Binance±»µÁ7000¶àBTC£»GE CommunicatorºóÃÅÕË»§£»½©Ê¬ÍøÂçMirai´úÂë¿Éµ¼ÖÂC2·þÎñÆ÷±ÀÀ£
°ä²¼¹¦·ò 2019-05-08
ÃÀ¹úÓ¡¶È½¡È«Óë·þÎñ¹«Ë¾£¨AIHS£©²úÉúÊý¾Ýй¶ÊÂÎñ£¬Æ¾¾Ý¸Ã¹«Ë¾°ä²¼µÄ֪ͨ£¬Ò»Ãûǰ¹ÍÔ±ÔÚÖ°Ö°ÆÚ¼ä½«²¿ÃÅAIHSµç×ÓÓʼþת·¢µ½ÆäÓ×ÎÒÓÊÏ䣬µ¼Ö²¿ÃÅ»¼Õß¡¢Ô±¹¤¼°¹©¸øÉ̵ÄÃô¸ÐÐÅϢй¶¡£ÊÜËðµÄ»¼ÕßÐÅÏ¢Ô̺¬ÐÕÃû¡¢Õ˵¥Ã÷ϸ¡¢Ò½ÁƱ£ÏÕÊý¾Ý¡¢½ÓÊÜAIHS·þÎñµÄÈÕÆÚ¼°Ö§¸¶½ð¶îµÈ£¬Ä¿Ç°Éв»Ã÷ÏÔÊÇ·ñÓл¼ÕßÊý¾Ý±»ÀÄÓá£ÕâÒ»ÊÂÎñ²úÉúÔÚ2ÔÂ26ÈÕÖÁ3ÔÂ6ÈÕÆÚ¼ä¡£AIHS½«ÎªÊÜÓ°ÏìµÄ»¼ÕßÌṩ12¸öÔµÄÉí·Ý͵ÇÔ±£»¤·þÎñ¡£
ÔÎÄÁ´½Ó£ºhttps://cyware.com/news/aihs-reports-data-breach-involving-information-related-to-employees-patients-and-vendors-f823c1cd
2¡¢BVHMÒâ±íй¶²¿ÃÅѧÉúµÄÓ×ÎÒÃô¸ÐÐÅÏ¢
¾É½ðºï×ÓÁ¢Ñ§ÌÃBVHMµÄ¹¤×÷ÈËÔ±Òâ±í½«µ±Ç°¼°´ÓǰµÄѧÉúÊý¾ÝÏòһЩBVHMÉçÇø³ÉÔ±·ÖÏí£¬µ¼ÖÂÕâЩÉçÇø³ÉÔ±¿ÉÔÚ½ü2¸öÓ×ʱÄÚ½Ó¼ûѧÉúÐÅÏ¢¡£Éæ¼°µÄÐÅÏ¢Ô̺¬Ñ§ÉúµÄÐÕÃû¡¢ID¡¢Óû§Ãû¡¢SFUSDϵͳµÄÃÜÂë¡¢µç×ÓÓʼþ¼°½ø½¨¹¤¾ßµÈ¡£ÔÚµÃÖª´Ë¹ýºó£¬BVHM¸ü¸ÄÁËËùÓÐÊÜÓ°ÏìѧÉúµÄÃÜÂ룬²¢¶Ô´ËÊÂÎñ·¢Õ¹µ÷²é¡£
ÔÎÄÁ´½Ó£ºhttps://cyware.com/news/buena-vista-horace-mann-student-data-accidentally-shared-with-bvhm-community-members-8b2bae2a
3¡¢GE CommunicatorºóÃÅÕË»§¼°ÌáȨ·ì϶
¹¤ÒµÍøÂ簲ȫ³§ÉÌDragos×êÑÐÈËÔ±Reid Wightman·¢ÏÖ£¬Í¨ÓÃµçÆøµÄGE CommunicatorÈí¼þ´æÔÚ5¸ö°²È«·ì϶£¬Ô̺¬Ó²±àÂëµÄºóÃÅÕË»§ºÍÌáȨ·ì϶µÈ¡£GE CommunicatorÓÃÓÚÅäÖú͵÷ÊÔGEµÄ¹¦ÂÊÕÉÁ¿ÒÇÆ÷£¬¸Ã¹¤¾ß±»¿í·ºÓÃÓÚÊÀ½ç¸÷µØµÄµçÁ¦¹«Ë¾ºÍ´óÐÍÔì×÷É̵ȡ£×êÑÐÈËÔ±°µÊ¾ÕâЩ·ì϶¿ÉÔÊÐí¹¥»÷Õß»ñµÃ¹¤×÷Õ¾µÄÖÎÀíȨÏÞ£¬µ«ÀûÓÃËüÃDZØÒªÍøÂç»ò±¾µØ½Ó¼ûȨÏÞ¡£GE°ä²¼GE Communicator 4.0.517½¨²¹ÁËÕâЩ·ì϶¡£
ÔÎÄÁ´½Ó£ºhttps://www.securityweek.com/several-vulnerabilities-found-ge-power-meter-software
4¡¢Ë¼¿Æ½¨¸´TelePresenceºÍASA 5500-XÉ豸ÖеÄÁ½¸öDoS·ì϶
˼¿Æ½¨¸´ÁËÁ½¸ö¿Éµ¼ÖÂDoSµÄ¹Ø¼ü·ì϶£¬ÕâЩ·ì϶ӰÏìÁË˼¿ÆµÄTelePresenceÊÓÆµÍ¨ÕÛ·þÎñÆ÷ºÍASA 5500-XϵÁзÀ»ðǽÉ豸¡£ÆäÖзì϶£¨CVE-2019-1721£©ÓëÊÜÓ°ÏìÉ豸¶ÔXMLÊäÈëµÄ²»ÕýÈ·´¦ÖÃÓйأ¬¸Ã·ì϶¿ÉÔÊÐíδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß½«CPUʹÓÃÂÊÕ¼ÓÃÖÁ100%£¬´Ó¶øÔì³ÉDoS¡£ÁíÒ»¸ö·ì϶£¨CVE-2019-1694£©ÓëTCPÁ÷Á¿µÄ²»ÕýÈ·´¦ÖÃÓйء£Ë¼¿ÆÒѾ°ä²¼Èí¼þ¸üн¨¸´ÁËÕâÁ½¸ö·ì϶£¬½¨Ò龡¿ì¸üС£
ÔÎÄÁ´½Ó£ºhttps://cyware.com/news/cisco-patches-two-critical-vulnerabilities-that-could-lead-to-dos-attacks-ec7019e9
5¡¢½©Ê¬ÍøÂçMirai´úÂë´æÔÚ·ì϶£¬¿Éµ¼ÖÂC2·þÎñÆ÷±ÀÀ£
NewSky×êÑÐÔ±Ankit Anubhav³Æ½©Ê¬ÍøÂçMiraiµÄ´úÂëÖдæÔÚÒ»¸öbug£¬¿ÉÓÃÓÚ±ÀÀ£ÆäC2·þÎñÆ÷¡£¾ßÌåµÄ²½ÖèÊÇ£¬Ê¹ÓÃ1025¸öa×Ö·û×÷ΪÓû§ÃûÌáÒéÏνӣ¬´Ëʱ»áµ¼ÖÂMiraiµÄC2·þÎñÆ÷±ÀÀ£¡£AnubhavÚ¹Êͳƣ¬MiraiÔ´´úÂëÖн«Óû§Ãû´«µÝ¸øReadLineº¯Êý£¬µ«¸Ãº¯Êý´æÔÚÒ»¸ö¹Ì¶¨³¤¶ÈµÄ»º³åÇø£¬Òò¶øÌṩ´óÓÚ1024µÄÊäÈë»áµ¼Ö¸ÃÄ£¿é±ÀÀ£¡£ÓÉÓÚ2018-2019ÄêµÄ´óÎÞÊý½©Ê¬ÍøÂç¶¼ÊÇ»ùÓÚMirai£¬Òò¶ø¸Ã·ì϶´æÔÚÓÚ¶à¸ö»îÔ¾±äÖÖÖС£Ò°±íµÄһЩ¹¥»÷Õß¶¼ÖªÂ·Õâ¸ö·ì϶²¢Ê±Ê±ÀûÓÃËüÀ´±ÀÀ£¾ºÕùµÐÊֵķþÎñÆ÷¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/85040/malware/mirai-servers-hack.html
6¡¢ºÚ¿Í´Ó¼ÓÃÜÇ®±ÒÂòÂôËùBinanceµÁ×ß³¬¹ý7000ö±ÈÌØ±Ò
5ÔÂ7ÈÕBinanceÐû³Æ²úÉú°²È«ÊÂÎñ£¬ºÚ¿Í´Ó¸ÃÂòÂôËùÇÔÈ¡Á˳¬¹ý7000ö±ÈÌØ±Ò£¬×ܼÛֵԼΪ4100ÍòÃÀÔª¡£ºÚ¿ÍÀûÓø÷À༼Êõ£¬Ô̺¬ÍøÂç´¹µö¡¢²¡¶¾µÈ¹¥»÷·½Ê½£¬»ñµÃÁËÓû§ÕË»§µÄ½Ó¼ûȨÏÞ£¬Ô̺¬APIÃÜÔ¿¡¢2FAÑéÖ¤ÂëºÍÆäËüÐÅÏ¢µÈ¡£5ÔÂ7ÈÕºÚ¿ÍÆðÍ·´ÓÕâЩÕË»§Öдó¹æÄ£³·³ö£¬ÔÚ¼¸¸öÓ×ʱÄÚ²úÉúÁË7074¸ö±ÈÌØ±ÒµÄÂòÂô¡£BinanceÂí´ó½«ÍøÕ¾ÖÃÓÚÊØ»¤Ä£Ê½£¬²¢µ÷²éÍÑÀë¸Ãƽ̨µÄ¾Þ¶î×ʽð¡£Binance´òËãʹÓÃÆäÓû§°²È«×ʲú»ù½ð£¨SAFU£©À´Ìí²¹ËùÔâ·êµÄËðʧ£¬Òò¶øÓû§²»»áÒò¶øÊܵ½Ëðʧ¡£
ÔÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/hackers-steal-41-million-from-cryptocurrency-exchange-binance/


¾©¹«Íø°²±¸11010802024551ºÅ