跳到主要內容區

【資安訊息】新一波針對NAS裝置的DeadBolt勒索攻擊正在全球蔓延,請立即更新系統至最新版本,務必使用Https進行通訊,並做好定期備份作業

大家好:

一波針對 QNAP NAS(Network Attached Storage)網路儲存裝置的全新勒贖攻擊,名為 Deadbolt,目前正在全球快速蔓延;QNAP 用戶應立即提高警覺,避免裝置內的檔案遭到加密。

各種 NAS 裝置用戶,應立即更新系統至最新版本,並且避免將 NAS 裝置直接連上 Internet,以免遭到攻擊。若必需連上網路時,請務必使用Https(超文本傳輸安全協定)進行連線作業,並定期做好備份作業,以避免資料遺失之風險。

相關資訊請參考下列網址:(資訊來源:TWCERT/CC)
  https://www.twcert.org.tw/tw/cp-104-5692-4b9d7-1.html
  https://www.twcert.org.tw/tw/cp-104-5777-39596-1.html
  https://www.twcert.org.tw/tw/cp-104-5756-e9900-1.html

其他近期資安訊息:

WordPress 強制更新 UpdraftPlus 外掛程式的嚴重資安漏洞
https://www.twcert.org.tw/tw/cp-104-5757-765ae-1.html

TP-Link無線路由器RCE漏洞的攻擊程式已遭公開,建議用戶立即進行更新
https://www.twcert.org.tw/tw/cp-104-5815-b7721-1.html

若有資安相關問題,請洽電子計算機中心技術諮詢推廣組:
張云蘋 6929  applechang@mail.ntust.edu.tw
游順發 6209  rogeryu@mail.ntust.edu.tw


[Information Security Information] New DeadBolt ransomware targets NAS(Network Attached Storage) devices, please update the system to the latest version immediately, be sure to use Https for communication, and do regular backup operations.

Hello everyone:

A new wave of ransomware attacks targeting QNAP NAS (Network Attached Storage) network storage devices, named Deadbolt, is currently spreading rapidly around the world; QNAP users should be vigilant immediately to avoid encrypted files on the device.

Users of various NAS devices should update the system to the latest version immediately, and avoid connecting the NAS device directly to the Internet to avoid being attacked. If it is necessary to connect to the Internet, please be sure to use Https (Hypertext Transfer Security Protocol) for communication, and back up files regularly to avoid the risk of data loss.

Related Articles:
  https://www.twcert.org.tw/tw/cp-104-5692-4b9d7-1.html
  https://www.twcert.org.tw/tw/cp-104-5777-39596-1.html
  https://www.twcert.org.tw/tw/cp-104-5756-e9900-1.html

Other recent information security information:

WordPress Forces Update of UpdraftPlus Plugin for Serious Security Vulnerability.
https://www.twcert.org.tw/tw/cp-104-5757-765ae-1.html

The attack program of the RCE vulnerability of TP-Link wireless router has been made public, and users are advised to update it immediately.
https://www.twcert.org.tw/tw/cp-104-5815-b7721-1.html

For more question about information security, please directly consult with Computer Center, at rogeryu@mail.ntust.edu.tw or applechang@mail.ntust.edu.tw

發佈單位: 電子計算機中心
寄送群組: muser-xx-xxxx, stud-xxxx-x
寄送對象: 全校教職員工生
瀏覽數: