EquifaxÒòÊý¾Ýй¶֧¸¶7ÒÚÃÀÔª£»£» £»£»ProFTPD RCEÎó²î£¬£¬ £¬ £¬Áè¼Ý100Íǫ̀ЧÀÍÆ÷ÊÜÓ°Ïì

Ðû²¼Ê±¼ä 2019-07-23
1¡¢Equifax½«¶Ô2017ÄêÊý¾Ýй¶ÊÂÎñÖ§¸¶7ÒÚÃÀԪϢÕù½ð


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ƾ֤»ª¶û½ÖÈÕ±¨±¨µÀ£¬£¬ £¬ £¬Equifax½«Ö§¸¶½ü7ÒÚÃÀÔªµÄÏ¢Õù½ð£¬£¬ £¬ £¬ÒÔÁËÈ´Áª°îÉÌҵίԱ»á£¨FTC£©¶Ô2017ÄêÊý¾Ýй¶ÊÂÎñµÄÊӲ졣¡£¡£ ¡£¡£Æ¾Ö¤Ï¢ÕùЭÒ飬£¬ £¬ £¬Equifax½«ÏòÃÀ¹úÕþ¸®Ö§¸¶1.75ÒÚÃÀÔª·£¿ £¿£¿£¿£¿£¿î£¬£¬ £¬ £¬²¢ÏòÏûºÄÕß½ðÈÚ±£»£» £»£»¤¾Ö£¨CFPB£©Ö§¸¶1ÒÚÃÀÔªÃñÊ·£¿ £¿£¿£¿£¿£¿î¡£¡£¡£ ¡£¡£Equifax»¹½«ÉèÁ¢Ò»¸ö3ÒÚÃÀÔªµÄÅâ³¥»ù½ð£¬£¬ £¬ £¬ÎªÊÜÓ°ÏìµÄ¿Í»§ÌṩÐÅÓÃ¼à¿ØÐ§ÀÍ£¬£¬ £¬ £¬²¢ÔÚÐèҪʱ½«½ð¶îÉýÖÁ4.25ÒÚÃÀÔª¡£¡£¡£ ¡£¡£×÷ΪϢÕùЭÒéµÄÒ»²¿·Ö£¬£¬ £¬ £¬EquifaxÔÞ³ÉÔöÇ¿ÆäÇå¾²²½·¥£¬£¬ £¬ £¬²¢ÈõÚÈý·½°´ÆÚÆÀ¹ÀÆäÕþ²ß¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.voanews.com/economy-business/report-equifax-pay-700-million-breach-settlement


2¡¢ÃÀGAOб¨¸æ³Æ¹ú˰¾ÖÇå¾²²½·¥È±·¦£¬£¬ £¬ £¬ÄÉ˰ÈËÊý¾Ý±£´æÎ£º¦


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ÃÀ¹úÕþ¸®ÎÊÔð¾Ö£¨GAO£©µÄб¨¸æÖ¸³ö£¬£¬ £¬ £¬ÃÀ¹ú¹ú˰¾Ö£¨IRS£©Î´ÄÜʵÑéÆä¶àÄêÀ´½¨ÒéµÄ´ó×ÚÇå¾²¿ØÖƲ½·¥£¬£¬ £¬ £¬Ê¹µÃÄÉ˰ÈËÊý¾ÝºÍ²ÆÎñ±¨¸æÃæÁÙ¡°²»Êʵ±/δ±»¼ì²âµ½µÄʹÓᢸ͝»òй¶¡±Î£º¦¡£¡£¡£ ¡£¡£ÔÚ¶ÔIRSϵͳ¾ÙÐÐ2018²ÆÎñÄê¶ÈÉó¼ÆÖ®ºó£¬£¬ £¬ £¬GAOµÃ³ö½áÂÛÒÔΪ£¬£¬ £¬ £¬IRSÈÔÓÐ127ÏÒé²½·¥ÐèÒª½â¾ö£¬£¬ £¬ £¬ÆäÖÐ107ÏÒéÀ´×ÔÏÈǰµÄÉ󼯣¬£¬ £¬ £¬´ó²¿·Ö½¨ÒéÓë»á¼û¿ØÖÆÓйØ£¬£¬ £¬ £¬ÆäËü½¨Ò麭¸ÇÉèÖÃÖÎÀí¡¢Ö°ÔðÊèÉ¢ºÍÓ¦¼±ÍýÏë¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/irs-improved-security-but-taxpayer-data-is-still-at-risk/


3¡¢ºÚ¿ÍÔÚÍøÉÏÐû²¼Ô¼2500¸öDiscordÓû§µÄµÇ¼ƾ֤


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ºÚ¿ÍÔÚÍøÉÏÐû²¼ÁËÔ¼2500¸öDiscordÓû§µÇ¼ƾ֤µÄÁбí£¬£¬ £¬ £¬ÁбíÖаüÀ¨Óû§µÄµç×ÓÓʼþµØµãºÍÃÜÂë¡£¡£¡£ ¡£¡£DiscordÊÇÒ»¸öÓÎϷ̸ÌìÆ½Ì¨£¬£¬ £¬ £¬Æ¾Ö¤ºÚ¿ÍµÄ±íÊö£¬£¬ £¬ £¬ÕâЩƾ֤ÊÇͨ¹ýÒ»¸ö¼òÆÓµÄ´¹ÂÚÍøÕ¾´¹ÂÚµÃÀ´¡£¡£¡£ ¡£¡£¸ÃÍøÕ¾¿ÉÒÔʹÓÃDiscordµÄAPIÀ´Ð®ÖÆÕâЩÕÊ»§¡£¡£¡£ ¡£¡£DiscordÉÐδ¶Ô´ËÊÂÎñÐû²¼ÉùÃ÷¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.vice.com/en_us/article/evye3a/hackers-publish-list-of-discord-email-addresses-passwords-login-credentials


4¡¢BlackBerry CylanceÐÞ¸´Æä·´²¡¶¾ÒýÇæÖеÄÈÆ¹ýÎó²î

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨

°Ä´óÀûÑÇÇå¾²³§ÉÌSkylightÕÒµ½ÁËÒ»ÖÖÒªÁìÀ´ÈƹýBlackBerry CylanceµÄAI·´²¡¶¾ÒýÇæ£¬£¬ £¬ £¬¸ÃÒªÁìÊÇ´Óij¸öÊÓÆµÓÎÏ·ÖлñÈ¡×Ö·û´®£¬£¬ £¬ £¬È»ºó¸½¼Óµ½ÒÑÖªµÄ¶ñÒâÈí¼þÖС£¡£¡£ ¡£¡£Cylance·´²¡¶¾ÒýÇæËÆºõ¶Ô¸ÃÓÎÏ·µÄÎļþ¾ÙÐÐÁËÌØÊâ´¦Öóͷ£¡£¡£¡£ ¡£¡£Ñо¿Ö°Ô±Éù³Æ²âÊÔÁË384¸ö¶ñÒâÎļþ£¬£¬ £¬ £¬È¡µÃÁËÁè¼Ý83%µÄÀÖ³ÉÂÊ¡£¡£¡£ ¡£¡£ÎªÏàʶ¾öÕâ¸öÎÊÌ⣬£¬ £¬ £¬CylanceÒѾ­¶ÔÔÆÏµÍ³¾ÙÐÐÁ˸üУ¬£¬ £¬ £¬²¢½«ÔÚ½ÓÏÂÀ´µÄ¼¸ÌìÄÚÍÆ¹ãµ½¿Í»§¶Ëµã¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/blackberry-cylance-downplays-patches-antivirus-bypass


5¡¢Palo Alto NetworksÐÞ¸´SSL VPNÖеÄRCEÎó²î£¬£¬ £¬ £¬PoCÒѹûÕæ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Palo Alto NetworksÐÞ¸´ÆäÆóÒµGlobalProtect SSL VPNÖеÄÒ»¸öRCEÎó²î£¬£¬ £¬ £¬¸ÃÎó²î£¨CVE-2019-1579£©Ó°ÏìÁËGlobalProtectÃÅ»§ºÍGlobalProtectÍø¹Ø½Ó¿Ú²úÆ·£¬£¬ £¬ £¬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£ ¡£¡£ÊÜÓ°ÏìµÄ°æ±¾°üÀ¨PAN-OS 7.1.18¡¢8.0.11¡¢8.1.2ÒÔ¼°¸üÔçµÄ°æ±¾£¬£¬ £¬ £¬ÓÉÓÚÑо¿Ö°Ô±ÒѾ­Ðû²¼ÁËPoC´úÂ룬£¬ £¬ £¬½¨ÒéÓû§¾¡¿ì¸üÐÂÖÁ×îа汾¡£¡£¡£ ¡£¡£Ñо¿Ö°Ô±»¹É¨Ãèµ½ÓŲ½Ê¹ÓÃÁËÒ×Êܹ¥»÷µÄ²úÆ·£¬£¬ £¬ £¬²¢ÏòÓŲ½¾ÙÐÐÁ˱¨¸æ¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.helpnetsecurity.com/2019/07/22/cve-2019-1579-poc/


6¡¢ProFTPD RCEÎó²î£¬£¬ £¬ £¬Áè¼Ý100Íǫ̀ЧÀÍÆ÷ÊÜÓ°Ïì


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ProFTPDÐû²¼Ð°汾1.3.6£¬£¬ £¬ £¬ÐÞ¸´Ò»¸ö¿Éµ¼ÖÂRCEµÄÎó²î¡£¡£¡£ ¡£¡£¸ÃÎó²î£¨CVE-2019- 12815£©ÓëProFTPDµÄmod_copyÄ£¿ £¿£¿£¿£¿£¿éÓйØ£¬£¬ £¬ £¬Îó²îÔµ¹ÊÔ­ÓÉÊÇmod_copyÄ£¿ £¿£¿£¿£¿£¿éµÄ×Ô½ç˵SITE CPFRºÍSITE CPTOÏÂÁîûÓа´Ô¤ÆÚÉèÖÃÊÂÇé¡£¡£¡£ ¡£¡£ÖÎÀíÔ±¿Éͨ¹ý½ûÓÃmod_copyÄ£¿ £¿£¿£¿£¿£¿éÀ´»º½â¸ÃÎó²î¡£¡£¡£ ¡£¡£Æ¾Ö¤ShodanµÄËÑË÷Ч¹û£¬£¬ £¬ £¬ÏÖÔÚÓÐÁè¼Ý100Íò¸öProFTPdЧÀÍÆ÷ÉÐδÉý¼¶ÐÞ¸´²¹¶¡¡£¡£¡£ ¡£¡£µÂ¹úCERT-BundÒ²Õë¶Ô¸ÃÎó²îÏòÓû§·¢³ö¾¯±¨¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/proftpd-remote-code-execution-bug-exposes-over-1-million-servers/