¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180628

Ðû²¼Ê±¼ä 2018-06-28

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷ÊÆ±¨¸æ

 

¿¨°Í˹»ùʵÑéÊÒÔÚ2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷ÊÆ±¨¸æÖÐÖ¸³ö£¬£¬ÀÕË÷Èí¼þÕýÔÚ¿ìËÙÏûÊÅ£¬£¬¶ø¶ñÒâÍÚ¿óÈí¼þÕýÔÚÈ¡¶ø´úÖ®¡£¡£ÔâÀÕË÷Èí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ2581026ïÔÌ­µ½2017-2018µÄ1811937£¬£¬ïÔÌ­ÁËÔ¼30%£»£»£»¶øÔâ¶ñÒâÍÚ¿óÈí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ1899236ÔöÌíµ½2017-2018µÄ2735611£¬£¬ÔöÌíÁ˽ü44.5%¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://media.kasperskycontenthub.com/wp-content/uploads/sites/58/2018/06/27125925/KSN-report_Ransomware-and-malicious-cryptominers_2016-2018_ENG.pdf

 

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼ÍøÂçÍþв±¨¸æ£¬£¬ÖØµã¹Ø×¢2018Q1µÄÍþвÇ÷ÊÆ

 

McAfeeʵÑéÊÒÔÚÆäMcAfee LabsÍþв±¨¸æ£¨2018Äê6Ô°棩ÖзÖÏíÁËÆäµÚÒ»¼¾¶ÈÍøÂçµÄÊÓ²ìÑо¿ºÍÍþвͳ¼ÆÊý¾Ý£¬£¬±¨¸æÖ¸³öÕûÌåµÄжñÒâÈí¼þÔÚµÚÒ»¼¾¶ÈϽµÁË31%£¬£¬µ«·¸·¨·Ö×ÓÕýÔÚ¿ª·¢ÓÃÓÚÌÓ±ÜÇå¾²·ÀÓùµÄÐÂÊÖÒÕºÍÕ½ÂÔ¡£¡£µÚÒ»¼¾¶ÈµÄÕûÌåÇå¾²ÊÂÎñÔöÌíÁË41%£¬£¬ÆäÖÐÕë¶Ô¶à¸öµØÇøµÄÊÂÎñÔöÌí×î´ó£¬£¬Îª67%£¬£¬Õë¶ÔÃÀ¹úµÄÇå¾²ÊÂÎñÔöÌíÁË40%¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.mcafee.com/enterprise/en-us/assets/reports/rp-quarterly-threats-jun-2018.pdf

 

¡¾Êý¾Ýй¶¡¿FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬Êý°Ù¼ÒÂùݵÄÓû§Êý¾Ýй¶

 

°ÍÀèÂùÝÔ¤¶©¹«Ë¾FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬Êý°Ù¼ÒÂùݵÄÓû§Êý¾Ýй¶¡£¡£FastBooking³Æ¹¥»÷ÕßÔÚ6ÔÂ14ÈÕʹÓÃÆäЧÀÍÆ÷ÉÏÒ»¸öÈí¼þµÄÎó²î×°ÖÃÁ˶ñÒâÈí¼þ£¬£¬²¢ÇÔÈ¡ÁËÂùÝÓû§µÄÐÕÃû¡¢¹ú¼®¡¢µØµã¡¢µç×ÓÓʼþµØµãºÍÂùÝÔ¤¶¨Ïà¹ØÐÅÏ¢£¨ÂùÝÃû³Æ¡¢ÈëסºÍÍË·¿£©µÈÊý¾Ý£¬£¬ÇÔÈ¡µÄÊý¾Ý»¹°üÀ¨²¿·ÖÓû§µÄÒøÐп¨ÐÅÏ¢£¬£¬È翨ºÅ¡¢ÓâÆÚÈÕÆÚµÈ¡£¡£FastBooking³Æ¸ÃÊÂÎñÓ°ÏìÁËÈÕ±¾µÄ380¼ÒÂùÝ£¬£¬Bleeping ComputerÒÔΪÕâÒ»Êý×ÖÔÚÈ«Çò¹æÄ£ÄÚ¿ÉÄÜÁè¼ÝÁË1000¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/hundreds-of-hotels-affected-by-data-breach-at-hotel-booking-software-provider/

 

¡¾Çå¾²Îó²î¡¿Ñо¿Ö°Ô±Åû¶WordPressÖеÄÒ»¸öÉÐδÐÞ¸´µÄÇå¾²Îó²î

 

RIPSÇå¾²Ñо¿Ö°Ô±Åû¶WordPressÖеÄÒ»¸öÇå¾²Îó²î£¬£¬¸ÃÎó²îÓÚ2017Äê11Ô±¨¸æ¸øWordPress¿ª·¢ÍŶÓ£¬£¬µ«WordPress¿ª·¢ÍŶӲ¢Î´Ðû²¼ÐÞ¸´²¹¶¡¡£¡£Ñо¿Ö°Ô±³Æ¾ßÓÐÌû×ӱ༭Æ÷»á¼ûȨÏÞµÄÓû§£¨¿ÉÒÔÉÏ´«ºÍɾ³ýͼƬ¼°ÆäËõÂÔͼµÄÓû§£©¿ÉÔÚÍøÕ¾ÉÏ×¢Èë¶ñÒâ´úÂ룬£¬µ¼ÖÂWordPress½¹µãµÄÒªº¦Îļþ±»É¾³ý¡£¡£Ñо¿Ö°Ô±ÖÒÑԳƾßÓÐÒ»¶¨¼¶±ðȨÏÞµÄÓû§¿ÉʹÓôËÎó²îÐ®ÖÆÍøÕ¾£¬£¬¸ÃÎó²îÓ°ÏìÁËËùÓеÄWordPress°æ±¾¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/unpatched-flaw-disclosed-in-wordpress-cms-core/

 

¡¾Îó²î²¹¶¡¡¿SophosÐû²¼ÆäÇå¾²·À»¤²úÆ·µÄ¸üУ¬£¬ÐÞ¸´¶à¸öÇå¾²Îó²î

 

NettitudeÇå¾²Ñо¿Ö°Ô±ÔÚSophos SafeGuardÇå¾²·À»¤²úÆ·Öз¢Ã÷7¸öÍâµØÌáȨÎó²î£¬£¬ÕâЩÎó²îµÄ±àºÅΪCVE-2018-6851µ½CVE-2018-6857¡£¡£Ñо¿Ö°Ô±Åû¶ÁËÿһ¸öÎó²îµÄÊÖÒÕϸ½Ú£¬£¬²¢Ðû²¼ÁËÒ»¸öÑÝʾÔõÑùÌáȨÖÁSYSTEMµÄÊÓÆµ¡£¡£Sophos֤ʵÕâЩÎó²îÓ°ÏìÁËWindowsƽ̨µÄSafeGuard Enterprise Client¡¢SafeGuard EasyºÍSafeGuard LAN Crypt²úÆ·£¬£¬²¢ÒÑÐû²¼ÁËÏà¹ØÐÞ¸´²¹¶¡¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/sophos-patches-privilege-escalation-flaws-safeguard-products

 

¡¾ÍþвÇ鱨¡¿Ñо¿ÍŶӷ¢Ã÷AsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƭ»î¶¯

 

McAfee Mobile ResearchÍŶӷ¢Ã÷AsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƭ»î¶¯£¬£¬ÆäÖÐÖÁÉÙ15¸ö¶ñÒâÓ¦ÓÃÓÚ2018ÄêÔÚGoogle PlayÉÏÐû²¼¡£¡£AsiaHitGroup GangÖÁÉÙ´Ó2016ÄêÄêµ××îÏÈ»îÔ¾£¬£¬2018Äê1ÔÂÑо¿Ö°Ô±·¢Ã÷¸Ã×éÖ¯µÄ¶ñÒâÓ¦ÓÃSonvpay.CÔٴηºÆðÔÚGoogle PlayÉÏ¡£¡£¸ÃÓ¦ÓÃÓÃÓÚÓÕÆ­Óû§¶©Ôĸ߼¶¸¶·ÑЧÀÍ£¬£¬Ñо¿Ö°Ô±Ô¤¼Æ¸Ã×éÖ¯×Ô1Ô·ÝÒÔÀ´ÒѾ­×¬È¡ÁË60500-145000ÃÀÔª¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://securingtomorrow.mcafee.com/mcafee-labs/asiahitgroup-gang-again-sneaks-billing-fraud-apps-onto-google-play/