¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20181120

°ä²¼¹¦·ò 2018-11-20

1¡¢×êÑлú¹¹Åû¶ͨ¹ýÀ¶ÑÀÈëÇÔìû³µµÄCarsBlues¹¥»÷£¬ÒÉÓ°ÏìÊýǧÍòÆû³µ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Privacy4Cars·¢ÏÖÒ»ÖÖͨ¹ýÀ¶ÑÀÈëÇÔìû³µµÄCarsBlues¹¥»÷£¬¸Ã¹¥»÷²½ÖèÓëÏÖ´ú³µÁ¾ÖеijµÔØÓéÀÖϵͳÓйØ£¬Í¨¹ýÀ¶ÑÀºÍ̸£¬¹¥»÷Õ߿ɻñµÃÓû§µÄÁªÏµÈËÁÐ±í¡¢Í¨»°¼Í¼¡¢ÎĽñÌìÖ¾ÉõÖÁÊǶÌÐÅÄÚÈݵÈÓ×ÎÒÐÅÏ¢¡£Privacy4Cars³ÆÕâÖÖ¹¥»÷Ö»±ØÒªÊ¹ÓÃÁ®¼ÛÇÒÒ×ÓÚ»ñµÃµÄÓ²¼þ/Èí¼þÔÚ¼¸·ÖÖÓÄÚ¼´¿ÉʵÏÖ£¬²¢ÇÒ²»±ØÒªÉîåäµÄ¼¼Êõ֪ʶ¡£È«ÇòÊýǧÍòÁ¾Æû³µÒÉÊܵ½Ó°Ï죬²¿Ãų§ÉÌÒѾ­°ä²¼Á˸üС£

 

  Ô­ÎÄÁ´½Ó£º

https://www.privacy4cars.com/can-my-car-be-hacked/default.aspx


2¡¢ÃÀʱװÁãÊÛÉÌNordstromÔ¼7.6ÍòÃûÔ±¹¤µÄÐÅÏ¢ÒÉÔâй¶

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


¾ÝÎ÷ÑÅͼʱ±¨±¨Â·£¬ÃÀ¹úʱװÁãÊÛÉÌNordstromµÄ²¿ÃÅÔ±¹¤µÄÓ×ÎÒÐÅÏ¢Ô⵽й¶¡£¸Ã¹«Ë¾½²»°È˳Æ£¬NordstromÔÚµ÷²éºÏͬ¹¤²»Õýµ±ÀûÓÃNordstromÔ±¹¤Êý¾ÝµÄÊÂÎñ£¬¸ÃÊÂÎñ²úÉúÔÚ10ÔÂ9ÈÕ¡£Ð¹Â¶µÄÔ±¹¤Ó×ÎÒÐÅÏ¢Ô̺¬ÐÕÃû¡¢Éç±£ºÅÂë¡¢µ®ÉúÈÕÆÚ¡¢Ö§Æ¹ØË»§¡¢Â·ÓɺÅÂëºÍн×ʵÈ¡£Nordstrom²¢Ã»ÓÐй©Óм¸¶àÔ±¹¤Êܵ½Ó°Ï죬µ«¸Ã¹«Ë¾µÄÔ±¹¤ÊýΪ7.6ÍòÈË¡£¸Ã¹«Ë¾½²»°ÈË»¹³ÆÃ»Óпͻ§Êý¾ÝÊܵ½Ó°Ïì¡£


  Ô­ÎÄÁ´½Ó£º

https://www.pymnts.com/news/security-and-risk/2018/nordstrom-breach-employee-data-identity-protection/


3¡¢ÒþÐÎÑÛ¾µÉÌVision DirectÔâºÚ¿ÍÈëÇÖ£¬²¿Ãſͻ§µÄÐÅÏ¢±»µÁ

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Å·ÖÞÒþÐÎÑÛ¾µÉÌVision DirectÔâµ½ºÚ¿Í¹¥»÷£¬²¿Ãſͻ§µÄÓ×ÎҺͲÆÕþÐÅÏ¢Êܵ½ÇÖº¦¡£¸ÃÊÂÎñ²úÉúÔÚ11ÔÂ3ÈÕÖÁ8ÈÕÖ®¼ä£¬ÔÚ´ËÆÚ¼äÄڵǼÁËVisionDirect.co.ukÍøÕ¾µÄ¿Í»§µÄÓ×ÎÒÐÅÏ¢Ô⵽й¶£¬Ô̺¬ÐÕÃû¡¢µØÖ·¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØÖ·¡¢ÃÜÂëºÍÐÅÓþ¿¨Êý¾Ý£¨¿¨ºÅ¡¢ÓÐЧÆÚºÍCVVºÅ£©µÈ¡£¸Ã¹«Ë¾Ç¿µ÷³ÆÔÚ´ËÈÕÆÚ֮ǰ´æ´¢ÔÚ¹«Ë¾Êý¾Ý¿âÖеÄÏÖÓÐÓ×ÎÒÊý¾ÝûÓÐÊܵ½Ó°Ïì¡£VisionDirectûÓÐй©ÊÂÎñ²úÉúµÄϸ½Ú£¬µ«TwitterÉϵÄ×êÑÐÈËÔ±»áÉÌÒÔΪÕâ¿ÉÄÜÓëMagecartµÄ¶ñÒâJS¾ç±¾ÓйØ¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.visiondirect.co.uk/customer-data-theft


4¡¢×êÑÐÍŶÓÅû¶TP-Link SOHO·ÓÉÆ÷ÖеĶà¸ö°²È«·ì϶

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


˼¿ÆTalos×êÑÐÍŶÓÅû¶ÔÚTP-Link SOHO·ÓÉÆ÷£¨ÐͺÅΪTL-R600VPN£©Öз¢ÏֵĶà¸ö°²È«·ì϶¡£ÆäÖÐÔ̺¬¿Éµ¼Ö»ؾø·þÎñµÄ°²È«·ì϶£¨CVE-2018-3948£©¡¢¿Éµ¼ÖÂÐÅϢй¶µÄĿ¼±éÀú·ì϶£¨CVE-2018-3949£©ºÍ¿Éµ¼ÖÂÔ¶³Ì´úÂëÖ´Ðеķì϶£¨CVE-2018-3950ºÍCVE-2018-3951£©¡£TP-LinkÒѾ­°ä²¼ÁËÓйطì϶µÄ½¨¸´²¹¶¡£¬½¨ÒéÓû§¾¡¿ì½øÐиüС£


  Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2018/11/tplinkr600.html


5¡¢¶íÂÞ˹һºÚ¿ÍÔÚ±£¼ÓÀûÑDZ»²¶£¬±»¿ØÚ²Æ­700ÍòÃÀÔª

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


±£¼ÓÀûÑǾ¯·½ÓÚ11ÔÂ6ÈÕÓ¦ÃÀ¹úµ±¾ÖµÄÒªÇó¿ÛÁôÁËÒ»Ãû¶íÂÞ˹ºÚ¿Í£¬¸ÃÏÓ·¸±»Ö¸¿ØÚ²Æ­³¬¹ý700ÍòÃÀÔª¡£¾Ý¶íÂÞ˹ýÌ屨·³Æ£¬ÕâÃûÏÓ·¸ÊÇAlexander Zhukov£¬ÊÇÒ»¸öÊ¥±ËµÃ±¤ÈË£¬Ëû¿ÉÄÜÊDzμÓÁËGoogleÔÚ10Ôµ׷ÛËéµÄ¸æ°×ڲƭ°¸¼þ¡£Ä¿Ç°ÓÐ¹ØÆä·¸×ïµÄ¾ßÌåÐÅÏ¢ÒÀÈ»±»·â´æ£¬¸ÃÏÓ·¸½«Ãæ¶ÔÒý¶ÉÖÁÃÀ¹ú½øÐÐÉóÅС£

 

 Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/russian-hacker-arrested-in-bulgaria-for-ad-fraud-of-over-7-million/


6¡¢ÒÔÉ«ÁÐ×齨ּÔÚÓ¦¶ÔÍøÂç¹¥»÷µÄк½¿ÕͬÃË

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ÔÚÒÔÉ«ÁеÚ5½ìºÓɽ°²È«¼°ÍøÂ簲ȫ¹ú¼Ê»áÒéÉÏ£¬ÒÔÉ«Áо­¼ÃºÍ¹¤Òµ²¿½áºÏ¶à¼Ò°²È«³§Ḛ́䷢×齨к½¿ÕҵͬÃË¡£¸ÃͬÃ˵ijÉÁ¢Ö¼ÔÚΪÃñÓú½¿ÕÒµÌá¹©È«ÃæµÄ¶Ëµ½¶ËÍøÂ簲ȫ½â¾ö¹æ»®£¬º­¸Ç»ú³¡¡¢º½¿Õ¹«Ë¾ºÍ·É»úµÈ¡£²Î¼Ó¸ÃͬÃËµÄÆóÒµÔ̺¬ÒÔÉ«Áк½¿Õ¹¤Òµ¹«Ë¾£¨IAI£©¡¢CyberArk¡¢Check Point¡¢El Al¡¢Karamba SecurityºÍClearSkyµÈ¡£

 

 Ô­ÎÄÁ´½Ó£º

https://www.timesofisrael.com/israeli-firms-ministry-set-up-consortium-to-tackle-aviation-cyberthreats/


ÉêÃ÷£º±¾×ÊѶÓÉGA»Æ½ð¼×άËûÃü°²È«Ó××é·­ÒëºÍÕû¶Ù