ESET·¢ÏÖºÚ¿ÍÀûÓÃαÔìµÄClubhouse·Ö·¢BlackRock £»ºÚ¿ÍÍÅ»ïSilverFishÀûÓÃÊܺ¦ÕßÍøÂç½øÐÐɳºÐ²âÊÔ

Ðû²¼Ê±¼ä 2021-03-22

1.ESET·¢ÏÖºÚ¿ÍÀûÓÃαÔìµÄClubhouse·Ö·¢BlackRock


1.jpg


ÉÏÖÜÎ壬ESETµÄÑо¿ÈËÔ±·¢ÏÖºÚ¿ÍÀûÓÃαÔìµÄAndroid°æClubhouse·Ö·¢BlackRock Trojan¡£ClubhouseÊÇÒôƵÁÄÌìÓ¦Ó㬵«Ä¿Ç°Ö»ÔÚiOSÉϵ±Ç°¿ÉÓã¬ÉÐδÐû²¼Android°æ±¾µÄClubhouse¡£BlackRock×î³õÓÚ2020Äê5Ô±»·¢ÏÖ£¬Ö¼ÔÚÇÔÈ¡Óû§ÔÚÖÖÖÖ»¥ÁªÍøÓ¦Óã¨Áè¼Ý458¸ö£©ÉϵÄÐÅÏ¢¡£¸ÃľÂíÄܹ»À¹½ØºÍ¸Ä¶¯SMSÏûÏ¢¡¢Òþ²ØÍ¨Öª¡¢ÔÚÓû§ÔËÐÐɱ¶¾Èí¼þʱ½«ÆäÖØ¶¨Ïòµ½É豸Ö÷ÆÁÄ»ºÍÔ¶³ÌËø¶¨ÆÁÄ»¡£ 


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/fraudsters-jump-on-clubhouse-hype-to-push-malicious-android-app/


2.Netscout·¢ÏÖ´óÁ¿DTLS·þÎñÆ÷¿ÉÓÃÓÚDDoS·Å´ó¹¥»÷


2.jpg


Äþ¾²¹«Ë¾Netscout·¢ÏÖ´óÁ¿DTLS·þÎñÆ÷¿ÉÓÃÓÚDDoS·Å´ó¹¥»÷£¬·Å´ó±ÈÀýΪ37.34£º1¡£DTLSÊÇ´«Êä²ãÄþ¾²ÐÔ£¨TLS£©Ð­Òé»ùÓÚUDPµÄ°æ±¾£¬¿É·ÀÖ¹¶ÔÑÓ³ÙÃô¸ÐµÄÓ¦ÓúͷþÎñ½øÐÐÇÔÌýºÍ¸Ä¶¯¡£ÔçÔÚÈ¥Äê12Ô·Ý£¬¾Í´æÔÚÀûÓÃCitrix ADCÉ豸µÄDTLSµÄDDoS¹¥»÷»î¶¯¡£CitrixÓÚ½ñÄêÔÚ1ÔÂÐû²¼Á˲¹¶¡·¨Ê½£¬µ«Ö±µ½ÏÖÔÚÈÔÓÐÁè¼Ý4200¶ą̀DTLS·þÎñÆ÷¿É±»ÓÃÓÚ·´ÉäºÍ·Å´óDDoS¹¥»÷¡£NetscoutÌåÏÖµ¥ÏòÁ¿DTLS·Å´óDDoS¹¥»÷¿É´ïÔ¼44.6 Gbps£¬¶àÏòÁ¿¹¥»÷Ôò¸ß´ïÔ¼206.9 Gbps¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/ddos-booters-now-abuse-dtls-servers-to-amplify-attacks/


3.ºÚ¿ÍÍÅ»ïSilverFishÀûÓÃÊܺ¦ÕßÍøÂç½øÐÐɳºÐ²âÊÔ


3.jpg


ÈðÊ¿Äþ¾²¹«Ë¾ProdaftÉÏÖÜËijÆ£¬ÓëSolarWinds¹¥»÷ÓйصĺڿÍÍÅ»ïSilverFishÀûÓÃÊܺ¦ÕßÍøÂç½øÐÐɳºÐ²âÊÔ¡£SilverFishÒѹ¥»÷ÁËÁè¼Ý4720¸öÆóÒµºÍÕþ¸®×éÖ¯£¬°üÂ޲Ƹ»500Ç¿ÆóÒµ¡¢Õþ¸®²¿ÃÅ¡¢º½¿Õ¹«Ë¾¡¢¹ú·À³Ð°üÉÌ¡¢Éó¼ÆºÍ×Éѯ¹«Ë¾ÒÔ¼°Æû³µÖÆÔìÉÌ¡£¸ÃÍŻ↑·¢ÁËÒ»¸öÓÉÊܺ¦ÕߵķþÎñÆ÷×é³ÉµÄ¶ñÒâÈí¼þ¼ì²âɳÏ䣬¿ÉÒÔÓòîÒìµÄÆóÒµAVºÍEDR½â¾ö·½°¸À´²âÊÔËûÃǵÄpayload£¬ÒÔÔö¼ÓÆä¹¥»÷µÄÀÖ³ÉÂÊ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/solarwinds-linked-hacking-group-silverfish-abuses-enterprise-victims-in-sandbox-malware-tests/


4.WordPress²å¼þ±»±¬³ö¶à¸ö©¶´£¬¿É½Ù³Ö½üǧÍò¸öÍøÕ¾


4.jpg


Ñо¿ÈËÔ±Åû¶ÁËWordPress²å¼þElementorºÍWP Super CacheÖеÄ©¶´£¬¿É±»ÓÃÓÚÈÎÒâ´úÂëÖ´ÐÐÒÔ¼°½Ó¹ÜÍøÕ¾¡£Wordfence·¢ÏÖElementorÔªËØÖÐûÓжÔHTML±êÇ©½øÐзþÎñÆ÷¶ËÑéÖ¤£¬Òò¶ø´æÔÚ¶à¸öXSS©¶´£¬CVSSÆÀ·ÖΪ6.4£¬¿É±»ÓÃÀ´´´½¨¹ÜÀíÔ±ÕÊ»§»òÏòÍøÕ¾Ìí¼ÓºóÃÅ£¬Æä°²×°Á¿Áè¼Ý700Íò¡£Patchstack·¢ÏÖ°²×°Á¿Áè¼Ý200ÍòµÄWP Super CacheÖдæÔÚ¾­¹ýÉí·ÝÑéÖ¤µÄÔ¶³Ì´úÂëÖ´ÐÐ(RCE)©¶´¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115750/hacking/wordpress-plugins-flaws.html


5.GoogleÐû²¼2020ÄêijºÚ¿Í×éÖ¯¹¥»÷»î¶¯µÄ³ÂËß


5.jpg


Google¡¯s Project ZeroÍŶÓÐû²¼ÁË2020ÄêijºÚ¿Í×éÖ¯¹¥»÷»î¶¯µÄ³ÂËß¡£³ÂËß·¢ÏÖ£¬¸ÃÍÅ»ïÔÚ2020Äê2ÔºÍ10ÔÂÌᳫÁËÁ½´Î¹¥»÷»î¶¯£¬ÀûÓÃÁËÖÁÉÙ11¸öÁãÈÕ©¶´¡£ºÚ¿Íͨ¹ýһϵÁй¥»÷»î¶¯½¨Á¢¶ñÒâÍøÕ¾£¬½«·ÃÎÊÕßÖØ¶¨Ïòµ½ÍйÜÁËAndroid¡¢WindowsºÍiOSÉ豸µÄ¹¥»÷Á´µÄ·þÎñÆ÷ÉÏ¡£ÆäÖУ¬2Ô·ݵĹ¥»÷ʹÓÃÁËCVE-2020-6418ºÍCVE-2020-0938µÈ4¸ö©¶´£¬10Ô·ݵĹ¥»÷ʹÓÃÁËCVE-2020-15999ºÍCVE-2020-17087µÈ7¸ö©¶´¡£


Ô­ÎÄÁ´½Ó£º

https://googleprojectzero.blogspot.com/2021/03/in-wild-series-october-2020-0-day.html


6.kasperskyÐû²¼2020ÄêStalkerware¹¥»÷»î¶¯µÄ³ÂËß


6.jpg


kasperskyÐû²¼ÁË2020ÄêStalkerware¹¥»÷»î¶¯µÄ³ÂËß¡£Stalkerware¶ñÒâÈí¼þµÄ¹¦Ð§¸÷²»Ïàͬ£¬µ«´ó¶àÊý¶¼¿ÉÒÔ¶ÔÊܺ¦ÕßµÄÊÖ»ú½øÐÐÈ«Ãæ¼à¿Ø¡£³ÂËßÖ¸³ö£¬2018ÄêÈ«Çò½ü40000¸öÓû§Ôâµ½´ËÀà¶ñÒâÈí¼þµÄÓ°Ï죬2019ÄêÍ»ÆÆÁË67000£¬2020ÄêΪ½ü54000¸öÓû§¡£ÊÜÓ°ÏìÓû§µÄÄê¶ÈÇúÏßÏÔʾ£¬2020Äê3ÔÂÖÁ6Ô£¬Êܺ¦ÕßµÄÊýÁ¿ÓÐËùϽµ¡£ÔÚÈ«Çò·¶Î§ÄÚ£¬¶íÂÞ˹¡¢°ÍÎ÷ºÍÃÀ¹úµÄStalkerwareÊýÁ¿×î¶à £»ÔÚÑÇÖÞ£¬Ó¡¶ÈµÄÎÊÌâ×îΪÑÏÖØ £»¶øÔÚÅ·ÖÞ£¬ÊÜÓ°Ïì×î´óµÄÊǵ¹ú¡¢Òâ´óÀûºÍÓ¢¹ú¡£


Ô­ÎÄÁ´½Ó£º

https://www.kaspersky.com/blog/stalkerware-in-2020/39102/