2019ÄêÃÀ¹úÁè¼Ý3800ÍòÌõÒ½ÁƱ£½¡¼Í¼й¶£»£»£»£»2019ÄêQ3À¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ
Ðû²¼Ê±¼ä 2019-11-27
10Ô·ݣ¬£¬£¬£¬£¬£¬£¬ÃÀ¹úÎÀÉúÓ빫ÖÚЧÀͲ¿£¨HHS£©¹«ÃñȨÁ¦°ì¹«ÊÒÊÕµ½52ÆðÊý¾Ýй¶֪ͨ£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÊýÊ®ÍòÌõÒ½ÁƼͼ¡£¡£¡£¡£¡£¡£ÕâÒ»Êý×ÖΪ2014Äê1ÔÂÒÔÀ´µÄµ¥ÔÂ×î¸ßÊý×Ö£¬£¬£¬£¬£¬£¬£¬¹²Éæ¼°661830ÌõÒ½ÁƱ£½¡¼Í¼¡£¡£¡£¡£¡£¡£¾ÝHIPAA Journal±¨µÀ£¬£¬£¬£¬£¬£¬£¬×èÖ¹10ÔÂ⣬£¬£¬£¬£¬£¬£¬½ñÄê̻¶¡¢É¥Ê§»ò±»µÁµÄÒ½ÁƼͼÊýÄ¿ÒÑÍ»ÆÆÁË3800Íò´ó¹Ø£¬£¬£¬£¬£¬£¬£¬ÊÇ2018ÄêÕûÄêÊý×ÖµÄÈý±¶¶à£¬£¬£¬£¬£¬£¬£¬ÊÇ2017ÄêµÄÆß±¶¡£¡£¡£¡£¡£¡£µ«ÀúÊ·×î¸ß¼Í¼·ºÆðÔÚ2015Ä꣬£¬£¬£¬£¬£¬£¬ÆäʱµÄÊý×ÖΪ1.14ÒÚÌõ¼Í¼¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/over-38-million-healthcare-records-exposed-in-breaches-over-2019/2¡¢Á½¸öAndroid SDK²»·¨ÍøÂçFacebook¼°TwitterÓû§Êý¾Ý
Ñо¿Ö°Ô±·¢Ã÷Á½¸öµÚÈý·½SDK£¨OneAudienceºÍMobiburn£©¿ÉÉñÃØÍøÂçTwitterºÍFacebookÓû§Êý¾Ý£¬£¬£¬£¬£¬£¬£¬TwitterºÍFacebookÕýÔÚ¾ÙÐÐÊӲ졣¡£¡£¡£¡£¡£ÕâÁ½¸öSDK¶¼ÊÇÊý¾ÝÇ®±Ò»¯Ð§ÀÍ£¬£¬£¬£¬£¬£¬£¬Í¨¹ýÏò¿ª·¢Ö°Ô±¸¶·ÑÒÔ½«ÆäSDK¼¯³Éµ½Ó¦ÓÃÖУ¬£¬£¬£¬£¬£¬£¬È»ºóÍøÂçÓû§µÄÐÐΪÊý¾ÝÓÃÓÚ¹ã¸æÓªÏú¡£¡£¡£¡£¡£¡£Í¨³£´ËÀàÌ×¼þ²»»á»á¼ûÓû§µÇ¼Facebook»òTwitterºóÌìÉúµÄСÎÒ˽¼ÒÐÅÏ¢¡¢ÕË»§ÃÜÂëµÈÊý¾Ý¡£¡£¡£¡£¡£¡£TwitterÔÚһƪ²©¿ÍÖÐÈ·ÈÏOneAudience SDK¿Éδ¾ÊÚȨ´ÓTwitterÕÊ»§ÖÐÍøÂçÓû§µÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£TwitterûÓÐ͸¶ÊÜÓ°ÏìµÄÓû§ÊýÄ¿£¬£¬£¬£¬£¬£¬£¬µ«ÌåÏÖÖ»ÓÐAndroidÓû§Êܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£FacebookÌåÏÖÒ²Êܵ½¸ÃÎÊÌâÓ°Ï죬£¬£¬£¬£¬£¬£¬°üÀ¨OneAudience SDKºÍMobiBurn SDK¡£¡£¡£¡£¡£¡£Á½¼ÒSDK¿ª·¢Õß»ØÓ¦³ÆËûÃǽöÌṩ¹¤¾ß£¬£¬£¬£¬£¬£¬£¬µ«²»ÒÔÈκη½·¨¼ÓÈëÊý¾ÝÍøÂ磬£¬£¬£¬£¬£¬£¬½«ÔðÈιé×ïÓÚÀÄÓÃÆäSDKµÄapp¿ª·¢Ö°Ô±¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2019/11/sdk-twitter-facebook-android.html3¡¢·¸·¨ÍÅ»ïFullz House´Ó´¹ÂÚ¹¥»÷תÏòMagecart¶ñÒâ»î¶¯

±¾ÖܶþRiskQÐû²¼ÁËÒ»·Ý¹ØÓÚ·¸·¨ÍÅ»ïFullz HouseµÄ¹¥»÷»î¶¯¼°Æä×÷°¸ÊÖ·¨×ª±äµÄ±¨¸æ¡£¡£¡£¡£¡£¡£Fullz HouseÒÔǰרÃÅ´ÓÊÂÍøÂç´¹ÂÚ£¬£¬£¬£¬£¬£¬£¬µ«ÏÖÔÚÒѾöÒéתÏòMagecart¹¥»÷¡£¡£¡£¡£¡£¡£¸Ã×é֯ı»®×ÅÒ»¸öÃûΪBlueMagicStoreµÄ°µÍøÉúÒâÍøÕ¾£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚ³öÊÛСÎÒ˽¼ÒÉí·ÝÐÅÏ¢ºÍ±»µÁµÄÒøÐÐÊý¾Ý£¬£¬£¬£¬£¬£¬£¬×î½üFullz House¿ªÉèÁËCardHouseÒ³Ãæ£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚ³öÊÛ±»µÁµÄÐÅÓÿ¨ÐÅÏ¢¡£¡£¡£¡£¡£¡£´¹ÂÚ¹¥»÷ͨ³£Ä£ÄâPayPalµÈÖ§¸¶ÉÌ£¬£¬£¬£¬£¬£¬£¬µ«Fullz HouseÏÖÔÚ±àдÁË×Ô¼ºµÄƲÔüÆ÷´úÂ룬£¬£¬£¬£¬£¬£¬RiskIQÑо¿Ö°Ô±ÒÔΪÕâÖÖÇéÐκÜÉÙ¼û¡£¡£¡£¡£¡£¡£¸Ã´úÂëÀàËÆÓÚ2014Äê·¢Ã÷µÄµÚÒ»ÖÖÆ²ÔüÆ÷£¬£¬£¬£¬£¬£¬£¬¼ì²éÓû§ÊäÈë×ֶεÄת±ä¶ø²»ÊÇÆÚ´ýÊܺ¦ÕßÍê³É¹ºÖᣡ£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/fullz-house-threat-group-pivots-from-phishing-to-magecart-card-skimming-attacks/4¡¢Èý·ÖÖ®Ò»µÄÎó²îʹÓù¤¾ß°üǨáãµ½ÎÞÎļþ¹¥»÷
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/exploit-kits-are-slowly-migrating-toward-fileless-attacks/
5¡¢¿¨°Í˹»ùÐû²¼2019ÄêQ3À¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ
¿¨°Í˹»ùÐû²¼2019ÄêµÚÈý¼¾¶ÈµÄÀ¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ¡£¡£¡£¡£¡£¡£±¾¼¾¶ÈÀ¬»øÓʼþÔÚÈ«Çòµç×ÓÓʼþÁ÷Á¿ÖÐµÄÆ½¾ùÕ¼±È£¨56.26%£©±ÈÉÏÒ»¼¾¶È½µµÍÁË1.38¸ö°Ù·Öµã£¬£¬£¬£¬£¬£¬£¬Í¬Ê±Öض¨Ïòµ½´¹ÂÚÍøÕ¾µÄ¹¥»÷ÊýÄ¿ÓëÉÏÒ»¼¾¶ÈÏà±ÈϽµÁË2500Íò£¬£¬£¬£¬£¬£¬£¬½öΪ1.05ÒڴΡ£¡£¡£¡£¡£¡£±¾¼¾¶ÈÀ¬»øÓʼþȪԴµÄ¹ú¼ÒÅÅÃûÖеÚÒ»ÃûÊÇÖйú£¬£¬£¬£¬£¬£¬£¬Æä·Ý¶îΪ20.43%¡£¡£¡£¡£¡£¡£¿£¿£¿£¿£¿£¿¨°Í˹»ùÇå¾²½â¾ö¼Æ»®¹²×èÖ¹ÁËÔ¼4809Íò¸ö¶ñÒâµÄÓʼþ¸½¼þ£¬£¬£¬£¬£¬£¬£¬ÆäÖÐBackdoor.Win32.Androm³ÉΪ×î³£¼ûµÄ¶ñÒâÈí¼þ¼Ò×壬£¬£¬£¬£¬£¬£¬ÆäÕ¼ÓʼþÁ÷Á¿µÄ·Ý¶îΪ7.49£¥¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/spam-report-q3-2019/95177/
6¡¢Å¦Ô¼¾¯Ô±¾ÖÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ö¸ÎÆÊý¾Ý¿â¹Ø±Õ
ÔÎÄÁ´½Ó£º
https://news.softpedia.com/news/ransomware-infiltrates-nypd-s-fingerprint-database-causes-system-shutdown-528314.shtml