JSOFÅû¶DnsmasqÖÐ7¸öͳ³ÆÎªDNSpooqµÄÎó²î£»ºÚ¿Í¹ûÕæCapital EconomicsµÄ50¶àÍò¸ö¿Í»§µÄÐÅÏ¢

Ðû²¼Ê±¼ä 2021-01-20
1.JSOFÅû¶DnsmasqÖÐ7¸öͳ³ÆÎªDNSpooqµÄÎó²î


1.jpg


JSOFµÄÑо¿Ö°Ô±Åû¶ÁËDnsmasqÖеÄ7¸öDNSpooqÎó²î ¡£DnsmasqÊÇ»ùÓÚ*NIX²Ù×÷ϵͳµÄDNSת·¢¿Í»§¶Ë £¬Í¨³£ÔÚÖÖÖÖÍøÂç×°±¸µÄ¹Ì¼þÖÐ ¡£´Ë´Î×ܹ²Åû¶ÁË7¸öÎó²î £¬ËûÃDZ»Í³³ÆÎªDNSpooq £¬ÆäÖÐ4¸öÊÇ»º³åÇøÒç³öÎó²î £¬¿ÉÄܵ¼ÖÂÔ¶³ÌÖ´ÐдúÂë £¬¶øÆäËû3¸öÎó²îÔò¿Éµ¼ÖÂDNS»º´æÖж¾ ¡£JSOF³Æ¹¥»÷Õß¿ÉÍŽáʹÓÃDNSpooqºÍ¾É°æDnsmasqÈí¼þ £¬¶ÔÖ±½Ó̻¶ÔÚInternetÉϵÄDnsmasq¾ÙÐй¥»÷ £¬²¢ÇÒÊÜÓ°Ïì×°±¸Ëù´¦µÄÄÚÍøÉÏµÄÆäËü×°±¸Ò²½«´¦ÓÚΣÏÕÖ®ÖÐ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/dnspooq-lets-attackers-poison-dns-cache-records/


2.ºÚ¿Í¹ûÕæCapital EconomicsµÄ50¶àÍò¸ö¿Í»§µÄÐÅÏ¢


2.png


CybleµÄÑо¿Ö°Ô±ÔÚ¶íÓïÂÛ̳ÉÏ·¢Ã÷ÁËCapital EconomicsµÄ50¶àÍò¸öÖ÷ÒªÓû§µÄСÎÒ˽¼Ò×ÊÁÏ ¡£CapitalEconomics.comÊÇÈ«ÇòÁìÏȵÄ×ÔÁ¦¾­¼ÃÑо¿¹«Ë¾ £¬Ìṩºê¹Û¾­¼Ã¡¢½ðÈÚÊг¡ÒÔ¼°ÐÐÒµÕ¹ÍûºÍ×Éѯ·þÎñ ¡£´Ë´Îй¶µÄÐÅÏ¢°üÀ¨Ð¹Â¶µÄ¼Í¼°üÀ¨µç×ÓÓʼþID¡¢ÃÜÂëµÄ¹þÏ£ºÍµØÖ·µÈ ¡£CybleÏò¿Í»§¼û¸æÁ˸ÃÊÂÎñ £¬²¢Ö¸³öµç×ÓÓʼþID¿ÉÄܻᱻÓÃÀ´¾ÙÐÐÆÕ±éµÄ¶ñÒâÔ˶¯ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/113581/deep-web/capital-economics-data-leak.html


3.IObitÂÛ̳Ôâµ½¹¥»÷ £¬ÏòÓû§·Ö·¢DeroHEÀÕË÷Èí¼þ


3.png


IObitÂÛ̳ÓÚÉÏÖÜÄ©Ôâµ½¹¥»÷ £¬ÏòÓû§·Ö·¢DeroHEÀÕË÷Èí¼þ ¡£IObitÂÛ̳³ÉÔ±ÊÕµ½Éù³ÆÀ´×ÔIObitµÄÓʼþ £¬¼û¸æÆä¿ÉÃâ·Ñ»ñµÃÈí¼þµÄ1ÄêÔÊÐíÖ¤ ¡£ÓʼþÖаüÀ¨Ò»¸öÁ¬Ã¦»ñÈ¡µÄ¶ñÒâÁ´½Ó £¬¿É½«Óû§Öض¨Ïòµ½Ò»¸ö²»±£´æµÄµØÖ· £¬²¢´ÓÁíÒ»µØÖ·hxxps://forums.iobit.com/free-iobit-license-promo.zip·Ö·¢¶ñÒâÎļþ ¡£¸ÃÎļþ°üÀ¨ÁËÀ´×ÔÕýµ±µÄIObitÔÊÐí¹ÜÀí³ÌÐòµÄÊý×ÖÊðÃûÎļþ £¬ºÍ¶ñÒâµÄIObitUnlocker.dll ¡£ÔÚÖ´ÐÐÔÊÐí¹ÜÀí³ÌÐòʱ £¬¸Ã¶ñÒâ.dllÒ²½«±»Ö´ÐÐ £¬²¢ÔÚCÅÌ×°ÖÃDeroHEÀÕË÷Èí¼þ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/iobit-forums-hacked-to-spread-ransomware-to-its-members/


4.CHwapiҽԺѬȾÀÕË÷Èí¼þ £¬ÉϰŲ̀ÊÖÊõ±»ÆÈ×÷·Ï


4.png


CHwapiÒ½ÔºÓÚ±¾ÖÜÈÕÔâµ½ÀÕË÷Èí¼þ¹¥»÷ £¬ÉϰŲ̀ÊÖÊõ±»ÆÈ×÷·Ï ¡£´Ë´Î¹¥»÷±¬·¢ÔÚÐÇÆÚÈÕÍíÉÏ8µã46·Ö×óÓÒ £¬CHwapiÒ½ÔºµÄ300̨ÅÌËã»úÖÐ £¬ÓÐÖÁÉÙ80̨Êܵ½ÁËÓ°Ïì ¡£ÓÉÓÚÎÞ·¨ÔÙ¼û¼ûϵͳÖеÄСÎÒ˽¼ÒÊý¾Ý £¬ÊÂÇéÖ°Ô±±»ÆÈ×îÏÈÉó²é¾ÉµÄÖ½ÖÊÊý¾Ý ¡£ÃæÁÙÕâÖÖÇéÐÎ £¬¸ÃÔºÒ²×÷·ÏÁËÖÜÒ»µÄÉϰŲ̀ÊÖÊõ ¡£¸ÃÔº³Æ £¬ÏÖÔÚ²¢Ã»ÓÐÊý¾Ýй¶ £¬ºÚ¿ÍҲûÓÐÌá³öÊê½ðÒªÇó ¡£


Ô­ÎÄÁ´½Ó£º

https://m.lavenir.net/cnt/dmf20210118_01546284/le-chwapi-victime-d-une-cyber-attaque-des-operations-annulees


5.FBIÐû²¼ÓйØÇÔÈ¡ÕÊ»§Æ¾Ö¤µÄVishingÔ˶¯µÄ¾¯±¨


5.png


ÃÀ¹úFBIÐû²¼ÓйØÇÔÈ¡ÕÊ»§Æ¾Ö¤µÄVishingÔ˶¯µÄ¾¯±¨ ¡£Vishing£¨Ò²³ÆÎªÓïÒôÍøÂç´¹ÂÚ£©ÊÇÒ»ÖÖÉç»á¹¤³Ì¹¥»÷ £¬¹¥»÷ÕßÖ¼ÔÚ˵·þÆäÄ¿µÄй¶Ãô¸ÐÐÅÏ¢ £¬ÀýÈçÒøÐеǼƾ֤ ¡£Ôڴ˴ι¥»÷Ô˶¯ÖÐ £¬¹¥»÷ÕßʹÓÃÁË»¥ÁªÍøÐ­ÒéÓïÒô£¨VoIP£©Æ½Ì¨À´Ãé׼ȫÇò¹«Ë¾µÄÔ±¹¤ ¡£ËûÃÇÊ×ÏÈÓÕÆ­Ä¿µÄÔ±¹¤µÇ¼´¹ÂÚÍøÕ¾ £¬ÒÔ»ñÈ¡ÆäµÇ¼ƾ֤ ¡£½øÈëÄ¿µÄ¹«Ë¾ºó £¬ÔÙʹÓÃÊÜѬȾԱ¹¤µÄÕÊ»§À´ÌáȨ²¢½øÒ»²½ÉøÍ¸ÍøÂç £¬ÕâÍùÍù»áÔì³ÉÖØ´óµÄ²ÆÎñËðʧ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fbi-warns-of-vishing-attacks-stealing-corporate-accounts/


6.ACI WorldwideÐû²¼ÓйØÈ«ÇòÖ§¸¶Ç÷ÊÆµÄÆÊÎö±¨¸æ


6.png


ACI WorldwideÐû²¼ÁËÓйØÈ«ÇòÖ§¸¶Ç÷ÊÆµÄÆÊÎö±¨¸æ ¡£ÔÚ2020Äê £¬ACI WorldwideÓëGlobalDataºÏ×÷ £¬´Ó30¸öÈ«ÇòÊг¡µÄÑù±¾ÖÐÆÊÎöÁ˼´Ê±¸¶¿î£¨IP£©µÄÇ÷ÊÆ ¡£±¨¸æÖ¸³ö £¬ÔÚÈ«Çò¹æÄ£ÄÚ £¬ÊµÊ±»ò¼´Ê±¸¶¿î£¨IP£©µÄʹÓÃÁ¿¶¼ÔÚÔöÌí ¡£¹ØÓÚÖйú £¬¼øÓÚÉú³ÝÖÚ¶à £¬Òò´Ë±¬·¢ÁË´ó×ÚµÄIPÉúÒ⣨2019ÄêÁè¼Ý160Òڱʣ© £¬Ô¤¼ÆÎåÄêµÄ¸´ºÏÄêÔöÌíÂÊΪ18.8£¥ ¡£


Ô­ÎÄÁ´½Ó£º

https://go.aciworldwide.com/Global-Payments-Report