ÑÇÂíÑ·AWSÔøÒ»Á¬3ÌìÔâµ½2.3 Tbps DDoS¹¥»÷£»£»£»£»£»Î÷ÃÅ×ÓµÄPLC±£´æÑÏÖØÎó²î£¬£¬£¬£¬£¬ £¬£¬£¬¿Éµ¼ÖÂDoS¹¥»÷

Ðû²¼Ê±¼ä 2020-06-16

1.ÑÇÂíÑ·AWSÔøÒ»Á¬3ÌìÔâµ½2.3 Tbps DDoS¹¥»÷


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


2020Äê2Ô£¬£¬£¬£¬£¬ £¬£¬£¬ÑÇÂíÑ·µÄÔÆÐ§ÀÍAWSÒ»Á¬3ÌìÔâµ½Á˸ߴï2.3 TbpsµÄDDoS¹¥»÷¡£¡£¡£¡£Ôڴ˴ι¥»÷ÖУ¬£¬£¬£¬£¬ £¬£¬£¬ºÚ¿ÍʹÓÃÁË»ùÓÚCLDAP·´ÉäµÄ¹¥»÷£¬£¬£¬£¬£¬ £¬£¬£¬Æ¾Ö¤µÚÒ»¼¾¶ÈAWS ShieldÍþÐ²Ì¬ÊÆ±¨¸æ £¬£¬£¬£¬£¬ £¬£¬£¬´Ë´Î¹¥»÷µÄ¹æÄ£±ÈAWSÂÄÀú¹ýµÄ×î´ó¹æÄ£¹¥»÷»¹Òª´ó44£¥¡£¡£¡£¡£AWS±¨¸æÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬£¬´Ë´Î¹¥»÷Öкڿ͵ÄÄîÍ·Éв»ÇåÎú£¬£¬£¬£¬£¬ £¬£¬£¬»¹Ö¸³öÿ´ÎÔÚºÚ¿Í·¢Ã÷ÐµĹ¥»÷ǰÑԺ󣬣¬£¬£¬£¬ £¬£¬£¬¹¥»÷ÊýÄ¿±ã»á¼¤Ôö£¬£¬£¬£¬£¬ £¬£¬£¬ÀýÈôÓÐÔ½À´Ô½¶àµÄDocker¡¢Hadoop¡¢RedisºÍSSH¹¥»÷¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://androidrookies.com/amazons-aws-hit-with-a-record-breaking-2-3-tbps-ddos-attack/


2.Î÷ÃÅ×ÓµÄPLC±£´æÑÏÖØÎó²î£¬£¬£¬£¬£¬ £¬£¬£¬¿Éµ¼ÖÂDoS¹¥»÷


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Î÷ÃÅ×ÓµÄLOGO!¿É±à³ÌÂß¼­¿ØÖÆÆ÷(PLCs)±£´æÑÏÖØÎó²î£¬£¬£¬£¬£¬ £¬£¬£¬¿É±»Ê¹ÓÃÐÞ¸Ä×°±¸ÉèÖûòÌᳫDoS¹¥»÷¡£¡£¡£¡£Î÷ÃÅ×ÓÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬£¬¸ÃÎó²îÓ°ÏìÁËÆäËùÓа汾µÄLOGO£¡8 BM×°±¸£¬£¬£¬£¬£¬ £¬£¬£¬ÒÔ¼°ÓÃÓÚ¼«¶ËÌõ¼þµÄSIPLUS°æ±¾¡£¡£¡£¡£¸ÃÎó²îÊÇÓÉÓÚȱÉÙÑéÖ¤¶ø±£´æµÄ£¬£¬£¬£¬£¬ £¬£¬£¬Î´¾­Éí·ÝÑéÖ¤µÄºÚ¿Í¿ÉÒÔ»á¼ûTCPµÄ135¶Ë¿Ú£¬£¬£¬£¬£¬ £¬£¬£¬²¢¶ÁÈ¡ºÍÐÞ¸Ä×°±¸µÄÉèÖᣡ£¡£¡£ÏÖÔÚÉÐδÐû²¼²¹¶¡³ÌÐò£¬£¬£¬£¬£¬ £¬£¬£¬¿ÉÊÇÎ÷ÃÅ×Ó¹«Ë¾ÌåÏÖ¿ÉÒÔͨ¹ý×ÝÉî·ÀÓùÀ´½µµÍ¸ÃÎó²î±»Ê¹ÓõÄΣº¦¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/critical-vulnerabilities-expose-siemens-logo-controllers-attacks


3.Claire'sÔâµ½MageCart¹¥»÷£¬£¬£¬£¬£¬ £¬£¬£¬Óû§Ö§¸¶ÐÅÏ¢±»µÁ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ÃÀ¹úÖ鱦ºÍÅäÊι«Ë¾Claire's¼°Æä×Ó¹«Ë¾IcingµÄÍøÕ¾ÔÚ4ÔÂÔâµ½¹¥»÷£¬£¬£¬£¬£¬ £¬£¬£¬Æä¿Í»§µÄÐÅÓÿ¨ÐÅÏ¢±»µÁ¡£¡£¡£¡£ÔÚ¹¥»÷Öкڿͽ«¶ñÒâJavaScript¾ç±¾×¢Èë¸Ã¹«Ë¾µÄÍøÕ¾£¬£¬£¬£¬£¬ £¬£¬£¬È»ºóʹÓÃÕâЩ¾ç±¾ÇÔÈ¡¿Í»§Ìá½»µÄ¸¶¿îÐÅÏ¢¡£¡£¡£¡£ÔÚClaireÓÉÓÚÒßÇ鹨±Õ×ÅʵÌåµêµÄµÚ¶þÌ죬£¬£¬£¬£¬ £¬£¬£¬ºÚ¿Í±ã×¢²áÁËclaires-assets.comÓòÃû£¬£¬£¬£¬£¬ £¬£¬£¬Ö®ºó¸ÃÓòÒ»Ö±´¦ÓÚÐÝÃß״̬£¬£¬£¬£¬£¬ £¬£¬£¬Ö±µ½4ÔÂ25Èպڿͽ«¶ñÒâ¾ç±¾×¢Èë¸Ã¹«Ë¾ÍøÕ¾ºó£¬£¬£¬£¬£¬ £¬£¬£¬¸ÃÓò×îÏÈÓÃÀ´ÎüÊÕÇÔÈ¡µ½µÄÐÅÏ¢¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/accessories-giant-claires-hacked-to-steal-credit-card-info/


4.¶íÂÞ˹ºÚ¿Ím1xй¶1.4ÍòÄ«Î÷¸ç¹«ÃñµÄIDÐÅÏ¢


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Lucy SecurityÑо¿Ö°Ô±×î½ü·¢Ã÷£¬£¬£¬£¬£¬ £¬£¬£¬ÃûΪm1xµÄ¶íÂÞ˹ºÚ¿ÍÈëÇÖÁËÄ«Î÷¸çÕþ¸®µÄÒ»¸öÃÅ»§ÍøÕ¾£¬£¬£¬£¬£¬ £¬£¬£¬²¢ÇÒÓÉÓÚ¸ÃÕþ¸®¾Ü¸¶Êê½ð£¬£¬£¬£¬£¬ £¬£¬£¬ºÚ¿ÍÓÚÈýÌìºóй¶ÁËÔ¼1.4ÍòÃûÄ«Î÷¸ç¹«ÃñµÄÉí·ÝÖ¤ºÅÂë¡£¡£¡£¡£´Ë´Îй¶ÐÅÏ¢°üÀ¨¹«ÃñµÄµÄÉí·ÝÖ¤ºÅÂë¡¢¼ÒͥסַºÍµç»°ºÅÂ룬£¬£¬£¬£¬ £¬£¬£¬ÉÐÓÐһЩ¾¯·½¼Í¼¡£¡£¡£¡£ÏÖÔÚ¿ÉÒÔÈ·¶¨ºÚ¿Ím1xÊÇÀ´×Ô¶íÂÞ˹µÄ£¬£¬£¬£¬£¬ £¬£¬£¬µ«Éв»ÖªµÀ´Ë´Î¹¥»÷ÊÇ·ñºÍ¸Ã¹úÕþ¸®ÓйØ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.scmagazine.com/home/security-news/apts-cyberespionage/russian-hacker-releases-at-least-14000-mexican-taxpayer-ids/?web_view=true


5.¶ñÒâÈí¼þTroyStealerÕë¶ÔÆÏÌÑÑÀÓû§²¢ÇÔÊØÐÅÏ¢


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Abuse.ch·¢Ã÷еÄÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þTroyStealer£¬£¬£¬£¬£¬ £¬£¬£¬Ö÷ÒªÕë¶ÔÆÏÌÑÑÀÓû§¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÓÃÓÚÍøÂçµÇ¼ƾ֤£¬£¬£¬£¬£¬ £¬£¬£¬ÀýÈç´æ´¢ÔÚÍøÂçä¯ÀÀÆ÷ÖеÄÓû§ÃûºÍÃÜÂ룬£¬£¬£¬£¬ £¬£¬£¬È»ºóͨ¹ýµç×ÓÓʼþ½«Æä·¢ËͻغڿÍ¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ»á¼ì²âËüµÄÔËÐÐÇéÐΣ¬£¬£¬£¬£¬ £¬£¬£¬ÈôÊÇÊÇÔÚVMÖÐÔËÐÐÔò»áÁ¬Ã¦×èÖ¹ÔËÐС£¡£¡£¡£²¢ÇÒTroyStealer»áͨ¹ýÍøËÙ²âÊÔÍøÕ¾Ñé֤Ŀ½ñÊÇ·ñ±£´æÓÐÓõÄInternetÅþÁ¬£¬£¬£¬£¬£¬ £¬£¬£¬ÈôÊÇÓУ¬£¬£¬£¬£¬ £¬£¬£¬Ëü½«Óë¾­ÓÉÉí·ÝÑéÖ¤µÄµç×ÓÓʼþЧÀÍÆ÷½¨ÉèSMTPͨѶ£¬£¬£¬£¬£¬ £¬£¬£¬²¢Í¨¹ýµç×ÓÓʼþ·¢ËÍÊܺ¦ÕßµÄÏêϸÐÅÏ¢¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://seguranca-informatica.pt/troystealer-a-new-info-stealer-targeting-portuguese-internet-users/#.Xucw2KgzZPY


6.NBWNaWas·¢Ã÷DDoS¹¥»÷ÖØ´óÐԺ͹æÄ£¾ù´ó·ùÔöÌí


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


NBWNaWasÐû²¼±¨¸æ£¬£¬£¬£¬£¬ £¬£¬£¬Ïà±È2018Ä꣬£¬£¬£¬£¬ £¬£¬£¬2019ÄêDDoS¹¥»÷µÄÊýÄ¿ÓÐËùϽµ£¬£¬£¬£¬£¬ £¬£¬£¬¿ÉÊÇÆä¹¥»÷µÄÖØ´óÐԺ͹æÄ£¾ù´ó·ùÔöÌí¡£¡£¡£¡£NBIP¶­ÊÂ×Ü˾ÀíOctavia de WeerdtÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬£¬2019ÄêDDoS¹¥»÷ÂÔÉÙ£¨2019Äê919´ÎºÍ2018Äê938´Î£©£¬£¬£¬£¬£¬ £¬£¬£¬µ«¼ÓÈëÕßÈËÊýÈ´ÔöÌíÁË10£¥¡£¡£¡£¡£ÔÚ2018Ä꣬£¬£¬£¬£¬ £¬£¬£¬×î´ó¹¥»÷ÊÇ68 Gbps£¬£¬£¬£¬£¬ £¬£¬£¬×îÖØ´óµÄ¹¥»÷ʹÓÃÁË12ÖÖǰÑÔ£¬£¬£¬£¬£¬ £¬£¬£¬¶øÔÚ2019ÄêÊӲ쵽µÄ×î´ó¹¥»÷ÊÇ124 Gbps£¬£¬£¬£¬£¬ £¬£¬£¬×îÖØ´óµÄÒ»´Î¹¥»÷ÖкڿÍ×ܹ²Ê¹ÓÃÁË30ÖÖǰÑÔ¡£¡£¡£¡£NBWNaWasÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬£¬DDoS¹¥»÷µÄÖØ´óÐԺ͹æÄ£ÓëÈÕ¾ãÔö³ÉΪһ¸öÇ÷ÊÆ£¬£¬£¬£¬£¬ £¬£¬£¬ÀýÈ磬£¬£¬£¬£¬ £¬£¬£¬ÔÚ2020ÄêµÚÒ»¼¾¶È¾ÍÓÐ140 GbpsµÄDDoS¹¥»÷¡£¡£¡£¡£      


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/06/15/2019-ddos-attacks/