ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû£»£»£»£»£»ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë

Ðû²¼Ê±¼ä 2021-06-03

1.ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû


1.jpg


ÃÀ¹ú˾·¨²¿ÒѲé·âNOBELIUMÔÚÕë¶ÔÃÀ¹ú¹ú¼Ê¿ª·¢Êð (USAID) µÄ¹¥»÷ÖÐʹÓõÄÓòÃû¡£¡£ ¡£Î¢ÈíÓÚÉÏÖÜËÄÊ×´ÎÅû¶Á˴˴δ¹ÂÚ¹¥»÷£¬ £¬£¬£¬£¬£¬Á¥ÊôÓÚ¶íÂÞ˹Ç鱨»ú¹¹SVRµÄNOBELIUM£¨ÓÖÃûAPT29£©Ã°³äUSAID£¬ £¬£¬£¬£¬£¬ Ïò150 ¶à¸ö×éÖ¯·¢ËÍÁË3000¶à·â´¹ÂÚÓʼþ¡£¡£ ¡£´Ë´Î²é·âµÄÁ½¸öÓòÃû»®·ÖΪtheyardservice[.]comºÍworldhomeoutlet[.]com£¬ £¬£¬£¬£¬£¬Ö÷ÒªÓÃÓÚÎüÊÕ´ÓÊܺ¦ÕßÄÇÀïй¶µÄÊý¾Ý£¬ £¬£¬£¬£¬£¬²¢·¢ËÍÏÂÁî¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-seizes-domains-used-by-apt29-in-recent-usaid-phishing-attacks/


2.ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë


2.jpg


Group-IB·¢Ã÷ºÚ¿ÍÔÚ°µÍø³öÊÛDDoS-GuardµÄÊý¾Ý¿â¡£¡£ ¡£DDoS-GuardÊǶíÂÞ˹µÄÒ»¼ÒÔÚÏß»ù´¡ÉèʩЧÀÍÌṩÉÌ£¬ £¬£¬£¬£¬£¬ÔøÔÚ½ñÄê1ÔÂ×ÊÖú±»AWSƽ̨¾Ü¾øµÄÉç½»Ó¦ÓÃParlerÖØÐÂÉÏÏß¡£¡£ ¡£ºÚ¿ÍÓÚ5ÔÂ26ÈÕÔÚºÚ¿ÍÂÛ̳exploit[.]in³öÊÛ¸ÃÊý¾Ý¿â£¬ £¬£¬£¬£¬£¬³Æ°üÀ¨DDoS-Guard¿Í»§µÄÐÅÏ¢£¬ £¬£¬£¬£¬£¬ÈçÐÕÃû¡¢IP µØµãºÍ¸¶¿îÐÅÏ¢µÈ£¬ £¬£¬£¬£¬£¬ÒÔ¼°DDoS-Guard »ù´¡ÉèÊ©µÄÔ´´úÂë¡£¡£ ¡£×î³õµÄÆðÅļÛΪ50ÍòÃÀÔª£¬ £¬£¬£¬£¬£¬ºóÓÖ½µÎª35ÍòÃÀÔª¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/media/ddos-guard-database/


3.Ñо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancyProductDesignerÖÐ0dayµÄ¹¥»÷


3.jpg


WordfenceÑо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancy Product Designer²å¼þÖÐ0dayµÄ¹¥»÷»î¶¯¡£¡£ ¡£¸ÃÓ¦ÓÃÊÇWordPress¡¢WooCommerceºÍShopifyµÄ¿ÉÊÓ»¯²úÆ·ÉèÖòå¼þ£¬ £¬£¬£¬£¬£¬ÔÊÐí¿Í»§Ê¹ÓÃ×Ô¼ºµÄͼÐκÍÄÚÈÝ×Ô½ç˵²úÆ·¡£¡£ ¡£¸ÃÎó²îÊÇÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬ £¬£¬£¬£¬£¬¿ÉÓÃÀ´Èƹý×èÖ¹¶ñÒâÎļþÉÏ´«µÄÄÚÖüì²éÔÚÍøÕ¾ÉÏÖ´ÐÐPHPÎļþ¡£¡£ ¡£Ñо¿Ö°Ô±³Æ´Ë´Î¹¥»÷»î¶¯ÓÚ2021Äê1ÔÂ30ÈÕ×îÏÈ£¬ £¬£¬£¬£¬£¬ºÚ¿ÍÒÔµçÉÌÍøÕ¾ÎªÄ¿µÄ£¬ £¬£¬£¬£¬£¬ÊÔͼÇÔÈ¡ÆäÊý¾Ý¿âÖеĶ©µ¥ÐÅÏ¢£¬ £¬£¬£¬£¬£¬½¨ÒéÓû§Á¬Ã¦×°ÖÃ6ÔÂ2ÈÕÐû²¼µÄ²¹¶¡¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/critical-wordpress-plugin-zero-day-under-active-exploitation/


4.ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾FujiFilm³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷


4.jpg


ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾£¨FujiFilm£©³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬£¬£¬ÓʼþºÍµç»°ÏµÍ³ÖÐÖ¹¡£¡£ ¡£FujiFilm×î³õÒÔ¹âѧ½ºÆ¬ºÍÏà»úΪÖ÷£¬ £¬£¬£¬£¬£¬ºóÓÖÉæ¼°Ò©Æ·¡¢´æ´¢×°±¸¡¢¸´Ó¡»úºÍ´òÓ¡»ú (XEROX) ÒÔ¼°ÊýÂëÏà»úµÈ²úÆ·£¬ £¬£¬£¬£¬£¬2020ÊÕÈëΪ201ÒÚÃÀÔª¡£¡£ ¡£¸Ã¹«Ë¾³Æ¹¥»÷±¬·¢ÔÚ6ÔÂ1ÈÕÍíÉÏ£¬ £¬£¬£¬£¬£¬Ö®ºóÁ¬Ã¦Ð­µ÷È«ÇòµÄ·Ö¹«Ë¾²¢¹Ø±ÕÁËËùÓÐÊÜÓ°Ïìϵͳ¡£¡£ ¡£FUJIFILM²¢Î´Ö¸³öÀÕË÷ÍÅ»ïµÄÃû³Æ£¬ £¬£¬£¬£¬£¬µ«Advanced IntelÌåÏÖFUJIFILMÓÚ5ÔÂ15ÈÕѬȾÁËQbotľÂí£¬ £¬£¬£¬£¬£¬Òò´Ë´Ë´Î¹¥»÷¿ÉÄÜÓëREvilÓйء£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fujifilm-shuts-down-network-after-suspected-ransomware-attack/


5.°×¹¬Ö¤ÊµJBSÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓйØ£¬ £¬£¬£¬£¬£¬±¸·ÝϵͳδÊÜÓ°Ïì


5.jpg


°×¹¬Ö¤ÊµJBSÔÚ5ÔÂ30ÈÕÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹Óйء£¡£ ¡£´Ë´Î¹¥»÷¶ÔJBSµÄÔËÓª±¬·¢ÁËÖØ´óµÄÓ°Ï죬 £¬£¬£¬£¬£¬¾Ýͳ¼Æ£¬ £¬£¬£¬£¬£¬Å£µÄÍÀÔ×Á¿±ÈÉÏÖÜϽµÁË22%£¬ £¬£¬£¬£¬£¬¶øÖíµÄÍÀÔ×Á¿ÔòϽµÁË20%¡£¡£ ¡£¸Ã¹«Ë¾ÌåÏÖ£¬ £¬£¬£¬£¬£¬±¸·ÝЧÀÍÆ÷²¢Î´Êܵ½Ó°Ï죬 £¬£¬£¬£¬£¬ÆäÕýÔÚÓëµÚÈý·½ÏàÖúÒÔ¾¡¿ì»Ö¸´ÊÜÓ°Ïìϵͳ£¬ £¬£¬£¬£¬£¬Ô¤¼Æ´ó²¿·Ö¹¤³§ÔÚ6ÔÂ3ÈÕÓ¦¸Ã¿ÉÒÔÔËÐС£¡£ ¡£ÏÖÔÚ£¬ £¬£¬£¬£¬£¬FBIÒÑÈ·¶¨´Ë´Î¹¥»÷¿É¹éÒòÓÚREvilÍŻ¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118490/cyber-crime/jbs-attack-russian-origin.html


6.ThreatpostÐû²¼2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ


6.jpg


ThreatpostÐû²¼ÁË2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ¡£¡£ ¡£ÀÕË÷Èí¼þÊÇÒ»ÖÖÈÕÒæÑÏÖØµÄÍþв£¬ £¬£¬£¬£¬£¬×î½ü¼¸¸öÔ£¬ £¬£¬£¬£¬£¬´ËÀàÍøÂç·¸·¨µÄÖØ´óÐÔºÍÁ¢ÒìˮƽһֱÌá¸ß¡£¡£ ¡£¸Ã±¨¸æ´Ó6¸ö·½Ã棺ÀÕË÷Èí¼þµÄÐÂÇ÷ÊÆ¡¢ÀÕË÷Èí¼þ¾­¼Ã¹éÄÉ×ۺϡ¢ÀÕË÷Èí¼þ¹¥»÷µÄ±¾Ç®¡¢ÍøÂç°ü¹ÜÖú³¤ÀÕË÷Èí¼þÖ§¸¶¼¤Ôö¡¢48СʱÀÕË÷Èí¼þ¹¥»÷ÈÕÖ¾ºÍ×èÖ¹ÀÕË÷Èí¼þµÄÊÊÓÃÖ¸ÄÏ£¬ £¬£¬£¬£¬£¬ÆÊÎöÁ˽üÆÚÀÕË÷Èí¼þÉú³¤µÄÐÂÇ÷ÊÆ¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/ebooks/2021-the-evolution-of-ransomware/