TikTokÒòÎ¥·´Cookie»®¶¨±»·¨¹úCNIL·£¿î540ÍòÃÀÔª
°ä²¼¹¦·ò 2023-01-16
¾ÝýÌå1ÔÂ14ÈÕ±¨Â·£¬TikTok±»·¨¹úÊý¾Ý±£»¤»ú¹¹(CNIL)·£¿î500ÍòÅ·Ôª£¨Ô¼ºÏ540ÍòÃÀÔª£©¡£CNILÔÚ²¼¸æÖÐÚ¹ÊÍ£¬ËüÓÚ2021Äê6Ô²é³ÁËTikTokÍøÕ¾£¬·¢ÏÖ¸ÃÆ½Ì¨µÄÓû§²»ÄÜÏñ½ÓÊÜcookieÄÇÑùµÈÏеػؾøcookie¡£´Ë±í£¬Óû§Ã»ÓлñµÃÓйØcookieÓô¦µÄ×ã¹»¾ßÌåÐÅÏ¢¡£ÕâÖÖÉè¼ÆÐÐΪ±»ÒÔΪΥ·´ÁË·¨¹úÊý¾Ý±£»¤·¨(DPA)µÚ82Ìõ£¬Ê¹Æä³ÉΪ¼ÌÑÇÂíÑ·¡¢¹È¸è¡¢MetaºÍ΢ÈíÖ®ºóÃæ¶ÔÀàËÆ´¦·£µÄƽ̨¡£
https://thehackernews.com/2023/01/tiktok-fined-54-million-by-french.html
2¡¢Êý×Öµý±¨¹«Ë¾CellebriteµÄ1.7TBÊý¾Ý±»°ä²¼ÔÚDDoSsecret
ýÌå1ÔÂ15Èճƣ¬ÒÔÉ«ÁÐÊý×Öµý±¨¹«Ë¾CellebriteµÄ1.7TBÊý¾Ýй¶¡£ËüÊÇÊý×Öȡ֤ÁìÓòÈ·µ±Ïȹ«Ë¾Ö®Ò»£¬·¨Âɲ¿Ãź͵ý±¨»ú¹¹Ê¹ÓÃÆä·þÎñUFEDÀ´½âËøºÍ½Ó¼ûÒÆ¶¯É豸ÉϵÄÊý¾Ý¡£Õâ¼Ò¹«Ë¾ºÍÁíÒ»¼ÒÈðµäµÄȡ֤¹«Ë¾MSABµÄÊý¾ÝÒѱ»Enlace HacktivistÍÅ»ïй¶£¬ºóÀ´Í¨¹ýDDoSsecretƽ̨¹«¿ª¡£Ð¹Â¶Êý¾Ýͨ¹ýTorrent·ÖÏí£¬Ô̺¬Õû¸öCellbriteÌ×¼þ£¬ÒÔ¼°ÓÃÓÚÈí¼þ±¾µØ»¯ºÍ¿Í»§¼¼ÊõÖ¸ÄϵĴóÁ¿Îļþ¡£
https://securityaffairs.com/140838/data-breach/cellebrite-software-leaked-online.html
3¡¢°²´ÖÂÔ¾ÆÀà¹ÜÔì¾Ö(LCBO)ÍøÕ¾±»ºÚ¿Í»§Ö§¸¶ÐÅϢй¶
¾Ý1ÔÂ15ÈÕ±¨Â·£¬¼ÓÄô󰲴ÖÂÔÊ¡¾ÆÀà¹ÜÔì¾Ö(LCBO)µÄÍøÕ¾Ôâµ½Magecart¹¥»÷¡£LCBOÊÇÒ»¼Òµ±¾ÔìóÒµ£¬Ò²ÊǸùú×î´óµÄ¾ÆÀàÁãÊÛÉÌ¡£Ëüй©¹¥»÷ÕßÒѾÈëÇÔìäÍøÕ¾²¢×¢Èë¶ñÒâ´úÂ룬ּÔÚÔÚ½áÕËʱÇÔÈ¡¿Í»§µÄÖ§¸¶ÐÅÏ¢¡£µ÷²é·¢ÏÖ£¬2023Äê1ÔÂ5ÈÕÖÁ1ÔÂ10ÈÕÆÚ¼äÔÚ½áÕËÒ³ÃæÉÏÌṩÓ×ÎÒÐÅÏ¢²¢½øÈëLCBO.comÖ§¸¶Ò³ÃæµÄ¿Í»§£¬ÆäÐÅÏ¢¿ÉÄÜÒѱ»Ð¹Â¶£¬Éæ¼°ÐÕÃû¡¢Óʼþ¡¢µØÖ·¡¢ÐÅÓþ¿¨ÐÅÏ¢¡¢AeroplanºÅºÍLCBO.comÕÊ»§ÃÜÂëµÈ¡£Ä¿Ç°ÊÂÎñÈÔÔÚµ÷²éÖУ¬ÀûÓ÷¨Ê½ºÍLCBO.comÍøÕ¾ÒÑÏÂÏß¡£
https://securityaffairs.com/140823/data-breach/lcbo-magecart-attack.html
4¡¢NortonLifeLock³ÆÆä²¿ÃÅÓû§µÄÕË»§Ô⵽ʹ´¦Ìî³ä¹¥»÷
1ÔÂ13ÈÕ±¨Â·³Æ£¬Gen Digital£¨Ç°ÉíΪSymantecºÍNortonLifeLock£©ÔÚÏò¿Í»§·¢ËÍÊý¾Ýй¶֪ͨ£¬·î¸æËûÃǺڿÍÒÑͨ¹ýÍ´´¦Ìî³ä¹¥»÷ÈëÇÖ²¿ÃÅNorton Password ManagerÕÊ»§¡£NortonLifeLockÚ¹ÊÍ·£¬2022Äê12ÔÂ1ÈÕ×óÓÒ£¬¹¥»÷ÕßʹÓôӰµÍø²É°ìµÄÓû§ÃûºÍÃÜÂë³¢ÊԵǼNorton¿Í»§µÄÕÊ»§£¬ËûÃÇ12ÔÂ12ÈÕ¼ì²âµ½´óÁ¿µÄʧ°ÜµÇ¼³¢ÊÔ£¬ÕâÅú×¢´æÔÚײ¿â¹¥»÷¡£½ØÖÁ12ÔÂ22ÈÕ£¬¸Ã¹«Ë¾ÒÑʵÏÖÄÚ²¿µ÷²é·¢ÏÖ¹¥»÷ÕßÒѳɹ¦ÈëÇÖ²¿Ãſͻ§ÕË»§¡£Ä¿Ç°£¬¸Ã¹«Ë¾ÒѳÁÖÃÊÜÓ°ÏìÕÊ»§µÄÃÜÂ룬²¢½¨ÒéÓû§ÆôÓÃË«³É·ÖÉí·ÝÑéÖ¤¡£
https://www.bleepingcomputer.com/news/security/nortonlifelock-warns-that-hackers-breached-password-manager-accounts/
5¡¢trustanduse.comÒòÅäÖÃÃýÎóй¶Լ50ÍòÓû§µÄÐÅÏ¢
CybernewsÔÚ1ÔÂ11ÈÕ³ÆÆä·¢ÏÖÁËÒ»¸ö¿É¹«¿ª½Ó¼ûµÄÊý¾Ý¿â£¬ÆäÖд洢Á˶à´ï855GBµÄÓû§ºÍÒµÎñÊý¾Ý¡£ÕâЩÊý¾ÝÊôÓÚÉç½»Êг¡trustanduse.com£¬Éæ¼°Ô¼439000ÃûÓû§£¬ÓÚ6ÔÂ21ÈÕ³õ´Î±»·¢ÏÖ£¬²¢ÇÒÔÚÖÁÉÙ6¸öԵŦ·òÄڿɱ»½Ó¼û¡£×êÑÐÈËÔ±³Æ£¬ÓÉÓÚ¸ÃÍøÕ¾Ã»ÓÐÖ´ÐÐÊʵ±µÄÉí·ÝÑéÖ¤£¬Òò¶øËûÃÇ¿ÉÄܲ鿴ÀûÓ÷¨Ê½½Ó¿Ú£¨API£©µÄÎĵµºÍɳºÐ»·¾³¡£Ð¹Â¶µÄÐÅÏ¢½ÒʾÁËËûÃǺÏ×÷µÄ¹«Ë¾¡¢Êг¡Õ½Êõ¡¢¹«Ë¾µÄÔË×÷·½Ê½ÒÔ¼°¶ÔÆä²úÆ·µÄ½Ó¼ûȨÏÞ£¬Ä¿Ç°¸ÃÎÊÌâÒѱ»½â¾ö¡£
https://cybernews.com/security/social-marketplace-exposes-half-million-users/
6¡¢Î¢ÈíDefender ASR¹æ¶¨´æÔÚBug»áɾ³ýÀûÓõĿì½Ý·½Ê½
ýÌå1ÔÂ13ÈÕ±¨Â·³Æ£¬Microsoft Defender ASR¹æ¶¨´æÔÚBug£¬»á´Ó×ÀÃæ¡¢ÆðÍ·²Ëµ¥ºÍ¹¤×÷À¸ÖÐɾ³ýÀûÓ÷¨Ê½¿ì½Ý·½Ê½¡£Õý³£¹¤×÷ʱ£¬´ËASR¹æ¶¨Ó¦×èÖ¹¶ñÒâÈí¼þʹÓÃVBAºêŲÓÃWin32 API¡£µ«ÓÐÎÊÌâµÄDefenderÊðÃû(1.381.2140.0)µ¼ÖÂÁËASR¹æ¶¨ÐÐΪ²»µ±£¬Óû§µÄÀûÓ÷¨Ê½¿ì½Ý·½Ê½±»Îó±êΪ¶ñÒ⡣ΪÏàʶ¾öÕâ¸öÎÊÌ⣬΢ÈíÒѾ½ûÓÃÁËÓÐÎÊÌâµÄASR¹æ¶¨£¬²¢ÒªÇó¿Í»§ÔÚÖÎÀíÖÐÐIJé³SI MO497128ÒÔ»ñÈ¡¸ü¶à¸üС£
https://www.bleepingcomputer.com/news/microsoft/buggy-microsoft-defender-asr-rule-deletes-windows-app-shortcuts/


¾©¹«Íø°²±¸11010802024551ºÅ