Kaspersky°ä²¼2020ÄêµÚÒ»¼¾¶ÈDDoS¹¥»÷Ç÷Ïò»ã±¨£»µÂÖÝ·¨ÔºÏµÍ³ÔâÀÕË÷Èí¼þ¹¥»÷

°ä²¼¹¦·ò 2020-05-12

1.Kaspersky°ä²¼2020ÄêµÚÒ»¼¾¶ÈDDoS¹¥»÷Ç÷Ïò»ã±¨


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Kaspersky°ä²¼ÁË2020ÄêµÚÒ»¼¾¶ÈDDoS¹¥»÷Ç÷Ïò»ã±¨¡£Æ¾¾Ý»ã±¨ÃèÊö£¬µÚÒ»¼¾¶ÈÊܵ½DDoS¹¥»÷×î¶àµÄÊÇÒ½ÁÆ×éÖ¯¡¢½»¸¶·þÎñÒÔ¼°ÓÎÏ·ºÍ½ÌÓýÆ½Ì¨ÍøÕ¾£¬ÀýÈ磬3ÔÂÖÐÑ®¹¥»÷ÕßÊÔͼ¹¥»÷ÃÀ¹úÎÀÉúÓ빫¹²·þÎñ²¿£¨HHS£©ÍøÕ¾¡£²¢ÇÒ£¬Ïà±Å×ÚÉÏÒ»¼¾¶È£¬±¾¼¾¶ÈDDoS¹¥»÷µÄÊýÁ¿ºÍÖÊÁ¿¾ùÏÔÖøÔö³¤£¬¹¥»÷³ÖÐø¹¦·òÒ²ÓÐËù¼Ó³¤¡£Õë¶Ô½ÌÓýºÍÐÐÕþÐÐÒµµÄDDoS¹¥»÷ÊýÁ¿Óë2019ÄêͬÆÚÏà±ÈÔö³¤ÁËÁ½±¶£¬Îª19£¥¡£½©Ê¬ÍøÂçÉ¢²¼×î¶àµÄ¹ú¶ÈΪ°ÍÎ÷£¬ÆäIPµØÖ·Õ¼12.25£¥£¬Æä´ÎÊÇÖйú£¨11.51£¥£©ºÍ°£¼°£¨7.87£¥£©¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/ddos-attacks-in-q1-2020/96837/


2.µÂÖÝ·¨ÔºÏµÍ³ÔâÀÕË÷Èí¼þ¹¥»÷£¬ÍøÂç±»ÆÈ½ûÓÃ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


µÂ¿ËÈøË¹ÖÝ˾·¨²¿ÃÅÓÚ5ÔÂ11ÈÕ°ä·¢ÉêÃ÷£¬ÆäÉÏËß·¨ÔººÍÖÝ˾·¨»ú¹¹µÄ·¨ÔºÖÎÀí°ì¹«ÊÒ£¨OCA£©ÔÚ·ÖÖ§»ú¹¹ÍøÂç·¢ÏÖÁËÒ»´ÎÑϳÁµÄÍøÂç¹¥»÷ÊÂÎñ£¬²úÉú¹¦·òΪ5ÔÂ8ÈÕÍíÉÏ£¬²¢È·ÒÔΪÀÕË÷Èí¼þ¹¥»÷¡£Ä¿Ç°£¬Êܵ½Ó°ÏìµÄÍøÕ¾ºÍ·þÎñÆ÷µØµãµÄ·ÖÖ§ÍøÂçÒѾ­±»½ûÓã¬ÒÔÔ¤·À¶ñÒâÈí¼þ´«²¼µ½ÆäËûϵͳ£¬¸ÃÍøÂç»áÒ»Ïòά³Ö½ûÓÃ״ֱ̬µ½ÎÊÌâ½â¾ö¡£OCA°µÊ¾ÔÚµ÷²é´ËÊ£¬²¢ÊÔͼ¸´Ô­ÊÜÓ°ÏìÊý¾Ý£¬¶øÓÉÓÚ±à×ëºÍ¹²ÏíÎļþµÄºÏ×÷¹¤¾ßÒÔ¼°µç×ÓÓʼþÒÑǨáãÖÁÔÆÏµÍ³ÖУ¬Òò¶øÎ´Êܵ½Ó°Ï죬ʹ²¿ÃÅ·ÖÖ§»ú¹¹ºÍ·¨Ôº¿ÉÄܳÖÐø·¢Õ¹ÒµÎñºÍÈÕ³£»î¶¯¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/texas-courts-hit-by-ransomware-network-disabled-to-limit-spread/


3.ÀÕË÷Èí¼þSodinokibiÐÂÖ°ÄÜ£¬¿É¼ÓÃÜËø¶¨µÄÎļþ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ÀÕË÷Èí¼þSodinokibiÐÂÔöÁËÒ»ÏîÖ°ÄÜ£¬¼´Äܹ»¼ÓÃÜÔÚ±»ÁíÒ»¸ö¹ý³Ì´ò¿ª»òËø¶¨µÄÎļþ£¬¸ÃÖ°ÄÜʹËüÄܹ»¶ÔÊܺ¦Õߵĸü¶àÎļþ½øÐмÓÃÜ¡£Êý¾Ý¿â»òÓʼþ·þÎñÆ÷ͨ³£»áËø¶¨ËüÃÇÒÑ´ò¿ªµÄÎļþ£¬ÒÔ·ÀÊý¾ÝÒòÁ½¸öͬʱдÈëÎļþµÄ¹ý³Ì¶ø·ÛË飬ͬʱ»¹Äܹ»Ô¤·ÀÀÕË÷Èí¼þ¶ÔËüÃǽøÐмÓÃÜ¡£×êÑÐÈËÔ±·¢ÏÖSodinokibi´Ë¿ÌÔÚʹÓÃWindows Restart Manager  APIÀ´¹Ø¹ØÆäËû¹ý³Ì£¬´Ó¶ø¿ªÊÍËø¶¨ÎļþÒÔ½øÐмÓÃÜ¡£Òò¶ø£¬Sodinokibi´Ë¿Ì¿ÉÄܼÓÃܸü¶àÎļþ£¬ÓÈÆäÊǹؼüÎļþ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/sodinokibi-ransomware-can-now-encrypt-open-and-locked-files/


4.΢ÈíºÍÓ¢ÌØ¶û½áºÏ×êÑмì²â¶ñÒâÈí¼þµÄв½ÖèSTAMINA


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


΢ÈíºÍÓ¢ÌØ¶û×î½üºÏ×÷·¢Õ¹ÁËÃûΪSTAMINAµÄ×êÑÐÏîÄ¿£¬Ö¼ÔÚË÷Çó¼ì²âºÍ·ÖÀà¶ñÒâÈí¼þµÄв½Öè¡£¸ÃÏîÄ¿ÒÀÀµÓÚÒ»ÖÖм¼Êõ£¬½«¶ñÒâÈí¼þÑù±¾×ª»»³É»Ò¶ÈͼÏñ£¬¶øºóɨÃèͼÏñ£¬Ñ°ÕÒÌØ¶¨ÓÚ¶ñÒâÈí¼þÑù±¾µÄÎÆÀíºÍ½á¹¹Ä£Ê½¡£Ê×ÏÈ»ñÈ¡ÊäÈëÎļþ²¢½«Æä¶þ½øÔì´ó¾Öת»»ÎªÔ­Ê¼ÏñËØÊý¾ÝÁ÷£¬¶øºó½«¸ÃһάÏñËØÁ÷ת»»Îª2DÕÕÆ¬£¬ÒÔ±ãͼÏñ·ÖÎöËã·¨¶ÔÆä½øÐзÖÎö¡£Î¢Èí°µÊ¾£¬ËüÌṩÁË220Íò¸öÊÜϰȾPEÎļþµÄ¹þÏ£Ñù±¾×÷Ϊ¸Ã×êÑеĻù´¡£¬Ä¿Ç°£¬STAMINAÔÚ¼ø±ðºÍ·ÖÀà¶ñÒâÈí¼þÑù±¾·½ÃæÕýÈ·ÐԸߴï99.07£¥£¬Îó±¨ÂÊΪ2.58£¥¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/microsoft-and-intel-project-converts-malware-into-images-before-analyzing-it/


5.Õë¶Ô¶íÂÞ˹µÄ´¹µö¹¥»÷Ôö³¤10±¶£¬Ç±ÔÚËðʧΪ4050ÍòÃÀÔª


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ƾ¾ÝKaspersky³¢ÊÔÊÒµÄ×êÑУ¬Õë¶Ô¶íÂÞ˹µÄÍøÕ¾Ú¿Æ­¹¥»÷´ÎÊýÔö³¤ÁË10±¶£¬´ïµ½1500Íò£¬²¢ÇÒ´ËÀàÍøÕ¾µÄÊýÁ¿Ò²Ôö³¤ÁËÒ»±¶£¬´ïµ½10000¡£Ä¿Ç°£¬×¨¼Ò²¢Ã»ÓÐ˵¶íÂÞ˹Òò¶ø¹¥»÷ËðʧÁ˼¸¶à£¬µ«Èç¹ûÿ¸öÚ¿Æ­ÍøÕ¾¶¼ÓÐÖÁÉÙÒ»¸öÓû§ÊÜÆ­£¬ÄÇô2020ÄêµÚÒ»¼¾¶ÈµÄDZÔÚËðʧ¿ÉÄܻᳬ¹ý30ÒÚ¬²¼£¨4050ÍòÃÀÔª£©¡£³¢ÊÔÊҵķÖÎöʦTatyana Sidorina°µÊ¾£¬¼Ù×°³É¹ú¶È²ÊƱµÄ¹¥»÷¾ÍÓÐ219ÖÖ£¬¶øÔÚÈ¥Äê¸ù»ùÉÏûÓдËÀ๥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.ehackingnews.com/2020/05/russians-began-to-click-on-scam-sites.html


6.ÒßÇéÔ­Òò£¬Black HatºÍDEF CON½«ÒÔÊÓÆµ»áÒé´ó¾Ö½øÐÐ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ÓÉÓÚCOVID-19£¬Ò»ÄêÖÐ×î´óµÄÁ½´ÎÍøÂ簲ȫ»áÒéBlack HatºÍDEF CONÈ¡µÞÁËÏßϵĻ£¬²¢°ä·¢Ñ¡È¡ÊÓÆµ»áÒéµÄ´ó¾Ö½øÐС£Æð³õ£¬Á½³¡»áÒé´òËãÓÚ2020Äê8ÔÂÔÚÀ­Ë¹Î¬¼Ó˹½øÐУ¬Black Hat 8ÔÂ1ÈÕÖÁ8ÔÂ6ÈÕ£¬DEF CON 8ÔÂ7ÈÕÖÁ8ÔÂ9ÈÕ¡£ºóÀ´ÓÉÓÚÒßÇé¸ÄΪÏßÉÏģʽ£¬µ«ÈÕÆÚÉÐδ¸ü¸Ä£¬Á½¸ö»áÒé´òË㽫ÔÚÆäÏÈǰ°ä·¢µÄÈÕÆÚ½øÐУ¬²¢»áʵʱֱ²¥Óë²Î»áÕߵĶԻ°¡£DEF CON¾­ÀíJeff Moss °µÊ¾£¬Ã÷ÄêµÄ»áÒé´òËãΪÏÖ³¡»î¶¯£¬ÓÚ2021Äê8ÔÂ5ÈÕÖÁ8ÈÕ½øÐС£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/black-hat-and-def-con-security-conferences-to-take-place-in-a-virtual-format/