΢ÈíÈÏ¿ÉÔøÇ©Ê𺬶ñÒârootkitµÄÇý¶¯³ÌÐòNetfilter£»£»£»£»£»£»ºÚ¿ÍÔÚRaidForums³öÊÛ7ÒÚ¶àÌõLinkedInÓû§µÄ¼Í¼
Ðû²¼Ê±¼ä 2021-06-291.ºÚ¿ÍÔÚRaidForums³öÊÛ7ÒÚ¶àÌõLinkedInÓû§µÄ¼Í¼

Privacy SharksÑо¿Ö°Ô±·¢Ã÷ÃûΪ¡°GOD User TomLiner¡±µÄºÚ¿ÍÕýÔÚRaidForumsÉϳöÊÛLinkedInÓû§µÄÊý¾Ý¡£¡£¸Ã¹ã¸æÓÚ6ÔÂ22ÈÕÐû²¼£¬£¬£¬Éù³Æ°üÀ¨7ÒÚÌõ¼Í¼£¬£¬£¬²¢¹ûÕæÁË100ÍòÌõÑù±¾×÷Ϊ֤¾Ý¡£¡£´Ë´Îй¶µÄÐÅÏ¢°üÀ¨·¢Ã÷¼Í¼°üÀ¨È«Ãû¡¢ÐԱ𡢵ç×ÓÓʼþµØµã¡¢µç»°ºÅÂëºÍÐÐÒµÐÅÏ¢¡£¡£ÏÖÔÚÉв»ÇåÎúÊý¾ÝµÄȪԴÊÇʲô£¬£¬£¬µ«Ñо¿Ö°Ô±ÍƲâ´Ë´ÎÊý¾Ýй¶Óë4Ô·ݳöÊÛµÄ5ÒÚÌõLinkedIn¼Í¼¿ÉÄÜÊÇͳһȪԴ¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/data-700m-linkedin-users-cyber-underground/167362/
2.WolfeÑÛ¿ÆÒ½Ôº³ÆÆäÔâµ½¹¥»÷£¬£¬£¬Ô¼50Íò¿Í»§ÐÅϢй¶

WolfeÑÛ¿ÆÒ½ÔºÓÚÉÏÖܶþÌåÏÖÆäÔâµ½¹¥»÷£¬£¬£¬Ô¼50Íò¿Í»§ÐÅϢй¶¡£¡£Wolfe Eye ClinicλÓÚ°®ºÉ»ªÖÝÂíЪ¶û¶Ø£¬£¬£¬ÔÚÈ«ÖÝ40¸ö¶¼»á¾ùÉèÓзÖÖ§»ú¹¹¡£¡£¹¥»÷±¬·¢ÓÚ2021Äê2ÔÂ8ÈÕ£¬£¬£¬ºÚ¿ÍÒªÇó¸ÃÒ½ÔºÖ§¸¶Êê½ðÀ´½âÃÜÆäϵͳ£¬£¬£¬µ«Æä²¢Î´Ö§¸¶¡£¡£ÔÚ·¢Ã÷ÈëÇֺ󣬣¬£¬Ò½ÔºÁ¬Ã¦Õö¿ªÊӲ죬£¬£¬²¢ÓÚÉϸöÔ·¢Ã÷»¼Õ߼ͼ¿ÉÄÜÒѱ»Ð¹Â¶¡£¡£¸ÃÒ½Ôº½«ÎªÊÜÓ°ÏìµÄ»¼ÕßÌṩһÄêµÄÐÅÓÃ¼à¿ØºÍÉí·ÝµÁÓñ£»£»£»£»£»£»¤Ð§ÀÍ¡£¡£
ÔÎÄÁ´½Ó£º
https://www.infosecurity-magazine.com/news/cyberattack-exposes-eye-clinic/
3.΢ÈíÈÏ¿ÉÆäÔøÇ©Ê𺬶ñÒârootkitµÄÇý¶¯³ÌÐòNetfilter

΢ÈíÈÏ¿ÉÆäÇ©ÊðµÄÓÃÓÚWindowsµÄµÚÈý·½Çý¶¯³ÌÐòNetfilter°üÀ¨¶ñÒârootkit¡£¡£ÉÏÖÜ£¬£¬£¬G DataµÄÇå¾²¾¯±¨ÏµÍ³±ê¼ÇÁËÒ»¸ö¿´ËÆÎ󱨵«ÏÖʵÉϲ¢·ÇÔÆÔÆµÄÇý¶¯³ÌÐòNetfilter¡£¡£Ñо¿Ö°Ô±·¢Ã÷£¬£¬£¬¸ÃÓ¦ÓõĵÚÒ»¸öC2 URL»á·µ»ØÒ»×é¸ü¶àµÄ·ÓÉ£¨URL£©£¬£¬£¬ËüÃÇÓɹܵÀ£¨¡°|¡±£©·ûºÅÍÑÀ룬£¬£¬ÆäÖÐÿһ¸ö¶¼Óе¥¶ÀÄ¿µÄ£¬£¬£¬ÀýÈçÒÔ¡°/p¡±×îºóµÄURLÓëÊðÀíÉèÖÃÏà¹ØÁª¡¢"/s"Ìṩ±àÂëµÄÖØ¶¨ÏòIP¡¢¡°/v£¿£¿£¿£¿£¿£¿¡±Óë¶ñÒâÈí¼þµÄ×ÔÎÒ¸üй¦Ð§Óйء£¡£¹¥»÷Õß¿Éͨ¹ýÌØÖÆµÄ¶þ½øÖÆÎļþʹÓøÃÓ¦Ó㬣¬£¬Ìᳫ´ó¹æÄ£µÄ¹©Ó¦Á´¹¥»÷¡£¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/microsoft-netfilter-driver-sign-rootkit-malware/
4.ÃÀ¹úFINRAÖÒÑÔαװ³ÉFINRA SupportµÄ´¹ÂÚ¹¥»÷»î¶¯

ÃÀ¹ú֤ȯҵî¿Ïµ»ú¹¹FINRAÖÒÑÔαװ³ÉFINRA SupportµÄ´¹ÂÚ¹¥»÷»î¶¯¡£¡£FINRAÊÇÕþ¸®ÊÚȨµÄ·ÇÓªÀû×éÖ¯£¬£¬£¬ÈÏÕæî¿ÏµÔÚÃÀ¹ú¹ûÕæ»î¶¯µÄËùÓÐÉúÒâËùÊг¡ºÍ֤ȯ¹«Ë¾£¬£¬£¬ÌìÌìÆÊÎöÊýÊ®ÒÚ¸öÊг¡ÉúÒâ¡£¡£ÕâЩÓʼþÉù³ÆÀ´×Ô¡°FINRA SUPPORT¡±£¬£¬£¬µØµãΪ¡°support@westour.org¡±¡£¡£¸ÃÓʼþÒªÇóÊÕ¼þÈË×¢ÖØÏÂÃæËù¸½µÄ±¨¸æ²¢Á¬Ã¦»Ø¸´£¬£¬£¬»¹Ö¸³ö¸½¼þ°üÀ¨¸üÐµĹ«¹²Õþ²ßÐÅÏ¢£¬£¬£¬µ«ÕâЩµç×ÓÓʼþ¿ÉÄÜ»ù´¡Ã»Óи½¼þ¡£¡£ÔçÔÚ½ñÄê3ÔºÍ6Ô³õ£¬£¬£¬FINRA»¹ÖÒÑÔÁËαÔì³É¡°FINRAºÏ¹æÉ󼯡±ºÍÒÔ´¦·ÖΪÓÕ¶üµÄÁ½´Î´¹Âڻ¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/us-brokerage-firms-warned-of-finra-support-phishing-attacks/
5.Ó¢¹úFrench Connection³ÆÆäÔâµ½REvilÀÕË÷Èí¼þ¹¥»÷

Ó¢¹úʱÉй«Ë¾French Connection£¨FCUK£©³ÆÆäÔâµ½REvilÀÕË÷Èí¼þ¹¥»÷¡£¡£Ôڴ˴ι¥»÷ÖУ¬£¬£¬ºÚ¿ÍÆÆËðÁËFCUKµÄЧÀÍÆ÷£¬£¬£¬ÇÔÈ¡¹«Ë¾µÄ´ó×ÚÊý¾Ý£¬£¬£¬²¢¹ûÕæÁ˸߹ܵÄСÎÒ˽¼ÒÐÅÏ¢×÷ΪÑù±¾£¬£¬£¬°üÀ¨Ê×´´È˼æCEO Stephen Marks¡¢CFO Lee WilliamsºÍCOO Neil WilliamsµÄ»¤ÕÕºÍÉí·Ý֤ɨÃè¼þ¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬ÔÚ·¢Ã÷¹¥»÷ºóÁ¬Ã¦¹Ø±ÕÁËËùÓÐÊÜÓ°ÏìµÄϵͳ£¬£¬£¬ÏÖÔÚÕýÔÚ»Ö¸´Æäϵͳ¡£¡£
ÔÎÄÁ´½Ó£º
https://www.theregister.com/2021/06/24/french_connection_says_fcuk_as/
6.Aqua SecurityÐû²¼Õë¶ÔÈÝÆ÷µÄ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ

Aqua SecurityÐû²¼ÁËÕë¶ÔÈÝÆ÷µÄ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ¡£¡£±¨¸æÖ¸³ö£¬£¬£¬ÔÚÁù¸öÔµÄʱ¼äÀ£¬£¬AquaµÄÃÛ¹Þ±»¹¥»÷ÁË17358 ´Î£¬£¬£¬±ÈÁù¸öÔÂǰÔöÌíÁË26%¡£¡£50%ÉèÖùýʧµÄDocker APIÔÚ56·ÖÖÓÄÚ»áÔâµ½¹¥»÷£¬£¬£¬»úеÈËÆ½¾ùÐèÒªÎå¸öСʱÀ´É¨ÃèÒ»¸öеÄÃÛ¹Þ£¬£¬£¬×î¿ìµÄɨÃèÖ»ÐèÒª¼¸·ÖÖÓ£¬£¬£¬¶ø×îÂýµÄɨÃèÐèÒª24Сʱ¡£¡£ÓòÃûÇÀ×¢ºÍƾ֤Ìî³äÊǹ¥»÷Õß¹¥»÷ÈÝÆ÷ºÍDocker¾µÏñ×î³£¼ûµÄÁ½ÖÖ·½·¨£¬£¬£¬ÓëÈ¥ÄêͬÆÚÏà±È£¬£¬£¬2020ÄêϰëÄêµÄ¹¥»÷ÂÊÉÏÉýÁ˽ü600%¡£¡£
ÔÎÄÁ´½Ó£º
https://info.aquasec.com/cloud-native-threats-aqua


¾©¹«Íø°²±¸11010802024551ºÅ