¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20190312
°ä²¼¹¦·ò 2019-03-12
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2019/03/stackstorm-security-vulnerability.html2¡¢Moxa½¨¸´EDSºÍIKS¹¤Òµ»¥»»»úÖеĶà¸ö°²È«·ì϶
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/82269/security/moxa-industrial-switches-flaws.html3¡¢Check Point°ä²¼2ÔÂÈ«ÇòÍþвָÊý£¬CoinhiveÈÔ¾ÉÁìÅÜ
ƾ¾ÝCheck Point¼ÙÔìµÄ2ÔÂÈ«ÇòÍþвָÊý£¬¹ÌÈ»CoinhiveÒÑÓÚ3ÔÂ8ÈÕÖÕ³¡ÔËÓª£¬µ«ËüÔÚ2Ô·ÝÈÔÅÅÃû°ñÊס£Ëæ×ÅÃÅÂÞ±Ò¼ÛÖµµÄ×ÅÂ䣬CoinhiveµÄÍþвֵҲ´Ó2018Äê10ÔµÄ18%µøÖÁ2019Äê1ÔµÄ12£¥ºÍ2ÔµÄ10%¡£Í¬ÑùÔÚ2Ô·ݣ¬×êÑÐÈËÔ±¼ì²âµ½Õë¶ÔÈÕ±¾¡¢µÂ¹ú¡¢¼ÓÄôóºÍ°Ä´óÀûÑǵȹú¶ÈµÄGandCrab V5.2·Ö·¢»î¶¯¡£Õâ¸öеıäÖÖÔÙ´ÎʹµÃ֮ǰ°æ±¾µÄ½âÃܹ¤¾ß²»Æð×÷Óá£2Ô·ÝÅÅÃûǰÈýµÄÒÆ¶¯¶ñÒâÈí¼þÊÇLotoor¡¢HiddadºÍTriada¡£
ÔÎÄÁ´½Ó£º
https://blog.checkpoint.com/2019/03/11/february-2019s-most-wanted-malware-coinhive-quits-gandcrab-cryptomining-ransomware/4¡¢·¸×ïÍÅ»ïAlarg53ÀûÓÃJoomlaкóÃÅ·Ö·¢À¬»øÓʼþ
Check Point×êÑÐÍŶӷ¢ÏÖ°£¼°·¸×ïÍÅ»ïAlarg53ÔÚÀûÓÃJoomlaÖеÄкóÃÅÀ´Ö´ÐÐÀ¬»øÓʼþ¹¥»÷¡£¹¥»÷ÕßÀûÓÃJoomlaµÄÓʼþ·þÎñJmail£¬Í¨¹ýÔÚHTTPÒªÇóÖжÔUser-Agent×Ö¶Î×¢Èë¶ñÒâ´úÂëÀ´Ö´Ðй¥»÷¡£ÔÚ´Óǰ¼¸ÄêÖУ¬Alarg53ÔøÈëÇÖ³¬¹ý1.5Íò¸öÍøÕ¾£¬Æä¹¥»÷Ö¸±êº¸ÇÃÀ¹ú¡¢Ä«Î÷¸ç¡¢ÆÏÌÑÑÀ¡¢Ó¢¹ú¡¢·¨¹ú¡¢Ó¡¶ÈºÍÈÕ±¾µÈ¹ú¶È£¬ÖØÒªÕë¶Ô½ðÈÚ»ú¹¹¡¢ÒøÐк͵±¾Ö»ú¹¹¡£
ÔÎÄÁ´½Ó£º
https://research.checkpoint.com/jmail-breaker-profiting-from-joomlas-mail-service/5¡¢ÐµÄATM skimmer¹¥»÷£¬¿É½Ù³ÖATMÄÚÖÃÉãÏñÍ·
ƾ¾ÝKrebs on SecurityµÄÒ»·Ýл㱨£¬×êÑÐÈËÔ±Ôڵ¿ËÈøË¹ÖݺÕË¹ÌØÊеÄATMÉÏ·¢ÏÖÁËеÄskimmer¹¥»÷£¬¹¥»÷Õßͨ¹ý½Ù³ÖATMÖÐÄÚÖõÄÉãÏñÍ·ÒÔÇÔÈ¡Óû§µÄPINÂë¡£¸ÃskimmerÔ̺¬Ò»¸öÉãÏñÍ·²¿¼þ£¬ÓÃÓÚ¸²¸ÇÔÚATMÄÚÖõݲȫÉãÏñÍ·ÉÏÃæ£¬Óû§ºÜÄÑ´Ó±í²¿¿´µ½¸Ãskimmer¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/new-atm-skimming-attack-enables-scammers-to-hijack-the-atms-in-built-camera-and-steal-a-users-pin-3d2c48846¡¢×êÑÐÍŶӰ䲼¹ØÓÚ¶ñÒâÈí¼þPredator v3.0.7µÄ·ÖÎö»ã±¨
ÔÎÄÁ´½Ó£º
https://securelist.com/a-predatory-tale/89779/ÉêÃ÷£º±¾×ÊѶÓÉGA»Æ½ð¼×άËûÃü°²È«Ó××é·ÒëºÍÕû¶Ù


¾©¹«Íø°²±¸11010802024551ºÅ