2020-08-25
Ðû²¼Ê±¼ä 2020-08-26ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_ľÂíºóÃÅ_CobaltStrike_WebDelivery.py_ÅþÁ¬C2·þÎñÆ÷ |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Óɺڿ͹¤¾ß CobaltStrike ÌìÉúµÄ ºóÃÅpython¾ç±¾ ÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷ÏÂÔØľÂí CobaltStrike.Beacon, Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄÜÖ´ÐÐÁËCobaltStrikeµÄpythonºóÃÅ¡£CobaltStrike.BeaconÖ´Ðк󹥻÷Õß¿ÉʹÓÃCobaltStrikeÍêÈ«¿ØÖÆÊܺ¦»úе£¬²¢¾ÙÐкáÏòÒƶ¯¡£ |
¸üÐÂʱ¼ä£º | 20200825 |
ÊÂÎñÃû³Æ£º | HTTP_ľÂíºóÃÅ_CobaltStrike.StagerX64_ÅþÁ¬C2·þÎñÆ÷ |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Óɺڿ͹¤¾ß CobaltStrike ÌìÉúµÄºóÃÅ StagerX64 ÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷ÏÂÔØľÂí CobaltStrike.Beacon, Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCobaltStrike.StagerX64¡£CobaltStrike.BeaconÖ´Ðк󹥻÷Õß¿ÉʹÓÃCobaltStrikeÍêÈ«¿ØÖÆÊܺ¦»úе£¬²¢¾ÙÐкáÏòÒƶ¯¡£ |
¸üÐÂʱ¼ä£º | 20200825 |
ÊÂÎñÃû³Æ£º | TCP_Çå¾²Îó²î_Samba_Ô¶³Ì´úÂëÖ´ÐÐÎó²î_ʹÓÃʧ°Ü[CVE-2017-7494][CNNVD-201705-1209] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»ú¶ÔÄ¿µÄIPʹÓÃsambaÎó²î¹¥»÷µÄÐÐΪ¡£ |
¸üÐÂʱ¼ä£º | 20200825 |
ÊÂÎñÃû³Æ£º | TCP_Çå¾²Îó²î_Samba_Ô¶³Ì´úÂëÖ´ÐÐÎó²î_ʹÓÃÀÖ³É[CVE-2017-7494][CNNVD-201705-1209] |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»ú¶ÔÄ¿µÄIPʹÓÃsambaÎó²î¹¥»÷µÄÐÐΪ¡£ |
¸üÐÂʱ¼ä£º | 20200825 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º | HTTP_ľÂíºóÃÅ_Win32.Zebrocy.Downloader(APT28)_ÅþÁ¬ |
Çå¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ÊÂÎñÐÎò£º | ¼ì²âµ½ZebrocyÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËZebrocy¡£ |
¸üÐÂʱ¼ä£º | 20200825 |
ÊÂÎñÃû³Æ£º | HTTP_Apache_httpOnly_CookieÐÅϢй¶Îó²î |
Çå¾²ÀàÐÍ£º | Çå¾²Îó²î |
ÊÂÎñÐÎò£º | ¼ì²âÔ´IPÖ÷»úÕýÊÔͼͨ¹ýApache HTTP Server "httpOnly" CookieÐÅϢй¶Îó²î¹¥»÷Ä¿µÄIPµØµãÖ÷»ú¡£ |
¸üÐÂʱ¼ä£º | 20200825 |
ÊÂÎñÃû³Æ£º | HTTP_SQL¹ýʧÐÅϢй¶_2 |
Çå¾²ÀàÐÍ£º | CGI¹¥»÷ |
ÊÂÎñÐÎò£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼʹÓÃÄ¿µÄIPÖ÷»úµÄSQL¹ýʧÐÅÏ¢£¬¿ÉÄÜÔì³ÉÐÅϢй¶¡£ |
¸üÐÂʱ¼ä£º | 20200825 |