UptycsÅû¶ÓëKeksecÍÅ»ïÓйصÄн©Ê¬ÍøÂçSimps£»£»£»£»£»CiscoÅû¶macOSµÄSMBÐÒéÖеÄÐÅϢй¶Îó²î
Ðû²¼Ê±¼ä 2021-05-201.UptycsÅû¶ÓëKeksecÍÅ»ïÓйصÄн©Ê¬ÍøÂçSimps

UptycsÍþвÑо¿ÍŶÓÅû¶ÓëKeksecÍÅ»ïÓйصÄн©Ê¬ÍøÂçSimps¡£¡£¡£¡£¡£¡£¡£¡£ËüʹÓÃÎïÁªÍø£¨IoT£©½Úµã¶ÔÓÎÏ·ºÍÆäËûÄ¿µÄ¾ÙÐÐÂþÑÜʽ¾Ü¾øÐ§ÀÍ£¨DDoS£©¹¥»÷£¬£¬£¬£¬£¬£¬ÓÚ2021Äê5ÔµĵÚÒ»Öܱ»·¢Ã÷¡£¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±Ö¸³ö£¬£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ýWgetÀ´Ê¹ÓÃshell¾ç±¾ºÍGafgyt£¨Keksec×îÇàíùµÄ¹¤¾ßÖ®Ò»£©Îª²î±ðµÄ»ùÓÚLinuxµÄϵͳװÖÃSimps payload¡£¡£¡£¡£¡£¡£¡£¡£Æ¾Ö¤Ò»Ìõ°üÀ¨Gafgyt¶ñÒâÈí¼þÑù±¾µÄDiscordÐÂÎÅ£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±ÍƶϸöñÒâÈí¼þÓëKeksecÍÅ»ïÓйء£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.uptycs.com/blog/discovery-of-simps-botnet-leads-ties-to-keksec-group
2.Tessian·¢Ã÷½üÆÚαװ³ÉÍâÂôЧÀ͵ÄSMSÍøÂç´¹Âڻ

TessianµÄÑо¿Ö°Ô±·¢Ã÷½üÆÚαװ³ÉÍâÂôЧÀ͵ÄSMSÍøÂç´¹Âڻ¡£¡£¡£¡£¡£¡£¡£¡£Ôڴ˴ι¥»÷ÖУ¬£¬£¬£¬£¬£¬ºÚ¿Íαװ³É×ÅÃûÆ·ÅÆ£¨°üÀ¨HelloFreshºÍGousto£©ÏòÄ¿µÄ·¢ËͶÌÐÅ£¬£¬£¬£¬£¬£¬ÀýÈç¡°ÄúµÄGoustoÏÖÔÚÒÑËʹ£¬£¬£¬£¬£¬£¬À´ÓÕʹÓû§·¿ª´¹ÂÚ¶ÌÐÅÖеÄÁ´½Ó£¬£¬£¬£¬£¬£¬²¢ÊäÈëÆäСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±½¨ÒéÓû§½ÓÄÉһЩ¼òÆÓµÄÔ¤·À²½·¥£¬£¬£¬£¬£¬£¬ÈçСÐIJ»ÊìϤµÄËÍ»õ֪ͨ£¬£¬£¬£¬£¬£¬×ÐϸÉó²é·¢¼þÈ˺ÅÂë²¢×îºÃ²»µã»÷SMSÐÂÎÅÖеÄÁ´½Ó£¬£¬£¬£¬£¬£¬À´Ô¤·À´ËÀ๥»÷¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/scammers-meal-kit-services-customer-data/166282/
3.ÐÂÎ÷À¼DHBѬȾÀÕË÷Èí¼þ£¬£¬£¬£¬£¬£¬¶à¼ÒÒ½ÔºµÄÊÖÊõ±»ÆÈ×÷·Ï

ÐÂÎ÷À¼µÄ»³¿¨ÍеØÇøÎÀÉúίԱ»á£¨DHB£©ÓÚ±¾ÖܶþÔçÉÏÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬ITЧÀÍÖÐÖ¹£¬£¬£¬£¬£¬£¬Áù¼ÒÁ¥ÊôÒ½ÔºÊܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£¡£¡£´Ë´Î¹¥»÷µ¼Ö»ú¹¹³ýµç×ÓÓʼþÒÔÍâµÄËùÓÐITЧÀͶ¼ÎÞ·¨Ê¹Ó㬣¬£¬£¬£¬£¬Ò½ÔºÊÂÇéÖ°Ô±±»ÆÈʹÓñʺÍÖ½°ì¹«£¬£¬£¬£¬£¬£¬²¢ÇÒÓÉÓÚÁÙ´²Ð§ÀÍÖÐÖ¹¡¢ÊÖÊõÍÆ³Ù¡¢µç»°µôÏߣ¬£¬£¬£¬£¬£¬Ò½ÔºÖ»ÄܽÓÊܽôÆÈ²¡ÈË¡£¡£¡£¡£¡£¡£¡£¡£DHBÕý¶Ô´ËÊÂÕö¿ªÊӲ죬£¬£¬£¬£¬£¬²¢ÒѾöÒé²»Ö§¸¶Êê½ð£¬£¬£¬£¬£¬£¬ÏÖÔÚÉв»ÇåÎúÌᳫ´Ë´Î¹¥»÷µÄºÚ¿ÍÍŻ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.theregister.com/2021/05/19/new_zealand_hospitals_taken_down/
4.CiscoÅû¶macOSµÄSMBÐÒéÖеÄÐÅϢй¶Îó²î

Cisco TalosÅû¶ÁËApple macOSµÄSMBÐÒéÖеÄÐÅϢй¶Îó²î¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²îÊÇÒ»¸öÕûÊýÒç³öÎó²î£¨CVE-2021-1878£©£¬£¬£¬£¬£¬£¬±£´æÓÚmacOS SMBÐÒé´¦Öóͷ£SMB3Êý¾Ý°üµÄÀú³ÌÖС£¡£¡£¡£¡£¡£¡£¡£SMBÊÇWindowsÍøÂçÇéÐÎÖг£¼ûµÄÍøÂçÎļþ¼Ð¹²ÏíµÄЧÀÍ£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ýÏòÄ¿µÄϵͳ·¢ËÍÌØÖÆÊý¾Ý°üÀ´Ê¹ÓôËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£³ýÁËÄܹ»Ð¹Â¶Ãô¸ÐÐÅÏ¢Ö®Í⣬£¬£¬£¬£¬£¬¹¥»÷Õß»¹¿ÉÒÔʹÓøÃÎó²îÀ´Èƹý¼ÓÃܼì²é²¢µ¼Ö¾ܾøÐ§ÀÍ¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://blog.talosintelligence.com/2021/05/vuln-spotlight-smb-information-disclosure.html
5.NVIDIAÐû²¼½«ÔÚеÄÏÔ¿¨ÉϽµµÍËãÁ¦ÒÔÔ¤·ÀÍÚ¿ó»î¶¯

NVIDIAÐû²¼½«ÔÚеÄGeForce RTX 3080¡¢3070ºÍ3060 TiÏÔ¿¨ÉϽ«ËãÁ¦½µµÍÒ»°ë£¬£¬£¬£¬£¬£¬ÒÔ½µµÍÆä¶Ô¿ó¹¤µÄÎüÒýÁ¦¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾³Æ£¬£¬£¬£¬£¬£¬´Ë¾öÒéÊÇΪÁËÈ·±£ÓÎÏ·¿¨¿ÉÒÔ±»È«Çò¸ü¶àµÄÓÎÏ·Íæ¼ÒʹÓ㬣¬£¬£¬£¬£¬¶ø²»ÊÇ¶ÑÆöÔÚ¼ÓÃÜÇ®±Ò¿ó³¡ÖС£¡£¡£¡£¡£¡£¡£¡£ÕâЩеIJúÆ·µÄ°ü×°ºÐÉÏÓС°µÍËãÁ¦¡±»ò¡° LHR¡±±êʶ·û£¬£¬£¬£¬£¬£¬Ô¤¼Æ½«ÓÚ±¾ÔÂÏÂÑ®×îÏÈ·¢»õ¡£¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬NVIDIA»¹ÍƳöÁËCMPרÓòɿóGPUϵÁУ¬£¬£¬£¬£¬£¬¹æ¸ñΪ30HX£¨ËãÁ¦26 MH/Ã룩¡¢40HX£¨36 MH/Ã룩¡¢50HX£¨45 MH/Ã룩ºÍ90HX£¨86 MH/Ã룩¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/cryptocurrency/nvidia-cripples-cryptocurrency-mining-on-rtx-3080-and-3070-cards/
6.Elliptic³ÆDarkSideÔÚ½ü9¸öÔÂÒÑ׬Ǯ9000ÍòÃÀÔª

Çø¿éÁ´ÆÊÎö¹«Ë¾Elliptic³ÆDarkSideÔÚ½ü9¸öÔÂÒÑ׬Ǯ9000ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¡£¡£ÕâЩÀûÈóµÄ10£¥À´×ÔÁ½¼Ò¹«Ë¾£ºÃÀ¹ú×î´óµÄʯÓ͹ܵÀϵͳColonial PipelineºÍµÂ¹úµÄ´óÐÍ»¯Ñ§Æ··ÖÏú¹«Ë¾Brenntag£¬£¬£¬£¬£¬£¬×ܹ²ÎªÆä´øÀ´ÁËÔ¼1000ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯µÄƽ¾ùÊê½ðΪ190ÍòÃÀÔª£¬£¬£¬£¬£¬£¬ÕâʹÆä³ÉΪÀÕË÷Èí¼þÐÐÒµÖÐ×ḭ̂ÐĵĹ«Ë¾Ö®Ò»¡£¡£¡£¡£¡£¡£¡£¡£×÷ΪÀÕË÷Èí¼þ¼´Ð§ÀÍ£¨RaaS£©ÔËÓªÉÌ£¬£¬£¬£¬£¬£¬DarkSideÔÚÀûÈó·ÖÅÉ·½Ã棬£¬£¬£¬£¬£¬»áƾ֤Êê½ðµÄ¼¸¶àÊÕÈ¡10£¥ÖÁ25£¥µÄÓ¶½ð¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/darkside-ransomware-made-90-million-in-just-nine-months/


¾©¹«Íø°²±¸11010802024551ºÅ