¶íÂÞ˹ÎÀÐÇͨѶÉÌDozor-Teleport±»ºÚÁÙʱÎÞ·¨½Ó¼û

°ä²¼¹¦·ò 2023-07-04

1¡¢¶íÂÞ˹ÎÀÐÇͨѶÉÌDozor-Teleport±»ºÚÁÙʱÎÞ·¨½Ó¼û


¾ÝýÌå6ÔÂ30ÈÕ±¨Â·£¬£¬£¬£¬ £¬£¬Ä³ºÚ¿ÍÍÅ»ïÐû³Æ¶Ô¶íÂÞ˹ÎÀÐÇͨѶÌṩÉÌDozor-TeleportÔâµ½µÄ¹¥»÷ÕÆ¹Ü¡£ ¡£¡£¡£¡£¡£¡£¡£¸ÃÌṩÉÌΪÄÜÔ´¹«Ë¾ÒÔ¼°¸Ã¹úµÄ¹ú·ÀºÍ°²È«»ú¹¹ËùÓᣠ¡£¡£¡£¡£¡£¡£¡£×ÔÃÀ¹ú¶«²¿¹¦·òÉÏÖÜÈýÍíÉÏ10µãÒÔÀ´£¬£¬£¬£¬ £¬£¬¸Ã¹«Ë¾µÄÍøÂçÒ»Ïò´¦ÓÚÖжÏ״̬£¬£¬£¬£¬ £¬£¬ÍøÕ¾Ò²Òѹعء£ ¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬ £¬£¬DozorµÄĸ¹«Ë¾Amtel SvyazÒ²ÔÚÉÏÖÜÈýÍí¼ä²úÉúÁËÑϳÁµÄÖжϡ£ ¡£¡£¡£¡£¡£¡£¡£Õâ´Î¹¥»÷±³ºóµÄ×éÖ¯Ðû³ÆÓëWagner GroupÓйØ£¬£¬£¬£¬ £¬£¬µ«ºóÕߵĹٷ½TelegramÖÐûÓÐÌá¼°Õâ´Î¹¥»÷»î¶¯¡£ ¡£¡£¡£¡£¡£¡£¡£ºÚ¿Í³ÆÈëÇÖÁ˲¿ÃÅÎÀÐÇÖÕ¶Ë£¬£¬£¬£¬ £¬£¬ÇÔÈ¡ÁË·þÎñÆ÷ÉϵĻúÃÜÐÅÏ¢£¬£¬£¬£¬ £¬£¬²¢¹«¿ªÁË700¸öÎļþ£¬£¬£¬£¬ £¬£¬Ô̺¬ÎĵµºÍͼÏñ¡£ ¡£¡£¡£¡£¡£¡£¡£


https://therecord.media/hackers-take-down-russian-satellite-provider


2¡¢ÃÀ¹úרÀûÉ̱ê¾ÖÅäÖÃÃýÎóй¶Լ6Íò¸öÉêÇëÈ˵ÄÐÅÏ¢


¾Ý6ÔÂ28ÈÕ±¨Â·£¬£¬£¬£¬ £¬£¬ÃÀ¹úרÀûÉ̱ê¾Ö (USPTO) й¶ÁËÔ¼61000¸öÉêÇëÈ˵ÄÐÅÏ¢¡£ ¡£¡£¡£¡£¡£¡£¡£¸ÃÎÊÌâÊÇÔÚÒ»¸öAPIÖз¢Ïֵ쬣¬£¬£¬ £¬£¬µ¼Ö´ÓÉêÇëÈËÄÇÀïÍøÂçµÄµØÖ·ÐÅϢй¶¡£ ¡£¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬ £¬£¬Õâ´Îй¶ÊÂÎñÓ°ÏìÁË2020Äê2ÔÂÖÁ2023Äê3ÔÂÌá½»µÄÔ¼3%µÄÉêÇëÈË¡£ ¡£¡£¡£¡£¡£¡£¡£USPTO³Æ£¬£¬£¬£¬ £¬£¬ËûÃÇ·¢ÏÖÕâ¸öÎÊÌâºó£¬£¬£¬£¬ £¬£¬Á¢¼´×èÖ¹Á˶ÔËùÓÐUSPTO·Ç¹Ø¼üAPIµÄ½Ó¼û£¬£¬£¬£¬ £¬£¬²¢Ï¼ÜÁËÊÜÓ°ÏìµÄÅúÁ¿Êý¾Ý²úÆ·£¬£¬£¬£¬ £¬£¬Ö±µ½Äܹ»ÓÀÔ¶½¨¸´¡£ ¡£¡£¡£¡£¡£¡£¡£


https://techcrunch.com/2023/06/28/uspto-trademark-data-api-leak/


3¡¢Akamai¼ì²âµ½ÀûÓÃSSH·þÎñÆ÷µÄдúÀí½Ù³Ö¹¥»÷»î¶¯


AkamaiÔÚ6ÔÂ29ÈÕ³ÆÆä¼ì²âµ½Ò»¸ö´úÀí½Ù³Ö»î¶¯£¬£¬£¬£¬ £¬£¬ÖØÒªÕë¶ÔÒ×Êܹ¥»÷µÄSSH·þÎñÆ÷¡£ ¡£¡£¡£¡£¡£¡£¡£AkamaiÓÚ6ÔÂ8ÈÕ³õ´Î·¢ÏÖÕâЩ¹¥»÷¡£ ¡£¡£¡£¡£¡£¡£¡£Ò»µ©Ïνӵ½SSH·þÎñÆ÷£¬£¬£¬£¬ £¬£¬¹¥»÷Õ߾ͻá×°ÖÃÒ»¸öBase64±àÂëµÄBash¾ç±¾£¬£¬£¬£¬ £¬£¬½«±»¹¥»÷µÄϵͳÔö³¤µ½HoneygainºÍPeer2ProfitµÈP2P´úÀíÍøÂçÖÓ×£ ¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬ £¬£¬Ëü»¹»áËÑË÷²¢ÖÕÖ¹ÔËÐдø¿í¹²Ïí·¨Ê½µÄ¾ºÕùÊ·ý£¬£¬£¬£¬ £¬£¬¶øºóÆô¶¯Docker·þÎñ£¬£¬£¬£¬ £¬£¬ÀûÓÃÖ¸±êµÄ´ø¿í»ñÈ¡ÀûÈó¡£ ¡£¡£¡£¡£¡£¡£¡£¶ÔÍøÂç·þÎñÆ÷µÄ½øÒ»²½·ÖÎö·¢ÏÖ£¬£¬£¬£¬ £¬£¬Ëü»¹±»ÓÃÀ´ÍйܼÓÃÜÇ®±ÒÍÚ¿ó·¨Ê½£¬£¬£¬£¬ £¬£¬ÕâÅú×¢¹¥»÷ÕßÔÚÉæ×ã¼ÓÃܽٳֺʹúÀí½Ù³Ö¹¥»÷¡£ ¡£¡£¡£¡£¡£¡£¡£


https://www.akamai.com/blog/security-research/proxyjacking-new-campaign-cybercriminal-side-hustle


4¡¢×êÑÐÈËÔ±³Æ½öÐè6´Î³¢ÊԾͿÉÈÆ¹ýÓïÒôÉí·ÝÑéÖ¤


ýÌå6ÔÂ30Èճƣ¬£¬£¬£¬ £¬£¬»¬Ìú¬´óѧµÄ×êÑÐÈËÔ±·¢ÏÖÁËÒ»ÖÖÄܹ»ÈƹýÓïÒôÉí·ÝÑéÖ¤µÄ¼¼Êõ£¬£¬£¬£¬ £¬£¬²¢°µÊ¾Ö»ÐèÁù´Î³¢ÊԳɹ¦Âʾ͸ߴï99%¡£ ¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËԱȷ¶¨ÁËdeepfakeÒôƵÖÐÅú×¢ËüÊÇÓÉÍÆËã»úÌìÉúµÄÏóÕ÷£¬£¬£¬£¬ £¬£¬²¢¿ª·¢ÁËÒ»¸ö·¨Ê½À´É¾³ýÕâЩÏóÕ÷£¬£¬£¬£¬ £¬£¬Ê¹ÆäÓëÕæÊµÒôƵÎÞ·¨·Ö±æ¡£ ¡£¡£¡£¡£¡£¡£¡£ÔÚÕë¶ÔAmazon ConnectÓïÒôÉí·ÝÑé֤ϵͳµÄ²âÊÔÖУ¬£¬£¬£¬ £¬£¬×êÑÐÈËÔ±ÔÚ4ÃëµÄ¹¥»÷ÖлñµÃÁË10%µÄ³É¹¦ÂÊ£¬£¬£¬£¬ £¬£¬ÔÚ³¢ÊÔ6´Îºó³É¹¦Âʸߴï99%¡£ ¡£¡£¡£¡£¡£¡£¡£


https://www.malwarebytes.com/blog/news/2023/06/new-technique-can-defeat-voice-authentication-in-just-6-attempts


5¡¢AhnLab³ÆÀÕË÷ÍÅ»ïCrysisͨ¹ýRDP×°ÖÃVenusÀÕË÷Èí¼þ


7ÔÂ3ÈÕ±¨Â·³Æ£¬£¬£¬£¬ £¬£¬AhnLab½üÆÚ·¢ÏÖÀÕË÷ÍÅ»ïCrysisÔÚ¹¥»÷ÖÐҲʹÓÃÁËVenusÀÕË÷Èí¼þ¡£ ¡£¡£¡£¡£¡£¡£¡£CrysisºÍVenus¶¼ÊÇÕë¶Ô¶³öµÄÔ¶³Ì×ÀÃæ·þÎñµÄÖØÒªÀÕË÷Èí¼þ¡£ ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÄÜʹÓÃRDP×÷Ϊ¹¥»÷ý½é£¬£¬£¬£¬ £¬£¬Ïȳ¢ÊÔʹÓÃCrysis¼ÓÃÜϵͳ£¬£¬£¬£¬ £¬£¬ÔÚʧ°Üºó£¬£¬£¬£¬ £¬£¬Ôٴγ¢ÊÔʹÓÃVenus½øÐмÓÃÜ¡£ ¡£¡£¡£¡£¡£¡£¡£³ýÁËÁ½¸öÀÕË÷Èí¼þÖ®±í£¬£¬£¬£¬ £¬£¬¹¥»÷Õß»¹×°ÖÃÁ˸÷ÀàÆäËü¹¤¾ß£¬£¬£¬£¬ £¬£¬ÀýÈç¶Ë¿ÚɨÃèÆ÷ºÍMimikatz¡£ ¡£¡£¡£¡£¡£¡£¡£ÓÉÓÚ¹¥»÷ÕßÔÚ³õʼÈëÇֺͺáÏòÒÆ¶¯ÖÐÒ»ÏòʹÓÃRDP£¬£¬£¬£¬ £¬£¬½¨ÒéÓû§ÔÚ²»Ê¹ÓÃʱͣÓÃRDP£¬£¬£¬£¬ £¬£¬»òʹÓø´ÔÓµÄÕË»§ÃÜÂë²¢¶¨ÆÚ¸ü¸Ä£¬£¬£¬£¬ £¬£¬À´·ÀÓù´ËÀ๥»÷¡£ ¡£¡£¡£¡£¡£¡£¡£


https://asec.ahnlab.com/en/54937/


6¡¢Sekoia°ä²¼¹ØÓÚDDoS¹¥»÷¹¤¾ß°üDDoSiaµÄ·ÖÎö»ã±¨


6ÔÂ29ÈÕ£¬£¬£¬£¬ £¬£¬Sekoia°ä²¼¹ØÓÚDDoSiaÏîÖ÷ÕÅ·ÖÎö»ã±¨¡£ ¡£¡£¡£¡£¡£¡£¡£DDoSiaÊÇÒ»¸öDDoS¹¥»÷¹¤¾ß°ü£¬£¬£¬£¬ £¬£¬ÓÉÓë¶íÂÞ˹ÓйصÄ×éÖ¯NoName057(16)¿ª·¢ºÍʹÓᣠ¡£¡£¡£¡£¡£¡£¡£DDoSiaÏîÄ¿ÓÚ2022ËêÊ×ÔÚTelegramÉÏÆô¶¯£¬£¬£¬£¬ £¬£¬½ØÖÁ½ñÄê6Ô£¬£¬£¬£¬ £¬£¬Æä³ÉÔ±³¬¹ý10000ÈË¡£ ¡£¡£¡£¡£¡£¡£¡£SekoiaÍøÂçÁËDDoSiaµÄC2ÔÚ5ÔÂ8ÈÕÖÁ6ÔÂ26ÈÕ·¢Ë͵ÄһЩµÄÊý¾Ý£¬£¬£¬£¬ £¬£¬·¢ÏÖÖØÒªÕë¶Ô¿¹ÌÕÍð¡¢ÎÚ¿ËÀ¼ºÍ²¨À¼£¬£¬£¬£¬ £¬£¬Õ¼×ܻµÄ39%¡£ ¡£¡£¡£¡£¡£¡£¡£ÔÚ´ËÆÚ¼ä£¬£¬£¬£¬ £¬£¬DDoSia×ܹ²¹¥»÷ÁË486¸öÍøÕ¾¡£ ¡£¡£¡£¡£¡£¡£¡£


https://blog.sekoia.io/following-noname05716-ddosia-projects-targets/