άËûÃü2019´óÅÌ»õÖ®Çå¾²ÊÂÎñ/Îó²îƪ

Ðû²¼Ê±¼ä 2020-01-01

µ¼¶Á


 2019Ä꣬£¬£¬£¬Êý¾Ýй¶¡¢DDoS¹¥»÷ºÍÇå¾²Îó²îÊÂÎñƵ·¢£º

´ó¹æÄ£µÄÊý¾Ýй¶ÊÂÎñ³ÉΪĿ½ñÒ»¸öÖØ´óµÄÄÑÌ⣬£¬£¬£¬ÔöÇ¿î¿ÏµºÍÁ¢·¨ÆÈÔÚü½Þ£»£»£»Ëæ×ÅÔÆÇå¾²µÄ¿ìËÙÉú³¤£¬£¬£¬£¬Í¬Ê±Åãͬ»¥ÁªÍø¿í´øÌáËÙ¡¢ÎïÁªÍø¡¢IPV6µÄÉú³¤Ê¹DDoS¹¥»÷·åÖµÁ÷Á¿Ò»Á¬ÅÊÉý£»£»£»Îó²î×÷Ϊ¹¥»÷µÄ×î³£ÓÃÊֶΣ¬£¬£¬£¬¸ßΣÎó²îÐèÖØµã¹Ø×¢¡£¡£±¾Æª½«»ØËÝ2019ÄêµÄÒ»Ð©ÖØ´óÊý¾Ýй¶¡¢DDOS¹¥»÷ÊÂÎñ¼°Çå¾²Îó²î¡£¡£


Êý¾Ýй¶


Êý¾ÝÖÎÀí¹«Ë¾RubrikÊý¾Ýй¶


1ÔÂ29ÈÕ£¬£¬£¬£¬ITÇå¾²ºÍÔÆÊý¾ÝÖÎÀí¹«Ë¾RubrikÔâÊÜ´ó¹æÄ£Êý¾Ýй¶£¬£¬£¬£¬Ô⵽й¶µÄÊý¾Ý¿âÍйÜÔÚ Amazon Elasticsearch ЧÀÍÆ÷ÉÏ£¬£¬£¬£¬ÓµÓÐÊýÊ®ÒÚ×Ö½ÚµÄÊý¾Ý£¬£¬£¬£¬Ð¹Â¶ÐÅÏ¢°üÀ¨Ã¿¸öÆóÒµ¿Í»§µÄ¿Í»§Ãû³Æ¡¢ÁªÏµÐÅÏ¢ºÍÊÂÇéÐÅÏ¢µÈÃô¸ÐÐÅÏ¢¡£¡£RubrikûÓÐ͸¶ÊÇ·ñ»á֪ͨÆä¿Í»§»ò¹ú¼Òî¿Ïµ»ú¹¹£¬£¬£¬£¬¿ÉÊÇÓÉÓÚ´Ë´ÎÊý¾Ýй¶ÊÂÎñ°üÀ¨ÁËÅ·ÖÞÆóÒµ£¬£¬£¬£¬ÒÔÊÇ¿ÉÄÜÅöÃæÁÙGDPRÏà¹ØµÄ·£¿£¿î¡£¡£Æ¾Ö¤Ê±¼ä´Á£¬£¬£¬£¬ÕâЩÊý¾Ý¿É×·ËÝÖÁ2018Äê10Ô¡£¡£¾­ÓÉÊӲ죬£¬£¬£¬Rubrik³ÆÕâÒ»ÊÂÎñÊÇÓÉÈËΪ¹ýʧµ¼Öµġ£¡£


Verifications.ioй¶8.09ÒÚÓû§Êý¾Ý


2ÔÂ25ÈÕ£¬£¬£¬£¬Çå¾²Ñо¿Ö°Ô±·¢Ã÷ÁËÒ»¸öÊôÓÚVerifications.ioµÄ¿É¹ûÕæ»á¼ûµÄMongoDBÊý¾Ý¿â£¬£¬£¬£¬¼Í¼°üÀ¨ÁËһЩ±ê×¼ÐÅÏ¢£¬£¬£¬£¬ÈçÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢µç»°ºÅÂëºÍÆÜÉíµØµã¡£¡£µ«ÆäÖÐÒ²°üÀ¨ÐԱ𡢳öÉúÈÕÆÚ¡¢Ð¡ÎÒ˽¼ÒµäÖÊ´û¿î½ð¶î¡¢ÀûÂÊ¡¢Facebook¡¢LinkedInºÍInstagramÕË»§Óëµç×ÓÓʼþµØµãÏà¹ØµÄÊÂÏ£¬£¬£¬ÒÔ¼°ÈËÃǵÄÐÅÓÃÆÀ·ÖÆ·¼¶£¨ºÃ±Èƽ¾ù¡¢¸ßÓÚÆ½¾ù£¬£¬£¬£¬µÈµÈ£©¡£¡£Óë´Ëͬʱ£¬£¬£¬£¬¸ÃÊý¾Ý¿âÖÐµÄÆäËû¼ÍÂ¼ËÆºõÓëÆóÒµÏúÊÛÐÐΪÓйØ£¬£¬£¬£¬°üÀ¨¹«Ë¾Ãû³Æ¡¢ÄêÊÕÈë¡¢´«ÕæºÅÂë¡¢¹«Ë¾ÍøÕ¾£¬£¬£¬£¬ÒÔ¼°·ÖÀ๫˾ʱËùÓõġ°SIC¡± ºÍ¡°NAIC¡±Ö®ÀàµÄÐÐÒµ±êʶ·û¡£¡£Verifications.ioÍøÕ¾Òѽ«¸ÃÄÚÈÝÈ«ÊÖÏÂÏߣ¬£¬£¬£¬ÖÁ½ñÉÐδ»Ö¸´¡£¡£


Facebook 5.4ÒÚÓû§¼Í¼й¶


4ÔÂ03ÈÕ£¬£¬£¬£¬Ñо¿ÍŶӷ¢Ã÷Á½¸öµÚÈý·½Ó¦ÓõÄÑÇÂíÑ·S3´æ´¢¿â¿É¹ûÕæ»á¼û£¬£¬£¬£¬ÆäÖÐÒ»¸öÊôÓÚÄ«Î÷¸çýÌ幫˾Cultura Colectiva£¬£¬£¬£¬¸ÃÊý¾Ý¿âÃûΪcc-datalake£¬£¬£¬£¬¾ÞϸΪ146GB£¬£¬£¬£¬°üÀ¨Ô¼5.4ÒÚÓû§¼Í¼£¬£¬£¬£¬¼Í¼°üÀ¨ÓÊÏ䵨µãÓëµÇ¼ÐÅÏ¢£¬£¬£¬£¬¶øµÇ¼ÐÅÏ¢Õⲿ·ÖÉõÖÁÖ±½Óϯ¾íÁËÃÜÂë¡¢Õ˺š¢Ê¶±ðÂë¡¢Óû§Ì¸Âۺͻ¥¶¯£¬£¬£¬£¬¡£¡£ÁíÒ»¸öÊôÓÚµÚÈý·½Ó¦ÓÃAt the Pool£¬£¬£¬£¬Ö»°üÀ¨2.2ÍòÓû§¼Í¼¡£¡£Cultura ColectivaÓëAt the PoolÊý¾Ý¿âÖ®¼äµÄ¹²Í¨µã£¬£¬£¬£¬ÊÇËüÃǶ¼´æ·ÅÁËÓëFacebookÓû§ÓйصÄÊý¾Ý£¬£¬£¬£¬´ÓËûÃǵÄÐËȤ¡¢¹ØÏµµ½»¥¶¯µÈ£»£»£»Êܵ½Íâ½çÑÏ¿á¼ìÊÓµÄFacebookÕýÔÚËõ¶ÌµÚÈýÒªÁìʽËùÄÜ»á¼ûµÄÓû§Êý¾Ý¡£¡£


JustDial й¶1.56ÒÚÓ¡¶ÈÓû§ÐÅÏ¢


4ÔÂ17ÈÕ£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷Ó¡¶ÈÍâµØËÑË÷ÒýÇæ¹«Ë¾JustDialµÄÒ»¸öAPIÎó²î£¬£¬£¬£¬Õâµ¼ÖºڿͿÉÒԵǼ¸ÃAPP1.56ÒÚÓû§µÄÕË»§¡£¡£Ð¹Â¶µÄÊý¾Ý°üÀ¨JustDialÓû§µÄÐÕÃû¡¢µç×ÓÓʼþ¡¢ÊÖ»úºÅÂë¡¢µØµã¡¢ÐԱ𡢳öÉúÈÕÆÚ¡¢ÕÕÆ¬ºÍÖ°ÒµÐÅÏ¢¡£¡£¸ÃAPIÎó²îÖÁÉÙ´Ó2015Äê×îÏȾͱ£´æÁË£¬£¬£¬£¬µ«ÏÖÔÚÉв»ÇåÎúÊÇ·ñÓÐÈËÀÄÓÃËüÀ´ÍøÂçJustDialÓû§µÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¾Ý³Æ£¬£¬£¬£¬ºÚ¿Í³ýÁË¿ÉÒÔͨ¹ý¸ÃÎó²î»á¼ûÓû§ÐÕÃû¡¢µç»°ºÅÂëºÍµç×ÓÓʼþµØµãµÈÐÅÏ¢ÒÔÍ⣬£¬£¬£¬»¹ÄÜÉó²éÕË»§Ö§¸¶ÐÅÏ¢¡£¡£


Eviteй¶1.01ÒÚÕË»§ÐÅÏ¢


5ÔÂ14ÈÕ£¬£¬£¬£¬EviteÐû²¼Êý¾Ýй¶֪ͨ£¬£¬£¬£¬ÌåÏÖÆäЧÀÍÆ÷´Ó2ÔÂ22ÈÕ×îÏÈÔâδÊÚȨ»á¼û£¬£¬£¬£¬Ô¼1000ÍòÓû§ÐÅϢй¶¡£¡£µ«Æ¾Ö¤Have I Been PwnedÍøÕ¾ÊÕ¼µÄÊý¾ÝÊý¾Ý£¬£¬£¬£¬ÕâÒ»Êý×ÖÒª´óµÃ¶à£¬£¬£¬£¬¹²ÓÐ1.01ÒÚÓû§ÐÅϢй¶¡£¡£ÕâЩÊý¾Ý×îÔç¿É×·ËÝÖÁ2013Ä꣬£¬£¬£¬Ð¹Â¶µÄÐÅÏ¢°üÀ¨ÐÕÃû¡¢µç»°ºÅÂë¡¢ÏÖʵµØµã¡¢³öÉúÈÕÆÚ¡¢ÐÔ±ð¡¢Ã÷ÎÄÃÜÂëºÍµç×ÓÓʼþµØµã¡£¡£×î³õ±»Ð¹Â¶µÄÊý¾Ý¿âÔÚDream MarketÉϳöÊÛ£¬£¬£¬£¬µ«¸ÃÍøÕ¾Òѱ»¾¯·½¹Ø±Õ£¬£¬£¬£¬Òò´ËÏÖÔÚÉв»ÇåÎúÕâ¸ö¸ü´óµÄÊý¾Ý¿âÊÇ·ñÒ²ÔÚ³öÊÛ¡£¡£


FAFCй¶8.85ÒÚÌõµäÖÊ´û¿î¼Í¼


5ÔÂ24ÈÕ£¬£¬£¬£¬¾ÝŦԼʱ±¨±¨µÀ£¬£¬£¬£¬ÃÀ¹ú½ðÈÚ¹«Ë¾First American Financial Corporation¹ÙÍøÉϵÄÒ»¸öÎó²îй¶ÁË16ÄêÀ´ÓëµäÖÊ´û¿îÓйصÄ8.85ÒÚÌõ¼Í¼¡£¡£¼Í¼°üÀ¨ÒøÐÐÕʺźͶÔÕʵ¥£¬£¬£¬£¬µäÖʺÍ˰Îñ¼Í¼£¬£¬£¬£¬Éç»á°ü¹ÜºÅ£¬£¬£¬£¬µç»ãÊÕÌõºÍ¼ÝʻִÕÕͼÏñ¡£¡£¸Ã¹«Ë¾ÌåÏÖÕýÔÚÆÀ¹À´ËÊÂÎñ¶Ô¿Í»§ÐÅÏ¢Çå¾²ÐÔµÄÓ°Ï죬£¬£¬£¬ÔÚÄÚ²¿ÉóºËÍê³É֮ǰ£¬£¬£¬£¬½«²»»á½ÒÏþÈκÎ̸ÂÛ¡£¡£ÏÖÔÚ£¬£¬£¬£¬ÃÀ¹ú֤ȯÉúÒâίԱ»áºÍŦԼÖݶ¼ÔÚ¾ÙÐÐÊӲ졣¡£ÃÀ¹ú֤ȯÉúÒâίԱ»á¾Ü¾ø¶Ô´ËʽÒÏþ̸ÂÛ.


Orviboй¶Áè¼Ý20ÒÚÌõÓû§¼Í¼


6ÔÂ16ÈÕ£¬£¬£¬£¬Ñо¿Ð¡×é·¢Ã÷ÁËÒ»¸öÓëOrviboÖÇÄܼҾӲúÆ·Ïà¹ØµÄ¿Éí§Òâ»á¼ûµÄÊý¾Ý¿â¡£¡£¸ÃÊý¾Ý¿â°üÀ¨20¶àÒÚÌõÈÕÖ¾£¬£¬£¬£¬¼Í¼ÁËÓû§Ãû¡¢µç×ÓÓʼþµØµã¡¢ÃÜÂëºÍ׼ȷ¶¨Î»ÐÅÏ¢£¬£¬£¬£¬ÆäÖÐÃÜÂëΪδ¼ÓÑεÄMD5¹þÏ£ÃûÌᣡ£²¢ÇÒÊý¾ÝÁ¿»¹ÔÚÌìÌìÒ»Á¬ÔöÌíÖС£¡£³ý´ËÖ®Í⣬£¬£¬£¬Êý¾Ý¿âÖл¹°üÀ¨¼ÒÍ¥ID¡¢¼ÒÍ¥Ãû³Æ¡¢¹ØÁªÖÇÄÜ×°±¸ÐÅÏ¢ºÍÍýÏëʹÃüµÈ¡£¡£ÔÚй¶µÄ 20 ÒÚÌõÈÕÖ¾ÖÐÒѾ­ÕÒµ½ÁËÀ´×ÔÈÕ±¾¡¢Ì©¹ú¡¢ÃÀ¹ú¡¢Ó¢¹ú¡¢Ä«Î÷¸ç¡¢·¨¹ú¡¢°Ä´óÀûÑÇ¡¢°ÍÎ÷µÈ¶à¸ö¹ú¼ÒºÍµØÇøµÄÓû§¡£¡£


Capital Oneй¶1.06ÒÚÓû§ÐÅÏ¢


7ÔÂ19ÈÕ£¬£¬£¬£¬ÃÀ¹ú½ðÈÚ¹«Ë¾Capital OneÈ·ÈÏÆäϵͳÓÚ3ÔÂ22ÈÕÖÁ23ÈÕʱ´úÔâδÊÚȨ»á¼û£¬£¬£¬£¬µ¼ÖÂ1.06ÒÚÓû§µÄÐÅϢй¶£¬£¬£¬£¬°üÀ¨ÉúÒâÊý¾Ý¡¢ÐÅÓÃÆÀ·Ö¡¢Ö§¸¶ÀúÊ·¡¢Óà¶îÒÔ¼°¹ØÁªµÄÒøÐÐÕË»§ºÍÉç»áÇå¾²ºÅÂë¡£¡£ÊÜÓ°ÏìµÄÓû§°üÀ¨1ÒÚÃÀ¹úÈ˺Í600Íò¼ÓÄôóÈË¡£¡£Æ¾Ö¤Ïà¹ØÖ¤¾Ý£¬£¬£¬£¬FBIÒѾ­¾Ð²¶ÁËÏÓÒÉÈËPaige Thompson¡£¡£Capital OneÌåÏÖÓÉÓÚ¿Í»§Í¨Öª¡¢Ãâ·ÑµÄÐÅÓÃ¼à¿ØÐ§ÀÍ¡¢Ç徲ˢб¾Ç®ÒÔ¼°Ö´·¨ÓöÈ£¬£¬£¬£¬ÕâÒ»ÊÂÎñ½«±¬·¢Ô¼1ÒÚÖÁ1.5ÒÚÃÀÔªµÄ±¾Ç®¡£¡£Capital OneÒ²Éù³ÆËûÃÇÓµÓÐÍøÂçÇå¾²°ü¹Ü¡£¡£


12ÒÚÉç½»Êý¾Ýй¶£¬£¬£¬£¬Êý¾Ý³¬4TB


10ÔÂ16ÈÕ£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ÁËÒ»¸ö¿É¹ûÕæ»á¼ûµÄElasticsearchЧÀÍÆ÷£¬£¬£¬£¬ÎÞÐèÃÜÂë»òÈκÎÐÎʽµÄÉí·ÝÑéÖ¤¼´¿É»á¼û»òÏÂÔØËùÓÐÊý¾Ý¡£¡£¸ÃÊý¾Ý¿â°üÀ¨40ÒÚ¸öÓû§ÕÊ»§³¬4TBµÄÊý¾Ý¡£¡£ÆäÖÐËùÓÐÊý¾Ý¼¯Öеı£´æÎ¨Ò»Éí·ÝIDµÄÖ°Ô±×ÜÊýµÖ´ïÁË12ÒÚ£¬£¬£¬£¬ÕâÊÇÓÐÊ·ÒÔÀ´¼òµ¥ÈªÔ´×éÖ¯×î´óµÄÊý¾Ýй¶ÊÂÎñÖ®Ò»¡£¡£×ß©µÄÊý¾Ý°üÀ¨ÐÕÃû£¬£¬£¬£¬µç×ÓÓʼþµØµã£¬£¬£¬£¬µç»°ºÅÂ룬£¬£¬£¬LinkedINºÍFacebookСÎÒ˽¼Ò×ÊÁÏÐÅÏ¢¡£¡£µ¼Ö´ËÊý¾Ý×ß©ÓëÖÚ²î±ðµÄÔµ¹ÊÔ­ÓÉÔÚÓÚ£¬£¬£¬£¬Ëü°üÀ¨ËƺõÀ´×ÔÁ½¸ö²î±ðµÄÊý¾Ý¹«Ë¾µÄÊý¾Ý¼¯People Data LabsºÍOxyData.Io¡£¡£


ºÚ¿Í¹ûÕæ¿ªÂüÒøÐÐ2.21TBÊý¾Ý


11ÔÂ15ÈÕ£¬£¬£¬£¬ºÚ¿Í´Ó¿ªÂüÒøÐÐÇÔÈ¡ÁË2.21TBµÄÊý¾Ý²¢Ðû²¼ÔÚÍøÉÏ£¬£¬£¬£¬¾Ý³ÆÕâЩÊý¾ÝÊÇÓɺڿÍPhineas FisherÇÔÈ¡µÄ¡£¡£Êý¾Ý°üÀ¨Áè¼Ý3800¼Ò¹«Ë¾¡¢ÐÅÍкÍСÎÒ˽¼ÒÕË»§µÄÏêϸ²ÆÎñÐÅÏ¢£¬£¬£¬£¬Éæ¼°µÄ1400¶à¸ö¿Í»§ÕÊ»§Î»Ö㬣¬£¬£¬°üÀ¨Âí¶÷µº780¸ö£¬£¬£¬£¬ÈûÆÖ·˹272¸ö£¬£¬£¬£¬Ó¢¹ú153¸ö£¬£¬£¬£¬¿ªÂüȺµº107¸ö£¬£¬£¬£¬Ó¢Êôά¶û¾©Èºµº51¸ö£¬£¬£¬£¬ÈûÉà¶û12¸ö£¬£¬£¬£¬ÃÀ¹ú11¸ö£¬£¬£¬£¬²®Àû×È7¸ö£¬£¬£¬£¬°®¶ûÀ¼7¸ö£¬£¬£¬£¬ÒÔ¼°Éæ¼°Àë°¶ÒøÐÐÓªÒµµÄÆäËû˾·¨Í³ÁìÇø£¬£¬£¬£¬°üÀ¨Ö±²¼ÂÞÍÓ£¬£¬£¬£¬ÔóÎ÷µº£¬£¬£¬£¬Ê¥»ù´ÄºÍÄáά˹£¬£¬£¬£¬°Í°Í¶à˹£¬£¬£¬£¬¸ùÎ÷µº£¬£¬£¬£¬Âí¶úËûºÍëÀïÇó˹¡£¡£Õë¶Ô´Ë´ÎÑÏÖØÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬Ëæºó¿ªÂüÒøÐйûÕæÐû²¼Ò»·ÝÉùÃ÷£¬£¬£¬£¬Ö¤ÊµÆäÔâµ½ÈëÇÖ¡£¡£


TrueDialogй¶10ÒÚÌõ¼Í¼


11ÔÂ26ÈÕ£¬£¬£¬£¬Çå¾²Ñо¿ÍŶӷ¢Ã÷ÃÀ¹ú¶ÌÐÅÔËÓªÉÌTrueDialogµÄElasticsearchÊý¾Ý¿âδÊÚȨ»á¼ûÎó²î£¬£¬£¬£¬µ¼ÖÂÊý¾Ý¿âй¶604GBµÄÊý¾Ý£¬£¬£¬£¬ÆäÖаüÀ¨10ÒÚ¸ö¸ß¶ÈÃô¸ÐµÄÊý¾ÝÐÅÏ¢£¬£¬£¬£¬ÕâЩÊý¾ÝºÍTrueDialogӪҵģ×ÓµÄÐí¶à·½Ãæ¶¼Ïà¹ØÁª£¬£¬£¬£¬Õâ¿ÉÄÜ»áÒý·¢Ç±ÔڵĴ¹ÂÚ¹¥»÷¡£¡£ÆäÖÐÓÐÊý°ÙÍò¸öÕ˺ÅÊÇÃ÷ÎÄÃÜÂëºÍbase64±àÂëµÄÃÜÂë¡£¡£Æ¾Ö¤¹ûÕæÐÅÏ¢£¬£¬£¬£¬¸Ã¹«Ë¾ÏÖÔÚÓë990¶à¼ÒÊÖ»úÔËÓªÉÌÏàÖú£¬£¬£¬£¬ÓµÓÐÁè¼Ý50ÒÚÓû§¡£¡£


Elasticsearch27ÒÚÊý¾Ýй¶


12ÔÂ10ÈÕ£¬£¬£¬£¬Ñо¿Ö°Ô±ÔÚÔÆ´æ´¢Í°Öз¢Ã÷ÁË27ÒÚ¸öµç×ÓÓʼþµØµã¡¢10ÒÚ¸öµç×ÓÓʼþÕË»§ÃÜÂëºÍÒ»¸ö½ü80Íò·Ý³öÉú֤ʵ¸±±¾µÄÓ¦ÓóÌÐò¡£¡£´ó´ó¶¼ÓʼþÓòÃû¶¼À´×ÔÖйúµÄÓʼþÔËÓªÉÌ£¬£¬£¬£¬ºÃ±ÈÌÚѶ¡¢ÐÂÀË¡¢ËѺüºÍÍøÒס£¡£ÑÅ»¢gmailºÍһЩ¶íÂÞ˹ÓʼþÓòÃûÒ²ÊÜÁËÓ°Ïì¡£¡£ÕâЩ±»µÁµÄµçÓʼ°ÃÜÂëÒ²Óë2017ÄêÊý¾Ýй¶ÊÂÎñÓйØ£¬£¬£¬£¬ÆäʱÓкڿÍÖ±½Ó½«ËüÃÇ·ÅÔÚ°µÍøÉÏÊÛÂô¡£¡£¸ÃElasticSearchЧÀÍÆ÷ÊôÓÚÃÀ¹úµÄÒ»¸öÍйÜЧÀÍÖÐÐÄ£¬£¬£¬£¬ºóÕßÔÚDiachenkoÐû²¼Êý¾Ý¿â´æ´¢Çå¾²±¨¸æºóÓÚ12ÔÂ9Èչرա£¡£µ«×ÝÈ»ÔÆÔÆ£¬£¬£¬£¬ËüÒѾ­¿ª·ÅÁËÖÁÉÙÒ»ÖÜ£¬£¬£¬£¬²¢ÇÒÔÊÐíÈκÎÈËÔÚÎÞÃÜÂëµÄÇéÐÎϾÙÐлá¼û¡£¡£


DDoS¹¥»÷


·ÆÂɱöNUJPÔâµ½DDoS¹¥»÷


2ÔÂ11ÈÕ£¬£¬£¬£¬·ÆÂɱöÌìÏÂÐÂÎÅÊÂÇéÕßͬÃËÍøÕ¾Ôâµ½DDoS¹¥»÷£¬£¬£¬£¬µ¼ÖÂÍøÕ¾Á½´ÎÏÂÏߣ¬£¬£¬£¬¸ÃÕ¾µãµÄ×ÜÁ÷Á¿Îª615 GB£¬£¬£¬£¬·åֵΪ468GB¡£¡£Æä·ÖÖ§»ú¹¹Bulatlat£¬£¬£¬£¬Kodao Productions£¬£¬£¬£¬AlterMidyaºÍPinoy WeeklyÒ²ÊǸù¥»÷»î¶¯µÄÄ¿µÄ¡£¡£


°Â¶û°ÍÄá´óѧÔâµ½DDoS¹¥»÷


2ÔÂ19ÈÕÆð£¬£¬£¬£¬°Â¶û°ÍÄá´óѧµÄUAϵͳÔâµ½17´ÎDDoS¹¥»÷£¬£¬£¬£¬ÕâЩ¹¥»÷Ó°ÏìÁ˶à¸öUA ITϵͳ£¨ÓÈÆäÊÇBlackboard£©µÄ¿ÉÓÃÐԺ͹¦Ð§¡£¡£UAÍøÂçÖеÄÅÌËã»ú²»ÊÜDDoS¹¥»÷µÄÓ°Ïì¡£¡£¿ÉÊÇʹÓÃ×Ô¼ºµÄ×°±¸µÄѧÉúºÍÎ÷ϯÎÞ·¨»á¼ûBlackboard¡£¡£


¶ò¹Ï¶à¶ûÔâµ½4000Íò´ÎºÚ¿Í¹¥»÷


4ÔÂ11ÈÕ£¬£¬£¬£¬×Ôά»ù½âÃÜÊ×´´ÈËÖìÀû°²¡¤°¢É£Ææ±»²¶ºó£¬£¬£¬£¬¶ò¹Ï¶à¶û³ÆÔâÊÜÁËÀ´×Ô¶à¹ú´ó¹æÄ£µÄÍøÂç¹¥»÷£¬£¬£¬£¬¸ß´ï4000Íò´Î£¬£¬£¬£¬ÕâЩ¹¥»÷Ö÷ÒªÀ´×ÔÃÀ¹ú¡¢°ÍÎ÷¡¢ºÉÀ¼¡¢µÂ¹ú¡¢ÂÞÂíÄáÑÇ¡¢·¨¹ú¡¢°ÂµØÀû¡¢Ó¢¹úºÍ¶ò¹Ï¶à¶û¡£¡£ÊÜÍøÂç¹¥»÷×îÑÏÖØµÄÊÇÍâ½»²¿¡¢ÑëÐС¢×Üͳ°ì¹«ÊÒ¡¢Ë°Îñ¾ÖÒÔ¼°Ò»Ð©²¿Î¯ºÍ´óѧ¡£¡£¶ò¹Ï¶à¶ûÌåÏÖ£¬£¬£¬£¬ÕâЩ»ú¹¹µÄ×ÊÁϲ¢Ã»Óб»ÇÔÈ¡»òɾ³ý¡£¡£


UbisoftÔâµ½DDoS¹¥»÷


6ÔÂ18ÈÕ£¬£¬£¬£¬Ubisoft³ÆÒѽâ¾ö½ñÌìÒòDDoS¹¥»÷Òý·¢µÄÎÊÌ⣬£¬£¬£¬ËùÓÐЧÀÍÒѻָ´¡£¡£´ó×ÚµÄÁ÷Á¿µ¼ÖÂWebЧÀÍÆ÷²»ÎȹÌÇÒÎÞ·¨Ê¹Óᣡ£ËäÈ»ÏÖÔÚÉв»ÇåÎúÊÇË­¶ÔÕâ´Î¹¥»÷ÈÏÕæ£¬£¬£¬£¬È¥ÄêUbisoftÒ²Ôâµ½DDoS¹¥»÷£¬£¬£¬£¬¸Ã¹«Ë¾»¨ÁËԼĪ10¸öСʱ²Å»Ö¸´¡£¡£


Mirai DDoS¹¥»÷Á÷ýÌåЧÀͳ¤´ï13Ìì


7ÔÂ26ÈÕ£¬£¬£¬£¬Ìᳫ´Ë´Î¹¥»÷µÄ½©Ê¬ÍøÂçMiraiÊÇ2016ÄêÊ״η¢Ã÷µÄIoT¶ñÒâÈí¼þ£¬£¬£¬£¬MiraiµÄÔ´´úÂëÓÚ2016Äê10Ô±»¹ûÕæ£¬£¬£¬£¬ÒԺ󱬷¢ÁËÐí¶à±äÌ壬£¬£¬£¬°üÀ¨Echobot£¬£¬£¬£¬Wicked£¬£¬£¬£¬Satori£¬£¬£¬£¬Okiru£¬£¬£¬£¬MasutaºÍÆäËü¡£¡£¸Ã½©Ê¬ÍøÊ¹ÓÃÁË402,000¸ö²î±ðµÄIP£¬£¬£¬£¬ÆäÖдó´ó¶¼ÏÔȻλÓÚ°ÍÎ÷£¬£¬£¬£¬ËüʹÓõÄÎïÁªÍø£¨IoT£©×°±¸¿ª·ÅÁ˶˿Ú2000ºÍ7547£¬£¬£¬£¬ÕâЩ¶Ë¿ÚÏòÀ´Óë±»Mirai¶ñÒâÈí¼þѬȾµÄ×°±¸Ïà¹ØÁª¡£¡£ÎªÁËÑÚÊÎËûÃǵĹ¥»÷£¬£¬£¬£¬¹¥»÷ÕßʹÓÃÁËÕýµ±µÄUser-Agent£¬£¬£¬£¬¸ÃÊðÀíÀàËÆÓÚЧÀÍ×Ô¼ºµÄÓ¦ÓóÌÐò¡£¡£


ά»ù°Ù¿ÆÔâDDoS¹¥»÷£¬£¬£¬£¬ÊýСʱºó»Ö¸´


9ÔÂ8ÈÕÆÆÏþ2µã×óÓÒ£¬£¬£¬£¬Î¬»ù°Ù¿ÆÔâÊܶñÒâÍøÂç¹¥»÷µ¼Ö¶à¸ö¹ú¼ÒµÄ·Öվ崻úÏÂÏߣ¬£¬£¬£¬Ö÷ÒªÊܵ½Ó°ÏìµÄÊÇÅ·ÖÞºÍÖж«Óû§¡£¡£Î¬»ù°Ù¿Æ»ù½ð»á֤ʵÁ˴˴ι¥»÷²¢Í¨ÖªÓû§Æäר¼ÒÒѾ­ÔÚÆð¾¢»Ö¸´Õý³£ÔËÓª¡£¡£Î¬»ù°Ù¿ÆÃ»Óн«¹¥»÷¹éÒòÓÚÌØ¶¨µÄ¹¥»÷Õߣ¬£¬£¬£¬²¢ÌåÏÖ²»¿Éɨ³ýËü¿ÉÄÜÊDzâÊԿɹ©³ö×âµÄDDoS½©Ê¬ÍøÂç¹¥»÷Á¦µÄÊ÷Ä£ÐÔ¹¥»÷¡£¡£Æ¾Ö¤À´×Ô²î±ð¹ú¼ÒµÄÓû§µÄ˵·¨£¬£¬£¬£¬ÊýСʱºóÒÑ»ù±¾»Ö¸´ÁËÕý³£Ð§ÀÍ£¬£¬£¬£¬µ«Î¬»ù°Ù¿ÆÉÐδÕýʽȷÈÏÍêÈ«Ïû³ý¸ÃÎÊÌ⣬£¬£¬£¬ÊÂÎñËÆºõÈÔÔÚÊÓ²ìÖС£¡£


AWS DNSÔâÊÜDDoS¹¥»÷£¬£¬£¬£¬Ì±»¾15¸öСʱ


10ÔÂ23ÈÕ£¬£¬£¬£¬ÑÇÂíÑ·AWS DNSЧÀÍÆ÷Ôâµ½DDoS¹¥»÷£¬£¬£¬£¬¼´¹¥»÷ÕßÊÔͼͨ¹ýÀ¬»øÍøÂçÁ÷Á¿¹£Èûϵͳ£¬£¬£¬£¬Ôì³ÉЧÀÍÎÞ·¨»á¼ûµÄЧ¹û¡£¡£ÑÇÂíÑ·µÄ DNS ϵͳÔâ´ó×ÚÊý¾Ý°üÛÕ±Õ£¬£¬£¬£¬ÆäÖÐһЩÕýµ±µÄÓòÃûÇëÇó±»ÊÍ·ÅÒÔ»º½âÎÊÌâ¡£¡£Ò²¾ÍÊÇËµÍøÕ¾ºÍÓ¦ÓÃʵÑéÁªÏµºó¶ËÑÇÂíÑ·ÍйܵÄϵͳÈç S3´æ´¢Í°¿ÉÄÜ»áʧ°Ü£¬£¬£¬£¬µ¼ÖÂÓû§¿´µ½ÍÉ»¯ÐÅÏ¢»ò¿ÕÈ±Ò³Ãæ£¬£¬£¬£¬´Ë´ÎDDoS¹¥»÷ÊÂÎñÒ»Á¬ÁË15¸öСʱ¡£¡£


ÄÏ·Ç»¥ÁªÍøÐ§ÀÍÉÌÔâ´ó¹æÄ£DDoS¹¥»÷


11ÔÂ23ÈÕ£¬£¬£¬£¬ÄÏ·ÇAfrihostºÍÆäËüµÄInternetЧÀÍÌṩÉÌÔâµ½´ó¹æÄ£DDoS¹¥»÷¡£¡£RSAWEBÊǵÚÒ»¸öÔâÓö¹¥»÷µÄÌṩÉÌ¡£¡£Cool IdeasÔÚ11ÔÂ23ÈÕÔâÊܸù¥»÷£¬£¬£¬£¬¸ÃÌṩÉÌÌåÏÖ£¬£¬£¬£¬´Ë´Î¹¥»÷¹æÄ£Áè¼Ý300Gbps£¬£¬£¬£¬¹¥»÷Á÷Á¿Êý¾ÝÀ´×ÔÂ׶صÄCogent CommunicationsºÍHurricane Electric£¬£¬£¬£¬²¢ÇÒÓÐԼĪ40GbpsÊÇÕýµ±µÄ¡£¡£ÔÚ23ÈÕÍíÉÏAfrihost¡¢AxxessºÍWebafricaÒ²¾ùÔâµ½DDoS¹¥»÷¡£¡£AfrihostÖÜÈÕÖÒÑÔ¿Í»§³ÆÆäÍøÂçÓöµ½¼äЪÐÔµÄÅþÁ¬ÎÊÌâ¡£¡£½üÆÚÄÏ·ÇÒøÐÐÒ²³ÉΪDDoS¹¥»÷µÄÄ¿µÄ£¬£¬£¬£¬ÔÚ10ÔÂ23ÈÕStandard BankµÈÍâµØÒøÐеÄÔÚÏߺÍÒÆ¶¯Ð§ÀͶ¼Êܵ½¹¥»÷£¬£¬£¬£¬µ«´ó´ó¶¼Ð§ÀÍÒѾ­»Ö¸´Õý³£¡£¡£


ð³äFancy Bear DDoS¹¥»÷½ðÈÚ»ú¹¹


10ÔÂ24ÈÕ£¬£¬£¬£¬ÔÚÒÑÍùÒ»ÖܵÄʱ¼äÀ£¬£¬£¬Ã°³ä¶íÂÞ˹APT×éÖ¯Fancy BearµÄÍøÂç·¸·¨·Ö×ÓÒ»Ö±ÔÚ¶Ô½ðÈÚÐÐÒµµÄ¹ú¼Ê¹«Ë¾ÌᳫÁË´ó¹æÄ£µÄDDoS¹¥»÷£¬£¬£¬£¬²¢ÒªÇóÖ§¸¶Êê½ð£¬£¬£¬£¬Ö÷ÒªÕë¶ÔλÓÚÐÂ¼ÓÆÂ¡¢ÄϷǵĽðÈÚ¹«Ë¾¡£¡£ÏÖÔÚÈý¸öÇå¾²¹«Ë¾Link11£¬£¬£¬£¬RadwareºÍGroup-IBÈ·ÈÏÁ˸ù¥»÷»î¶¯¡£¡£


¸ñ³¼ªÑÇÔâµ½´ó¹æÄ£µÄDDoS¹¥»÷


10ÔÂ28ÈÕ£¬£¬£¬£¬¸ñ³¼ªÑÇÔâÓöÊ·ÉÏ×î´ó¹æÄ£µÄÍøÂç¹¥»÷£¬£¬£¬£¬ÔÚ´Ëʱ´úÁè¼Ý1.5Íò¸öÍøÕ¾Êܵ½¹¥»÷²¢ÀëÏߣ¬£¬£¬£¬ÖÖÖÖÕþ¸®»ú¹¹¡¢ÒøÐС¢·¨Ôº¡¢ÍâµØ±¨Ö½ºÍµçÊǪ́µÄÍøÕ¾¶¼Êܵ½Ó°Ïì¡£¡£¸ÃÊÂÎñÓëÍâµØÍøÂçÍйÜЧÀÍÌṩÉÌPro-Service±»ºÚ¿ÍÈëÇÖÓйØ£¬£¬£¬£¬¹¥»÷±¬·¢ÔÚÍâµØÔ糿£¬£¬£¬£¬µ½ÍíÉÏ8µãÊ±ÊÆÇéÖ°Ô±ÒѾ­»Ö¸´ÁËÊÜËðÕ¾µãµÄÒ»°ëÒÔÉÏ¡£¡£ºÚ¿ÍÔÚ±»ÈëÇÖµÄÍøÕ¾ÉÏÐû²¼Á˱»Á÷·ÅµÄǰ×ÜͳMikheil SaakashviliµÄÕÕÆ¬£¬£¬£¬£¬²¢Ð´ÉÏ¡°ÎÒ»á»ØÀ´£¡¡±µÄÐÅÏ¢¡£¡£ÍâµØÖ´·¨»ú¹¹ÕýÔÚ¶Ô´ËÊÂÎñ¾ÙÐÐÊӲ졣¡£


Çå¾²Îó²î


Linux  aptÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-3462£©


1ÔÂ25ÈÕ£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷Linux°ü¹ÜÀíÆ÷apt/apt-get±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-3462£©£¬£¬£¬£¬¸ÃÎó²î¿Éµ¼Ö¹¥»÷Õß¾ÙÐÐÖÐÐÄÈ˹¥»÷²¢»ñÈ¡rootȨÏÞÖ´ÐÐí§Òâ´úÂë¡£¡£Ôµ¹ÊÔ­ÓÉÊÇaptĬÈÏʹÓÃHTTPͨѶ£¬£¬£¬£¬¶øÆätransportÒªÁìÖд¦Öóͷ£HTTPÖØ¶¨ÏòµÄ´úÂëûÓÐ׼ȷ¼ì²éijЩ²ÎÊý£¬£¬£¬£¬¹¥»÷Õß¿Éͨ¹ýÖÐÐÄÈ˹¥»÷ʹÓÃαÔìÊðÃûÆ­¹ý¸Ã¼ì²é£¬£¬£¬£¬½ø¶øÔÚÓû§Ö÷»úÉÏ×°ÖÃí§Òâ³ÌÐò¡£¡£ÓÉÓÚapt×Ô¼ºÒѾ­»ñÈ¡ÁËrootȨÏÞ£¬£¬£¬£¬¸Ã¶ñÒâ³ÌÐò¿ÉÔÚrootȨÏÞÏÂÖ´ÐС£¡£¸ÃÎó²îÓ°Ïì¹æÄ£¼«ÎªÆÕ±é£¬£¬£¬£¬ËùÓÐʹÓÃÀϰ汾aptµÄÖ÷»ú¶¼Êܵ½Ó°Ïì¡£¡£apt¿ª·¢Ö°Ô±ÒÑÔÚ°æ±¾1.4.9ÖÐÐÞ¸´Á˸ÃÎó²î¡£¡£


Windows RDPÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-0708£©


5ÔÂ14ÈÕ£¬£¬£¬£¬Î¢ÈíÐû²¼5Ô·ÝWindowsÇå¾²¸üУ¬£¬£¬£¬ÐÞ¸´79¸öÎó²î¡£¡£ÆäÖаüÀ¨RDPЧÀÍÖеÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-0708£©£¬£¬£¬£¬ÓÉÓÚ¸ÃÎó²î±£´æÓÚRDPЭÒéµÄÔ¤Éí·ÝÑéÖ¤½×¶Î£¬£¬£¬£¬Òò´ËÎó²îʹÓÃÎÞÐè¾ÙÐÐÓû§½»»¥²Ù×÷¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¸ÃÎó²îÓ°ÏìWindows XP¡¢Windows2003¡¢Windows2008¡¢Windows2008R2ºÍWindows7£¬£¬£¬£¬µ«Windows 8ºÍWindows 10¼°Ö®ºó°æ±¾µÄÓû§²»ÊÜ´ËÎó²îÓ°Ïì¡£¡£


Oracle WebLogic ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CNNVD-201906-596£©


6ÔÂ17ÈÕ£¬£¬£¬£¬CNNVDÐû²¼¹ØÓÚOracle WebLogic ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CNNVD-201906-596£©µÄת´ï¡£¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚδÊÚȨµÄÇéÐÎÏ·¢Ë͹¥»÷Êý¾Ý£¬£¬£¬£¬ÊµÏÖí§Òâ´úÂëÖ´ÐС£¡£¸ÃÎó²îÊÇÓÉÓÚOracleÒ»¸öÀúÊ·Îó²î£¨CNNVD-201904-961£¬£¬£¬£¬CVE-2019-2725£©ÐÞ²¹²»ÍêÉÆµ¼Ö£¬£¬£¬£¬Ö»¹Ü4ÔÂ26ÈÕOracleÐû²¼Á˲¹¶¡£¬£¬£¬£¬µ«¿ËÈÕ·¢Ã÷¸ÃÎó²îÈԿɱ»ÐµĹ¥»÷·½·¨Ê¹Óᣡ£Oracle WebLogic Server 10.3.6.0¡¢12.1.3.0µÈ°æ±¾¾ùÊÜÎó²îÓ°Ïì¡£¡£ÏÖÔÚ£¬£¬£¬£¬ Oracle¹Ù·½ÔÝδÐû²¼¸ÃÎó²î²¹¶¡£¬£¬£¬£¬µ«¿ÉÒÔͨ¹ýÔÝʱÐÞ²¹²½·¥»º½âÎó²î´øÀ´µÄΣº¦¡£¡£


ProFTPDÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-12815£©


7ÔÂ23ÈÕ£¬£¬£¬£¬ProFTPDÐû²¼Ð°汾1.3.6£¬£¬£¬£¬ÐÞ¸´Ò»¸ö¿Éµ¼ÖÂRCEµÄÎó²î¡£¡£¸ÃÎó²î£¨CVE-2019- 12815£©ÓëProFTPDµÄmod_copyÄ£¿£¿éÓйØ£¬£¬£¬£¬Îó²îÔµ¹ÊÔ­ÓÉÊÇmod_copyÄ£¿£¿éµÄ×Ô½ç˵SITE CPFRºÍSITE CPTOÏÂÁîûÓа´Ô¤ÆÚÉèÖÃÊÂÇé¡£¡£ÖÎÀíÔ±¿Éͨ¹ý½ûÓÃmod_copyÄ£¿£¿éÀ´»º½â¸ÃÎó²î¡£¡£Æ¾Ö¤ShodanµÄËÑË÷Ч¹û£¬£¬£¬£¬ÏÖÔÚÓÐÁè¼Ý100Íò¸öProFTPdЧÀÍÆ÷ÉÐδÉý¼¶ÐÞ¸´²¹¶¡¡£¡£µÂ¹úCERT-BundÒ²Õë¶Ô¸ÃÎó²îÏòÓû§·¢³öת´ï¡£¡£


VxWorks¶à¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨URGENT/11£©   

             

7ÔÂ30ÈÕ,VxWorks¹Ù·½Ðû²¼Çå¾²¸üУ¬£¬£¬£¬ÐÞ¸´VxWorksÖÐ11¸öÎó²î£¬£¬£¬£¬ÆäÖÐ6¸öÎó²î¿Éµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐУ¬£¬£¬£¬¶øÊ£ÏµÄÎó²î¿ÉÄܻᵼÖ¾ܾøÐ§ÀÍ£¬£¬£¬£¬ÐÅϢй¶»òÂß¼­Îó²î¡£¡£VxWorksÊÇǶÈëʽװ±¸ÖÐʹÓÃ×îÆÕ±éµÄʵʱ²Ù×÷ϵͳ£¨RTOS£©Ö®Ò»£¬£¬£¬£¬ÆÕ±éÓ¦ÓÃÓÚº½¿Õº½Ì죬£¬£¬£¬¹ú·À£¬£¬£¬£¬¹¤Òµ£¬£¬£¬£¬Ò½ÁÆ£¬£¬£¬£¬Æû³µµÈÁìÓò£¬£¬£¬£¬È«ÇòÖÁÉÙ20ÒŲ́װ±¸Ê¹ÓÃʹÓÃVxWorks¡£¡£URGENT/11Îó²îÓ°Ïì×Ô6.5°æÒÔÉϵÄËùÓÐVxWorks°æ±¾¡£¡£ÏÔÈ»ÔÚÒÑÍù13ÄêÖÐÐû²¼µÄËùÓÐVxWorks°æ±¾¶¼ÈÝÒ×Êܵ½¹¥»÷¡£¡£¹¥»÷Õß¿ÉÒÔʹÓÃÆäÖÐÎó²îʵÏÖÎÞÐèÓû§½»»¥¼°ÈÏ֤ʵÏÖÔ¶³Ì¹¥»÷£¬£¬£¬£¬×îÖÕÔÚÍêÈ«¿ØÖÆÏà¹Ø×°±¸¡£¡£


IEä¯ÀÀÆ÷Ô¶³Ì´úÂëÖ´ÐÐÎó²î(CVE-2019-1367)          


9ÔÂ23ÈÕ£¬£¬£¬£¬Î¢ÈíÐû²¼Çå¾²¸üÐÂÐÞ¸´ÁËInternet ExplorerÖеÄÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-1367£©£¬£¬£¬£¬Îó²î±£´æÓÚIE¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨ÖС£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨Ëð»µÄÚ´æ¡£¡£ÀÖ³ÉʹÓøÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß±ã¿É¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¾ÝÍâý±¨µÀ£¬£¬£¬£¬¸ÃÎó²îÒѱ»·¢Ã÷±£´æÒ°ÍâʹÓÃÇéÐΣ¬£¬£¬£¬µ«Î¢Èí²¢Î´Ðû²¼¸ü¶à¹ØÓÚ¹¥»÷»î¶¯µÄϸ½Ú¡£¡£


PHPÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-11043£©


9ÔÂ26ÈÕ£¬£¬£¬£¬PHP¹Ù·½Ðû²¼Îó²îͨ¸æ£¬£¬£¬£¬Ö¸³öʹÓÃNginx + php-fpmµÄЧÀÍÆ÷ÔÚ²¿·ÖÉèÖÃϱ£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-11043£©£¬£¬£¬£¬¸ÃÉèÖÃÒѱ»ÆÕ±éʹÓ㬣¬£¬£¬Î£º¦½Ï´ó¡£¡£¸ÃÎó²îµÄPoCÔÚ10ÔÂ22ÈÕ¹ûÕæ¡£¡£ÊÜÓ°ÏìµÄPHP°æ±¾°üÀ¨7.0¡¢7.1¡¢7.2¡¢7.3ÒÔ¼°5.6¡£¡£PHPÒÑÓÚ10ÔÂ12ºÅÐû²¼ÐÞ¸´²¹¶¡¡£¡£


Windows UACÌáȨÎó²î£¨CVE-2019-1388£©


11ÔÂ12ÈÕ£¬£¬£¬£¬Ñо¿Ö°Ô±Åû¶WindowsÖеÄÒ»¸öÌáȨÎó²îµÄÏêϸÐÅÏ¢£¬£¬£¬£¬¸ÃÎó²îÔ´×ÔÓû§ÕÊ»§¿ØÖÆ£¨UAC£©¹¦Ð§£¬£¬£¬£¬Í¨¹ýÓëUACµÄÓû§½çÃæ¾ÙÐн»»¥£¬£¬£¬£¬ÎÞÌØÈ¨µÄ¹¥»÷Õß¿ÉÒÔʹÓøÃÎó²îÔÚͨË××ÀÃæÉÏÆô¶¯¸ßÌØÈ¨µÄWebä¯ÀÀÆ÷£¬£¬£¬£¬½ø¶ø¿ÉÒÔ×°ÖöñÒâ´úÂë»òÖ´ÐÐÆäËü¶ñÒâ»î¶¯¡£¡£Ñо¿Ö°Ô±ÌåÏÖ¹¥»÷Õß±ØÐèÊ×ÏȾßÓÐÄ¿µÄϵͳÉϵĵÍÌØÈ¨Óû§Éí·Ý£¬£¬£¬£¬²¢¿ÉÒÔ»á¼û½»»¥Ê½×ÀÃæ¡£¡£¸ÃÎó²î£¨CVE-2019-1388£©µÄCVSSÆÀ·ÖΪ7.8·Ö£¬£¬£¬£¬Î¢ÈíÒÑÐû²¼¸ÃÎó²îµÄÏà¹Ø²¹¶¡¡£¡£


VMWare OpenSLDÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-5544£©


12ÔÂ06ÈÕ£¬£¬£¬£¬VMwareÔÚÐû²¼×îÐÂÇ徲ͨ¸æÐÞ¸´OpenSLDÔ¶³ÌÖ´ÐдúÂëÎó²î£¨CVE-2019-5544£©£¬£¬£¬£¬VMware½«¸ÃÎó²î¶¨¼¶ÎªCVSS9.8·ÖµÄ½ôÆÈ¸ßΣԶ³ÌÎó²î£¬£¬£¬£¬ÏÖÔÚVMwareÒÑÐû²¼Çå¾²²¹¶¡£¬£¬£¬£¬½¨ÒéÓû§¾¡¿ìÉý¼¶ÐÞ¸´¡£¡£¸ÃÎó²îÊÇÓÉÓÚESXiºÍHorizon DaaS×°±¸ÖÐʹÓõÄOpenSLP±£´æ¶ÑÁýÕÖÎÊÌ⣬£¬£¬£¬¹¥»÷ÕßʹÓôËÀàÎó²î¿ÉÒÔÍ»ÆÆÐéÄâ»úµÄȨÏÞ¸ôÀ룬£¬£¬£¬»ñµÃËÞÖ÷»úµÄϵͳȨÏÞ£¬£¬£¬£¬µ¼ÖÂÓû§Êý¾ÝµÄÉñÃØÐÔ£¬£¬£¬£¬ÍêÕûÐÔºÍÓÐÓÃÐÔʧȥ°ü¹Ü¡£¡£ÕâÒâζ×Å£¬£¬£¬£¬ÔÚδ¾­Óû§ÊÚȨµÄÇéÐÎÏ£¬£¬£¬£¬¹¥»÷Õ߿ɶÔÓû§ÐÅÏ¢¾ÙÐÐí§Òâ´¦Öóͷ£¡£¡£¶ø´ËÀàÎó²î¿ÉÒÔÔÚÆäËüÐéÄâ»úºÍËÞÖ÷»úÉÏʵÏÖí§Òâ´úÂëÖ´ÐУ¬£¬£¬£¬²¢¿ÉÄÜÓÃÓÚÈö²¥ÍøÂçÈ䳿¡£¡£


Win32kÌØÈ¨ÌáÉýÎó²î£¨CVE-2019-1458£©

            

12ÔÂ10ÈÕ£¬£¬£¬£¬MicrosoftÐû²¼ÁËÕë¶Ô36¸öCVEÎó²îµÄÁ½¸öͨ¸æºÍ¸üС£¡£ÔÚÕâЩÎó²îÖУ¬£¬£¬£¬ÓÐ7¸ö±»·ÖÀàΪÑÏÖØ£¬£¬£¬£¬27¸ö±»·ÖÀàΪÖ÷Òª£¬£¬£¬£¬1¸ö±»·ÖÀàΪÖУ¬£¬£¬£¬1¸ö±»·ÖÀàΪµÍ¡£¡£²¢ÇÒCVE-2019-1458Îó²îÒѱ»Ê¹Óᣡ£½üÆÚ¿¨°Í˹»ù¼ì²âµ½µÄ¹¥»÷ÊÂÎñ³ÆOperation WizardÔÚ¹¥»÷Àú³ÌÖÐʹÓÃÁËWindowsÎó²î£¨CVE-2019-1458£©ºÍGoogle ChromeÎó²î£¨CVE-2019-13720£©£¬£¬£¬£¬½«¶ñÒâÈí¼þÏÂÔØ²¢×°Öõ½»á¼ûº«ÓïÐÂÎÅÃÅ»§µÄWindowsÅÌËã»úÉÏ¡£¡£ÏÖÔÚ΢Èí¹Ù·½ÒѾ­Ðû²¼¸ÃÎó²îµÄ²¹¶¡£¬£¬£¬£¬½¨ÒéÓû§¸üе½×îа汾£¬£¬£¬£¬ÒÔïÔÌ­¹¥»÷µÄ¿ÉÄÜÐÔ¡£¡£