ÍþвÇ鱨רÀ¸|2020Äê7ÔÂÍøÂçÇå¾²Ì¬ÊÆÆÊÎö
2020-08-17
1.1 Îó²îÌ¬ÊÆ×ÛÊö
×ÜÌå¿´ÆßÔ·ݵÄÐÂÔöÎó²î³ÊÉÏÉýÇ÷ÊÆ£¬ÐÂÔö¸ßΣÎó²î79¸ö£¬Ö÷ÒªÂþÑÜÔÚMicrosoft¡¢Adobe¡¢Cisco¡¢Rittal¡¢Advantech¡¢PhoenixµÈ³§É̵ÄÖ÷Òª²úÆ·ÖС£
2020Äê7Ô¾ÅÓÎÀÏ¸ç¿Æ¼¼Çå¾²Îó²î¿â¹²ÊÕ¼200¸öÎó²î£¬ÆäÖиßΣÎó²î79¸ö£¬Î¢Èí¸ßΣÎó²î20¸ö¡£¾ÅÓÎÀÏ¸ç¿Æ¼¼ÊÕ¼¸ßΣÎó²îÊýÄ¿ÓëǰÆÚÏà±È³ÊÉÏÉýÇ÷ÊÆ¡£

1.2 ¶ñÒâÈí¼þÌ¬ÊÆ×ÛÊö
2020Äê7Ô·ÝÊý¾ÝÓë2020ÄêÉϰëÄêÊý¾ÝÖжñÒâÈí¼þÖÖÖÖÐÍÂþÑÜÈçÏÂͼËùʾ¡£7Ô·ݸ÷¶ñÒâÈí¼þÀàÐÍÕ¼±ÈÏà±ÈÈ¥ÄêÕûÄêÇéÐÎÓÐËù²¨¶¯£¬ºóÃÅÈ¡´úÍÚ¿ó¾ÓÓÚÊ×λ£¬Õ¼±È53.08%£»È䳿ÌåÏÖÊ®·Ö»îÔ¾£¬ÍÚ¿óÏà½ÏÓÚÉϰëÄêµÄÊý¾Ý±ÈÀýÓдó·ùϽµ£¬ºÍºóÃÅÒ»ÆðÕ¼ÓÐÕûÌå¶ñÒâÈí¼þÔ˶¯µÄ89%ÒÔÉÏ¡£

1.3 ÎïÁªÍøÇå¾²Ì¬ÊÆ×ÛÊö
±¾ÔÂÎó²îƽ̨Exploit-DBÐÂÔö6¸öÎïÁªÍøÎó²îʹÓã¬ÆäÖÐ1¸öÔ¶³ÌÏÂÁîÖ´ÐУ¨RCE£©ÀàÐÍÎó²îʹÓ㬱¾ÔÂÎïÁªÍøÏà¹ØÎó²îʹÓýÏÉÙ¡£
±¾ÔÂÓÐÈý¸öÖµµÃÖØµã¹Ø×¢µÄÎïÁªÍøÇå¾²ÊÂÎñ£º
£¨1£©ÈÿìËÙ³äµçÆ÷Äð³ÉÊÖ»úµçÄÔɱÊÖ
£¨2£©ÐÎ×´ÀàËÆGame BoyµÄС¹¤¾ß¼ÛÖµ2ÍòÓ¢°÷ רÃÅÓÃÀ´ÍµÈ¡³µÁ¾
£¨3£©Òƶ¯Ó¦ÓõēÒþ˽֮é䔣º²»·¨ÇÔÈ¡Óû§ÐÅÏ¢ÔÙÇþ¯ÖÓ
±¾ÔÂÕë¶ÔÎïÁªÍø×°±¸µÄ¹¥»÷ÊýÄ¿Ç÷ÓÚÆ½ÎÈ£¬½ÏÉÏÔ¹¥»÷ÐÐΪ×ÜÁ¿ÓÐËùïÔÌ¡£
1.4 DDOS¹¥»÷Ì¬ÊÆ×ÛÊö
2020Äê7Ô·ݣ¬ÎÒÃÇ¼à¿Øµ½ DDoS ¹¥»÷´ÎÊýΪ1.9Íò´Î£¬¹¥»÷×ÜÁ÷Á¿2222Tb¡£2020Äê7Ô£¬¹¥»÷ʱ³¤ÔÚ5·ÖÖÓÒÔÄÚµÄDDoS¹¥»÷Õ¼ÁËËùÓй¥»÷µÄ72%¡£´ÓÒ»Ìì24Сʱ¹¥»÷Õ¼±ÈÀ´¿´£¬Ê²Ã´Ê±¼ä¶¼ÓпÉÄܱ»¹¥»÷¡£´ÓÿÖÜÖÐDDoS ¹¥»÷Ô˶¯µÄÂþÑÜÀ´¿´£¬ÌìÌì¶¼ÓпÉÄܱ»¹¥»÷£¬ÖÜËÄ×î³£±»¹¥»÷¡£2020Äê7Ô·ÝÖ÷ÒªµÄ¹¥»÷ÀàÐÍÊÇSYN Flood£¬Õ¼×ܹ¥»÷´ÎÊýµÄ56%¡£´ÓÁ÷Á¿Õ¼±ÈÀ´¿´£¬UDP FloodÌᳫµÄ¹¥»÷Á÷Á¿Õ¼±È×î¸ß£¬Õ¼±È42%¡£Æ¾Ö¤2020Äê5ÔÂ-2020Äê7ÔµÄDDoS¹¥»÷Êý¾Ý¾ÙÐоÛÀàÆÊÎö£¬¹²·¢Ã÷21¸öÍŻ
1.5 ½©Ê¬ÍøÂç¼°ÃÛ¹ÞÌ¬ÊÆ×ÛÊö
2020Äê7Ô·ݵÄDDoS½©Ê¬ÍøÂçÔ˶¯ÖУ¬¼à¿Øµ½µÄ×ÜÌåÊÂÎñÊý½Ï6ÔÂÓдó·ù¶ÈϽµ£¬¹¥»÷Ö÷ÒªÀ´×Ô¼Ò×åMiraiºÍDofloo£¬ÆäÖÐDoflooÒ»Á¬Ï·¢Ö¸ÁîµÄ×î´óʱ³¤µÖ´ïÁË10Сʱ×óÓÒ¡£±¾ÔµÄDDoS¹¥»÷ÊÖ¶ÎÖ÷ҪΪUDP flood¡¢ACK floodºÍCC¡£½©Ê¬ÍøÂç¿ØÖÆ¶ËÍйܵÄÔÆ·þÎñÉÌÒÔBladeServers¡¢Digital OceanºÍHostwindsΪÖ÷¡£±¾Ô¼ì²âµ½µÄIoTľÂíÈö²¥Ê¹ÓõÄÖÖÖÖÎó²îÖÖÀàΪ73ÖÖ£¬ÆäÖÐCVE-2017-17215£¨»ªÎªHG532·ÓÉÆ÷£©¡¢CVE-2014-8361£¨Realtek rtl81xx SDKÔ¶³Ì´úÂëÖ´ÐÐÎó²î£©ºÍÁìÊÆÂ·ÓÉÆ÷EϵÁУ¨Linksys E series£©Ô¶³Ì´úÂëÖ´ÐÐÎó²îλ¾Óǰ3¡£ÐÂÔöÎó²î°üÀ¨CVE_2020_5902£¨ÃÀ¹úF5 BIG-IPƽ̨Զ³Ì´úÂëÖ´ÐУ©¡¢CVE_2020_10987£¨ÌÚ´ïÎÞÏß·ÓÉÆ÷Ô¶³ÌÏÂÁîÖ´ÐУ©ºÍSickbeardÔ¶³Ì´úÂëÖ´ÐС£
ÃÛ¹Þ·½Ã棬2020Äê7Ô·ݻ¥ÁªÍø¹¥»÷Ô˶¯Ö÷ÒªÓɶñÒâɨÃè×é³É£¬ÆäÖÐÕë¶ÔÓÎÏ·¶Ë¿Ú27015µÄ¶ñÒâɨÃè×î¶à£¬Õ¼µ½15%×óÓÒ¡£Îó²îʹÓ÷½Ã棬Õë¶ÔDlink·ÓÉÆ÷¡¢MVPowerÉãÏñÍ·ºÍRedisµÄ¹¥»÷×î¶à¡£Èõ¿ÚÁî¹¥»÷Ö÷ÒªÀ´×ÔºÉÀ¼¡¢°ÍÄÃÂíºÍ¶íÂÞ˹¡£DDOS·´Éä¹¥»÷·½Ã棬dnsÕ¼Óаë±ÚɽºÓ¡£7Ô¹²¼Æ²¶»ñDDoS·´Éä¹¥»÷ÊÂÎñÁè¼Ý513ÍòÀý£¬ÆäÖÐ×µÄÒ»Á¬Ê±¼ä¸ß´ï24Сʱ×óÓÒ¡£
ͨ¹ý¾ÅÓÎÀÏ¸ç¿Æ¼¼µÄÍþв²¶»ñϵͳ£¬ÎÒÃǺã¾Ã¼à²âÁËÒ»¸öÃæÏòÃÅÂÞ±ÒÍÚ¿óµÄ½©Ê¬ÍøÂç¡£¸ÃÍÚ¿ó½©Ê¬ÍøÂçÔÚ2020Äê7Ô·ݵÄÕûÌå»îÔ¾ÇéÐγʽµµÍÇ÷ÊÆ£¬»îÔ¾È⼦×ÜÁ¿½µµÍÖÁ8428̨£¬ÆäÖÐÔÚÖйúµÄÈ⼦×î¶à£¬µÖ´ï3406̨£¬Õ¼±È40%¡£¿ª·Å22¶Ë¿ÚµÄÈ⼦ÊýÓÐ5989̨£¬Õ¼±È¿¿½üËùÓÐÈ⼦µÄ 71%¡£ÔÚÒÑÖªµÄ×ʲúÇ鱨Êý¾ÝÖУ¬ÕâЩÈ⼦µÄÖ÷Ҫװ±¸ÀàÐÍÊÇ·ÓÉÆ÷ºÍÉãÏñÍ·¡£ÁíÍ⣬¸ÃÍÚ¿ó½©Ê¬ÍøÂç×î³£Óõı¬ÆÆÈõ¿ÚÁîÒÀÈ»ÊÇnproc-nproc¡£

¾ÅÓÎÀϸçÔÆ







