¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180613
Ðû²¼Ê±¼ä 2018-06-13¡¾ÍþвÇ鱨¡¿Ñо¿Åú×¢¶ñÒâÍÚ¿ó»î¶¯Ò»Á¬ìÉý£¬£¬£¬£¬£¬£¬£¬Ô¼5%µÄÃÅÂÞ±ÒΪ¶ñÒâÍÚ¿ó»ñµÃ
ÔÎÄÁ´½Ó£ºhttps://researchcenter.paloaltonetworks.com/2018/06/unit42-rise-cryptocurrency-miners/
¡¾ÍþвÇ鱨¡¿App StoreÃ÷ȷեȡʹÓÃApple×°±¸¾ÙÐÐÍÚ¿óµÄÓ¦ÓÃ
Apple¸üÐÂÁËÆäAPP StoreÖ¸ÄϵÄÓ²¼þ¼æÈÝÐÔ²¿·Ö£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚÃ÷ȷեȡiOSºÍMacÓ¦Óü°¹ã¸æÔÚºǫ́¾ÙÐÐÍڿ󡣡£¡£¡£ÕâÒ»ÐÐΪÊÇΪÁ˱£»£»£»£»£»£»¤Óû§µÄApple×°±¸£¬£¬£¬£¬£¬£¬£¬¸ÃÖ¸ÄÏÖ¸³öÍÚ¿ó»î¶¯½«Ñ¸Ëٺľ¡×°±¸µÄµç³Ø¡¢±¬·¢¹ý¶àµÄÈÈÁ¿ÒÔ¼°¸ø×°±¸×ÊÔ´´øÀ´²»ÐëÒªµÄѹÁ¦¡£¡£¡£¡£µ«ÈôÊÇÍÚ¿óÐÐΪÊÇÔÚ×°±¸Ö®ÍâµÄµØ·½¾ÙÐУ¬£¬£¬£¬£¬£¬£¬ÈçÔ¶³ÌЧÀÍÆ÷»òÔÆ£¬£¬£¬£¬£¬£¬£¬¸ÃÓ¦Óý«²»»á±»Õ¥È¡¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/06/cryptocurrency-mining-apps.html
¡¾Îó²î²¹¶¡¡¿VMwareÐû²¼AirWatch AgentµÄÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´¿Éµ¼ÖÂRCEµÄÇå¾²Îó²î
VMwareÐÞ¸´ÁËAirWatch AgentÓ¦ÓÃÖеÄÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2018-6968£©¡£¡£¡£¡£¸ÃÎó²î¿ÉÔÊÐíδ¾ÊÚȨµÄ¹¥»÷Õß½¨ÉèºÍÖ´ÐÐAgentɳºÐºÍÆäËü¿É¹ûÕæ»á¼ûµÄĿ¼£¨ÈçSD¿¨£©ÖеÄÎļþ¡£¡£¡£¡£VMwareÔÚAndroidƽ̨µÄAirWatch Agent°æ±¾8.2ºÍWindows Mobileƽ̨µÄ°æ±¾6.5.2ÖÐÐÞ¸´Á˸ÃÎó²î£¬£¬£¬£¬£¬£¬£¬iOS°æ±¾²»ÊÜÓ°Ïì¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/73452/hacking/airwatch-agent-rce.html
¡¾Êý¾Ýй¶¡¿Weight Watchers¹«Ë¾µÄKubernetesЧÀÍÆ÷δÉèÖÃÃÜÂ룬£¬£¬£¬£¬£¬£¬²¿·Ö»ù´¡ÉèÊ©µÄƾ֤й¶
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/weight-watchers-it-infrastructure-exposed-via-no-password-kubernetes-server/
½ñÈÕÆÆÏþAcFunÐû²¼Í¨¸æ³ÆÆäÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬½üÍòÍòÓû§µÄÊý¾Ýй¶£¬£¬£¬£¬£¬£¬£¬°üÀ¨Óû§ID¡¢êdzơ¢¼ÓÃÜ´æ´¢µÄÃÜÂëµÈ¡£¡£¡£¡£ÔÚ2017Äê7ÔÂ7ÈÕ֮ǰµÇ¼¹ýAcFunµÄÓû§ÊÜÓ°Ï죬£¬£¬£¬£¬£¬£¬µ«Ò²½¨ÒéÃÜÂë¹ýÓÚ¼òÆÓµÄÆäËüÓû§ÐÞ¸ÄÃÜÂë¡£¡£¡£¡£AcFun³ÆÒѾÁªºÏÄÚ²¿ºÍÍⲿµÄÊÖÒÕר¼Ò¶ÔÎÊÌâ¾ÙÐÐÅŲ飬£¬£¬£¬£¬£¬£¬²¢Éý¼¶ÏµÍ³µÄÇ徲Ʒ¼¶¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttp://www.sohu.com/a/235455264_250147
FBIºÍ¹ú¼ÊÖ´·¨»ú¹¹ÁªºÏ¾Ð²¶ÁËÉæ¼°ÄáÈÕÀûÑÇBECÕ©ÆÍÅ»ïµÄ74Ãû·¸·¨·Ö×Ó£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÔÚÃÀ¹ú¾Ð²¶ÁË42Ãû£¬£¬£¬£¬£¬£¬£¬ÔÚÄáÈÕÀûÑǾв¶ÁË29Ãû£¬£¬£¬£¬£¬£¬£¬ÔÚ¼ÓÄôó¡¢Ã«ÀïÇó˹ºÍ²¨À¼»®·Ö¾Ð²¶ÁË1Ãû¡£¡£¡£¡£Õâ´ÎÖ´·¨Ðж¯ÊÇFBIÖ÷µ¼µÄÉÌÒµÚ²ÆÊÓ²ìÐж¯Operation Wire WireµÄÒ»²¿·Ö£¬£¬£¬£¬£¬£¬£¬Õþ¸®¹²½É»ñÁËÔ¼240ÍòÃÀÔª£¬£¬£¬£¬£¬£¬£¬²¢×·»ØÁËÔ¼1400ÍòÃÀÔªµÄÚ²ÆÉúÒâ×ʽ𡣡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/06/email-phishing-nigerian-scams.html