Cloudflare³ÆÆä¿Í»§½üÆÚÔâµ½´ó¹æÄ£µÄDDoS¹¥»÷

Ðû²¼Ê±¼ä 2022-06-16

1¡¢Cloudflare³ÆÆä¿Í»§½üÆÚÔâµ½´ó¹æÄ£µÄDDoS¹¥»÷»î¶¯


CloudflareÔÚ6ÔÂ14ÈÕ͸¶ £¬Æä¿Í»§Ôâµ½ÁË´ó¹æÄ£µÄDDoS¹¥»÷¡£¸Ã¹«Ë¾³Æ £¬ËüÒѽÓÄÉÐж¯µÖÓùÁËÿÃë2600Íò´ÎÇëÇó(RPS)µÄDDoS¹¥»÷ £¬ÕâÊÇÆù½ñΪֹ¼ì²âµ½µÄ×î´óµÄHTTPS DDoS¹¥»÷¡£¹¥»÷À´×ÔÓÉ5067̨É豸×é³ÉµÄ½©Ê¬ÍøÂç £¬Ã¿¸ö½ÚµãÔÚ·åֵʱ·¢ÉúÔ¼5200 RPS¡£¾ÝϤ £¬¸Ã½©Ê¬ÍøÂçÔÚ²»µ½30ÃëµÄʱ¼äÄÚ´ÓÓ¡¶ÈÄáÎ÷ÑÇ¡¢ÃÀ¹ú¡¢°ÍÎ÷¡¢¶íÂÞ˹ºÍÓ¡¶ÈµÈ121¸ö¹ú¼ÒµÄ1500¶à¸öÍøÂçÖд´½¨ÁËÁè¼Ý2.12ÒÚ¸öHTTPSÇëÇó £¬Ô¼3%µÄ¹¥»÷À´×ÔTor½Úµã¡£


https://thehackernews.com/2022/06/cloudflare-saw-record-breaking-ddos.html 


2¡¢¹ú¼ÊÐ̾¯First Light 2022Ö´·¨Ðж¯´þ²¶Ô¼2000¸öÏÓÒÉÈË


ýÌå6ÔÂ15ÈÕ±¨µÀ £¬¹ú¼ÊÐ̾¯×éÖ¯ÔÚ76¸ö¹ú¼ÒºÍµØÓòµÄ¾¯·½Ð­ÖúÏÂÌᳫÁË´úºÅΪFirst Light 2022µÄ¹ú¼ÊÖ´·¨Ðж¯¡£ÔÚ2022Äê3ÔÂÖÁ5ÔÂÆÚ¼ä £¬Ö´·¨ÈËԱͻϮÁËÈ«ÇòµÄ1770¸öËùÔÚ £¬ÊÓ²ìÁËÔ¼3000ÃûÏÓÒÉÈË £¬´þ²¶ÁËÔ¼2000Ãû¼ÓÈëÉç»á¹¤³Ì¹¥»÷µÄÏÓÒÉÈË £¬¶³½áÁË4000¸öÒøÐÐÕË»§²¢²é·âÁ˼ÛÖµÔ¼5000ÍòÃÀÔªµÄ·Ç·¨×ʽð¡£´Ë´ÎÐж¯Öص㹥»÷Éæ¼°µç»°Õ©Æ­¡¢ÀËÂþÕ©Æ­¡¢BEC¹¥»÷ºÍ¹ØÓÚÏ´Ç®µÄÉç»á¹¤³Ì¹¥»÷¡£


https://www.bleepingcomputer.com/news/security/interpol-seizes-50-million-arrests-2000-social-engineers/


3¡¢Ñо¿ÍŶӷ¢ÏÖÕë¶ÔIntelºÍAMD CPUµÄ²àÐŵÀ¹¥»÷Hertzbleed


¾Ý6ÔÂ14ÈÕ±¨µÀ £¬Ñо¿ÈËÔ±·¢ÏÖÁËÒ»ÖÖ³ÆÎªHertzbleedµÄвàÐŵÀ¹¥»÷ £¬¿É±»Ô¶³Ì¹¥»÷ÕßÓÃÀ´Í¨¹ýÊӲ춯̬µçѹºÍƵÂÊËõ·Å(DVFS)ÆôÓõÄCPUƵÂʱ仯ÇÔÈ¡¼ÓÃÜÃÜÔ¿¡£DVFSÊÇÏÖ´úCPUʹÓõÄÒ»ÖÖµçÔ´¹ÜÀí½ÚÁ÷¹¦Ð§ £¬¿ÉÈ·±£ÏµÍ³Ôڸ߸ºÔØÆÚ¼ä²»»áÁè¼ÝÈȺ͹¦ÂÊÏÞÖÆ £¬²¢ÔÚµÍCPU¸ºÔØÆÚ¼ä½µµÍÕûÌ幦ºÄ¡£¹¥»÷ÊÇ¿ÉÐÐµÄ £¬ÒòΪÔÚIntel(CVE-2022-24436)ºÍAMD(CVE-2022-23823)x86´¦ÖÃÆ÷ÉÏ £¬¶¯Ì¬ÆµÂÊËõ·ÅÈ¡¾öÓÚ¹¦ºÄºÍÕýÔÚ´¦ÖõÄÊý¾Ý¡£IntelºÍAMD͸¶ £¬²»¼Æ»®Ðû²¼²¹¶¡ £¬µ«Ðû²¼ÁËÈçºÎ»º½â´ËÀ๥»÷µÄÖ¸ÄÏ¡£


https://www.bleepingcomputer.com/news/security/new-hertzbleed-side-channel-attack-affects-intel-amd-cpus/


4¡¢ZimbraÐÞ¸´¿ÉÇÔÈ¡Óû§µÇ¼ƾ¾ÝµÄ©¶´CVE-2022-27924


ýÌå6ÔÂ14ÈÕ³Æ £¬µç×ÓÓʼþÌ×¼þZimbraÖдæÔÚÒ»¸öÑÏÖØµÄ©¶´£¨CVE-2022-27924£© £¬Ó°ÏìÁË¿ªÔ´ºÍÉÌÒµ°æ±¾8.8.xºÍ9.x¡£SonarSource½«¸Ã©¶´×ܽáΪδ¾­Éí·ÝÑéÖ¤ÇëÇóµÄMemcachedÖж¾ £¬Í¨¹ý½«CRLF×¢Èëµ½Memcached²éÕÒµÄÓû§ÃûÖпÉÒÔÀûÓôË©¶´¡£ÀÖ³ÉÀûÓÃºó £¬¹¥»÷Õß¿ÉÒÔÔÚ²»ÓëÓû§½øÐÐÈκν»»¥µÄÇé¿öÏÂÇÔÈ¡Ã÷ÎĵÄÃÜÂë¡£SonarSourceÓÚ½ñÄê3ÔÂ11ÈÕÅû¶©¶´£»ZimbraÔÚ3ÔÂ31ÈÕÐû²¼Á˵ÚÒ»¸ö²¹¶¡ £¬µ«²»ÄÜÍêÈ«½â¾öÎÊÌ⣻֮ºó £¬¹©Ó¦ÉÌÓÖÔÚ5ÔÂ10ÈÕÐû²¼²¹¶¡ £¬ÍêÈ«ÐÞ¸´ÁË©¶´¡£


https://thehackernews.com/2022/06/new-zimbra-email-vulnerability-could.html


5¡¢ÄÏ·ÇÁ¬Ëø³¬ÊÐShopriteÔâµ½RansomHouseµÄÀÕË÷¹¥»÷

      

¾ÝýÌå6ÔÂ14ÈÕ±¨µÀ £¬Shoprite Group³ÆÆäÔÚÉÏÖÜÔâµ½ÁËÍøÂç¹¥»÷¡£ÕâÊÇ·ÇÖÞ×î´óµÄÁ¬Ëø³¬ÊÐ £¬ÊÕÈë58ÒÚÃÀÔª £¬ÔÚ·ÇÖÞµÄ12¸ö¹ú¼Ò¾­Óª×Žü3000¼ÒÃÅµê £¬ÓµÓÐ149000¸öÔ±¹¤¡£¸Ã¹«Ë¾ÌåÏÖ £¬´Ë´Îʼþ¿ÉÄÜй¶ÁËÆäλÓÚ˹ÍþÊ¿À¼¡¢ÄÉÃ×±ÈÑǺÍÔÞ±ÈÑǵĿͻ§µÄ¸öÈËÐÅÏ¢ £¬Éæ¼°ÐÕÃûºÍÉí·ÝÖ¤ºÅÂëµÈ¡£6ÔÂ14ÈÕ £¬RansomHouseÍÅ»ïÉù³Æ¶Ô´Ë´Î¹¥»÷ÂôÁ¦ £¬²¢¹ûÈ»ÁËÒ»·ÝÉù³Æ´ÓShopriteÇÔÈ¡µÄ600GBÊý¾ÝµÄÑù±¾¡£


https://therecord.media/large-supermarket-chain-in-southern-africa-hit-with-ransomware/


6¡¢Check Point·¢ÏÖÕë¶ÔÒÔÉ«ÁкÍÃÀ¹úµÄÓã²æÊ½µöÓã¹¥»÷

      

6ÔÂ14ÈÕ £¬Check PointÐû²¼ÁËÒÁÀÊPhosphorusÕë¶ÔÒÔÉ«ÁкÍÃÀ¹úµÄÓã²æÊ½µöÓã¹¥»÷µÄ·ÖÎö³ÂËß¡£´Ë´Î»î¶¯¿ÉÒÔ×·Ëݵ½2021Äê12Ô £¬¹¥»÷Õß½Ù³ÖÁËÒÔÉ«Áи߼¶¹ÙÔ±µÄµç×ÓÓʼþ £¬È»ºóÓÃËüÀ´¹¥»÷ÆäËûÄ¿±ê¡£´Ë´Î»î¶¯µÄÄ¿±ê°üÂÞ £¬ÒÔÉ«ÁÐǰÍâ½»²¿³¤Tzipi Livni¡¢ÃÀ¹úǰפÒÔÉ«ÁдóʹºÍÒÔÉ«Áйú·À¾üǰÉÙ½«µÈÈË¡£Ñо¿ÈËÔ±ÈÏΪ¸Ã»î¶¯µÄ×îÖÕÄ¿µÄÊÇÇÔȡĿ±êµÄ¸öÈËÐÅÏ¢¡¢»¤ÕÕɨÃè¼þºÍ·ÃÎʵç×ÓÓʼþ £¬²¢½«Æä¹éÒòÓÚÒÁÀʵÄAPTÍÅ»ïPhosphorus¡£


https://blog.checkpoint.com/2022/06/14/iranian-spear-phishing-operation-targets-former-israeli-foreign-minister-former-us-ambassador-to-israel-former-israeli-army-general-and-three-other-high-profile-executives/