ÿÖÜÉý¼¶²¼¸æ-2022-03-22
°ä²¼¹¦·ò 2022-03-22ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | TCP_ľÂí_jhProtominer(Protominer)_³¢ÊÔÏνӿó³Ø(PTS) |
°²È«ÀàÐÍ£º | È䳿²¡¶¾ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËjhProtMinerľÂí¡£jhProtMinerÊÇÍÚÈ¡Protoshares(PTS£¬±ÈÌØ¹É)µÄ¸ß»úÄÜÍÚ¿ó·¨Ê½£¬ËüʹÓÃ·ÖÆçµÄËã·¨£¬ÒÔ¾ÍÒåÍÚ¾ò¿ìÂÊΪ¼ÛÖµ£¬ÔÊÐíÿ¸öÏß³ÌËÁÒâʹÓÃÄÚ´æ¡£ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£Õ¼ÓÃÓû§×ÊÔ´½øÐÐÍÚ¿ó¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTPS_ľÂí_¿ÉÒÉ¿ó³ØÖ÷ÓòÃû½âÎöÒªÇó8 |
°²È«ÀàÐÍ£º | È䳿²¡¶¾ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½¿ÉÒÉÍÚ¿óľÂíÊÔͼÏνÓÓòÃû·þÎñÆ÷½âÎö¿ó³ØµØÖ·¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÍÚ¿óľÂí¡£ÍÚ¿óľÂí³¢ÊÔÏÎ½Ó¿ó³Ø£¬ÔËÐкóʹÊܺ¦Ö÷»ú±äÂý£¬¿÷ËðCPU×ÊÔ´¡£ÈôÊÇΪÓû§Õý³£½Ó¼û¿ó³ØÖ÷Ò³£¬ÔòºöÂÔ¸ÃÊÂÎñ¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_WordPress_WooCommerce²å¼þ_ËÁÒâÎļþÉÏ´«·ì϶ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýÀûÓÃWordPressWooCommerce²å¼þËÁÒâÎļþÉÏ´«·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£WordPressÊÇWordPressÈí¼þ»ù½ð»áµÄÒ»Ì×ʹÓÃPHP˵»°¿ª·¢µÄ²©¿Íƽ̨£¬¸Ãƽ̨֧³ÖÔÚPHPºÍMySQLµÄ·þÎñÆ÷ÉϼÜÉèÓ×ÎÒ²©¿ÍÍøÕ¾¡£WooCommerceÊÇÒ»¸öµÄ¿ªÔ´µç×ÓÉÌÎñ½â¾ö¹æ»®¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_WordPress_blaze_manage_ËÁÒâÎļþÉÏ´«·ì϶ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýÀûÓÃWordPressµÄblaze_manageÒ³Ãæ½øÐÐËÁÒâÎļþÉÏ´«·ì϶¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£WordPressÊÇWordPressÈí¼þ»ù½ð»áµÄÒ»Ì×ʹÓÃPHP˵»°¿ª·¢µÄ²©¿Íƽ̨£¬¸Ãƽ̨֧³ÖÔÚPHPºÍMySQLµÄ·þÎñÆ÷ÉϼÜÉèÓ×ÎÒ²©¿ÍÍøÕ¾¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_beescms_ÈÏÖ¤ÈÆ¹ý |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | BEESCMSV4.0_R_20160525°æ±¾ÔÚ²ÎÊý´«µÝʱʹÓÃÁ˲»°²È«µÄ·½Ê½£¬Ê¹ÓÃÊý×é¼üÖµ×÷Ϊ±äÁ¿Öµ¡£µ±±äÁ¿ÖÐÓÐͬÃûµÄÔªËØÊ±£¬¸Ãº¯ÊýĬÈϽ«ÔÓеÄÖµ¸ø¸²¸Çµô£¬Ôì³ÉÁ˱äÁ¿¸²¸Ç·ì϶¡£µ¼Ö¹¥»÷ÕßÄܹ»Í¨¹ý´Ë·ìÏ¶ÈÆ¹ýµÇ¼ÈÏÖ¤£¬Ê¹ÓÃÖÎÀíÔ±Éí·ÝµÇ¼ºó¶Ü¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_PHP168-cache-adminlogin_logs.php_ËÁÒâ´úÂëÖ´ÐÐ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | PHP168ÕûÕ¾ÊÇPHPÁìÓòµ±Ç°Ö°ÄÜ×î׳´óµÄ½¨Õ¾ÏµÍ³£¬´úÂëÈ«Êý¿ªÔ´£¬¿É¼«Æä·½±ãµÄ½øÐжþ´Î¿ª·¢£¬ËùÓÐÖ°ÄÜÄ£¿éÄܹ»×ÔÓÉ×°ÖÃÓëɾ³ý£¬Ó×ÎÒÓû§ÆëÈ«Ãâ·ÑʹÓá£Ëüƾ½è×Å×ÔÉíµÄ׳´ó¡¢²»±ä¡¢°²È«¡¢½Ã½Ý¡¢Ò×ÓÃµÈ¶à·½ÃæµÄÓÅÊÆ,Æä°æ±¾´æÔÚËÁÒâ´úÂëÖ´ÐУ¬¿ÉÄÜ·çÏÕµ½ÏµÍ³°²È«¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_Apache-Solr_ËÁÒâÎļþ¶ÁÈ¡·ì϶[CVE-2020-13941][CNNVD-202008-850] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´ipÔÚÀûÓÃApache-Solr8.6.0°æ±¾ÖеÄËÁÒâÎļþ¶ÁÈ¡·ì϶£¬ÇÔÈ¡Ãô¸ÐÐÅÏ¢¡£ApacheSolrÊÇÒ»¸ö¿ªÔ´µÄËÑË÷·þÎñ£¬Ê¹ÓÃJava˵»°¿ª·¢¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | TCP_°²È«·ì϶_Jackson_Databind_¿ÉÒÉ·´ÐòÁл¯Àà_dbcp[CVE-2020-35491/CVE-2020-36179/CVE-2020-36181/CVE-2020-36183/CVE-2020-36186] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | JacksonÊÇÒ»¸ö¿ÉÄܽ«java¶ÔÏóÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÄܽ«JSON×Ö·û´®·´ÐòÁл¯Îªjava¶ÔÏóµÄ¿ò¼Ü¡£¹¥»÷Õß¿ÉÄÜÀûÓÃjacksonµÄ¿ÉÒÉ·´ÐòÁл¯Ààorg.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource»òorg.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_´úÂëÖ´ÐÐ_SpringSecurityOauth_´úÂë×¢Èë·ì϶[CVE-2016-4977][CNNVD-201705-1270] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´ipÖ÷»úÔÚÀûÓÃSpringµÄÃýÎóÒ³Ãæ»ú¹Ø¶ñÒâ²ÎÊý´Ó¶øµ¼ÖÂSpEL´úÂëÖ´ÐС£SpringSecurityOAuthÊÇΪSpring¿ò¼ÜÌṩ°²È«ÈÏÖ¤Ö§³ÖµÄÒ»¸öÄ£¿é¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | TCP_ľÂí_CGMiner_³¢ÊÔÏνӿó³Ø(BTC) |
°²È«ÀàÐÍ£º | È䳿²¡¶¾ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCGMinerľÂí¡£CGMinerÊÇÒ»¸öÓÃÓÚ±ÈÌØ±ÒµÄ¶àÏ̶߳à¿ó³ØFPGAºÍASIC¿ó¹¤¡£ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£Õ¼ÓÃÓû§×ÊÔ´½øÐÐÍÚ¿ó¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_Kibana_Ô¶³ÌÎļþÔ̺¬·ì϶ÀûÓÃ[CVE-2018-17246][CNNVD-201811-285] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´ipÖ÷»úÔÚÀûÓÃKibanaµÄÔ¶³ÌÎļþÔ̺¬·ì϶ÉÏ´«ÎļþÖÁ·þÎñÆ÷ËÁÒâµØÎ»£¬´Ó¶øÖ´ÐÐËÁÒâ´úÂë¡£KibanaÊÇÒ»¸ö¿ªÔ´µÄ·ÖÎöÓë¿ÉÊÓ»¯Æ½Ì¨,Éè¼Æ³öÀ´ÓÃÓÚºÍElasticsearchһ·ʹÓõģ¬Äܹ»ÓÃkibanaËÑË÷¡¢²é¿´´æ·ÅÔÚElasticsearchÖеÄÊý¾Ý¡£ |
¸üй¦·ò£º | 20220322 |
Åú¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | TCP_SpringOAuth2_SPEL_Ô¶³Ì´úÂëÖ´Ðзì϶[CVE-2018-1260][CNNVD-201805-402] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔIJÀûÓÃSpring¿ò¼ÜOAuth2Ä£¿éÔ¶³Ì´úÂëÖ´Ðзì϶¹¥»÷Ö÷ÕÅIPÖ÷»ú¡£¹¥»÷ÕßÄܹ»ÏòÊÚȨ·þÎñÆ÷ÌáÒéÊÚȨҪÇ󣬵±×ª·¢ÖÁÊÚȨÉóÅúÖÕ¶Ë£¨ApprovalEndpoint£©Ê±£¬»áµ¼ÖÂÔ¶³Ì´úÂëÖ´Ðзì϶µÄ¹¥»÷¡£·ì϶´æÔڵİ汾£ºSpringSecurityOAuth2.3-2.3.2¡¢2.2-2.2.1¡¢2.1-2.1.1¡¢2.0-2.0.14¼°ÔçÆÚ²»Ö§³Ö°æ±¾¹¥»÷³É¹¦£¬¿ÉÔ¶³ÌÖ´ÐÐËÁÒâ´úÂë¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_JACKSON_Shiro_Ô¶³Ì´úÂëÖ´ÐÐ |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÔÚÀûÓÃJACKSON-ShiroÔ¶³Ì´úÂëÖ´Ðзì϶¶ÔÖ÷ÕÅIPÖ÷»ú½øÐй¥»÷µÄÐÐΪ£¬ÊÔͼͨ¹ý´«È뾫ÐÄ»ú¹ØµÄ¶ñÒâ´úÂë»òºÅÁîÀ´ÈëÇÖÖ÷ÕÅIPÖ÷»ú¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_Nexus_Repository_Manager_3Ô¶³Ì´úÂëÖ´Ðзì϶[CVE-2020-10204][CNNVD-202004-036] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ô´IPÀûÓÃNexusRepositoryManager3ͨ¹ýadminȨÏÞ»ú¹Ø¶ñÒâjsonÖ´ÐдúÂë¡£NexusRepositoryManager3ÊÇÒ»¸öJava·þÎñÆ÷ÀûÓ÷¨Ê½¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_mini_httpd_ËÁÒâÎļþ¶ÁÈ¡·ì϶[CVE-2018-18778][CNNVD-201810-1382] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | Mini_httpdÊÇÒ»¸ö΢Ð͵ÄHttp·þÎñÆ÷£¬ÔÚÕ¼ÓÃϵͳ×ÊÔ´½ÏÓ×µÄÇé¿öÏÂÄܹ»Î¬³Ö¿Ï¶¨Ë®Æ½µÄ»úÄÜ£¨Ô¼ÎªApacheµÄ90%£©£¬Òò¶ø¿í·º±»¸÷ÀàIOT£¨Â·ÓÉÆ÷£¬»¥»»Æ÷£¬ÉãÏñÓŵȣ©×÷ΪǶÈëʽ·þÎñÆ÷¡£¶øÔ̺¬»ªÎª£¬zyxel£¬º£¿µÍþÊÓ£¬Ê÷Ý®ÅɵÈÔÚÄڵij§ÉÌµÄÆìÏÂÉ豸¶¼ÔøÑ¡È¡Mini_httpd×é¼þ¡£ACMEmini_httpd<1.30°æ±¾´æÔÚÒ»¸öËÁÒâÎļþ¶ÁÈ¡·ì϶£¬¸Ã·ì϶ԴÓÚÔÚmini_httpd¿ªÆôÐé¹¹Ö÷»úģʽµÄÇé¿öÏ£¬Óû§ÒªÇóhttp://HOST/FILE½«»á½Ó¼ûµ½µ±Ç°Ä¿Â¼ÏµÄHOST/FILEÎļþ£¬¶øµ±HOSTΪ¿Õ¡¢FILE=etc/passwdµÄʱ³½£¬ÉÏÊöÓï¾äÁ˾ÖΪ/etc/passwd¡£¿É×÷Ϊ¾ø¶Ôõè¾¶£¬¶ÁÈ¡µ½ÁË/etc/passwd£¬Ôì³ÉËÁÒâÎļþ¶ÁÈ¡·ì϶¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | TCP_ºóÃÅ_DDoS.MrBlack_ÏÎ½Ó |
°²È«ÀàÐÍ£º | ÆäËûÊÂÎñ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½Ä¾ÂíÊÔͼÏνÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPµØµãµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂíMrBlack¡£MrBlackÊÇÒ»¸ö¿çƽ̨µÄ½©Ê¬ÍøÂ磬֧³ÖWindows¡¢Linux¡£ÖØÒªÖ°ÄÜÊǶÔÖ¸¶¨Ö÷ÕÅÖ÷»úÌáÒéDDoS¹¥»÷¡£»¹Äܹ»ÏÂÔØÆäËû²¡¶¾µ½±»Ö²Èë»úе¡£¶ÔÖ¸¶¨Ö÷ÕÅÖ÷»úÌáÒéDDoS¹¥»÷¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | HTTP_°²È«·ì϶_ElasticSearch_ºÅÁîÖ´Ðзì϶[CVE-2014-3120] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¼ì²âµ½ÊÔͼͨ¹ýÀûÓÃElasticSearchÔ¶³ÌºÅÁîÖ´Ðзì϶½øÐй¥»÷µÄÐÐΪ£¬¹¥»÷ÕßÄܹ»ÀûÓø÷ì϶ִÐÐËÁÒâºÅÁî¡£ElasticSearchÊÇÒ»¸ö»ùÓÚLuceneµÄËÑË÷·þÎñÆ÷£¬»ùÓÚJava¿ª·¢¡£ElasticSearchÖ§³Ö´«È붯̬¾ç±¾£¨MVEL£©À´Ö´ÐÐһЩ¸´ÔӵIJÙ×÷£¬¶øMVEL¿ÉÖ´ÐÐJava´úÂ룬¹¥»÷ÕßÀûÓø÷ì϶Äܹ»ÔÚElasticSearch·þÎñÆ÷ÖÐÖ´ÐÐËÁÒâJava´úÂë»òºÅÁî¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | TCP_½©Ê¬ÍøÂç_Linux.AESDDOS(Dofloo)_ÏνÓC2 |
°²È«ÀàÐÍ£º | ÆäËûÊÂÎñ |
ÊÂÎñÃèÊö£º | Dofloo£¨AESDDoS£©½©Ê¬ÍøÂç´Ó±»Ï°È¾ÏµÍ³ÇÔÊØÐÅÏ¢£¬Ô̺¬²Ù×÷ϵͳ°æ±¾£¬CPUÐͺš¢¿ìÂʺÍÄÚ´æµÈÐÅÏ¢ÉÏ´«µ½C2·þÎñÆ÷£¬²¢Æ¾¾Ý·µ»ØµÄºÅÁî½øÐÐAES½âÃÜ£¬Ö´ÐÐCmdshell»òÕßÌáÒé¸÷ÖÖÀàÐ͵ÄDDoS¹¥»÷£¬Ô̺¬DNS¡¢SYN£¬LSYN£¬UDP£¬UDPS£¬TCPºÍCCFlood¡£Ö´ÐÐCmdshellºÅÁî»òÕßÌáÒéDDOS¹¥»÷¡£ |
¸üй¦·ò£º | 20220322 |
ÊÂÎñÃû³Æ£º | TCP_°²È«·ì϶_Spring-Data-REST-PATCHÒªÇó_Ô¶³ÌÖ´ÐдúÂë[CVE-2017-8046][CNNVD-201704-1106] |
°²È«ÀàÐÍ£º | °²È«·ì϶ |
ÊÂÎñÃèÊö£º | ¸Ã·ì϶Ϊ¹¥»÷Õßͨ¹ýSpringDataRestÖ§³ÖµÄPATCH²½Ö裬»ú¹Ø¶ñÒâµÄJsonÌåʽÊý¾Ý·¢Ë͵½·þÎñ¶Ë£¬µ¼Ö·þÎñ¶ËÔÚ½âÎöÊý¾Ýʱ»áÖ´ÐÐËÁÒâJava´úÂë¡¢½âÎöSpEL±í°×ʽ£¬´Ó¶øÊµÏÖÔ¶³ÌËÁÒâ´úÂëÖ´ÐС£ |
¸üй¦·ò£º | 20220322 |


¾©¹«Íø°²±¸11010802024551ºÅ