CyberX9³ÆÓ¡¶È֤ȯ»ú¹¹CDSL 4390ÍòÓû§ÐÅϢй¶

Ðû²¼Ê±¼ä 2021-11-11

MediaMarktÔâµ½Hive¹¥»÷²¢±»ÀÕË÷2.4ÒÚÃÀÔª


MediaMarktÔâµ½Hive¹¥»÷²¢±»ÀÕË÷2.4ÒÚÃÀÔª.png


MediaMarktÔÚÖÜÈÕÍíÉÏÖÁÖÜÒ»ÔçÉÏÔâµ½À´×ÔHiveµÄÀÕË÷¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬²¢±»ÒªÇóÖ§¸¶2.4ÒÚÃÀÔª¡£¡£¡£¡£MediaMarktÊÇÅ·ÖÞ×î´óµÄµç×Ó²úÆ·ÁãÊÛÉÌ£¬£¬£¬£¬£¬£¬£¬£¬ÔÚ13¸ö¹ú¼ÒÓµÓÐ1000¶à¼ÒÊÐËÁ£¬£¬£¬£¬£¬£¬£¬£¬×ÜÏúÊÛ¶îΪ208ÒÚÅ·Ôª¡£¡£¡£¡£´Ë´Î¹¥»÷Ö÷ÒªÓ°ÏìÁËλÓڵ¹úºÍºÉÀ¼µÄÊÐËÁ£¬£¬£¬£¬£¬£¬£¬£¬ÊÂÇéÖ°Ô±ÎÞ·¨½ÓÊÜÐÅÓÿ¨¸¶¿î»ò´òÓ¡ÊÕÌõ£¬£¬£¬£¬£¬£¬£¬£¬µ«ÍøÉÏÊÐËÁûÓÐÊÕµ½Ó°Ïì¡£¡£¡£¡£¾ÝÄÚ²¿Ö°Ô±³ÆÓÐ3100̨ЧÀÍÆ÷Òѱ»¼ÓÃÜ£¬£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚÉÐÎÞ·¨È·¶¨ÕâÖÖ˵·¨µÄ׼ȷÐÔ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/mediamarkt-hit-by-hive-ransomware-initial-240-million-ransom/



΢ÈíÐû²¼11Ô¸üУ¬£¬£¬£¬£¬£¬£¬£¬ÐÞ¸´6¸ö0dayÔÚÄÚµÄ55¸öÎó²î


΢ÈíÐû²¼11Ô¸üУ¬£¬£¬£¬£¬£¬£¬£¬ÐÞ¸´6¸ö0dayÔÚÄÚµÄ55¸öÎó²î.png


΢ÈíÔÚ11ÔÂ9ÈÕÐû²¼Á˱¾ÔµÄÖܶþ²¹¶¡£¡£¡£¡£¬£¬£¬£¬£¬£¬£¬£¬×ܼÆÐÞ¸´ÁË55¸öÎó²î¡£¡£¡£¡£´Ë´ÎÐÞ¸´ÁË6¸ö0 day£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨ExcelÖÐÇå¾²¹¦Ð§ÈƹýÎó²î£¨CVE-2021-42292£©¡¢Exchange ServerÖÐRCE£¨CVE-2021-42321£©£¬£¬£¬£¬£¬£¬£¬£¬RDPÖÐÐÅϢй¶Îó²î£¨CVE-2021-38631ºÍCVE-2021-41371£©£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°3DÖÐÉó²éÆ÷RCE£¨CVE-2021-43208ºÍCVE-2021-43209£©¡£¡£¡£¡£ÆäÖУ¬£¬£¬£¬£¬£¬£¬£¬CVE-2021-42292ºÍCVE-2021-42321Òѱ»ÓÃÓÚ¶ñÒâ¹¥»÷»î¶¯¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-november-2021-patch-tuesday-fixes-6-zero-days-55-flaws/



CyberX9³ÆÓ¡¶È֤ȯ»ú¹¹CDSL 4390ÍòÓû§ÐÅϢй¶


CyberX9³ÆÓ¡¶È֤ȯ»ú¹¹CDSL 4390ÍòÓû§ÐÅϢй¶.png


Çå¾²ÍŶÓCyberX9ÔÚ11ÔÂ7ÈÕÅû¶ӡ¶È֤ȯÍйܻú¹¹CDSLµÄ4390ÍòÓû§ÐÅϢй¶¡£¡£¡£¡£ÔçÔÚʮԳõ£¬£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷CDSL±£´æÑÏÖØµÄÎó²î£¬£¬£¬£¬£¬£¬£¬£¬¿Éй¶4390ÍòͶ×ÊÕßµÄСÎÒ˽¼ÒÐÅÏ¢ºÍ²ÆÎñÊý¾Ý¡£¡£¡£¡£10ÔÂ26ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Îó²îÒѱ»ÐÞ¸´¡£¡£¡£¡£¿ÉÊÇ£¬£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±ÓÚ10ÔÂ29ÈÕ·¢Ã÷еIJ¹¶¡¿ÉÒÔÈÝÒ׵ر»Èƹý£¬£¬£¬£¬£¬£¬£¬£¬ÒÀÈ»¿ÉÒÔй¶4390ÍòÈ˵ÄÊý¾Ý¡£¡£¡£¡£´Ë´Îй¶µÄÐÅÏ¢¿ÉÒÔ×·Ëݵ½2005Äê×óÓÒ×¢²áµÄÓû§£¬£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚ´ËÀàÊý¾ÝµÄÃô¸Ð¶È½Ï¸ß£¬£¬£¬£¬£¬£¬£¬£¬ÈôÊÇÂäÈë¹¥»÷ÕßÊÖÖжÔÓû§À´Ëµ¿ÉÄÜÊÇÖÂÃüµÄ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.cyberx9.com/cdsl-data-exposed-again-blog



ÂÞÂíÄáÑÇÕþ¸®¾Ð²¶REvilÍÅ»ïÔø¹¥»÷KaseyaµÄ³ÉÔ±


ÂÞÂíÄáÑÇÕþ¸®¾Ð²¶REvilÍÅ»ïÔø¹¥»÷KaseyaµÄ³ÉÔ±.png


ÂÞÂíÄáÑÇÖ´·¨²¿·ÖÔÚ11ÔÂ8ÈÕÐû²¼ÐÂΟ壬£¬£¬£¬£¬£¬£¬£¬³ÆËûÃÇÔÚ11ÔÂ4Èվв¶ÁËÁ½ÃûÀÕË÷ÍÅ»ïREvilÁ¥Êô×éÖ¯µÄ³ÉÔ±¡£¡£¡£¡£´Ë´ÎÐж¯ÃûΪGoldDust£¬£¬£¬£¬£¬£¬£¬£¬ÔøÓÚ2ÔÂÔÚ¿ÆÍþÌØºÍº«¹ú¾Ð²¶ÁËÈý¸öREvilÍÅ»ïµÄ³ÉÔ±ºÍÁ½¸öÓëGandCrabÓйØÁªµÄÏÓÒÉÈË¡£¡£¡£¡£´Ë´ÎÐж¯¾Ð²¶ÁËÒ»¸ö22ËêµÄÎÚ¿ËÀ¼ÄêÇáÈËYaroslav Vasinskyi£¬£¬£¬£¬£¬£¬£¬£¬ËûÔÚ½ñÄê7Ô¹¥»÷ÁË·ðÂÞÀï´ïÖݵÄÈí¼þ¹«Ë¾Kaseya£¬£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÁ˶à´ï1500¸öÏÂÓι«Ë¾¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/11/suspected-revil-ransomware-affiliates.html



F5Ðû²¼¹ØÓÚÊý×Ö»¯×ªÐÍËùÃæÁÙΣÏյįÊÎö±¨¸æ


F5Ðû²¼¹ØÓÚÊý×Ö»¯×ªÐÍËùÃæÁÙΣÏյįÊÎö±¨¸æ.png


11ÔÂ5ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬F5Ðû²¼Á˹ØÓÚÊý×Ö»¯×ªÐÍËùÃæÁÙΣÏյįÊÎö±¨¸æ¡£¡£¡£¡£×¨×¢ÓÚÊý×ÖתÐ͵Ä×éÖ¯ÐèÒª½«²î±ðµÄÓ¦ÓóÌÐò¡¢ÏµÍ³ºÍЧÀÍÆ´½Ó³ÉÎÞ·ìµÄÊý×ÖÌåÑ飬£¬£¬£¬£¬£¬£¬£¬Ò²¾ÍÊÇ˵×éÖ¯ÒѾ­½ÓÊÜÁËAPI¡£¡£¡£¡£Ñо¿Ö°Ô±Ô¤¼Æ£¬£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚ¹«¹²ºÍ˽ÓÐAPIµÄ×ÜÁ¿¿¿½ü2ÒÚ£¬£¬£¬£¬£¬£¬£¬£¬µ½2031ÄêÕâÒ»Êý×Ö¿ÉÄÜ»áµÖ´ïÊýÊ®ÒÚ¡£¡£¡£¡£¶øAPIµÄÀ©ÕŸøÔËÓªºÍÇå¾²·½Ãæ´øÀ´ÁËÌôÕ½£¬£¬£¬£¬£¬£¬£¬£¬ÀýÈçËæ×ÅAPIÊýÄ¿ºÍÓ¦ÓÃÖØ´óÐÔµÄÔöÌí£¬£¬£¬£¬£¬£¬£¬£¬×·×ÙAPIµÄλÖñäµÃÄÑÌ⣻£»£»£»£»£»£»ÒÔ¼°APIµÄƵÈÔ¸üлᵼÖ°汾ºÍÎĵµ·ºÆðÎÊÌâµÈ¡£¡£¡£¡£ 


Ô­ÎÄÁ´½Ó£º

https://www.f5.com/company/blog/digital-transformation-danger-ahead-api-sprawl



KasperskyÐû²¼2021ÄêQ3 DDoS¹¥»÷µÄÆÊÎö±¨¸æ


KasperskyÐû²¼2021ÄêQ3 DDoS¹¥»÷µÄÆÊÎö±¨¸æ.png


KasperskyÔÚ11ÔÂ8ÈÕÐû²¼ÁË2021ÄêQ3 DDoS¹¥»÷µÄÆÊÎö±¨¸æ¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬£¬£¬ÓëÉÏÒ»¼¾¶ÈºÍÈ¥ÄêÏà±È£¬£¬£¬£¬£¬£¬£¬£¬µÚÈý¼¾¶ÈµÄ¹¥»÷ÊýÄ¿ÏÔÖøÔöÌí¡£¡£¡£¡£ÆäÖÐÃÀ¹úÔâµ½µÄDDoS¹¥»÷×î¶à£¨40.80%£©£¬£¬£¬£¬£¬£¬£¬£¬Æä´ÎÊÇÖйúÏã¸Û£¨15.07%£©ºÍÖйú(7.74%)¡£¡£¡£¡£µÚÈý¼¾¶Èµ¥ÈÕµÄDDoS¹¥»÷´ÎÊýÍ»ÆÆÁË֮ǰµÄËùÓмͼ£º8ÔÂ18ÈÕÓÐ8825´Î¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬8ÔÂ21ÈÕºÍ22Ò²ÓÐÁè¼Ý5000´Î¡£¡£¡£¡£´ó´ó¶¼DDoS¹¥»÷½ÓÄÉÁËSYN·ººéµÄÐÎʽ£¬£¬£¬£¬£¬£¬£¬£¬¶ø´ó´ó¶¼½©Ê¬ÍøÂçC&CЧÀÍÆ÷λÓÚÃÀ¹ú£¨43.44%£©¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/ddos-attacks-in-q3-2021/104796/