2017DDoSÓëWebÓ¦Óù¥»÷Ì¬ÊÆ±¨¸æ
2018-04-11
¡¡

»ùÓÚ»¥ÁªÍøÑÜÉú³öÀ´µÄÔÆÅÌËã¡¢´óÊý¾Ý¡¢ÎïÁªÍø¡¢Òƶ¯ÅÌËãµÈÐÂÊÖÒÕÓëÐÂģʽ£¬Éî¿ÌµØÓ°Ïì×ÅÍøÂçÌìϵÄÀå¸ï¡£ÔÚÕâÑùµÄ´óÅä¾°Ï£¬ÍøÂçÇå¾²ÃæÁÙµÄÍþвҲÔÚһֱת±äÓëÉý¼¶¡£
ÆäÖУ¬DDoS ¹¥»÷ºÍ Web Ó¦Óù¥»÷Êǵ±½ñ»¥ÁªÍøÃæÁٵĽÏΪͻ³öµÄÁ½´óÇå¾²Íþв¡£´Ó¹¥»÷Êֶκ͹¥»÷Ä¿µÄÀ´¿´£¬¶þÕß½ØÈ»²î±ð£¬µ«¶þÕßÍùÍù²»ÊÇÏ໥×ÔÁ¦µÄ£¬¶øÊÇϸÃÜÁªÏµµÄ£¬¿ÉÒÔ¼òÆÓÒÔΪ DDoS ¹¥»÷ºÍWeb Ó¦Óù¥»÷»®·Ö´¦ÓÚ¹¥»÷Á´ÖеIJî±ð»·½Ú£¬¶ø½©Ê¬ÍøÂç(Botnet)¾ÍÊǶþÕßÁªÏµµÄ“ÇÅÁº”¡£´Óµ¥¸öµÄ Web Ó¦Óù¥»÷ÊÂÎñÀ´¿´£¬Õë¶Ôijһ Web Õ¾µãµÄɨÃè¡¢×¢È롢ʹÓÃÒÑÖªÎó²îÉøÍ¸µÈһϵÁеĹ¥»÷ÐÐΪ£¬ ¿ÉÄÜÊǹ¥»÷ÕßΪÁË»ñÈ¡¸ÃÕ¾µãµÄȨÏÞ£¬²¢½øÒ»²½»ñÈ¡ÉñÃØÊý¾Ý£¬ÓÖ»òÕß×÷Ϊ¹¥»÷ÆóÒµÍøÂçÖÐÆäËûÖ÷Òª»ù´¡ÉèÊ©µÄÌø°å¡£µ«Ðí¶à¹¥»÷Õß²¢²»µ«Öª×ãÓÚ´Ë£¬ËûÃǾ³£ÔÚ»ñÈ¡·þÎñÆ÷ȨÏÞºó£¬ÖÖÏ Botnet ¶ñÒâ³ÌÐò£¬ ¹¹½¨ÊôÓÚ×Ô¼ºµÄ½©Ê¬ÍøÂçÐÛʦ¡£½©Ê¬ÍøÂç×÷ΪºÚ¿Í½øÒ»²½Í¶ÆõµÄ¹¤¾ß£¬¾³£±»ÓÃÓÚ¾ÙÐÐ DDoS ¹¥»÷£¬ÍÚ¿ó£¬É¨Ã裬µã»÷ڲƣ¬·¢ËÍÀ¬»øÓʼþµÈÔ˶¯¡£Õë¶ÔijЩ·þÎñÆ÷»ò Web Ó¦ÓÃÎó²îµÄɨÃèÓÖÊÇѬȾ²¢¿ØÖÆÖ÷»úµÄµÚÒ»²½£¬¹¥»÷Õß¾³£Ê¹ÓÃÒѾ±»Ñ¬È¾µÄ×°±¸ÔÚÍøÂçÖÐÌᳫɨÃèÒÔ·¢Ã÷¸ü¶à´ýѬȾĿµÄ¡£
DDoS ¹¥»÷¡¢ÍÚ¿óÔ˶¯Êǹ¥»÷ÕßÄܹ»Ö±½ÓͶÆõµÄÔ˶¯£¬Í¨³£ÊÇ´¦ÓÚ¹¥»÷Á´µÄ×îºóÒ»¸ö»·½Ú¡£2017 Äê10Ô·ݱ¬·¢µÄ WebLogic XMLDecoder ·´ÐòÁл¯Îó²î(CVE-2017-10271)£¬ÔÚ±¬³ö²»¾Ãºó¾ÍÓкڿÍʹÓøÃÎó²îÔÚ Weblogic Ö÷»ú¼äÈö²¥Ñ¬È¾½©Ê¬³ÌÐòÓÃÓÚÍÚ¿ó¡£ÓÖÈ磬2017 Ä걬³öµÄÎïÁªÍø½©Ê¬ÍøÂç±äÖÖ IoT_ reaper£¬Ê¹ÓÃÁ˶à¸öÎïÁªÍøÏà¹ØµÄÎó²î¹¹½¨½©Ê¬ÍøÂ磬ÆäÖÐÖ®Ò»¾ÍÊÇÄ³Ð©ÍøÂçÉãÏñÍ·±£´æµÄ Goahead Web Server Îó²î(CVE-2017-8221 µ½ CVE-2017-82215)¶ø IoT_reaper ½©Ê¬ÍøÂçµÄÒ»¸öÖ÷Òª¹¦Ð§¾ÍÊÇDDoS ¹¥»÷¡£
±¾±¨¸æ½« DDoS ¹¥»÷ºÍ Web Ó¦Óù¥»÷Ì¬ÊÆÒ»Í¬Ðû²¼£¬Á¦Õù¸øÍøÂçÇå¾²Ïà¹Ø´ÓҵְԱһЩ²Î¿¼£¬ÒÔ±ãÅ×שÒýÓñ£¬×ÊÖú×éÖ¯¼°»ú¹¹Ò»Á¬¸ÄÉÆ×ÔÉíÍøÂçÇå¾²·ÀÓùÊÖÒÕ¼°ÏµÍ³¡£
Éó²éÍêÕûÄÚÈÝÇëÏÂÔØ±¨¸æ

AG¹«Ë¾ÔÆ







