3月30日每日安全热点 - Docker Hub部分容器被用于挖矿下载高达千万次

Inspired by 360CERT

恶意软件 Malware

Docker Hub部分容器被用于挖矿下载高达千万次

https://www.bleepingcomputer.com/news/security/docker-hub-images-downloaded-20m-times-come-with-cryptominers/

 

安全研究 Security Research

Perl IP安全性研究

https://blog.urth.org/2021/03/29/security-issues-in-perl-ip-address-distros/

 

ES数据转储

https://www.archcloudlabs.com/projects/poking-at-elasticsearch-beyond-dumping-data/

 

安全报告 Security Report

REvil勒索软件报告

https://thedfirreport.com/2021/03/29/sodinokibi-aka-revil-ransomware/

 

安全事件 Security Incident

哈里斯联合区遭勒索软件攻击影响数十所学校

https://www.bleepingcomputer.com/news/security/harris-federation-hit-by-ransomware-attack-affecting-50-schools/

 

PHP Git服务器疑似被入侵植入恶意代码

https://news-web.php.net/php.internals/113838

 

安全客 Security Geek

CVE-2021-24093 Windows图形组件远程执行代码漏洞分析

https://www.anquanke.com/post/id/236190

(完)