ÃÀ¹ú½ðÈÚ¹«Ë¾FAFCй¶8.85ÒÚÌõµäÖÊ´û¿î¼Í¼;macOS GatekeeperÈÆ¹ýÎó²î£¬£¬£¬£¬Ó°Ïì10.14.5¼°Ö®Ç°°æ±¾

Ðû²¼Ê±¼ä 2019-05-27
1¡¢ÃÀ¹ú½ðÈÚ¹«Ë¾FAFCй¶8.85ÒÚÌõµäÖÊ´û¿î¼Í¼

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨
 
¾ÝŦԼʱ±¨±¨µÀ£¬£¬£¬£¬ÃÀ¹ú½ðÈÚ¹«Ë¾First American Financial Corporation¹ÙÍøÉϵÄÒ»¸öÎó²îй¶ÁË16ÄêÀ´ÓëµäÖÊ´û¿îÓйصÄ8.85ÒÚÌõ¼Í¼¡£¡£¡£¡£¸ÃÎó²îÔÊÐíÈκÎÈË»á¼ûFirst American´æ´¢µÄÉç»áÇå¾²ºÅÂë¡¢ÒøÐÐÕË»§ÏêϸÐÅÏ¢¡¢¼ÝÕÕÒÔ¼°µäÖÊ´û¿îºÍ˰ÎñÐÅÏ¢¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖÕýÔÚÆÀ¹À´ËÊÂÎñ¶Ô¿Í»§ÐÅÏ¢Çå¾²ÐÔµÄÓ°Ï죬£¬£¬£¬ÔÚÄÚ²¿ÉóºËÍê³É֮ǰ£¬£¬£¬£¬½«²»»á½ÒÏþÈκÎ̸ÂÛ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.nytimes.com/2019/05/24/technology/data-leak-first-american.html


2¡¢macOS GatekeeperÈÆ¹ýÎó²î£¬£¬£¬£¬Ó°Ïì10.14.5¼°Ö®Ç°°æ±¾

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨
 
Òâ´óÀûÇå¾²³§ÉÌSegmentµÄÑо¿Ö°Ô±Filippo CavallarinÅû¶MacOS XÖеÄÒ»¸öGateKeeperÈÆ¹ýÎó²î£¬£¬£¬£¬¸ÃÎó²î¿ÉÔÊÐí¹¥»÷ÕßÔÚÎÞÐèÓû§½»»¥µÄÇéÐÎÏÂÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£GatekeeperÊÇmacOSÖеÄÄÚÖ÷ÀÓù»úÖÆ£¬£¬£¬£¬¿É×èÖ¹OSÔËÐв»ÊÜÐÅÈεijÌÐò¡£¡£¡£¡£Æ¾Ö¤Ñо¿Ö°Ô±Åû¶µÄϸ½Ú£¬£¬£¬£¬Gatekeeper½«ÍⲿÇý¶¯Æ÷ºÍÍøÂç¹²ÏíÊÓΪÇ徲λÖ㬣¬£¬£¬²¢ÔÊÐíÔËÐÐËüÃǰüÀ¨µÄÈκÎÓ¦ÓóÌÐò£¬£¬£¬£¬½«ÕâÒ»µãÓëÁíÍâÁ½¸öÕýµ±¹¦Ð§ÏàÁ¬Ïµ£¨×Ô¶¯¹ÒÔØºÍ¶Ô·ûºÅÁ´½ÓµÄÖ§³Ö£©£¬£¬£¬£¬¿ÉÒÔÈÆ¹ýGatekeeperÔËÐÐí§Òâ´úÂë¡£¡£¡£¡£¸ÃÎó²îÓ°ÏìÁËmacOS 10.14.5¼°Ö®Ç°µÄ°æ±¾£¬£¬£¬£¬ÓÉÓÚAppleÔÚ90ÌìÄÚûÓÐÐÞ¸´¸ÃÎó²î£¬£¬£¬£¬Òò´ËÑо¿Ö°Ô±Åû¶ÁËÏà¹ØÐÅÏ¢¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-unpatched-macos-gatekeeper-bypass-published-online/


3¡¢Shubert OrganizationÔ±¹¤ÕË»§ÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬¿Í»§ÐÅÏ¢¿ÉÄÜй¶

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨
 
ƾ֤²¿·Ö¿Í»§ÊÕµ½µÄÓʼþ֪ͨ£¬£¬£¬£¬Shubert Organization¶à¸öÔ±¹¤µÄµç×ÓÓʼþÕË»§ÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬ÕâЩÕË»§ÖаüÀ¨¿Í»§µÄÐÕÃû¡¢ÐÅÓÿ¨ºÅºÍµ½ÆÚÈÕÆÚµÈÃô¸ÐÐÅÏ¢£¬£¬£¬£¬µ«²»ÇåÎúÈëÇÖÕßÊÇ·ñ»á¼ûÁËÕâЩÐÅÏ¢¡£¡£¡£¡£Shubert OrganizationÓµÓÐ17¼Ò°ÙÀÏ»ã¾çÔººÍƱÎñ¹«Ë¾Telecharge¡£¡£¡£¡£³ýÁËÏò¶à¸öÖݵÄî¿Ïµ»ú¹¹ºÍÉó²é³¤±¨¸æ´ËÊÂÍ⣬£¬£¬£¬¸Ã¹«Ë¾»¹ÏòÊÜÓ°ÏìµÄÓû§Ìṩ24¸öÔµÄÃâ·ÑÐÅÓÃ¼à¿ØÐ§ÀÍ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.forbes.com/sites/marchershberg/2019/05/23/shubert-organization-suffers-data-breach/#44bc20a81de9


4¡¢Õë¶ÔMySQLЧÀÍÆ÷µÄ¹¥»÷À˳±£¬£¬£¬£¬Ö÷Òª·Ö·¢GandCrab

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨
 
SophosÑо¿Ö°Ô±Andrew Brandt·¢Ã÷Ò»¸öÕë¶ÔMySQLЧÀÍÆ÷µÄй¥»÷À˳±£¬£¬£¬£¬Æ¾Ö¤BrandtµÄ²©¿Í£¬£¬£¬£¬¹¥»÷ÕßɨÃ軥ÁªÍøÉÏ̻¶µÄMySQLÊý¾Ý¿â£¬£¬£¬£¬¼ì²éÆäµ×²ãЧÀÍÆ÷ÊÇ·ñÊÇWindowsϵͳ£¬£¬£¬£¬È»ºóͨ¹ýSQLÏÂÁîÔÚ¸ÃЧÀÍÆ÷ÉÏÖ²Èë¶ñÒâÎļþ£¬£¬£¬£¬¸ÃÎļþ½«Ê¹ÓÃÀÕË÷Èí¼þGandCrabѬȾϵͳ¡£¡£¡£¡£ÕâЩɨÃèÖ÷ÒªÕë¶ÔÉèÖùýʧ»òδÉèÃÜÂëµÄÊý¾Ý¿â¡£¡£¡£¡£Brandt¸ú×Ù¹¥»÷ÕßµÄЧÀÍÆ÷·¢Ã÷£¬£¬£¬£¬ÆäÖÐÒ»¸öGandCrabÑù±¾ÔÚÎåÌìÄÚ·Ö·¢Á˽ü800´Î£¬£¬£¬£¬ÁíÒ»¸öÑù±¾Ôò±»ÏÂÔØÁË2300¶à´Î¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/hackers-are-scanning-for-mysql-servers-to-deploy-gandcrab-ransomware/


5¡¢ÎïÁªÍø¹¥»÷µ¼ÖÂÓ¢¹úÆóҵÿÄêËðʧ³¬10ÒÚÓ¢°÷

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨
 
ƾ֤ºÉÀ¼Çå¾²³§ÉÌIrdetoµÄ×îÐÂÑо¿£¬£¬£¬£¬Õë¶ÔÎïÁªÍø×°±¸µÄÍøÂç¹¥»÷¿ÉÄÜʹµÃÓ¢¹úÿÄê¾­¼ÃËðʧÁè¼Ý10ÒÚÓ¢°÷¡£¡£¡£¡£¶ÔÓ¢¹úÔËÊä¡¢ÖÆÔìºÍÒ½ÁÆÐÐÒµµÄµ÷Ñз¢Ã÷£¬£¬£¬£¬¶ÔÅþÁ¬Ì×¼þµÄ¹¥»÷ƽ¾ùÔì³ÉµÄËðʧ´ï24.4ÍòÓ¢°÷¡£¡£¡£¡£Áè¼ÝÒ»°ëµÄÊӲ칤¾ßÉù³ÆÔÚÒÑÍùÒ»ÄêÖÐÔâÊÜÁËIoT¹¥»÷µ¼ÖµÄ×°±¸Í£» £»£»ú¡£¡£¡£¡£Îå·ÖÖ®¶þ£¨41%£©µÄÊÜ·ÃÕßÌåÏÖ¿Í»§Êý¾ÝÔÚÕâЩ¹¥»÷ÖÐÊܵ½Ë𺦡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.infosecurity-magazine.com/news/iot-attacks-cost-uk-firms-over-1bn-1/


6¡¢Ð±ÈÌØ±ÒÕ©Æ­»î¶¯£¬£¬£¬£¬Ö÷Òª·Ö·¢HiddenTearºÍBaldr

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨
 
Ñо¿Ö°Ô±Fros·¢Ã÷Ò»¸öÉù³ÆÌṩÃâ·Ñ±ÈÌØ±ÒµÄÕ©Æ­»î¶¯£¬£¬£¬£¬¹¥»÷Õßͨ¹ýÍøÕ¾ÉÏµÄ¹ã¸æ·Ö·¢Ò»¸öÃûΪ¡°±ÈÌØ±ÒÍøÂçÆ÷¡±µÄ³ÌÐò£¬£¬£¬£¬³Æ¸Ã³ÌÐò¿ÉÒÔÃâ·ÑÇÒ×Ô¶¯µØÌìÌì׬ȡ15-45ÃÀÔªµÄ±ÈÌØ±Ò¡£¡£¡£¡£µ«ÏÖʵÉϸóÌÐòÊÇÒ»¸öľÂí£¬£¬£¬£¬ÓÃÓÚÊͷŶñÒâpayload£¬£¬£¬£¬°üÀ¨ÀÕË÷Èí¼þHiddenTearÒÔ¼°ÐÅÏ¢ÇÔȡľÂíBaldr¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-bitcoin-scam-leads-to-ransomware-and-info-stealing-trojans/