TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÊý¾Ýй¶£»£»£»Î¯ÄÚÈðÀ­´ó¹æÄ£Í£µçµ¼Ö²¿·ÖµØÇø»¥ÁªÍøÖÐÖ¹

Ðû²¼Ê±¼ä 2020-03-03

1.°Ä´óÀûÑÇÐÅϢרԱ°ì¹«ÊÒÐû²¼Êý¾Ýй¶֪ͨ£¨NDB£©±¨¸æ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ƾ֤°Ä´óÀûÑÇÐÅϢרԱ°ì¹«ÊÒ£¨OAIC£©µÄÊý¾Ýй¶֪ͨ£¨NDB£©±¨¸æ£¬£¬£¬£¬£¬ÔÚ2019Äê7ÔÂ1ÈÕÖÁ2019Äê12ÔÂ31ÈÕʱ´ú±¨¸æµÄÊý¾Ýй¶ÊÂÎñÊýĿΪ537Æð£¬£¬£¬£¬£¬±ÈÉϰëÄêµÄ460ÆðÔöÌíÁË19%¡£¡£¡£ ¡£¶ñÒâ¹¥»÷£¨°üÀ¨ÍøÂçÊÂÎñ£©ÈÔÈ»ÊÇÔì³ÉÊý¾Ýй¶µÄÖ÷ÒªÔµ¹ÊÔ­ÓÉ£¬£¬£¬£¬£¬Õ¼ËùÓÐÊÂÎñµÄ64%¡£¡£¡£ ¡£ÓÉÈËΪ¹ýʧÒýÆðµÄÊý¾Ýй¶ռËùÓÐй¶µÄ32£¥£¬£¬£¬£¬£¬µÍÓÚÉÏÒ»¸ö±¨¸æÆÚµÄ34£¥¡£¡£¡£ ¡£Ò½ÁÆÐÐÒµÔٴγÉΪ±¬·¢×ß©×î¶àµÄÐÐÒµ£¬£¬£¬£¬£¬Õ¼ËùÓÐÊÂÎñµÄ22%£¬£¬£¬£¬£¬Æä´ÎÊǽðÈÚ£¬£¬£¬£¬£¬Õ¼14%¡£¡£¡£ ¡£ÁªÏµ·½·¨ÈÔÈ»ÊÇÊý¾Ýй¶ÖÐ×î³£¼ûµÄСÎÒ˽¼ÒÐÅÏ¢ÀàÐÍ¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.oaic.gov.au/privacy/notifiable-data-breaches/notifiable-data-breaches-statistics/notifiable-data-breaches-report-july-december-2019/


2.TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÈ·ÈÏÔâºÚ¿Í¹¥»÷ÇÒÊý¾Ýй¶


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÈ·ÈÏÔâÓöÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÊÇÒ»¼ÒרÃÅΪ̫¿ÕºÍ¹ú·À³Ð°üÉÌÉè¼ÆÏ¸ÃÜÁã¼þµÄÖÆÔìÉÌ¡£¡£¡£ ¡£ÔÚÒ»·Ý¼ò¶ÌµÄÉùÃ÷ÖУ¬£¬£¬£¬£¬¸Ã¹«Ë¾È·ÈÏÆä½üÆÚ³ÉΪ¡°ÍøÂçÇå¾²·¸·¨ÊÂÎñ£¨°üÀ¨»á¼ûºÍ͵ÇÔÊý¾Ý£©µÄÄ¿µÄ¡±¡£¡£¡£ ¡£¸Ã¹«Ë¾½²»°ÈËÌåÏÖ½«¡°¼ÌÐø¶Ô¸Ã¹¥»÷¾ÙÐÐÖÜÈ«ÊӲ죬£¬£¬£¬£¬²¢ÇÒÓªÒµÔËÐÐÕý³£¡±¡£¡£¡£ ¡£TechCrunchÑо¿Ö°Ô±³ÆÕâ´Î¹¥»÷ºÜÓпÉÄÜÊÇÓÉDoppelPaymerÀÕË÷Èí¼þÒýÆðµÄ¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://techcrunch.com/2020/03/01/visser-breach/


3.Ó¢¹úWi-FiÌṩÉÌC3UKÔÆÊý¾Ý¿âй¶1ÍòÃûÌú·Âÿͼͼ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


C3UKÔÚÓ¢¹ú¸÷µØµÄ»ð³µÕ¾ÎªÂÿÍÌṩÃâ·ÑµÄWi-fi¡£¡£¡£ ¡£¸Ã¹«Ë¾ÈÏ¿ÉδÄܶ԰üÀ¨Óû§ÐÅÏ¢µÄÊý¾Ý¿âÌṩ±£»£»£»¤£¬£¬£¬£¬£¬µ¼ÖÂ1ÍòÃûÓ¢¹úÌú·Âÿ͵ÄСÎÒ˽¼ÒÊý¾Ýй¶¡£¡£¡£ ¡£Çå¾²Ñо¿Ô±Ò®ÀûÃ×ÑÇ¡¤¸£ÀÕ£¨Jeremiah Fowler£©·¢Ã÷¸Ã¹«Ë¾µÄAWSÊý¾Ý¿â²»ÊÜÃÜÂë±£»£»£»¤£¬£¬£¬£¬£¬Òò´ËÈκÎÈ˶¼¿ÉÒÔÉó²éÓû§Êý¾Ý¡£¡£¡£ ¡£¸ÃÊý¾Ý¿âÊÇÔÚ2019Äê11ÔÂ28ÈÕÖÁ2020Äê2ÔÂ12ÈÕÖ®¼ä½¨ÉèµÄ£¬£¬£¬£¬£¬ÆäÖаüÀ¨1.46ÒÚÌõ¼Í¼£¬£¬£¬£¬£¬ÀýÈçÂÿ͵ijöÉúÈÕÆÚ¡¢µç×ÓÓʼþµØµãºÍÂÃÐÐÍýÏë¡£¡£¡£ ¡£ÊÜÓ°ÏìµÄÂÿͰüÀ¨ÔÚHarlow Mill¡¢Chelmsford¡¢Colchester¡¢Waltham Cross¡¢Burnham¡¢NorwichºÍLondon BridgeʹÓÃÃâ·ÑWi-FiЧÀ͵ÄÂÿÍ¡£¡£¡£ ¡£¸Ã¹«Ë¾³ÆÊý¾Ý¿âûÓаüÀ¨Óû§µÄÃÜÂë»ò²ÆÎñÐÅÏ¢µÈÒªº¦Êý¾Ý¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/data-of-10k-rail-passengers/


4.ίÄÚÈðÀ­´ó¹æÄ£Í£µçµ¼Ö²¿·ÖµØÇø»¥ÁªÍøÖÐÖ¹


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


3ÔÂ1ÈÕίÄÚÈðÀ­ÔâÓö´ó¹æÄ£Í£µçÊÂÎñ£¬£¬£¬£¬£¬µ¼Ö¸ùúÔ¼35£¥µÄµçÐÅ»ù´¡Éèʩ̱»¾¡£¡£¡£ ¡£»£»£»¥ÁªÍøÊÓ²ìÕ¾NetBlocks±¨¸æ³Æ£¬£¬£¬£¬£¬Í£µçºÍ¹©Ó¦²¨¶¯µ¼Ö¸ùúºÜ´óÒ»²¿·Ö»¥ÁªÍøÅþÁ¬ÖÐÖ¹¡£¡£¡£ ¡£Í£Ó°Ï·ÏìÁËίÄÚÈðÀ­µÄ¶à¸öÖÝ£¬£¬£¬£¬£¬Òƶ¯ÍøÂçÒ²²¿·ÖÊܵ½ÊÂÎñµÄÓ°Ï죬£¬£¬£¬£¬µ«¸Ã×éÖ¯±¨¸æ³Æ²¨¶¯ºóËüÃÇÒÑѸËÙ»Ö¸´¡£¡£¡£ ¡£Õâ²¢²»ÊÇίÄÚÈðÀ­µçÍøµÚÒ»´ÎÊܵ½´ó¹æÄ£Í£µçµÄÓ°Ï죬£¬£¬£¬£¬2019Äê3Ô¸ùú¾ÍÔøÔâÓö´ó¹æÄ£Í£µçÊÂÎñ£¬£¬£¬£¬£¬ÆäʱίÄÚÈðÀ­Í¨Ñ¶ºÍÐÅÏ¢´ó³¼ºÀ¶ûºÕ¡¤ÂÞµÂÀï¸ñ˹£¨Jorge Rodriguez£©Ö¸ÔðÍ£µçÊÇÓÉÃÀ¹ú¶Ô¹ÅÀïË®Á¦·¢µç³§·¢¶¯ÍøÂç¹¥»÷µ¼ÖµÄ¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/98771/security/venezuela-power-outage.html


5.Ñо¿Ö°Ô±ÑÝʾͨ¹ý³¬Éù²¨ÈëÇÖÆ»¹ûºÍ¹È¸èÓïÒôÖúÊÖ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Ñо¿Ö°Ô±·¢Ã÷Ò»ÖÖÐµĹ¥»÷ÒªÁ죬£¬£¬£¬£¬¿ÉÒÔͨ¹ýÔÚ¹ÌÌåÖÊÁÏÖÐÈö²¥³¬Éù²¨À´Ãé×¼ÓïÒôÖúÊÖ×°±¸£¬£¬£¬£¬£¬´Ó¶øÔÚÊܺ¦Õß²»ÖªÇéµÄÇéÐÎÏÂÓëÓïÒô×°±¸¾ÙÐн»»¥ºÍʵÑéÈëÇÖ¡£¡£¡£ ¡£ÕâÖÖ¹¥»÷±»³ÆÎª¡°SurferingAttack¡±£¬£¬£¬£¬£¬ËüʹÓÃÁ˹ÌÌåÖÊÁÏ£¨ÀýÈç×À×Ó£©ÖÐÉùÒô´«ÊäµÄÆæÒìÌØÕ÷£¬£¬£¬£¬£¬ÒÔ¡°Ê¹¹¥»÷Õß¿ÉÒÔÓëÓïÒô×°±¸Ö®¼ä¾ÙÐиü³¤¾àÀëµÄ¶à´Î½»»¥£¬£¬£¬£¬£¬¶øÎÞÐè·ºÆðÔÚÊÓÏßÄÚ¡£¡£¡£ ¡£¡±Ñо¿Ö°Ô±ÔÚÂÛÎÄÖиÅÊöÁ˹¥»÷Õß¿ÉÄÜʹÓÃÕâÖÖ¹¥»÷Ð®ÖÆSMS¶ÌÐÅË«ÒòËØÉí·ÝÑéÖ¤Â룬£¬£¬£¬£¬ÉõÖÁ²¦´òڲƭÐԵ绰µÄÐÐΪ¡£¡£¡£ ¡£Ñо¿Ö°Ô±²âÊÔÁË17ÖÖ×°±¸£¬£¬£¬£¬£¬ÆäÖÐ13̨װ±¸ÔËÐеÄÊÇ´øÓÐGoogle AssistantµÄAndroidϵͳ£¬£¬£¬£¬£¬ËĄ̈ÊÇ´øÓÐApple SiriµÄiPhone£¬£¬£¬£¬£¬Ñо¿Ö°Ô±Äܹ»¿ØÖÆ15̨װ±¸£¬£¬£¬£¬£¬µ«¸ÃÊÖÒÕ¶ÔÈýÐǵÄGalaxy Note 10+ºÍ»ªÎªµÄMate 9ÎÞЧ¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://nakedsecurity.sophos.com/2020/03/02/siri-and-google-assistant-hacked-in-new-ultrasonic-attack/


6.Õë¶Ôº«¹úµÄ¡°Blue Esteeate Part5¡± APT¹¥»÷ÆÊÎö±¨¸æ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ƾ֤East SecurityµÄÒ»·Ý±¨¸æ£¬£¬£¬£¬£¬2ÔÂ28ÈÕ·ºÆðÁËʹÓÃαװ³ÉHangulÎĵµ£¨ºó׺ÃûΪhwp£¬£¬£¬£¬£¬º«¹úÈËʹÓõÄÒ»ÖÖÎĵµÃûÌ㩼òÀúµÄscrÎļþ¾ÙÐеÄAPT¹¥»÷¡£¡£¡£ ¡£¸ÃAPT¹¥»÷ÖÐʹÓõĶñÒâÎļþ±»¼ì²âΪTrojan.Agent.115608C/Trojan.Agent.Detplock¡£¡£¡£ ¡£EastÈ·Èϸù¥»÷Ϊ·¸·¨ÍÅ»ïKim Soo-kiÌᳫµÄAPT¹¥»÷-¼´Blue House Green Support/Sangchunjae Estimate APT¹¥»÷-µÄµÚ5¸ö±äÌå¡£¡£¡£ ¡£¸Ã±äÌåÓÚ2ÔÂ27ÈÕ±àÒ룬£¬£¬£¬£¬ÊÇÆÁÄ»±£»£»£»¤³ÌÐòÀàÐ͵ĿÉÖ´ÐÐÎļþ£¬£¬£¬£¬£¬¿ÉÄ£ÄâhwpÎĵµ£¬£¬£¬£¬£¬ÀýÈçÂÄÀú±íform.hwp.scr¡£¡£¡£ ¡£ÈôÊÇÓû§ÊµÑ齫Îļþ×÷ΪhwpÎĵµÉó²é£¬£¬£¬£¬£¬Ôò¸Ã¶ñÒâÈí¼þ½«ÔËÐУ¬£¬£¬£¬£¬ÊÍ·ÅÏÖʵÓÐÓÃÔØºÉ²¢×ÔÐÐɾ³ý£¨»Ö¸´form.hwp.scr£©£¬£¬£¬£¬£¬ÒÔ×èÖ¹ÒýÆðÓû§µÄÏÓÒÉ¡£¡£¡£ ¡£¸Ã¶ñÒâÈí¼þ½«ÍøÂçºÍÉÏ´«Êܺ¦ÕßµÄÐÅÏ¢£¬£¬£¬£¬£¬²¢ÆÚ´ý¹¥»÷ÕߵįäËûÏÂÁî¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://blog.alyac.co.kr/2784