NEW CooperativeÔâBlack Matter¹¥»÷±»ÀÕË÷590ÍòÃÀÔª
Ðû²¼Ê±¼ä 2021-09-23NEW CooperativeÔâBlack Matter¹¥»÷±»ÀÕË÷590ÍòÃÀÔª
ÃÀ¹úÅ©ÃñºÏ×÷ÉçNEW CooperativeÔÚÉÏÖÜÄ©Ôâµ½Black MatterµÄÀÕË÷¹¥»÷¡£ÕâÊÇÒ»¼ÒËÇÁϺ͹ÈÎïºÏ×÷É磬´Ë´Î¹¥»÷»î¶¯½«µ¼ÖÂÁ¸Ê³¡¢ÖíÈâºÍ¼¦ÈâµÈʳƷ¹©Ó¦Öжϡ£¹¥»÷ÕßÒªÇó¸Ã¹«Ë¾Ö§¸¶590ÍòÃÀÔªÊê½ð£¬²¢ÌåÏÖ5ÈÕºóÊê½ð½ð¶î½«Ôö¼Óµ½1180ÍòÃÀÔª¡£BlackMatterÉù³ÆÇÔÈ¡ÁË1000 GBµÄÊý¾Ý£¬°üÂÞsoilmap.comÏîÄ¿µÄÔ´´úÂë¡¢Ñз¢½á¹û¡¢Ô±¹¤ÐÅÏ¢¡¢²ÆÕþÎļþÒÔ¼°KeePassÃÜÂë¹ÜÀíÆ÷µÄµ¼³öÊý¾Ý¿âµÈ¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/122410/cyber-crime/black-matter-new-cooperative.html
Ñо¿ÈËÔ±·¢ÏÖÁè¼Ý1.06ÒÚÌ©¹úÓο͵ĸöÈËÐÅϢй¶
ComparitechÑо¿ÈËÔ±Bob DiachenkoÓÚ2021Äê8ÔÂ22ÈÕ·¢ÏÖÁËδÊܱ£»¤µÄElasticsearchÊý¾Ý¿â¡£¸ÃÊý¾Ý¿â×ܹ²ÓÐ200GBÊý¾Ý£¬°üÂÞÁËÁè¼Ý1.06ÒÚÌ©¹úÓο͵ĸöÈËÐÅÏ¢¡£DiachenkoÍÆ²â£¬¸ÃʼþÉæ¼°µ½¹ýȥʮÄêÖÐǰÍùÌ©¹úÂÃÓεĵÄËùÓÐÍâ¹úÈË¡£Ñо¿ÈËԱĿǰÎÞ·¨È·¶¨ÕâЩÊý¾Ýй¶µÄʱ¼ä£¬µ«ÊÇÔÚ֪̩ͨ¹úÕþ¸®ºóµÄ24СʱÄھͱ»±£»¤ÁËÆðÀ´¡£
ÔÎÄÁ´½Ó£º
»¥ÁªÍøÓïÒô¹«Ë¾VoIP.msÔâµ½REvilÍÅ»ïµÄDDoS¹¥»÷
»¥ÁªÍøÓïÒô¹«Ë¾VoIP.msÓÚ9ÔÂ16ÈÕÔâµ½REvilÍÅ»ïµÄDDoS¹¥»÷¡£¸Ã¹«Ë¾Óû§·´Ó³DDoS¹¥»÷ÖжÏÁ˵绰·þÎñ£¬Ê¹ËûÃÇÎÞ·¨½ÓÌý»ò²¦´òµç»°¡£¸Ã¹«Ë¾½¨Òé¿Í»§ÐÞ¸ÄÆäHOSTSÎļþ£¬½«ÓòÃûÖ¸ÏòËûÃǵÄIPµØÖ·£¬ÒÔÈÆ¹ýDNS½âÎö£¬µ«Õâµ¼ÖÂÁ˹¥»÷ÕßÖ±½Ó¶Ô¸ÃIPµØÖ·ÌᳫDDoS¹¥»÷¡£Ö®ºó£¬VoIP.ms½«×Ô¼ºµÄÍøÕ¾ºÍDNS·þÎñÆ÷×ªÒÆµ½ÁËCloudflareʹµÃÎÊÌâµÃµ½ÁË»º½â £¬µ«µç»°·þÎñÈÔ´æÔÚÖжϡ¢µôÏߺÍÐÔÄܲ»¼ÑµÈÎÊÌ⡣Ŀǰ£¬VoIP.msÉÐδ¶Ô´ËÊÂ×÷³ö»ØÓ¦¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/voipms-phone-services-disrupted-by-ddos-extortion-attack/
ÃÀ¹ú¹²ºÍµ³Öݳ¤Ð»á(RGA)³ÆÆäµç×ÓÓʼþϵͳÔâµ½ÈëÇÖ
ÃÀ¹ú¹²ºÍµ³Öݳ¤Ð»á(RGA)ÔÚÉÏÖÜ·¢ËÍ֪ͨ£¬³ÆÆäµç×ÓÓʼþϵͳÔÚ2ÔÂÖÁ3ÔÂÔâµ½ÈëÇÖ¡£RGAÊÇÃÀ¹úµÄÒ»¸öÃâ˰×éÖ¯£¬ËüΪ¹²ºÍµ³ºòÑ¡ÈËÌṩ¾ºÑ¡ËùÐèµÄ×ÊÔ´£¬ÒÔÖ§³ÖËûÃǵ±Ñ¡Öݳ¤¡£RGAÔÚ6ÔÂ24ÈÕ·¢ÏÖÐÅϢй¶Ê¼þ£¬9ÔÂ1ÈÕÍê³Éµç×Óȡ֤£¬²¢ÓÚ9ÔÂ15ÈÕ·¢ËÍÓʼþ֪ͨÁËÊÜÓ°ÏìµÄ¸öÈË¡£RGA³ÆÕâÊǽñÄê3Ô·ÝÕë¶ÔÈ«Çò×éÖ¯Microsoft ExchangeµÄ´ó¹æÄ£¹¥»÷»î¶¯µÄÒ»²¿ÃÅ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/republican-governors-association-email-server-breached-by-state-hackers/
Apache OpenOfficeÖдæÔÚRCE©¶´CVE-2021-33035
Ñо¿ÈËÔ±ÔÚ9ÔÂ19ÈÕÅû¶ÁËApache OpenOffice(AOO)ÖеÄRCE©¶´CVE-2021-33035µÄϸ½Ú¡£ÕâÊÇÒ»¸öÎļþÁýÕֵĻº³åÇøÒç³ö©¶´£¬Ëüͨ¹ýDEP£¨µØÖ·¿Õ¼ä½á¹¹Ëæ»ú»¯£©ºÍASLR£¨µØÖ·¿Õ¼ä½á¹¹Ëæ»ú»¯£©Èƹý·µ»ØÖ¸Õ룬×îÖÕÖ´ÐÐÈÎÒâÃüÁ¹¥»÷Õß¿ÉÒÔͨ¹ýÓÕÆÄ¿±ê´ò¿ªÌØÖƵÄ.dbfÎļþÀ´´¥·¢¸Ã©¶´¡£Ä¿Ç°£¬ÐÞ¸´¸Ã©¶´µÄ²âÊ԰淨ʽÒѾÐû²¼¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/122426/security/apache-openoffice-rce-cve-2021-33035.html
NetgearÐû²¼¸üУ¬ÐÞ¸´¶à¿î·ÓÉÆ÷ÖеĴúÂëÖ´ÐЩ¶´
NetgearÓÚ9ÔÂ21ÈÕÐû²¼Äþ¾²¸üУ¬ÐÞ¸´ÁËCircle¼Ò³¤¿ØÖÆ·þÎñÖеĴúÂëÖ´ÐЩ¶´CVE-2021-40847£¬¸Ã·þÎñÔÚÊ®¼¸¿îSOHO Netgear·ÓÉÆ÷ÉÏÒÔrootȨÏÞÔËÐС£¸Ã©¶´´æÔÚÓÚcircled¸üÐÂÊØ»¤½ø³ÌÖУ¬¿ÉÒÔ±»Ô¶³ÌÀûÓÃÀ´Ðá̽·ÓÉÆ÷²¢Ö´ÐÐÖмäÈ˹¥»÷(MitM)¡£´ËÍ⣬Nichols»¹Ðû²¼ÁËÒ»¸öDZÔڵĹ¥»÷Á´£¬ÑÝʾÁ˹¥»÷ÕßÈçºÎÔÚÆÆ»µÔ±¹¤µÄNetgear·ÓÉÆ÷ºóÓÃÀ´ÈëÇÖÆóÒµµÄÍøÂç¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/netgear-fixes-dangerous-code-execution-bug-in-multiple-routers/