¡¾°²È«·ì϶¡¿×êÑÐÈËÔ±Åû¶Windows10×îÐÂÁãÈÕ·ì϶£¬ÔÝÎÞ½â¾ö²½Öè
Ò»Ãû°²È«×êÑÐÈËÔ±ÔÚTwitterÉÏÅû¶ÁËWindows10ϵͳÖеÄÒ»¸ö×îÐÂÁãÈÕ·ì϶£¬²¢ÔÚGitHubÉϰ䲼ÁËPoC´úÂë¡£¸Ã·ì϶´æÔÚÓÚWindowsµÄ´òË㹤×÷·¨Ê½ÖУ¬¸üÕýÈ·µØËµ£¬´æÔÚÓڸ߼¶±¾µØ¹ý³ÌŲÓã¨ALPC£©ÖС£¸Ã·ì϶ÊÇÒ»¸ö±¾µØÌáȨ·ì϶£¬ÔÊÐí¹¥»÷Õß´ÓUSERȨÏÞÌáȨµ½SYSTEMȨÏÞ¡£CERT/CCÒѾȷÈÏÁ˸÷ì϶£¬²¢°ä²¼Á˹ٷ½¾¯±¨¡£ÓÉÓÚ×êÑÐÈËÔ±²¢Î´Í¨ÖªÎ¢ÈíÓйش˷ì϶µÄÐÅÏ¢£¬Ä¿Ç°ÉÐÎ޸÷ì϶µÄ½â¾ö·¨×Ó¡£
ÔÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/08/windows-zero-day-exploit.html
¡¾Êý¾Ýй¶¡¿AbbyyÒòÊý¾Ý¿âÅäÖÃÃýÎóµ¼ÖÂ20¶àÍò¸ö¿Í»§Îļþй¶
8ÔÂ19ÈÕ°²È«×êÑÐÈËÔ±Bob DiachenkoÔÚAWSÔÆÆ½Ì¨ÉÏ·¢ÏÖÊôÓÚOCRÈí¼þ¿ª·¢ÉÌAbbyyµÄÒ»¸öMongoDB·þÎñÆ÷ÎÞÐèµÇ¼¼´¿É¹«¿ª½Ó¼û¡£¸ÃÊý¾Ý¿â´óÓ×Ϊ142GB£¬Ô̺¬¶àÖÖÃô¸ÐÎļþµÄɨÃè¼þ£¬ÈçºÏͬ¡¢±£ÃܺÍ̸¡¢ÄÚ²¿º¯¼þ¼°±¸Íü¼µÈ¡£ÆäÖÐÔ̺¬ÊôÓÚAbbyy¿Í»§µÄ20¶àÍò¸öÎļþ¡£¸ÃÊý¾Ý¿â¿ÉÄÜÊÇAbbyyµÄ»ù´¡ÉèÊ©µÄÒ»²¿ÃÅ¡£AbbyyµÄ°²È«ÍŶÓÔÚ½Óµ½Í¨ÖªÁ½Ììºó½¨¸´Á˸ÃÊý¾Ý¿âµÄÅäÖÃÃýÎóÎÊÌâ¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/ocr-software-dev-exposes-200-000-customer-documents/
¡¾·ì϶²¹¶¡¡¿Adobe°ä²¼±¾Ôµڶþ¸ö´¹Î£°²È«¸üУ¬½¨¸´Creative CloudÖеÄÒ»¸ö·ì϶
Adobe°ä²¼±¾Ôµڶþ¸ö´¹Î£°²È«¸üУ¬½¨¸´WindowsºÍmacOSƽ̨ÉϵÄCreative Cloud×ÀÃæÈí¼þÖеÄÒ»¸öÌáȨ·ì϶¡£¸Ã·ì϶£¨CVE-2018-12829£©µÄÆÀ¼¶Îª³ÁÒª£¬Adobe°µÊ¾Æä·¢ÏÖ´æÔڸ÷ì϶µÄ¹«¿ªPoC´úÂë¡£Creative Cloud Desktop Application 4.6.0¼°¸üÔçµÄ°æ±¾Êܵ½Ó°Ï죬½¨ÒéÓû§¾¡¿ìÉý¼¶ÖÁ°æ±¾4.6.1¡£
ÔÎÄÁ´½Ó£ºhttps://threatpost.com/adobe-pushes-out-unscheduled-creative-cloud-application-fix/136968/
¡¾¶ñÒâÈí¼þ¡¿×êÑÐÍŶӰ䲼¹ØÓÚÒÆ¶¯ÒøÐÐľÂíAsacubµÄ·ÖÎö»ã±¨
¿¨°Í˹»ù³¢ÊÔÊÒ°ä²¼¹ØÓÚÒÆ¶¯ÒøÐÐľÂíAsacubµÄ·ÖÎö»ã±¨¡£2018Äê×î³£¼ûµÄAsacub±äÌåÊǰ汾5.0.3¡£AsacubÖØÒªÕë¶Ô¶íÂÞ˹£¬98%µÄϰȾ£¨225000£©²úÉúÔÚ¶íÂÞ˹£¬µ«¸ÃľÂíÒ²Õë¶ÔÎÚ¿ËÀ¼¡¢ÍÁ¶úÆä¡¢µÂ¹ú¡¢°×¶íÂÞ˹¡¢²¨À¼¡¢ÑÇÃÀÄáÑÇ¡¢¹þÈø¿Ë˹̹ºÍÃÀ¹úµÈ¹ú¶È¡£Asacubͨ¹ýÍøÂç´¹µö¶ÌÐÅ´«²¼£¬¶ÌÐÅÖÐÔ̺¬¶ñÒâAPKÎļþµÄ´¹µöÁ´½Ó¡£Asacub³£¼Ù×°³ÉMMSÀûÓûòÃâ·Ñ¸æ°×·þÎñµÄ¿Í»§¶Ë£¬ÈçPhoto¡¢Message¡¢Avito OfferºÍMMS MessageµÈ¡£
ÔÎÄÁ´½Ó£ºhttps://securelist.com/the-rise-of-mobile-banker-asacub/87591/
¡¾¶ñÒâÈí¼þ¡¿°²È«×êÑÐÈËÔ±·¢ÏÖÕë¶ÔPOSϵͳµÄжñÒâÈí¼þRtPOS
À´×ÔBooz Allen HamiltonµÄ×êÑÐÈËÔ±·¢ÏÖÒ»¸öжñÒâÈí¼þRtPOS¡£RtPOSËÆºõÀ´×Ô¶íÂÞ˹£¬ÖØÒªÕë¶ÔPOSϵͳ¡£RtPOSµÄÖ°ÄÜÓÐÏÞ£¬²¢ÇÒûÓÐÍøÂçÏνÓÖ°ÄÜ£¬ÕâÒâζÕßRtPOS²»»áÏνÓÔ¶³Ì·þÎñÆ÷ÒÔ»ñÈ¡ºÅÁî»ò´«Êä±»µÁµÄÊý¾Ý£¬ËùÓÐÍøÂçµÄÒøÐп¨Êý¾Ý¶¼´æ´¢ÔÚ±¾µØDATÎļþÖС£Õâ¿ÉÄÜÊÇÓÉÓÚRtPOS»¹´¦ÓÚ¿ª·¢½×¶Î£¬»òÕßRtPOSÖ»ÓÃÓÚÍøÂçÊý¾Ý£¬¹¥»÷Õß½«»áʹÓÃÆäËüµÄ¶ñÒâÈí¼þ½øÐÐÊý¾Ý´«Êä¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/booz-allen-hamilton-researchers-detail-new-rtpos-point-of-sale-malware/
¡¾°²È«²¥±¨¡¿GDPRÖ´ÐÐ3¸öÔºóÅ·ÃËÓû§ÈÔÎÞ·¨½Ó¼ûÔ¼1200¸öUSÐÂÎÅÍøÕ¾
ÔÚÅ·ÃËÍÆ³öеÄͨÓÃÊý¾Ý±£»¤ÌõÀý£¨GDPR£©Èý¸ö¶àÔºó£¬Å·ÃËÓû§ÒÀÈ»ÎÞ·¨½Ó¼û½ü1200¸öÃÀ¹úÐÂÎÅÍøÕ¾¡£´óÎÞÊýÍøÕ¾¶¼ÊÇһЩÌṩ±¾µØÐÂÎű¨Â·µÄÓ×ÐÍÐÂÎÅÍøÕ¾£¬µ«¸ÃÁбíÖÐÒ²Ô̺¬Ò»Ð©³ÛÃûµÄÐÂÎÅÍøÕ¾£¬ÈçÂåɼí¶Ê±±¨¡¢Ö¥¼Ó¸çÂÛ̳±¨¡¢Å¦Ô¼ÖðÈÕÐÂÎÅ¡¢´ïÀ˹ÐÂÎÅ¡¢°Í¶ûµÄĦ̫Ñô±¨ºÍʥ·Ò×˹Óʱ¨µÈ¡£GDPRÒªÇóÍøÕ¾±ÈÒÔǰ¸üÉî¿ÌµØÅû¶ÆäÊý¾ÝÍøÂçÐÐΪ£¬²¢ÒªÇóÍøÕ¾»ñµÃ½Ó¼ûÕßµÄÃ÷È·Ðí¿É¡£µ«ÕâÐ©ÍøÕ¾ÈÔûÓиüÐÂÒÔÂú×ãÕâЩҪÇó£¬Õâ¿ÉÄÜÊÇÓÉÓÚͶÈë×ʽðºÍÊÕÒæÏà²î¹ý´óµÄ¹ØÏµ¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/technology/nearly-1-200-us-news-sites-still-not-available-for-eu-users-after-gdpr/