ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû£»£»£»£»£»£»ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë

Ðû²¼Ê±¼ä 2021-06-03

1.ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû


1.jpg


ÃÀ¹ú˾·¨²¿ÒѲé·âNOBELIUMÔÚÕë¶ÔÃÀ¹ú¹ú¼Ê¿ª·¢Êð (USAID) µÄ¹¥»÷ÖÐʹÓõÄÓòÃû¡£¡£¡£¡£¡£Î¢ÈíÓÚÉÏÖÜËÄÊ×´ÎÅû¶Á˴˴δ¹ÂÚ¹¥»÷ £¬£¬£¬ £¬£¬Á¥ÊôÓÚ¶íÂÞ˹Ç鱨»ú¹¹SVRµÄNOBELIUM£¨ÓÖÃûAPT29£©Ã°³äUSAID £¬£¬£¬ £¬£¬ Ïò150 ¶à¸ö×éÖ¯·¢ËÍÁË3000¶à·â´¹ÂÚÓʼþ¡£¡£¡£¡£¡£´Ë´Î²é·âµÄÁ½¸öÓòÃû»®·ÖΪtheyardservice[.]comºÍworldhomeoutlet[.]com £¬£¬£¬ £¬£¬Ö÷ÒªÓÃÓÚÎüÊÕ´ÓÊܺ¦ÕßÄÇÀïй¶µÄÊý¾Ý £¬£¬£¬ £¬£¬²¢·¢ËÍÏÂÁî¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-seizes-domains-used-by-apt29-in-recent-usaid-phishing-attacks/


2.ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë


2.jpg


Group-IB·¢Ã÷ºÚ¿ÍÔÚ°µÍø³öÊÛDDoS-GuardµÄÊý¾Ý¿â¡£¡£¡£¡£¡£DDoS-GuardÊǶíÂÞ˹µÄÒ»¼ÒÔÚÏß»ù´¡ÉèʩЧÀÍÌṩÉÌ £¬£¬£¬ £¬£¬ÔøÔÚ½ñÄê1ÔÂ×ÊÖú±»AWSƽ̨¾Ü¾øµÄÉç½»Ó¦ÓÃParlerÖØÐÂÉÏÏß¡£¡£¡£¡£¡£ºÚ¿ÍÓÚ5ÔÂ26ÈÕÔÚºÚ¿ÍÂÛ̳exploit[.]in³öÊÛ¸ÃÊý¾Ý¿â £¬£¬£¬ £¬£¬³Æ°üÀ¨DDoS-Guard¿Í»§µÄÐÅÏ¢ £¬£¬£¬ £¬£¬ÈçÐÕÃû¡¢IP µØµãºÍ¸¶¿îÐÅÏ¢µÈ £¬£¬£¬ £¬£¬ÒÔ¼°DDoS-Guard »ù´¡ÉèÊ©µÄÔ´´úÂë¡£¡£¡£¡£¡£×î³õµÄÆðÅļÛΪ50ÍòÃÀÔª £¬£¬£¬ £¬£¬ºóÓÖ½µÎª35ÍòÃÀÔª¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/media/ddos-guard-database/


3.Ñо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancyProductDesignerÖÐ0dayµÄ¹¥»÷


3.jpg


WordfenceÑо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancy Product Designer²å¼þÖÐ0dayµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¸ÃÓ¦ÓÃÊÇWordPress¡¢WooCommerceºÍShopifyµÄ¿ÉÊÓ»¯²úÆ·ÉèÖòå¼þ £¬£¬£¬ £¬£¬ÔÊÐí¿Í»§Ê¹ÓÃ×Ô¼ºµÄͼÐκÍÄÚÈÝ×Ô½ç˵²úÆ·¡£¡£¡£¡£¡£¸ÃÎó²îÊÇÔ¶³Ì´úÂëÖ´ÐÐÎó²î £¬£¬£¬ £¬£¬¿ÉÓÃÀ´Èƹý×èÖ¹¶ñÒâÎļþÉÏ´«µÄÄÚÖüì²éÔÚÍøÕ¾ÉÏÖ´ÐÐPHPÎļþ¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ´Ë´Î¹¥»÷»î¶¯ÓÚ2021Äê1ÔÂ30ÈÕ×îÏÈ £¬£¬£¬ £¬£¬ºÚ¿ÍÒÔµçÉÌÍøÕ¾ÎªÄ¿µÄ £¬£¬£¬ £¬£¬ÊÔͼÇÔÈ¡ÆäÊý¾Ý¿âÖеĶ©µ¥ÐÅÏ¢ £¬£¬£¬ £¬£¬½¨ÒéÓû§Á¬Ã¦×°ÖÃ6ÔÂ2ÈÕÐû²¼µÄ²¹¶¡¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/critical-wordpress-plugin-zero-day-under-active-exploitation/


4.ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾FujiFilm³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷


4.jpg


ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾£¨FujiFilm£©³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷ £¬£¬£¬ £¬£¬ÓʼþºÍµç»°ÏµÍ³ÖÐÖ¹¡£¡£¡£¡£¡£FujiFilm×î³õÒÔ¹âѧ½ºÆ¬ºÍÏà»úΪÖ÷ £¬£¬£¬ £¬£¬ºóÓÖÉæ¼°Ò©Æ·¡¢´æ´¢×°±¸¡¢¸´Ó¡»úºÍ´òÓ¡»ú (XEROX) ÒÔ¼°ÊýÂëÏà»úµÈ²úÆ· £¬£¬£¬ £¬£¬2020ÊÕÈëΪ201ÒÚÃÀÔª¡£¡£¡£¡£¡£¸Ã¹«Ë¾³Æ¹¥»÷±¬·¢ÔÚ6ÔÂ1ÈÕÍíÉÏ £¬£¬£¬ £¬£¬Ö®ºóÁ¬Ã¦Ð­µ÷È«ÇòµÄ·Ö¹«Ë¾²¢¹Ø±ÕÁËËùÓÐÊÜÓ°Ïìϵͳ¡£¡£¡£¡£¡£FUJIFILM²¢Î´Ö¸³öÀÕË÷ÍÅ»ïµÄÃû³Æ £¬£¬£¬ £¬£¬µ«Advanced IntelÌåÏÖFUJIFILMÓÚ5ÔÂ15ÈÕѬȾÁËQbotľÂí £¬£¬£¬ £¬£¬Òò´Ë´Ë´Î¹¥»÷¿ÉÄÜÓëREvilÓйØ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fujifilm-shuts-down-network-after-suspected-ransomware-attack/


5.°×¹¬Ö¤ÊµJBSÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓÐ¹Ø £¬£¬£¬ £¬£¬±¸·ÝϵͳδÊÜÓ°Ïì


5.jpg


°×¹¬Ö¤ÊµJBSÔÚ5ÔÂ30ÈÕÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓйØ¡£¡£¡£¡£¡£´Ë´Î¹¥»÷¶ÔJBSµÄÔËÓª±¬·¢ÁËÖØ´óµÄÓ°Ïì £¬£¬£¬ £¬£¬¾Ýͳ¼Æ £¬£¬£¬ £¬£¬Å£µÄÍÀÔ×Á¿±ÈÉÏÖÜϽµÁË22% £¬£¬£¬ £¬£¬¶øÖíµÄÍÀÔ×Á¿ÔòϽµÁË20%¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ £¬£¬£¬ £¬£¬±¸·ÝЧÀÍÆ÷²¢Î´Êܵ½Ó°Ïì £¬£¬£¬ £¬£¬ÆäÕýÔÚÓëµÚÈý·½ÏàÖúÒÔ¾¡¿ì»Ö¸´ÊÜÓ°Ïìϵͳ £¬£¬£¬ £¬£¬Ô¤¼Æ´ó²¿·Ö¹¤³§ÔÚ6ÔÂ3ÈÕÓ¦¸Ã¿ÉÒÔÔËÐС£¡£¡£¡£¡£ÏÖÔÚ £¬£¬£¬ £¬£¬FBIÒÑÈ·¶¨´Ë´Î¹¥»÷¿É¹éÒòÓÚREvilÍŻ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118490/cyber-crime/jbs-attack-russian-origin.html


6.ThreatpostÐû²¼2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ


6.jpg


ThreatpostÐû²¼ÁË2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ¡£¡£¡£¡£¡£ÀÕË÷Èí¼þÊÇÒ»ÖÖÈÕÒæÑÏÖØµÄÍþв £¬£¬£¬ £¬£¬×î½ü¼¸¸öÔ £¬£¬£¬ £¬£¬´ËÀàÍøÂç·¸·¨µÄÖØ´óÐÔºÍÁ¢ÒìˮƽһֱÌá¸ß¡£¡£¡£¡£¡£¸Ã±¨¸æ´Ó6¸ö·½Ã棺ÀÕË÷Èí¼þµÄÐÂÇ÷ÊÆ¡¢ÀÕË÷Èí¼þ¾­¼Ã¹éÄÉ×ۺϡ¢ÀÕË÷Èí¼þ¹¥»÷µÄ±¾Ç®¡¢ÍøÂç°ü¹ÜÖú³¤ÀÕË÷Èí¼þÖ§¸¶¼¤Ôö¡¢48СʱÀÕË÷Èí¼þ¹¥»÷ÈÕÖ¾ºÍ×èÖ¹ÀÕË÷Èí¼þµÄÊÊÓÃÖ¸ÄÏ £¬£¬£¬ £¬£¬ÆÊÎöÁ˽üÆÚÀÕË÷Èí¼þÉú³¤µÄÐÂÇ÷ÊÆ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/ebooks/2021-the-evolution-of-ransomware/