¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20180705

°ä²¼¹¦·ò 2018-07-05

¡¾·ÖÎö»ã±¨¡¿×êÑлú¹¹°ä²¼2018ÄêÏļ¾»¥ÁªÍø°²È«»ã±¨£¬³Áµã¹Ø×¢DDoS¹¥»÷


±¾ÖܶþAkamai°ä²¼2018ÄêÏļ¾»¥ÁªÍø°²È«»ã±¨£¬³Áµã¹Ø×¢DDoS¹¥»÷µÄÇ÷Ïò¡£Æ¾¾ÝAkamaiµÄ×êÑУ¬2018ÄêÏļ¾Óë2017ÄêÏļ¾Ïà±È×ÜÌåDDoS¹¥»÷Ôö³¤ÁË16%£¬»ù´¡¼Ü¹¹²ã£¨µÚ3²ãºÍµÚ4²ã£©µÄ¹¥»÷Ôö³¤ÁË16%£¬·´ÉäÐÍDDoS¹¥»÷Ôö³¤ÁË4%£¬ÀûÓòãµÄDDoS¹¥»÷Ôö³¤ÁË38%¡£Õë¶ÔGitHubµÄDDoS¹¥»÷ÊÂÎñ·åÖµÁ÷Á¿´ï1.35 Tbps£¬´´ÔìÁËеļͼ¡£Mirai¹¥»÷ÈÔÔÚ³ÖÐø£¬ÐµıäÖÖ²»ÐݳöÏÖ¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://threatpost.com/threatlist-top-ddos-trends-in-2018-so-far/133038/


¡¾Íþвµý±¨¡¿×êÑÐÍŶӷ¢ÏÖÀûÓÃCoinhive¶ÌÁ´½ÓµÄ´ó¹æÄ£¶ñÒâÍÚ¿ó»î¶¯


Malwarebytes Labs×êÑÐÍŶӷ¢ÏÖÒ»¸öÀûÓÃCoinhive¶ÌÁ´½ÓµÄ´ó¹æÄ£¶ñÒâÍÚ¿ó»î¶¯¡£×êÑÐÈËÔ±·¢ÏÖÊý°Ù¸öÍøÕ¾¶¼±»×¢ÈëÁËÒ»ÑùµÄ¾­¹ý»ìºÏµÄ´úÂ룬ÕâЩ´úÂëʹÓÃCoinhive¶ÌÁ´½ÓÀ´¾²Ä¬ÍÚ¿ó¡£ÕâÐ©ÍøÕ¾»á½«Á÷Á¿³Á¶¨Ïòµ½IPΪ5.45.79[.]15µÄÒ»¸ö·þÎñÆ÷£¬¸Ã·þÎñÆ÷»¹±»ÓÃÓÚ·Ö·¢³ß¶ÈµÄ¶ñÒâÍÚ¿óÈí¼þ¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://blog.malwarebytes.com/threat-analysis/2018/07/obfuscated-coinhive-shortlink-reveals-larger-mining-operation/


¡¾°²È«·ì϶¡¿ÏÂÔØÕ¨µ¯¾íÍÁ³ÁÀ´£¬Chrome¡¢FirefoxºÍOperaµÈä¯ÀÀÆ÷¾ùÊÜÓ°Ïì


×êÑÐÈËÔ±·¢ÏÖÏÂÔØÕ¨µ¯·ì϶ÔÚChrome 67ÖгÁгöÏÖ£¬¸Ã·ìÏ¶ÔøÔÚ2018Äê3Ô°䲼µÄChrome 65Öн¨¸´¡£Æ¾¾ÝBleeping ComputerµÄ²âÊÔ£¬¸Ã·ì϶»¹Ó°ÏìÁËFirefox¡¢Vilvadi¡¢OperaºÍBraveµÈä¯ÀÀÆ÷¡£ÏÂÔØÕ¨µ¯ÊÇÖ¸ÔÚÒ»¸öÍøÒ³ÉÏÆô¶¯Êý°Ù»òÊýǧ´ÎÏÂÔØµ¼ÖÂä¯ÀÀÆ÷¿¨ËÀµÄ¼¼Êõ£¬¼Ù×°³É¼¼ÊõÖ§³ÖÀàµÄÚ¿Æ­»î¶¯¿ÉÄÜÀûÓø÷ì϶ºýŪÓû§²¦´òÚ¿Æ­ºÅÂë¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/download-bomb-trick-returns-in-chrome-also-affects-firefox-opera-vivaldi-and-brave/


¡¾°²È«·ì϶¡¿Î÷ÃÅ×ÓÅû¶SICLOCKÉ豸ÖеĶà¸ö°²È«·ì϶£¬Ä¿Ç°ÉÐδ°ä²¼¹Ì¼þ¸üÐÂ


±¾ÖܶþÎ÷ÃÅ×ÓÅû¶Æä²¿ÃÅSICLOCKÉ豸ÖеÄ6¸ö°²È«·ì϶¡£SICLOCKÉ豸ÓÃÓÚÔÚÖ÷¹¦·òÔ´³öÏÖ¹ÊÕÏ»òÃÔʧÏνÓʱͬ²½¹¤³§ÖеŦ·ò£¬ÒÔÈ·±£²»±ä¡£Õâ6¸ö·ì϶µÄCVE±àºÅΪCVE-2018-4851ÖÁCVE-2018-4856£¬ÆäÖÐÔ̺¬3¸ö¸ßΣ·ì϶£¬¿É±ðÀëµ¼ÖÂDoS¡¢Åú¸ÄÉ豸¹Ì¼þÒÔ¼°ËÁÒâ´úÂëÖ´ÐС£ÊÜÓ°ÏìµÄ²úÆ·Ô̺¬SICLOCK TC100ºÍSICLOCK TC400£¬ÓÉÓÚÕâЩ²úÆ·±ôÁٲüõ£¬Î÷ÃÅ×Ó²¢Ã»Óа䲼Óйع̼þ¸üУ¬¶øÊǽ¨ÒéÓû§²ÉȡһЩ·À»¤´ëÊ©ÒÔÏ÷¼õ·çÏÕ¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/flaws-expose-siemens-central-plant-clocks-attacks
¡¾¶ñÒâÈí¼þ¡¿×êÑÐÍŶӳÆÀûÓÃFortnite´«²¼µÄ¶ñÒâÈí¼þÒÑϰȾ³¬¹ý7.8ÍòÓû§
ÓÎÏ·Á÷ýÌåÆ½Ì¨Rainway±¨Â·³Æ£¬¼Ù×°³ÉFortniteÎè±×Èí¼þµÄ¶ñÒâÈí¼þÒÑϰȾ³¬¹ý7.8ÍòÓû§¡£¸Ã¶ñÒâÈí¼þ¼Ù×°³ÉFortniteÅú¸ÄÆ÷£¬Ðû³Æ¿ÉÔÊÐíÍæ¼ÒÌìÉúÃâ·ÑµÄV-Bucks£¬²¢Í¨¹ýYouTubeÊÓÆµ½øÐÐÐû´«¡£µ«¸Ã¶ñÒâÈí¼þÏÖʵÉÏÊÇÔÚÓû§µÄÍÆËã»úÉÏ×°ÖøùÖ¤Êé²¢Ö´ÐÐÖÐÑëÈ˹¥»÷£¬ÔÚÓû§½Ó¼ûµÄÍøÒ³ÉÏ×¢Èëڲƭ¸æ°×¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/07/fortnite-v-bucks-cheat.html


¡¾¶ñÒâÈí¼þ¡¿ChromeºÍFirefoxɾ³ý¶ñÒâÍøÂçÓû§º¹Çà¼Í¼µÄ²å¼þStylish


×êÑÐÈËÔ±Robert HeatonÔÚÒ»·Ý»ã±¨ÖÐÖ¸³öä¯ÀÀÆ÷²å¼þStylishÍøÂçÓû§µÄº¹Çà¼Í¼²¢·¢Ë͵½SimilarWeb¹«Ë¾µÄ·þÎñÆ÷¡£Stylish²å¼þÔÊÐíÓû§Æ¾¾Ý×Ô¼ºµÄ°®ºÃµ÷ÕûÍøÕ¾µÄ±í¹Û΢·ç¸ñ¡£ÕâÒ»ÐÐΪÑϳÁÎ¥·´ÁËÓû§ÒþÖÔÊý¾Ý± £»¤Õ½Êõ£¬Òò¶øGoogleºÍMozillaÒѾ­´ÓÆäÔÚÏßÉ̵êÖÐɾ³ýÁ˸òå¼þ¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/software/chrome-and-firefox-pull-stylish-add-on-after-report-it-logged-browser-history/