¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180628

Ðû²¼Ê±¼ä 2018-06-28

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷ÊÆ±¨¸æ

 

¿¨°Í˹»ùʵÑéÊÒÔÚ2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷ÊÆ±¨¸æÖÐÖ¸³ö£¬ £¬£¬ÀÕË÷Èí¼þÕýÔÚ¿ìËÙÏûÊÅ£¬ £¬£¬¶ø¶ñÒâÍÚ¿óÈí¼þÕýÔÚÈ¡¶ø´úÖ®¡£¡£¡£¡£¡£ÔâÀÕË÷Èí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ2581026ïÔÌ­µ½2017-2018µÄ1811937£¬ £¬£¬ïÔÌ­ÁËÔ¼30%£»£»£»£»£»£»£»¶øÔâ¶ñÒâÍÚ¿óÈí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ1899236ÔöÌíµ½2017-2018µÄ2735611£¬ £¬£¬ÔöÌíÁ˽ü44.5%¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://media.kasperskycontenthub.com/wp-content/uploads/sites/58/2018/06/27125925/KSN-report_Ransomware-and-malicious-cryptominers_2016-2018_ENG.pdf

 

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼ÍøÂçÍþв±¨¸æ£¬ £¬£¬ÖØµã¹Ø×¢2018Q1µÄÍþвÇ÷ÊÆ

 

McAfeeʵÑéÊÒÔÚÆäMcAfee LabsÍþв±¨¸æ£¨2018Äê6Ô°棩ÖзÖÏíÁËÆäµÚÒ»¼¾¶ÈÍøÂçµÄÊÓ²ìÑо¿ºÍÍþвͳ¼ÆÊý¾Ý£¬ £¬£¬±¨¸æÖ¸³öÕûÌåµÄжñÒâÈí¼þÔÚµÚÒ»¼¾¶ÈϽµÁË31%£¬ £¬£¬µ«·¸·¨·Ö×ÓÕýÔÚ¿ª·¢ÓÃÓÚÌÓ±ÜÇå¾²·ÀÓùµÄÐÂÊÖÒÕºÍÕ½ÂÔ¡£¡£¡£¡£¡£µÚÒ»¼¾¶ÈµÄÕûÌåÇå¾²ÊÂÎñÔöÌíÁË41%£¬ £¬£¬ÆäÖÐÕë¶Ô¶à¸öµØÇøµÄÊÂÎñÔöÌí×î´ó£¬ £¬£¬Îª67%£¬ £¬£¬Õë¶ÔÃÀ¹úµÄÇå¾²ÊÂÎñÔöÌíÁË40%¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.mcafee.com/enterprise/en-us/assets/reports/rp-quarterly-threats-jun-2018.pdf

 

¡¾Êý¾Ýй¶¡¿FastBookingÔâºÚ¿ÍÈëÇÖ£¬ £¬£¬Êý°Ù¼ÒÂùݵÄÓû§Êý¾Ýй¶

 

°ÍÀèÂùÝÔ¤¶©¹«Ë¾FastBookingÔâºÚ¿ÍÈëÇÖ£¬ £¬£¬Êý°Ù¼ÒÂùݵÄÓû§Êý¾Ýй¶¡£¡£¡£¡£¡£FastBooking³Æ¹¥»÷ÕßÔÚ6ÔÂ14ÈÕʹÓÃÆäЧÀÍÆ÷ÉÏÒ»¸öÈí¼þµÄÎó²î×°ÖÃÁ˶ñÒâÈí¼þ£¬ £¬£¬²¢ÇÔÈ¡ÁËÂùÝÓû§µÄÐÕÃû¡¢¹ú¼®¡¢µØµã¡¢µç×ÓÓʼþµØµãºÍÂùÝÔ¤¶¨Ïà¹ØÐÅÏ¢£¨ÂùÝÃû³Æ¡¢ÈëסºÍÍË·¿£©µÈÊý¾Ý£¬ £¬£¬ÇÔÈ¡µÄÊý¾Ý»¹°üÀ¨²¿·ÖÓû§µÄÒøÐп¨ÐÅÏ¢£¬ £¬£¬È翨ºÅ¡¢ÓâÆÚÈÕÆÚµÈ¡£¡£¡£¡£¡£FastBooking³Æ¸ÃÊÂÎñÓ°ÏìÁËÈÕ±¾µÄ380¼ÒÂùÝ£¬ £¬£¬Bleeping ComputerÒÔΪÕâÒ»Êý×ÖÔÚÈ«Çò¹æÄ£ÄÚ¿ÉÄÜÁè¼ÝÁË1000¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/hundreds-of-hotels-affected-by-data-breach-at-hotel-booking-software-provider/

 

¡¾Çå¾²Îó²î¡¿Ñо¿Ö°Ô±Åû¶WordPressÖеÄÒ»¸öÉÐδÐÞ¸´µÄÇå¾²Îó²î

 

RIPSÇå¾²Ñо¿Ö°Ô±Åû¶WordPressÖеÄÒ»¸öÇå¾²Îó²î£¬ £¬£¬¸ÃÎó²îÓÚ2017Äê11Ô±¨¸æ¸øWordPress¿ª·¢ÍŶÓ£¬ £¬£¬µ«WordPress¿ª·¢ÍŶӲ¢Î´Ðû²¼ÐÞ¸´²¹¶¡¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ¾ßÓÐÌû×ӱ༭Æ÷»á¼ûȨÏÞµÄÓû§£¨¿ÉÒÔÉÏ´«ºÍɾ³ýͼƬ¼°ÆäËõÂÔͼµÄÓû§£©¿ÉÔÚÍøÕ¾ÉÏ×¢Èë¶ñÒâ´úÂ룬 £¬£¬µ¼ÖÂWordPress½¹µãµÄÒªº¦Îļþ±»É¾³ý¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÖÒÑԳƾßÓÐÒ»¶¨¼¶±ðȨÏÞµÄÓû§¿ÉʹÓôËÎó²îÐ®ÖÆÍøÕ¾£¬ £¬£¬¸ÃÎó²îÓ°ÏìÁËËùÓеÄWordPress°æ±¾¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/unpatched-flaw-disclosed-in-wordpress-cms-core/

 

¡¾Îó²î²¹¶¡¡¿SophosÐû²¼ÆäÇå¾²·À»¤²úÆ·µÄ¸üУ¬ £¬£¬ÐÞ¸´¶à¸öÇå¾²Îó²î

 

NettitudeÇå¾²Ñо¿Ö°Ô±ÔÚSophos SafeGuardÇå¾²·À»¤²úÆ·Öз¢Ã÷7¸öÍâµØÌáȨÎó²î£¬ £¬£¬ÕâЩÎó²îµÄ±àºÅΪCVE-2018-6851µ½CVE-2018-6857¡£¡£¡£¡£¡£Ñо¿Ö°Ô±Åû¶ÁËÿһ¸öÎó²îµÄÊÖÒÕϸ½Ú£¬ £¬£¬²¢Ðû²¼ÁËÒ»¸öÑÝʾÔõÑùÌáȨÖÁSYSTEMµÄÊÓÆµ¡£¡£¡£¡£¡£Sophos֤ʵÕâЩÎó²îÓ°ÏìÁËWindowsƽ̨µÄSafeGuard Enterprise Client¡¢SafeGuard EasyºÍSafeGuard LAN Crypt²úÆ·£¬ £¬£¬²¢ÒÑÐû²¼ÁËÏà¹ØÐÞ¸´²¹¶¡¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/sophos-patches-privilege-escalation-flaws-safeguard-products

 

¡¾ÍþвÇ鱨¡¿Ñо¿ÍŶӷ¢Ã÷AsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƭ»î¶¯

 

McAfee Mobile ResearchÍŶӷ¢Ã÷AsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƭ»î¶¯£¬ £¬£¬ÆäÖÐÖÁÉÙ15¸ö¶ñÒâÓ¦ÓÃÓÚ2018ÄêÔÚGoogle PlayÉÏÐû²¼¡£¡£¡£¡£¡£AsiaHitGroup GangÖÁÉÙ´Ó2016ÄêÄêµ××îÏÈ»îÔ¾£¬ £¬£¬2018Äê1ÔÂÑо¿Ö°Ô±·¢Ã÷¸Ã×éÖ¯µÄ¶ñÒâÓ¦ÓÃSonvpay.CÔٴηºÆðÔÚGoogle PlayÉÏ¡£¡£¡£¡£¡£¸ÃÓ¦ÓÃÓÃÓÚÓÕÆ­Óû§¶©Ôĸ߼¶¸¶·ÑЧÀÍ£¬ £¬£¬Ñо¿Ö°Ô±Ô¤¼Æ¸Ã×éÖ¯×Ô1Ô·ÝÒÔÀ´ÒѾ­×¬È¡ÁË60500-145000ÃÀÔª¡£¡£¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://securingtomorrow.mcafee.com/mcafee-labs/asiahitgroup-gang-again-sneaks-billing-fraud-apps-onto-google-play/