Ñо¿ÍŶӷ¢Ã÷ijÊý¾Ý¿â£¬£¬£¬ £¬£¬£¬°üÀ¨2600Íòƾ֤ºÍ20ÒÚcookie£»£»£»£»ÒÕµç(EA)Ôâµ½¹¥»÷£¬£¬£¬ £¬£¬£¬°üÀ¨Ô´ÂëÔÚÄÚµÄ780GBÊý¾Ýй¶

Ðû²¼Ê±¼ä 2021-06-11

1.Ñо¿ÍŶӷ¢Ã÷ijÊý¾Ý¿â£¬£¬£¬ £¬£¬£¬°üÀ¨2600Íòƾ֤ºÍ20ÒÚcookie


1.jpg


NordLockerÑо¿ÍŶӷ¢Ã÷ÁËÒ»¸ö1.2 TBµÄ±»µÁÊý¾Ý¿â¡£¡£¡£¡£¡£×ï¿ý×ï¿ýÊÇÒ»¸ö×Ô½ç˵¶ñÒâÈí¼þ£¬£¬£¬ £¬£¬£¬ËüÔÚ2018ÄêÖÁ2020Äê¼äͨ¹ý¶ñÒâ°æ±¾µÄAdobe Photoshop¡¢µÁ°æÓÎÏ·ºÍWindowsÆÆ½â¹¤¾ß¾ÙÐÐÈö²¥£¬£¬£¬ £¬£¬£¬´Ó320Íǫ̀WindowsÅÌËã»úÖÐÇÔÈ¡ÁËÕâЩÊý¾Ý¡£¡£¡£¡£¡£ÕâЩй¶ÐÅÏ¢°üÀ¨660Íò¸öÎļþ£¨300Íò¸öÎı¾Îļþ¡¢100¶àÍò¸öͼÏñºÍ60Íò¸öWordºÍ.PDFÎļþ£©¡¢2600Íò¸öƾ֤ÒÔ¼°20ÒÚ¸öcookie£¨ÆäÖÐ4ÒÚ¸öÔÚ±»·¢Ã÷ʱÈÔÈ»ÓÐÓã©¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/custom-malware-stolen-data/166753/


2.΢Èí·¢Ã÷½üÆÚʹÓÃTensorFlow podµÄÍÚ¿ó»î¶¯¼¤Ôö


2.jpg


΢Èí·¢Ã÷½üÆÚʹÓÃTensorFlow podµÄÍÚ¿ó»î¶¯¼¤Ôö¡£¡£¡£¡£¡£´Ë´Î¹¥»÷ÆÆËðÁËÔËÐÐKubeflow»úеѧϰ (ML) ʵÀýµÄKubernetes¼¯Èº£¬£¬£¬ £¬£¬£¬ÒÔ°²ÅÅÓÃÓÚÍÚ¾òÃÅÂÞ±ÒºÍÒÔÌ«·»¼ÓÃÜÇ®±ÒµÄ¶ñÒâÈÝÆ÷¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬ £¬£¬£¬À´×Ô¹Ù·½Docker Hub´æ´¢¿âµÄpodÊÇÕýµ±µÄ£¬£¬£¬ £¬£¬£¬µ«¹¥»÷ÕßʹÓÃKubeflow Pipelinesƽ̨°²ÅÅML¹ÜµÀ²¢¶ÔÆä¾ÙÐÐÁËÐ޸쬣¬£¬ £¬£¬£¬ÒÔÔÚÊÜѬȾµÄKubernetes¼¯ÈºÉÏÍÚ¾ò¼ÓÃÜÇ®±Ò¡£¡£¡£¡£¡£ºÚ¿ÍÔÚÿ¸ö±»ÈëÇֵļ¯ÈºÉ϶¼»á×°ÖÃÖÁÉÙÁ½¸öpod£ºÒ»¸öÓÃÓÚCPUÍÚ¾ò£¬£¬£¬ £¬£¬£¬Ò»¸öÓÃÓÚGPUÍÚ¾ò¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118776/cyber-crime/crypto-mining-campaign-kubeflow.html


3.ESET³ÆNoxPlayer¹©Ó¦Á´¹¥»÷ÓëGelsevirineÓйØ


3.jpg


Ñо¿Ö°Ô±ÒÔΪ£¬£¬£¬ £¬£¬£¬GelsemiumÊÇÌᳫNoxPlayer¹©Ó¦Á´¹¥»÷£¨Ò²³ÆNightScoutÐж¯£©µÄAPT×éÖ¯¡£¡£¡£¡£¡£¸Ã¹¥»÷ÔÚ2020Äê9ÔÂÖÁ2021Äê1Ô£¬£¬£¬ £¬£¬£¬ÆÆËðÁËÓÃÓÚWindowsºÍmacOS£¨ÓÐÁè¼Ý1.5ÒÚÓû§£©µÄNoxPlayer AndroidÄ£ÄâÆ÷µÄ¸üÐÂÀ´Ñ¬È¾Íæ¼ÒµÄϵͳ£¬£¬£¬ £¬£¬£¬Ó°ÏìÁËÖйų́Íå¡¢ÖйúÏã¸ÛºÍ˹ÀïÀ¼¿¨µÄÓû§¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬ £¬£¬£¬ESET»¹Åû¶ÁËGelsemiumʹÓõÄÈý¸ö×é¼þ£ºdropper Gelsemine¡¢loader GelsenicineºÍÖ÷²å¼þGelsevirine¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/stealthy-gelsemium-cyberspies-linked-to-noxplayer-supply-chain-attack/


4.ºÚ¿ÍÔÚ°µÍøMarketo¹ûÕæÅ¦Ô¼¶¼»á´óѧµÄ11 GBÊý¾Ý


4.jpg


ºÚ¿ÍÔÚÊý¾ÝÐ¹Â¶ÍøÕ¾Marketo¹ûÕæÅ¦Ô¼¶¼»á´óѧµÄÍøÕ¾cuny.eduµÄ11 GBÊý¾Ý¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÔÚ5ÔÂÖÐÑ®µÚÒ»´Î·¢Ã÷MarketoÍøÕ¾£¬£¬£¬ £¬£¬£¬¸ÃÍøÕ¾´µÅõËûÃǵĹ¥»÷ÀÖ³ÉÂÊÁè¼Ý85%£¬£¬£¬ £¬£¬£¬²¢ÌåÏÖcuny.eduÊÇÆäÖÐÒ»¸öÊܺ¦Õß¡£¡£¡£¡£¡£Ñо¿Ö°Ô±Á¬Ã¦ÁªÏµÁËŦԼ¶¼»á´óѧѯÎÊÆäÊÇ·ñÖªµÀÕýÔÚ¾ÙÐеĹ¥»÷»î¶¯£¬£¬£¬ £¬£¬£¬µ«²¢Î´»ñµÃ»ØÓ¦¡£¡£¡£¡£¡£5ÔÂ31ÈÕ£¬£¬£¬ £¬£¬£¬Marketo½«CUNY.eduÁÐΪ¡°ÒÑÍê³É¡±£¬£¬£¬ £¬£¬£¬³ÆÆäÒÑÇÔÈ¡11 GBÊý¾Ý¡£¡£¡£¡£¡£µ±±»Îʼ°Êý¾Ýϸ½Úʱ£¬£¬£¬ £¬£¬£¬¹¥»÷Õß³ÆÃ»ÓÐѧÉúÊý¾Ý£¬£¬£¬ £¬£¬£¬¿ÉÊÇÓи¶¿îÐÅÏ¢¡¢Ô¤Ë㱨¸æ¡¢ÏîÄ¿ºÍÌõÔ¼µÈ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.databreaches.net/some-city-university-of-new-york-data-found-on-dark-web-market/


5.ÒÕµç(EA)Ôâµ½¹¥»÷£¬£¬£¬ £¬£¬£¬°üÀ¨Ô´ÂëÔÚÄÚµÄ780GBÊý¾Ýй¶


5.jpg


ÓÎÏ·¹«Ë¾ÒÕµç(Electronic Arts£¬£¬£¬ £¬£¬£¬EA)Ôâµ½¹¥»÷£¬£¬£¬ £¬£¬£¬780GBÊý¾Ýй¶¡£¡£¡£¡£¡£±»µÁÊý¾Ý°üÀ¨ÓÎÏ·Ô´´úÂë¡¢FrostBiteÓÎÏ·ÒýÇæºÍµ÷ÊÔ¹¤¾ßÔ´´úÂë¡¢FIFA 21Æ¥ÅäЧÀÍÆ÷´úÂë¡¢EAרÓÐÓÎÏ·¿ò¼Ü¡¢µ÷ÊÔ¹¤¾ß¡¢SDKºÍAPIÃÜÔ¿¡¢XBOXºÍSONY˽ÓÐSDKºÍAPIÃÜÔ¿¡¢FIFA 22 APIÃÜÔ¿¡¢SDKºÍµ÷ÊÔ¹¤¾ßµÈ¡£¡£¡£¡£¡£EAÈ·ÈÏÁË´Ë´ÎÊý¾Ýй¶ÊÂÎñ£¬£¬£¬ £¬£¬£¬Éù³Æ²»ÊÇÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬ £¬£¬£¬²¢ÌåÏÖûÓÐÓû§ÐÅϢй¶¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬ £¬£¬£¬Éв»ÇåÎú¹¥»÷ÕßÔõÑùÆÆËðÁ˸ù«Ë¾µÄÍøÂç¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/118820/data-breach/electronic-arts-data-breach.html


6.¹È¸èÐÞ¸´½ñÄêµÄµÚÆß¸öÒѱ»ÔÚҰʹÓõÄChrome 0day


6.jpg


¹È¸èÐû²¼Çå¾²¸üУ¬£¬£¬ £¬£¬£¬ÐÞ¸´Á˽ñÄêµÄµÚÆß¸öÒѱ»ÔÚҰʹÓõÄChrome 0day¡£¡£¡£¡£¡£¸ÃÎó²î±»×·×ÙΪCVE-2021-30551£¬£¬£¬ £¬£¬£¬ÊÇV8ÖеÄÀàÐÍ»ìÏýÎó²î£¬£¬£¬ £¬£¬£¬ÏÖÔÚÏÕЩûÓйØÓÚ¸ÃÎó²îµÄÏêϸÐÅÏ¢¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ¸ÃÎó²îÒѾ­±»Ê¹ÓÃÁËWindowsÖеÄCVE-2021-33742 0dayµÄͳһ¸ö¹¥»÷ÕßËùʹÓᣡ£¡£¡£¡£±ðµÄ£¬£¬£¬ £¬£¬£¬´Ë´Î¸üл¹ÐÞ¸´ÁËBFCacheÖеÄÊͷźóʹÓÃÎó²î£¨CVE-2021-30544£©¡¢À©Õ¹ÖеÄÊͷźóʹÓÃÎó²î£¨CVE-2021-30545£©¡¢Ô½½çдÎó²î£¨CVE-2021-30547£©ºÍLoaderÖеÄÊͷźóʹÓÃÎó²î£¨CVE-2021-30548£©µÈ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/06/new-chrome-0-day-bug-under-active.html