UptycsÅû¶ÓëKeksecÍÅ»ïÓйصÄн©Ê¬ÍøÂçSimps£»£»£»£»£»£»£»CiscoÅû¶macOSµÄSMBºÍ̸ÖеÄÐÅϢй¶·ì϶
°ä²¼¹¦·ò 2021-05-201.UptycsÅû¶ÓëKeksecÍÅ»ïÓйصÄн©Ê¬ÍøÂçSimps

UptycsÍþв×êÑÐÍŶÓÅû¶ÓëKeksecÍÅ»ïÓйصÄн©Ê¬ÍøÂçSimps¡£¡£¡£¡£¡£ËüʹÓÃÎïÁªÍø£¨IoT£©½Úµã¶ÔÓÎÏ·ºÍÆäËûÖ¸±ê½øÐÐÉ¢²¼Ê½»Ø¾ø·þÎñ£¨DDoS£©¹¥»÷£¬£¬£¬£¬£¬£¬£¬ÓÚ2021Äê5ÔµĵÚÒ»Öܱ»·¢ÏÖ¡£¡£¡£¡£¡£×êÑÐÈËÔ±Ö¸³ö£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ýWgetÀ´ÀûÓÃshell¾ç±¾ºÍGafgyt£¨Keksec×îÇàíùµÄ¹¤¾ßÖ®Ò»£©Îª·ÖÆçµÄ»ùÓÚLinuxµÄϵͳװÖÃSimps payload¡£¡£¡£¡£¡£Æ¾¾ÝÒ»ÌõÔ̺¬Gafgyt¶ñÒâÈí¼þÑù±¾µÄDiscordÐÂÎÅ£¬£¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±´§¶È¸Ã¶ñÒâÈí¼þÓëKeksecÍÅ»ïÓйء£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.uptycs.com/blog/discovery-of-simps-botnet-leads-ties-to-keksec-group
2.Tessian·¢ÏÖ½üÆÚ¼Ù×°³É±íÂô·þÎñµÄSMSÍøÂç´¹µö»î¶¯

TessianµÄ×êÑÐÈËÔ±·¢ÏÖ½üÆÚ¼Ù×°³É±íÂô·þÎñµÄSMSÍøÂç´¹µö»î¶¯¡£¡£¡£¡£¡£ÔÚÕâ´Î¹¥»÷ÖУ¬£¬£¬£¬£¬£¬£¬ºÚ¿Í¼Ù×°³É³ÛÃûÆ·ÅÆ£¨Ô̺¬HelloFreshºÍGousto£©ÏòÖ¸±ê·¢ËͶÌÐÅ£¬£¬£¬£¬£¬£¬£¬ÀýÈç¡°ÄúµÄGousto´Ë¿ÌÒÑͶµÝ¡±£¬£¬£¬£¬£¬£¬£¬À´ÓÕʹÓû§´ò¿ª´¹µö¶ÌÐÅÖеÄÁ´½Ó£¬£¬£¬£¬£¬£¬£¬²¢ÊäÈëÆäÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£×êÑÐÈËÔ±½¨ÒéÓû§²ÉȡһЩµ¥Ò»µÄÔ¤·À´ëÊ©£¬£¬£¬£¬£¬£¬£¬È羯Ìè²»ÊìϤµÄËÍ»õ֪ͨ£¬£¬£¬£¬£¬£¬£¬×Ðϸ²é¿´·¢¼þÈ˺ÅÂë²¢×îºÃ²»µã»÷SMSÐÂÎÅÖеÄÁ´½Ó£¬£¬£¬£¬£¬£¬£¬À´Ô¤·À´ËÀ๥»÷¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/scammers-meal-kit-services-customer-data/166282/
3.ÐÂÎ÷À¼DHBϰȾÀÕË÷Èí¼þ£¬£¬£¬£¬£¬£¬£¬¶à¼ÒÒ½ÔºµÄÊÖÊõ±»ÆÈÈ¡µÞ

ÐÂÎ÷À¼µÄ»³¿¨ÍеØÓòÎÀÉúίԱ»á£¨DHB£©ÓÚ±¾ÖܶþÔçÉÏÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬£¬IT·þÎñÖжϣ¬£¬£¬£¬£¬£¬£¬Áù¼Ò´ÓÊôÒ½ÔºÊܵ½Ó°Ïì¡£¡£¡£¡£¡£Õâ´Î¹¥»÷µ¼Ö»ú¹¹³ýµç×ÓÓʼþÒÔ±íµÄËùÓÐIT·þÎñ¶¼ÎÞ·¨Ê¹Ó㬣¬£¬£¬£¬£¬£¬Ò½Ôº¹¤×÷ÈËÔ±±»ÆÈʹÓñʺÍÖ½°ì¹«£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÓÉÓÚÁÙ´²·þÎñÖжϡ¢ÊÖÊõÍÆ³Ù¡¢µç»°µôÏߣ¬£¬£¬£¬£¬£¬£¬Ò½ÔºÖ»ÄܽÓÊÜ´¹Î£²¡ÈË¡£¡£¡£¡£¡£DHBÕý¶Ô´ËÊ·¢Õ¹µ÷²é£¬£¬£¬£¬£¬£¬£¬²¢ÒѾö¶¨²»Ö§¸¶Êê½ð£¬£¬£¬£¬£¬£¬£¬Ä¿Ç°Éв»Ã÷ÏÔÌáÒéÕâ´Î¹¥»÷µÄºÚ¿ÍÍŻ¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.theregister.com/2021/05/19/new_zealand_hospitals_taken_down/
4.CiscoÅû¶macOSµÄSMBºÍ̸ÖеÄÐÅϢй¶·ì϶

Cisco TalosÅû¶ÁËApple macOSµÄSMBºÍ̸ÖеÄÐÅϢй¶·ì϶¡£¡£¡£¡£¡£¸Ã·ì϶ÊÇÒ»¸öÕûÊýÒç¶Âí½Å£¨CVE-2021-1878£©£¬£¬£¬£¬£¬£¬£¬´æÔÚÓÚmacOS SMBºÍ̸´¦ÖÃSMB3Êý¾Ý°üµÄ¹ý³ÌÖС£¡£¡£¡£¡£SMBÊÇWindowsÍøÂç»·¾³Öг£¼ûµÄÍøÂçÎļþ¼Ð¹²ÏíµÄ·þÎñ£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»Í¨¹ýÏòÖ¸±êϵͳ·¢ËÍÌØÔìÊý¾Ý°üÀ´ÀûÓô˷ì϶¡£¡£¡£¡£¡£³ýÁË¿ÉÄÜй¼ûô¸ÐÐÅÏ¢Ö®±í£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß»¹Äܹ»ÀûÓø÷ì϶À´Èƹý¼ÓÃܲ鳲¢µ¼Ö»ؾø·þÎñ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://blog.talosintelligence.com/2021/05/vuln-spotlight-smb-information-disclosure.html
5.NVIDIA°ä·¢½«ÔÚеÄÏÔ¿¨ÉϽµµÍËãÁ¦ÒÔÔ¤·ÀÍÚ¿ó»î¶¯

NVIDIA°ä·¢½«ÔÚеÄGeForce RTX 3080¡¢3070ºÍ3060 TiÏÔ¿¨´ó½«ËãÁ¦½µµÍÒ»°ë£¬£¬£¬£¬£¬£¬£¬ÒÔ½µµÍÆä¶Ô¿ó¹¤µÄÎüÒýÁ¦¡£¡£¡£¡£¡£¸Ã¹«Ë¾³Æ£¬£¬£¬£¬£¬£¬£¬´Ë¾ö¶¨ÊÇΪÁËÈ·±£ÓÎÏ·¿¨Äܹ»±»È«Çò¸ü¶àµÄÓÎÏ·Íæ¼ÒʹÓ㬣¬£¬£¬£¬£¬£¬¶ø²»ÊÇ¶ÑÆöÔÚ¼ÓÃÜÇ®±Ò¿ó³¡ÖС£¡£¡£¡£¡£ÕâЩеIJúÆ·µÄ°ü×°ºÐÉÏÓÓ×°µÍËãÁ¦¡±»ò¡° LHR¡±±êʶ·û£¬£¬£¬£¬£¬£¬£¬Ô¤¼Æ½«ÓÚ±¾ÔÂÏÂÑ®ÆðÍ··¢»õ¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬NVIDIA»¹ÍƳöÁËCMPרÓòɿóGPUϵÁУ¬£¬£¬£¬£¬£¬£¬¹æ¸ñΪ30HX£¨ËãÁ¦26 MH/Ã룩¡¢40HX£¨36 MH/Ã룩¡¢50HX£¨45 MH/Ã룩ºÍ90HX£¨86 MH/Ã룩¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/cryptocurrency/nvidia-cripples-cryptocurrency-mining-on-rtx-3080-and-3070-cards/
6.Elliptic³ÆDarkSideÔÚ½ü9¸öÔÂÒÑ»ñÀû9000ÍòÃÀÔª

Çø¿éÁ´·ÖÎö¹«Ë¾Elliptic³ÆDarkSideÔÚ½ü9¸öÔÂÒÑ»ñÀû9000ÍòÃÀÔª¡£¡£¡£¡£¡£ÕâЩÀûÈóµÄ10£¥À´×ÔÁ½¼Ò¹«Ë¾£ºÃÀ¹ú×î´óµÄʯÓ͹Ü·ϵͳColonial PipelineºÍµÂ¹úµÄ´óÐÍ»¯Ñ§Æ··ÖÏú¹«Ë¾Brenntag£¬£¬£¬£¬£¬£¬£¬×ܹ²ÎªÆä´øÀ´ÁËÔ¼1000ÍòÃÀÔª¡£¡£¡£¡£¡£¸Ã×éÖ¯µÄ¾ùÔÈÊê½ðΪ190ÍòÃÀÔª£¬£¬£¬£¬£¬£¬£¬ÕâʹÆä³ÉΪÀÕË÷Èí¼þÐÐÒµÖÐ×ḭ̂ÐĵĹ«Ë¾Ö®Ò»¡£¡£¡£¡£¡£×÷ΪÀÕË÷Èí¼þ¼´·þÎñ£¨RaaS£©ÔËÓªÉÌ£¬£¬£¬£¬£¬£¬£¬DarkSideÔÚÀûÈó·ÖÅä·½Ãæ£¬£¬£¬£¬£¬£¬£¬»áƾ¾ÝÊê½ðµÄ¼¸¶àÊÕÈ¡10£¥ÖÁ25£¥µÄÓ¶½ð¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/darkside-ransomware-made-90-million-in-just-nine-months/


¾©¹«Íø°²±¸11010802024551ºÅ