¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180628
Ðû²¼Ê±¼ä 2018-06-28
¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷ÊÆ±¨¸æ
¿¨°Í˹»ùʵÑéÊÒÔÚ2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷ÊÆ±¨¸æÖÐÖ¸³ö£¬£¬£¬ÀÕË÷Èí¼þÕýÔÚ¿ìËÙÏûÊÅ£¬£¬£¬¶ø¶ñÒâÍÚ¿óÈí¼þÕýÔÚÈ¡¶ø´úÖ®¡£¡£¡£¡£¡£ÔâÀÕË÷Èí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ2581026ïÔ̵½2017-2018µÄ1811937£¬£¬£¬ïÔÌÁËÔ¼30%£»£»£»£»£»£»£»¶øÔâ¶ñÒâÍÚ¿óÈí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ1899236ÔöÌíµ½2017-2018µÄ2735611£¬£¬£¬ÔöÌíÁ˽ü44.5%¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://media.kasperskycontenthub.com/wp-content/uploads/sites/58/2018/06/27125925/KSN-report_Ransomware-and-malicious-cryptominers_2016-2018_ENG.pdf
¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼ÍøÂçÍþв±¨¸æ£¬£¬£¬ÖØµã¹Ø×¢2018Q1µÄÍþвÇ÷ÊÆ
McAfeeʵÑéÊÒÔÚÆäMcAfee LabsÍþв±¨¸æ£¨2018Äê6Ô°棩ÖзÖÏíÁËÆäµÚÒ»¼¾¶ÈÍøÂçµÄÊÓ²ìÑо¿ºÍÍþвͳ¼ÆÊý¾Ý£¬£¬£¬±¨¸æÖ¸³öÕûÌåµÄжñÒâÈí¼þÔÚµÚÒ»¼¾¶ÈϽµÁË31%£¬£¬£¬µ«·¸·¨·Ö×ÓÕýÔÚ¿ª·¢ÓÃÓÚÌÓ±ÜÇå¾²·ÀÓùµÄÐÂÊÖÒÕºÍÕ½ÂÔ¡£¡£¡£¡£¡£µÚÒ»¼¾¶ÈµÄÕûÌåÇå¾²ÊÂÎñÔöÌíÁË41%£¬£¬£¬ÆäÖÐÕë¶Ô¶à¸öµØÇøµÄÊÂÎñÔöÌí×î´ó£¬£¬£¬Îª67%£¬£¬£¬Õë¶ÔÃÀ¹úµÄÇå¾²ÊÂÎñÔöÌíÁË40%¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.mcafee.com/enterprise/en-us/assets/reports/rp-quarterly-threats-jun-2018.pdf
¡¾Êý¾Ýй¶¡¿FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬£¬Êý°Ù¼ÒÂùݵÄÓû§Êý¾Ýй¶
°ÍÀèÂùÝÔ¤¶©¹«Ë¾FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬£¬Êý°Ù¼ÒÂùݵÄÓû§Êý¾Ýй¶¡£¡£¡£¡£¡£FastBooking³Æ¹¥»÷ÕßÔÚ6ÔÂ14ÈÕʹÓÃÆäЧÀÍÆ÷ÉÏÒ»¸öÈí¼þµÄÎó²î×°ÖÃÁ˶ñÒâÈí¼þ£¬£¬£¬²¢ÇÔÈ¡ÁËÂùÝÓû§µÄÐÕÃû¡¢¹ú¼®¡¢µØµã¡¢µç×ÓÓʼþµØµãºÍÂùÝÔ¤¶¨Ïà¹ØÐÅÏ¢£¨ÂùÝÃû³Æ¡¢ÈëסºÍÍË·¿£©µÈÊý¾Ý£¬£¬£¬ÇÔÈ¡µÄÊý¾Ý»¹°üÀ¨²¿·ÖÓû§µÄÒøÐп¨ÐÅÏ¢£¬£¬£¬È翨ºÅ¡¢ÓâÆÚÈÕÆÚµÈ¡£¡£¡£¡£¡£FastBooking³Æ¸ÃÊÂÎñÓ°ÏìÁËÈÕ±¾µÄ380¼ÒÂùݣ¬£¬£¬Bleeping ComputerÒÔΪÕâÒ»Êý×ÖÔÚÈ«Çò¹æÄ£ÄÚ¿ÉÄÜÁè¼ÝÁË1000¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/hundreds-of-hotels-affected-by-data-breach-at-hotel-booking-software-provider/
¡¾Çå¾²Îó²î¡¿Ñо¿Ö°Ô±Åû¶WordPressÖеÄÒ»¸öÉÐδÐÞ¸´µÄÇå¾²Îó²î
RIPSÇå¾²Ñо¿Ö°Ô±Åû¶WordPressÖеÄÒ»¸öÇå¾²Îó²î£¬£¬£¬¸ÃÎó²îÓÚ2017Äê11Ô±¨¸æ¸øWordPress¿ª·¢ÍŶӣ¬£¬£¬µ«WordPress¿ª·¢ÍŶӲ¢Î´Ðû²¼ÐÞ¸´²¹¶¡¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ¾ßÓÐÌû×Ó±à¼Æ÷»á¼ûȨÏÞµÄÓû§£¨¿ÉÒÔÉÏ´«ºÍɾ³ýͼƬ¼°ÆäËõÂÔͼµÄÓû§£©¿ÉÔÚÍøÕ¾ÉÏ×¢Èë¶ñÒâ´úÂ룬£¬£¬µ¼ÖÂWordPress½¹µãµÄÒªº¦Îļþ±»É¾³ý¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÖÒÑԳƾßÓÐÒ»¶¨¼¶±ðȨÏÞµÄÓû§¿ÉʹÓôËÎó²îÐ®ÖÆÍøÕ¾£¬£¬£¬¸ÃÎó²îÓ°ÏìÁËËùÓеÄWordPress°æ±¾¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/unpatched-flaw-disclosed-in-wordpress-cms-core/
¡¾Îó²î²¹¶¡¡¿SophosÐû²¼ÆäÇå¾²·À»¤²úÆ·µÄ¸üУ¬£¬£¬ÐÞ¸´¶à¸öÇå¾²Îó²î
NettitudeÇå¾²Ñо¿Ö°Ô±ÔÚSophos SafeGuardÇå¾²·À»¤²úÆ·Öз¢Ã÷7¸öÍâµØÌáȨÎó²î£¬£¬£¬ÕâЩÎó²îµÄ±àºÅΪCVE-2018-6851µ½CVE-2018-6857¡£¡£¡£¡£¡£Ñо¿Ö°Ô±Åû¶ÁËÿһ¸öÎó²îµÄÊÖÒÕϸ½Ú£¬£¬£¬²¢Ðû²¼ÁËÒ»¸öÑÝʾÔõÑùÌáȨÖÁSYSTEMµÄÊÓÆµ¡£¡£¡£¡£¡£Sophos֤ʵÕâЩÎó²îÓ°ÏìÁËWindowsƽ̨µÄSafeGuard Enterprise Client¡¢SafeGuard EasyºÍSafeGuard LAN Crypt²úÆ·£¬£¬£¬²¢ÒÑÐû²¼ÁËÏà¹ØÐÞ¸´²¹¶¡¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.securityweek.com/sophos-patches-privilege-escalation-flaws-safeguard-products
¡¾ÍþвÇ鱨¡¿Ñо¿ÍŶӷ¢Ã÷AsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƻ
McAfee Mobile ResearchÍŶӷ¢Ã÷AsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƻ£¬£¬£¬ÆäÖÐÖÁÉÙ15¸ö¶ñÒâÓ¦ÓÃÓÚ2018ÄêÔÚGoogle PlayÉÏÐû²¼¡£¡£¡£¡£¡£AsiaHitGroup GangÖÁÉÙ´Ó2016ÄêÄêµ××îÏÈ»îÔ¾£¬£¬£¬2018Äê1ÔÂÑо¿Ö°Ô±·¢Ã÷¸Ã×éÖ¯µÄ¶ñÒâÓ¦ÓÃSonvpay.CÔٴηºÆðÔÚGoogle PlayÉÏ¡£¡£¡£¡£¡£¸ÃÓ¦ÓÃÓÃÓÚÓÕÆÓû§¶©Ôĸ߼¶¸¶·ÑЧÀÍ£¬£¬£¬Ñо¿Ö°Ô±Ô¤¼Æ¸Ã×éÖ¯×Ô1Ô·ÝÒÔÀ´ÒѾ׬ȡÁË60500-145000ÃÀÔª¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://securingtomorrow.mcafee.com/mcafee-labs/asiahitgroup-gang-again-sneaks-billing-fraud-apps-onto-google-play/