¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20180702

°ä²¼¹¦·ò 2018-07-02

¡¾¶ñÒâÈí¼þ¡¿×êÑÐÈËÔ±·¢ÏÖÕë¶Ô230¶àÍòÇ®°üµØÖ·µÄ¶ñÒâÈí¼þClipboard HijackersµÄбäÌå


BleepingComputer·¢ÏÖÒ»¸öClipboard HijackersµÄÐÂÑù±¾£¬¸ÃÑù±¾Õë¶ÔµÄ¼ÓÃÜÇ®±ÒµØÖ·³¬¹ý230Íò¸ö¡£Clipboard Hijackersͨ¹ý¼à¶½Windows¼ôÌù°åÖеļÓÃÜÇ®±ÒÇ®°üµØÖ·À´¹¤×÷£¬µ±¼ì²âµ½ÏàÓ¦µÄµØÖ·Ê±£¬Ôò»áÓù¥»÷ÕߵĵØÖ·½øÐдúÌæ¡£ÕâÖÖ¶ñÒâÈí¼þÔÚºó¶ÜÔËÐУ¬Óû§ºÜÄÑ·¢ÏÔì䱻ϰȾ¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/clipboard-hijacker-malware-monitors-23-million-bitcoin-addresses/


¡¾¶ñÒâÈí¼þ¡¿°²È«×êÑÐÈËÔ±·¢ÏÖmacOSÖеÄжñÒâÈí¼þOSX.Dummy


¶ñÒâÈí¼þ×êÑÐÔ±Patrick Wardle·¢ÏÖÒ»¸öÐÂmacOS¶ñÒâÈí¼þOSX.Dummy¡£OSX.DummyÖØÒªÕë¶Ô¼ÓÃÜÇ®±ÒÉçÇø£¬¹¥»÷Õßͨ¹ýÔÚÓë¼ÓÃÜÓйصÄSlack»òDiscord̸Ìì×éÄÚ¼ÙÒâÖÎÀíÔ±»ò¹Ø¼üÈËÔ±£¬ÔÚȺ×éÄÚ¹²Ïí¿ÉÏÂÔØ²¢Ö´ÐжñÒâ¶þ½øÔìÎļþµÄ´úÂëÆ¬¶Î£¬ÓÕʹÓû§ÔËÐС£Í¨¹ý¸Ã¶ñÒâÈí¼þ£¬¹¥»÷Õß¿ÉÄÜÔÚÖ¸±êϵͳÉÏÒÔrootȨÏÞÖ´ÐÐËÁÒâºÅÁî¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74023/cyber-crime/osx-dummy-cryptocurrency.html


¡¾°²È«²¥±¨¡¿×êÑÐÈËÔ±·¢ÏÖNintendo SwitchÔ½ÓüÈí¼þSX OSÔ̺¬·ÀÆÆ½â´úÂë


Ó¢¹ú×êÑÐÈËÔ±Mike Heskin·¢ÏÖNintendo SwitchµÄÔ½ÓüÈí¼þSX OSµÄ¿ª·¢ÕßÔÚÆä´úÂëÖÐÔ̺¬ÁË·ÀÆÆ½â´úÂë¡£SX OSͨ¹ýÆÆ½âNintendo Switch£¬Ê¹µÃÓÎÏ·Íæ¼ÒÄܹ»ÍæµÁ°æÓÎÏ·£¬µ«³°·íµÄÊÇ£¬Æä¿ª·¢ÍŶÓXecuterΪÁË×èÖ¹ÆäËûÈËÆÆ½âÆäÈí¼þ£¬ÔÚSX OS¹Ì¼þÖÐÔö³¤ÁË·ÀÆÆ½â´úÂ룬µ±¼ì²âµ½ÆÆ½âÐÐΪʱ£¬Ê¹ÓÃÆëÈ«Ëæ»úµÄÃÜÂëÀ´Ëø¶¨SwitchµÄÄÚ²¿´æ´¢Æ÷£¨eMMC£©¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/06/nintendo-switch-jailbreak.html


¡¾°²È«²¥±¨¡¿Á½ÃûºÚ¿ÍÒò½Ù³Ö³¬¹ý70Íò¸öÕË»§Ôâ¶íÂÞ˹¾¯·½¿ÛÁô


¶íÂÞ˹¾¯·½¿ÛÁôÁ½ÃûÇàÉÙÄêºÚ¿Í£¬Ö¸¿ØËûÃÇÈëÇÖ¡¢½Ù³ÖÒÔ¼°ÏúÊÛ³¬¹ý70Íò¸öÓû§ÕË»§£¬ÕâЩÕË»§ÆðÔ´ÓÚÔÚÏßÉ̵ꡢ֧¸¶ÏµÍ³ÒÔ¼°²©²ÊÍøÕ¾µÈ¡£°²È«³§ÉÌGroup-IBÒÔΪÕâÁ½ÃûºÚ¿ÍÀûÓÃй¶µÄÊý¾ÝÀ´Ö´ÐÐײ¿â¹¥»÷£¬ÒÔ»ñÈ¡ÕË»§µÄ½Ó¼ûȨÏÞ¡£ËûÃÇ»¹ÔÚºÚ¿ÍÂÛ̳ÉÏÏúÊÛÕâЩÕË»§£¬¼ÛֵΪ5ÃÀÔª»òÓà¶îµÄ20%-30%¡£µ÷²éÈËÔ±ÒÔΪÁ½È˵ĻñÀû³¬¹ý50Íò¬²¼£¨Ô¼ºÏ7900ÃÀÔª£©¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/two-hackers-arrested-for-hijacking-over-700-000-online-accounts/


¡¾Õþ²ßÂÉÀý¡¿Ó¢¹úµ±¾ÖÔì¶©ÐÂÍøÂ簲ȫ³ß¶È£¬Ö¼ÔÚΪµ±²¿ÃÅÃÅÉ趨×îµÍÏ޶ȵݲȫ»ù×¼


Ó¢¹úµ±¾ÖÔì¶©ÁËÒ»ÏîеÄÍøÂ簲ȫ³ß¶È£¬Ö¼ÔÚΪËùÓв¿ÃÅÉ趨ǿÔìÐԵݲȫ»ù×¼¡£¸Ã¡¶×îµÍÍøÂ簲ȫ³ß¶È¡·Ìá³öÁËËùÓе±²¿ÃÅÃűØÐë×ñÑ­µÄ×îµÍ°²È«´ëÊ©¡£Ëæ×ʦ·òµÄÍÆÒÆ£¬ÕâЩ´ëʩҲ»á²»ÐÝÉý¼¶ÒÔÓ¦¶ÔеÄÍþв»ò·ì϶¡£¸Ã³ß¶È³Áµã¹Ø×¢5¸ö¹Ø¼üÁìÓò£¬Ô̺¬¼ø±ð¡¢±£»¤¡¢¼ì²â¡¢ÏìÓ¦ºÍ¸´Ô­¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.infosecurity-magazine.com/news/uk-government-minimum/


¡¾¹¥»÷ÊÂÎñ¡¿TrezorÇ®°ü¹ÙÍøÔâDNS´«È¾»òBGP½Ù³Ö£¬²¿ÃÅÓû§Ôâ´¹µö¹¥»÷


¼ÓÃÜÇ®±ÒÇ®°üTrezorµÄ²¿ÃÅÓû§ÔÚÖÜÄ©ÆÚ¼äÔâ´¹µö¹¥»÷¡£TrezorÍŶӵ÷²éºó³ÆÆä¹ÙÍøÔâDNS´«È¾»òBGP½Ù³Ö£¬¹¥»÷Õß½Ù³ÖÁËÆä¹ÙÍøwallet.trezor.ioµÄÁ÷Á¿£¬²¢½«Óû§³Á¶¨Ïòµ½Ò»¸öÐéαµÄ¶ñÒâ´¹µöÍøÕ¾¡£½øÒ»²½µÄµ÷²é»¹ÔÚ½øÐÐÖУ¬ÒÔÈ·¶¨¸ÃÊÂÎñ¼òÖ±ÇÐÔ­Òò¡£Óû§ÔÚ½Ó¼û¸Ã´¹µöÍøÕ¾Ê±£¬»áÓöµ½ÎÞЧµÄHTTPSÖ¤ÊéÃýÎ󣬲¢±»ÒªÇóÌá½»ÆäÇ®°üµÄ¸´Ô­ÖÖ×Ó¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/dns-poisoning-or-bgp-hijacking-suspected-behind-trezor-wallet-phishing-incident/