¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180705

Ðû²¼Ê±¼ä 2018-07-05

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼2018ÄêÏÄÈÕ»¥ÁªÍøÇå¾²±¨¸æ£¬£¬ £¬£¬£¬ÖØµã¹Ø×¢DDoS¹¥»÷


±¾ÖܶþAkamaiÐû²¼2018ÄêÏÄÈÕ»¥ÁªÍøÇå¾²±¨¸æ£¬£¬ £¬£¬£¬ÖØµã¹Ø×¢DDoS¹¥»÷µÄÇ÷ÊÆ¡£¡£¡£¡£¡£¡£Æ¾Ö¤AkamaiµÄÑо¿£¬£¬ £¬£¬£¬2018ÄêÏÄÈÕÓë2017ÄêÏÄÈÕÏà±È×ÜÌåDDoS¹¥»÷ÔöÌíÁË16%£¬£¬ £¬£¬£¬»ù´¡¼Ü¹¹²ã£¨µÚ3²ãºÍµÚ4²ã£©µÄ¹¥»÷ÔöÌíÁË16%£¬£¬ £¬£¬£¬·´ÉäÐÍDDoS¹¥»÷ÔöÌíÁË4%£¬£¬ £¬£¬£¬Ó¦ÓòãµÄDDoS¹¥»÷ÔöÌíÁË38%¡£¡£¡£¡£¡£¡£Õë¶ÔGitHubµÄDDoS¹¥»÷ÊÂÎñ·åÖµÁ÷Á¿´ï1.35 Tbps£¬£¬ £¬£¬£¬´´Á¢ÁËеļͼ¡£¡£¡£¡£¡£¡£Mirai¹¥»÷ÈÔÔÚÒ»Á¬£¬£¬ £¬£¬£¬ÐµıäÖÖÒ»Ö±·ºÆð¡£¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://threatpost.com/threatlist-top-ddos-trends-in-2018-so-far/133038/


¡¾ÍþвÇ鱨¡¿Ñо¿ÍŶӷ¢Ã÷ʹÓÃCoinhive¶ÌÁ´½ÓµÄ´ó¹æÄ£¶ñÒâÍÚ¿ó»î¶¯


Malwarebytes LabsÑо¿ÍŶӷ¢Ã÷Ò»¸öʹÓÃCoinhive¶ÌÁ´½ÓµÄ´ó¹æÄ£¶ñÒâÍÚ¿ó»î¶¯¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷Êý°Ù¸öÍøÕ¾¶¼±»×¢ÈëÁËÏàͬµÄ¾­ÓÉ»ìÏýµÄ´úÂ룬£¬ £¬£¬£¬ÕâЩ´úÂëʹÓÃCoinhive¶ÌÁ´½ÓÀ´¾²Ä¬Íڿ󡣡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾»á½«Á÷Á¿Öض¨Ïòµ½IPΪ5.45.79[.]15µÄÒ»¸öЧÀÍÆ÷£¬£¬ £¬£¬£¬¸ÃЧÀÍÆ÷»¹±»ÓÃÓÚ·Ö·¢±ê×¼µÄ¶ñÒâÍÚ¿óÈí¼þ¡£¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://blog.malwarebytes.com/threat-analysis/2018/07/obfuscated-coinhive-shortlink-reveals-larger-mining-operation/


¡¾Çå¾²Îó²î¡¿ÏÂÔØÕ¨µ¯¾íÍÁÖØÀ´£¬£¬ £¬£¬£¬Chrome¡¢FirefoxºÍOperaµÈä¯ÀÀÆ÷¾ùÊÜÓ°Ïì


Ñо¿Ö°Ô±·¢Ã÷ÏÂÔØÕ¨µ¯Îó²îÔÚChrome 67ÖÐÖØÐ·ºÆð£¬£¬ £¬£¬£¬¸ÃÎó²îÔøÔÚ2018Äê3ÔÂÐû²¼µÄChrome 65ÖÐÐÞ¸´¡£¡£¡£¡£¡£¡£Æ¾Ö¤Bleeping ComputerµÄ²âÊÔ£¬£¬ £¬£¬£¬¸ÃÎó²î»¹Ó°ÏìÁËFirefox¡¢Vilvadi¡¢OperaºÍBraveµÈä¯ÀÀÆ÷¡£¡£¡£¡£¡£¡£ÏÂÔØÕ¨µ¯ÊÇÖ¸ÔÚÒ»¸öÍøÒ³ÉÏÆô¶¯Êý°Ù»òÊýǧ´ÎÏÂÔØµ¼ÖÂä¯ÀÀÆ÷¿¨ËÀµÄÊÖÒÕ£¬£¬ £¬£¬£¬Î±×°³ÉÊÖÒÕÖ§³ÖÀàµÄÕ©Æ­»î¶¯¿ÉÄÜʹÓøÃÎó²îÓÕÆ­Óû§²¦´òÕ©Æ­ºÅÂë¡£¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/download-bomb-trick-returns-in-chrome-also-affects-firefox-opera-vivaldi-and-brave/


¡¾Çå¾²Îó²î¡¿Î÷ÃÅ×ÓÅû¶SICLOCK×°±¸ÖеĶà¸öÇå¾²Îó²î£¬£¬ £¬£¬£¬ÏÖÔÚÉÐδÐû²¼¹Ì¼þ¸üÐÂ


±¾ÖܶþÎ÷ÃÅ×ÓÅû¶Æä²¿·ÖSICLOCK×°±¸ÖеÄ6¸öÇå¾²Îó²î¡£¡£¡£¡£¡£¡£SICLOCK×°±¸ÓÃÓÚÔÚÖ÷ʱ¼äÔ´·ºÆð¹ÊÕÏ»òɥʧÅþÁ¬Ê±Í¬²½¹¤³§ÖеÄʱ¼ä£¬£¬ £¬£¬£¬ÒÔÈ·±£ÎȹÌ¡£¡£¡£¡£¡£¡£Õâ6¸öÎó²îµÄCVE±àºÅΪCVE-2018-4851ÖÁCVE-2018-4856£¬£¬ £¬£¬£¬ÆäÖаüÀ¨3¸ö¸ßΣÎó²î£¬£¬ £¬£¬£¬¿É»®·Öµ¼ÖÂDoS¡¢ÐÞ¸Ä×°±¸¹Ì¼þÒÔ¼°í§Òâ´úÂëÖ´ÐС£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄ²úÆ·°üÀ¨SICLOCK TC100ºÍSICLOCK TC400£¬£¬ £¬£¬£¬ÓÉÓÚÕâЩ²úÆ·±ôÁÙïÔÌ­£¬£¬ £¬£¬£¬Î÷ÃÅ×Ó²¢Ã»ÓÐÐû²¼Ïà¹Ø¹Ì¼þ¸üУ¬£¬ £¬£¬£¬¶øÊǽ¨ÒéÓû§½ÓÄÉһЩ·À»¤²½·¥ÒÔïÔ̭Σº¦¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/flaws-expose-siemens-central-plant-clocks-attacks
¡¾¶ñÒâÈí¼þ¡¿Ñо¿ÍŶӳÆÊ¹ÓÃFortniteÈö²¥µÄ¶ñÒâÈí¼þÒÑѬȾÁè¼Ý7.8ÍòÓû§
ÓÎÏ·Á÷ýÌåÆ½Ì¨Rainway±¨µÀ³Æ£¬£¬ £¬£¬£¬Î±×°³ÉFortnite×÷±×Èí¼þµÄ¶ñÒâÈí¼þÒÑѬȾÁè¼Ý7.8ÍòÓû§¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þαװ³ÉFortniteÐÞ¸ÄÆ÷£¬£¬ £¬£¬£¬Éù³Æ¿ÉÔÊÐíÍæ¼ÒÌìÉúÃâ·ÑµÄV-Bucks£¬£¬ £¬£¬£¬²¢Í¨¹ýYouTubeÊÓÆµ¾ÙÐÐÐû´«¡£¡£¡£¡£¡£¡£µ«¸Ã¶ñÒâÈí¼þÏÖʵÉÏÊÇÔÚÓû§µÄÅÌËã»úÉÏ×°ÖøùÖ¤Êé²¢Ö´ÐÐÖÐÐÄÈ˹¥»÷£¬£¬ £¬£¬£¬ÔÚÓû§»á¼ûµÄÍøÒ³ÉÏ×¢Èëڲƭ¹ã¸æ¡£¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/07/fortnite-v-bucks-cheat.html


¡¾¶ñÒâÈí¼þ¡¿ChromeºÍFirefoxɾ³ý¶ñÒâÍøÂçÓû§ÀúÊ·¼Í¼µÄ²å¼þStylish


Ñо¿Ö°Ô±Robert HeatonÔÚÒ»·Ý±¨¸æÖÐÖ¸³öä¯ÀÀÆ÷²å¼þStylishÍøÂçÓû§µÄÀúÊ·¼Í¼²¢·¢Ë͵½SimilarWeb¹«Ë¾µÄЧÀÍÆ÷¡£¡£¡£¡£¡£¡£Stylish²å¼þÔÊÐíÓû§Æ¾Ö¤×Ô¼ºµÄϲ»¶µ÷½âÍøÕ¾µÄÍâ¹ÛºÍÆø¸Å¡£¡£¡£¡£¡£¡£ÕâÒ»ÐÐΪÑÏÖØÎ¥·´ÁËÓû§Òþ˽Êý¾Ý±£»£»£»£»£»¤Õ½ÂÔ£¬£¬ £¬£¬£¬Òò´ËGoogleºÍMozillaÒѾ­´ÓÆäÔÚÏßÊÐËÁÖÐɾ³ýÁ˸òå¼þ¡£¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/software/chrome-and-firefox-pull-stylish-add-on-after-report-it-logged-browser-history/