¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180702
Ðû²¼Ê±¼ä 2018-07-02¡¾¶ñÒâÈí¼þ¡¿Ñо¿Ö°Ô±·¢Ã÷Õë¶Ô230¶àÍòÇ®°üµØµãµÄ¶ñÒâÈí¼þClipboard HijackersµÄбäÌå
BleepingComputer·¢Ã÷Ò»¸öClipboard HijackersµÄÐÂÑù±¾£¬£¬£¬¸ÃÑù±¾Õë¶ÔµÄ¼ÓÃÜÇ®±ÒµØµãÁè¼Ý230Íò¸ö¡£¡£¡£¡£¡£¡£Clipboard Hijackersͨ¹ý¼àÊÓWindows¼ôÌù°åÖеļÓÃÜÇ®±ÒÇ®°üµØµãÀ´ÊÂÇ飬£¬£¬µ±¼ì²âµ½ÏìÓ¦µÄµØµãʱ£¬£¬£¬Ôò»áÓù¥»÷Õߵĵصã¾ÙÐÐÌæ»»¡£¡£¡£¡£¡£¡£ÕâÖÖ¶ñÒâÈí¼þÔÚºǫ́ÔËÐУ¬£¬£¬Óû§ºÜÄÑ·¢Ã÷Æä±»Ñ¬È¾¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/clipboard-hijacker-malware-monitors-23-million-bitcoin-addresses/
¡¾¶ñÒâÈí¼þ¡¿Çå¾²Ñо¿Ö°Ô±·¢Ã÷macOSÖеÄжñÒâÈí¼þOSX.Dummy
¶ñÒâÈí¼þÑо¿Ô±Patrick Wardle·¢Ã÷Ò»¸öÐÂmacOS¶ñÒâÈí¼þOSX.Dummy¡£¡£¡£¡£¡£¡£OSX.DummyÖ÷ÒªÕë¶Ô¼ÓÃÜÇ®±ÒÉçÇø£¬£¬£¬¹¥»÷Õßͨ¹ýÔÚÓë¼ÓÃÜÏà¹ØµÄSlack»òDiscord̸Ìì×éÄÚð³äÖÎÀíÔ±»òÒªº¦Ö°Ô±£¬£¬£¬ÔÚȺ×éÄÚ¹²Ïí¿ÉÏÂÔØ²¢Ö´ÐжñÒâ¶þ½øÖÆÎļþµÄ´úÂëÆ¬¶Ï£¬£¬£¬ÓÕʹÓû§ÔËÐС£¡£¡£¡£¡£¡£Í¨¹ý¸Ã¶ñÒâÈí¼þ£¬£¬£¬¹¥»÷ÕßÄܹ»ÔÚÄ¿µÄϵͳÉÏÒÔrootȨÏÞÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74023/cyber-crime/osx-dummy-cryptocurrency.html
¡¾Çå¾²²¥±¨¡¿Ñо¿Ö°Ô±·¢Ã÷Nintendo SwitchÔ½ÓüÈí¼þSX OS°üÀ¨·ÀÆÆ½â´úÂë
Ó¢¹úÑо¿Ö°Ô±Mike Heskin·¢Ã÷Nintendo SwitchµÄÔ½ÓüÈí¼þSX OSµÄ¿ª·¢ÕßÔÚÆä´úÂëÖаüÀ¨ÁË·ÀÆÆ½â´úÂë¡£¡£¡£¡£¡£¡£SX OSͨ¹ýÆÆ½âNintendo Switch£¬£¬£¬Ê¹µÃÓÎÏ·Íæ¼Ò¿ÉÒÔÍæµÁ°æÓÎÏ·£¬£¬£¬µ«¼¥Ð¦µÄÊÇ£¬£¬£¬Æä¿ª·¢ÍŶÓXecuterΪÁË×èÖ¹ÆäËûÈËÆÆ½âÆäÈí¼þ£¬£¬£¬ÔÚSX OS¹Ì¼þÖÐÌí¼ÓÁË·ÀÆÆ½â´úÂ룬£¬£¬µ±¼ì²âµ½ÆÆ½âÐÐΪʱ£¬£¬£¬Ê¹ÓÃÍêÈ«Ëæ»úµÄÃÜÂëÀ´Ëø¶¨SwitchµÄÄÚ²¿´æ´¢Æ÷£¨eMMC£©¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/06/nintendo-switch-jailbreak.html
¡¾Çå¾²²¥±¨¡¿Á½ÃûºÚ¿ÍÒòÐ®ÖÆÁè¼Ý70Íò¸öÕË»§Ôâ¶íÂÞ˹¾¯·½¾Ð²¶
¶íÂÞ˹¾¯·½¾Ð²¶Á½ÃûÇàÉÙÄêºÚ¿Í£¬£¬£¬Ö¸¿ØËûÃÇÈëÇÖ¡¢Ð®ÖÆÒÔ¼°³öÊÛÁè¼Ý70Íò¸öÓû§ÕË»§£¬£¬£¬ÕâЩÕË»§ÈªÔ´ÓÚÔÚÏßÊÐËÁ¡¢Ö§¸¶ÏµÍ³ÒÔ¼°²©²ÊÍøÕ¾µÈ¡£¡£¡£¡£¡£¡£Çå¾²³§ÉÌGroup-IBÒÔΪÕâÁ½ÃûºÚ¿ÍʹÓÃй¶µÄÊý¾ÝÀ´Ö´ÐÐײ¿â¹¥»÷£¬£¬£¬ÒÔ»ñÈ¡ÕË»§µÄ»á¼ûȨÏÞ¡£¡£¡£¡£¡£¡£ËûÃÇ»¹ÔÚºÚ¿ÍÂÛ̳ÉϳöÊÛÕâЩÕË»§£¬£¬£¬¼ÛǮΪ5ÃÀÔª»òÓà¶îµÄ20%-30%¡£¡£¡£¡£¡£¡£ÊÓ²ìÖ°Ô±ÒÔΪÁ½È˵Ä׬ǮÁè¼Ý50Íò¬²¼£¨Ô¼ºÏ7900ÃÀÔª£©¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/two-hackers-arrested-for-hijacking-over-700-000-online-accounts/
¡¾Õþ²ß¹æÔò¡¿Ó¢¹úÕþ¸®Öƶ©ÐÂÍøÂçÇå¾²±ê×¼£¬£¬£¬Ö¼ÔÚΪÕþ¸®²¿·ÖÉ趨×îµÍÏ޶ȵÄÇå¾²»ù×¼
Ó¢¹úÕþ¸®Öƶ©ÁËÒ»ÏîеÄÍøÂçÇå¾²±ê×¼£¬£¬£¬Ö¼ÔÚΪËùÓв¿·ÖÉè¶¨Ç¿ÖÆÐÔµÄÇå¾²»ù×¼¡£¡£¡£¡£¡£¡£¸Ã¡¶×îµÍÍøÂçÇå¾²±ê×¼¡·Ìá³öÁËËùÓÐÕþ¸®²¿·Ö±ØÐè×ñÕÕµÄ×îµÍÇå¾²²½·¥¡£¡£¡£¡£¡£¡£Ëæ×Åʱ¼äµÄÍÆÒÆ£¬£¬£¬ÕâЩ²½·¥Ò²»áÒ»Ö±Éý¼¶ÒÔÓ¦¶ÔеÄÍþв»òÎó²î¡£¡£¡£¡£¡£¡£¸Ã±ê×¼ÖØµã¹Ø×¢5¸öÒªº¦ÁìÓò£¬£¬£¬°üÀ¨Ê¶±ð¡¢±£»£»£»£»£»¤¡¢¼ì²â¡¢ÏìÓ¦ºÍ»Ö¸´¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.infosecurity-magazine.com/news/uk-government-minimum/
¡¾¹¥»÷ÊÂÎñ¡¿TrezorÇ®°ü¹ÙÍøÔâDNSÎÛȾ»òBGPÐ®ÖÆ£¬£¬£¬²¿·ÖÓû§Ôâ´¹ÂÚ¹¥»÷
¼ÓÃÜÇ®±ÒÇ®°üTrezorµÄ²¿·ÖÓû§ÔÚÖÜĩʱ´úÔâ´¹ÂÚ¹¥»÷¡£¡£¡£¡£¡£¡£TrezorÍŶÓÊÓ²ìºó³ÆÆä¹ÙÍøÔâDNSÎÛȾ»òBGPÐ®ÖÆ£¬£¬£¬¹¥»÷ÕßÐ®ÖÆÁËÆä¹ÙÍøwallet.trezor.ioµÄÁ÷Á¿£¬£¬£¬²¢½«Óû§Öض¨Ïòµ½Ò»¸öÐéαµÄ¶ñÒâ´¹ÂÚÍøÕ¾¡£¡£¡£¡£¡£¡£½øÒ»²½µÄÊӲ컹ÔÚ¾ÙÐÐÖУ¬£¬£¬ÒÔÈ·¶¨¸ÃÊÂÎñ¼òÖ±ÇÐÔµ¹ÊÔÓÉ¡£¡£¡£¡£¡£¡£Óû§ÔÚ»á¼û¸Ã´¹ÂÚÍøÕ¾Ê±£¬£¬£¬»áÓöµ½ÎÞЧµÄHTTPSÖ¤Êé¹ýʧ£¬£¬£¬²¢±»ÒªÇóÌá½»ÆäÇ®°üµÄ»Ö¸´ÖÖ×Ó¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/dns-poisoning-or-bgp-hijacking-suspected-behind-trezor-wallet-phishing-incident/