Ç×¶íºÚ¿Í×éÖ¯DDoS¹¥»÷µ¤ÂóÑ¡¾ÙÍøÕ¾

Ðû²¼Ê±¼ä 2025-11-20

1. Ç×¶íºÚ¿Í×éÖ¯DDoS¹¥»÷µ¤ÂóÑ¡¾ÙÍøÕ¾


11ÔÂ19ÈÕ£¬µØ·½Ñ¡¾ÙǰϦ£¬µ¤Âó¶à¸öÕþµ³¼°Õþ¸®ÍøÕ¾ÔâÓöÇ×¶íºÚ¿Í×éÖ¯NoName057(16)ÌᳫµÄÂþÑÜʽ¾Ü¾ø·þÎñ£¨DDoS£©¹¥»÷£¬µ¼ÖÂÊØ¾Éµ³¡¢ºìÂÌͬÃË¡¢ÎÂ˳µ³¡¢Éç»áÃñÖ÷µ³µÈÍøÕ¾¼°¡¶¸ç±¾¹þ¸ùÓʱ¨¡··þÎñÆ÷¶ÌÔÝ̱»¾£¬µ«Ñ¡¾ÙͶƱδÊÜ×ÌÈÅ¡£¸Ã×éÖ¯ÒÔDDoS¹¥»÷ÖøÃû£¬Éù³Æ´Ë´ÎÐж¯Ö¼ÔÚÖÆÔìÔÓÂÒ£¬µ«µ¤ÂóÉç»á°ü¹Ü¾ÖÓë¾üÊÂÇ鱨²¿·ÖÖ¸³ö£¬´ËÀ๥»÷ÔÚµ¤ÂóÒѳɡ°³£Ì¬¡±£¬¶àÓɲ©È¡¹Ø×¢µÄÕûÌåʵÑ飬¶ø·Ç×·ÇóÕ½ÂÔÀûÒæ¡£Ñ¡¾Ù¹ÙԱǿµ÷£¬Í¶Æ±ÍêÈ«ÓÉÈ˹¤Íê³É£¬Ñ¡ÃñÖܶþÕý³£Ç°ÍùͶƱվ£¬ÍøÂçÖÐֹδӰÏìЧ¹û¡£µ¤ÂóÕþ¸®½üÆÚ¼à²âµ½¹«¹²¼°Ë½Óª²¿·ÖÍøÕ¾¹¥»÷Ôö¶à£¬Ðí¶àÊÂÎñ±»Ç×¶í×éÖ¯ÈÏÁì¡£ÀýÈç±¾Ô³õ£¬Õþ¸®Óë¹ú·À¹«Ë¾ÍøÕ¾ÔøÒòDDoS¹¥»÷¶ÌÔÝÏÂÏߣ¬¹ÙÔ±ÍÆ²â¹¥»÷ԴΪ¶íÂÞ˹¡£NoName057(16)½¨ÉèÓÚ2022Äê¶íÎÚ³åÍ»ºó£¬×¨×¢ÓÚ·¢¶¯¶ÌÆÚDDoS¹¥»÷£¬Ä¿µÄº­¸Ç²¨À¼¡¢½Ý¿Ë¡¢Á¢ÌÕÍð¡¢Òâ´óÀûµÈÅ·ÖÞ¹ú¼Ò¡£Ö»¹ÜÎ÷Å·Ö´·¨²¿·Ö½ñÄê7Ô²é»ñ¸Ã×éÖ¯100Óą̀·þÎñÆ÷£¬µÂ¹ú¶ÔÁùÃû¶íÂÞ˹¼®³ÉÔ±·¢³ö¾Ð²¶Áµ«¸Ã×éÖ¯ÈÔÖðÈÕͨ¹ýXºÍTelegramƵµÀÐû²¼ÐÂÄ¿µÄ¡£


https://therecord.media/denmark-election-political-government-websites-ddos-incidents


2.FortinetÐÞ¸´ÁãÈÕÎó²î£¬ÍþвÐÐΪÕßÌᳫ¹¥»÷


11ÔÂ18ÈÕ£¬È«ÇòÍøÂçÇå¾²³§ÉÌFortinetÐû²¼½ôÆÈÇå¾²¸üУ¬ÐÞ¸´ÆìÏÂFortiWeb WebÓ¦Ó÷À»ðǽÖÐÁ½¸ö±»Æð¾¢Ê¹ÓõÄÁãÈÕÎó²î¡ª¡ªCVE-2025-58034ºÍCVE-2025-64446¡£ÆäÖУ¬CVE-2025-58034ÓÉÇ÷ÊÆ¿Æ¼¼Ñо¿ÍŶӱ¨¸æ£¬ÊôÓÚ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬¹¥»÷Õß¿Éͨ¹ý½á¹¹HTTPÇëÇó»òCLIÏÂÁîÔڵײãϵͳִÐÐí§Òâ´úÂ룬ÎÞÐèÓû§½»»¥ÇÒÊÖÒÕÃż÷µÍ¡£Fortinet֤ʵ£¬¸ÃÎó²îÒѱ»ÍþвÐÐΪÕßÓÃÓÚÏÖʵ¹¥»÷£¬Ç÷ÊÆ¿Æ¼¼¼à²âµ½Ô¼2000´Î¹¥»÷ʵÑé¡£ÁíÒ»Îó²îCVE-2025-64446ÔòÔÊÐí¹¥»÷Õßͨ¹ýHTTP POSTÇëÇóÔÚ̻¶װ±¸ÉϽ¨ÉèÖÎÀíÔ±ÕË»§£¬´ËǰÒÑÒý·¢´ó¹æÄ£Ê¹Óá£ÃÀ¹úÍøÂçÇå¾²Óë»ù´¡ÉèÊ©Çå¾²¾Ö£¨CISA£©Òѽ«¸ÃÎó²îÁÐÈë"ÒÑÖª±»Ê¹ÓÃÎó²îĿ¼"£¬ÒªÇóÁª°î»ú¹¹ÓÚ11ÔÂ21ÈÕǰÍê³ÉÐÞ¸´¡£Õë¶ÔÎó²îÐÞ¸´£¬Fortinet½¨ÒéÖÎÀíÔ±½«FortiWeb×°±¸Éý¼¶ÖÁ×îа汾£º8.0.2¡¢7.6.6¡¢7.4.11¡¢7.2.12»ò7.0.12¼°ÒÔÉÏ¡£


https://www.bleepingcomputer.com/news/security/fortinet-warns-of-new-fortiweb-zero-day-exploited-in-attacks/


3. ChromeÁãÈÕÎó²î±»Ê¹Ó㬹ȸè½ôÆÈÐû²¼ÐÞ¸´


11ÔÂ18ÈÕ£¬¹È¸èÐû²¼½ôÆÈÇå¾²¸üУ¬ÐÞ¸´Chromeä¯ÀÀÆ÷V8 JavaScriptÒýÇæÖеÄÀàÐÍ»ìÏýÎó²îCVE-2025-13223¡£¸ÃÎó²îÒѱ»Ö¤ÊµÔâÏÖʵʹÓ㬹¥»÷Õß¿Éͨ¹ý¶ñÒâ½á¹¹µÄÍøÒ³´¥·¢Îó²î£¬µ¼ÖÂä¯ÀÀÆ÷±ÀÀ£»òÖ´ÐÐí§Òâ´úÂë¡£¹È¸èÍþвÆÊÎöС×飨TAG£©Ö¸³ö£¬´ËÀàÎó²î³£±»Õþ¸®Ö§³ÖµÄÌØ¹¤×é֯ʹÓã¬Õë¶Ô¼ÇÕß¡¢Òì¼ûÈËÊ¿µÈ¸ßΣº¦ÈºÌåʵÑ龫׼¹¥»÷¡£´Ë´ÎÐÞ¸´ÁýÕÖWindows£¨142.0.7444.175/176£©¡¢Mac£¨142.0.7444.176£©¼°Linux£¨142.0.7444.175£©Æ½Ì¨¡£Ö»¹ÜChromeͨ³£×Ô¶¯¸üУ¬Óû§ÈÔ¿Éͨ¹ý¡°²Ëµ¥-×ÊÖú-¹ØÓÚGoogle Chrome¡±ÊÖ¶¯¼ì²é²¢×°Öò¹¶¡¡£¹È¸èÌåÏÖ£¬ÔÚ´ó¶¼Óû§Íê³É¸üÐÂǰ£¬½«ÏÞÖÆÎó²îϸ½Ú¹ûÕæ£¬×èÖ¹µÚÈý·½¿âÒÀÀµ¸ÃÎó²îµÄÑÜÉúΣº¦¡£CVE-2025-13223Êǹȸè½ñÄêÐÞ¸´µÄµÚÆß¸ö±»Ê¹ÓõÄChromeÁãÈÕÎó²î¡£


https://www.bleepingcomputer.com/news/security/google-fixes-new-chrome-zero-day-flaw-exploited-in-attacks/


4. Everest GroupÀÕË÷ÍŻ﹥»÷°ÍÎ÷ʯÓ;ÞÍ·Petrobras


11ÔÂ18ÈÕ£¬Óë¶íÂÞ˹¹ØÁªµÄÀÕË÷Èí¼þÍÅ»ïEverest Group¿ËÈÕÐû³Æ£¬´Ó°ÍÎ÷¹ú¼ÒʯÓ͹«Ë¾PetrobrasÇÔÈ¡90GBÃô¸ÐµØ¶¯¿±Ì½Êý¾Ý£¬°üÀ¨¿²²¨Ë¹ÅèµØÑÎϲãÈýά/ËÄάµØ¶¯µ¼º½Êý¾Ý¡¢OBN½ÚµãλÖá¢DGPS¾«¶È¡¢×°±¸ÔªÊý¾Ý¼°ÖÊÁ¿¿ØÖƱ¨¸æµÈ£¬²¢ÏÞÖÆÁùÌìÄÚ̸ÅÐÊê½ð£¬²»È»½«¹ûÕæ»ò³öÊÛÊý¾Ý¡£Petrobras×÷Ϊ°ÍÎ÷¹úÓпعɿç¹úÄÜÔ´ÆóÒµ£¬2024ÄêÊÕÈ볬910ÒÚÃÀÔª£¬Æä½üÆÚÔÚ¿²²¨Ë¹ÅèµØµÄÓÅÖÊʯÓÍ·¢Ã÷Óëй¶Êý¾Ý¸ß¶È¹ØÁª£¬¿ÉÄÜÉæ¼°¿±Ì½ÊÖÒÕÉñÃØ¡£CybernewsÆÊÎöÖ¸³ö£¬Ð¹Â¶Êý¾ÝËäδ̻¶ʵʱ×÷ҵϵͳ£¬µ«´¬²°×ø±ê¡¢×°±¸²ÎÊý¼°¿±Ì½Ð§¹ûµÄÆØ¹â½«Ï÷ÈõPetrobrasµÄ¾ºÕùÓÅÊÆ²¢Ëðº¦ÉùÓþ¡£


https://cybernews.com/security/brazil-petrobras-ransomware-attack/


5. CloudflareÈ«Çò·þÎñÖÐÖ¹ÖÂÒÚÍòÓû§ÊÜ×è


11ÔÂ18ÈÕ£¬È«ÇòÔÆ·þÎñÌṩÉÌCloudflareÒòÊÖÒÕ¹ÊÕÏÒý·¢´ó¹æÄ£»¥ÁªÍø»á¼ûÖÐÖ¹£¬Ó°Ïì¹æÄ£²¨¼°È«ÇòÊýÒÚÓû§¡£ÊÂÎñʼÓÚ¸ñÁÖÍþÖαê׼ʱ¼ä11:48£¬CloudflareÍøÂç·ºÆð"ÄÚ²¿·þÎñ½µ¼¶"£¬µ¼ÖÂÓû§ÎÞ·¨»á¼ûÒÀÀµÆä·þÎñµÄÍøÕ¾¼°Ó¦ÓóÌÐò£¬°üÀ¨X¡¢ChatGPT¡¢Spotify¡¢GrindrµÈÈÈÃÅÆ½Ì¨¡£Cloudflare×÷ΪȫÇò19%»îÔ¾ÍøÕ¾¼°35%²Æ²ú500Ç¿ÆóÒµµÄµ×²ã·þÎñÉÌ£¬ÆäÿÃë´¦Öóͷ£8100Íò´ÎHTTPÇëÇóµÄÄÜÁ¦ÔÚ¹ÊÕÏʱ´úÑÏÖØÊÜ×裬Òý·¢Á¬Ëø·´Ó¦¡£×èÖ¹14:30£¬CloudflareËäÉù³ÆÊµÑéÐÞ¸´³ÌÐò²¢½â¾öÖ÷ÒªÎÊÌ⣬µ«¼äЪÐÔ¹ýʧÈÔÒ»Á¬±£´æ£¬Â׶صØÇøWARP·þÎñÔø¶ÌÔݽûÓúó»Ö¸´¡£´Ë´ÎÖÐÖ¹²»µ«Ôì³ÉÓû§µÇ¼¡¢ÍøÕ¾»á¼û¼°¿ØÖÆÃæ°å²Ù×÷ÄÑÌ⣬¸ü̻¶ÁËÈ«ÇòÊý×Ö»ù´¡ÉèÊ©µÄ¸ß¶ÈÒÀÀµÐÔ¡£¾­¼ÃËðʧ·½Ã棬¾ÝSupportMy.Website¹ÀË㣬ÿСʱͣ»ú¿ÉÄܵ¼ÖÂÆóÒµËðʧ50ÒÚÖÁ150ÒÚÃÀÔª£¬´Ó´óÐÍÒøÐе½Ð¡ÐÍÆóÒµ¾ùÊܲ¨¼°¡£


https://cybernews.com/news/cloudflare-outage-internet-down/


6. ÃÀÓ¢°ÄÍŽáÖÆ²Ã¶íÂÞ˹·Àµ¯Ö÷»úÌṩÉÌ


11ÔÂ19ÈÕ£¬ÃÀ¹ú¡¢Ó¢¹úºÍ°Ä´óÀûÑÇÍŽáÐû²¼¶ÔÖ§³ÖÀÕË÷Èí¼þÍŻPÆäËûÍøÂç·¸·¨Ô˶¯µÄ¶íÂÞ˹·Àµ¯Ö÷»ú£¨BPH£©ÌṩÉÌʵÑéÖÆ²Ã£¬Ö¼ÔÚ¹¥»÷ÍøÂç·¸·¨Éú̬Á´µÄÒªº¦»·½Ú¡£´Ë´ÎÖÆ²Ã¾Û½¹ÓÚMedia Land¼°ÆäÈý¼Òæ¢Ãù«Ë¾£¨Media Land Technology¡¢Data Center Kirishi¡¢ML Cloud£©£¬ÒÔ¼°ÈýÃû¸ß¹ÜAleksandr Volosovik¡¢Kirill ZatolokinºÍYulia Pankova¡£ÕâЩʵÌåºÍСÎÒ˽¼Ò±»Ö¸¿ØÎªLockBit¡¢BlackSuit¡¢PlayµÈÀÕË÷Èí¼þ×éÖ¯¼°Evil Corp¡¢Black BastaµÈÍøÂç·¸·¨¼¯ÍÅÌṩ·þÎñÆ÷×âÁÞ·þÎñ£¬ÖúÆä¿ªÕ¹ÍøÂç´¹ÂÚ¡¢¶ñÒâÈí¼þÈö²¥¡¢ÏÂÁîÓë¿ØÖÆ²Ù×÷¡¢DDoS¹¥»÷¼°²»·¨ÄÚÈÝÍйܵÈÔ˶¯¡£Media LandµÄ»ù´¡ÉèÊ©ÉõÖÁ±»ÓÃÓÚ¹¥»÷ÃÀ¹úÒªº¦»ù´¡ÉèÊ©£¬ÈçµçÐÅϵͳ¡£ÃÀ¹ú²ÆÎñ²¿Íâ¹ú×ʲú¿ØÖư칫ÊÒ£¨OFAC£©½«ÉÏÊöʵÌåÁÐÈëÖÆ²ÃÃûµ¥£¬¶³½áÆäÔÚÃÀ¹ú¾³ÄڵĹ¤Òµ£¬²¢ÖÒÑÔÓëÕâЩʵÌåÉúÒâµÄµÚÈý·½¿ÉÄÜÃæÁÙ¶þ¼¶ÖƲá£Ó¢ÍâÑó½»²¿Ç¿µ÷£¬ÍøÂç·¸·¨·Ö×ÓÎÞ·¨ÌÓ×ß×·Ôð£¬Ó¢ÃÀ°Ä½«ÍŽá½ÒÆÆÆäÆáºÚÍøÂç¡£


https://www.bleepingcomputer.com/news/security/us-sanctions-russian-bulletproof-hosting-provider-media-land-over-ransomware-ties/