2月7日每日安全热点 - 巴西两家电力公司遭勒索软件攻击

Inspired by 360CERT

恶意软件 Malware

TeamTNT针对K8s的攻击

https://unit42.paloaltonetworks.com/hildegard-malware-teamtnt/

 

安全研究 Security Research

PDF安全研究

https://blog.trailofbits.com/2021/02/02/pdf-is-broken-a-justctf-challenge/

 

DHCP恶意DNS注入

https://www.trustedsec.com/blog/injecting-rogue-dns-records-using-dhcp/

 

安全工具 Security Tools

网站图标指纹识别

https://github.com/jonasstrehle/supercookie/

 

安全资讯 Security Information

Chrome插件The Great Suspender限期下架

https://www.bleepingcomputer.com/news/software/the-great-suspender-chrome-extensions-fall-from-grace/

 

安全事件 Security Incident

SitePoint遭攻击并出现数据泄露

https://www.bleepingcomputer.com/news/security/sitepoint-discloses-data-breach-after-stolen-info-used-in-attacks/

 

巴西两家电力公司遭勒索软件攻击

https://www.bleepingcomputer.com/news/security/eletrobras-copel-energy-companies-hit-by-ransomware-attacks/

 

安全客 Security Geek

对福昕pdf阅读器的一次”讨伐”——为何要这样?

https://www.anquanke.com/post/id/230689

(完)