Ç×¶íºÚ¿Í×éÖ¯DDoS¹¥»÷µ¤ÂóÑ¡¾ÙÍøÕ¾

Ðû²¼Ê±¼ä 2025-11-20

1. Ç×¶íºÚ¿Í×éÖ¯DDoS¹¥»÷µ¤ÂóÑ¡¾ÙÍøÕ¾


11ÔÂ19ÈÕ£¬ £¬£¬ £¬£¬£¬µØ·½Ñ¡¾ÙǰϦ£¬ £¬£¬ £¬£¬£¬µ¤Âó¶à¸öÕþµ³¼°Õþ¸®ÍøÕ¾ÔâÓöÇ×¶íºÚ¿Í×éÖ¯NoName057(16)ÌᳫµÄÂþÑÜʽ¾Ü¾øÐ§ÀÍ£¨DDoS£©¹¥»÷£¬ £¬£¬ £¬£¬£¬µ¼ÖÂÊØ¾Éµ³¡¢ºìÂÌͬÃË¡¢ÎÂ˳µ³¡¢Éç»áÃñÖ÷µ³µÈÍøÕ¾¼°¡¶¸ç±¾¹þ¸ùÓʱ¨¡·Ð§ÀÍÆ÷¶ÌÔÝ̱»¾£¬ £¬£¬ £¬£¬£¬µ«Ñ¡¾ÙͶƱδÊÜ×ÌÈÅ¡£¡£¡£¸Ã×éÖ¯ÒÔDDoS¹¥»÷ÖøÃû£¬ £¬£¬ £¬£¬£¬Éù³Æ´Ë´ÎÐж¯Ö¼ÔÚÖÆÔìÔÓÂÒ£¬ £¬£¬ £¬£¬£¬µ«µ¤ÂóÉç»á°ü¹Ü¾ÖÓë¾üÊÂÇ鱨²¿·ÖÖ¸³ö£¬ £¬£¬ £¬£¬£¬´ËÀ๥»÷ÔÚµ¤ÂóÒѳɡ°³£Ì¬¡±£¬ £¬£¬ £¬£¬£¬¶àÓɲ©È¡¹Ø×¢µÄÕûÌåʵÑ飬 £¬£¬ £¬£¬£¬¶ø·Ç×·ÇóÕ½ÂÔÀûÒæ¡£¡£¡£Ñ¡¾Ù¹ÙԱǿµ÷£¬ £¬£¬ £¬£¬£¬Í¶Æ±ÍêÈ«ÓÉÈ˹¤Íê³É£¬ £¬£¬ £¬£¬£¬Ñ¡ÃñÖܶþÕý³£Ç°ÍùͶƱվ£¬ £¬£¬ £¬£¬£¬ÍøÂçÖÐֹδӰÏìЧ¹û¡£¡£¡£µ¤ÂóÕþ¸®½üÆÚ¼à²âµ½¹«¹²¼°Ë½Óª²¿·ÖÍøÕ¾¹¥»÷Ôö¶à£¬ £¬£¬ £¬£¬£¬Ðí¶àÊÂÎñ±»Ç×¶í×éÖ¯ÈÏÁì¡£¡£¡£ÀýÈç±¾Ô³õ£¬ £¬£¬ £¬£¬£¬Õþ¸®Óë¹ú·À¹«Ë¾ÍøÕ¾ÔøÒòDDoS¹¥»÷¶ÌÔÝÏÂÏߣ¬ £¬£¬ £¬£¬£¬¹ÙÔ±ÍÆ²â¹¥»÷ԴΪ¶íÂÞ˹¡£¡£¡£NoName057(16)½¨ÉèÓÚ2022Äê¶íÎÚ³åÍ»ºó£¬ £¬£¬ £¬£¬£¬×¨×¢ÓÚ·¢¶¯¶ÌÆÚDDoS¹¥»÷£¬ £¬£¬ £¬£¬£¬Ä¿µÄº­¸Ç²¨À¼¡¢½Ý¿Ë¡¢Á¢ÌÕÍð¡¢Òâ´óÀûµÈÅ·ÖÞ¹ú¼Ò¡£¡£¡£Ö»¹ÜÎ÷Å·Ö´·¨²¿·Ö½ñÄê7Ô²é»ñ¸Ã×éÖ¯100Óą̀ЧÀÍÆ÷£¬ £¬£¬ £¬£¬£¬µÂ¹ú¶ÔÁùÃû¶íÂÞ˹¼®³ÉÔ±·¢³ö¾Ð²¶Á £¬£¬ £¬£¬£¬µ«¸Ã×éÖ¯ÈÔÖðÈÕͨ¹ýXºÍTelegramƵµÀÐû²¼ÐÂÄ¿µÄ¡£¡£¡£


https://therecord.media/denmark-election-political-government-websites-ddos-incidents


2.FortinetÐÞ¸´ÁãÈÕÎó²î£¬ £¬£¬ £¬£¬£¬ÍþвÐÐΪÕßÌᳫ¹¥»÷


11ÔÂ18ÈÕ£¬ £¬£¬ £¬£¬£¬È«ÇòÍøÂçÇå¾²³§ÉÌFortinetÐû²¼½ôÆÈÇå¾²¸üУ¬ £¬£¬ £¬£¬£¬ÐÞ¸´ÆìÏÂFortiWeb WebÓ¦Ó÷À»ðǽÖÐÁ½¸ö±»Æð¾¢Ê¹ÓõÄÁãÈÕÎó²î¡ª¡ªCVE-2025-58034ºÍCVE-2025-64446¡£¡£¡£ÆäÖУ¬ £¬£¬ £¬£¬£¬CVE-2025-58034ÓÉÇ÷ÊÆ¿Æ¼¼Ñо¿ÍŶӱ¨¸æ£¬ £¬£¬ £¬£¬£¬ÊôÓÚ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬ £¬£¬ £¬£¬£¬¹¥»÷Õß¿Éͨ¹ý½á¹¹HTTPÇëÇó»òCLIÏÂÁîÔڵײãϵͳִÐÐí§Òâ´úÂ룬 £¬£¬ £¬£¬£¬ÎÞÐèÓû§½»»¥ÇÒÊÖÒÕÃż÷µÍ¡£¡£¡£Fortinet֤ʵ£¬ £¬£¬ £¬£¬£¬¸ÃÎó²îÒѱ»ÍþвÐÐΪÕßÓÃÓÚÏÖʵ¹¥»÷£¬ £¬£¬ £¬£¬£¬Ç÷ÊÆ¿Æ¼¼¼à²âµ½Ô¼2000´Î¹¥»÷ʵÑé¡£¡£¡£ÁíÒ»Îó²îCVE-2025-64446ÔòÔÊÐí¹¥»÷Õßͨ¹ýHTTP POSTÇëÇóÔÚ̻¶װ±¸ÉϽ¨ÉèÖÎÀíÔ±ÕË»§£¬ £¬£¬ £¬£¬£¬´ËǰÒÑÒý·¢´ó¹æÄ£Ê¹Óᣡ£¡£ÃÀ¹úÍøÂçÇå¾²Óë»ù´¡ÉèÊ©Çå¾²¾Ö£¨CISA£©Òѽ«¸ÃÎó²îÁÐÈë"ÒÑÖª±»Ê¹ÓÃÎó²îĿ¼"£¬ £¬£¬ £¬£¬£¬ÒªÇóÁª°î»ú¹¹ÓÚ11ÔÂ21ÈÕǰÍê³ÉÐÞ¸´¡£¡£¡£Õë¶ÔÎó²îÐÞ¸´£¬ £¬£¬ £¬£¬£¬Fortinet½¨ÒéÖÎÀíÔ±½«FortiWeb×°±¸Éý¼¶ÖÁ×îа汾£º8.0.2¡¢7.6.6¡¢7.4.11¡¢7.2.12»ò7.0.12¼°ÒÔÉÏ¡£¡£¡£


https://www.bleepingcomputer.com/news/security/fortinet-warns-of-new-fortiweb-zero-day-exploited-in-attacks/


3. ChromeÁãÈÕÎó²î±»Ê¹Ó㬠£¬£¬ £¬£¬£¬¹È¸è½ôÆÈÐû²¼ÐÞ¸´


11ÔÂ18ÈÕ£¬ £¬£¬ £¬£¬£¬¹È¸èÐû²¼½ôÆÈÇå¾²¸üУ¬ £¬£¬ £¬£¬£¬ÐÞ¸´Chromeä¯ÀÀÆ÷V8 JavaScriptÒýÇæÖеÄÀàÐÍ»ìÏýÎó²îCVE-2025-13223¡£¡£¡£¸ÃÎó²îÒѱ»Ö¤ÊµÔâÏÖʵʹÓ㬠£¬£¬ £¬£¬£¬¹¥»÷Õß¿Éͨ¹ý¶ñÒâ½á¹¹µÄÍøÒ³´¥·¢Îó²î£¬ £¬£¬ £¬£¬£¬µ¼ÖÂä¯ÀÀÆ÷Í߽⻣»£»òÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¹È¸èÍþвÆÊÎöС×飨TAG£©Ö¸³ö£¬ £¬£¬ £¬£¬£¬´ËÀàÎó²î³£±»Õþ¸®Ö§³ÖµÄÌØ¹¤×é֯ʹÓ㬠£¬£¬ £¬£¬£¬Õë¶Ô¼ÇÕß¡¢Òì¼ûÈËÊ¿µÈ¸ßΣº¦ÈºÌåʵÑ龫׼¹¥»÷¡£¡£¡£´Ë´ÎÐÞ¸´ÁýÕÖWindows£¨142.0.7444.175/176£©¡¢Mac£¨142.0.7444.176£©¼°Linux£¨142.0.7444.175£©Æ½Ì¨¡£¡£¡£Ö»¹ÜChromeͨ³£×Ô¶¯¸üУ¬ £¬£¬ £¬£¬£¬Óû§ÈÔ¿Éͨ¹ý¡°²Ëµ¥-×ÊÖú-¹ØÓÚGoogle Chrome¡±ÊÖ¶¯¼ì²é²¢×°Öò¹¶¡¡£¡£¡£¹È¸èÌåÏÖ£¬ £¬£¬ £¬£¬£¬ÔÚ´ó¶¼Óû§Íê³É¸üÐÂǰ£¬ £¬£¬ £¬£¬£¬½«ÏÞÖÆÎó²îϸ½Ú¹ûÕæ£¬ £¬£¬ £¬£¬£¬×èÖ¹µÚÈý·½¿âÒÀÀµ¸ÃÎó²îµÄÑÜÉúΣº¦¡£¡£¡£CVE-2025-13223Êǹȸè½ñÄêÐÞ¸´µÄµÚÆß¸ö±»Ê¹ÓõÄChromeÁãÈÕÎó²î¡£¡£¡£


https://www.bleepingcomputer.com/news/security/google-fixes-new-chrome-zero-day-flaw-exploited-in-attacks/


4. Everest GroupÀÕË÷ÍŻ﹥»÷°ÍÎ÷ʯÓ;ÞÍ·Petrobras


11ÔÂ18ÈÕ£¬ £¬£¬ £¬£¬£¬Óë¶íÂÞ˹¹ØÁªµÄÀÕË÷Èí¼þÍÅ»ïEverest Group¿ËÈÕÐû³Æ£¬ £¬£¬ £¬£¬£¬´Ó°ÍÎ÷¹ú¼ÒʯÓ͹«Ë¾PetrobrasÇÔÈ¡90GBÃô¸ÐµØ¶¯¿±Ì½Êý¾Ý£¬ £¬£¬ £¬£¬£¬°üÀ¨¿²²¨Ë¹ÅèµØÑÎϲãÈýά/ËÄάµØ¶¯µ¼º½Êý¾Ý¡¢OBN½ÚµãλÖá¢DGPS¾«¶È¡¢×°±¸ÔªÊý¾Ý¼°ÖÊÁ¿¿ØÖƱ¨¸æµÈ£¬ £¬£¬ £¬£¬£¬²¢ÏÞÖÆÁùÌìÄÚ̸ÅÐÊê½ð£¬ £¬£¬ £¬£¬£¬²»È»½«¹ûÕæ»ò³öÊÛÊý¾Ý¡£¡£¡£Petrobras×÷Ϊ°ÍÎ÷¹úÓпعɿç¹úÄÜÔ´ÆóÒµ£¬ £¬£¬ £¬£¬£¬2024ÄêÊÕÈ볬910ÒÚÃÀÔª£¬ £¬£¬ £¬£¬£¬Æä½üÆÚÔÚ¿²²¨Ë¹ÅèµØµÄÓÅÖÊʯÓÍ·¢Ã÷Óëй¶Êý¾Ý¸ß¶È¹ØÁª£¬ £¬£¬ £¬£¬£¬¿ÉÄÜÉæ¼°¿±Ì½ÊÖÒÕÉñÃØ¡£¡£¡£CybernewsÆÊÎöÖ¸³ö£¬ £¬£¬ £¬£¬£¬Ð¹Â¶Êý¾ÝËäδ̻¶ʵʱ×÷ҵϵͳ£¬ £¬£¬ £¬£¬£¬µ«´¬²°×ø±ê¡¢×°±¸²ÎÊý¼°¿±Ì½Ð§¹ûµÄÆØ¹â½«Ï÷ÈõPetrobrasµÄ¾ºÕùÓÅÊÆ²¢Ëðº¦ÉùÓþ¡£¡£¡£


https://cybernews.com/security/brazil-petrobras-ransomware-attack/


5. CloudflareÈ«ÇòЧÀÍÖÐÖ¹ÖÂÒÚÍòÓû§ÊÜ×è


11ÔÂ18ÈÕ£¬ £¬£¬ £¬£¬£¬È«ÇòÔÆÐ§ÀÍÌṩÉÌCloudflareÒòÊÖÒÕ¹ÊÕÏÒý·¢´ó¹æÄ£»£»£»¥ÁªÍø»á¼ûÖÐÖ¹£¬ £¬£¬ £¬£¬£¬Ó°Ïì¹æÄ£²¨¼°È«ÇòÊýÒÚÓû§¡£¡£¡£ÊÂÎñʼÓÚ¸ñÁÖÍþÖαê׼ʱ¼ä11:48£¬ £¬£¬ £¬£¬£¬CloudflareÍøÂç·ºÆð"ÄÚ²¿Ð§Àͽµ¼¶"£¬ £¬£¬ £¬£¬£¬µ¼ÖÂÓû§ÎÞ·¨»á¼ûÒÀÀµÆäЧÀ͵ÄÍøÕ¾¼°Ó¦ÓóÌÐò£¬ £¬£¬ £¬£¬£¬°üÀ¨X¡¢ChatGPT¡¢Spotify¡¢GrindrµÈÈÈÃÅÆ½Ì¨¡£¡£¡£Cloudflare×÷ΪȫÇò19%»îÔ¾ÍøÕ¾¼°35%²Æ²ú500Ç¿ÆóÒµµÄµ×²ãЧÀÍÉÌ£¬ £¬£¬ £¬£¬£¬ÆäÿÃë´¦Öóͷ£8100Íò´ÎHTTPÇëÇóµÄÄÜÁ¦ÔÚ¹ÊÕÏʱ´úÑÏÖØÊÜ×裬 £¬£¬ £¬£¬£¬Òý·¢Á¬Ëø·´Ó¦¡£¡£¡£×èÖ¹14:30£¬ £¬£¬ £¬£¬£¬CloudflareËäÉù³ÆÊµÑéÐÞ¸´³ÌÐò²¢½â¾öÖ÷ÒªÎÊÌ⣬ £¬£¬ £¬£¬£¬µ«¼äЪÐÔ¹ýʧÈÔÒ»Á¬±£´æ£¬ £¬£¬ £¬£¬£¬Â׶صØÇøWARPЧÀÍÔø¶ÌÔݽûÓúó»Ö¸´¡£¡£¡£´Ë´ÎÖÐÖ¹²»µ«Ôì³ÉÓû§µÇ¼¡¢ÍøÕ¾»á¼û¼°¿ØÖÆÃæ°å²Ù×÷ÄÑÌ⣬ £¬£¬ £¬£¬£¬¸ü̻¶ÁËÈ«ÇòÊý×Ö»ù´¡ÉèÊ©µÄ¸ß¶ÈÒÀÀµÐÔ¡£¡£¡£¾­¼ÃËðʧ·½Ã棬 £¬£¬ £¬£¬£¬¾ÝSupportMy.Website¹ÀË㣬 £¬£¬ £¬£¬£¬Ã¿Ð¡Ê±Í£»£»£»ú¿ÉÄܵ¼ÖÂÆóÒµËðʧ50ÒÚÖÁ150ÒÚÃÀÔª£¬ £¬£¬ £¬£¬£¬´Ó´óÐÍÒøÐе½Ð¡ÐÍÆóÒµ¾ùÊܲ¨¼°¡£¡£¡£


https://cybernews.com/news/cloudflare-outage-internet-down/


6. ÃÀÓ¢°ÄÁªºÏÖÆ²Ã¶íÂÞ˹·Àµ¯Ö÷»úÌṩÉÌ


11ÔÂ19ÈÕ£¬ £¬£¬ £¬£¬£¬ÃÀ¹ú¡¢Ó¢¹úºÍ°Ä´óÀûÑÇÁªºÏÐû²¼¶ÔÖ§³ÖÀÕË÷Èí¼þÍŻPÆäËûÍøÂç·¸·¨»î¶¯µÄ¶íÂÞ˹·Àµ¯Ö÷»ú£¨BPH£©ÌṩÉÌʵÑéÖÆ²Ã£¬ £¬£¬ £¬£¬£¬Ö¼ÔÚ¹¥»÷ÍøÂç·¸·¨Éú̬Á´µÄÒªº¦»·½Ú¡£¡£¡£´Ë´ÎÖÆ²Ã¾Û½¹ÓÚMedia Land¼°ÆäÈý¼Òæ¢Ãù«Ë¾£¨Media Land Technology¡¢Data Center Kirishi¡¢ML Cloud£©£¬ £¬£¬ £¬£¬£¬ÒÔ¼°ÈýÃû¸ß¹ÜAleksandr Volosovik¡¢Kirill ZatolokinºÍYulia Pankova¡£¡£¡£ÕâЩʵÌåºÍСÎÒ˽¼Ò±»Ö¸¿ØÎªLockBit¡¢BlackSuit¡¢PlayµÈÀÕË÷Èí¼þ×éÖ¯¼°Evil Corp¡¢Black BastaµÈÍøÂç·¸·¨¼¯ÍÅÌṩЧÀÍÆ÷×âÁÞЧÀÍ£¬ £¬£¬ £¬£¬£¬ÖúÆä¿ªÕ¹ÍøÂç´¹ÂÚ¡¢¶ñÒâÈí¼þÈö²¥¡¢ÏÂÁîÓë¿ØÖÆ²Ù×÷¡¢DDoS¹¥»÷¼°²»·¨ÄÚÈÝÍйܵȻ¡£¡£¡£Media LandµÄ»ù´¡ÉèÊ©ÉõÖÁ±»ÓÃÓÚ¹¥»÷ÃÀ¹úÒªº¦»ù´¡ÉèÊ©£¬ £¬£¬ £¬£¬£¬ÈçµçÐÅϵͳ¡£¡£¡£ÃÀ¹ú²ÆÎñ²¿Íâ¹ú×ʲú¿ØÖư칫ÊÒ£¨OFAC£©½«ÉÏÊöʵÌåÁÐÈëÖÆ²ÃÃûµ¥£¬ £¬£¬ £¬£¬£¬¶³½áÆäÔÚÃÀ¹ú¾³ÄڵĹ¤Òµ£¬ £¬£¬ £¬£¬£¬²¢ÖÒÑÔÓëÕâЩʵÌåÉúÒâµÄµÚÈý·½¿ÉÄÜÃæÁÙ¶þ¼¶ÖƲᣡ£¡£Ó¢ÍâÑó½»²¿Ç¿µ÷£¬ £¬£¬ £¬£¬£¬ÍøÂç·¸·¨·Ö×ÓÎÞ·¨ÌÓ×ß×·Ô𣬠£¬£¬ £¬£¬£¬Ó¢ÃÀ°Ä½«ÁªºÏ½ÒÆÆÆäÆáºÚÍøÂç¡£¡£¡£


https://www.bleepingcomputer.com/news/security/us-sanctions-russian-bulletproof-hosting-provider-media-land-over-ransomware-ties/