¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20190312
Ðû²¼Ê±¼ä 2019-03-12
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2019/03/stackstorm-security-vulnerability.html2¡¢MoxaÐÞ¸´EDSºÍIKS¹¤Òµ½»Á÷»úÖеĶà¸öÇå¾²Îó²î
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/82269/security/moxa-industrial-switches-flaws.html3¡¢Check PointÐû²¼2ÔÂÈ«ÇòÍþвָÊý£¬£¬£¬£¬£¬CoinhiveÈÔÈ»ÁìÅÜ
ƾ֤Check PointÌåÀýµÄ2ÔÂÈ«ÇòÍþвָÊý£¬£¬£¬£¬£¬ËäÈ»CoinhiveÒÑÓÚ3ÔÂ8ÈÕ×èÖ¹ÔËÓª£¬£¬£¬£¬£¬µ«ËüÔÚ2Ô·ÝÈÔÅÅÃû°ñÊס£¡£¡£Ëæ×ÅÃÅÂÞ±Ò¼ÛÇ®µÄϵø£¬£¬£¬£¬£¬CoinhiveµÄÍþвֵҲ´Ó2018Äê10ÔµÄ18%µøÖÁ2019Äê1ÔµÄ12£¥ºÍ2ÔµÄ10%¡£¡£¡£Í¬ÑùÔÚ2Ô·ݣ¬£¬£¬£¬£¬Ñо¿Ö°Ô±¼ì²âµ½Õë¶ÔÈÕ±¾¡¢µÂ¹ú¡¢¼ÓÄôóºÍ°Ä´óÀûÑǵȹú¼ÒµÄGandCrab V5.2·Ö·¢»î¶¯¡£¡£¡£Õâ¸öеıäÖÖÔÙ´ÎʹµÃ֮ǰ°æ±¾µÄ½âÃܹ¤¾ß²»Æð×÷Óᣡ£¡£2Ô·ÝÅÅÃûǰÈýµÄÒÆ¶¯¶ñÒâÈí¼þÊÇLotoor¡¢HiddadºÍTriada¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://blog.checkpoint.com/2019/03/11/february-2019s-most-wanted-malware-coinhive-quits-gandcrab-cryptomining-ransomware/4¡¢·¸·¨ÍÅ»ïAlarg53ʹÓÃJoomlaкóÃÅ·Ö·¢À¬»øÓʼþ
Check PointÑо¿ÍŶӷ¢Ã÷°£¼°·¸·¨ÍÅ»ïAlarg53ÕýÔÚʹÓÃJoomlaÖеÄкóÃÅÀ´ÊµÑéÀ¬»øÓʼþ¹¥»÷¡£¡£¡£¹¥»÷ÕßʹÓÃJoomlaµÄÓʼþЧÀÍJmail£¬£¬£¬£¬£¬Í¨¹ýÔÚHTTPÇëÇóÖжÔUser-Agent×Ö¶Î×¢Èë¶ñÒâ´úÂëÀ´ÊµÑé¹¥»÷¡£¡£¡£ÔÚÒÑÍù¼¸ÄêÖУ¬£¬£¬£¬£¬Alarg53ÔøÈëÇÖÁè¼Ý1.5Íò¸öÍøÕ¾£¬£¬£¬£¬£¬Æä¹¥»÷Ä¿µÄº¸ÇÃÀ¹ú¡¢Ä«Î÷¸ç¡¢ÆÏÌÑÑÀ¡¢Ó¢¹ú¡¢·¨¹ú¡¢Ó¡¶ÈºÍÈÕ±¾µÈ¹ú¼Ò£¬£¬£¬£¬£¬Ö÷ÒªÕë¶Ô½ðÈÚ»ú¹¹¡¢ÒøÐкÍÕþ¸®»ú¹¹¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://research.checkpoint.com/jmail-breaker-profiting-from-joomlas-mail-service/5¡¢ÐµÄATM skimmer¹¥»÷£¬£¬£¬£¬£¬¿ÉÐ®ÖÆATMÄÚÖÃÉãÏñÍ·
ƾ֤Krebs on SecurityµÄÒ»·Ýб¨¸æ£¬£¬£¬£¬£¬Ñо¿Ö°Ô±Ôڵ¿ËÈøË¹ÖݺÕË¹ÌØÊеÄATMÉÏ·¢Ã÷ÁËеÄskimmer¹¥»÷£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ýÐ®ÖÆATMÖÐÄÚÖõÄÉãÏñÍ·ÒÔÇÔÈ¡Óû§µÄPINÂë¡£¡£¡£¸Ãskimmer°üÀ¨Ò»¸öÉãÏñÍ·²¿¼þ£¬£¬£¬£¬£¬ÓÃÓÚÁýÕÖÔÚATMÄÚÖõÄÇå¾²ÉãÏñÍ·ÉÏÃæ£¬£¬£¬£¬£¬Óû§ºÜÄÑ´ÓÍⲿ¿´µ½¸Ãskimmer¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/new-atm-skimming-attack-enables-scammers-to-hijack-the-atms-in-built-camera-and-steal-a-users-pin-3d2c48846¡¢Ñо¿ÍŶÓÐû²¼¹ØÓÚ¶ñÒâÈí¼þPredator v3.0.7µÄÆÊÎö±¨¸æ
ÔÎÄÁ´½Ó£º
https://securelist.com/a-predatory-tale/89779/ÉùÃ÷£º±¾×ÊѶÓÉÄϹ¬NGÓéÀÖάËûÃüÇ徲С×é·ÒëºÍÕûÀí


¾©¹«Íø°²±¸11010802024551ºÅ