2020-08-25

Ðû²¼Ê±¼ä 2020-08-26

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_CobaltStrike_WebDelivery.py_ÅþÁ¬C2ЧÀÍÆ÷

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Óɺڿ͹¤¾ß CobaltStrike ÌìÉúµÄ ºóÃÅpython¾ç±¾ ÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷ÏÂÔØÄ¾Âí CobaltStrike.Beacon, Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄÜÖ´ÐÐÁËCobaltStrikeµÄpythonºóÃÅ¡£¡£¡£¡£¡£¡£¡£¡£CobaltStrike.BeaconÖ´Ðк󹥻÷Õß¿ÉʹÓÃCobaltStrikeÍêÈ«¿ØÖÆÊܺ¦»úе£¬£¬£¬£¬£¬²¢¾ÙÐкáÏòÒÆ¶¯¡£¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200825



ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_CobaltStrike.StagerX64_ÅþÁ¬C2ЧÀÍÆ÷

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½Óɺڿ͹¤¾ß CobaltStrike ÌìÉúµÄºóÃÅ StagerX64 ÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷ÏÂÔØÄ¾Âí CobaltStrike.Beacon, Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCobaltStrike.StagerX64¡£¡£¡£¡£¡£¡£¡£¡£CobaltStrike.BeaconÖ´Ðк󹥻÷Õß¿ÉʹÓÃCobaltStrikeÍêÈ«¿ØÖÆÊܺ¦»úе£¬£¬£¬£¬£¬²¢¾ÙÐкáÏòÒÆ¶¯¡£¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200825


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_Samba_Ô¶³Ì´úÂëÖ´ÐÐÎó²î_ʹÓÃʧ°Ü[CVE-2017-7494][CNNVD-201705-1209]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»ú¶ÔÄ¿µÄIPʹÓÃsambaÎó²î¹¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200825


ÊÂÎñÃû³Æ£º

TCP_Çå¾²Îó²î_Samba_Ô¶³Ì´úÂëÖ´ÐÐÎó²î_ʹÓÃÀÖ³É[CVE-2017-7494][CNNVD-201705-1209]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»ú¶ÔÄ¿µÄIPʹÓÃsambaÎó²î¹¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200825


ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_Win32.Zebrocy.Downloader(APT28)_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½ZebrocyÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËZebrocy¡£¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200825


ÊÂÎñÃû³Æ£º

HTTP_Apache_httpOnly_CookieÐÅϢй¶Îó²î

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âÔ´IPÖ÷»úÕýÊÔͼͨ¹ýApache HTTP Server "httpOnly" CookieÐÅϢй¶Îó²î¹¥»÷Ä¿µÄIPµØµãÖ÷»ú¡£¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200825


ÊÂÎñÃû³Æ£º

HTTP_SQL¹ýʧÐÅϢй¶_2

Çå¾²ÀàÐÍ£º

CGI¹¥»÷

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼʹÓÃÄ¿µÄIPÖ÷»úµÄSQL¹ýʧÐÅÏ¢£¬£¬£¬£¬£¬¿ÉÄÜÔì³ÉÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200825