΢ÈíÈÏ¿ÉÔøÇ©Ê𺬶ñÒârootkitµÄÇý¶¯·¨Ê½Netfilter£»£» £»£»£»ºÚ¿ÍÔÚRaidForumsÏúÊÛ7ÒÚ¶àÌõLinkedInÓû§µÄ¼Í¼

°ä²¼¹¦·ò 2021-06-29

1.ºÚ¿ÍÔÚRaidForumsÏúÊÛ7ÒÚ¶àÌõLinkedInÓû§µÄ¼Í¼


1.jpg


Privacy Sharks×êÑÐÈËÔ±·¢ÏÖÃûΪ¡°GOD User TomLiner¡±µÄºÚ¿ÍÔÚRaidForumsÉÏÏúÊÛLinkedInÓû§µÄÊý¾Ý¡£¡£¡£¡£¡£¸Ã¸æ°×ÓÚ6ÔÂ22ÈÕ°ä²¼£¬£¬£¬£¬ £¬£¬£¬Ðû³ÆÔ̺¬7Òڱʼͼ£¬£¬£¬£¬ £¬£¬£¬²¢¹«¿ªÁË100ÍòÌõÑù±¾×÷Ϊ֤¾Ý¡£¡£¡£¡£¡£Õâ´Îй¶µÄÐÅÏ¢Ô̺¬·¢ÏּͼÔ̺¬È«Ãû¡¢ÐԱ𡢵ç×ÓÓʼþµØÖ·¡¢µç»°ºÅÂëºÍÐÐÒµÐÅÏ¢¡£¡£¡£¡£¡£Ä¿Ç°Éв»Ã÷ÏÔÊý¾ÝµÄÆðÔ´ÊÇʲô£¬£¬£¬£¬ £¬£¬£¬µ«×êÑÐÈËÔ±´§Ä¦Õâ´ÎÊý¾Ýй¶Óë4Ô·ÝÏúÊÛµÄ5ÒÚÌõLinkedIn¼Í¼¿ÉÄÜÊÇͳһÆðÔ´¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/data-700m-linkedin-users-cyber-underground/167362/


2.WolfeÑÛ¿ÆÒ½Ôº³ÆÆäÔâµ½¹¥»÷£¬£¬£¬£¬ £¬£¬£¬Ô¼50Íò¿Í»§ÐÅϢй¶


2.jpg


WolfeÑÛ¿ÆÒ½ÔºÓÚÉÏÖܶþ°µÊ¾ÆäÔâµ½¹¥»÷£¬£¬£¬£¬ £¬£¬£¬Ô¼50Íò¿Í»§ÐÅϢй¶¡£¡£¡£¡£¡£Wolfe Eye ClinicλÓÚ°®ºÉ»ªÖÝÂíЪ¶û¶Ø£¬£¬£¬£¬ £¬£¬£¬ÔÚÈ«ÖÝ40¸ö³ÇÊоùÉèÓзÖÖ§»ú¹¹¡£¡£¡£¡£¡£¹¥»÷²úÉúÓÚ2021Äê2ÔÂ8ÈÕ£¬£¬£¬£¬ £¬£¬£¬ºÚ¿ÍÒªÇó¸ÃÒ½ÔºÖ§¸¶Êê½ðÀ´½âÃÜÆäϵͳ£¬£¬£¬£¬ £¬£¬£¬µ«Æä²¢Î´Ö§¸¶¡£¡£¡£¡£¡£ÔÚ·¢ÏÖÈëÇֺ󣬣¬£¬£¬ £¬£¬£¬Ò½ÔºÁ¢¿Ì·¢Õ¹µ÷²é£¬£¬£¬£¬ £¬£¬£¬²¢ÓÚÉϸöÔ·¢ÏÖ»¼Õ߼ͼ¿ÉÄÜÒѱ»Ð¹Â¶¡£¡£¡£¡£¡£¸ÃÒ½Ôº½«ÎªÊÜÓ°ÏìµÄ»¼ÕßÌṩһÄêµÄÐÅÓþ¼à¿ØºÍÉí·ÝµÁÓñ£»£» £»£»£»¤·þÎñ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/cyberattack-exposes-eye-clinic/


3.΢ÈíÈÏ¿ÉÆäÔøÇ©Ê𺬶ñÒârootkitµÄÇý¶¯·¨Ê½Netfilter


3.jpg


΢ÈíÈÏ¿ÉÆäÇ©ÊðµÄÓÃÓÚWindowsµÄµÚÈý·½Çý¶¯·¨Ê½NetfilterÔ̺¬¶ñÒârootkit¡£¡£¡£¡£¡£ÉÏÖÜ£¬£¬£¬£¬ £¬£¬£¬G DataµÄ°²È«¾¯±¨ÏµÍ³ÏóÕ÷ÁËÒ»¸ö¿´ËÆÎ󱨵«ÏÖʵÉϲ¢·ÇÈç´ËµÄÇý¶¯·¨Ê½Netfilter¡£¡£¡£¡£¡£×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬ £¬£¬£¬¸ÃÀûÓõĵÚÒ»¸öC2 URL»á·µ»ØÒ»×é¸ü¶àµÄ·ÓÉ£¨URL£©£¬£¬£¬£¬ £¬£¬£¬ËüÃÇÓɹÜ·£¨¡°|¡±£©·ûºÅ·Ö¸ô£¬£¬£¬£¬ £¬£¬£¬ÆäÖÐÿһ¸ö¶¼Óе¥¶ÀÖ÷ÕÅ£¬£¬£¬£¬ £¬£¬£¬ÀýÈçÒÔ¡°/p¡±½áβµÄURLÓë´úÀíÉèÖÃÓйØÁª¡¢"/s"Ìṩ±àÂëµÄ³Á¶¨ÏòIP¡¢¡°/v£¿£¿£¿£¿£¿£¿£¿¡±Óë¶ñÒâÈí¼þµÄ×ÔÎÒ¸üÐÂÖ°ÄÜÓйØ¡£¡£¡£¡£¡£¹¥»÷Õß¿Éͨ¹ýÌØÔìµÄ¶þ½øÔìÎļþÀûÓøÃÀûÓ㬣¬£¬£¬ £¬£¬£¬ÌáÒé´ó¹æÄ£µÄ¹©¸øÁ´¹¥»÷¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/microsoft-netfilter-driver-sign-rootkit-malware/


4.ÃÀ¹úFINRAÖÒ¸æ¼Ù×°³ÉFINRA SupportµÄ´¹µö¹¥»÷»î¶¯


4.jpg


ÃÀ¹ú֤ȯҵ¼à¹Ü»ú¹¹FINRAÖÒ¸æ¼Ù×°³ÉFINRA SupportµÄ´¹µö¹¥»÷»î¶¯¡£¡£¡£¡£¡£FINRAÊǵÐÔÖÊÚȨµÄ·ÇͶ»ú×éÖ¯£¬£¬£¬£¬ £¬£¬£¬Õƹܼà¹ÜÔÚÃÀ¹ú¹«¿ª»î¶¯µÄËùÓÐÂòÂôËùÊг¡ºÍ֤ȯ¹«Ë¾£¬£¬£¬£¬ £¬£¬£¬Ã¿×ÊÖÊÎöÊýÊ®ÒÚ¸öÊг¡ÂòÂô¡£¡£¡£¡£¡£ÕâЩÓʼþÐû³ÆÀ´×Ô¡°FINRA SUPPORT¡±£¬£¬£¬£¬ £¬£¬£¬µØÖ·Îª¡°support@westour.org¡±¡£¡£¡£¡£¡£¸ÃÓʼþÒªÇóÊÕ¼þÈ˰ÑÎÈÏÂÃæËù¸½µÄ»ã±¨²¢Á¢¼´»Ø¸´£¬£¬£¬£¬ £¬£¬£¬»¹Ö¸³ö¸½¼þÔ̺¬¸üÐµĹ«¹²Õþ²ßÐÅÏ¢£¬£¬£¬£¬ £¬£¬£¬µ«ÕâЩµç×ÓÓʼþ¿ÉÄܵ××ÓûÓи½¼þ¡£¡£¡£¡£¡£ÔçÔÚ½ñÄê3ÔºÍ6Ô³õ£¬£¬£¬£¬ £¬£¬£¬FINRA»¹ÖÒ¸æÁËαÔì³É¡°FINRAºÏ¹æÉ󼯡±ºÍÒÔ³ÍÖÎΪµö¶üµÄÁ½´Î´¹µö»î¶¯¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-brokerage-firms-warned-of-finra-support-phishing-attacks/


5.Ó¢¹úFrench Connection³ÆÆäÔâµ½REvilÀÕË÷Èí¼þ¹¥»÷


5.jpg


Ó¢¹úʱÉй«Ë¾French Connection£¨FCUK£©³ÆÆäÔâµ½REvilÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£¡£¡£ÔÚÕâ´Î¹¥»÷ÖУ¬£¬£¬£¬ £¬£¬£¬ºÚ¿Í·ÛËéÁËFCUKµÄ·þÎñÆ÷£¬£¬£¬£¬ £¬£¬£¬ÇÔÈ¡¹«Ë¾µÄ´óÁ¿Êý¾Ý£¬£¬£¬£¬ £¬£¬£¬²¢¹«¿ªÁ˸߹ܵÄÓ×ÎÒÐÅÏ¢×÷ΪÑù±¾£¬£¬£¬£¬ £¬£¬£¬Ô̺¬Ê×´´È˼æCEO Stephen Marks¡¢CFO Lee WilliamsºÍCOO Neil WilliamsµÄ»¤ÕÕºÍÉí·Ý֤ɨÃè¼þ¡£¡£¡£¡£¡£¸Ã¹«Ë¾°µÊ¾£¬£¬£¬£¬ £¬£¬£¬ÔÚ·¢ÏÖ¹¥»÷ºóÁ¢¼´¹Ø¹ØÁËËùÓÐÊÜÓ°ÏìµÄϵͳ£¬£¬£¬£¬ £¬£¬£¬Ä¿Ç°ÔÚ¸´Ô­Æäϵͳ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.theregister.com/2021/06/24/french_connection_says_fcuk_as/


6.Aqua Security°ä²¼Õë¶ÔÈÝÆ÷µÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨


6.jpg


Aqua Security°ä²¼ÁËÕë¶ÔÈÝÆ÷µÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£»ã±¨Ö¸³ö£¬£¬£¬£¬ £¬£¬£¬ÔÚÁù¸öԵŦ·òÀ£¬£¬£¬ £¬£¬£¬AquaµÄÃÛ¹Þ±»¹¥»÷ÁË17358 ´Î£¬£¬£¬£¬ £¬£¬£¬±ÈÁù¸öÔÂǰÔö³¤ÁË26%¡£¡£¡£¡£¡£50%ÅäÖÃÃýÎóµÄDocker APIÔÚ56·ÖÖÓÄÚ»áÔâµ½¹¥»÷£¬£¬£¬£¬ £¬£¬£¬»úеÈ˾ùÔȱØÒªÎå¸öÓ×ʱÀ´É¨ÃèÒ»¸öеÄÃÛ¹Þ£¬£¬£¬£¬ £¬£¬£¬×î¿ìµÄɨÃèÖ»±ØÒª¼¸·ÖÖÓ£¬£¬£¬£¬ £¬£¬£¬¶ø×îÂýµÄɨÃè±ØÒª24Ó×ʱ¡£¡£¡£¡£¡£ÓòÃûÇÀ×¢ºÍƾ֤Ìî³äÊǹ¥»÷Õß¹¥»÷ÈÝÆ÷ºÍDocker¾µÏñ×î³£¼ûµÄÁ½ÖÖ·½Ê½£¬£¬£¬£¬ £¬£¬£¬ÓëÈ¥ÄêͬÆÚÏà±È£¬£¬£¬£¬ £¬£¬£¬2020ÄêϰëÄêµÄ¹¥»÷ÂÊÉÏÉýÁ˽ü600%¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://info.aquasec.com/cloud-native-threats-aqua