ŦԼͨ¹ýÐÂÊý¾Ýй¶֪ͨ·¨°¸£¬Êý¾Ý¼à¹ÜÔÙ´ÎÉý¼¶£»2019ÄêÉϰëÄ곬¹ý2300ÍòÕÅÐÅÓþ¿¨ÔÚ°µÍøÏúÊÛ

°ä²¼¹¦·ò 2019-07-29
1¡¢Å¦Ô¼Í¨¹ýÐÂÊý¾Ýй¶֪ͨ·¨°¸£¬Êý¾Ý¼à¹ÜÔÙ´ÎÉý¼¶


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ŦԼÖÝÖݳ¤Andrew M. Cuomo½üÈÕÇ©ÊðÁËÒ»ÏîеÄÊý¾Ýй¶֪ͨ·¨°¸£¬¸Ã·¨°¸µÄÃû³ÆÎª¡°×èÖ¹ºÚ¿Í¼°¸Ä½øµç×ÓÊý¾Ý°²È«¡±£¬¼´SHIELD·¨°¸£¬Ö¼ÔÚ±£»¤Å¦Ô¼¹«ÃñµÄÒþÖÔÊý¾Ý²¢¼ÓÇ¿¸ÃÖݵÄÊý¾Ýй¶Õþ²ß¡£¸Ã·¨°¸À©´óÁËÓ×ÎÒÐÅÏ¢µÄÁìÓò£¬½«ÉúÎï¼ø±ðÐÅÏ¢¡¢µç×ÓÓʼþµØÖ·¼°ÃÜÂë¡¢°²È«ÎÊÌâ¼°´ð°¸ÁÐÈëÆäÖС£¸Ã·¨°¸»¹Ôö³¤ÁËÃñÊ´¦·££¬²¢½«Í¨ÖªÒªÇóÀûÓÃÓÚÈκÎÕ¼ÓÐŦԼ¹«ÃñÒþÖÔÐÅÏ¢µÄÓ×ÎÒ»òʵÌ壬¶ø²»½ö½öÊÇÔÚŦԼÖÝ·¢Õ¹ÒµÎñµÄʵÌå¡£¸Ã·¨°¸»¹½«ÌṩÉí·Ý͵ÇÔ±£»¤·þÎñдÈë˾·¨£¬ÒªÇóCRAÔÚ²úÉúÉæ¼°Éç»á°²È«ºÅÂëµÄÊý¾Ýй¶ºó±ØÐëÏòÏû·ÑÕßÌṩºÏÀíµÄ±£»¤·þÎñ¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-york-passes-law-to-update-data-breach-notification-requirements/


2¡¢°Ä´óÀûÑǹúÃñÒøÐÐÒò±¨´ðʧÎóй¶1.3Íò¿Í»§ÐÅÏ¢


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


°Ä´óÀûÑǹúÃñÒøÐУ¨NAB£©°µÊ¾ÓÐ1.3ÍòÃû¿Í»§µÄÐÅÏ¢Ô⵽й¶£¬ÆäÔ­ÒòÊÇËûÃǵÄÓ×ÎÒÊý¾Ýδ¾­Ðí¿É±»ÉÏ´«ÖÁÁ½¼ÒÊý¾Ý·þÎñ¹«Ë¾¡£NABÊ×ϯÊý¾Ý¹ÙGlenda CrispÔÚÒ»·ÝÉêÃ÷ÖаµÊ¾£¬ÕâÒ»ÊÂÎñÊÇÓɱ¨´ðʧÎóµ¼ÖµÄ£¬¸ÃÐÐΪΥ·´ÁËNABµÄÊý¾Ý°²È«Õþ²ß¡£Ð¹Â¶µÄÊý¾ÝÔ̺¬¿Í»§µÄÐÕÃû¡¢µ®ÉúÈÕÆÚ¡¢ÁªÏµ·½Ê½ÒÔ¼°Éí·ÝÖ¤ºÅÂë¡£¸ÃÒøÐв¹³ä³ÆÃ»ÓеǼʹ´¦»òÃÜÂëй¶£¬²¢ÇÒûÓÐÖ¤¾ÝÅú×¢ÈκÎÐÅÏ¢±»¸´Ôì»ò½øÒ»²½Åû¶¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.reuters.com/article/us-nab-cyber/australias-nab-says-13000-customers-personal-data-breached-idUSKCN1UL16P


3¡¢¼ÓÄô󰲴ÖÂÔÊ¡ÔâÀÕË÷Èí¼þ¹¥»÷£¬µ±¾Ö»Ø¾øÖ§¸¶Êê½ð    


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


¼ÓÄô󰲴ÖÂÔÊ¡¶«²¿ÊÐÇøÔÚ6ÔÂ30ÈÕÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ÊÐÕþ·þÎñÊܵ½Ó°Ïì¡£¸ÃÊеÄÍÆËã»úϵͳ±»·¸·¨½Ó¼û£¬²¢Ï°È¾ÁËÀÕË÷Èí¼þ£¬ÊÜÓ°ÏìµÄϵͳÔ̺¬ÊÐÕþµ±¾ÖµÄµç×ÓÓʼþϵͳµÈ¡£¹¥»÷ÕßÒªÇóÒÔ±ÈÌØ±ÒÖ§¸¶7000µ½10000ÃÀÔªµÄÊê½ð£¬µ«ÊÐÕþµ±¾Ö»Ø¾øÁËÕâÒ»ÒªÇ󣬲¢×Ôǰ½øÐÐÊý¾Ý¸´Ô­¡£ÔÚÊÂÎñ²úÉú¼¸Ììºó£¬³ýµç×ÓÓʼþϵͳ±í£¬ËùÓÐÆäËüµÄ³ÇÊзþÎñ¶¼ÒѸ´Ô­Õý³£¡£Êе±¾ÖÒÑÏò¾¯·½ÒÔ¼°°²´ÖÂÔÊ¡ÐÅÏ¢ºÍÒþÖÔרԱ»ã±¨ÁË´ËÊÂÎñ£¬µ±Ç°µ÷²éÈÔÔÚ½øÐÐÖС£


Ô­ÎÄÁ´½Ó£ºhttps://www.spamfighter.com/News-22325-Eastern-Ontario-municipality-suffered-from-a-ransomware-attack.htm


4¡¢SynologyÖÒ¸æÕë¶ÔÆäNASÉ豸µÄ±©Á¦ÆÆ½â¹¥»÷


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Synology£¨ÈºêÍ£©ÏòÆäNASÉ豸µÄÓû§·¢³öÖҸ棬¹¥»÷ÕßÔÚʹÓñ©Á¦¹¥»÷£¨×ֵ乥»÷£©ÆÆ½âÓû§µÄÖÎÀíԱʹ´¦£¬²¢Í¨¹ýÀÕË÷Èí¼þeCh0raix¼ÓÃÜÓû§µÄÊý¾Ý¡£¸Ã¹¥»÷»î¶¯ÓÚ7ÔÂ19ÈÕÆô¶¯£¬SynologyÂíÉÏ֪ͨÁËTWCERT/CCºÍCERT/CC£¬ÒÔ¹²Í¬½â¾ö´ËÊÂÎñ¡£Synology°²È«ÊÂÎñÏìÓ¦ÍŶӵľ­ÀíKen Lee°µÊ¾ÕâÊÇÒ»´ÎÓÐ×éÖ¯µÄ¹¥»÷£¬¹¥»÷ÕßʹÓý©Ê¬ÍøÂçµÄµØÖ·À´°µ²ØÆäÕæÕýµÄÔ´IP¡£¸Ã¹«Ë¾½¨Òé¿Í»§Ê¹ÓÃSynologyµÄÍøÂçºÍÕÊ»§ÖÎÀíÉèÖÃÀ´Ô¤·À»ùÓÚ»¥ÁªÍøµÄ¹¥»÷£¬Ô̺¬ÆôÓ÷À»ðǽ¡¢½öÔÊÐí¹«¹²¶Ë¿ÚÌṩ¸ù»ù·þÎñÒÔ¼°ÆôÓÃÁ½²½ÑéÖ¤¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/ransomware-crooks-hit-synology-nas-devices-with-brute-force-password-attacks/


5¡¢15Äêºóµç×ÓÓʼþÈ䳿MyDoomÔÚÈÔÔÚ´«²¼


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ƾ¾ÝCylance×êÑÐÍŶӵķÖÎö£¬µç×ÓÓʼþÈ䳿MyDoomÔÚµ®Éú15ÄêºóÈÔÔÚÍøÉÏ´«²¼¡£MydoomÖÁÉÙ´Ó2004ÄêÆðÍ·»îÔ¾£¬ÆäÖØÒª´«²¼²½ÖèÊÇÔÚÊÜϰȾµÄϵͳÉÏÍøÂçµç×ÓÓʼþµØÖ·²¢Í¨¹ý¸½¼þ½øÐз¢ËÍ¡£MyDoomÔÚ´Óǰ¼¸ÄêÖÐά³ÖÏà¶Ô²»±ä£¬ÔÚ2015ÄêÖÁ2018ÄêÆÚ¼äMyDoomÔÚPalo Alto Networks¼ì²âµ½µÄËùÓжñÒâµç×ÓÓʼþÖÐÕ¼1.1£¥£¬Õ¼¶ñÒ⸽¼þÀà±ðÖеÄ21.4£¥¡£ÖйúºÍÃÀ¹úÊÇMyDoomµÄÖØÒªÏ°È¾Çø£¬¿Æ¼¼¹«Ë¾ÊÇ×î³£¼ûµÄÖ¸±êÐÐÒµ¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/notorious-mydoom-worm-still-on-autopilot-after-15-years/


6¡¢2019ÄêÉϰëÄ곬¹ý2300ÍòÕÅÐÅÓþ¿¨ÔÚ°µÍøÏúÊÛ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ƾ¾ÝSixgill°ä²¼µÄ°µÍø½ðÈÚڲƭ»ã±¨£¬ÔÚ2019ÄêÉϰëÄê¹²Óг¬¹ý2300ÍòÕű»µÁÐÅÓþ¿¨ÔÚ°µÍøÉÏÏúÊÛ£¬ÆäÖг¬¹ý1500ÍòÕÅÐÅÓþ¿¨ÊÇÃÀ¹ú¿¯ÐеÄ£¬¶øÆäËü¹ú¶ÈµÄ±»µÁ¿¨ºÅ¾ùÓ×ÓÚ10%¡£À´×Ô¶íÂÞ˹µÄ±»µÁÐÅÓþ¿¨ÊýÁ¿ÖÁÉÙ£¬Õ¼±ÈÏÕЩΪ0£¨2300ÍòÖÐÖ»ÓÐ316ÕÅ¿¨£©¡£57%µÄ±»µÁ¼Í¼ÓëVisa¿¨ÓйØ£¬Æä´ÎÊÇMastercard£¬Õ¼29%£¬AMEXÕ¼12%¡£·¸×ï·Ö×Ó¸üÇàíùÔ̺¬CVVºÅÂ루65£¥£©¶ø²»ÊÇÊý¾Ýת´¢£¨35£¥£©µÄ¼Í¼¡£°µÍøÉϱ»µÁÐÅÓþ¿¨µÄ¼ÛÖµ×îµÍΪ5ÃÀÔª¡£


Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/88990/deep-web/payment-card-data-dark-web.html