¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20181205
°ä²¼¹¦·ò 2018-12-05
ÆÄÊÜÓ½ÓµÄÎÊ´ðÍøÕ¾Quora°ä·¢ÔâºÚ¿ÍÈëÇÖ£¬Ô¼1ÒÚÓû§µÄÊý¾Ý±»ÇÔ-ÏÕЩÊÇÆä¿Í»§ÈºÌåµÄÒ»°ë¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬Óû§µÄÕË»§ÐÅÏ¢£¬ÀýÈçÐÕÃû¡¢µç×ÓÓʼþµØÖ·¡¢¹þÏ£ÃÜÂëÒÔ¼°´ÓFacebook¡¢TwitterµÈÉ罻ýÌåµ¼ÈëµÄÊý¾Ý£»Óû§µÄ¹«¿ªÄÚÈÝ£¬ÀýÈçÌáÎÊ¡¢»Ø¸²¡¢µãÔÞºÍÆÀÂÛ£»Óû§µÄ·Ç¹«¿ªÄÚÈÝ£¬ÀýÈç»Ø¸²Ô¼Çë¡¢¸öÈËÐÂÎŵȡ£QuoraÓÚÖÜÒ»Íí¼äÅû¶ÁËÕâ´ÎÊÂÎñ£¬Ä¿Ç°¸ÃÊÂÎñ»¹ÔÚ½øÒ»²½µÄµ÷²éÖ®ÖС£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2018/12/quora-hack.html2¡¢¼ÓÄô󻨵ê1-800-FlowersÓû§ÐÅϢй¶£¬¶ñÒâ´úÂë´æÔÚ½«½ü4Äê
¼ÓÄô󻨵ê1-800-Flowers°ä·¢ÆäÍøÕ¾±»Ö²Èë¶ñÒâ´úÂ룬²¿ÃÅÓû§µÄÐÅÓþ¿¨ÐÅÏ¢±»ÇÔ¡£ÖµÍ×ÌùÐĵÄÊÇ£¬¸Ã¶ñÒâ´úÂëËÆºõ´Ó2014Äê8ÔÂ15ÈÕÖÁ2018Äê9ÔÂ15ÈÕÆÚ¼äÒ»Ïò»îÔ¾ÔÚ¸ÃÍøÕ¾ÉÏ¡£¸Ã¹«Ë¾²¢Ã»ÓÐй©Óм¸¶àÓû§Êܵ½Ó°Ïì¡£·¸×ï·Ö×Ó¿ÉÄÜÇÔÈ¡µÄÐÅÏ¢Ô̺¬ÐÕÃû¡¢ÐÅÓþ¿¨ºÅ¡¢µ½ÆÚÈÕÆÚÒÔ¼°ÐÅÓþ¿¨°²È«ÂëµÈ¡£ÕâÊǼ̽üÆÚ²úÉúµÄÃÀ¹úÓÊÕþ·þÎñ¡¢´÷¶û¡¢Dunkin Donuts¡¢ÍòºÀºÍQuoraÊý¾Ýй¶ÊÂÎñÖ®ºóµÄ×îÐÂһ·Êý¾Ýй¶¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/1-800-flowers-becomes-latest-payment-breach-victim/139619/3¡¢ÉÕ»ÙEdge£¿Î¢ÈíÐÂÏîÄ¿Anaheim»ò½«È¡´úEdge
΢Èí3Äêǰ°ä²¼µÄEdgeä¯ÀÀÆ÷ÔÚÓëChromeµÄ¾ºÕùÖÐʧ°ÜÁËÒÑÊDz»ÕùµÄÊÂʵ¡£Æ¾¾ÝWindowsCentralµÄ¼ÇÕß±¨Â·£¬Î¢Èí»ò½«ÉÕ»ÙEgde£¬¹¹½¨Ò»¸öеĻùÓÚChromiumµÄä¯ÀÀÆ÷¡£¸ÃÏîÖ÷ÕÅÄÚ²¿´úºÅΪAnaheim£¬»ò½«È¡´úEdge³ÉΪWindows 10ÖеÄĬÈÏä¯ÀÀÆ÷¡£ÐµÄä¯ÀÀÆ÷½«»ùÓÚBlinkäÖȾÒýÇæ£¬¶ø²»ÊÇ΢Èí×ÔÓеÄEdgeHTMLÒýÇæ¡£ÈôÊÇ´«ÑÔÎªÕæ£¬Chromeä¯ÀÀÆ÷½«ÔÚä¯ÀÀÆ÷Êг¡ÉÏ»ñµÃÎÞ¿ÉÆ¥µÐµÄ¢¶Ïְλ¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2018/12/edge-browser-anaheim-chromium.html4¡¢¶ñÒâiOS½¡ÉíÀûÓÃÇÔÈ¡Óû§½ðÇ®£¬Ä¿Ç°Òѱ»É¾³ý
½üÈÕApp StoreÖÐÉϼÜÁËÁ½¿î¶ñÒâiOS½¡ÉíÀûÓã¬ÕâÁ½¿îÀûÓÃ-Fitness BalanceºÍCalories Tracker-²û·¢³öÁËÒ»ÑùµÄÇÔÈ¡Óû§½ðÇ®µÄÐÐΪ¡£ÔÚµÚÒ»´ÎÆô¶¯Ê±£¬¶ñÒâÀûÓÃÒªÇóÓû§´¥ÃþTouchIDɨÃèÖ¸ÎÆÀ´ÉèÖúͽӼû£¬µ«ÏÖʵÉ϶ñÒâÀûÓÃÊÇÔÚºó¶Ü½øÐи¶¿îÖ§¸¶£¬ÈôÊÇÓû§µÄApp StoreÕÊ»§°ó¶¨ÁËÐÅÓþ¿¨£¬Ôò»á±»ÇÔÈ¡99.99ÃÀÔª¡¢119.99ÃÀÔª»ò139.99Å·Ôª¡£ÈôÊÇÓû§»Ø¾øÉ¨ÃèÖ¸ÎÆ£¬Ôò¶ñÒâÀûÓÃ»á»Ø¾øÆô¶¯£¬²¢Ñ»·ÏÔÊ¾Ö¸ÎÆÉ¨ÃèÆÁÄ»£¬Ö±µ½Óû§ÉÕ»Ù¡£¸Ã¶ñÒâÀûÓò¢²»ÃÀÂú£¬¸¶¿î³É¹¦µÄÒ³Ãæ»áÔÚÆÁÄ»ÉÏÒ»ÉÁ¶ø¹ý¡£ÔÚ½Óµ½Óû§Í¶Ëߺó£¬App StoreÒÑϼÜÁËÓйضñÒâÀûÓá£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/two-ios-fitness-apps-tricked-users-into-making-touchid-payments/5¡¢Â޵õºÒ½ÁÆÖÐÐÄThundermistÔâÀÕË÷Èí¼þ¹¥»÷£¬²¿ÃÅϵͳ±»ÆÈ¹Ø¹Ø
ÉÏÖÜËÄÃÀ¹úÂ޵õºÖݵÄÒ½ÁÆÖÐÐÄThundermistÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬²¿ÃÅϵͳ±»ÆÈ¹Ø¹Ø£¬Ò»Ð©Ô¤Ô¼Ò²±»È¡µÞ¡£Thundermist°µÊ¾¸ÃÊÂÎñÖÐûÓл¼Õߵĵç×Ó²¡Àú£¨EMR£©Êܵ½Ó°Ï죬²¢ÇÒÓÉÓÚÊý¾Ý¶¼ÊǼÓÃܵģ¬Òò¶øÒ½ÁƼͼÊܵ½ÇÖº¦µÄ¿ÉÄÜÐÔ¼«¶ÈÓס£´Ë±í£¬Ò»Ð©Ã»ÓÐÔâµ½¹¥»÷µÄϵͳ±»ÆäÔ±¹¤×Ô¶¯¹Ø¹ØÒÔ×èÖ¹ÀÕË÷Èí¼þµÄ´«²¼¡£ThundermistÁªÏµÁËÂ޵õºÎÀÉú¾ÖºÍ¾¯Ô±¾Ö£¬Ä¿Ç°ÒÑÔÚÕý³£½»Òס£
ÔÎÄÁ´½Ó£º
https://news.softpedia.com/news/rhode-island-health-provider-hit-by-ransomware-attack-524076.shtml6¡¢Siglentʾ²¨Æ÷±»ÆØ´æÔÚºóÃÅ£¬¿Éͨ¹ýtelnet½Ó¼û
SEC-Consult×êÑÐÈËÔ±·¢ÏÖSIGLENTÔì×÷µÄÊý×Öʾ²¨Æ÷SDS 1202X-EÖдæÔÚÁ½¸öÓ²±àÂëµÄºóÃÅÕË»§£¨rootºÍsiglent£©¡£ÊÜÓ°ÏìµÄ¹Ì¼þ°æ±¾Îª5.1.3.13¡£ÓÉÓÚ¸ÃÉ豸ĬÈÏ¿ªÆôÁËtelnet·þÎñ²¢ÕìÌýTCP¶Ë¿Ú23£¬±¾µØÍøÂçÖеĹ¥»÷Õß¿ÉÀûÓøúóÃÅÕË»§½Ó¼û¸ÃÉ豸¡£ÎªÔ¤·À³ö²ú»·¾³ÖеÄÉ豸Ôâ·ê¹¥»÷£¬×êÑÐÈËԱûÓÐÅû¶ºóÃÅÕË»§µÄ¹þÏ£ÃÜÂë¡£¸ü¸Ä´Ë¹þÏ£ÃÜÂëÄܹ»½¨¸´¸ÃÎÊÌ⣬µ«ÓÉÓÚ¹þÏ£ÃÜÂëÊÇ´æ´¢ÔÚÖ»¶ÁROMÖУ¬Òò¶øÕâÒ»²Ù×÷²¢²»ÈÝÒס£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/digital-oscilloscope-comes-with-backdoor-accounts-old-software-components/ÉêÃ÷£º±¾×ÊѶÓÉGA»Æ½ð¼×άËûÃü°²È«Ó××é·ÒëºÍÕû¶Ù


¾©¹«Íø°²±¸11010802024551ºÅ