IB·¢Ã÷ºÚ¿ÍÔÚ°µÍø³öÊÛDDoS-GuardµÄÊý¾Ý¿â¡£¡£¡£¡£¡£DDoS-GuardÊǶíÂÞ˹µÄÒ»¼ÒÔÚÏß»ù´¡ÉèʩЧÀÍÌṩÉÌ£¬ £¬£¬£¬ÔøÔÚ½ñÄê1ÔÂ×ÊÖú±»AWSƽ̨¾Ü¾øµÄÉç½»Ó¦ÓÃParlerÖØÐÂÉÏÏß¡£¡£¡£¡£¡£ºÚ¿ÍÓÚ5ÔÂ26ÈÕÔÚºÚ¿ÍÂÛ̳exploit[.]in³öÊÛ¸ÃÊý¾Ý¿â£¬ £¬£¬£¬³Æ°üÀ¨DDoS-Guard¿Í»§µÄÐÅÏ¢£¬ £¬£¬£¬ÈçÐÕÃû¡¢IP µØµãºÍ¸¶¿îÐÅÏ¢µÈ£¬ £¬£¬£¬ÒÔ¼°DDoS-Guard »ù´¡ÉèÊ©µÄÔ´´úÂë¡£¡£¡£¡£¡£×î³õµÄÆðÅļÛΪ50ÍòÃÀÔª£¬ £¬£¬£¬ºóÓÖ½µÎª35ÍòÃÀÔª¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/media/ddos-guard-database/


3.Ñо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancyProductDesignerÖÐ0dayµÄ¹¥»÷


3.jpg


WordfenceÑо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancy Product Designer²å¼þÖÐ0dayµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¸ÃÓ¦ÓÃÊÇWordPress¡¢WooCommerceºÍShopifyµÄ¿ÉÊÓ»¯²úÆ·ÉèÖòå¼þ£¬ £¬£¬£¬ÔÊÐí¿Í»§Ê¹ÓÃ×Ô¼ºµÄͼÐκÍÄÚÈÝ×Ô½ç˵²úÆ·¡£¡£¡£¡£¡£¸ÃÎó²îÊÇÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬ £¬£¬£¬¿ÉÓÃÀ´Èƹý×èÖ¹¶ñÒâÎļþÉÏ´«µÄÄÚÖüì²éÔÚÍøÕ¾ÉÏÖ´ÐÐPHPÎļþ¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ´Ë´Î¹¥»÷»î¶¯ÓÚ2021Äê1ÔÂ30ÈÕ×îÏÈ£¬ £¬£¬£¬ºÚ¿ÍÒÔµçÉÌÍøÕ¾ÎªÄ¿µÄ£¬ £¬£¬£¬ÊÔͼÇÔÈ¡ÆäÊý¾Ý¿âÖеĶ©µ¥ÐÅÏ¢£¬ £¬£¬£¬½¨ÒéÓû§Á¬Ã¦×°ÖÃ6ÔÂ2ÈÕÐû²¼µÄ²¹¶¡¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/critical-wordpress-plugin-zero-day-under-active-exploitation/


4.ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾FujiFilm³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷


4.jpg


ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾£¨FujiFilm£©³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬ÓʼþºÍµç»°ÏµÍ³ÖÐÖ¹¡£¡£¡£¡£¡£FujiFilm×î³õÒÔ¹âѧ½ºÆ¬ºÍÏà»úΪÖ÷£¬ £¬£¬£¬ºóÓÖÉæ¼°Ò©Æ·¡¢´æ´¢×°±¸¡¢¸´Ó¡»úºÍ´òÓ¡»ú (XEROX) ÒÔ¼°ÊýÂëÏà»úµÈ²úÆ·£¬ £¬£¬£¬2020ÊÕÈëΪ201ÒÚÃÀÔª¡£¡£¡£¡£¡£¸Ã¹«Ë¾³Æ¹¥»÷±¬·¢ÔÚ6ÔÂ1ÈÕÍíÉÏ£¬ £¬£¬£¬Ö®ºóÁ¬Ã¦Ð­µ÷È«ÇòµÄ·Ö¹«Ë¾²¢¹Ø±ÕÁËËùÓÐÊÜÓ°Ïìϵͳ¡£¡£¡£¡£¡£FUJIFILM²¢Î´Ö¸³öÀÕË÷ÍÅ»ïµÄÃû³Æ£¬ £¬£¬£¬µ«Advanced IntelÌåÏÖFUJIFILMÓÚ5ÔÂ15ÈÕѬȾÁËQbotľÂí£¬ £¬£¬£¬Òò´Ë´Ë´Î¹¥»÷¿ÉÄÜÓëREvilÓйØ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fujifilm-shuts-down-network-after-suspected-ransomware-attack/


5.°×¹¬Ö¤ÊµJBSÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓйØ£¬ £¬£¬£¬±¸·ÝϵͳδÊÜÓ°Ïì


5.jpg


°×¹¬Ö¤ÊµJBSÔÚ5ÔÂ30ÈÕÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓйØ¡£¡£¡£¡£¡£´Ë´Î¹¥»÷¶ÔJBSµÄÔËÓª±¬·¢ÁËÖØ´óµÄÓ°Ï죬 £¬£¬£¬¾Ýͳ¼Æ£¬ £¬£¬£¬Å£µÄÍÀÔ×Á¿±ÈÉÏÖÜϽµÁË22%£¬ £¬£¬£¬¶øÖíµÄÍÀÔ×Á¿ÔòϽµÁË20%¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬ £¬£¬£¬±¸·ÝЧÀÍÆ÷²¢Î´Êܵ½Ó°Ï죬 £¬£¬£¬ÆäÕýÔÚÓëµÚÈý·½ÏàÖúÒÔ¾¡¿ì»Ö¸´ÊÜÓ°Ïìϵͳ£¬ £¬£¬£¬Ô¤¼Æ´ó²¿·Ö¹¤³§ÔÚ6ÔÂ3ÈÕÓ¦¸Ã¿ÉÒÔÔËÐС£¡£¡£¡£¡£ÏÖÔÚ£¬ £¬£¬£¬FBIÒÑÈ·¶¨´Ë´Î¹¥»÷¿É¹éÒòÓÚREvilÍŻ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118490/cyber-crime/jbs-attack-russian-origin.html


6.ThreatpostÐû²¼2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ


6.jpg


ThreatpostÐû²¼ÁË2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ¡£¡£¡£¡£¡£ÀÕË÷Èí¼þÊÇÒ»ÖÖÈÕÒæÑÏÖØµÄÍþв£¬ £¬£¬£¬×î½ü¼¸¸öÔ£¬ £¬£¬£¬´ËÀàÍøÂç·¸·¨µÄÖØ´óÐÔºÍÁ¢ÒìˮƽһֱÌá¸ß¡£¡£¡£¡£¡£¸Ã±¨¸æ´Ó6¸ö·½Ã棺ÀÕË÷Èí¼þµÄÐÂÇ÷ÊÆ¡¢ÀÕË÷Èí¼þ¾­¼Ã¹éÄÉ×ۺϡ¢ÀÕË÷Èí¼þ¹¥»÷µÄ±¾Ç®¡¢ÍøÂç°ü¹ÜÖú³¤ÀÕË÷Èí¼þÖ§¸¶¼¤Ôö¡¢48СʱÀÕË÷Èí¼þ¹¥»÷ÈÕÖ¾ºÍ×èÖ¹ÀÕË÷Èí¼þµÄÊÊÓÃÖ¸ÄÏ£¬ £¬£¬£¬ÆÊÎöÁ˽üÆÚÀÕË÷Èí¼þÉú³¤µÄÐÂÇ÷ÊÆ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/ebooks/2021-the-evolution-of-ransomware/