ÃÀ¹ÙÔ±ÈÏ¿ÉÏò¶íÂÞ˹µçÍøÖ²È벡¶¾£»AMCAÊý¾Ýй¶²¨¼°ÈËÊý³¬¹ý2000Íò£»WebLogic ServerÔ¶³Ì´úÂëÖ´Ðзì϶

°ä²¼¹¦·ò 2019-06-17
1¡¢ÃÀ¹ÙÔ±ÈÏ¿ÉÏò¶íÂÞ˹µçÍøÖ²È벡¶¾£¬ÌØÀÊÆÕÅ­í¡ÃÀýÅѹú

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
 
±¾µØ¹¦·ò6ÔÂ15ÈÕ£¬¡¶Å¦Ô¼Ê±±¨¡·Ô®ÒýÃÀ¹úÏÖÈκÍǰÈε±¾Ö¹ÙÔ±µÄ»°³Æ£¬ÃÀ¹úÔÚ¼Ó´ó¶Ô¶íÂÞ˹µçÍøµÄÍøÂç¹¥»÷£¬¡°ÖÁÉÙ´Ó2012ÄêÆðÍ·£¬ÃÀ¹úÒѽ«¿úËÅ̽²âÆ÷ÖÃÈë¶íÂÞ˹µçÍøµÄ½ÚÔìϵͳ¡£¡±ÉÏÊö¹ÙÔ±°µÊ¾£¬Èç½ñÃÀ¹úµÄÕ½ÊõÒѾ­¸ü¶àµØ×ªÏò½ø¹¥£¬²¢ÒÔ¡°Ç°ËùδÓÓ×±µÄÉî¶È½«Ç±ÔڵĶñÒâÈí¼þ°²ÉèÓÚ¶íÂÞ˹ϵͳÄÚ¡£ÃÀ¹úÕþÒª²¢Î´¾Í±¨Â·×÷³ö»ØÓ¦£¬µ«¿´Í걨·µÄÌØÀÊÆÕÈ´¼«¶ÈÄÕÅ­£¬ËûËæ¼´ÔÚÍÆÌØÉÏ·¢ÍÆÎÄ»Øí¡£¬³Æ¡¶Å¦Ô¼Ê±±¨¡·µÄ±¨Â·ÊǼٵÄ£¬²¢³ÆÆä×ö·¨¡°ÏÕЩÊÇÅѹúÐо¶£¬ÊÇÈËÃñµÄµÐÈË£¡¡±

Ô­ÎÄÁ´½Ó£ºhttps://www.nytimes.com/2019/06/15/us/politics/trump-cyber-russia-grid.html

2¡¢AMCAÊý¾Ýй¶²¨¼°ÈËÊý³¬¹ý2000Íò£¬5¼Ò¹«Ë¾ÊÜÓ°Ïì

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
 
ÃÀ¹úÒ½ÁÆÆóÒµÕ˵¥·þÎñÉÌAMCAµÄÊý¾Ýй¶ÊÂÎñÏÖÒѲ¨¼°³¬¹ý2000Íò»¼Õß¡£Ð¹Â¶µÄÊý¾ÝÊôÓÚÃÀ¹ú¸÷¸öÁÙ´²ºÍѪҺ¼ì²â³¢ÊÔÊҵϼÕߣ¬Ô̺¬ËûÃǵÄÐÕÃû¡¢¼Òͥסַ¡¢µç»°ºÅÂë¡¢µ®ÉúÈÕÆÚ¡¢Éç»á°²È«ºÅÂë¡¢Ö§¸¶¿¨¾ßÌåÐÅÏ¢ºÍÒøÐÐÕË»§ÐÅÏ¢µÈ¡£ÊÜÓ°ÏìµÄ³¢ÊÔÊÒÔ̺¬Quest Diagnostics£¨²¨¼°1190Íò»¼Õߣ©¡¢LabCorp£¨770Íò»¼Õߣ©¡¢BioReference³¢ÊÔÊÒ£¨Opko Health×Ó¹«Ë¾£¬422600Ãû»¼Õߣ©¡¢Carecentrix£¨50ÍòÃû»¼Õߣ©ºÍSunrise Laboratories£¨Î´¹«¿ª»¼ÕßÊý£©¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/amca-data-breach-has-now-gone-over-the-20-million-mark/

3¡¢ÃÀ¹úÈýËù´óÑ§Â½ÐøÅû¶Êý¾Ýй¶ÊÂÎñ£¬²¨¼°Ñ§Éú¼°Ô±¹¤ÒþÖÔ

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
 
ÃÀ¹úÈýËù´óѧÁ½ÌìÄÚÂ½ÐøÅû¶Êý¾Ýй¶ÊÂÎñ£¬²¨¼°Ñ§Éú¼°Ô±¹¤ÒþÖÔ¡£ÕâÈýËù´óѧ±ðÀëÊǸñÀ×˹À¼´óѧ¡¢¶íÀÕ¸ÔÖÝÁ¢´óѧºÍÃÜËÕÀïÖÝÄϲ¿ÖÝÁ¢´óѧ¡£6ÔÂ14ÈÕ¸ñÀ×˹À¼´óѧÅû¶³Æ²¿ÃÅÔ±¹¤ÓÊÏäÕË»§ÔâδÊÚȨ½Ó¼û£¬ÊÂÎñ²úÉúÔÚ3ÔÂ29ÈÕ¡¢4ÔºÍ5ÔÂ1ÈÕ¡£¶íÀÕ¸ÔÖÝÁ¢´óѧºÍÃÜËÕÀïÖÝÄϲ¿ÖÝÁ¢´óѧͬÑùÔâµ½´¹µöÓʼþ¹¥»÷£¬ÕâЩÊÂÎñÔÚ½øÒ»´ëÊ©²éÖ®ÖС£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/three-us-universities-disclose-data-breaches-over-two-day-span/

4¡¢Akamaiл㱨³Æ½ü17¸öÔÂÓÎÏ·ÐÐÒµÔâµ½120ÒÚ´Îײ¿â¹¥»÷

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
 

ƾ¾ÝAkamaiµÄ»¥ÁªÍø°²È«»ã±¨£¬ÔÚ2017Äê11ÔÂÖÁ2019Äê3ÔµÄ17¸öÔÂÄÚ£¬Õë¶ÔÓÎÏ·ÐÐÒµµÄײ¿â¹¥»÷´ÎÊý´ï120ÒڴΡ£ÔÚͳһʱÆÚÄÚ£¬Akamai¹²¼Í¼µ½Õë¶ÔËùÓÐÐÐÒµµÄ550ÒÚ´Îײ¿â¹¥»÷¡£¸Ã»ã±¨»¹ÏÔʾ£¬SQL×¢È루SQLi£©¹¥»÷³ÖÐøÔö³¤£¬´Ë¿ÌÕ¼ËùÓÐWebÀûÓ÷¨Ê½¹¥»÷µÄ½üÈý·ÖÖ®¶þ£¨65.1£¥£©£»±¾µØÎļþÔ̺¬£¨LFI£©¹¥»÷Õ¼24.7£¥¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.helpnetsecurity.com/2019/06/14/gaming-community-credential-stuffing-attacks/

5¡¢Oracle WebLogic ServerÔ¶³Ì´úÂëÖ´Ðзì϶£¨CNNVD-201906-596£©

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
 
CNNVD°ä²¼¹ØÓÚOracle WebLogic ServerÔ¶³Ì´úÂëÖ´Ðзì϶£¨CNNVD-201906-596£©µÄÔ¤¾¯¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶ÔÚδÊÚȨµÄÇé¿öÏ·¢Ë͹¥»÷Êý¾Ý£¬ÊµÏÖËÁÒâ´úÂëÖ´ÐС£¸Ã·ì϶ÊÇÓÉÓÚOracleÒ»¸öº¹Çà·ì϶£¨CNNVD-201904-961£¬CVE-2019-2725£©½¨²¹²»ÃÀÂúµ¼Ö£¬Ö»¹Ü4ÔÂ26ÈÕOracle°ä²¼Á˲¹¶¡£¬µ«½üÈÕ·¢Ïָ÷ì϶ÈԿɱ»ÐµĹ¥»÷·½Ê½ÀûÓá£Oracle WebLogic Server 10.3.6.0¡¢12.1.3.0µÈ°æ±¾¾ùÊÜ·ì϶ӰÏ졣Ŀǰ£¬ Oracle¹Ù·½ÔÝδ°ä²¼¸Ã·ì϶²¹¶¡£¬µ«Äܹ»Í¨¹ýһʱ½¨²¹´ëÊ©»º½â·ì϶´øÀ´µÄ·çÏÕ¡£

Ô­ÎÄÁ´½Ó£ºhttps://mp.weixin.qq.com/s/EhieSVXW9V2q5B9TlJyrug

6¡¢NEO UrologyÔâÀÕË÷Èí¼þ¹¥»÷£¬ÒÑÖ§¸¶7.5ÍòÃÀÔªµÄÊê½ð

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
 
¶íº¥¶íÖÝÒ½Áƹ«Ë¾NEO UrologyÔâºÚ¿Í¹¥»÷£¬ÆäÍÆËã»úϵͳ±»ÀÕË÷Èí¼þ¼ÓÃÜ¡£¸Ã¹«Ë¾Í¨¹ýµÚÈý·½Ïò¹¥»÷ÕßÖ§¸¶Á˼ÛÖµ7.5ÍòÃÀÔªµÄ±ÈÌØ±Ò£¬ÒÔ»ñÈ¡½âÃÜÃÜÔ¿¡£Æ¾¾ÝIT·þÎñÉ̵ķÖÎö£¬ËûÃÇÒɻ󹥻÷ÕßÀ´×ÔÓÚ¶íÂÞ˹¡£¹¥»÷ÕߵĴ«ÕæÁªÏµ·½Ê½ÊÇ¡°Pay4Day.io¡±£¬¾¯·½ÔÚ½øÇ°½øÒ»²½µÄµ÷²é¡£

Ô­ÎÄÁ´½Ó£ºhttp://www.wfmj.com/story/40646778/boardman-medical-practice-hacked-told-to-pay-75000-in-bitcoin-to-unlock-system