¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20181205
Ðû²¼Ê±¼ä 2018-12-05
ÆÄÊܽӴýµÄÎÊ´ðÍøÕ¾QuoraÐû²¼ÔâºÚ¿ÍÈëÇÖ£¬£¬Ô¼1ÒÚÓû§µÄÊý¾Ý±»ÇÔ-ÏÕЩÊÇÆä¿Í»§ÈºÌåµÄÒ»°ë¡£¡£Ð¹Â¶µÄÐÅÏ¢°üÀ¨Óû§µÄÕË»§ÐÅÏ¢£¬£¬ÀýÈçÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢¹þÏ£ÃÜÂëÒÔ¼°´ÓFacebook¡¢TwitterµÈÉ罻ýÌåµ¼ÈëµÄÊý¾Ý£»£»Óû§µÄ¹ûÕæÄÚÈÝ£¬£¬ÀýÈçÌáÎÊ¡¢»Ø¸²¡¢µãÔÞºÍ̸ÂÛ£»£»Óû§µÄ·Ç¹ûÕæÄÚÈÝ£¬£¬ÀýÈç»Ø¸²Ô¼Ç롢˽ÈËÐÂÎŵȡ£¡£QuoraÓÚÖÜÒ»Íí¼äÅû¶ÁË´Ë´ÎÊÂÎñ£¬£¬ÏÖÔÚ¸ÃÊÂÎñ»¹ÔÚ½øÒ»²½µÄÊÓ²ìÖ®ÖС£¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2018/12/quora-hack.html2¡¢¼ÓÄô󻨵ê1-800-FlowersÓû§ÐÅϢй¶£¬£¬¶ñÒâ´úÂë±£´æ¿ìÒª4Äê
¼ÓÄô󻨵ê1-800-FlowersÐû²¼ÆäÍøÕ¾±»Ö²Èë¶ñÒâ´úÂ룬£¬²¿·ÖÓû§µÄÐÅÓÿ¨ÐÅÏ¢±»ÇÔ¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬¸Ã¶ñÒâ´úÂëËÆºõ´Ó2014Äê8ÔÂ15ÈÕÖÁ2018Äê9ÔÂ15ÈÕʱ´úÒ»Ö±»îÔ¾ÔÚ¸ÃÍøÕ¾ÉÏ¡£¡£¸Ã¹«Ë¾²¢Ã»ÓÐ͸¶Óм¸¶àÓû§Êܵ½Ó°Ïì¡£¡£·¸·¨·Ö×Ó¿ÉÄÜÇÔÈ¡µÄÐÅÏ¢°üÀ¨ÐÕÃû¡¢ÐÅÓÿ¨ºÅ¡¢µ½ÆÚÈÕÆÚÒÔ¼°ÐÅÓÿ¨Çå¾²ÂëµÈ¡£¡£ÕâÊǼ̽üÆÚ±¬·¢µÄÃÀ¹úÓÊÕþЧÀÍ¡¢´÷¶û¡¢Dunkin Donuts¡¢ÍòºÀºÍQuoraÊý¾Ýй¶ÊÂÎñÖ®ºóµÄ×îÐÂÒ»ÆðÊý¾Ýй¶¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/1-800-flowers-becomes-latest-payment-breach-victim/139619/3¡¢·ÅÆúEdge£¿£¿£¿Î¢ÈíÐÂÏîÄ¿Anaheim»ò½«È¡´úEdge
΢Èí3ÄêǰÐû²¼µÄEdgeä¯ÀÀÆ÷ÔÚÓëChromeµÄ¾ºÕùÖÐʧ°ÜÁËÒÑÊDz»ÕùµÄÊÂʵ¡£¡£Æ¾Ö¤WindowsCentralµÄ¼ÇÕß±¨µÀ£¬£¬Î¢Èí»ò½«·ÅÆúEgde£¬£¬¹¹½¨Ò»¸öеĻùÓÚChromiumµÄä¯ÀÀÆ÷¡£¡£¸ÃÏîÄ¿µÄÄÚ²¿´úºÅΪAnaheim£¬£¬»ò½«È¡´úEdge³ÉΪWindows 10ÖеÄĬÈÏä¯ÀÀÆ÷¡£¡£ÐµÄä¯ÀÀÆ÷½«»ùÓÚBlinkäÖȾÒýÇæ£¬£¬¶ø²»ÊÇ΢Èí×ÔÓеÄEdgeHTMLÒýÇæ¡£¡£ÈôÊÇ´«ÑÔÎªÕæ£¬£¬Chromeä¯ÀÀÆ÷½«ÔÚä¯ÀÀÆ÷Êг¡ÉÏ»ñµÃÎÞ¿ÉÆ¥µÐµÄ¢¶Ïְλ¡£¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2018/12/edge-browser-anaheim-chromium.html4¡¢¶ñÒâiOS½¡ÉíÓ¦ÓÃÇÔÈ¡Óû§¿î×Ó£¬£¬ÏÖÔÚÒѱ»É¾³ý
¿ËÈÕApp StoreÖÐÉϼÜÁËÁ½¿î¶ñÒâiOS½¡ÉíÓ¦Ó㬣¬ÕâÁ½¿îÓ¦ÓÃ-Fitness BalanceºÍCalories Tracker-ÌåÏÖ³öÁËÏàͬµÄÇÔÈ¡Óû§¿î×ÓµÄÐÐΪ¡£¡£ÔÚµÚÒ»´ÎÆô¶¯Ê±£¬£¬¶ñÒâÓ¦ÓÃÒªÇóÓû§´¥ÃþTouchIDɨÃèÖ¸ÎÆÀ´ÉèÖúͻá¼û£¬£¬µ«ÏÖʵÉ϶ñÒâÓ¦ÓÃÊÇÔÚºǫ́¾ÙÐи¶¿îÖ§¸¶£¬£¬ÈôÊÇÓû§µÄApp StoreÕÊ»§°ó¶¨ÁËÐÅÓÿ¨£¬£¬Ôò»á±»ÇÔÈ¡99.99ÃÀÔª¡¢119.99ÃÀÔª»ò139.99Å·Ôª¡£¡£ÈôÊÇÓû§¾Ü¾øÉ¨ÃèÖ¸ÎÆ£¬£¬Ôò¶ñÒâÓ¦Óûá¾Ü¾øÆô¶¯£¬£¬²¢Ñ»·ÏÔÊ¾Ö¸ÎÆÉ¨ÃèÆÁÄ»£¬£¬Ö±µ½Óû§·ÅÆú¡£¡£¸Ã¶ñÒâÓ¦Óò¢²»ÍêÉÆ£¬£¬¸¶¿îÀֳɵÄÒ³Ãæ»áÔÚÆÁÄ»ÉÏÒ»ÉÁ¶ø¹ý¡£¡£ÔÚ½Óµ½Óû§Í¶Ëߺ󣬣¬App StoreÒÑϼÜÁËÏà¹Ø¶ñÒâÓ¦Óᣡ£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/two-ios-fitness-apps-tricked-users-into-making-touchid-payments/5¡¢Â޵õºÒ½ÁÆÖÐÐÄThundermistÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬²¿·Öϵͳ±»ÆÈ¹Ø±Õ
ÉÏÖÜËÄÃÀ¹úÂ޵õºÖݵÄÒ½ÁÆÖÐÐÄThundermistÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬²¿·Öϵͳ±»ÆÈ¹Ø±Õ£¬£¬Ò»Ð©Ô¤Ô¼Ò²±»×÷·Ï¡£¡£ThundermistÌåÏÖ¸ÃÊÂÎñÖÐûÓл¼Õߵĵç×Ó²¡Àú£¨EMR£©Êܵ½Ó°Ï죬£¬²¢ÇÒÓÉÓÚÊý¾Ý¶¼ÊǼÓÃܵ쬣¬Òò´ËÒ½ÁƼͼÊܵ½Ë𺦵ĿÉÄÜÐÔºÜÊÇС¡£¡£±ðµÄ£¬£¬Ò»Ð©Ã»ÓÐÔâµ½¹¥»÷µÄϵͳ±»ÆäÔ±¹¤×Ô¶¯¹Ø±ÕÒÔ×èÖ¹ÀÕË÷Èí¼þµÄÈö²¥¡£¡£ThundermistÁªÏµÁËÂ޵õºÎÀÉú¾ÖºÍ¾¯Ô±¾Ö£¬£¬ÏÖÔÚÒÑÔÚÕý³£ÓªÒµ¡£¡£
ÔÎÄÁ´½Ó£º
https://news.softpedia.com/news/rhode-island-health-provider-hit-by-ransomware-attack-524076.shtml6¡¢Siglentʾ²¨Æ÷±»ÆØ±£´æºóÃÅ£¬£¬¿Éͨ¹ýtelnet»á¼û
SEC-ConsultÑо¿Ö°Ô±·¢Ã÷SIGLENTÖÆÔìµÄÊý×Öʾ²¨Æ÷SDS 1202X-EÖб£´æÁ½¸öÓ²±àÂëµÄºóÃÅÕË»§£¨rootºÍsiglent£©¡£¡£ÊÜÓ°ÏìµÄ¹Ì¼þ°æ±¾Îª5.1.3.13¡£¡£ÓÉÓÚ¸Ã×°±¸Ä¬ÈÏ¿ªÆôÁËtelnetЧÀͲ¢ÕìÌýTCP¶Ë¿Ú23£¬£¬ÍâµØÍøÂçÖеĹ¥»÷Õß¿ÉʹÓøúóÃÅÕË»§»á¼û¸Ã×°±¸¡£¡£Îª×èÖ¹Éú²úÇéÐÎÖеÄ×°±¸ÔâÊܹ¥»÷£¬£¬Ñо¿Ö°Ô±Ã»ÓÐÅû¶ºóÃÅÕË»§µÄ¹þÏ£ÃÜÂë¡£¡£¸ü¸Ä´Ë¹þÏ£ÃÜÂë¿ÉÒÔÐÞ¸´¸ÃÎÊÌ⣬£¬µ«ÓÉÓÚ¹þÏ£ÃÜÂëÊÇ´æ´¢ÔÚÖ»¶ÁROMÖУ¬£¬Òò´ËÕâÒ»²Ù×÷²¢½ûÖ¹Òס£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/digital-oscilloscope-comes-with-backdoor-accounts-old-software-components/ÉùÃ÷£º±¾×ÊѶÓÉÄϹ¬NGÓéÀÖάËûÃüÇ徲С×é·ÒëºÍÕûÀí


¾©¹«Íø°²±¸11010802024551ºÅ