1¡¢Ó¡¶ÈÓ×¶îÐÅ´ûÒøÐÐJana CashÒâ±íй¶260ÍòÓû§ÂòÂôÐÅÏ¢
×êÑÐÈËÔ±·¢ÏÖÓ¡¶ÈÓ×¶îÐÅ´ûÒøÐÐJana CashµÄÒ»¸öÊý¾Ý¿âδÊÜÃÜÂë±£»¤£¬µ¼ÖÂÊý°ÙÍòÓû§µÄÂòÂôÐÅÏ¢¿É±»¹«¿ª½Ó¼û¡£Ð¹Â¶µÄÃô¸ÐÐÅÏ¢Ô̺¬260ÍòÓû§µÄÂòÂô¼Í¼£¬ÒÔ¼°ËûÃǵÄKYC PIIÐÅÏ¢£¬ÀýÈçÇ®°üID¡¢Óû§Ãû¡¢µç×ÓÓʼþ¡¢IPµØÖ·ºÍ¶Ë±êÓïµÈ¡£ÔÚ×êÑÐÈËÔ±´«µÝ¸Ã¹«Ë¾ºó£¬¸Ã¹«Ë¾ÒѶÔElasticÊý¾Ý¿â½øÐб£»¤¡£Ä¿Ç°Éв»Ã÷ÏÔ¸ÃÊý¾Ý¿â¶³öÁ˶೤¹¦·òÒÔ¼°ÊÇ·ñÒѱ»ÆäËûÈ˽Ӽû¡£
ÔÎÄÁ´½Ó£ºhttps://securitydiscovery.com/jana-bank-data-leak/
2¡¢Èðµä¼ÓÃÜÇ®±ÒÂòÂôËùQuickBitй¶30ÍòÌõ¿Í»§¼Í¼
Èðµä¼ÓÃÜÇ®±ÒÂòÂôËùQuickBit´«µÝ³Æ£¬Ò»¸öµÚÈý·½ºÏ×÷ͬ°éµÄMongoDBδÉèÃÜÂ룬µ¼ÖÂ30ÍòQuickBit¿Í»§µÄÐÅϢй¶¡£Ð¹Â¶µÄÊý¾ÝÔ̺¬Óû§µÄÐÕÃû¡¢µØÖ·¡¢ÓÊÏ䵨ַ¡¢ÐԱ𡢵®ÉúÈÕÆÚµÈ¡£QuickBitÇ¿µ÷³ÆÃ»ÓÐÃÜÂë¡¢Éç»á°²È«ºÅÂëºÍ¼ÓÃÜÇ®±ÒÃÜԿй¶¡£¸ÃÊÂÎñÓɰ²È«×êÑÐÔ±Paul Bischoff·¢ÏÖ£¬¹²Ó°ÏìÁË2%µÄQuickBitÓû§¡£
ÔÎÄÁ´½Ó£ºhttps://www.coindesk.com/crypto-exchange-quickbit-confirms-data-breach-impacting-300000-users
3¡¢Graduation AllianceÔâºÚ¿ÍÈëÇÖ£¬ÊýǧÃûѧÉúÐÅϢй¶
Graduation Alliance³ÆÆä·þÎñÆ÷ÔâδÊÚȨµÚÈý·½ÈëÇÖ£¬µ¼ÖÂÌïÄÉÎ÷ÖݵÄÊýǧÃû¹«Á¢Ñ§ÌÃѧÉúµÄÓ×ÎÒÐÅϢй¶¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬Ñ§ÉúµÄÐÕÃû¡¢µ®ÉúÈÕÆÚ¡¢ÐÔ±ð¡¢ÖÖ×å¡¢ACT·ÖÊýµÈ£¬µ«²»Ô̺¬ÈκÎÉç»á°²È«ºÅÂëºÍµØÖ·ÐÅÏ¢¡£Graduation AllianceÒÑÏòTHECºÍ½ÌÓý²¿´«µÝÁËÕâ´ÎÊÂÎñ£¬²¢¹ÍÓ¶Á˰²È«×¨¼Ò¶Ô´ËÊÂÎñ½øÐÐÈ«ÃæµÄµ÷²é¡£
ÔÎÄÁ´½Ó£ºhttps://www.wsmv.com/graduation-alliance-data-breach-statement/pdf_7eab99b0-ad84-11e9-a1cd-3bab9f09eb00.html
4¡¢×êÑÐÍŶӰ䲼¹ØÓÚFIN8¶ñÒ⹤¾ßBADHATCHµÄ·ÖÎö»ã±¨
Gigamon ATR×êÑÐÍŶӰ䲼FIN8¶ñÒ⹤¾ßBADHATCHµÄ·ÖÎö»ã±¨¡£BADHATCHÊÇÒ»¸ö·´µ¯shell¹¤¾ß£¬ÒÔÒ»¸ö×Ôɾ³ýPowerShell¾ç±¾ÆðÍ·¡£¸Ã¾ç±¾Ô̺¬64λshellcodeµÄ×Ö½ÚÊý×飬Ëü½«¸´Ôìµ½PowerShell¹ý³ÌµÄÄÚ´æÖУ¬²¢Í¨¹ýŲÓÃCreateThreadÀ´Ö´ÐС£ÓÉÓÚ×Ö½ÚÊý×éºóÃæµÄºÅÁîÊÇbase64±àÂëµÄ£¬Òò¶ø¿ÉÄÜÌӱܰ²È«²úÆ·µÄ¼ì²â¡£Æä·´µ¯shell½«Ïνӵ½Ò»¸öÓ²±àÂëµÄIPµØÖ·£¬²¢ÇÒûÓÐÓòÃû¡£×êÑÐÈËÔ±»¹±ÈÁ¦ÁËPowerSniff¡¢PUNCHBUGGYºÍBADHATCHÖ®¼äµÄÇø±ð¡£
ÔÎÄÁ´½Ó£ºhttps://atr-blog.gigamon.com/2019/07/23/abadbabe-8badf00d:-discovering-badhatch-and-a-detailed-look-at-fin8's-tooling/
5¡¢ÃÀ¹úÓ¡µÚ°²ÄÉÖÝVigoÏØÔâµ½ÀÕË÷Èí¼þ¹¥»÷
ÃÀ¹úÓ¡µÚ°²ÄÉÖݵÄVigoÏØÔâÀÕË÷Èí¼þ¹¥»÷£¬¸ÃÏØÔÚ¶Ô´ËÊÂÎñ½øÐе÷²é¡£¸ÃÏØµÄÐÐÕþÖ÷×ùJudith Anderson°µÊ¾ÓÚÖܶþÔçÉϽӹܵ½ÁËÀÕË÷Èí¼þ¹¥»÷֪ͨ¡£¹ÙÔ±°µÊ¾ÔÚ¼ì²â¸ÃÏØµÄÍÆËã»úϵͳÊÜÓ°ÏìµÄˮƽ¡£Ä¿Ç°Éв»Ã÷ÏÔ¹¥»÷ÖÐʹÓõÄÀÕË÷Èí¼þµÄÀàÐÍ£¬¸ÃÏØÒ²Ã»Óнӹܵ½Êê½ðÒªÇó¡£IT²¿ÃÅÖ÷¹ÜJeremy Snowden°µÊ¾Éв»Ã÷ÏÔÊÇ·ñÓгÁÒªÐÅϢй¶¡£ÕâÊǽüÆÚÕë¶ÔÃÀ¹úÏØµ±²¿ÃÅÃŵÄÀÕË÷Èí¼þ¹¥»÷µÄ×îÐÂһ·¡£
ÔÎÄÁ´½Ó£ºhttps://www.apnews.com/65b22b56e7384c7db4031a07c92c64f9
6¡¢FacebookÔÞ³ÉÏòFTCÖ§¸¶50ÒÚÃÀÔª·£¿î
¾Ý±íý±¨Â·£¬FacebookÒÑÓëÃÀ¹úÁª¹úÒµÎñίԱ»á£¨FTC£©´ï³ÉºÍ½âºÍ̸£¬ÔÞ³ÉÖ§¸¶50ÒÚÃÀÔªµÄ·£¿î£¬²¢Ö´ÐÐеÄÒþÖÔ±£»¤¿ò¼ÜºÍÏòFTCÌṩеļà²â¹¤¾ß¡£ÕâÊÇÓÐÊ·ÒÔÀ´¶Ô¹«Ë¾½øÐеÄ×î´óµÄÏû·ÑÕßÒþÖÔй¶·£¿î£¬Ò²ÊÇÃÀ¹úµ±¾Ö¶ÔÈκÎÎ¥¹æÐÐΪµÄ×î´óÒ»±Ê·£¿î¡£Æ¾¾ÝºÍ½âºÍ̸£¬Facebook»¹±ØÒª³ÉÁ¢Ò»¸ö¶àµµ´ÎµÄºÏ¹æÏµÍ³£¬¸ÃϵͳÓɶÀÁ¢µÄÒþÖÔ±£»¤Î¯Ô±»á¡¢ºÏ¹æ¹ÙÔ±ºÍµÚÈý·½ÆÀ¹ÀÔ±×é³É£¬ÒÔ×èÖ¹½«À´Óû§ÒþÖÔ±»ºýŪµÄÊÂÎñ²úÉú¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/technology/facebook-to-pay-over-5-billion-following-ftc-sec-settlements/