·¨¹ú²ÎÒéÔºÍøÕ¾Ôâµ½NoNameµÄDDoS¹¥»÷ÁÙʱÎÞ·¨½Ó¼û

°ä²¼¹¦·ò 2023-05-08

1¡¢·¨¹ú²ÎÒéÔºÍøÕ¾Ôâµ½NoNameµÄDDoS¹¥»÷ÁÙʱÎÞ·¨½Ó¼û


¾ÝýÌå5ÔÂ5ÈÕ±¨Â·£¬£¬£¬£¬£¬·¨¹ú²ÎÒéÔºµÄÍøÕ¾ÒòÔâµ½ºÚ¿Í×éÖ¯NoNameµÄDDoS¹¥»÷¶ø¹Ø¹Ø¡£¡£¡£¡£¡£¡£¡£·¨¹ú²ÎÒéÔº5ÈÕ°ä²¼Ò»ÌõÍÆÎijƣ¬£¬£¬£¬£¬×Ôµ±ÈÕÔçÉÏÒÔÀ´£¬£¬£¬£¬£¬²ÎÒéÔºµÄÍøÕ¾Ò»ÏòÎÞ·¨½Ó¼û£¬£¬£¬£¬£¬ÆäÍŶÓÒÑÈ«Ãæ´øÍ·ÆðÀ´½â¾öÎÊÌâ¡£¡£¡£¡£¡£¡£¡£NoNameÔÚTelegramÉϰ䷢Á˶Է¨¹úµÄ¶à¸ö×éÖ¯ÌáÒé¹¥»÷£¬£¬£¬£¬£¬Ô̺¬·¨¹ú²ÎÒéÔº¡¢·¨¹ú¹ú¶ÈÀ͹¤¾ÍÒµºÍÖ°ÒµÅàѵ×êÑÐËù¡¢·¨¹ú¹ú¶È¿Õ¼ä×êÑÐÖÐÐĺͷ¨¹ú¹ú·À¹«Ë¾Ë®Ê¦¼¯ÍÅ¡£¡£¡£¡£¡£¡£¡£


https://www.securityweek.com/pro-russian-hackers-claim-downing-of-french-senate-website/


2¡¢Western Digitalй©ÈýÔµÄÍøÂç¹¥»÷й¶²¿ÃÅÓû§Êý¾Ý


ýÌå5ÔÂ7Èճƣ¬£¬£¬£¬£¬Western Digitalµ÷²éÈ·ÈϹ¥»÷ÕßÔÚÈýÔ·ݵÄÍøÂç¹¥»÷ÖÐÇÔÈ¡Á˲¿ÃÅÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾°µÊ¾£¬£¬£¬£¬£¬3ÔÂ26ÈÕǰºó£¬£¬£¬£¬£¬Î´¾­ÊÚȨµÄµÚÈý·½»ñµÃÁËWestern DigitalÊý¾Ý¿âµÄ¸±±¾£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬ÔÚÏßÉ̵êÓû§µÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£Western DigitalÔÚµ÷²é´ËÊÂÎñµÄͬʱÒѽ«ÆäÉ̵êÏÂÏߣ¬£¬£¬£¬£¬Ä¿Ç°É̵ê½öÏÔʾһÌõÐÂÎÅ¡°ÎÒÃǺܿì¾Í»á»ØÀ´£ºÎÒÃÇĿǰÎÞ·¨´¦Öö©µ¥¡£¡£¡£¡£¡£¡£¡£¡±¸Ã¹«Ë¾Ô¤¼Æ½«ÓÚ5ÔÂ15ÈÕ¸´Ô­¶ÔÉ̵êµÄ½Ó¼û¡£¡£¡£¡£¡£¡£¡£TechCrunch±¨Â·³Æ £¬£¬£¬£¬£¬Ä³²»³ÛÃûÍÅ»ïÈëÇÖÁËWestern Digital£¬£¬£¬£¬£¬²¢Ðû³ÆÇÔÈ¡ÁË10 TBÊý¾Ý¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/western-digital-says-hackers-stole-customer-data-in-march-cyberattack/


3¡¢¼ÓÀû¸£ÄáÑÇijÊо¯·½ÔâÀÕË÷¹¥»÷ÒѸ¶110ÍòÃÀÔªÊê½ð


¾Ý5ÔÂ6ÈÕ±¨Â·£¬£¬£¬£¬£¬¼ÓÀû¸£ÄáÑÇÖÝÊ¥±´ÄɵÏŵÊеÄÖΰ²²¿ÃÅÔâµ½ÀÕË÷¹¥»÷£¬£¬£¬£¬£¬²¢Ñ¡Ôñ¸¶110ÍòÃÀÔªÊê½ð¡£¡£¡£¡£¡£¡£¡£¹¥»÷²úÉúÔÚ4ÔÂ7ÈÕ£¬£¬£¬£¬£¬µ¼Ö¾¯Ô±¾Ö±»ÆÈ¹Ø¹ØÁ˲¿ÃÅϵͳ£¬£¬£¬£¬£¬Ó°ÏìÁ˵ç×ÓÓʼþ¡¢³µÔصçÄÔºÍһЩ·¨ÂÉÊý¾Ý¿âµÈ¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬µ÷²éÈÔÔÚ½øÐÐÖС£¡£¡£¡£¡£¡£¡£¾Ý¡¶Âåɼí¶Ê±±¨¡·±¨Â·£¬£¬£¬£¬£¬¸ÃÊÐÒÑΪ´ËÀ๥»÷Ͷ±££¬£¬£¬£¬£¬Ëü½öÐ踶Êê½ð×ܶîµÄÒ»°ë£¨511852ÃÀÔª£©£¬£¬£¬£¬£¬ÆäÓಿÃÅÓɱ£ÏÕ¹«Ë¾³Ðµ£¡£¡£¡£¡£¡£¡£¡£ÔÚÓëºÚ¿Í½»Éæºó£¬£¬£¬£¬£¬±£ÏÕ¹«Ë¾ºÍ¸ÃÊÐÔÞ³ÉÖ§¸¶ÓöÈÒÔ¸´Ô­ÏµÍ³µÄÈ«ÊýÖ°ÄܺͰ²È«Êý¾Ý¡£¡£¡£¡£¡£¡£¡£


https://abc7.com/san-bernardino-cyberattack-ransom-paid-hackers/13215833/


4¡¢Fortinet°ä²¼°²È«¸üн¨¸´Æä¶à¸ö²úÆ·ÖеÄ9¸ö·ì϶


5ÔÂ3ÈÕ£¬£¬£¬£¬£¬Fortinet°ä²¼°²È«¸üУ¬£¬£¬£¬£¬½¨¸´Æä¶à¸ö²úÆ·ÖеÄ9¸ö·ì϶¡£¡£¡£¡£¡£¡£¡£ÆäÖÐÔ̺¬Á½¸ö½ÏΪÑϳÁ·ì϶£¬£¬£¬£¬£¬FortiADCÖÐ±í²¿×ÊÔ´Ä£¿ £¿£¿£¿£¿£¿éÖеĺÅÁî×¢Èë·ì϶£¨CVE-2023-27999£©£¬£¬£¬£¬£¬¹¥»÷Õß¿Éͨ¹ýÌØÔìµÄ²ÎÊýÀ´Ö´ÐÐδ¾­ÊÚȨµÄºÅÁî¡£¡£¡£¡£¡£¡£¡£ÒÔ¼°FortiOSºÍFortiProxyµÄsslvpnd×é¼þÖеÄÔ½½çдÈë·ì϶£¨CVE-2023-22640£©£¬£¬£¬£¬£¬¿Éͨ¹ýÏòÉ豸·¢ËÍÌØÔìµÄÒªÇóÀûÓø÷ì϶£¬£¬£¬£¬£¬À´Ö´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°Éв»Ã÷ÏÔÕâЩ·ì϶ÊÇ·ñÒѱ»Ò°±íÀûÓᣡ£¡£¡£¡£¡£¡£


https://securityaffairs.com/145825/security/fortinet-fortiadc-fortios-flaws.html


5¡¢Android½¨¸´ÄÚºËÖб»ÀûÓõÄÌáȨ·ì϶CVE-2023-0266


5ÔÂ5ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬±¾Ô°䲼µÄAndroid°²È«¸üн¨¸´ÁËÒ»¸öÑϳÁµÄ·ì϶£¨CVE-2023-0266£©¡£¡£¡£¡£¡£¡£¡£ÕâÊÇLinuxÄÚºËÉùÒô×ÓϵͳÖеĿªÊͺóʹÓ÷ì϶£¬£¬£¬£¬£¬¿ÉÄܻᵼÖÂȨÏÞÌáÉýÇÒÎÞÐèÓû§½»»¥¡£¡£¡£¡£¡£¡£¡£Æ¾¾ÝGoogle TAGÔÚ3Ô·ݰ䲼µÄ»ã±¨£¬£¬£¬£¬£¬Õë¶ÔÈýÐÇAndroidÊÖ»úµÄ¼äµý»î¶¯ÖУ¬£¬£¬£¬£¬¸Ã·ì϶±»×÷Ϊ¶à¸ö0-dayºÍn-day¹¥»÷Á´µÄÒ»²¿ÃÅ¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬±¾Ôµİ²È«¸üл¹½¨¸´ÁËÆäËü¼¸Ê®¸ö·ì϶¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/new-android-updates-fix-kernel-bug-exploited-in-spyware-attacks/


6¡¢McAfeeÅû¶Amadey½üÆÚ¶à½×¶Î¹¥»÷ºÍ·Ö·¢µÄ»î¶¯


5ÔÂ5ÈÕ£¬£¬£¬£¬£¬McAfeeÅû¶ÁËAmadey×îеĶà½×¶Î¹¥»÷»î¶¯ºÍ¶ñÒâÈí¼þ·Ö·¢»î¶¯¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±·¢ÏÖ½üÆÚWextract.exeÑù±¾ÓÐËùÔö³¤£¬£¬£¬£¬£¬Ëü±»ÓÃÓÚ¶àÖÖ¶ñÒâÈí¼þµÄ·Ö·¢£¬£¬£¬£¬£¬Ô̺¬AmadeyºÍRedline Stealer¡£¡£¡£¡£¡£¡£¡£»ã±¨»¹ÌṩÁËÓйضñÒâÈí¼þÈÆ¹ý°²È«Èí¼þ¼ì²â²¢Ö´ÐÐÆäpayloadµÄ¼¼ÊõµÄ¾ßÌåÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¶ñÒâÈí¼þÒ»µ©ÔÚϵͳÉÏÖ´ÐУ¬£¬£¬£¬£¬¾Í»áÓë¹¥»÷ÕßµÄC2·þÎñÆ÷³ÉÁ¢Í¨Ñ¶£¬£¬£¬£¬£¬²¢´ÓÖ¸±êµÄϵͳÖÐÇÔÈ¡Êý¾Ý£¬£¬£¬£¬£¬Ô̺¬µÇ¼ʹ´¦¡¢²ÆÕþÊý¾ÝºÍÓ×ÎÒÐÅÏ¢µÈ¡£¡£¡£¡£¡£¡£¡£


https://www.mcafee.com/blogs/other-blogs/mcafee-labs/deconstructing-amadeys-latest-multi-stage-attack-and-malware-distribution/