2020Äê¶«¾©°ÂÔË»áÍøÂçÍþвÆÀ¹À»ã±¨£»åÚÏë¡¢»Ý±é¼°´÷¶û±íΧÉ豸ÊÜδÊðÃû¹Ì¼þ·ì϶ӰÏì

°ä²¼¹¦·ò 2020-02-24

1.°²È«»ú¹¹°ä²¼2020Äê¶«¾©°ÂÔË»áÍøÂçÍþвÆÀ¹À»ã±¨


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ƾ¾ÝÍøÂçÍþвͬÃË£¨CTA£©°ä²¼µÄÒ»·ÝÆÀ¹À»ã±¨£¬ÈÕ±¾ÔÚÑÇÌ«µØÓòµÄ¾ºÕùµÐÊֺܿÉÄÜ»áͨ¹ýÍøÂç¹¥»÷ºÍÐéαÐÅÏ¢¶Ô×¼¼´½«ÓÚ½ñÄê7ÔÂÔÚ¶«¾©½øÐеÄÏļ¾°ÂÔË»á ¡£»ùÓÚ¶Ô2018Ä꺫¹úƽ²ý¶¬°Â»áµÄÍøÂç¹¥»÷·ÖÎö£¬¹¥»÷ÕߺܿÉÄÜ»áÕë¶Ô°ÂÔË»áµÄ»ù´¡ÉèÊ©ÌáÒé·ÛËéÐÔµÄÍøÂç¹¥»÷ºÍDDoS¹¥»÷£¬´Ë±í£¬Óë°ÂÔË»áÓйصÄ×éÖ¯£¨ÀýÈçÊÀ½ç·´Ð˷ܼÁ»ú¹¹WADA£©Ò²¿ÉÄÜ»áÔâµ½¹¥»÷ ¡£RANDÒ²°ä²¼ÁËÒ»·Ý2020Äê°ÂÔË»áÍþвÆÀ¹À»ã±¨£¬¸Ã»ã±¨³ÆÓÉÓÚ°ÂÔË»áµÄÓâÔ½Ãû¶È£¬Ê¹µÃÆä³ÉΪÄÇЩ׷ÇóÕþÖζ¯»ú¡¢Í¨¹ý·¸×ïÔö³¤ÆØ¹â¶ÈµÄ¹¥»÷ÕßµÄÖ¸±ê ¡£


Ô­ÎÄÁ´½Ó£º

https://www.darkreading.com/threat-intelligence/olympics-could-face-disruption-from-regional-powers/d/d-id/133711


2.åÚÏë¡¢»Ý±é¼°´÷¶û±íΧÉ豸ÊÜδÊðÃû¹Ì¼þ·ì϶ӰÏì


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ƾ¾ÝEclypsiumµÄ×êÑУ¬Wi-FiÊÊÅäÆ÷¡¢USB¼¯Ï߯÷¡¢´¥¿Ø°åºÍÉãÏñÍ·ÖеÄδÊðÃû¹Ì¼þ·ì϶¿ÉÄÜʹÊý°ÙÍò±íΧÉè±¸Ãæ¶ÔÍøÂç¹¥»÷µÄ·çÏÕ ¡£ÊÜÓ°ÏìµÄ²úÆ·Ô̺¬åÚÏë±Ê¼Ç±¾µçÄÔÖеÄTouchPadºÍTrackPoint¹Ì¼þ¡¢»ÝÆÕ±Ê¼Ç±¾µçÄÔÖеÄHP Wide Vision FHDÉãÏñÍ·¹Ì¼þÒÔ¼°´÷¶ûXPS±Ê¼Ç±¾µçÄÔÖеÄWi-FiÊÊÅäÆ÷µÈ ¡£ÓÉÓÚÕâЩ²úÆ·ÔÚ½øÐй̼þ¸üÐÂʱ²»×ãÊʵ±µÄ´úÂëÊðÃûÑéÖ¤ºÍÉí·ÝÑéÖ¤£¬¹¥»÷Õß¿ÉÄÜͨ¹ý¶ñÒâ¹Ì¼þ¸üÐÂÀ´Ö´ÐÐÐÅϢй¶¡¢Ô¶³Ì´úÂëÖ´ÐÓ×¢»Ø¾ø·þÎñµÈ¹¥»÷ ¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/lenovo-hp-dell-peripherals-unpatched-firmware/152936/


3.¼ÓÄôó¿ý±±¿Ë²ÆÕþ²¿ÔâºÚ¿Í¹¥»÷£¬½ü36ÍòÀÏʦÐÅϢй¶


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾



¼ÓÄôó¿ý±±¿ËÊ¡µ±¾Ö֤ʵ£¬½ü36ÍòÃûÀÏʦµÄÓ×ÎÒÐÅÏ¢¿ÉÄÜÒòºÚ¿Í¹¥»÷¶ø±»µÁ ¡£¿ý±±¿Ë²ÆÕþίԱ»á¶ÔÔÚ»òÒѾ­µ£ÈÎÀÏʦµÄÈ˵ÄÉí·ÝµÁÓÃÇé¿ö½øÐе÷²é£¬±¾µØ²ÆÕþ²¿°ä²¼ÉêÃ÷³Æ£¬¹¥»÷Õßͨ¹ýÇÔÈ¡µÄÓû§ÕË»§ºÍÃÜÂë½Ó¼ûÁËÆä´æ´¢Ó×ÎÒÐÅÏ¢µÄÊý¾Ý¿â£¬µ¼ÖÂÕâЩÀÏʦµÄÐÅÏ¢±»µÁ ¡£±¾µØµ±¾Ö°µÊ¾½«Í¨ÖªÊÜÓ°ÏìµÄÀÏʦ²¢ÎªËûÃÇÌṩÃâ·ÑµÄÐÅÓþ¼à¿Ø·þÎñ ¡£


Ô­ÎÄÁ´½Ó£º

https://globalnews.ca/news/6582061/personal-information-quebec-teachers-data-breach/


4.haveibeenpwnedÊÕ¼Slickwraps 88.5ÍòÓû§ÕË»§


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


2ÔÂ16ÈÕµç×Ó²úÆ·°ü×°ÁãÊÛµêSlickwrapsÔâ·êÊý¾Ýй¶ÊÂÎñ£¬¸ÃÊÂÎñµ¼ÖÂ88.5Íò¸ö·ÖÆçµÄ¿Í»§µç×ÓÓʼþµØÖ·Ð¹Â¶£¬ÆäËüÊÜÓ°ÏìµÄÊý¾ÝÔ̺¬ÐÕÃû¡¢ÏÖʵµØÖ·¡¢µç»°ºÅÂëºÍ²É°ìº¹Çà¼Í¼µÈ ¡£haveibeenpwnedÍøÕ¾ÓÚ22ÈÕÊÕ¼ÁËй¶µÄÊý¾Ý ¡£Õâ´ÎÊÂÎñ²úÉúµÄÔ­ÒòÊÇ×êÑÐÈËÔ±Lynx·¢ÏÔìäÍøÕ¾´æÔÚõè¾¶±éÀú·ì϶£¬¹¥»÷ÕßÄܹ»½Ó¼ûÆäÔ±¹¤¼òÀú¡¢9GBµÄ¿Í»§ÕÕÆ¬¡¢ZenDeskƱÎñϵͳ¡¢APIÍ´´¦ÒÔ¼°¿Í»§ÐÅÏ¢µÈ ¡£Lynx»¹·¢ÏÖ¹¥»÷ÕßÒѾ­ÇÔÈ¡ÁËÕâЩÊý¾Ý£¬²¢ÀûÓÃZenDesk·þÎñ̨ϵͳÏò¿Í»§·¢ËÍÁËÊý¾Ý±»µÁµÄ֪ͨÓʼþ ¡£


Ô­ÎÄÁ´½Ó£º

https://haveibeenpwned.com/PwnedWebsites#Slickwraps


5.Transparent Tribe»Ø¹é£¬Õë¶ÔÓ¡¶È±í½»ºÍ¾üÊÂÈËÔ±

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


Cybaze-Yoroi×êÑÐÈËÔ±°ä²¼Operation Transparent Tribe×îй¥»÷»î¶¯µÄ·ÖÎö»ã±¨ ¡£Transparent Tribe×îÔçÓÚ2016Äê±»·¢ÏÖ£¬ÆäÖØÒªÕë¶ÔÓ¡¶ÈµÄ±í½»¹ÙºÍ¾üÊÂÈËÔ±£¬×êÑÐÈËÔ±×·×Ùµ½Æä¹¥»÷Ô´IPÀ´×ÔÓÚ°Í»ù˹̹ ¡£Ëæ×ÅÁ½¹ú¹ØÏµµÄÔÙ¶ÈÑÏÖØ£¬¸Ã¹¥»÷ÍÅ»ïÔÚ4ÄêÖ®ºóÓÖ³öÏÖÁËÐµĹ¥»÷»î¶¯£¬×îй¥»÷»î¶¯µÄC2¼Í¼¿É×·Òäµ½2020Äê1ÔÂ29ÈÕ£¬Æäµö¶üÎļþÓëDSOP FUND£¨¹ú·À·þÎñ¹ÙÔ±¹«»ý½ð£©ÓйØ ¡£»ã±¨ÖзÖÎöÁ˸ûµÄ¾ßÌåIoCºÍYara¹æ¶¨ ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/98249/apt/operation-transparent-tribe-pakistan-india.html


6.Maze°ä²¼ÆäµÁÈ¡µÄÓëPTSDË÷ÅâÓйصÄÍËÒÛÎäÊ¿Êý¾Ý


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ƾ¾ÝEmsisoftµÄ·ÖÎö£¬ÀÕË÷Èí¼þMaze±³ºóµÄ·¸×ïÍÅ»ïÔÚ½ü4¸öÔÂÄÚÖÁÉÙ¹¥»÷ÁË5¼ÒÂÉʦÊÂÎñËù£¬²¢ÇÒÒѾ­°ä²¼ÁËÆäµÁÈ¡µÄÓëPTSDË÷ÅâÓйصÄÍËÒÛÎäÊ¿Êý¾Ý ¡£ÕâЩÎļþÔ̺¬VAÎļþ¡¢»¼Õß»¤Àí¼Í¼¡¢Ë¾·¨ÓöȺÍ̸ºÍÒþÖÔÔÞ³ÉÊéµÈ ¡£ÆäÖÐÁ½¼ÒÂÉʦÊÂÎñËù±ðÀëΪµÂ¿ËÈøË¹ÖݵÄBaker WotringºÍÓ¡µÚ°²ÄÉÖݵÄWoods and Woods LLC ¡£Ä¿Ç°Éв»Ã÷ÏÔËûÃǵĿͻ§ÊÇ·ñÒÑÖªÆäÃô¸ÐÐÅÏ¢±»°ä²¼µ½ÍøÉÏ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.federaltimes.com/pay-benefits/military-benefits/health-care/2020/02/19/hacker-group-targeted-law-firms-released-veterans-stolen-data-related-to-ptsd-claims/