¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20180821

°ä²¼¹¦·ò 2018-08-21

¡¾Íþвµý±¨¡¿×êÑÐÅú×¢GDPRÖ´ÐкóÅ·ÃËÐÂÎÅÍøÕ¾ÉϵĵÚÈý·½cookieÊýÁ¿½µÂäÁË22%


ƾ¾ÝÅ£½ò´óѧReuters InstituteµÄÒ»·Ý»ã±¨ £¬Å·ÃËÐÂÎÅÍøÕ¾ÉϵĵÚÈý·½cookieµÄÊýÁ¿ÔÚGDPRÖ´Ðкó½µÂäÁË22%¡£¸Ã»ã±¨±ðÀë·ÖÎöÁË2018Äê4ÔÂÒÔ¼°7ÔµÄÊý¾Ý £¬º­¸ÇÁË·ÒÀ¼¡¢·¨¹ú¡¢µÂ¹ú¡¢Òâ´óÀû¡¢²¨À¼¡¢Î÷°àÑÀºÍÓ¢¹úÆß¸ö¹ú¶ÈµÄ200¸öÐÂÎÅÍøÕ¾¡£½µÂä·ù¶È×î´óµÄÊÇÓ¢¹ú £¬ÆäÐÂÎÅÍøÕ¾Ê¹Óõĸú×Ùcookie±ÈGDPRÖ´ÐÐǰÏ÷¼õÁË45%¡£½µÂä·ù¶È×îÓ×µÄÊǵ¹ú £¬Îª6%¡£¶ø²¨À¼ÔòÊÇΨÖðÒ»¸öcookieÊýÁ¿Ôö³¤µÄ¹ú¶È £¬Ôö³¤·ù¶ÈΪ20%¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/technology/number-of-third-party-cookies-on-eu-news-sites-dropped-by-22-percent-post-gdpr/


¡¾Íþвµý±¨¡¿×êÑÐÈËÔ±³ÆJavaScript webÀûÓü°web·þÎñÆ÷Ò×ÊÜReDoS¹¥»÷µÄÓ°Ïì


×êÑÐÈËÔ±ÖÒ¸æ³ÆJavaScript WebÀûÓúÍWeb·þÎñÆ÷Ò×ÊÜÕýÔò±í°×ʽ£¨regex£©»Ø¾ø·þÎñ¹¥»÷£¨ReDoS£©µÄÓ°Ïì¡£×êÑÐÈËÔ±ÔøÔÚ2012Äê̽Çó¹ýReDoS¹¥»÷ £¬µ«ÆäʱJavaScriptºÍNode.jsÔÚWeb¿ª·¢ÁìÓò»¹Ã»ÓÐÐγɽñÌìÕâÑùµÄ¹æÄ£¡£2017ÄêµÄºóÐø×êÑÐÅú×¢ £¬ÔÚNode.js¿âºÍÀûÓÃÖз¢Ïֵķì϶ÖÐReDoS·ì϶ռ5%¡£ÉÏÖܵ¹úµÄÁ½ÃûѧÕßÅû¶ÁËÔÚNode.jsÄ£¿éÖз¢ÏÖµÄ25¸öÐÂReDoS·ì϶ £¬ÕâЩ·ì϶ӰÏìÁËÔ¼340¸öÍøÕ¾¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/javascript-web-apps-and-servers-vulnerable-to-redos-attacks/


¡¾Íþвµý±¨¡¿×êÑÐÍŶӷ¢ÏÖÀûÓÃEGGÎļþ·Ö·¢GandCrab v4.3µÄд¹µö¹¥»÷


Ç÷Ïò¿Æ¼¼×êÑÐÍŶӷ¢ÏÖÀûÓÃEGG£¨.egg£©ÎļþÀ´·Ö·¢ÀÕË÷Èí¼þGandCrab v4.3µÄд¹µö¹¥»÷»î¶¯¡£EGGÊÇÒ»ÖÖÀàËÆÓÚ.zipµÄѹËõÎļþÌåʽ £¬ÆäÔÚº«¹ú±»¿í·ºÊ¹Óà £¬EGGÌåʽµÄÎļþÖ»ÄÜͨ¹ýALZipÈí¼þ½øÐнâѹËõ¡£×êÑÐÈËÔ±ÔÚ2018Äê8ÔÂ7Èչ۲쵽¸Ã´¹µö»î¶¯µÄÀ¬»øÓʼþ £¬¸Ã¹¥»÷ÖØÒªÕë¶Ôº«¹ú £¬Æä±³ºóµÄ¹¥»÷Õß¿ÉÄÜÊÇ·¸×ïÍÅ»ïVenusLocker¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.trendmicro.com/vinfo/us/security/news/cybercrime-and-digital-threats/-egg-files-in-spam-delivers-gandcrab-v4-3-ransomware-to-south-korean-users


¡¾Êý¾Ýй¶¡¿Ö±²¥Æ½Ì¨TwitchÖеĴúÂëbugµ¼Ö²¿ÃÅÓû§µÄÃô¸ÐÐÅϢй¶


TwitchÖÒ¸æÓû§³ÆÆäÒÑɾ³ýµÄij¸öÖ°ÄÜÖдæÔÚ´úÂëbug £¬¿Éµ¼Ö²¿ÃÅÓû§µÄÃô¸ÐÐÅϢй¶¡£TwitchÊÇÑÇÂíÑ·×Ó¹«Ë¾Twitch InteractiveÆìϵÄÊÓÆµÖ±²¥Æ½Ì¨ £¬¸Ã·þÎñÓÚ2011ÄêÍÆ³ö £¬Ä¿Ç°Ã¿ÔµĻîÔ¾Óû§³¬¹ý1.4ÒÚ¡£ÔÚ2018Äê5ÔÂ5ÈÕ £¬Twitchɾ³ýÁËÒ»¸öÃûΪMessagesµÄÖ°ÄÜ £¬²¢ÔÊÐíÓû§ÏÂÔØº¹ÇàÐÂÎŵĴ浵¡£µ«ÓÉÓÚÌìÉú»îµµÎļþµÄ´úÂëÖдæÔÚbug £¬²¿ÃÅÓû§¿ÉÄÜÔÚÆä´æµµÎļþÖз¢ÏÖÊôÓÚ´ËÍâÓû§µÄº¹ÇàÐÂÎÅ¡£ÕâЩÐÂÎÅ¿ÉÄÜÔ̺¬¼«¶ÈÃô¸ÐµÄÐÅÏ¢¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/twitch-glitch-exposed-some-users-private-messages/


¡¾¶ñÒâÈí¼þ¡¿°²È«×êÑÐÍŶӷ¢ÏÖÀÕË÷Èí¼þMatrixµÄбäÌåFOX


°²È«×êÑÐÍŶÓMalwareHunterTeam·¢ÏÖÀÕË÷Èí¼þMatrixµÄÒ»¸öбäÌå £¬¸Ã±äÌ彫.FOXÀ©´óÃû¸½¼Óµ½¼ÓÃܵÄÎļþºó¡£FOXͨ¹ýRDP·þÎñÊÖ¶¯½øÐÐ×°Öà £¬ÆäÀûÓÃSysinternals¹¤¾ßÀ´¹Ø¹ØÖ¸±êÎļþµÄËùÓдò¿ª¾ä±úÒÔÖ´ÐмÓÃÜ £¬²¢ÓëºÅÁîºÍ½ÚÔì·þÎñÆ÷£¨C2£©Í¨Ñ¶ÒÔ½øÐÐ״̬¸üС£Ä¿Ç°»¹Ã»ÓиñäÌåµÄ½âÃܹ¤¾ß¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-fox-ransomware-matrix-variant-tries-its-best-to-close-all-file-handles/


¡¾¹¥»÷ÊÂÎñ¡¿Î÷°àÑÀ²¿Ãŵ±¾ÖÍøÕ¾Ôâµ½ºÚ¿ÍÍÅ»ïAnonymousµÄ¹¥»÷


±¾ÖÜÒ»Î÷°àÑÀ²¿Ãŵ±¾ÖÍøÕ¾Ôâµ½ºÚ¿Í¹¥»÷ £¬Ô̺¬ÏÜ·¨·¨Ôº¡¢¾­¼ÃºÍ±í½»²¿µÄ¹Ù·½ÍøÕ¾¶¼±»ÆÈÏÂÏß £¬Ö±ÖÁÍíÉÏÈÔÎÞ·¨½Ó¼û¡£ºÚ¿ÍÍÅ»ïAnonymousÐû³ÆÆä²ß¶¯ÁËÕâ´Î¹¥»÷ £¬×÷Ϊ¶ÔÂíµÂÀï×èÖ¹¼ÓÌ©ÂÞÄáÑǶÀÁ¢µÄ¿¹Òé¡£AnonymousÔøÔÚ2017Äê10ÔÂÌáÒé¹ýÕë¶ÔÏÜ·¨·¨Ôº¹ÙÍøµÄ¹¥»÷¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/anonymous-hackers-target-spain-sites-catalonia-protest