¼ÓÄôóÓÊÕþÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬Ð¹Â¶95Íò¿Í»§µÄÐÅÏ¢£»TeamTNTÍŻ﹥»÷¶à¸öKubernetes¼¯ÈºÖеĽü5Íò¸öIP
°ä²¼¹¦·ò 2021-05-281.¼ÓÄôóÓÊÕþÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬Ð¹Â¶95Íò¿Í»§µÄÐÅÏ¢

¼ÓÄôóÓÊÕþ֪ͨ¿Í»§£¬ÓÉÓÚµÚÈý·½¹©¸øÉÌCommport CommunicationsϰȾÀÕË÷Èí¼þ£¬ÆäÐÅÏ¢ÒѾй¶¡£¼ÓÄôóÓÊÕþÊǼÓÄôóÖØÒªµÄÓÊÕþÔËÓªÉÌ£¬·þÎñÓÚ1650Íò¼ÓÄôó¾ÓÃñºÍóÒ×µØÖ·¡£Õâ´ÎÊÂÎñ¹²Ó°ÏìÁ˸ù«Ë¾µÄ44¸ö´óÐÍóÒ׿ͻ§ºÍ950000¸öÊÕ¼þÈË£¬Ð¹Â¶ÁË·¢¼þÈ˺ÍÊÕ¼þÈ˵ÄÁªÏµÐÅÏ¢¡¢ÐÕÃûºÍÓʼĵØÖ·µÈÐÅÏ¢¡£ÔçÔÚ2020Äê12Ô£¬Lorenz¾Í³ÆÆä¹¥»÷ÁËCommport Communications£¬²¢ÇÔÈ¡ÁË35.3 GBµÄÊý¾Ý¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/canada-post-hit-by-data-breach-after-supplier-ransomware-attack/
2.TeamTNTÍŻ﹥»÷¶à¸öKubernetes¼¯ÈºÖеĽü5Íò¸öIP

Ç÷Ïò¿Æ¼¼µÄ×êÑÐÈËÔ±·¢ÏÖTeamTNTÍŻ﹥»÷¶à¸öKubernetes¼¯ÈºÖеĽü5Íò¸öIP¡£KubernetesÊÇÒ»¸ö¿ªÔ´µÄÈÝÆ÷±àÅÅϵͳ£¬ÓÃÓÚ×Ô¶¯»¯ÍÆËã»úÀûÓ÷¨Ê½µÄ²¿Êð¡¢À©´óºÍÖÎÀí¡£¹¥»÷²úÉúÔÚ3ÔÂÖÁ5Ô£¬´óÎÞÊý±»¹¥»÷µÄ½ÚµãÀ´×ÔÖйúºÍÃÀ¹ú¡£TeamTNT½©Ê¬ÍøÂç×Ô2020Äê4ÔÂÆðÍ·»îÔ¾£¬ÖØÒªÕë¶ÔDocker£¬µ«ÊÇ×Ô8ÔÂÒÔÀ´ÆðÍ·Õë¶ÔÅäÖÃÃýÎóµÄKubernetes¼¯Èº¡£¹¥»÷ÕßʹÓÃÁËÔÚVirusTotalÖмì²âÂʺܵ͵ľ籾kube.lateral.sh£¬ÒÔ¼°Á½¸ö¿ªÔ´¹¤¾ßmasscanºÍZgrab¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/118306/digital-id/kubernetes-clusters-teamtnt.html
3.·¨¹ú¾¯·½ÀúʱÊýÔ³ɹ¦²é·â°µÍøLe MondeParall¨¨le

·¨¹ú¹ú¶Èµý±¨ºÍº£¹Øµ÷²é¾Ö£¨DNRED£©ÀúʱÊýÔ£¬ÖÕÓڳɹ¦²é·â°µÍøLe MondeParall¨¨le¡£ÕâÊǼÌ2018ÄêµÄBlack HandºÍ2019ÄêµÄFrench Deep Web MarketÖ®ºó£¬±¾µØ¾¯·½²é·âµÄµÚÈý¸ö´óÐÍ·¨ÓïÆ½Ì¨¡£¸Ãƽ̨×Ô2020ËêÊׯðÍ·»îÔ¾£¬Ìṩ¸÷Àà²úÆ·ºÍ·þÎñ£¬Ô̺¬±»µÁµÄÒøÐп¨Êý¾Ý¡¢¶¾Æ·¡¢Î±ÔìÎļþºÍ±øÆ÷µÈ¡£Æ¾¾Ý·¨¹ú¾¼Ã²¿(Ministry of the Economy)ÉêÃ÷£¬¾¯·½¿ÛÁôÁËÁ½ÃûÖÎÀíÔ±£¬²¢²é»ñÁ˸÷ÀàÍÆËã»úÉ豸¡¢ÐéαÎļþ¡¢ÒøÐп¨ÒÔ¼°ÊýǧŷԪµÄ¼ÓÃÜÇ®±Ò¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/118295/deep-web/le-monde-parallele-dark-web.html
4.ºÚ¿ÍÔÚ°µÍøÏúÊÛ½ü1300Íò¸öDailyQuizÓû§µÄÐÅÏ¢

The Record³Æ£¬ºÚ¿ÍÇÔÈ¡ÁË1300Íò¸öDailyQuizÓû§µÄ¾ßÌåÐÅÏ¢¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬830Íò¸öÕË»§µÄÃ÷ÎÄÃÜÂë¡¢µç×ÓÓʼþºÍIPµØÖ·£¬²¢ÒÔԼĪ2000ÃÀÔª¼ÓÃÜÇ®±ÒµÄ¼ÛÖµÏúÊÛ¡£µ«´Ë¿ÌÕâЩÐÅÏ¢ÔÚ°²È«×êÑÐÈËÔ±ÊÖÖУ¬Äܹ»¹«¿ª½Ó¼û¡£DailyQuizµÄÓû§Äܹ»Í¨¹ý½Ó¼ûHave I been PwnedÍøÕ¾£¬À´²éÎÊ×Ô¼ºµÄÐÅÏ¢ÊÇ·ñÒѾ±»Ð¹Â¶¡£Ä¿Ç°£¬DailyQuiz»Ø¾ø¶Ô´ËʽøÆÀÂÛ¡£
ÔÎÄÁ´½Ó£º
https://www.ehackingnews.com/2021/05/plaintext-passwords-of-83-million-users.html
5.GoogleÅû¶Rowhammer¹¥»÷µÄбäÖÖHalf-Double

GoogleµÄ×êÑÐÈËÔ±Åû¶ÁËRowhammer¹¥»÷µÄбäÖÖHalf-Double¡£´ËÀ๥»÷·¢ÏÖÓÚ2014Äê,ͨ¹ý³Á¸´½Ó¼û´æ´¢ÐпÉÄÜ»áÒýÆð×ãÒÔÇÖÈÅ´æ´¢ÔÚÏàÁÚÐÐÖеĵç×Ó×ÌÈÅ£¬´Ó¶øÔÊÐí²»ÊÜÐÅÀµµÄ´úÂëÈÆ¹ýɳÏä²¢ÊÕÊܽÚÔìϵͳ¡£Îª´Ë£¬¹©¸øÉÌÀûÓÃÖ¸±êÐÐˢУ¨Target Row Refresh£¬TRR£©À´»º½â´ËÀ๥»÷¡£×êÑÐÈËÔ±°µÊ¾£¬ÐµÄHalf-Double¹¥»÷ÀûÓÃÁ˵ײã¹è»ù°åµÄ¹ÌÓиöÐÔ£¬Äܹ»Èƹýµ±Ç°ËùÓзÀÓù´ëÊ©¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/05/google-researchers-discover-new-variant.html
6.°¢À˹¼ÓÎÀÉú²¿³ÆÆäÔâµ½¹¥»÷£¬¹ÙÍøÁÙʱÎÞ·¨½Ó¼û

ÃÀ¹ú°¢À˹¼ÓÎÀÉúºÍÉç»á·þÎñ²¿£¨DHSS£©³ÆÆäÔâµ½¶ñÒâÈí¼þ¹¥»÷£¬¹ÙÍøÁÙʱÎÞ·¨½Ó¼û¡£Õâ´Î¹¥»÷²»½öÖжÏÁËDHSSÍøÕ¾£¬»¹Ó°ÏìÁ˺ܶàÆäËû·þÎñ£¬Ô̺¬°¢À˹¼ÓÖÝÐÔÃü¼Í¼ϵͳ¡¢DHSSÊ¢Ðв¡Ñ§¹«±¨ºÍѧÌÃÏò¹«¹²ÎÀÉú»ã±¨ÒßÃçÊý¾ÝµÄϵͳSAGEµÈ¡£¸ÃÖݵĹÙÔ±²¢Î´Ð¹Â©Óйع¥»÷µÄ¼¼Êõϸ½Ú£¬Ò²²»Ã÷ÏÔÊÇ·ñΪÀÕË÷Èí¼þ¹¥»÷£¬µ«Æäй©DHSSÍøÕ¾ÊÇÔÚ2021Äê5ÔÂ17ÈÕÍíÉÏÖжϵ쬽ØÖÁ´Ë¿Ì¸ÃÍøÕ¾ÈÔ´¦ÓÚÍÑ»ú״̬¡£
ÔÎÄÁ´½Ó£º
https://latesthackingnews.com/2021/05/26/alaska-health-department-site-went-offline-after-malware-attack/


¾©¹«Íø°²±¸11010802024551ºÅ