¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20190226

°ä²¼¹¦·ò 2019-02-26
1¡¢Èý¸ö4G/5G·ì϶£¬¿Éµ¼Ö¹¥»÷ÕßÈÆ¹ýÆä·À»¤Õ½Êõ

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ÔÚ2019ÄêNDSS×êÑлáÉÏ£¬Ò»¸ö×êÑÐÍŶÓÅû¶ÁËÔÚ4GºÍ5G LTEºÍ̸·äÎÑÍøÂçÖз¢ÏÖµÄÈý¸öа²È«·ì϶£¬¹¥»÷Õß¿ÉÀûÓÃÕâЩ·ì϶À¹½ØÓû§Í¨»°ºÍ×·×ÙÓû§µØÎ»¡£×êÑÐÈËÔ±Åû¶µÄµÚÒ»ÖÖ¹¥»÷²½ÖèÊÇTorpedo¹¥»÷£¬ËüÀûÓÃÁËѰºôºÍ̸Öеķì϶£¬Ôڶ̹¦·òÄÚ·¢³öºÍÈ¡µÞ¶à¸öµç»°Äܹ»´¥·¢Ñ°ºôÐÂÎÅ£¬¶ø²»»áÏòÖ¸±êÉ豸·¢³öÀ´µç¾¯±¨¡£¹¥»÷ÕßÄܹ»¸ú×ÙÖ¸±êµÄµØÎ»£¬½Ù³ÖѰºôÐÅ·ºÍ×¢ÈëαÔìµÄѰºôÐÂÎÅÀ´ÌáÒéDoS¹¥»÷¡£´Ë±í£¬ToRPEDO¹¥»÷»¹ÎªÁí±íÁ½ÖÖ¹¥»÷-PIERCERºÍIMSI-Cracking¹¥»÷-ÌṩÁË¿ÉÄÜ£¬Ê¹µÃ¹¥»÷ÕßÄܹ»»ñÈ¡Óû§µÄIMSI¡£

   

Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/02/location-tracking-imsi-catchers.html

2¡¢²¨Òô777-36NÉϵÄÓ¢¹úº½¿ÕÓéÀÖϵͳ´æÔÚÌáȨ·ì϶

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


°²È«×êÑÐÈËÔ±·¢ÏÖ×°ÖÃÔÚ²¨Òô777-36N£¨ER£©µÈ·É»úÉϵÄÓ¢¹úº½¿ÕÓéÀÖϵͳ´æÔÚÒ»¸öÌáȨ·ì϶¡£¸Ã·ì϶£¨CVE-2019-9019£©ÓëUSB×é¼þÓйØ£¬Î´¾­ÊÚȨµÄ±¾µØ¹¥»÷Õß¿ÉÀûÓø÷ì϶´¥·¢»º³åÇøÒç³öÎÊÌâ²¢½øÐÐÌáȨ¡£½ØÖÁĿǰÉÐÎÞ·ì϶ϸ½ÚÅû¶£¬Ò²Ã»Óй«¿ªµÄ·ì϶ÀûÓá£

  

Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/81599/breaking-news/british-airways-entertainment-system-cve-2019-9019.html

3¡¢Ê׸öÀûÓÃWinRAR ACE·ì϶µÄÀ¬»øÓʼþ»î¶¯

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

×êÑÐÈËÔ±·¢ÏÖÒ»¸ö´«²¼¶ñÒâRARÎļþµÄÀ¬»øÓʼþ»î¶¯£¬Õâ¿ÉÄÜÊÇÊ׸öÀûÓÃ×î½üµÄWinRAR ACE·ì϶·Ö·¢¶ñÒâÈí¼þµÄ¹¥»÷»î¶¯¡£ÉÏÖÜ£¬CheckpointÅû¶ÁËWinRAR UNACEV2.DLL¿âÖеÄÒ»¸ö´æÔÚÁË19ÄêµÄ·ì϶£¬WinRAR¿ª·¢ÈËÔ±ÔÚ×îа汾µÄWinRAR 5.70 beta 1ÖÐɾ³ýÁ˸ÃDLLºÍ¶ÔACEÎļþµÄÖ§³Ö£¬µ«Î´¸üÐÂÖÁ×îа汾µÄÓû§ÈÔ»áÔâµ½¹¥»÷¡£¸Ã»î¶¯·Ö·¢µÄ¶ñÒâÈí¼þ»áÏνӵ½http://138.204.171.108/²¢ÏÂÔØCobalt Strike Beacon DLLµÈÎļþ£¬Ê¹µÃ¹¥»÷ÕßÄܹ»Ô¶³Ì½Ó¼ûÖ¸±êÍÆËã»ú²¢Ö´ÐÐÆäËüºÅÁî¡£

 

 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/malspam-exploits-winrar-ace-vulnerability-to-install-a-backdoor/

4¡¢ICANNÖÒ¸æÕë¶Ô»¥ÁªÍø»ù´¡ÉèÊ©µÄ´ó¹æÄ£¹¥»÷

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

»¥ÁªÍøÃû³ÆÓëÊý×ÖµØÖ··ÖÅä»ú¹¹£¨ICANN£©ÖÒ¸æÕë¶Ô»¥ÁªÍø»ù´¡ÉèÊ©µÄ´ó¹æÄ£¹¥»÷¡£ICANNÒÔΪ£¬ÓòÃûϵͳ£¨DNS£©µÄ¹Ø¼ü»ù´¡ÉèÊ©´æÔÚ¡°³ÖÐøÇÒ³Á´óµÄ·çÏÕ¡±¡£×î½ü¼¸ÖÜ×êÑÐÈËÔ±¹Û²ìµ½Õë¶Ô»¥ÁªÍø»ù´¡ÉèÊ©µÄ¶ñÒâ»î¶¯¼¤Ôö£¬¹¥»÷ÕßÖØÒªÕë¶ÔDNSϵͳ¡£ICANN¶½´ÙÖ´ÐÐDNSSEC¼¼ÊõÒÔÔ¤·ÀÁ÷Á¿½Ù³Ö¹¥»÷¡£

  

Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/81617/security/icann-alarm-internet-infrastructure.html

5¡¢¼ÓÖݽ«»¤ÕÕºÍÉúÎï¼ø±ðÐÅÏ¢ÁÐÈëÐÂÊý¾Ýй¶֪ͨ·¨°¸

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

¼ÓÀû¸£ÄáÑÇÖÝÍÆ³öеÄÊý¾Ýй¶֪ͨ·¨°¸£¬ÒªÇóÆóÒµÔÚÓû§µÄ»¤ÕÕ»òÉúÎï¼ø±ðÐÅϢй¶ʱ£¬Í¨ÖªÏû·ÑÕß¡£´Ëǰ£¬¼ÓÖݵÄÊý¾Ýй¶֪ͨ·¨°¸Öл®¶¨µÄÏû·ÑÕßÓ×ÎÒÊý¾ÝÔ̺¬Éç»á°²È«ºÅÂë¡¢ÐÅÓþ¿¨ºÅÂë¡¢¼ÝÕÕºÅÂëÒÔ¼°Ò½Áƺͽ¡È«±£ÏÕÐÅÏ¢¡£´Ë¿Ì£¬Ð·¨°¸AB 1130½«»¤ÕÕºÅÂëºÍÉúÎï¼ø±ðÐÅÏ¢Ôö³¤µ½¸ÃÃûµ¥ÖУ¬ÒÔ½¨²¹ÏÖÓÐÁ¢·¨Öеġ°·ì϶¡±¡£¼ÓÖݵ±¾Ö»¹Ö¸³ö£¬ÕâЩÐÅÏ¢²»½öÔ̺¬Ö¸ÎÆ£¬»¹Ô̺¬ÊÓÍøÄ¤/ºçĤͼÏñÐÅÏ¢¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/california-introduces-new-data-breach-notification-law

6¡¢Ó¢¹úÒøÐÐÒµ2018ÄêÊý¾Ýй¶ÊÂÎñͬ±ÈÔö³¤480%

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

ƾ¾ÝÓ¢¹ú½ðÈÚ·þÎñ¼à¹Ü»ú¹¹µÄÒ»·Ý×îеĻ㱨£¬2018ÄêÓ¢¹úÒøÐÐÒµ»ã±¨µÄÊý¾Ýй¶ÊÂÎñÏà±È2017ÄêÔö³¤ÁË480%¡£FCAµÄÊý×ÖÅú×¢£¬2017Äê¹²»ã±¨ÁË25ÆðÊý¾Ýй¶ÊÂÎñ£¬¶ø2018ÄêÔòΪ145Æð¡£Í¶×ÊÒøÐÐÔÚ2018Äê»ã±¨µÄÊý¾Ýй¶ÊÂÎñÊýÁ¿×î¶à£¬Îª34Æð£¬¶øÃ³Ò×ÒøÐеÄÔö³¤·ù¶È×î´ó£¨2400%£©£¬Æä»ã±¨µÄÊÂÎñΪ2017Äê1ÆðºÍ2018Äê25Æð¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/uk-banks-reported-480-more-1/

ÉêÃ÷£º±¾×ÊѶÓÉGA»Æ½ð¼×άËûÃü°²È«Ó××é·­ÒëºÍÕû¶Ù