AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2020.09.28-2020.10.04£©
2020-10-12
Ò»¡¢ÈÈÃÅ×ÊѶ
1. Ò»´ÎÇ¿¾¢µÄDDoS¹¥»÷Ï®»÷ÁËÐÙÑÀÀûµÄÒøÐк͵çÐÅ·þÎñ
¡¾¸ÅÊö¡¿
ÐÙÑÀÀû½ðÈÚ»ú¹¹ºÍµçÐÅ»ù´¡ÉèÊ©Êܵ½À´×Ô¶íÂÞ˹£¬ÖйúºÍÔ½ÄÏ·þÎñÆ÷DDoS¹¥»÷¡£Õâ´ÎÇ¿¾¢µÄDDoS¹¥»÷ÓÚÖÜËı¬·¢£¬Ï®»÷ÁËÐÙÑÀÀûµÄÒ»Ð©ÒøÐк͵çÐÅ·þÎñ£¬¶ÌÔÝµØÆÆËðÁËËüÃǵÄӪҵϵͳ¡£¾ÝµçÐŹ«Ë¾Magyar Telekom³Æ¹¥»÷ÊÇ´Ó¶íÂÞ˹£¬ÖйúºÍÔ½ÄϵķþÎñÆ÷·¢¶¯µÄ£¬ËûÃÇ͸¶Õâ´Î¹¥»÷ºÜÊÇǿʢ£¬ÊÇÓÐÊ·ÒÔÀ´¹¥»÷ÐÙÑÀÀûµÄ×î´óÍøÂç¹¥»÷Ö®Ò»¡£
¡¾²Î¿¼Á´½Ó¡¿
https://securityaffairs.co/wordpress/108788/hacking/ddos-attack-hungarian-orgs.html
2. Õë¶ÔÒÁÀʳ¤´ï6ÄêµÄÍøÂçÌØ¹¤Ô˶¯Åû¶
¡¾¸ÅÊö¡¿
ÍøÂçÇå¾²¹«Ë¾CheckPointResearch½ÒÆÆÁËÒ»³¡³¤´ïÁùÄêÖ®¾ÃµÄÕë¶ÔÒÁÀÊÇÈÃñºÍ³Ö²î±ðÕþ¼ûÕߵļàÊÓÐж¯¡£¾Ý³Æ£¬²ß»®Õⳡ¼àÊÓÔ˶¯µÄ¹¥»÷ÕßÀ´×ÔÒÁÀÊ£¬¹¥»÷ÕßʹÓöàÖÖ¹¥»÷ÊֶμàÊÓÊܺ¦ÕßÐÐΪ£¬ÆäÖаüÀ¨Õë¶ÔСÎÒ˽¼ÒÅÌËã»úºÍÒÆ¶¯×°±¸µÄ¶ñÒâÈí¼þ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.anquanke.com/post/id/218650
3. ΢ÈíBingÓ¦ÓÃÊý¾Ý¿âÔâй¶£¬¶à´ï1ÒÚÌõËÑË÷¼Í¼±»½ØÈ¡
¡¾¸ÅÊö¡¿
¿ËÈÕ£¬WizCaseר¼Ò·¢Ã÷ÁËÒ»¸ö²»Êܱ£»¤µÄElasticsearch·þÎñÆ÷£¬ÆäÖаüÀ¨ÁËÓë΢ÈíÆìÏÂBingÒÆ¶¯Ó¦ÓóÌÐòÓû§Ïà¹ØµÄTB¼¶Êý¾Ý¡£
¡¾²Î¿¼Á´½Ó¡¿
4. Universal Health ServicesÀÕË÷Èí¼þ¹¥»÷Ó°ÏìÌìÏÂÒ½Ôº
¡¾¸ÅÊö¡¿
RyukÀÕË÷Èí¼þ±»ÏÓÒÉÊÇ×ï¿ý×ï¿ý¡£ ÀÕË÷Èí¼þ¹¥»÷ÒѹرÕÁËUniversal Health Services£¬Universal Health ServicesÊÇÒ»¼Ò±é²¼ÌìϵÄÒ½ÔºÍøÂçµÄ²Æ²ú500Ç¿ÆóÒµ¡£ ƾ֤RedditºÍÆäËûƽ̨ÉϵÄÔ±¹¤µÄ±¨¸æ£¬¹¥»÷±¬·¢ÔÚÐÇÆÚÒ»µÄÆÆÏþ¡£ ÔÚRedditÉÏ£¬¾ÓÉÊý°Ù´Î̸ÂÛµÄÌÖÂÛÅú×¢£¬Ðí¶àUHSλÖÃȷʵÒѹرգ¬ÐèÒª·µ»Øµ½ÊÖ¶¯Á÷³Ì¡£
¡¾²Î¿¼Á´½Ó¡¿
https://threatpost.com/universal-health-ransomware-hospitals-nationwide/159604/
5. Õë¶ÔAndroidÓû§µÄ×îÐÂJoker¶ñÒâÈí¼þ±äÌå
¡¾¸ÅÊö¡¿
ƾ֤ZscalerºÍZimperiumµÄÑо¿±¨¸æ£¬ÒѾÔÚGoogle PlayºÍµÚÈý·½Ó¦ÓÃÊÐËÁÖÐÕÒµ½ÁËÕë¶ÔAndroidÓû§µÄÐÂÒ»ÂÖJoker¶ñÒâÈí¼þ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.inforisktoday.com/fresh-joker-malware-variant-targeting-android-users-a-15084
6. ¾Ý±¨µÀCMA CGM±»Ragnar LockerѬȾ
¡¾¸ÅÊö¡¿
×òÌ죬·¨¹úº£ÉÏÔËÊäºÍÎïÁ÷¹«Ë¾CMA CGM½ÒÏþÁËÒ»·ÝÉùÃ÷£¬³ÆºÚ¿Í¹¥»÷Ó°ÏìÁËÆä·þÎñÆ÷¡£CMA CGMÄ¿½ñÕýÔÚÓëÍⲿ¸÷·½ÏàÖú¾ÙÐÐÊӲ졣ÀͰ£µÂÇåµ¥µÄÒ»·Ý±¨¸æËäÈ»ÉÐδ»ñµÃ֤ʵ£¬µ«ÌåÏÖÆä×ï¿ý×ï¿ýÊÇÀ¸ñÄÉ·Âå¿Ë£¨Ragnar Locker£©£¬²¢ÏÔʾÁËÊê½ð¼Í¼µÄ²¿·Ö½ØÍ¼¡£
¡¾²Î¿¼Á´½Ó¡¿
https://www.binarydefense.com/threat_watch/cma-cgm-reportedly-infected-by-ragnar-locker/
7. °ü¹ÜÒµ¾ÞÍ·Arthur J.Gallagher£¨AJG£©Åû¶ÁËÀÕË÷Èí¼þ¹¥»÷
¡¾¸ÅÊö¡¿
×ܲ¿Î»ÓÚÃÀ¹úµÄArthur J. Gallagher£¨AJG£©°ü¹ÜÒµ¾ÞÍ·Åû¶ÁËÀÕË÷Èí¼þ¹¥»÷£¬¸ÃÇå¾²Îó²îÓÚÖÜÁù±¬·¢¡£
¡¾²Î¿¼Á´½Ó¡¿
https://securityaffairs.co/wordpress/108925/malware/ajg-ransomware-attack.html
8. ÆÆ½âÃÜÂ룺һÄêÖÐʹÓÃÆµÂÊ×î¸ß¡¢Ð¹Â¶´ÎÊý×î¶àµÄÃÜÂë
¡¾¸ÅÊö¡¿
2020ÄêһЩ×îÊܽӴýµÄÃÜÂë°ñµ¥£º123456¡¢123456789¡¢qwerty¡¢1234567¡¢12345678¡¢12345¡¢ÎÒ°®Äã¡¢111111¡¢123123¡£ÈçÄúËùÖª£¬ÔÚÈõÃÜÂë±³ºóÓÐÒ»ÖÖ±©Á¦ÆÆ½âµÄÒªÁ졣һЩÐòÁкŵÄ×Ö·û´®ºÍ¼òÆÓµÄ¶ÌÓÀýÈç“ iloveyou”ºÍ“ password”£©³£Î»ÓÚ°ñµ¥µÄ¶¥²¿¡£ºÚ¿ÍºÜÈÝÒ×¾ÍÄÜÈëÇÖ²¢ÇÔÈ¡ÊýǧÃûºÁÎÞ½äÐĵÄÈ˵ÄÃÜÂë¡£¿ÉÊÇ£¬µ±ÕâЩ×îÖÕÓû§ÖªµÀÔõÑùʹÓÃǿʢµÄÃÜÂëºÍÃÜÂëÖÎÀíÆ÷À´±£»¤×Ô¼ºµÄÕÊ»§Ê±£¬ºÚ¿ÍµÄÊÂÇ齫±äµÃÔ½·¢ÄÑÌâ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://resources.infosecinstitute.com/breached-passwords-most-frequently-used-and-compromised-passwords-of-the-year/

AG¹«Ë¾ÔÆ







