¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20190122
°ä²¼¹¦·ò 2019-01-22
ƾ¾ÝÅ·ÃËÓÚ2018Äê5ÔÂÉúЧµÄGDPRÌõÀý£¬·¨¹úÊý¾Ý±£»¤¼à¹Ü»ú¹¹CNIL¶ÔGoogle·¢³öÁË5000ÍòÅ·Ôª£¨Ô¼ºÏ5700ÍòÃÀÔª£©µÄ·£µ¥¡£CNIL³ÆÕâ±Ê·£¿îµÄÔÒòÊÇGoogle¹«Ë¾¡°²»×ãͨÃ÷¶È¡¢ÐÅÏ¢²»ºÏ³ÆÒÔ¼°ÔÚ¸öÐÔ»¯¸æ°×·½ÃæÃ»ÓлñµÃÓû§µÄÓÐЧÔ޳ɡ±¡£ÕâÊÇCNILƾ¾ÝGDPR¿ª³öµÄÊ×ÕÅ·£µ¥¡£Google»ØÓ¦³Æ¡°ÎÒÃǼ«¶ÈÖÂÁ¦ÓÚÂú×ãÈËÃǶÔÊý¾ÝͨÃ÷¶ÈµÄ½øÕ¹ºÍGDPRµÄÒªÇó£¬ÎÒÃÇÔÚ×êÑоö¶¨ÎÒÃǽÓÏÂÀ´µÄ²½Öè¡£¡±¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2019/01/google-privacy-gdpr-fine.html2¡¢ÃÀ¹úÃñÖ÷µ³³ÆÖÐÆÚÑ¡¾ÙÖ®ºóÔâµ½¶íÂÞ˹ºÚ¿Í´¹µö¹¥»÷
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/phishing-attack-allegedly-targeted-us-dnc-after-2018-midterms/3¡¢MySQLÉè¼ÆÈ±µãÔÊÐí¶ñÒâ·þÎñÆ÷´Ó¿Í»§¶ËÇÔÈ¡Îļþ
ƾ¾Ý°²È«×êÑÐÈËÔ±Willem de GrootÔÚRedditÉϵĻáÉÌÌû£¬2018Äê10ÔÂMagecartÏò¹ºÎïÍøÕ¾×¢Èë¶ñÒâ´úÂëÊÇÀûÓÃÁËAdminer£¨Ò»¸öÖÎÀíPostgreSQLºÍMySQLÊý¾Ý¿âµÄ¹¤¾ß£©Öеķì϶£¬µ××ÓÔÒòÊÇMySQLºÍ̸Éè¼ÆÖеÄȱµã¡£¶ñÒâµÄMySQL·þÎñÆ÷Äܹ»ÀûÓÃLOAD DATA LOCALºÅÁîÀ´¶ÁÈ¡MYSQL¿Í»§¶ËµÄËÁÒâÎļþ¡£Õâ¸öȱµãÊǸöÓÉÀ´ÒѾõÄÎÊÌ⣬GitHubÉϾÍÓжñÒâMySQL·þÎñÆ÷µÄ´úÂë¡£Adminer°æ±¾4.3.1µ½4.6.2Êܵ½¸Ã·ì϶µÄÓ°Ï죬½¨ÒéÓû§¸üÐÂÖÁAdminer4.6.3Ö®ºóµÄ°æ±¾¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/mysql-design-flaw-allows-malicious-servers-to-steal-files-from-clients/4¡¢ÈÕ±¾Omron¹«Ë¾½¨¸´HMI²úÆ·ÖеÄDoSºÍRCE·ì϶
ÈÕ±¾Å·Ä·Áú£¨Omron£©¹«Ë¾°ä²¼CX-Supervisor²úÆ·µÄ°²È«¸üУ¬½¨¸´¿Éµ¼ÖÂDoSºÍRCEµÄ¶à¸ö°²È«·ì϶¡£CX-SupervisorÊÇSCADAϵͳµÄHMI½ÚÔìÆ÷£¬Æ¾¾ÝICS-CERTµÄ»ã±¨£¬¸Ã¹¤¾ß±»¿í·ºÓÃÓÚÈ«ÇòµÄÄÜÔ´ÁìÓò¡£Source InciteµÄ×êÑÐÔ±Esteban Ruiz·¢ÏÖÁËÕâЩ·ì϶£¬·ì϶ÁìÓòÔ̺¬use-after-free¡¢Óû§ÊäÈë²»×ãÑéÖ¤ÒÔ¼°¿Éµ¼ÖÂËÁÒâ´úÂë/ºÅÁîÖ´ÐеÄÀàÐÍ»ìºÏÎÊÌ⡣ŷķÁúÔÚCX-Supervisor 3.5.0.11Öн¨¸´ÁËÕâЩ·ì϶¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/flaws-omron-hmi-product-exploitable-malicious-project-files5¡¢iOS 12.1.2·ì϶¿É»ñÈ¡rootȨÏÞ£¬Ó°ÏìiPhone XSµÈÐÂÒ»´úÊÖ»ú
Á½Î»°²È«×êÑÐÈËÔ±·¢ÏÖÁËiOS 12.1.2Öеݲȫ·ì϶£¬ËùÓÐÐÂÒ»´úµÄiPhone¶¼Êܵ½Ó°Ï죬Ô̺¬iPhone XS¡¢iPhone XS MaxºÍiPhone XR¡£×êÑÐÈËԱͨ¹ýPort-Oriented Programming£¨POP£©¹¥»÷»ñµÃÁËiPhoneÉϵÄrootȨÏÞ£¬²¢ÈƹýÁËPACϵͳ¡£×êÑÐÈËÔ±ÔÚTwitterÉϰ䲼ÁËËûÃǵÄ×êÑгɾ͡£¹ÌÈ»ÈÆ¹ýPACʹµÃiOS 12.1.2Ô½Óü±äµÃÔ½·¢ÈÝÒ×£¬µ«ÓÉÓÚûÓй«¿ª¿ÉÓõÄexploit£¬ÕâÒ²Ðí²¢²»»áºÜ¿ì²úÉú¡£
ÔÎÄÁ´½Ó£º
https://news.softpedia.com/news/security-exploit-in-ios-12-1-2-on-iphone-xs-discovered-524621.shtml6¡¢Ë¼¿ÆSMB»¥»»»ú´æÔÚÉÐ佨¸´µÄ°²È«·ì϶£¬¿Éµ¼ÖÂÉ豸±»ÊÕÊÜ
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/80114/security/cve-2018-15439-cisco-soho.htmlÉêÃ÷£º±¾×ÊѶÓÉGA»Æ½ð¼×άËûÃü°²È«Ó××é·ÒëºÍÕû¶Ù


¾©¹«Íø°²±¸11010802024551ºÅ