΢ÈíÈÏ¿ÉÔøÇ©Ê𺬶ñÒârootkitµÄÇý¶¯³ÌÐòNetfilter£»£»£»ºÚ¿ÍÔÚRaidForums³öÊÛ7ÒÚ¶àÌõLinkedInÓû§µÄ¼Í¼

Ðû²¼Ê±¼ä 2021-06-29

1.ºÚ¿ÍÔÚRaidForums³öÊÛ7ÒÚ¶àÌõLinkedInÓû§µÄ¼Í¼


1.jpg


Privacy SharksÑо¿Ö°Ô±·¢Ã÷ÃûΪ¡°GOD User TomLiner¡±µÄºÚ¿ÍÕýÔÚRaidForumsÉϳöÊÛLinkedInÓû§µÄÊý¾Ý¡£¡£¡£¡£¡£¡£¸Ã¹ã¸æÓÚ6ÔÂ22ÈÕÐû²¼£¬£¬£¬ £¬ £¬Éù³Æ°üÀ¨7ÒÚÌõ¼Í¼£¬£¬£¬ £¬ £¬²¢¹ûÕæÁË100ÍòÌõÑù±¾×÷Ϊ֤¾Ý¡£¡£¡£¡£¡£¡£´Ë´Îй¶µÄÐÅÏ¢°üÀ¨·¢Ã÷¼Í¼°üÀ¨È«Ãû¡¢ÐԱ𡢵ç×ÓÓʼþµØµã¡¢µç»°ºÅÂëºÍÐÐÒµÐÅÏ¢¡£¡£¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎúÊý¾ÝµÄȪԴÊÇʲô£¬£¬£¬ £¬ £¬µ«Ñо¿Ö°Ô±ÍƲâ´Ë´ÎÊý¾Ýй¶Óë4Ô·ݳöÊÛµÄ5ÒÚÌõLinkedIn¼Í¼¿ÉÄÜÊÇͳһȪԴ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/data-700m-linkedin-users-cyber-underground/167362/


2.WolfeÑÛ¿ÆÒ½Ôº³ÆÆäÔâµ½¹¥»÷£¬£¬£¬ £¬ £¬Ô¼50Íò¿Í»§ÐÅϢй¶


2.jpg


WolfeÑÛ¿ÆÒ½ÔºÓÚÉÏÖܶþÌåÏÖÆäÔâµ½¹¥»÷£¬£¬£¬ £¬ £¬Ô¼50Íò¿Í»§ÐÅϢй¶¡£¡£¡£¡£¡£¡£Wolfe Eye ClinicλÓÚ°®ºÉ»ªÖÝÂíЪ¶û¶Ø£¬£¬£¬ £¬ £¬ÔÚÈ«ÖÝ40¸ö¶¼»á¾ùÉèÓзÖÖ§»ú¹¹¡£¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÓÚ2021Äê2ÔÂ8ÈÕ£¬£¬£¬ £¬ £¬ºÚ¿ÍÒªÇó¸ÃÒ½ÔºÖ§¸¶Êê½ðÀ´½âÃÜÆäϵͳ£¬£¬£¬ £¬ £¬µ«Æä²¢Î´Ö§¸¶¡£¡£¡£¡£¡£¡£ÔÚ·¢Ã÷ÈëÇֺ󣬣¬£¬ £¬ £¬Ò½ÔºÁ¬Ã¦Õö¿ªÊӲ죬£¬£¬ £¬ £¬²¢ÓÚÉϸöÔ·¢Ã÷»¼Õ߼ͼ¿ÉÄÜÒѱ»Ð¹Â¶¡£¡£¡£¡£¡£¡£¸ÃÒ½Ôº½«ÎªÊÜÓ°ÏìµÄ»¼ÕßÌṩһÄêµÄÐÅÓÃ¼à¿ØºÍÉí·ÝµÁÓñ£»£»£»¤Ð§ÀÍ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/cyberattack-exposes-eye-clinic/


3.΢ÈíÈÏ¿ÉÆäÔøÇ©Ê𺬶ñÒârootkitµÄÇý¶¯³ÌÐòNetfilter


3.jpg


΢ÈíÈÏ¿ÉÆäÇ©ÊðµÄÓÃÓÚWindowsµÄµÚÈý·½Çý¶¯³ÌÐòNetfilter°üÀ¨¶ñÒârootkit¡£¡£¡£¡£¡£¡£ÉÏÖÜ£¬£¬£¬ £¬ £¬G DataµÄÇå¾²¾¯±¨ÏµÍ³±ê¼ÇÁËÒ»¸ö¿´ËÆÎ󱨵«ÏÖʵÉϲ¢·ÇÔÆÔÆµÄÇý¶¯³ÌÐòNetfilter¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷£¬£¬£¬ £¬ £¬¸ÃÓ¦ÓõĵÚÒ»¸öC2 URL»á·µ»ØÒ»×é¸ü¶àµÄ·ÓÉ£¨URL£©£¬£¬£¬ £¬ £¬ËüÃÇÓɹܵÀ£¨¡°|¡±£©·ûºÅÍÑÀ룬£¬£¬ £¬ £¬ÆäÖÐÿһ¸ö¶¼Óе¥¶ÀÄ¿µÄ£¬£¬£¬ £¬ £¬ÀýÈçÒÔ¡°/p¡±×îºóµÄURLÓëÊðÀíÉèÖÃÏà¹ØÁª¡¢"/s"Ìṩ±àÂëµÄÖØ¶¨ÏòIP¡¢¡°/v£¿£¿£¿£¿£¿¡±Óë¶ñÒâÈí¼þµÄ×ÔÎÒ¸üй¦Ð§Óйء£¡£¡£¡£¡£¡£¹¥»÷Õß¿Éͨ¹ýÌØÖÆµÄ¶þ½øÖÆÎļþʹÓøÃÓ¦Ó㬣¬£¬ £¬ £¬Ìᳫ´ó¹æÄ£µÄ¹©Ó¦Á´¹¥»÷¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/microsoft-netfilter-driver-sign-rootkit-malware/


4.ÃÀ¹úFINRAÖÒÑÔαװ³ÉFINRA SupportµÄ´¹ÂÚ¹¥»÷»î¶¯


4.jpg


ÃÀ¹ú֤ȯҵî¿Ïµ»ú¹¹FINRAÖÒÑÔαװ³ÉFINRA SupportµÄ´¹ÂÚ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£FINRAÊÇÕþ¸®ÊÚȨµÄ·ÇÓªÀû×éÖ¯£¬£¬£¬ £¬ £¬ÈÏÕæî¿ÏµÔÚÃÀ¹ú¹ûÕæ»î¶¯µÄËùÓÐÉúÒâËùÊг¡ºÍ֤ȯ¹«Ë¾£¬£¬£¬ £¬ £¬ÌìÌìÆÊÎöÊýÊ®ÒÚ¸öÊг¡ÉúÒâ¡£¡£¡£¡£¡£¡£ÕâЩÓʼþÉù³ÆÀ´×Ô¡°FINRA SUPPORT¡±£¬£¬£¬ £¬ £¬µØµãΪ¡°support@westour.org¡±¡£¡£¡£¡£¡£¡£¸ÃÓʼþÒªÇóÊÕ¼þÈË×¢ÖØÏÂÃæËù¸½µÄ±¨¸æ²¢Á¬Ã¦»Ø¸´£¬£¬£¬ £¬ £¬»¹Ö¸³ö¸½¼þ°üÀ¨¸üÐµĹ«¹²Õþ²ßÐÅÏ¢£¬£¬£¬ £¬ £¬µ«ÕâЩµç×ÓÓʼþ¿ÉÄÜ»ù´¡Ã»Óи½¼þ¡£¡£¡£¡£¡£¡£ÔçÔÚ½ñÄê3ÔºÍ6Ô³õ£¬£¬£¬ £¬ £¬FINRA»¹ÖÒÑÔÁËαÔì³É¡°FINRAºÏ¹æÉ󼯡±ºÍÒÔ´¦·ÖΪÓÕ¶üµÄÁ½´Î´¹Âڻ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-brokerage-firms-warned-of-finra-support-phishing-attacks/


5.Ó¢¹úFrench Connection³ÆÆäÔâµ½REvilÀÕË÷Èí¼þ¹¥»÷


5.jpg


Ó¢¹úʱÉй«Ë¾French Connection£¨FCUK£©³ÆÆäÔâµ½REvilÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£¡£¡£¡£Ôڴ˴ι¥»÷ÖУ¬£¬£¬ £¬ £¬ºÚ¿ÍÆÆËðÁËFCUKµÄЧÀÍÆ÷£¬£¬£¬ £¬ £¬ÇÔÈ¡¹«Ë¾µÄ´ó×ÚÊý¾Ý£¬£¬£¬ £¬ £¬²¢¹ûÕæÁ˸߹ܵÄСÎÒ˽¼ÒÐÅÏ¢×÷ΪÑù±¾£¬£¬£¬ £¬ £¬°üÀ¨Ê×´´È˼æCEO Stephen Marks¡¢CFO Lee WilliamsºÍCOO Neil WilliamsµÄ»¤ÕÕºÍÉí·Ý֤ɨÃè¼þ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬ £¬ £¬ÔÚ·¢Ã÷¹¥»÷ºóÁ¬Ã¦¹Ø±ÕÁËËùÓÐÊÜÓ°ÏìµÄϵͳ£¬£¬£¬ £¬ £¬ÏÖÔÚÕýÔÚ»Ö¸´Æäϵͳ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.theregister.com/2021/06/24/french_connection_says_fcuk_as/


6.Aqua SecurityÐû²¼Õë¶ÔÈÝÆ÷µÄ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ


6.jpg


Aqua SecurityÐû²¼ÁËÕë¶ÔÈÝÆ÷µÄ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬ £¬ £¬ÔÚÁù¸öÔµÄʱ¼äÀ£¬£¬ £¬ £¬AquaµÄÃÛ¹Þ±»¹¥»÷ÁË17358 ´Î£¬£¬£¬ £¬ £¬±ÈÁù¸öÔÂǰÔöÌíÁË26%¡£¡£¡£¡£¡£¡£50%ÉèÖùýʧµÄDocker APIÔÚ56·ÖÖÓÄÚ»áÔâµ½¹¥»÷£¬£¬£¬ £¬ £¬»úеÈËÆ½¾ùÐèÒªÎå¸öСʱÀ´É¨ÃèÒ»¸öеÄÃÛ¹Þ£¬£¬£¬ £¬ £¬×î¿ìµÄɨÃèÖ»ÐèÒª¼¸·ÖÖÓ£¬£¬£¬ £¬ £¬¶ø×îÂýµÄɨÃèÐèÒª24Сʱ¡£¡£¡£¡£¡£¡£ÓòÃûÇÀ×¢ºÍƾ֤Ìî³äÊǹ¥»÷Õß¹¥»÷ÈÝÆ÷ºÍDocker¾µÏñ×î³£¼ûµÄÁ½ÖÖ·½·¨£¬£¬£¬ £¬ £¬ÓëÈ¥ÄêͬÆÚÏà±È£¬£¬£¬ £¬ £¬2020ÄêϰëÄêµÄ¹¥»÷ÂÊÉÏÉýÁ˽ü600%¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://info.aquasec.com/cloud-native-threats-aqua