Aqua发现利用Bitbucket和Docker Hub的挖矿活动;美国NSA和DHS联合发布有关PDNS的指南

发布时间 2021-03-07

【威胁情报】


Aqua发现利用Bitbucket和Docker Hub的挖矿活动

https://www.hackread.com/threat-actors-hijack-bitbucket-docker-hub-monero-mining/


针对D-Link和IoT设备的Gafgyt新变种依赖Tor通信

https://threatpost.com/d-link-iot-tor-gafgyt-variant/164529/


FINRA警告利用审计警报针对经纪公司的钓鱼攻击

https://www.bleepingcomputer.com/news/security/ongoing-phishing-attacks-target-us-brokers-with-fake-finra-audits/


【攻击事件】


美国联邦机构的Exchange服务器遭到0day攻击

https://www.zdnet.com/article/microsoft-exchange-zero-day-vulnerabilities-exploited-in-attacks-against-us-local-govts-university/


【安全指南】


美国NSA和DHS联合发布有关PDNS的指南

https://www.securityweek.com/nsa-dhs-issue-guidance-protective-dns