¾ÅÓÎÀÏ¸ç¿Æ¼¼ÍþвÇ鱨Öܱ¨-2020ÄêµÚ1ÖÜ£¨2019.12.30-2020.1.5£©
2020-01-05
|
Ò»¡¢ °µÍøÇ鱨 |
|
·ÖÀà |
·¢Ã÷ʱ¼ä |
°µÍøÉúÒâÎÊÌâ |
|
»¥ÁªÍø |
2019-12-29 21:38 |
2018Äê8ÔÂij´û¿îÍø´ûÆò´ûÊý¾Ý78663Ìõ |
|
»¥ÁªÍø |
2019-12-29 21:15 |
¼òÀúÊý¾ÝijÕÐÆ¸ÍøÕ¾Ð¡ÎÒ˽¼Ò¼òÀúÊý¾Ý373G |
|
½ðÈÚ |
2019-12-29 21:23 |
¹ÉÃñÊý¾Ý26ÍòÌõÉÏÊй«Ë¾Ö¤È¯¹ÉÃñÊý¾Ý |
|
½ðÈÚ |
2019-12-29 21:24 |
¹ÉÃñÊý¾Ý2019Äê3Ô·ݵ½5Ô·ݸ÷´ó֤ȯ¹ÉÃñÊý¾Ý22ÍòÌõ |
|
»¥ÁªÍø |
2019-12-29 21:29 |
Íø´ûÊý¾Ý2019Äê5Ô ij½è´û¿îÉóºËÓû§Êý¾Ý3WÌõ |
|
»¥ÁªÍø |
2019-12-29 09:29 |
ijÉ罻ƽ̨3100w+5000ÓÎÏ·ÐÐҵͨѶ¼ |
|
»¥ÁªÍø |
2020-01-01 10:55 |
ij²Æ¾Íø×¢²áÓû§72WÌõ£¬°üÀ¨¹ÉÃñ½ðÈÚͶ×ÊÀí²ÆÊý¾Ý |
¶þ¡¢ ÈÈÃÅ×ÊѶ
1. 2019BotnetÇ÷ÊÆ±¨¸æ
¡¾¸ÅÊö¡¿
ͨ¹ý¶ÔBotnetµÄÒ»Á¬Ñо¿ºÍ×·×Ù£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼·üӰʵÑéÊÒÐû²¼¡¶2019 BotnetÇ÷ÊÆ±¨¸æ¡·£¬´ÓÈëÇÖ¡¢Èö²¥·½·¨ºÍÍþвÖÖÀ༰·½·¨µÈ·½ÃæÉî¶ÈÆÊÎö2019ÄêBotnetÍþвÇ÷ÊÆ¡£ÈëÇÖÓëÈö²¥·½Ã棬Èõ¿ÚÁî¡¢Ô¶³ÌÎó²îʹÓúʹ¹ÂÚÓʼþÒÀÈ»ÊÇÈýÖÖÖ÷ÒªÊֶΣ»GoÓïÑÔ¶ñÒâÈí¼þ×é³ÉµÄBotnetÒ»Ö±Éú³¤£¬±¬ÆÆÐͼÒ×åGoBrut¼´ÊÇÆäÖÐÖ®Ò»£»DDoS¶ñÒâ¼Ò×å½øÒ»²½¼¯ÖÐÓÚÉÙÊý¼¸¸ö¼Ò×壬UDP·ººé¹¥»÷±ÈÀýÓÐËùÉÏÉý£»ÀÕË÷¼Ò×åÒ»Á¬Ä±È¡±©Àû£¬Ð§·ÂÕßÒ»Ö±Ó¿ÏÖ£¬¹¤Òµ»¯Ë®Æ½Ò»Ö±ÔöÇ¿£»ÒøÐÐľÂíÓëÀÕË÷¼Ò×åÖ®¼äÏàÖúÔ½·¢ÆµÈÔ£¬Ê¹µÃÊܺ¦ÕßÍ¬Ê±ÃæÁÙ¶àÖØÇ徲Σº¦£»¹ã¸æÀ¦°óÈí¼þÒ»Á¬Í¨¹ý¾²Ä¬×°ÖÃ׬Ǯ£¬Í¬Ê±Ò²ÊÇÈö²¥¶ñÒâÈí¼þµÄÖ÷ÒªÇþµÀ¡£
¡¾²Î¿¼Á´½Ó¡¿
http://blog.nsfocus.net/2019-botnet-nsfocus/
2. ÒÆ¶¯¶ñÒâÈí¼þÓëAPTÔ˶¯
¡¾¸ÅÊö¡¿
BlackBerryÐû²¼¡¶Òƶ¯¶ñÒâÈí¼þÓëAPTÔ˶¯¡·±¨¸æ£¬±¨¸æÆÊÎöAPTÍþв×é֯ʹÓÃÒÆ¶¯×°±¸¿ªÕ¹µÄÍøÂçÌØ¹¤Ô˶¯ÇéÐΡ£Æ¾Ö¤µØÇø»®·Ö£¬ÆÊÎöÁËÒÑÖªºÍз¢Ã÷µÄÍþв×éÖ¯¾ÙÐеÄÒ»ÔÙ¹¥»÷Ô˶¯¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.blackberry.com/content/dam/blackberry-com/asset/enterprise/pdf/direct/mobile-malware-and-apt-espionage-report.pdf
3. ΢ÈíËßËÏÓ볯ÏÊÓйصÄÍþв×éÖ¯
¡¾¸ÅÊö¡¿
¿ËÈÕ΢ÈíÆðËßÍþв×éÖ¯Thallium£¬²¢½Óµ½·¨ÔºÏÂÁîʹÆäÄܹ»¿ØÖÆThallium×éÖ¯ÓÃÓÚ¿ªÕ¹ÓªÒµµÄ50¸öÓò¡£Í¨¹ý´Î²Ù×÷£¬ÕâЩվµã½«²»ÔÙ±»ÓÃÀ´Ö´Ðй¥»÷¡£ThalliumÊÇÒ»¸öÀ´×Ô³¯ÏʵÄÍþв×éÖ¯£¬ÒÔÇÔÈ¡Ãô¸ÐÐÅϢΪĿµÄ£¬Êܺ¦Õß°üÀ¨Õþ¸®Ö°Ô±¡¢´óѧÊÂÇéÖ°Ô±¡¢¹Ø×¢ÌìÏÂÇå¾²ºÍÈËȨ×éÖ¯³ÉÔ±£¬Ö÷ÒªÕë¶ÔÃÀ¹ú¡¢ÈÕ±¾ºÍº«¹ú¡£
¡¾²Î¿¼Á´½Ó¡¿
https://blogs.microsoft.com/on-the-issues/2019/12/30/microsoft-court-action-against-nation-state-cybercrime/
4. MazeÀÕË÷Èí¼þ¹¥»÷ÃÀ¹úµçÏßµçÀÂÖÆÔìÉÌ
¡¾¸ÅÊö¡¿
2019Äê12Ô£¬ÃÀ¹úµçÏߺ͵çÀÂÖÆÔìÉ̱»¹¥»÷£¬¹¥»÷Õß²»·¨»á¼ûÆäÍøÂç¡¢ÇÔÈ¡Êý¾Ý¡¢¼ÓÃÜÅÌËã»ú²¢ÔÚÐû²¼Î´Ö§¸¶Êê½ðµÄÊý¾Ý£¬Ô˶¯ÖÐʹÓÃMazeÀÕË÷Èí¼þÇÔÈ¡120GBµÄÊý¾Ý²¢¼ÓÃÜÁË878̨װ±¸¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.bleepingcomputer.com/news/security/maze-ransomware-sued-for-publishing-victims-stolen-data/
5. BRONZE PRESIDENT×éÖ¯Õë¶Ô·ÇÕþ¸®»ú¹¹µÄ¹¥»÷
¡¾¸ÅÊö¡¿
BRONZE PRESIDENTÊÇÒ»¸öÓëÖйúÓйصÄÍþв×éÖ¯£¬ÖÁÉÙ´Ó2014Äê×îÏÈ»îÔ¾£¬¸Ã×éÖ¯½üÆÚÕë¶Ô·ÇÕþ¸®×éÖ¯ÒÔ¼°¶«ÄÏÑǹú¼ÒµÄÕþÖκÍÖ´·¨×éÖ¯¾ÙÐÐÍøÂçÌØ¹¤Ô˶¯£¬¹¥»÷Ô˶¯ÖÐͬʱʹÓÃרÓк͹ûÕæ¿ÉÓõŤ¾ß£¬°üÀ¨PlugX¡¢Cobalt Strike¡¢ORat¡¢RCSession¡¢Nbtscan¡¢WmiexecµÈ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.secureworks.com/research/bronze-president-targets-ngos
6. ÐÂľÂíLampionʹÓô¹ÂÚÓʼþÈö²¥
¡¾¸ÅÊö¡¿
½üÆÚ·¢Ã÷´¹ÂÚÓʼþ¹¥»÷Ô˶¯Èö²¥ÃûΪLampionµÄľÂí£¬Óʼþαװ³ÉÆÏÌÑÑÀÕþ¸®²ÆÎñ˰ÊÕ²¿·Ö¡¢ÒÔ˰ÊÕÉ걨ΪÖ÷ÌâÓÕµ¼Óû§£¬Ò»µ©Óû§µã»÷ÓʼþÖÐÁ´½Ó£¬¾Í»áÏÂÔØ°üÀ¨LampionľÂíµÄ¶ñÒâѹËõÎļþ£¬¸ÃľÂí¿ÉÍøÂçÅÌËã»ú´ÅÅÌ¡¢·¿ªµÄ´°¿Ú¡¢¼ôÌù°åºÍÒøÐÐÆ¾Ö¤µÄÏêϸÐÅÏ¢¡£
¡¾²Î¿¼Á´½Ó¡¿
https://seguranca-informatica.pt/targeting-portugal-a-new-trojan-lampion-has-spread-using-template-emails-from-the-portuguese-government-finance-tax/

¾ÅÓÎÀϸçÔÆ





