TikTokÒòÎ¥·´Cookie»®¶¨±»·¨¹úCNIL·£¿î540ÍòÃÀÔª

°ä²¼¹¦·ò 2023-01-16
1¡¢TikTokÒòÎ¥·´Cookie»®¶¨±»·¨¹úCNIL·£¿î540ÍòÃÀÔª

      

¾ÝýÌå1ÔÂ14ÈÕ±¨Â·£¬TikTok±»·¨¹úÊý¾Ý±£»¤»ú¹¹(CNIL)·£¿î500ÍòÅ·Ôª£¨Ô¼ºÏ540ÍòÃÀÔª£© ¡£CNILÔÚ²¼¸æÖÐÚ¹ÊÍ£¬ËüÓÚ2021Äê6Ô²鳭ÁËTikTokÍøÕ¾£¬·¢ÏÖ¸ÃÆ½Ì¨µÄÓû§²»ÄÜÏñ½ÓÊÜcookieÄÇÑùµÈÏеػؾøcookie ¡£´Ë±í£¬Óû§Ã»ÓлñµÃÓйØcookieÓô¦µÄ×ã¹»¾ßÌåÐÅÏ¢ ¡£ÕâÖÖÉè¼ÆÐÐΪ±»ÒÔΪΥ·´ÁË·¨¹úÊý¾Ý±£»¤·¨(DPA)µÚ82Ìõ£¬Ê¹Æä³ÉΪ¼ÌÑÇÂíÑ·¡¢¹È¸è¡¢MetaºÍ΢ÈíÖ®ºóÃæ¶ÔÀàËÆ´¦·£µÄƽ̨ ¡£


https://thehackernews.com/2023/01/tiktok-fined-54-million-by-french.html


2¡¢Êý×Öµý±¨¹«Ë¾CellebriteµÄ1.7TBÊý¾Ý±»°ä²¼ÔÚDDoSsecret

      

ýÌå1ÔÂ15Èճƣ¬ÒÔÉ«ÁÐÊý×Öµý±¨¹«Ë¾CellebriteµÄ1.7TBÊý¾Ýй¶ ¡£ËüÊÇÊý×Öȡ֤ÁìÓòÈ·µ±Ïȹ«Ë¾Ö®Ò»£¬·¨Âɲ¿Ãź͵ý±¨»ú¹¹Ê¹ÓÃÆä·þÎñUFEDÀ´½âËøºÍ½Ó¼ûÒÆ¶¯É豸ÉϵÄÊý¾Ý ¡£Õâ¼Ò¹«Ë¾ºÍÁíÒ»¼ÒÈðµäµÄȡ֤¹«Ë¾MSABµÄÊý¾ÝÒѱ»Enlace HacktivistÍÅ»ïй¶£¬ºóÀ´Í¨¹ýDDoSsecretƽ̨¹«¿ª ¡£Ð¹Â¶Êý¾Ýͨ¹ýTorrent·ÖÏí£¬Ô̺¬Õû¸öCellbriteÌ×¼þ£¬ÒÔ¼°ÓÃÓÚÈí¼þ±¾µØ»¯ºÍ¿Í»§¼¼ÊõÖ¸ÄϵĴóÁ¿Îļþ ¡£


https://securityaffairs.com/140838/data-breach/cellebrite-software-leaked-online.html


3¡¢°²´ÖÂÔ¾ÆÀà¹ÜÔì¾Ö(LCBO)ÍøÕ¾±»ºÚ¿Í»§Ö§¸¶ÐÅϢй¶

      

¾Ý1ÔÂ15ÈÕ±¨Â·£¬¼ÓÄô󰲴ÖÂÔÊ¡¾ÆÀà¹ÜÔì¾Ö(LCBO)µÄÍøÕ¾Ôâµ½Magecart¹¥»÷ ¡£LCBOÊÇÒ»¼Òµ±¾ÔìóÒµ£¬Ò²ÊǸùú×î´óµÄ¾ÆÀàÁãÊÛÉÌ ¡£Ëüй©¹¥»÷ÕßÒѾ­ÈëÇÔìäÍøÕ¾²¢×¢Èë¶ñÒâ´úÂ룬ּÔÚÔÚ½áÕËʱÇÔÈ¡¿Í»§µÄÖ§¸¶ÐÅÏ¢ ¡£µ÷²é·¢ÏÖ£¬2023Äê1ÔÂ5ÈÕÖÁ1ÔÂ10ÈÕÆÚ¼äÔÚ½áÕËÒ³ÃæÉÏÌṩÓ×ÎÒÐÅÏ¢²¢½øÈëLCBO.comÖ§¸¶Ò³ÃæµÄ¿Í»§£¬ÆäÐÅÏ¢¿ÉÄÜÒѱ»Ð¹Â¶£¬Éæ¼°ÐÕÃû¡¢Óʼþ¡¢µØÖ·¡¢ÐÅÓþ¿¨ÐÅÏ¢¡¢AeroplanºÅºÍLCBO.comÕÊ»§ÃÜÂëµÈ ¡£Ä¿Ç°ÊÂÎñÈÔÔÚµ÷²éÖУ¬ÀûÓ÷¨Ê½ºÍLCBO.comÍøÕ¾ÒÑÏÂÏß ¡£


https://securityaffairs.com/140823/data-breach/lcbo-magecart-attack.html


4¡¢NortonLifeLock³ÆÆä²¿ÃÅÓû§µÄÕË»§Ô⵽ʹ´¦Ìî³ä¹¥»÷

      

1ÔÂ13ÈÕ±¨Â·³Æ£¬Gen Digital£¨Ç°ÉíΪSymantecºÍNortonLifeLock£©ÔÚÏò¿Í»§·¢ËÍÊý¾Ýй¶֪ͨ£¬·î¸æËûÃǺڿÍÒÑͨ¹ýÍ´´¦Ìî³ä¹¥»÷ÈëÇÖ²¿ÃÅNorton Password ManagerÕÊ»§ ¡£NortonLifeLockÚ¹ÊÍ·£¬2022Äê12ÔÂ1ÈÕ×óÓÒ£¬¹¥»÷ÕßʹÓôӰµÍø²É°ìµÄÓû§ÃûºÍÃÜÂë³¢ÊԵǼNorton¿Í»§µÄÕÊ»§£¬ËûÃÇ12ÔÂ12ÈÕ¼ì²âµ½´óÁ¿µÄʧ°ÜµÇ¼³¢ÊÔ£¬ÕâÅú×¢´æÔÚײ¿â¹¥»÷ ¡£½ØÖÁ12ÔÂ22ÈÕ£¬¸Ã¹«Ë¾ÒÑʵÏÖÄÚ²¿µ÷²é·¢ÏÖ¹¥»÷ÕßÒѳɹ¦ÈëÇÖ²¿Ãſͻ§ÕË»§ ¡£Ä¿Ç°£¬¸Ã¹«Ë¾ÒѳÁÖÃÊÜÓ°ÏìÕÊ»§µÄÃÜÂ룬²¢½¨ÒéÓû§ÆôÓÃË«³É·ÖÉí·ÝÑéÖ¤ ¡£


https://www.bleepingcomputer.com/news/security/nortonlifelock-warns-that-hackers-breached-password-manager-accounts/


5¡¢trustanduse.comÒòÅäÖÃÃýÎóй¶Լ50ÍòÓû§µÄÐÅÏ¢

      

CybernewsÔÚ1ÔÂ11ÈÕ³ÆÆä·¢ÏÖÁËÒ»¸ö¿É¹«¿ª½Ó¼ûµÄÊý¾Ý¿â£¬ÆäÖд洢Á˶à´ï855GBµÄÓû§ºÍÒµÎñÊý¾Ý ¡£ÕâЩÊý¾ÝÊôÓÚÉç½»Êг¡trustanduse.com£¬Éæ¼°Ô¼439000ÃûÓû§£¬ÓÚ6ÔÂ21ÈÕ³õ´Î±»·¢ÏÖ£¬²¢ÇÒÔÚÖÁÉÙ6¸öԵŦ·òÄڿɱ»½Ó¼û ¡£×êÑÐÈËÔ±³Æ£¬ÓÉÓÚ¸ÃÍøÕ¾Ã»ÓÐÖ´ÐÐÊʵ±µÄÉí·ÝÑéÖ¤£¬Òò¶øËûÃÇ¿ÉÄܲ鿴ÀûÓ÷¨Ê½½Ó¿Ú£¨API£©µÄÎĵµºÍɳºÐ»·¾³ ¡£Ð¹Â¶µÄÐÅÏ¢½ÒʾÁËËûÃǺÏ×÷µÄ¹«Ë¾¡¢Êг¡Õ½Êõ¡¢¹«Ë¾µÄÔË×÷·½Ê½ÒÔ¼°¶ÔÆä²úÆ·µÄ½Ó¼ûȨÏÞ£¬Ä¿Ç°¸ÃÎÊÌâÒѱ»½â¾ö ¡£


https://cybernews.com/security/social-marketplace-exposes-half-million-users/


6¡¢Î¢ÈíDefender ASR¹æ¶¨´æÔÚBug»áɾ³ýÀûÓõĿì½Ý·½Ê½

      

ýÌå1ÔÂ13ÈÕ±¨Â·³Æ£¬Microsoft Defender ASR¹æ¶¨´æÔÚBug£¬»á´Ó×ÀÃæ¡¢ÆðÍ·²Ëµ¥ºÍ¹¤×÷À¸ÖÐɾ³ýÀûÓ÷¨Ê½¿ì½Ý·½Ê½ ¡£Õý³£¹¤×÷ʱ£¬´ËASR¹æ¶¨Ó¦×èÖ¹¶ñÒâÈí¼þʹÓÃVBAºêŲÓÃWin32 API ¡£µ«ÓÐÎÊÌâµÄDefenderÊðÃû(1.381.2140.0)µ¼ÖÂÁËASR¹æ¶¨ÐÐΪ²»µ±£¬Óû§µÄÀûÓ÷¨Ê½¿ì½Ý·½Ê½±»Îó±êΪ¶ñÒâ ¡£ÎªÏàʶ¾öÕâ¸öÎÊÌ⣬΢ÈíÒѾ­½ûÓÃÁËÓÐÎÊÌâµÄASR¹æ¶¨£¬²¢ÒªÇó¿Í»§ÔÚÖÎÀíÖÐÐIJ鳭SI MO497128ÒÔ»ñÈ¡¸ü¶à¸üР¡£


https://www.bleepingcomputer.com/news/microsoft/buggy-microsoft-defender-asr-rule-deletes-windows-app-shortcuts/