FiberHome FTTH ONT·ÓÉÆ÷ÖдæÔÚ28¸öºóÃÅÕÊ»§  £»µÂ¹ú±Ê¼Ç±¾ÁãÊÛÉÌÒò¼à¿ØÔ±¹¤±»GDPR· £¿î1040ÍòÅ·Ôª

°ä²¼¹¦·ò 2021-01-18
1.FiberHome FTTH ONT·ÓÉÆ÷ÖдæÔÚ28¸öºóÃÅÕÊ»§


1.jpg


×êÑÐÈËÔ±Pierre Kim·¢ÏÖFiberHome FTTH ONT·ÓÉÆ÷ÖдæÔÚ28¸öºóÃÅÕÊ»§ºÍ¶à¸öÆäËû·ì϶¡£¸Ã·ÓÉÆ÷ÖØÒª²¿ÊðÓÚÄÏÃÀºÍ¶«ÄÏÑÇ£¬Í¨³£×°ÖÃÔÚÑ¡ÔñǧÕ×λµÄ¹«Ô¢Â¥ÄÚ¡¢¼ÒÍ¥»òÆóÒµÄÚ²¿¡£Kim³ÆÆä·¢ÏÖ´óÁ¿¿É±»ÀÄÓÃÀ´ÊÕÊÜISPµÄºóÃźͷì϶£¬ÀýÈçºóÃÅÔÊÐí¹¥»÷Õßͨ¹ý·¢ËÍÌØÔìµÄHTTPSÒªÇó[https£º// [ip]/telnet £¿enable=0£¦key=calculated£¨BR0_MAC£©]Óë·ÓÉÆ÷µÄTelnetÏνÓ£¬Web·þÎñÆ÷Ô̺¬22¸öÓÉ·ÖÆçµÄInternet·þÎñÌṩÉÌʹÓõÄÓ²±àÂëÍ´´¦µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/multiple-backdoors-and-vulnerabilities-discovered-in-fiberhome-routers/


2.µÂ¹ú±Ê¼Ç±¾ÁãÊÛÉÌÒò¼à¿ØÔ±¹¤±»GDPR· £¿î1040ÍòÅ·Ôª


2.png


µÂ¹ú±Ê¼Ç±¾ÁãÊÛÉÌNBB£¨notebooksbilliger.de£©ÒòÀûÓÃÊÓÆµ¼à¿ØÔ±¹¤±»GDPR· £¿î1040ÍòÅ·Ôª¡£¸Ã¹«Ë¾Á½ÄêǰÔÚÆä²Ö¿â¡¢ÏúÊÛÇøºÍͨ³£¹¤×÷ÇøÖÐ×°ÖÃÁËÊÓÆµ¼à¿ØÏµÍ³£¬Ö÷ÕÅÊÇÔ¤·ÀºÍµ÷²é±»µÁºÍ¸ú×Ù²úÆ·¡£µÂ¹úÊý¾Ý¼à¹Ü»ú¹¹°µÊ¾ÀûÓÃÈç´ËÃܼ¯µÄÊÓÆµ¼à¿Ø£¬ÒѾ­ÑϳÁ¼Óº¦Ô±¹¤µÄÈ¨ÊÆ¡£´Ë±í£¬NBB»¹ÔÚ¿Í»§²»ÖªÇéµÄÇé¿öÏ£¬ÔÚÆäÏúÊÛ³¡Ëù²âÊÔÉ豸ʱ¼Í¼Á˿ͻ§µÄÐÅÏ¢£¬ÕâÊÇÁíÒ»¸ö³Á´óµÄÒþÖÔ¼Óº¦ÐÐΪ¡£Õâ´ÎÊÇÆ¾¾Ý2018Äê°ä²¼µÄGDPRÔڵ¹ú¡¢ÉõÖÁÕû¸öÅ·ÖÞ´¦ÒÔµÄ×î¸ß· £¿îÖ®Ò»¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/gdpr-german-laptop-retailer-fined-eur10-4m-for-video-monitoring-employees/


3.Ó¢¹ú¾¯·½ÈÏ¿ÉÒò¼¼ÊõÎÊÌâÎóɾ³¬¹ý21ÍòÌõ·¸×ï¼Í¼


3.png


Ó¢¹ú¾¯·½ÈÏ¿ÉÒò¼¼ÊõÎÊÌâÎóɾ213000Ìõ·¸×ï¼Í¼£¬Ô̺¬Ö¸ÎÆÐÅÏ¢¡¢DNAÐÅÏ¢ºÍ¿ÛÁôº¹ÇàµÈ¡£Õâ´ÎµÄÊÂÎñ±»¹é×ïÓÚ±àÂëÃýÎó£¬Ôڲ鳭±»ÏóÕ÷Ϊɾ³ýµÄÊý¾ÝÊÇ·ñÄܹ»±»ºÏ·¨±£Áô֮ǰ£¬Êý¾ÝÒÑ´ÓÊý¾Ý¿âÖÐÃÔʧ¡£ÄÚÕþ²¿³ÆÔÚ¾¡¿ì¸´Ô­ÎóɾµÄÊý¾Ý£¬Õâ´Î²¢Ã»ÓÐûÓÐÈκÎΣÏÕÈËÎïµÄ¼Í¼±»É¾³ý¡£Ä¿Ç°ÈÔÔÚµ÷²éÊÂÎñÓ°ÏìÁìÓò£¬Éв»Ã÷ÏÔÿÖÖÀàÐÍÃÔʧÁ˼¸¶à±Ê¼Í¼¡£


Ô­ÎÄÁ´½Ó£º

https://www.bbc.com/news/uk-55684320


4.OpenWRTÂÛ̳³ÆÆäÔâµ½¹¥»÷£¬Óû§Êý¾Ý±»µÁ


4.png


OpenWRTÂÛ̳³ÆÆäÔÚ±¾ÖÜÁù04:00×óÓÒÔâµ½¹¥»÷£¬Óû§Êý¾Ý±»µÁ¡£OpenWRTÊÇÒ»¸ö¿ªÔ´´úÂëÏîÄ¿£¬Îª¼ÒÓ÷ÓÉÆ÷ÌṩÃâ·ÑÇÒ¿É×Ô½ç˵µÄ¹Ì¼þ¡£OpenWRTÍŶӰµÊ¾£¬¹ÌÈ»¹¥»÷ÕßÎÞ·¨ÏÂÔØÆäÊý¾Ý¿âµÄÆëÈ«¸±±¾£¬µ«ÒѾ­µÁÈ¡ÁËÂÛ̳Óû§ÃûºÍµç×ÓÓʼþµØÖ·µÈÓ×ÎÒ¾ßÌåÐÅÏ¢¡£±»µÁÊý¾Ý²¢Î´Ô̺¬ÃÜÂ룬µ«ÊdzöÓÚ°²È«Ë¼¿¼£¬OpenWRTÖÎÀíÔ±ÒѳÁÖÃËùÓÐÂÛ̳Óû§ÃÜÂëºÍAPIÃÜÔ¿¡£´Ë±í£¬OpenWRTÖÎÀíÔ±»¹ÌáÐÑÓû§£¬±»µÁÊý¾Ý¿ÉÄܱ»ÓÃÓÚ½«À´µÄ´¹µö¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/113586/data-breach/openwrt-forum-hacked.html


5.Tenable°ä²¼2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ׻㱨


5.png


Tenable°ä²¼ÁË2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ׻㱨¡£»ã±¨¶Ô2020ÄêµÄ·ì϶ºÍÍþÐ²Ì¬ÊÆ½øÐзÖÎö£¬·¢ÏÖ2020Äê»ã±¨µÄ³£¼û·ì϶ºÍÅû¶£¨CVE£©×ÜÊý£¨18358£©±È2019Äê»ã±¨µÄ×ÜÊý£¨17305£©¸ß6£¥¡£ÔÚ2020ÄêÅû¶µÄ·ì϶ÖУ¬ÓÐ29¸ö±»¼ø±ðΪеÄ0day£¬ÆäÖг¬¹ý35£¥Óëä¯ÀÀÆ÷ÓйØ£¬½ü29£¥Î»ÓÚ²Ù×÷ϵͳÄÚ¡£´Ë±í£¬ÔÚÏļ¾Åû¶ÁË547¸ö·ì϶£¬ÆäÖÐÔ̺¬F5¡¢Palo Alto Networks¡¢PulseSecure¡¢vBulletinµÈµÄÖØÒª·ì϶¡£´Ó1Ôµ½10Ô£¬ÓÐ730ÆðÊÂÎñµ¼ÖÂÁ˳¬¹ý220ÒڱʼͼµÄй¶¡£


Ô­ÎÄÁ´½Ó£º

https://zh-cn.tenable.com/cyber-exposure/2020-threat-landscape-retrospective?tns_redirect=true


6.Okera°ä²¼2021Äê´óÊý¾ÝÇ÷ÏòµÄ·ÖÎö»ã±¨


6.png


Okera°ä²¼ÁË2021Äê´óÊý¾ÝÇ÷ÏòµÄ·ÖÎö»ã±¨¡£¸Ã»ã±¨Ô¤²âÁ˽«À´Ò»Äê¼´½«³öÏÖµÄÎåÖÖ´óÊý¾ÝµÄÇ÷Ïò£¬±ðÀëΪÊý¾ÝÒþÖԺͽӼû½ÚÔ콫³ÉΪÌá¸ßÊÕÈëµÄÆ·ÅÆ²î¾à»¯³É·Ö  £»ÔÚÊý¾ÝĿ¼ºÍÔªÊý¾ÝÖÎÀí·½ÃæµÄͶ×ʽ«»ñµÃ»Ø±¨  £»¼¯³ÉµÄ»ìºÏÊý¾Ýƽ̨½«Å¤×ªÔÆÀûÓ÷¨Ê½µÄÖ°Äܲ¢ÆðÍ·½»¸¶¼ÛÖµ  £»Êý¾Ý·ÖÎöºÍÊý¾Ýƽ̨¼¼ÊõµÄ¸ü¶à´¹Ö±»¯  £»CDO½«Í¨¹ýÖ´ÐÐÉ¢²¼Ê½Êý¾ÝÖÎÀíÄ£ÐÍÀ´½øÒ»²½×ª±äÆä¹«Ë¾¡£


Ô­ÎÄÁ´½Ó£º

https://www.okera.com/okera-unveils-five-top-data-privacy-and-analytics-trends-for-2021/