¶íÂÞ˹з¨°¸Ç¿ÖÆÊÖ»úºÍPCԤװÖñ¾¹úÈí¼þ£»£» £»£»£»£»£»¿¨°Í˹»ùÐû²¼2019ÄêQ3 DDoS¹¥»÷±¨¸æ

Ðû²¼Ê±¼ä 2019-11-12

1¡¢¶íÂÞ˹з¨°¸Ç¿ÖÆÊÖ»úºÍPCԤװÖñ¾¹úÈí¼þ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


¶íÂÞ˹Òé»áÕýÔÚÍÆ¶¯Ò»ÏîÁ¢·¨£¬£¬ £¬£¬£¬£¬¸Ã·¨°¸½«Ç¿ÖÆÒªÇóËùÓÐÔÚ¶íÂÞ˹ÏúÊ۵ĵç×Ó×°±¸£¨°üÀ¨ÖÇÄÜÊÖ»ú¡¢PCºÍÖÇÄܵçÊӵȣ©Ô¤×°Öñ¾¹ú¿Æ¼¼¹«Ë¾µÄÓ¦Óᣡ£¡£¡£¡£Õâ¿ÉÄÜ»á´øÀ´Çå¾²Òþ»¼¡£¡£¡£¡£¡£Á¢·¨ÕßÌåÏָ÷¨°¸ÊÇΪÁ˱£»£» £»£»£»£»£»¤ÍâµØµÄÊÖÒÕÊг¡ÃâÊÜÍâ¹ú£¨¿ÉÄÜÊÇÖ¸ÃÀ¹ú£©µÄ¾ºÕù¡£¡£¡£¡£¡£Õþ¸®½«Õë¶ÔÿÖÖ×°±¸ÀàÐÍÐû²¼Ò»·ÝÈí¼þÁÐ±í£¬£¬ £¬£¬£¬£¬×°±¸¹©Ó¦ÉÌÐèÒªÔÚ¶íÂÞ˹ÏúÊÛµÄ×°±¸ÉÏԤװÖÃÕâЩÈí¼þ¡£¡£¡£¡£¡£ÈôÊǹ©Ó¦É̲»×ñÊØ»®¶¨£¬£¬ £¬£¬£¬£¬½«±»´¦ÒÔ×î¸ß20Íò¬²¼£¨Ô¼ºÏ3100ÃÀÔª£©µÄ·£¿ £¿£¿£¿î¡£¡£¡£¡£¡£¸Ã·¨°¸»ñµÃÁËËùÓÐÖ÷ÒªÕþµ³µÄÖ§³Ö£¬£¬ £¬£¬£¬£¬ÕâÒâζ×ÅËüºÜÓпÉÄܽ«ÔÚ2020Äê7ÔÂ1ÈÕÉúЧ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/phones-and-pcs-sold-in-russia-will-have-to-come-pre-installed-with-russian-apps/


2¡¢¿¨°Í˹»ùÐû²¼2019ÄêQ3 DDoS¹¥»÷±¨¸æ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


¿¨°Í˹»ùʵÑéÊÒÐû²¼2019ÄêµÚÈý¼¾¶ÈµÄDDoS¹¥»÷¶¯Ì¬±¨¸æ¡£¡£¡£¡£¡£Æ¾Ö¤¸Ã±¨¸æ£¬£¬ £¬£¬£¬£¬DDoS¹¥»÷ÔÚ½ñÄêÒ»Á¬¼á³ÖÔöÌíÌ¬ÊÆ£¬£¬ £¬£¬£¬£¬µ«ÊÖÒÕ¸üÏȽøµÄÖÇÄÜÐ͹¥»÷·´¶øÓÐËùϽµ¡£¡£¡£¡£¡£¿ £¿£¿£¿¨°Í˹»ùÕ¹ÍûDDoSÊг¡½«±äµÃ±¥ºÍ²¢×èÖ¹ÔöÌí£¬£¬ £¬£¬£¬£¬ÈôÊǸýáÂÛ׼ȷ£¬£¬ £¬£¬£¬£¬µÚËÄÐò¶ÈµÄÒªº¦Ö¸±êÔöÌí½«²»»áÄÇô¿É¹Û¡£¡£¡£¡£¡£ÆßÔ·ÝÊDZ¾¼¾¶ÈDDoS»î¶¯µÄá¯ÁëʱÆÚ£¬£¬ £¬£¬£¬£¬×î³£¼ûµÄ¹¥»÷ÀàÐÍÈÔÈ»ÊÇSYN·ººé£¨79.7%£©£¬£¬ £¬£¬£¬£¬Linux½©Ê¬ÍøÂçÈÔȻռ¹¥»÷»î¶¯µÄ¾ø´ó´ó¶¼£¨97.75%£©¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/ddos-report-q3-2019/94958/


3¡¢ÀÕË÷Èí¼þ¼´Ð§ÀÍBuranÆð¾¢ÔÚ°µÍøÂÛ̳Èö²¥


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ƾ֤McAfeeÑо¿Ö°Ô±Alexandre MundoºÍMarc RiveroµÄ·¢Ã÷£¬£¬ £¬£¬£¬£¬ÐµÄÀÕË÷Èí¼þ¼´Ð§ÀÍ£¨RaaS£©BuranÕýÔÚ°µÍøÂÛ̳ÉÏÆð¾¢Èö²¥¡£¡£¡£¡£¡£BuranÔËÓªÕßËÆºõÕýÖÂÁ¦Óë·¸·¨¿Í»§½¨ÉèСÎÒ˽¼Ò¹ØÏµ£¬£¬ £¬£¬£¬£¬ËüÃÇÔÚ´òÕÛ³öÊÛÒÔÎüÒý¸ü¶à·¸·¨·Ö×Ó¡£¡£¡£¡£¡£×ÜÌå¶øÑÔ£¬£¬ £¬£¬£¬£¬Buran×÷ÕßÖ»Õ¼ÓÐѬȾÊÕÈëÖеÄ25£¥£¬£¬ £¬£¬£¬£¬Õâ±ÈRaaSÔËÓªÕßͨ³£ÒªÇóµÄ30%-40%ÒªµÍµÄ¶à¡£¡£¡£¡£¡£¸ÃRaaSÊÔͼͨ¹ýÕâÖÖ·½·¨ÓëÆäËüµÐÊÖ¾ÙÐоºÕù¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/vegalocker-evolves-into-buran-ransomware-as-a-service/


4¡¢´¹Âڻαװ³ÉÓ¢¹ú˾·¨²¿Èö²¥Predator the Thief


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


CofenseÑо¿Ö°Ô±·¢Ã÷Ò»¸öеÄÍøÂç´¹Âڻαװ³ÉÓ¢¹ú˾·¨²¿Èö²¥¶ñÒâÈí¼þPredator the Thief¡£¡£¡£¡£¡£¸Ã´¹ÂÚÓʼþÖаüÀ¨Î±ÔìµÄ·¨Ôº´«Æ±²¢´øÓÐÓ¢¹ú˾·¨²¿»Õ±ê£¬£¬ £¬£¬£¬£¬ÒªÇóÊܺ¦Õßµã»÷Á´½ÓÒÔÏàʶ°¸¼þÐÅÏ¢¡£¡£¡£¡£¡£µ±Êܺ¦Õßµã»÷Á´½Óºó£¬£¬ £¬£¬£¬£¬½«»á´ÓÔÆÐ§ÀÍÉÌ´¦ÏÂÔØ°üÀ¨Predator the ThiefµÄÎĵµ¡£¡£¡£¡£¡£Predator the ThiefÊÇÔÚ°µÍøÂÛ̳ÉϳöÊÛµÄÒ»ÖÖ¶ñÒâÈí¼þ£¬£¬ £¬£¬£¬£¬Ëü¿ÉÒÔÇÔÈ¡Óû§Ãû¡¢ÃÜÂë¡¢ä¯ÀÀÆ÷Êý¾ÝºÍ¼ÓÃÜÇ®±ÒÇ®°üÐÅÏ¢µÈ£¬£¬ £¬£¬£¬£¬»¹¿ÉÒÔʹÓÃÉãÏñÍ·¾ÙÐÐÕÕÏà¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÓÚ2018Äê7ÔÂÊ״ηºÆð¡£¡£¡£¡£¡£¸Ã´¹ÂڻÖ÷ÒªÕë¶Ô°ü¹ÜÒµºÍÁãÊÛÒµµÄÔ±¹¤¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/phishing-campaign-delivers-data-stealing-malware-via-fake-court-summons-emails/


5¡¢AdobeÒÆ¶¯SDKÖеÄĬÈÏÉèÖñ£´æÇ徲Σº¦


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Nightwatch Cybersecurity·¢Ã÷AdobeµÄÒÆ¶¯Èí¼þ¿ª·¢Ì×¼þ£¨SDK£©¸½´øµÄʾÀýÉèÖÃÎļþ±£´æÇ徲Σº¦£¬£¬ £¬£¬£¬£¬Adobe×î½üÐû²¼ÁËSDKµÄ¸üа汾ÐÞ¸´¸ÃÎÊÌâ¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌṩµÄSDK×÷Ϊģ°å£¬£¬ £¬£¬£¬£¬¿É¹©¿ª·¢Ö°Ô±ÔÚÖÖÖÖÆ½Ì¨ÉϽ«ÆäÓ¦ÓóÌÐòÓëAdobeµÄÔÆÐ§Àͼ¯³ÉÔÚÒ»Æð¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷ÆäÖ÷Ó¦ÓóÌÐòÉèÖÃÎļþADBMobileConfig.json°üÀ¨¿ÉÄܵ¼ÖÂÇå¾²ÎÊÌâµÄÉèÖ㬣¬ £¬£¬£¬£¬ÕâЩÎÊÌâÖ÷ÒªÓëSSL/HTTPSÉèÖÃÓйأ¬£¬ £¬£¬£¬£¬°üÀ¨Ä¬ÈÏ¹Ø±ÕÆÊÎöÉèÖá¢ÅþÁ¬µ½mediaHeartbeat¹¤¾ßµÄÊý¾Ý´«Êä´¦ÓÚÏàͬµÄ²»Ç徲״̬¡¢Ä¬Èϲ»Ê¹ÓÃSSLÅþÁ¬µÈ¡£¡£¡£¡£¡£Ñо¿Ö°Ô±×ܹ²ÔÚ²î±ðµÄƽ̨ÉÏ·¢Ã÷ÁË28¸öÄ£°å£¬£¬ £¬£¬£¬£¬Ò»Ð©¿ª·¢Ö°Ô±Ò»Ö±ÔÚ×Ô¼ºµÄÓ¦ÓóÌÐòÖÐʹÓÃÕâЩÉèÖÃÎļþ£¬£¬ £¬£¬£¬£¬µ¼Ö¹¥»÷Õß¿ÉÒÔÉó²é»òÐÞ¸ÄÓÉÓ¦ÓóÌÐò´«Ê仨AdobeÔÆÐ§À͵ÄÐÅÏ¢¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://nakedsecurity.sophos.com/2019/11/11/adobe-fixes-sdk-weakness-affecting-mobile-apps/


6¡¢Check Point ZoneAlarm²úÆ·ÂÛ̳Óû§Êý¾Ýй¶


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ÒÔÉ«ÁÐÇå¾²³§ÉÌCheck PointÆìϵÄZoneAlarmÂÛ̳Óû§Êý¾Ýй¶¡£¡£¡£¡£¡£Ö»¹ÜZoneAlarm¼°Check PointÉÐδ¹ûÕæÅû¶´ËÊÂÎñ£¬£¬ £¬£¬£¬£¬µ«¸Ã¹«Ë¾ÒѾ­Í¨¹ýµç×ÓÓʼþÏòÓû§·¢ËÍÁ˾¯±¨¡£¡£¡£¡£¡£Óʼþ֪ͨÖÐÌåÏÖºÚ¿Íδ¾­ÊÚȨ»ñÈ¡ÁËÂÛ̳Óû§µÄÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢¹þÏ£ÃÜÂëºÍÉúÈյĻá¼ûȨÏÞ£¬£¬ £¬£¬£¬£¬½¨ÒéÓû§Á¬Ã¦¸ü¸ÄÆäÃÜÂë¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹³ÎÇå˵ֻÓÐÔÚ¡°forums.zonealarm.com¡±ÓòÖÐ×¢²áµÄÓû§£¨Ô¼Îª4500ÈË£©Êܵ½Ó°Ï죬£¬ £¬£¬£¬£¬¸ÃÂÛ̳ÊÇÒ»¸öµ¥¶ÀµÄÍøÕ¾£¬£¬ £¬£¬£¬£¬²»»áÓ°ÏìCheck PointµÄÈÎºÎÆäËüÍøÕ¾¡£¡£¡£¡£¡£¸ÃÊÂÎñµÄÔµ¹ÊÔ­ÓÉÓëvBulletin֮ǰÐÞ¸´µÄRCE 0day£¨CVE-2019-16759£©ÓйØ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/11/zonealarm-forum-data-breach.html