¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20180628

°ä²¼¹¦·ò 2018-06-28

¡¾·ÖÎö»ã±¨¡¿×êÑлú¹¹°ä²¼2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷Ïò»ã±¨

 

¿¨°Í˹»ù³¢ÊÔÊÒÔÚ2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷Ïò»ã±¨ÖÐÖ¸³ö £¬ÀÕË÷Èí¼þÔÚ¼±¾çÒþû £¬¶ø¶ñÒâÍÚ¿óÈí¼þÔÚÈ¡¶ø´úÖ®¡£ÔâÀÕË÷Èí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ2581026Ï÷¼õµ½2017-2018µÄ1811937 £¬Ï÷¼õÁËÔ¼30%£»¶øÔâ¶ñÒâÍÚ¿óÈí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ1899236Ôö³¤µ½2017-2018µÄ2735611 £¬Ôö³¤Á˽ü44.5%¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://media.kasperskycontenthub.com/wp-content/uploads/sites/58/2018/06/27125925/KSN-report_Ransomware-and-malicious-cryptominers_2016-2018_ENG.pdf

 

¡¾·ÖÎö»ã±¨¡¿×êÑлú¹¹°ä²¼ÍøÂçÍþв»ã±¨ £¬³Áµã¹Ø×¢2018Q1µÄÍþвÇ÷Ïò

 

McAfee³¢ÊÔÊÒÔÚÆäMcAfee LabsÍþв»ã±¨£¨2018Äê6Ô°棩ÖзÖÏíÁËÆäµÚÒ»¼¾¶ÈÍøÂçµÄµ÷²é×êÑкÍÍþвͳ¼ÆÊý¾Ý £¬»ã±¨Ö¸³öÕûÌåµÄжñÒâÈí¼þÔÚµÚÒ»¼¾¶È½µÂäÁË31% £¬µ«·¸×ï·Ö×ÓÔÚ¿ª·¢ÓÃÓÚÌӱܰ²È«·ÀÓùµÄм¼ÊõºÍÕ½Êõ¡£µÚÒ»¼¾¶ÈµÄÕûÌ尲ȫÊÂÎñÔö³¤ÁË41% £¬ÆäÖÐÕë¶Ô¶à¸öµØÓòµÄÊÂÎñÔö³¤×î´ó £¬Îª67% £¬Õë¶ÔÃÀ¹úµÄ°²È«ÊÂÎñÔö³¤ÁË40%¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.mcafee.com/enterprise/en-us/assets/reports/rp-quarterly-threats-jun-2018.pdf

 

¡¾Êý¾Ýй¶¡¿FastBookingÔâºÚ¿ÍÈëÇÖ £¬Êý°Ù¼Ò¾ÆµêµÄÓû§Êý¾Ýй¶

 

°ÍÀè¾ÆµêÔ¤Ô¼¹«Ë¾FastBookingÔâºÚ¿ÍÈëÇÖ £¬Êý°Ù¼Ò¾ÆµêµÄÓû§Êý¾Ýй¶¡£FastBooking³Æ¹¥»÷ÕßÔÚ6ÔÂ14ÈÕÀûÓÃÆä·þÎñÆ÷ÉÏÒ»¸öÈí¼þµÄ·ì϶װÖÃÁ˶ñÒâÈí¼þ £¬²¢ÇÔÈ¡Á˾ƵêÓû§µÄÐÕÃû¡¢¹ú¼®¡¢µØÖ·¡¢µç×ÓÓʼþµØÖ·ºÍ¾ÆµêÔ¤Ô¼ÓйØÐÅÏ¢£¨¾ÆµêÃû³Æ¡¢ÈëסºÍÍË·¿£©µÈÊý¾Ý £¬ÇÔÈ¡µÄÊý¾Ý»¹Ô̺¬²¿ÃÅÓû§µÄÒøÐп¨ÐÅÏ¢ £¬È翨ºÅ¡¢¹ýÆÚÈÕÆÚµÈ¡£FastBooking³Æ¸ÃÊÂÎñÓ°ÏìÁËÈÕ±¾µÄ380¼Ò¾Æµê £¬Bleeping ComputerÒÔΪÕâÒ»Êý×ÖÔÚÈ«ÇòÁìÓòÄÚ¿ÉÄܳ¬¹ýÁË1000¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/hundreds-of-hotels-affected-by-data-breach-at-hotel-booking-software-provider/

 

¡¾°²È«·ì϶¡¿×êÑÐÈËÔ±Åû¶WordPressÖеÄÒ»¸öÉÐ佨¸´µÄ°²È«·ì϶

 

RIPS°²È«×êÑÐÈËÔ±Åû¶WordPressÖеÄÒ»¸ö°²È«·ì϶ £¬¸Ã·ì϶ÓÚ2017Äê11Ô»㱨¸øWordPress¿ª·¢ÍŶÓ £¬µ«WordPress¿ª·¢ÍŶӲ¢Î´°ä²¼½¨¸´²¹¶¡¡£×êÑÐÈËÔ±³ÆÓµÓÐÌû×Ó±à×ëÆ÷½Ó¼ûȨÏÞµÄÓû§£¨Äܹ»ÉÏ´«ºÍɾ³ýͼƬ¼°ÆäËõÂÔͼµÄÓû§£©¿ÉÔÚÍøÕ¾ÉÏ×¢Èë¶ñÒâ´úÂë £¬µ¼ÖÂWordPressÖ÷ÌâµÄ¹Ø¼üÎļþ±»É¾³ý¡£×êÑÐÈËÔ±ÖÒ¸æ³ÆÓµÓп϶¨¼¶±ðȨÏÞµÄÓû§¿ÉÀûÓô˷ì϶½Ù³ÖÍøÕ¾ £¬¸Ã·ì϶ӰÏìÁËËùÓеÄWordPress°æ±¾¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/unpatched-flaw-disclosed-in-wordpress-cms-core/

 

¡¾·ì϶²¹¶¡¡¿Sophos°ä²¼Æä°²È«·À»¤²úÆ·µÄ¸üР£¬½¨¸´¶à¸ö°²È«·ì϶

 

Nettitude°²È«×êÑÐÈËÔ±ÔÚSophos SafeGuard°²È«·À»¤²úÆ·Öз¢ÏÖ7¸ö±¾µØÌáȨ·ì϶ £¬ÕâЩ·ì϶µÄ±àºÅΪCVE-2018-6851µ½CVE-2018-6857¡£×êÑÐÈËÔ±Åû¶ÁËÿһ¸ö·ì϶µÄ¼¼Êõϸ½Ú £¬²¢°ä²¼ÁËÒ»¸öÑÝʾÈôºÎÌáȨÖÁSYSTEMµÄÊÓÆµ¡£Sophos֤ʵÕâЩ·ì϶ӰÏìÁËWindowsƽ̨µÄSafeGuard Enterprise Client¡¢SafeGuard EasyºÍSafeGuard LAN Crypt²úÆ· £¬²¢ÒѰ䲼ÁËÓйؽ¨¸´²¹¶¡¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/sophos-patches-privilege-escalation-flaws-safeguard-products

 

¡¾Íþвµý±¨¡¿×êÑÐÍŶӷ¢ÏÖAsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƭ»î¶¯

 

McAfee Mobile ResearchÍŶӷ¢ÏÖAsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƭ»î¶¯ £¬ÆäÖÐÖÁÉÙ15¸ö¶ñÒâÀûÓÃÓÚ2018ÄêÔÚGoogle PlayÉϰ䲼¡£AsiaHitGroup GangÖÁÉÙ´Ó2016ÄêÄêµ×ÆðÍ·»îÔ¾ £¬2018Äê1ÔÂ×êÑÐÈËÔ±·¢ÏÖ¸Ã×éÖ¯µÄ¶ñÒâÀûÓÃSonvpay.CÔٴγʴ˿ÌGoogle PlayÉÏ¡£¸ÃÀûÓÃÓÃÓÚºýŪÓû§¶©Ôĸ߼¶¸¶·Ñ·þÎñ £¬×êÑÐÈËÔ±¹À¼Æ¸Ã×éÖ¯×Ô1Ô·ÝÒÔÀ´ÒѾ­×¬È¡ÁË60500-145000ÃÀÔª¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://securingtomorrow.mcafee.com/mcafee-labs/asiahitgroup-gang-again-sneaks-billing-fraud-apps-onto-google-play/