NEW CooperativeÔâBlack Matter¹¥»÷±»ÀÕË÷590ÍòÃÀÔª

Ðû²¼Ê±¼ä 2021-09-23

NEW CooperativeÔâBlack Matter¹¥»÷±»ÀÕË÷590ÍòÃÀÔª


newcooperativeÔâ¹¥»÷.jpg


ÃÀ¹úÅ©ÃñÏàÖúÉçNEW CooperativeÔÚÉÏÖÜÄ©Ôâµ½Black MatterµÄÀÕË÷¹¥»÷¡£¡£¡£¡£¡£ÕâÊÇÒ»¼ÒËÇÁϺ͹ÈÎïÏàÖúÉ磬 £¬£¬£¬£¬£¬´Ë´Î¹¥»÷»î¶¯½«µ¼ÖÂÁ¸Ê³¡¢ÖíÈâºÍ¼¦ÈâµÈʳÎ﹩ӦÖÐÖ¹¡£¡£¡£¡£¡£¹¥»÷ÕßÒªÇó¸Ã¹«Ë¾Ö§¸¶590ÍòÃÀÔªÊê½ð£¬ £¬£¬£¬£¬£¬²¢ÌåÏÖ5ÈÕºóÊê½ð½ð¶î½«ÔöÌíµ½1180ÍòÃÀÔª¡£¡£¡£¡£¡£BlackMatterÉù³ÆÇÔÈ¡ÁË1000 GBµÄÊý¾Ý£¬ £¬£¬£¬£¬£¬°üÀ¨soilmap.comÏîÄ¿µÄÔ´´úÂë¡¢Ñз¢Ð§¹û¡¢Ô±¹¤ÐÅÏ¢¡¢²ÆÎñÎļþÒÔ¼°KeePassÃÜÂëÖÎÀíÆ÷µÄµ¼³öÊý¾Ý¿âµÈ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º


https://securityaffairs.co/wordpress/122410/cyber-crime/black-matter-new-cooperative.html



Ñо¿Ö°Ô±·¢Ã÷Áè¼Ý1.06ÒÚÌ©¹úÓο͵ÄСÎÒ˽¼ÒÐÅϢй¶


Ñо¿Ö°Ô±·¢Ã÷Áè¼Ý1.06ÒÚÌ©¹úÓο͵ÄСÎÒ˽¼ÒÐÅϢй¶.png


ComparitechÑо¿Ö°Ô±Bob DiachenkoÓÚ2021Äê8ÔÂ22ÈÕ·¢Ã÷ÁËδÊܱ£»£» £»¤µÄElasticsearchÊý¾Ý¿â¡£¡£¡£¡£¡£¸ÃÊý¾Ý¿â×ܹ²ÓÐ200GBÊý¾Ý£¬ £¬£¬£¬£¬£¬°üÀ¨ÁËÁè¼Ý1.06ÒÚÌ©¹úÓο͵ÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£DiachenkoÍÆ²â£¬ £¬£¬£¬£¬£¬¸ÃÊÂÎñÉæ¼°µ½ÒÑÍùÊ®ÄêÖÐǰÍùÌ©¹úÂÃÓεĵÄËùÓÐÍâ¹úÈË¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÏÖÔÚÎÞ·¨È·¶¨ÕâЩÊý¾Ýй¶µÄʱ¼ä£¬ £¬£¬£¬£¬£¬¿ÉÊÇÔÚ֪̩ͨ¹úÕþ¸®ºóµÄ24СʱÄھͱ»±£»£» £»¤ÁËÆðÀ´¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º


https://www.infosecurity-magazine.com/news/data-of-106-million-visitors-to/


»¥ÁªÍøÓïÒô¹«Ë¾VoIP.msÔâµ½REvilÍÅ»ïµÄDDoS¹¥»÷


»¥ÁªÍøÓïÒô¹«Ë¾VoIP.msÔâµ½REvilÍÅ»ïµÄDDoS¹¥»÷.png


»¥ÁªÍøÓïÒô¹«Ë¾VoIP.msÓÚ9ÔÂ16ÈÕÔâµ½REvilÍÅ»ïµÄDDoS¹¥»÷¡£¡£¡£¡£¡£¸Ã¹«Ë¾Óû§·´Ó¦DDoS¹¥»÷ÖÐÖ¹Á˵绰ЧÀÍ£¬ £¬£¬£¬£¬£¬Ê¹ËûÃÇÎÞ·¨½ÓÌý»ò²¦´òµç»°¡£¡£¡£¡£¡£¸Ã¹«Ë¾½¨Òé¿Í»§ÐÞ¸ÄÆäHOSTSÎļþ£¬ £¬£¬£¬£¬£¬½«ÓòÃûÖ¸ÏòËûÃǵÄIPµØµã£¬ £¬£¬£¬£¬£¬ÒÔÈÆ¹ýDNSÆÊÎö£¬ £¬£¬£¬£¬£¬µ«Õâµ¼ÖÂÁ˹¥»÷ÕßÖ±½Ó¶Ô¸ÃIPµØµãÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£Ö®ºó£¬ £¬£¬£¬£¬£¬VoIP.ms½«×Ô¼ºµÄÍøÕ¾ºÍDNSЧÀÍÆ÷×ªÒÆµ½ÁËCloudflareʹµÃÎÊÌâ»ñµÃÁË»º½â £¬ £¬£¬£¬£¬£¬µ«µç»°Ð§ÀÍÈÔ±£´æÖÐÖ¹¡¢µôÏߺÍÐÔÄܲ»¼ÑµÈÎÊÌâ¡£¡£¡£¡£¡£ÏÖÔÚ£¬ £¬£¬£¬£¬£¬VoIP.msÉÐδ¶Ô´ËÊÂ×÷³ö»ØÓ¦¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/voipms-phone-services-disrupted-by-ddos-extortion-attack/



ÃÀ¹ú¹²ºÍµ³Öݳ¤Ð­»á(RGA)³ÆÆäµç×ÓÓʼþϵͳÔâµ½ÈëÇÖ


ÃÀ¹ú¹²ºÍµ³Öݳ¤Ð­»á(RGA)³ÆÆäµç×ÓÓʼþϵͳÔâµ½ÈëÇÖ.png


ÃÀ¹ú¹²ºÍµ³Öݳ¤Ð­»á(RGA)ÔÚÉÏÖÜ·¢ËÍ֪ͨ£¬ £¬£¬£¬£¬£¬³ÆÆäµç×ÓÓʼþϵͳÔÚ2ÔÂÖÁ3ÔÂÔâµ½ÈëÇÖ¡£¡£¡£¡£¡£RGAÊÇÃÀ¹úµÄÒ»¸öÃâ˰×éÖ¯£¬ £¬£¬£¬£¬£¬ËüΪ¹²ºÍµ³ºòÑ¡ÈËÌṩ¾ºÑ¡ËùÐèµÄ×ÊÔ´£¬ £¬£¬£¬£¬£¬ÒÔÖ§³ÖËûÃÇÖÐÑ¡Öݳ¤¡£¡£¡£¡£¡£RGAÔÚ6ÔÂ24ÈÕ·¢Ã÷ÐÅϢй¶ÊÂÎñ£¬ £¬£¬£¬£¬£¬9ÔÂ1ÈÕÍê³Éµç×Óȡ֤£¬ £¬£¬£¬£¬£¬²¢ÓÚ9ÔÂ15ÈÕ·¢ËÍÓʼþ֪ͨÁËÊÜÓ°ÏìµÄСÎÒ˽¼Ò¡£¡£¡£¡£¡£RGA³ÆÕâÊǽñÄê3Ô·ÝÕë¶ÔÈ«Çò×éÖ¯Microsoft ExchangeµÄ´ó¹æÄ£¹¥»÷»î¶¯µÄÒ»²¿·Ö¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/republican-governors-association-email-server-breached-by-state-hackers/ 


Apache OpenOfficeÖб£´æRCEÎó²îCVE-2021-33035


Apache OpenOfficeÖб£´æRCEÎó²îCVE-2021-33035.png


Ñо¿Ö°Ô±ÔÚ9ÔÂ19ÈÕÅû¶ÁËApache OpenOffice(AOO)ÖеÄRCEÎó²îCVE-2021-33035µÄϸ½Ú¡£¡£¡£¡£¡£ÕâÊÇÒ»¸öÎļþÁýÕֵĻº³åÇøÒç³öÎó²î£¬ £¬£¬£¬£¬£¬Ëüͨ¹ýDEP£¨µØµã¿Õ¼ä½á¹¹Ëæ»ú»¯£©ºÍASLR£¨µØµã¿Õ¼ä½á¹¹Ëæ»ú»¯£©Èƹý·µ»ØÖ¸Õ룬 £¬£¬£¬£¬£¬×îÖÕÖ´ÐÐí§ÒâÏÂÁ £¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ýÓÕÆ­Ä¿µÄ·­¿ªÌØÖƵÄ.dbfÎļþÀ´´¥·¢¸ÃÎó²î¡£¡£¡£¡£¡£ÏÖÔÚ£¬ £¬£¬£¬£¬£¬ÐÞ¸´¸ÃÎó²îµÄ²âÊÔ°æ³ÌÐòÒѾ­Ðû²¼¡£¡£¡£¡£¡£ 


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/122426/security/apache-openoffice-rce-cve-2021-33035.html



NetgearÐû²¼¸üУ¬ £¬£¬£¬£¬£¬ÐÞ¸´¶à¿î·ÓÉÆ÷ÖеĴúÂëÖ´ÐÐÎó²î


NetgearÐû²¼¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¿î·ÓÉÆ÷ÖеĴúÂëÖ´ÐÐÎó²î.png


NetgearÓÚ9ÔÂ21ÈÕÐû²¼Çå¾²¸üУ¬ £¬£¬£¬£¬£¬ÐÞ¸´ÁËCircle¼Ò³¤¿ØÖÆÐ§ÀÍÖеĴúÂëÖ´ÐÐÎó²îCVE-2021-40847£¬ £¬£¬£¬£¬£¬¸ÃЧÀÍÔÚÊ®¼¸¿îSOHO Netgear·ÓÉÆ÷ÉÏÒÔrootȨÏÞÔËÐС£¡£¡£¡£¡£¸ÃÎó²î±£´æÓÚcircled¸üÐÂÊØ»¤Àú³ÌÖУ¬ £¬£¬£¬£¬£¬¿ÉÒÔ±»Ô¶³ÌʹÓÃÀ´Ðá̽·ÓÉÆ÷²¢Ö´ÐÐÖÐÐÄÈ˹¥»÷(MitM)¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬£¬£¬Nichols»¹Ðû²¼ÁËÒ»¸öDZÔڵĹ¥»÷Á´£¬ £¬£¬£¬£¬£¬ÑÝʾÁ˹¥»÷ÕßÔõÑùÔÚÆÆËðÔ±¹¤µÄNetgear·ÓÉÆ÷ºóÓÃÀ´ÈëÇÖÆóÒµµÄÍøÂç¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/netgear-fixes-dangerous-code-execution-bug-in-multiple-routers/