ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû£»£»£»£»£»ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë

Ðû²¼Ê±¼ä 2021-06-03

1.ÃÀ¹úÒѲé·âNOBELIUMÔÚÕë¶ÔUSAIDµÄ¹¥»÷ÖÐʹÓõÄÓòÃû


1.jpg


ÃÀ¹ú˾·¨²¿ÒѲé·âNOBELIUMÔÚÕë¶ÔÃÀ¹ú¹ú¼Ê¿ª·¢Êð (USAID) µÄ¹¥»÷ÖÐʹÓõÄÓòÃû¡£¡£¡£¡£¡£Î¢ÈíÓÚÉÏÖÜËÄÊ×´ÎÅû¶Á˴˴δ¹ÂÚ¹¥»÷£¬£¬£¬£¬Á¥ÊôÓÚ¶íÂÞ˹Ç鱨»ú¹¹SVRµÄNOBELIUM£¨ÓÖÃûAPT29£©Ã°³äUSAID£¬£¬£¬£¬ Ïò150 ¶à¸ö×éÖ¯·¢ËÍÁË3000¶à·â´¹ÂÚÓʼþ¡£¡£¡£¡£¡£´Ë´Î²é·âµÄÁ½¸öÓòÃû»®·ÖΪtheyardservice[.]comºÍworldhomeoutlet[.]com£¬£¬£¬£¬Ö÷ÒªÓÃÓÚÎüÊÕ´ÓÊܺ¦ÕßÄÇÀïй¶µÄÊý¾Ý£¬£¬£¬£¬²¢·¢ËÍÏÂÁî¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-seizes-domains-used-by-apt29-in-recent-usaid-phishing-attacks/


2.ºÚ¿ÍÒÔ35ÍòÃÀÔªµÄÆðÅļÛÇ®³öÊÛDDoS-GuardµÄÔ´´úÂë


2.jpg


Group-IB·¢Ã÷ºÚ¿ÍÔÚ°µÍø³öÊÛDDoS-GuardµÄÊý¾Ý¿â¡£¡£¡£¡£¡£DDoS-GuardÊǶíÂÞ˹µÄÒ»¼ÒÔÚÏß»ù´¡ÉèʩЧÀÍÌṩÉÌ£¬£¬£¬£¬ÔøÔÚ½ñÄê1ÔÂ×ÊÖú±»AWSƽ̨¾Ü¾øµÄÉç½»Ó¦ÓÃParlerÖØÐÂÉÏÏß¡£¡£¡£¡£¡£ºÚ¿ÍÓÚ5ÔÂ26ÈÕÔÚºÚ¿ÍÂÛ̳exploit[.]in³öÊÛ¸ÃÊý¾Ý¿â£¬£¬£¬£¬³Æ°üÀ¨DDoS-Guard¿Í»§µÄÐÅÏ¢£¬£¬£¬£¬ÈçÐÕÃû¡¢IP µØµãºÍ¸¶¿îÐÅÏ¢µÈ£¬£¬£¬£¬ÒÔ¼°DDoS-Guard »ù´¡ÉèÊ©µÄÔ´´úÂë¡£¡£¡£¡£¡£×î³õµÄÆðÅļÛΪ50ÍòÃÀÔª£¬£¬£¬£¬ºóÓÖ½µÎª35ÍòÃÀÔª¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.group-ib.com/media/ddos-guard-database/


3.Ñо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancyProductDesignerÖÐ0dayµÄ¹¥»÷


3.jpg


WordfenceÑо¿Ö°Ô±¼ì²âµ½Ê¹ÓÃFancy Product Designer²å¼þÖÐ0dayµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¸ÃÓ¦ÓÃÊÇWordPress¡¢WooCommerceºÍShopifyµÄ¿ÉÊÓ»¯²úÆ·ÉèÖòå¼þ£¬£¬£¬£¬ÔÊÐí¿Í»§Ê¹ÓÃ×Ô¼ºµÄͼÐκÍÄÚÈÝ×Ô½ç˵²úÆ·¡£¡£¡£¡£¡£¸ÃÎó²îÊÇÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬¿ÉÓÃÀ´Èƹý×èÖ¹¶ñÒâÎļþÉÏ´«µÄÄÚÖüì²éÔÚÍøÕ¾ÉÏÖ´ÐÐPHPÎļþ¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ´Ë´Î¹¥»÷»î¶¯ÓÚ2021Äê1ÔÂ30ÈÕ×îÏÈ£¬£¬£¬£¬ºÚ¿ÍÒÔµçÉÌÍøÕ¾ÎªÄ¿µÄ£¬£¬£¬£¬ÊÔͼÇÔÈ¡ÆäÊý¾Ý¿âÖеĶ©µ¥ÐÅÏ¢£¬£¬£¬£¬½¨ÒéÓû§Á¬Ã¦×°ÖÃ6ÔÂ2ÈÕÐû²¼µÄ²¹¶¡¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/critical-wordpress-plugin-zero-day-under-active-exploitation/


4.ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾FujiFilm³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷


4.jpg


ÈÕ±¾¸»Ê¿½ºÆ¬¹«Ë¾£¨FujiFilm£©³ÆÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬ÓʼþºÍµç»°ÏµÍ³ÖÐÖ¹¡£¡£¡£¡£¡£FujiFilm×î³õÒÔ¹âѧ½ºÆ¬ºÍÏà»úΪÖ÷£¬£¬£¬£¬ºóÓÖÉæ¼°Ò©Æ·¡¢´æ´¢×°±¸¡¢¸´Ó¡»úºÍ´òÓ¡»ú (XEROX) ÒÔ¼°ÊýÂëÏà»úµÈ²úÆ·£¬£¬£¬£¬2020ÊÕÈëΪ201ÒÚÃÀÔª¡£¡£¡£¡£¡£¸Ã¹«Ë¾³Æ¹¥»÷±¬·¢ÔÚ6ÔÂ1ÈÕÍíÉÏ£¬£¬£¬£¬Ö®ºóÁ¬Ã¦Ð­µ÷È«ÇòµÄ·Ö¹«Ë¾²¢¹Ø±ÕÁËËùÓÐÊÜÓ°Ïìϵͳ¡£¡£¡£¡£¡£FUJIFILM²¢Î´Ö¸³öÀÕË÷ÍÅ»ïµÄÃû³Æ£¬£¬£¬£¬µ«Advanced IntelÌåÏÖFUJIFILMÓÚ5ÔÂ15ÈÕѬȾÁËQbotľÂí£¬£¬£¬£¬Òò´Ë´Ë´Î¹¥»÷¿ÉÄÜÓëREvilÓйØ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fujifilm-shuts-down-network-after-suspected-ransomware-attack/


5.°×¹¬Ö¤ÊµJBSÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓйØ£¬£¬£¬£¬±¸·ÝϵͳδÊÜÓ°Ïì


5.jpg


°×¹¬Ö¤ÊµJBSÔÚ5ÔÂ30ÈÕÔâµ½µÄ¹¥»÷Óë¶íÂÞ˹ÓйØ¡£¡£¡£¡£¡£´Ë´Î¹¥»÷¶ÔJBSµÄÔËÓª±¬·¢ÁËÖØ´óµÄÓ°Ï죬£¬£¬£¬¾Ýͳ¼Æ£¬£¬£¬£¬Å£µÄÍÀÔ×Á¿±ÈÉÏÖÜϽµÁË22%£¬£¬£¬£¬¶øÖíµÄÍÀÔ×Á¿ÔòϽµÁË20%¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬£¬±¸·ÝЧÀÍÆ÷²¢Î´Êܵ½Ó°Ï죬£¬£¬£¬ÆäÕýÔÚÓëµÚÈý·½ÏàÖúÒÔ¾¡¿ì»Ö¸´ÊÜÓ°Ïìϵͳ£¬£¬£¬£¬Ô¤¼Æ´ó²¿·Ö¹¤³§ÔÚ6ÔÂ3ÈÕÓ¦¸Ã¿ÉÒÔÔËÐС£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬FBIÒÑÈ·¶¨´Ë´Î¹¥»÷¿É¹éÒòÓÚREvilÍŻ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118490/cyber-crime/jbs-attack-russian-origin.html


6.ThreatpostÐû²¼2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ


6.jpg


ThreatpostÐû²¼ÁË2021ÄêÀÕË÷Èí¼þµÄÑݱäÇ÷ÊÆµÄ±¨¸æ¡£¡£¡£¡£¡£ÀÕË÷Èí¼þÊÇÒ»ÖÖÈÕÒæÑÏÖØµÄÍþв£¬£¬£¬£¬×î½ü¼¸¸öÔ£¬£¬£¬£¬´ËÀàÍøÂç·¸·¨µÄÖØ´óÐÔºÍÁ¢ÒìˮƽһֱÌá¸ß¡£¡£¡£¡£¡£¸Ã±¨¸æ´Ó6¸ö·½Ã棺ÀÕË÷Èí¼þµÄÐÂÇ÷ÊÆ¡¢ÀÕË÷Èí¼þ¾­¼Ã¹éÄÉ×ۺϡ¢ÀÕË÷Èí¼þ¹¥»÷µÄ±¾Ç®¡¢ÍøÂç°ü¹ÜÖú³¤ÀÕË÷Èí¼þÖ§¸¶¼¤Ôö¡¢48СʱÀÕË÷Èí¼þ¹¥»÷ÈÕÖ¾ºÍ×èÖ¹ÀÕË÷Èí¼þµÄÊÊÓÃÖ¸ÄÏ£¬£¬£¬£¬ÆÊÎöÁ˽üÆÚÀÕË÷Èí¼þÉú³¤µÄÐÂÇ÷ÊÆ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/ebooks/2021-the-evolution-of-ransomware/