¡¾Êý¾ÝÇå¾²ÐÂÌôÕ½¡¿Õë¶ÔÐéÄ⻯ƽ̨VMware vSphereµÄÀÕË÷¹¥»÷רÏîÆÊÎö
Ðû²¼Ê±¼ä 2021-09-22Ò»¡¢¸Å Êö
¡¶ÖлªÈËÃñ¹²ºÍ¹úÊý¾ÝÇå¾²·¨¡·ÓÚ½ñÈÕÆð£¨2021Äê9ÔÂ1ÈÕ£©ÕýʽʩÐУ¬ÕâÊÇÒ»²¿Êý¾ÝÁìÓòµÄ»ù´¡ÐÔÖ´·¨£¬Ò²Êǹú¼ÒÇå¾²ÁìÓòµÄÒ»²¿Ö÷ÒªÖ´·¨¡£Êý×Ö»¯Ë¢ÐÂÍƶ¯×Źú¼ÒÉú²úģʽµÄÀå¸ï£¬Ëæמ¼ÃÊý×Ö»¯¡¢Õþ¸®Êý×Ö»¯¡¢ÆóÒµÊý×Ö»¯µÄ½¨É裬Êý¾ÝÒѾ³ÉΪÎÒ¹úÕþ¸®ºÍÆóÒµ×îΪ½¹µãµÄ×ʲúÖ®Ò»¡£¶øÕë¶ÔÕâЩ½¹µãÊý¾Ý×ʲúµÄÍøÂç¹¥»÷È´ÖðÄêµÝÔö£¬³ýÁËÔ½À´Ô½ÆµÈÔµÄÊý¾Ýй¶Çå¾²ÊÂÎñÍ⣬ÈÕÒæ·Å×ݵÄÀÕË÷¹¥»÷ÊÇÊý¾ÝÇå¾²ÃæÁÙµÄ×îΪÑÏÖØÇÒΣÏÕµÄÍþв£¬Æä¾ßÓÐÆÆËðÐÔ´ó¡¢ÄäÃûÐԸߡ¢»Ö¸´ÄѵÈÌص㡣һµ©Êý¾Ý×ʲúÔâµ½¹¥»÷£¬³ýÁË´ó×ÚÃû¹óµÄÊý¾Ý±»ÆÆËðÍ⣬»¹»áµ¼Ö¹¤³§Ðª¹¤Í£²ú£¨È磺¸»Ê¿¿µÀÕË÷¹¥»÷µ¼ÖÂЪ¹¤µÄÊÂÎñ£©£¬ÉõÖÁ»áÍþвµ½¹ú¼ÒÇå¾²£¨È磺ȼÓ͹ܵÀ¹«Ë¾Colonial PipelineÀÕË÷¹¥»÷ÊÂÎñ£©¡£
ÏÖÔÚ£¬ÀÕË÷×éÖ¯ÆÕ±éʹÓÃÎó²î»òÕßÈ˹¤Éø͸µÄÊֶνøÈëÆóÒµ/×éÖ¯ÄÚ²¿ÏµÍ³£¬²¢ÔÚÆäÖÐÖ²ÈëÀÕË÷²¡¶¾£¬²¢Ê¹ÓÃÀÕË÷²¡¶¾¶ÔÆäÆóÒµµÄÖ÷ÒªÊý¾Ý×ʲú¾ÙÐмÓÃÜÈ»ºóʵÑéÊê½ðÀÕË÷¡£½ö½ñÄêÒÔÀ´£¬¾Í·ºÆðÁ˶àÆðÖØ´óµÄÀÕË÷²¡¶¾¹¥»÷ÊÂÎñ¡£5Ô·ݣ¬ÃÀ¹ú×î´óµÄȼÓ͹ܵÀ¹«Ë¾Colonial PipelineÔâÓöÀÕË÷²¡¶¾¹¥»÷£¬´Ó¶øµ¼ÖÂÃÀ¹ú¶«²¿17¸öÖݺÍÊ׶¼ËùÔڵĻªÊ¢¶ÙÌØÇøÐû²¼½øÈë½ôÆÈ״̬£»7Ô·ݣ¬ÃÀ¹úITÖÎÀíÈí¼þÖÆÔìÉÌKaseyaÊܵ½¹©Ó¦Á´¹¥»÷£¬ºÚ¿ÍʹÓÃÆäÈí¼þÖб£´æµÄÎó²îÏòÆä¿Í»§·¢ËÍÀÕË÷Èí¼þ£¬Áè¼Ý1500¼ÒÆóÒµÊܵ½ÀÕË÷¹¥»÷Ó°Ïì¡£
Ëæ×ÅÊг¡ºÍÊÖÒÕµÄÀå¸ï£¬ÀÕË÷×éÖ¯Ò²ÔÚÒ»Ö±×·ÇóÐµĹ¥»÷Ä¿µÄºÍ¹¥»÷ÊÖ¶ÎÒÔ»ñÈ¡¸ü·á¸»µÄÊê½ð¡£¾ÝÊӲ췢Ã÷£¬×ÔÈ¥Äê×îÏÈ£¬ÀÕË÷×éÖ¯½«Ä¿µÄÀ©Õ¹µ½ÁËVMwareµÄÆóÒµ²úÆ·vSphereÖв¢ÇÒ¶ÔÏìÓ¦ÀÕË÷Èí¼þ¾ÙÐÐÕë¶ÔÐÔÉý¼¶ÒÔÊÊÅäÕë¶ÔVMwareÐéÄâ»úµÄÀÕË÷¡£µ½ÏÖÔÚΪֹ£¬¶à¼ÒʹÓÃvSphereµÄÆóÒµÒѾÔâµ½ÀÕË÷£¬ÓÉÓÚʹÓÃvSphereµÄÆóÒµÐèÒªÔÚVMware ESX/ESXiÖ÷»úÉÏ°²ÅŶą̀ÐéÄâ»úÒÔÖª×ãÒ»Ñùƽ³£µÄ·þÎñÆ÷»òÊý¾Ý¿âÐèÇó£¬ÀÕË÷×éÖ¯Ö»ÒªÏë·¨µÇ¼µ½ÆóÒµµÄVMware ESX/ESXiÖ÷»ú£¬¾ÍÄÜ°²ÅÅÀÕË÷Èí¼þ¶ÔÖ÷»úÉϵĶą̀ÐéÄâ»úÔ´Îļþ¾ÙÐмÓÃÜʵÑéÀÕË÷¡£ÓëÒÔÍù¹Å°åµÄÀÕË÷¹¥»÷²î±ð£¬ÒÔÍùµÄÀÕË÷¹¥»÷½ö½öÊÇÕë¶Ôij̨»òÊý̨·þÎñÆ÷ÖеIJ¿·ÖÖ÷ÒªÊý¾Ý¼ÓÃÜ£¬¶øϵͳÒÀ¾É¿ÉÒÔÕý³£ÔËÐУ»¶øÕë¶ÔvSphereµÄÀÕË÷¹¥»÷¿ÉÖ±½Ó¼ÓÃÜVMware ESX/ESXiÖ÷»úÖеÄËùÓеÄÐéÄâ»úÔ´Îļþ£¬Õ⽫ֱ½Óµ¼ÖÂÊý̨ÊÂÇé·þÎñÆ÷»òÊý¾Ý¿â·þÎñÆ÷ÎÞ·¨Õý³£ÔËÐУ¬Ê¹ÆóÒµ/×éÖ¯µÄÖ÷ÒªÓªÒµÖÐÖ¹ÉõÖÁϵͳ̱»¾£¬Õâ¶ÔÆóÒµ/×éÖ¯À´Ëµ½«ÊÇÖÂÃüµÄ¹¥»÷¡£
ÀÕË÷¹¥»÷ÒѾ³ÉΪ¸÷´óÆóÒµ/×éÖ¯µÄÖ÷ÒªÍøÂçÇå¾²ÍþвȪԴ£¬ÕâÖÖÐÂÊ¢ÐеÄÕë¶ÔvSphereµÄÀÕË÷¹¥»÷½«´øÀ´±ÈÒÔÍùµÄÀÕË÷¹¥»÷¸ü´óµÄÍþв¡£±¾ÎĶԡ°Õë¶ÔVMware vSphereµÄÀÕË÷¹¥»÷¡±¾ÙÐÐÁËÖÜÈ«µØÆÊÎö£¬Í¨¹ýÍŽáÊÖÒÕÅä¾°ºÍÏà¹ØÊÂÎñÔ˶¯ÆÊÎöÁËÀÕË÷×éÖ¯½«¹¥»÷Ä¿µÄÀ©Õ¹µ½VMware vSphereµÄÔµ¹ÊÔÓÉ£¬²¢ÇÒƾ֤Ïà¹Ø¹¥»÷Ñù±¾µÄÆÊÎö½ÒÆÆÁË´ËÀàÀÕË÷¹¥»÷µÄÀÕË÷Á÷³Ì£¬Í¬Ê±Æ¾Ö¤Ïà¹ØÖÊÁÏΪ¿í´óÆóÒµ/×éÖ¯ÌṩÁËÏà¹ØµÄ·ÀÓù½¨Òé¡£
¶þ¡¢¹¥»÷Ä¿µÄ£ºvSphere
VMware vSphere£¨¼ò³ÆvSphere£©ÊÇVMwareÆìϵÄÒ»ÕûÌ×ÔÆÅÌËã»ù´¡¼Ü¹¹ÐéÄ⻯ƽ̨£¬×ÔÐû²¼¸üÐÂÒÔÀ´ÔÚÈ«ÇòÒѾӵÓÐÁè¼Ý250000¿Í»§£¬Æä¿Í»§°üÀ¨Õþ¸®¡¢¾ü¶Ó¡¢Ò½ÁÆ¡¢ÄÜÔ´¡¢½»Í¨¡¢½ÌÓýµÈÔÚÄڵĻù´¡ÉèÊ©ÁìÓò£¬Èçͼ1Ëùʾ£»Í¬Ê±£¬¹È¸èÔÆ¡¢°¢ÀïÔÆ¡¢ÑÇÂíÑ·ÔƵÈÔÆ·þÎñÌṩ³§É̾ù¶Ô¿Í»§ÌṩÍêÕûµÄvSphereÐéÄ⻯·þÎñ£¬Ïà¹ØÊг¡Ò²Í¬ÑùÖØ´ó£¬Èçͼ2Ëùʾ¡£ÓµÓÐÔÆÔÆÖØ´óµÄÊг¡£¬vSphere±»ÀÕË÷×éÖ¯¶¢ÉÏҲȱ·¦ÎªÆ棬¿ÉÊÇÆä¿Í»§ÏÕЩº¸ÇËùÓÐÁìÓò£¬Ò»µ©²úÆ··ºÆðÎó²î±»¹¥»÷ÕßʹÓõ¼ÖÂÖ÷»ú±»ÀÕË÷²¡¶¾¹¥»÷£¬²»µ«½«Ôì³É¹¤ÒµËðʧ£¬¸üÓпÉÄÜÖ±½ÓÍþв¹ú¼ÒÇå¾²¡£
ͼ1. vSphereµÄ¿Í»§ÁìÓòÂþÑÜ
ͼ2. ÔÆ·þÎñÉÌÌṩVMware·þÎñʾÀý
VMware ESX/ESXi£¨¼ò³ÆESX/ESXi£©ÊÇvSphereµÄ½¹µã×é¼þÖ®Ò»¡£ÔÚvSphereÖУ¬ESX/ESXiÊÇÒ»¸öÐéÄâ»úÖÎÀí³ÌÐò£¬ÓÃÓÚ½¨Éè¡¢ÔËÐкÍÖÎÀíÐéÄâ»úÀú³ÌµÄÖÐÐÄÈí¼þ²ã£¬ÔËÐÐÔÚ»ù´¡ÎïÀí·þÎñÆ÷ºÍ²Ù×÷ϵͳ֮¼ä£¬²¢ÇÒÔÊÐí¶à¸ö²Ù×÷ϵ×ܹ²ÏíÖ÷»úÓ²¼þ¡£×Åʵ£¬ESX/ESXi²¢²»ÒÀÀµÆäËü²Ù×÷ϵͳ£¬¶øÊÇÖ±½Ó×°ÖÃÔÚÎïÀí×°±¸ÉÏ£¬È»ºóÒÔISO µÄÐÎʽÌṩ·þÎñ£»Óû§Ö±½ÓÔÚESX/ESXiÖн¨Éè¡¢ÔËÐкÍÖÎÀí×Ô¼ºµÄÐéÄâ»ú£¬Èçͼ3Ëùʾ¡£
ÔÚÏÖʵ³¡¾°ÖУ¬ÆóҵΪÁËÌá¸ßÐÔÄܺͱ¾Ç®Ð§ÒæͬʱʵÏÖ¼ò»¯Êý¾ÝÖÐÐĺÍÀû±ã´ó¹æÄ£ÖÎÀí£¬ÍùÍù»áÔÚһ̨ESX/ESXi·þÎñÆ÷Öа²ÅÅÊý̨ÉõÖÁÊýʮ̨ÐéÄâ»ú×÷ΪһÑùƽ³£µÄÊÂÇé·þÎñÖ÷»ú»òÕßÊý¾Ý¿â¡£ÒÔÊÇ£¬ESX/ESXiÖ÷»úÖлáÉúÑÄ×ÅÓëËüÔÚͳһÎïÀíÖ÷»úÉϵÄÆäËûÐéÄâ»úµÄÔ´ÎļþÒÔ±ã¶ÔÕâЩÐéÄâ»ú¾ÙÐÐÖÎÀí£¬Ëü¾ÍºÃ±È´æ·Å×ÅÊý̨·þÎñÆ÷µÄ»ú·¿£¬ÈôÊÇ»ú·¿±»ÈËЮÖÆ£¬½«¶ÔÒ»¸öÆóÒµ»ò×éÖ¯Ôì³ÉÄÑÒÔ¹ÀÁ¿µÄËðʧ£¬ÕâÒ²ÊÇESX/ESXiÖ÷ʱ»ú³ÉΪÀÕË÷×éÖ¯¹¥»÷Ä¿µÄµÄÖ÷ÒªÔµ¹ÊÔÓÉÖ®Ò»£»ÁíÒ»¸öÔµ¹ÊÔÓÉÔòÊÇ£¬ESX/ESXiÉÏ°²ÅŵķþÎñÆ÷/Êý¾Ý¿â¿ÉÄÜÐèÒªÏò¿Í»§Ìṩ·þÎñ£¬ÕâҲʹµÃ¹¥»÷ÕßÓÐʱ»úÖ±½Ó´ÓÍøÂç½Ó´¥µ½VMware ESX/ESXiÖ÷»ú£¬Îª¹¥»÷ÕßÌṩÁËÈëÇֵĿÉÄÜÐÔ¡£VMware¹«Ë¾ËäȻҲºÜÊÇÇåÎúÆä²úÆ·Çå¾²µÄÖ÷ÒªÐÔ£¬vSphere 5.0 ֮ǰµÄ°æ±¾Öоù½ÓÄÉESXϵͳ½á¹¹À´ÊµÏÖ¶ÔÐéÄâ»úµÄÖÎÀí£¬ESXÊÇÒÀÀµÓÚLinuxµÄ¿ØÖÆ̨²Ù×÷ϵͳ (COS) À´ÊµÏÖ¿Éά»¤ÐԺͻùÓÚÊðÀíµÄÏàÖúͬ°é¼¯³ÉµÄ£¬¶øLinux×÷Ϊ¿ªÔ´ÏµÍ³£¬ÓëLinuxÏà¹ØµÄÎó²îÔÚ¸÷´óÇå¾²ÉçÇøºÍµØϹ¤ÒµÖвã³ö²»ÇÕ⽫VMware ESX¼Ü¹¹ÖÃÓÚÒ»¸ö¸ßΣº¦´¦¾³£»ÎªÁËÌá¸ß»ù´¡¼Ü¹¹µÄÇå¾²ÐÔ£¬vSphere 5.0Ö®ºóµÄ°æ±¾ÖÐÔò½ÓÄÉÁË×ÔÁ¦ÓÚʹÓÃϵͳµÄРESXi ϵͳ½á¹¹£¬²¢ÇÒÔÚ×Ô¼ºÑз¢µÄ½¹µã VMkernel ÖÐʵÏÖÁ˱ر¸µÄÐéÄâ»úÖÎÀí¹¦Ð§£¬ÕâÒ²¾Í¹æ±ÜÁËÓëͨÓòÙ×÷ϵͳÏà¹ØµÄÇå¾²Îó²îÒý·¢µÄÇ徲Σº¦¡£
ͼ3. VMware ESX/ ESXi ÊÂÇé½á¹¹
VMware vCenter Server£¨¼ò³ÆvCenter Server£©ÊÇvSphereµÄÁíÍâÒ»¸ö½¹µã×é¼þ£¬ËüÊÇÒ»¸ö¿ÉÒÔ×ÊÖúÓû§ÖÎÀí¶à¸öVMwareÐéÄ⻯ƽ̨µÄÈí¼þ£¬ÐèÒªµ¥¶À×°ÖÃÔÚһ̨·þÎñÆ÷ÖС£ÔÚvSphereÖУ¬Óû§¿ÉÒÔ½«¶à¸öESX/ESXi Ö÷»úÌí¼Óµ½vCenter Server ÖÎÀíƽ̨ÖУ¬È»ºóͨ¹ývCenter ServerÖÎÀíESX/ESXiÖ÷»úºÍÆäÖн¨ÉèµÄËùÓÐÐéÄâ»ú£¬Õû¸öÊÂÇé½á¹¹Èçͼ4Ëùʾ¡£ËäÈ»ÏÖÔÚ·¢Ã÷µÄÀÕË÷Èí¼þÕë¶ÔµÄÊÇESX/ESXiÖ÷»ú£¬µ«vCenter Server¿ÉÒÔÖ±½ÓÖÎÀíESX/ESXi¶ą̀Ö÷»ú¡£ÈôÊÇvCenter Server±£´æÎó²î±»¹¥»÷ÕßʹÓã¬ÄÇô¾ÍÎÞÒɽ«Êý̨ESX/ESXiÖ÷»úµÄ´óÃÅÏò¹¥»÷Õ߶´¿ª£¬¹¥»÷Õß¿ÉÒÔËÁÒâÔÚESX/ESXiÖа²ÅÅÀÕË÷Èí¼þ£¬ÆäЧ¹ûµÄÑÏÖØÐÔ¿ÉÏë¶øÖª¡£
ͼ4. vCenter Server ÊÂÇé½á¹¹
Èý¡¢ Õë¶ÔvSphereÀÕË÷µÄÏà¹ØÔ˶¯
²¡¶¾ÀÕË÷×÷Ϊ½üÄêÀ´Ê¢ÐеÄÍøÂç¹¥»÷ÊֶΣ¬Öð½¥»ñµÃºÚ¿ÍÍÅ»ïÇàíù£¬Ô½À´Ô½¶àµÄÀÕË÷×éÖ¯·ºÆðÔÚ¹«¹²ÊÓÒ°£¬¸÷´ó²¡¶¾ÀÕË÷ÊÂÎñÒ²Öð½¥Õ¼ÓÐÁËÖØ´óÍøÂç¹¥»÷ÊÂÎñµÄÍ·°æÍ·Ìõ¡£½ü¼¸Ä꣬ÀÕË÷¹¥»÷ÊÂÎñ²ã³ö²»Ç¶ÔÊܺ¦ÆóÒµ/×éÖ¯Ôì³ÉÖØ´ó¹¤ÒµËðʧ£¬ÀÕË÷²¡¶¾ÒѾ³ÉΪ¸÷Õþ¸®²¿·Ö¡¢×éÖ¯ºÍÆóÒµÐèÒªÃæÁÙµÄÖ÷ÒªÍøÂçΣº¦Ö®Ò»¡£×ÔÈ¥Äê×îÏÈ£¬ÀÕË÷×éÖ¯Öð½¥×îÏÈ°ÑÄ¿µÄÑÓÉìµ½VMware vSphereƽ̨ÉÏ£¬Í¨¹ý¶ÔÆäÖÐESX/ESXi·þÎñÆ÷ÉϵÄÊý̨ÐéÄâ»úϵͳÎļþ¾ÙÐмÓÃÜ´Ó¶øÏòÊܺ¦×éÖ¯/ÆóÒµÀÕË÷¸ß¶îµÄÊê½ð¡£È¥Äê7Ô£¬Sprite SpiderÀÕË÷×éÖ¯¾Í×îÏȶÔÆäÀÕË÷Èí¼þ¾ÙÐÐÉý¼¶£¬Ê¹ÆäÔÚ¼ì²âµ½ESXiÖ÷»úºó°²ÅÅRansomEXX¶ñÒâ³ÌÐòÊÔͼÇÔÈ¡µÇ¼ƾ֤ÏòvCenter¾ÙÐÐÉí·ÝÈÏÖ¤£»Í¬Ñù¶ÔÀÕË÷Èí¼þ¾ÙÐÐESX/ESXiÕë¶ÔÐÔÉý¼¶µÄÉÐÓÐÀÕË÷×éÖ¯carbon spider¡¢BabukLocker¡¢REvilºÍBlackMatter¡£×ÔÈ¥Äê×îÏÈ£¬Õë¶ÔVMwareÐéÄâ»úµÄÀÕË÷²¡¶¾¹¥»÷ÊÂÎñÒ²×îÏÈƵ·¢£¬È¥Äê11Ô°ÍÎ÷¸ßµÈ·¨Ôº£¨STJ£©Êܵ½´ó¹æÄ£ RansomExx ÀÕË÷Èí¼þ¹¥»÷£¬Áè¼Ý1000̨ÐéÄâ»úÎļþ±»¼ÓÃÜ£¬´Ë´ÎÊÂÎñÓë7Ô·ݾÙÐÐVMware ESX/ESXiÈí¼þÉý¼¶µÄSprite SpiderÀÕË÷×éÖ¯ÊÇ·ñÓйØÁª£¬ÎÒÃÇÎÞ´ÓµÃÖª£»²»µ«ÍâÑóÓû§ÔâÓöÁËÕë¶ÔVMware ESX/ESXiµÄÀÕË÷¹¥»÷£¬º£ÄÚÓû§Í¬ÑùÒ²ÔâÓöÁË´ËÀ๥»÷£¬ÔÚ½ñÄê3Ô£¬º£ÄÚij¹«Ë¾ÔËάְԱ·¢Ã÷¹«Ë¾ÄÚ²¿VMware ESXiÖ÷»úÉÏ´ó×ÚÐéÄâ»úÎļþ±»¼ÓÃÜ£¬ÎÒÃÇÕûÀíµÄÏà¹ØµÄÊÂÎñʱ¼äÏßÈçͼ5¡£
ͼ5. ÀÕË÷²¡¶¾Õë¶ÔvSphereÏà¹ØÊÂÎñʱ¼äÏß
´ÓÈ¥Äê×îÏÈ£¬IABsÍŶÓÖð½¥ÓëÀÕË÷²¡¶¾Ò»Æð½øÈ빫ÖÚµÄÊÓÒ°¡£IABsÍŶÓ×÷ΪÍøÂç¹¥»÷µØϹ¤ÒµµÄºã¾Ã»îÔ¾¼ÓÈëÕߣ¬Í¨¹ýÔÚ¸÷´óÂÛ̳³öÊÛÖ÷»úȨÏÞÀ´»ñÈ¡ÀûÒ棬ËüÃǽ«Êܺ¦ÕßÖ÷»úµÄrootȨÏÞ³öÊÛ¸øÆäËûÍøÂç¹¥»÷´ÓÒµÕߣ¬ÓÉÆäËûÍøÂç¹¥»÷Õß¿ªÕ¹ÏÂÒ»²½µÄ¹¥»÷Ô˶¯£¬IABsÍŶӲ¢²»Ö±½Ó¼ÓÈë¹¥»÷£¬ÕâÒ²ïÔÌÁËËüÃDZ»ÆäËûÖ´·¨»ú¹¹×·×ÙµÄΣº¦¡£ÔÚÒÔÍùµÄÀÕË÷¹¥»÷ÖУ¬ÎÒÃÇÎÞ·¨È·¶¨ÀÕË÷×éÖ¯ÊÇ·ñÊÇ´ÓIABsÍŶÓÊÖÖйºÖÃÊܺ¦ÕßÖ÷»úȨÏÞ£¬ÀÕË÷×éÖ¯ÓëIABsÍŶÓÏàÖúÕâÖÖģʽ¿ÉÄÜÔçÒÑ·ºÆ𣬿ÉÊÇÕâÖÖÏàÖúģʽÕýÔÚÖð½¥±»¸÷¸öÀÕË÷×éÖ¯½ÓÄÉ£º¾ÝÐÂÎųƣ¬ÃÀ¹ú×î´óȼÓ͹ܵÀÀÕË÷ÊÂÎñÖеÄÖ÷½ÇDarkSideÔÚÀÕË÷ÃÀ¹úʯÓ͹ܵÀÔËÓªÉÌColonial Pipeline֮ǰ¾ÍÔøÔÚµØÏÂÂÛ̳·¢ÎÄÑ°ÕÒÄܹ»ÈÃÆä½Ó´¥µ½ÊÐÖµ4ÒÚÃÀÔª¹«Ë¾µÄIABsÏàÖú£¬Èçͼ6£¬ÃÀ¹úȼÓ͹ܵÀÀÕË÷ÊÂÎñÊÇ·ñÓÐIABsÍŶӼÓÈ룬ÎÒÃÇÎÞ´Ó¿¼Ö¤£»ÁíÍ⣬ÔÚµØÏÂÂÛ̳ÖУ¬ÎÒÃÇÒ²ÊӲ쵽Óжà¸öIABsÕýÔÚ×·ÇóÀÕË÷ÍŶÓÏàÖú²¢³öÊÛvCenter/ESXiµÄRootȨÏÞ£¬Èçͼ7¡£
ͼ6. DarkSide×·ÇóÓëIABsÍŶÓÏàÖú
ͼ7. IABsÍŶÓ×·ÇóÓëÀÕË÷×éÖ¯ÏàÖú
ËÄ¡¢ Õë¶ÔvSphereÀÕË÷µÄÔµ¹ÊÔÓÉÆÊÎö
ÖÚ¶àÀÕË÷×éÖ¯×îÏȽ«Ä¿µÄÑÓÉìµ½vSphereƽ̨ÉÏ£¬ÎÞ·ÇÊÇΪÁ˼ÓÃܸü¶à¸üÖ÷ÒªµÄÊý¾ÝÒÔÀÕË÷¸ü¸ß¶îµÄÊê½ð¡£Õë¶ÔvSphereƽ̨µÄÀÕË÷¹¥»÷£¬Äܹ»Ê¹ÀÕË÷×éÖ¯Ïñ¿ØÖÆÒ»¼äÆóÒµ·þÎñÆ÷µÄ»ú·¿Ò»Ñù¶ÔÊý̨·þÎñÆ÷¾ÙÐпØÖÆ£¬¹¥»÷Õ߶ÔÕâЩÐéÄâ»úµÄÔ´Îļþ¾ÙÐмÓÃÜ£¬¿ÉÄÜÖ±½ÓÔì³ÉÊý¾Ý¿â±»¼ÓÃÜ¡¢¶ÔÍâÌṩ·þÎñÖÐÖ¹ÉõÖÁ¹«Ë¾ÏµÍ³Ì±»¾£¬ÀÕË÷×éÖ¯ÍùÍù¿ª³ö¸ü¸ß¶îµÄÊê½ð¡£ÔÆÔƸªµ×³éнµÄÀÕË÷·½·¨£¬ÈÃÊܺ¦ÕßÆóÒµ/×éÖ¯¶Ìʱ¼äÄÑÒÔÓ¦¸¶£¬¼«´óµØÔöÌíÁËÀÕË÷¹¥»÷µÄÀÖ³ÉÂʺÍÊÕÒæ¡£×Åʵ£¬Ëæ×Å»¥ÁªÍøÊÖÒÕµÄˢУ¬ÀÕË÷×éÖ¯Ò»Ö±ÔÚһֱѰÕÒÐµĹ¥»÷Ä¿µÄºÍ¹¥»÷ÊֶΣ¬ÀÕË÷×éÖ¯×ö³ö ¡°Õë¶ÔvSphereƽ̨¹¥»÷¡± µÄÕâÖָı䲢·ÇÎÞÒ⣬ÍŽáÏà¹Ø×ÊÁÏ£¬ÎÒÃǽ«ÔÚ±¾Õ¶ÔÀÕË÷×éÖ¯µÄÕâÖָıä¾ÙÐÐÒ»¸öÔµ¹ÊÔÓÉÆÊÎö¡£
Åä¾°Ìõ¼þ£ºËæ×Å»¥ÁªÍøÊÖÒյĿìËÙ¸üУ¬ÍøÂçÓû§Á¿¾çÔö£¬¸÷¸öÕþ¸®²¿·Ö¡¢×éÖ¯ºÍÆóÒµ¶ÔÅÌËã×ÊÔ´ºÍ´æ´¢×ÊÔ´µÄÐèÇóÖèÔö£»ÔÆÅÌËãºÍÐéÄâÊÖÒÕµÄÐËÆðÈø÷´óÔÆ·þÎñÌṩÉ̺ÍÐéÄ⻯ÊÖÒÕ¹«Ë¾Îª¸÷¸öÕþ¸®²¿·Ö¡¢×éÖ¯ºÍÆóÒµÌṩÁ˶¨ÖÆ»¯×ÊÔ´·þÎñºÍÐéÄ⻯½â¾ö¼Æ»®ÒÔÖª×ãÒ»Ñùƽ³£×ÊÔ´ÐèÇó¡£VMware×÷ΪÔÆ·þÎñºÍÐéÄ⻯ÁìÓòµÄÁìÍ·ÆóÒµ£¬Æä¿Í»§ÏÕЩº¸ÇËùÓÐÁìÓò£»³ý´ËÖ®Í⣬¸÷´óÔÆ·þÎñÌṩÉÌҲΪÆä¿Í»§Ìṩ¼ä½ÓµÄVMwareÐéÄ⻯·þÎñ£¬´Óͼ8 ¡°2020Äê·þÎñÆ÷ÐéÄ⻯Êг¡ÂþÑÜ¡± ÖпÉÒÔ¿´³ö£¬VMwareÒѾ³ÉΪÐéÄ⻯Êг¡µÄ¾ø¶Ô°ÔÖ÷¡£Õë¶ÔVMware vSphere¾ÙÐÐÀÕË÷¿ÉÒÔÓµÓÐÖÚ¶àÀÕË÷¹¤¾ß£¬Í¬Ê±Äܹ»Í¨¹ýÐéÄ⻯ƽ̨vSphere¿ØÖÆÆóÒµ/×éÖ¯µÄ´ó×ÚÊý×Ö×ʲú£¬¼«´óµØÌá¸ßÁËÀÕË÷µÄÊÕÒæºÍÀÖ³ÉÂÊ¡£
ͼ8. 2020Äê·þÎñÆ÷ÐéÄ⻯½â¾ö¼Æ»®µÄÓªÒµÊг¡ÂþÑÜ£¨ÈªÔ´£ºspiceworks£©
ÊÖÒÕÌõ¼þ£º2019Äêµ×ºÍ2020Ä꣬VMware»®·ÖÐû²¼Ç徲ͨ¸æÐÞ¸´Á˶à¸ö²úÆ·Îó²î£¬ÆäÖÐVMware ESXiµÄÁ½¸öÎó²îCVE-2019-5544ºÍCVE-2020-3992½«µ¼ÖÂVMware ESXi·þÎñÆ÷ÉϵÄÔ¶³Ì´úÂëÖ´ÐУ¬VMwareÒѾ¶ÔÕâÁ½¸öÎó²î¾ÙÐÐÁËÆÀ¹À£¬²¢¶¨¼¶ÎªÑÏÖØ£¬CVSSv3 ÆÀ·Ö 9.8¡£ÕâÁ½¸öÎó²î½«Ó°Ïì¶à¸ö°æ±¾µÄVMware vSphereÓû§£¬ËæºóVMwareÌṩÐÞ¸´²¹¶¡£¬µ«ÈÔÓдóÅú¿Í»§ÓÉÓÚÖÖÖÖÔµ¹ÊÔÓɲ¢Î´¶ÔÆäʹÓõÄESX/ESXi¾ÙÐв¹¶¡£¬ÕâΪ¹¥»÷ÕßÌṩÁ˱ã½ÝµÄÈëÇÖVMware ESX/ESXiÖ÷»úµÄÒªÁìºÍÊֶΡ£
ÍⲿÌõ¼þ£º×Ô2020ÄêÆð£¬IABsÒ²½«ÆäÄ¿µÄÀ©Õ¹µ½ÁËVMware vSphereƽ̨ÉÏ¡£¶Ô´ó²¿·ÖÀÕË÷×éÖ¯À´Ëµ£¬ÓëIABsÏàÖúÊÇÒ»Ïî¹²Ó®µÄÑ¡Ôñ,ÓÉÓÚ´ÓIABsÊÖÉϹºÖÃESX/ESXiÖ÷»úȨÏ޵ļÛǮҲ½ö½öÖ»ÊÇÊê½ðµÄ¼«Ð¡²¿·Ö£¬Í¨¹ýÕâÖÖ·½·¨£¬ËûÃÇÄܹ»Ê¡È¥´ó×ÚµÄÈËÁ¦¡¢Ê±¼ä¡¢×ÊÔ´È¥»ñÈ¡ESX/ESXiÖ÷»úµÄRootȨÏÞ£¬Ö±½Óͨ¹ý¹ºÖõÄÖ÷»úRootȨÏÞ¾ÙÐÐÊܺ¦ÕßÖ÷»úµÇ¼£¬È»ºó×îÏÈ°²ÅÅÀÕË÷Èí¼þ¾ÙÐÐÀÕË÷¡£Í¬Ê±£¬ÎÒÃÇÊӲ쵽ÓÐIABs£¨Initial access brokers£©×îÏÈÔÚµØϺڿÍÂÛ̳ÉÏÒÔ250ÃÀ½ðµ½500ÃÀ½ðÖ®¼ä¼ÛÇ®³öÊÛESX/ESXiµÄRootȨÏÞ£¬²¢Õ¹Ê¾³ö¸ü¶à¹ØÓÚÊܺ¦Ö÷»úµÄÐÅÏ¢À´ÎüÒý¿Í»§¹ºÖ㬺ñȵØÇøÐÅÏ¢¡¢È¨ÏÞÐÅÏ¢¡¢CPUÐÅÏ¢¡¢Ó²ÅÌÐÅÏ¢µÈ£¬Èçͼ9Ëùʾ£¬º£ÄÚijÓû§µÄVMware ESXÖ÷»úµÄRootȨÏÞÔÚµØϺڿÍÂÛ̳±»³öÊÛ¡£
ͼ9. IABsÔÚµØÏÂÂÛ̳ÉÏÊÛÂôESXȨÏÞ
Îå¡¢ Õë¶ÔvSphereµÄÀÕË÷ÑùÌìÖ°Îö
×ÔÈ¥Äê×îÏÈ£¬¸÷´óÀÕË÷×éÖ¯×îÏÈÐû²¼Õë¶ÔVMware vSphereÐéÄâƽ̨°æ±¾µÄÀÕË÷³ÌÐò£¬ÒѾÓжà¼ÒÆóÒµ/×éÖ¯Ôâµ½¹¥»÷²¢ÇÒËðʧ²ÒÖØ¡£ÔÚ±¾Ð¡½ÚÖУ¬ÎÒÃǽ«ÒÔADLab¶ÔÀÕË÷¼Ò×åµÄÒ»Á¬Ñо¿Îª»ù´¡£¬ÍŽᲿ·ÖÍâÑóÇå¾²³§É̶ԴËÀ๥»÷Ô˶¯µÄÅû¶À´¶Ô²¿·ÖÀÕË÷×éÖ¯µÄÑù±¾¾ÙÐÐÆÊÎö£¬Í¬Ê±ÍŽáÏÖʵ¹¥»÷°¸Àý¶Ô´ËÀ๥»÷µÄ¹¥»÷Á÷³Ì¾ÙÐÐÁË×ܽᡣÈçͼ10£¬ÔÚÏÖʵ³¡¾°ÖУ¬ESX/ESXiÖ÷»úÉϻᰲÅŶą̀ÐéÄâ»ú¶ÔͨË×Óû§Ìṩ»ù±¾·þÎñ£¬ÈôÊÇÉèÖò»µ±£¬Í¨Ë×Óû§ÄÜͨ¹ýÍøÂçÄÜ»á¼ûESX/ESXiÖ÷»ú£¬Õâ¾Í»á¸øºÚ¿ÍÌṩ¿É³ËÖ®»ú£»Í¨³£ÇéÐÎÏ£¬ºÚ¿ÍÊ×ÏÈ»áÔÚµØÏÂÂÛ̳ÖÐ×·ÇóÖ¸¶¨°æ±¾µÄESX/ESXiÎó²îʹÓóÌÐò»òrootµÇ¼ȨÏÞ£¬µ±»ñÈ¡µ½Îó²îʹÓóÌÐò»òrootµÇ¼ȨÏ޺󣬺ڿ;ÍÄÜÖ±½ÓÈëÇÖESX/ESXiÖ÷»ú²¢ÇÒÔÚÆäÖа²ÅÅÀÕË÷Èí¼þ¶ÔÆäÖеÄÐéÄâ»ú¾ÙÐмÓÃܲ¢ÀÕË÷Êê½ð¡£´ÓͼÖпÉÒÔ¿´³ö£¬ÈôÊÇÀÕË÷¹¥»÷¹¤¾ßÊÇÔÆ·þÎñÌṩÉÌ/ÐéÄâ·þÎñÌṩÉ̵ÄESX/ESXiÖ÷»ú£¬ÄÇô¸ÃÌṩÉ̵ÄÖÚ¶à¿Í»§¶¼½«Êܵ½Ó°Ï죬´óÃæ»ýµÄÆóÒµÓû§Ö÷»ú½«Ôâµ½ÀÕË÷²¡¶¾Ñ¬È¾£¬Õ⽫´øÀ´Óë½ñÄêÃÀ¹úITÖÎÀíÈí¼þÖÆÔìÉÌKaseyaÔâµ½µÄ¹©Ó¦Á´Ê½ÀÕË÷¹¥»÷ÏàËƵÄЧ¹û£¬¶øKaseyaµÄÀÕË÷¹¥»÷ÒѾѬȾÁËÁè¼Ý100Íò¸öϵͳ£¬Áè¼Ý1500¼ÒÆóÒµÊܵ½Ó°Ïì¡£
ͼ10. Õë¶ÔvSphereÐéÄâƽ̨µÄÀÕË÷¹¥»÷³¡¾°
½ÓÏÂÀ´£¬ÎÒÃǽ«¶Ô²¿·ÖÀÕË÷×éÖ¯µÄÑù±¾¾ÙÐÐÏêϸÊÖÒÕÆÊÎö£¬Í¨¹ýºáÏò±È¶Ô£¬¿ÉÒÔ×ܽá³öÕâЩÕë¶ÔVMware vSphereÐéÄâƽ̨ÀÕË÷³ÌÐòµÄÖ´ÐÐÌص㣺ͨ³£ÇéÐÎÏ£¬ÀÕË÷Èí¼þÊ×ÏÈ»áʹÓÃESX/ESXiµÄesxcliÖ¸Áî²éÕÒÐéÄâ»úÀú³Ì£»È»ºó£¬¶ñÒâ³ÌÐò»áʹÓÃesxcliÖ¸Áî¹Ø±ÕÐéÄâ»ú£¬ÕâÒ»²½Í¨³£ÊÇΪÁ˱ÜÃâ¶ÔÐéÄâ»úÎļþ¾ÙÐмÓÃÜʱ¶ÔÐéÄâ»úÔÎļþÔì³ÉÆÆË𣬴Ӷøµ¼ÖÈÎÃüÜʧ°Ü£»½ÓÏÂÀ´£¬¶ñÒâ³ÌÐò½«ÔÚÖ¸¶¨Â·¾¶Ï¾ÙÐÐÐéÄâ»úÏà¹ØÎļþËÑË÷£¨Í¨³£°üÀ¨ÐéÄâ»úÐéÄâ´ÅÅÌÎļþvmdk¡¢ÐéÄâ»úÐéÄâÄÚ´æÎļþvmem¡¢ÐéÄâ»úÒ³½»Á÷Îļþvswp£¬ÈÕÖ¾Îļþlog¡¢ÐéÄâ»ú¿ìÕÕÎļþvmsnµÈ£©£»×îºó£¬¶ñÒâ³ÌÐò½«¶ÔËÑË÷µ½µÄÐéÄâ»úÏà¹ØÎļþ¾ÙÐмÓÃÜ£¬Í¬Ê±¼û¸æÊܺ¦Õß½ÉÄÉÊê½ð¡£
5.1 DarkSide
DarkSideÀÕË÷Èí¼þ×îÔçÓÚ2020Äê8Ô±»·¢Ã÷£¬ÊÇÒ»Ö§·Ç³£»îÔ¾µÄÐÂÐËÀÕË÷ÍŻDarkSide×éÖ¯×Ô2020Äê8ÔÂ×îÏÈƵÈÔÔ˶¯£¬²¢ÔÚ½ñÄê5Ô¹¥»÷ÁËÃÀ¹ú×î´óµÄȼÓ͹ܵÀ¹«Ë¾Colonial Pipeline£¬µ¼ÖÂÃÀ¹ú¶«²¿Ñغ£Ö÷Òª¶¼»áÔËËÍÓÍÆøµÄ¹ÜµÀϵͳ±»ÆÈÏÂÏߣ¬17¸öÖݺÍÊ׶¼ËùÔڵĻªÊ¢¶ÙÌØÇøÐû²¼½øÈë½ôÆÈ״̬£¬ÒýÆðÁËÖØ´óµÄ¾ª¶¯ºÍÈ«ÇòµÄ¹Ø×¢¡£×îÖÕ£¬Colonial PipelineÖ§¸¶Á˽ü75±ÈÌرң¨Ô¼ºÏ½ü500ÍòÃÀÔª£©²ÅʹÊý¾ÝµÃÒÔ»Ö¸´£¬ÔËÊäÊÂÇéÕý³£ÔËÐС£Í¬Ê±ÎÒÃÇÒ²·¢Ã÷£¬DarkSideÔÚÈ¥Äê¾ÍÒѾ¾ß±¸¹¥»÷ESXiµÄ¹¦Ð§¡£
Ñù±¾ÊÖÒÕÆÊÎö
ΪÁ˸üºÃµØ¼ÓÃÜÐéÄâ»ú£¬DarkSideʹÓÃÁËÐí¶àESXiÉ϶ÀÍ̵ÄesxcliÏÂÁÈçÔÚ¼ÓÃÜÐéÄâ»úÇ°»áʹÓÃesxcliÏÂÁîÀ´±éÀú³öESXiÉÏÕýÔÚÔËÐеÄÐéÄâ»ú¡£
³ýÁËÒÔÉÏÏÂÁÔÚDarkSide»¹ÓÃÁËÐí¶àesxcliÏÂÁÏêϸÈçϱíËùʾ£º
DarkSideͨ¹ý±éÀúÎļþ£¬²¢ÇÒÅжÏÎļþºó׺ÊÇ·ñΪvmdk£¨ÐéÄâ»úÐéÄâ´ÅÅÌÎļþ£©£¬vmem£¨ÐéÄâ»úÐéÄâÄÚ´æÎÄÎļþ£©£¬vswp£¨ÐéÄâ»úÒ³½»Á÷Îļþ£©£¬log£¨ÈÕÖ¾Îļþ£©£¬vmsn£¨ÐéÄâ»ú¿ìÕÕÎļþ£©À´¾öÒéÊÇ·ñ¾ÙÐмÓÃÜ£¬¼ÓÃÜÀֳɺó»áÔÚÔÎļþºó׺ºó¼ÓÈëdarkside¡£
×îºó£¬DarkSide»áÁôÏÂÀÕË÷ÐÅÖÒÑÔÊܺ¦Õߣ¬²¢ÇÒÔÚÐÅÖÐÁôÏ»¹ÔÊý¾ÝµÄ·½·¨ÒÔ¼°½»Êê½ðµÄµØµã
5.2 REvil
REvilÒ²±»³ÆΪSodinokibi£¬ÊÇÒ»¸öÎÛÃûÕÑÖøµÄÀÕË÷ÍŻÆä¹¥»÷×îÔç¿ÉÒÔ×·Ëݵ½2019Äê4Ô¡£¸ÃÀÕË÷ÍÅ»ï×÷°¸ÆµÈÔ£¬²¢Ôø¹¥»÷¹ý¶à¸ö´óÐ͹«Ë¾ÈçÃÀ¹úÁìÏȵÄÊÓƵ´«ÊäÌṩÉÌSeaChange International¡¢ÖøÃûÓ²¼þºÍµç×Ó¹«Ë¾ºê»ù¹«Ë¾¡¢È«ÇòÔÙÉúÄÜÔ´¾Þë¢Invenergy¹«Ë¾¡¢È«Çò×î´óÈâÀ๩ӦÉÌJBS¹«Ë¾¡£¶øÔÚ½ñÄê7ÔÂÃÀ¹úÔ¶³ÌITÖÎÀíÈí¼þ³§ÉÌKaseyaÒ²ÔâÊܵ½ÁËREvilµÄ¹¥»÷£¬µ¼ÖÂÈ«ÇòÁè¼Ý10000¼ÒµÄKaseya¿Í»§£¬ÆäÖаüÀ¨50%ÒÔÉϵÄÈ«Çò100Ç¿ITÖÎÀí·þÎñÌṩÉ̼°¸÷´óÁúÍ·Êܵ½ÀÕË÷¹¥»÷µÄΣº¦¡£¾Ý³Æ´Ë´Î¹¥»÷ÊÇREvilÓÐÊ·ÒÔÀ´¹æÄ£×î´óµÄÒ»´Î¹¥»÷£¬¾ÝÆä¹ÙÍøÐû³Æ£¬ËûÃÇÒѾËø¶¨ÁËÁè¼Ý100Íò¸öϵͳ£¬²¢ÏòKaseyaË÷È¡70000000ÃÀÔªµÄÊê½ð¡£¶øÔÚ½ñÄê5Ô£¬ÎÒÃÇÊӲ쵽REvilÔËÓªÉÌÔÚµØϺڿÍÂÛ̳ÉÏÐû²¼ÁËÕë¶ÔVmware ESXiµÄLinux°æ±¾¡£
Ñù±¾ÊÖÒÕÆÊÎö
ΪÁË×èÖ¹ÐéÄâ»úÏà¹ØµÄÎļþÊܵ½²»ÐëÒªµÄË𻵣¬REvilÔÚ¼ÓÃÜǰҲͬÑù»áÏȹرÕESXiÉÏÕýÔÚÔËÐеÄÐéÄâ»ú£¬µ«ÓëDarkSide²î±ðµÄÊÇREvilÏÈʹÓÃpkill -9µÄÏÂÁî¹Ø±ÕÓëÐéÄâ»úÏà¹ØµÄÀú³Ì¡£
È»ºóREvilʹÓÃexcliÏÂÁî±éÀú³öËùÓÐÕýÔÚÔËÐеÄESXiÐéÄâ»ú²¢ÇҹرÕËüÃÇ£¬Ê¹ÓôËÏÂÁî»á¹Ø±Õ´æ´¢ÔÚ /vmmfs/ Îļþ¼ÐÖеÄÐéÄâ»ú´ÅÅÌ (VMDK) Îļþ£¬±ÜÃâREvil¶ÔÕâЩÎļþ¾ÙÐмÓÃÜʱÓÉÓÚ±» ESXi Ëø¶¨¶øµ¼ÖÈÎÃüÜʧ°Ü¡£
ÓëÆäËûÕë¶ÔESXiµÄÀÕË÷Èí¼þ²î±ðµÄÊÇ£¬REvil²»»á¶ÔÐéÄâ»úÎļþµÄºó׺¾ÙÐÐÅжϣ¬¶øÊǶԼÓÃÜ·¾¶ÏÂËùÓеÄÎļþ¶¼¾ÙÐмÓÃÜ£¬²¢ÅжϸÃÎļþÊÇ·ñÒѾ±»¼ÓÃÜÁ˺ÍÊÇ·ñ¾ßÓÐRWXȨÏÞ»òÕßRWȨÏÞ£¨ÈôÊǾßÓÐÕâЩȨÏÞ£¬ÔòÕâЩÎļþÊDZ»ÏµÍ³±£»¤µÄ£©À´¾öÒéÊÇ·ñ¾ÙÐмÓÃÜ¡£
×îºó£¬REvilÁôÏÂÀÕË÷ÐÅÖÒÑÔÊܺ¦Õß²¢ÇÒÔÚÐÅÖÐÁôÏ»¹ÔÊý¾ÝµÄ·½·¨ÒÔ¼°½»Êê½ðµÄµØµã¡£
ͼ20. REvilµÄÀÕË÷ÐÅ
5.3 HelloKitty
HelloKittyÀÕË÷Èí¼þ¹¥»÷Ô˶¯×îÔç¿ÉÒÔ×·Ëݵ½2020Ä꣬Ö÷ÒªÕë¶ÔWindowsϵͳ¡£ÆäÔÚ2021Äê2Ô¹¥»÷ÁËCD Projekt Red¹«Ë¾²¢Éù³ÆÇÔÈ¡Á˸ù«Ë¾³öÆ·µÄ¡°Cyberpunk 2077¡±¡¢¡°Witcher 3¡±¡¢¡°Gwent ¡±ºÍÆäËûÓÎÏ·µÄÔ´´úÂë¡£¶øÔÚ½ñÄê7Ô£¬ÎÒÃÇÊӲ쵽¸ÃľÂíµÄLinux±äÌå×îÏÈÕë¶ÔVmware ESXi¾ÙÐй¥»÷¡£ÆäÖУ¬±»¹¥»÷µÄÄ¿µÄ°üÀ¨Òâ´óÀûºÍºÉÀ¼µÄÖÆÒ©¹«Ë¾¡¢Ò»¼ÒµÂ¹úÖÆÔìÉÌ¡¢Ò»¼Ò°Ä´óÀûÑÇÌṩ¹¤Òµ×Ô¶¯»¯½â¾ö¼Æ»®µÄ¹«Ë¾ÒÔ¼°ÃÀ¹úÒ»¼ÒÒ½Áư칫ÊҺ͹ÉƱ¾¼ÍÈË¡£ÔÚÊê½ð·½Ã棬¹¥»÷Õß»áÒò¹¥»÷Ä¿µÄ¹«Ë¾µÄ¹æÄ£²î±ð£¬¶øÒªÇóÖ§¸¶²î±ð½ð¶îµÄÊê½ð£¬ÆäÀÕË÷µÄÊê½ð×î¸ß¿É´ï1000ÍòÃÀ½ð¡£
Ñù±¾ÊÖÒÕÆÊÎö
HelloKittyÀÕË÷Èí¼þÊ×ÏÈ»áʹÓÃesxcliÏÂÁîÀ´±éÀú³öÄ¿½ñÊÜѬȾ»úеÉÏÕýÔÚÔËÐеÄÐéÄâ»úÀú³Ì£¬²¢ÊµÑé¹Ø±ÕÕâЩÐéÄâ»ú¡£ÎªÁË×èÖ¹ÐéÄâ»úÏà¹ØµÄÎļþÔâµ½²»ÐëÒªµÄË𻵣¬¸Ã²¡¶¾ÔÚ¼ÓÃÜÎļþÇ°»áÏȽ«ÐéÄâ»ú¹Ø±Õ¡£
¸ÃÀÕË÷Èí¼þÊ״ιرÕÐéÄâ»ú£¬»áʹÓÃÈíÖÕÖ¹À´¿¢Ê¸ÃÀú³Ì¡£
ÏÂÁesxcli vm process kill -t=soft -w=%d
ÈôÊÇÈÔÓÐÐéÄâ»úÕýÔÚÔËÐУ¬¸Ã²¡¶¾½«»áʹÓÃÓ²ÖÕÖ¹À´¿¢Ê¸ÃÀú³Ì¡£
ÏÂÁesxcli vm process kill -t=hard -w=%d
ÈôÊÇÉÐÓÐÐéÄâ»úδ±»¹Ø±Õ£¬Ôò»áʹÓÃÇ¿ÖÆÖÕÖ¹À´¿¢Ê¸ÃÀú³Ì¡£
5.4 BlackMatter
2021Äê7Ô£¬Ò»¸öÃûΪBlackMatterµÄÐÂÀÕË÷Èí¼þ×éÖ¯ÕýÔÚ¹ºÖÃÆóÒµÍøÂçµÄ»á¼ûȨÏÞ£¬Í¬Ê±Éù³ÆÆäÏîÄ¿Òѽ«REvilºÍDarkSideµÄ×î¼Ñ¹¦Ð§ÈÚÈëÆäÖС£BlackMatter»¹ÌåÏÖ£¬ËûÃǵÄÀÕË÷Èí¼þÊÊÓÃÓÚ¶àÖÖ²î±ðµÄ²Ù×÷ϵͳ°æ±¾ºÍ¼Ü¹¹£¬²¢ÒÔ¶àÖÖÃûÌÃÌṩ¡£°üÀ¨Ö§³ÖÇ徲ģʽµÄWindows±äÌ壨Windows Server2003+x86/x64ºÍWindows7+x86/x64£©ºÍÖ§³ÖNASµÄLinux±äÌ壨ESXI5+¡¢Ubuntu¡¢DebianºÍCenOs£©£¬ÇÒÕâЩ±äÌåÔÚÏàͬϵͳÉϾùÒѲâÊÔÀֳɡ£
Ñù±¾ÊÖÒÕÆÊÎö
BlackMatterÔÚESXI·þÎñÆ÷ÉÏÔËÐÐʱ£¬ÆäÊ×ÏÈʹÓÃesxcliÏÂÁîÁгöËùÓÐÕýÔÚÔËÐеÄVMwareÐéÄâ»ú¡£
½Ó×Å£¬BlackMatter»á»ñÈ¡Ä¿½ñϵͳËùÓÐÕýÔÚÔËÐеÄÀú³Ì£¬²¢½«ÕâЩÀú³ÌÇ¿ÖÆ¿¢Ê¡£
Áù¡¢ ×ܽáÓ뽨Òé
Õë¶ÔÐéÄ⻯ƽ̨VMware vSphereµÄÀÕË÷¹¥»÷³ÉΪÀÕË÷×éÖ¯µÄÐÂÐ͹¥»÷Æ«Ïò£¬±¾ÎÄ´Ó¶à¸ö½Ç¶È¶Ô´ËÀ๥»÷¾ÙÐÐÁË×ÛºÏÆÊÎö¡£Õë¶ÔÐéÄ⻯ƽ̨VMware vSphereµÄÀÕË÷¹¥»÷¿ÉÄÜ»áÔ½·¢ÆµÈÔ£ºÊ×ÏÈ£¬¹¥»÷Õ߶ÔÐéÄâ»úÖÎÀíƽ̨µÄESX/ESXiÖ÷»ú¾ÙÐÐѬȾºó¿ÉÒÔ¶ÔÆäÖеÄÊý̨ÐéÄâ»úÔ´Îļþ¾ÙÐмÓÃÜ£¬½«Ö±½ÓÓ°ÏìÊܺ¦ÆóÒµ/×éÖ¯µÄ¶ą̀ӦÓ÷þÎñÆ÷/Êý¾Ý¿â£¬ÕâÖÖ·½·¨¿ØÖÆÁËÔ½·¢Ö÷ÒªÆóÒµ/×éÖ¯µÄÊý×Ö×ʲú£¬Äܹ»ÀÕË÷¸ü¸ß¶îµÄÊê½ð²¢ÇÒ´ó´óÌá¸ßÀÖ³ÉÂÊ£¬ÕâÕýÊÇÀÕË÷×éÖ¯µÄ½¹µãÄ¿µÄ£»Æä´Î£¬Ô½À´Ô½¶àµÄºÚ¿Í½«Ä¿µÄתÏòÁËVMware vSphere£¬Ïà¹ØµÄÇå¾²Îó²îÒ»ÔÙ±»·¢Ã÷£¬µ«Ðí¶à¿Í»§ÓÉÓÚÖÖÖÖÔµ¹ÊÔÓÉÏÞÖƲ¢Î´ÄÜʵʱ²¹¶¡£¬ÕâҲΪÀÕË÷×éÖ¯ÈëÇÖµ½ÆóÒµµÄESX/ESXiÖ÷»úÌṩÁ˱㵱£»ÁíÍ⣬IABsÍŶÓÔÚµØÏÂÂÛ̳ÖÐÕë¶ÔVMware vSphereµÄÔ˶¯Ò²Ô½¼ÓƵÈÔ£¬Í¬Ê±ËüÃÇÒ²ÔÚÆð¾¢×·ÇóÓëÀÕË÷×éÖ¯¾ÙÐÐÏàÖú£¬IABsÍŶÓÄܹ»ÌṩרҵESX/ESXiÖ÷»úµÄÈëÇÖ·þÎñ£¬ËüÓëÀÕË÷×éÖ¯µÄÏàÖú½«»á°ÑÕë¶ÔvSphereµÄÀÕË÷¹¥»÷ÍÆÉÏÐÂÒ»ÂÖµÄÈȳ±¡£
¿ÉÒÔ¿´³ö£¬Ëæ×Å»¥ÁªÍøÊÖÒÕµÄһֱˢкÍÊг¡µÄת±ä£¬ÀÕË÷×éÖ¯Ò²ÔÚÒ»Ö±À©Õ¹ËüÃǵĹ¥»÷Æ«ÏòºÍ×·Çó¸üÓÐÓõĹ¥»÷ÊÖ·¨£¬ÒÔ±ãÔÚÀÕË÷¹¥»÷ÖлñÈ¡¸ü¸ß¶îµÄÊê½ðͬʱ´ó·ùÌá¸ßÀÕË÷µÄÀÖ³ÉÂÊ¡£VMware vSphereÖ»ÊÇÖÚ¶àÐéÄ⻯ƽ̨µÄÆäÖÐÒ»¸ö£¬Ö»ÊÇÓÉÓÚËüµÄÊг¡Öش󣬳ÉΪÁ˹¥»÷ÕßµÄÊ×Ñ¡Ä¿µÄ£»Ëæ×Åʱ¼äµÄÍÆÒÆ£¬ÆäËûÐéÄ⻯ƽ̨È磺Microsoft¡¢OracleºÍRed HatµÈºÜ¿ÉÄÜ»á³ÉΪ¹¥»÷ÕßµÄÐÂÄ¿µÄ£¬¸÷´óÆóÒµ/×éÖ¯Ó¦µ±×¢ÖØÌáÇ°×öºÃÕë¶ÔÐÔ·ÀÓù¡£Õë¶ÔvSphereÐéÄâƽ̨µÄÀÕË÷¹¥»÷½«¶ÔÊܺ¦ÕßÆóÒµ´øÀ´ÄÑÒÔ¹ÀÁ¿µÄËðʧ£¬ÎÒÃǽ«ÍŽ᱾ÎĵÄÆÊÎöºÍÏà¹Ø×ÊÁÏÏòvSphereÓû§Ìá³öÏÂÃ漸ÌõÕë¶ÔÐÔ·ÀÓù½¨Ò飺
½¨ÒéʹÓà TPM 2.0 оƬ¾ÙÐÐvSphere¾ÙÐÐÇå¾²ÉèÖá£
ÔÚÎïÀí·þÎñÆ÷ÉÏÆôÓÃUEFIÇå¾²Æô¶¯¹¦Ð§£¬Í¨¹ýÈ·±£ÔÚÖ¸µ¼ÖмÓÔصÄËùÓдúÂ붼¾ÓÉÊý×ÖÊðÃûÇÒδ±»¸Ä¶¯£¬´Ó¶øÔöÇ¿²Ù×÷ϵͳµÄÇå¾²ÐÔ¡£
եȡÔÚESX/ESXiÖ÷»úÉÏÖ´ÐÐ×Ô½ç˵´úÂ룬°ü¹ÜESX/ESXiÖ÷»ú¾Ü¾øÖ´ÐÐÈκÎδͨ¹ýÈÏÖ¤ÏàÖúͬ°éÊðÃûµÄ VIB °ü×°ÖõĴúÂë¡£
µ±vSphereƽ̨Ïà¹ØµÄ²úÆ·±£´æÇå¾²²¹¶¡Ðû²¼Ê±£¬Æð¾¢¼ÓÈëϵͳ¼°Ïà¹ØµÄÐéÄ⻯ƽ̨×é¼þ£¨vCenter·þÎñÆ÷¡¢ESX/ESXiÖ÷»ú¡¢VMware¹¤¾ßµÈ£©µÄ¸üС£
¶ÔÐéÄâ»úƽ̨µÄÖÎÀíÕË»§Ê¹ÓøßÇ¿¶ÈÃÜÂë¡£
ÔÚÄÚ²¿ÍøÂçÖоÙÐÐÍøÂçÇøÓò»®·Ö£¬½«¶ÔÍâ·þÎñµÄÖ÷»úºÍ½öÄÚ²¿»á¼ûµÄÖ÷»ú¾ÙÐÐÍÑÀëÖÎÀí£¬²¢ÇÒΪÐéÄâƽ̨ÖÎÀíÔ±ÌṩרÓõÄvCenter·þÎñÆ÷ºÍESX/ESXiÖÎÀí½Ó¿ÚÒÔ¼°×¨ÓõÄÊÂÇéÕ¾¡£
ÉèÖü¯ÖÐʽµÄ¼Í¼ÈÕÖ¾£¬±ÜÃâÖÎÀíϵͳÉèÖúÍÇéÐÎÔâµ½¸Ä¶¯¡£
¾¡¿ÉÄܸßƵÂʵؾÙÐÐϵͳ±¸·Ý£¬ÒÔ±ãÔÚÔâµ½ÀÕË÷¹¥»÷ºóÄܾ¡¿ìµØʵÏÖϵͳ»Ö¸´¡£