ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸Áбí £»ºÚ¿ÍÀûÓÃÆ¾Ö¤Ìî³ä¹¥»÷³¬¹ý30Íò¸öSpotifyÓû§

°ä²¼¹¦·ò 2020-11-24
1.ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸Áбí


1.jpg


ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸Áбí£¬ÆäÖÐÔ̺¬À´×ÔÊÀ½ç¸÷µØµÄ´óÐÍÒøÐк͵±¾Ö×éÖ¯¡£ÕâЩÉ豸Öоù´æÔÚõè¾¶±éÀú·ì϶£¬±»×·×ÙΪCVE-2018-13379£¬ËüÓ°ÏìÁË´óÁ¿Î´½¨²¹µÄFortinet FortiOS SSL VPNÉ豸¡£¹¥»÷ÕßÄܹ»ÀûÓô˷ì϶£¬´ÓFortinet VPN½Ó¼ûsslvpn_websessionÎļþÀ´ÇÔÈ¡µÇ¼ʹ´¦£¬²¢½«ÆäÓÃÓÚ·ÛËéÍøÂç²¢²¿ÊðÀÕË÷Èí¼þ¡£Ö»¹Ü¸Ã·ì϶ÔÚÒ»Äêǰ¾Í±»¹«¿ªÅû¶£¬µ«ºÚ¿ÍÈÔ·¢ÏÖ²¢¹«¿ªÁËÁË49577¸ö´æÔÚ´ËÀà·ì϶µÄ´óÐÍÉ豸µÄÁбí¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hacker-posts-exploits-for-over-49-000-vulnerable-fortinet-vpns/


2.ºÚ¿ÍÀûÓÃÆ¾Ö¤Ìî³ä¹¥»÷³¬¹ý30Íò¸öSpotifyÓû§


2.jpg


VPNMentor×êÑÐÈËÔ±·¢ÏÖ£¬ºÚ¿ÍÔÚʹÓÃÔ̺¬3ÒÚ¸öÓû§ÃûºÍÃÜÂë×éºÏµÄÊý¾Ý¿â£¬¶ÔSpotifyÓû§ÌáÒéÍ´´¦Ìî³ä¹¥»÷¡£¸ÃÊý¾Ý¿âÖеÄÿ¸ö¼Í¼¶¼Ô̺¬Ò»¸öµÇ¼Ãû£¨µç×ÓÓʼþµØÖ·£©¡¢Ò»¸öÃÜÂëÒÔ¼°¸ÃÍ´´¦ÊÇ·ñÄܹ»³É¹¦µÇ¼µ½SpotifyÕÊ»§µÄ·´À¡¡£×êÑÐÈËÔ±ÒÔΪ£¬Êý¾Ý¿âÖÐÁгöµÄ3Òڱʼͼ¿Éʹ¹¥»÷Õß¹¥ÆÆ300000ÖÁ350000¸öSpotifyÕÊ»§¡£Ä¿Ç°£¬SpotifyΪËùÓÐÊÜÓ°ÏìµÄÓû§½øÐйö¶¯³ÁÖÃÃÜÂ룬µ«ÈÔ²»Ö§³ÖÖ§³Ö¶à³É·ÖÉí·ÝÑéÖ¤¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/over-300k-spotify-accounts-hacked-in-credential-stuffing-attack/


3.¼ÓÄôóÊ¥Ô¼º²ÊÐÔâÍøÂç¹¥»÷£¬µ¼ÖÂÊÐÕþÍøÂç̱»¾


3.jpg


11ÔÂ15ÈÕ£¬¼ÓÄôóÊ¥Ô¼º²ÊÐÔâ·ê´ó¹æÄ£ÍøÂç¹¥»÷£¬ÑϳÁ·ÛËéÁËÕû¸ö³ÇÊеÄÊÐÕþ»ù´¡ÉèÊ©¡£Õâ´Î¹¥»÷µ¼ÖÂÕû¸öÊÐÕþÍøÂç¹Ø¹Ø£¬Ô̺¬³ÇÊÐÍøÕ¾¡¢ÔÚÏßÖ§¸¶ÏµÍ³¡¢µç×ÓÓʼþºÍ¿Í»§·þÎñÀûÓ÷¨Ê½£¬µ«²¢Î´ÓÐÈκÎÊÐÃñµÄÓ×ÎÒÐÅÏ¢±»Ð¹Â¶¡£×¨¼ÒÒÔΪ£¬´ËÊÂÎñΪÓÉÀÕË÷Èí¼þ¹¥»÷µ¼ÖµÄ£¬Ô¤¼Æ¿ÉÄܱØÒª¼¸¸öÐÇÆÚÄÜÁ¦ÆëÈ«¸´Ô­Õý³£¡£Ä¿Ç°£¬¸ÃÊÐÔÚÓëÁª¹úºÍÊ¡µ±¾ÖºÏ×÷£¬ÒÔ´ÓÍøÂç¹¥»÷Öи´Ô­¹ýÀ´¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/111259/cyber-crime/saint-john-cyber-attack.html


4.Pickle FinanceÏîÄ¿Ôâ¹¥»÷£¬Ëðʧ½ü2000ÍòÃÀÔª


4.jpg


Á÷¶¯ÐÔÍÚ¿óÏîÄ¿Pickle FinanceÔâµ½¹¥»÷£¬Ëðʧ½ü2000ÍòÃÀÔª¡£Õâ´Î¹¥»÷ÖУ¬ºÚ¿Í²¢Ã»ÓÐʹÓÃ×î½üÔÚ´óÎÞÊýÀàËÆÊÂÎñÖгöÏÖµÄFlash Loan£¬¶øÊDz¿ÊðÁËÒ»¸ö¶ñÒâjarÀ´Î±ÔìµÄ»¥»»£¬ÒÔÀûÓÃPickle FinanceÖÇÄܺÏÔ¼DAI PickleJarÖеķì϶¡£¸ÃÏîÖ÷ÕÅÍŶӰµÊ¾£¬Æä19759355¸öDAIÒѱ»ºÄ¾¡£¬¶ø¸ÃÏîÖ÷ÕÅÁîÅÆ£¨PICKLE£©Ò²ÔÚÔâ·êºÚ¿Í¹¥»÷ºóËðʧÁËÆä¼ÛÖµµÄ50£¥ÒÔÉÏ£¬´ïµ½ÁË8.84ÃÀÔªµÄµÍµã¡£


Ô­ÎÄÁ´½Ó£º

https://www.fxstreet.com/cryptocurrencies/news/nearly-20-million-stolen-from-the-defi-protocol-pickle-finance-202011221250


5.ÁãÊÛ¹«Ë¾E-LandϰȾÀÕË÷Èí¼þµ¼Ö½ü°ëÊýÉÌµê¹Ø¹Ø


5.jpg


º«¹úʱװºÍÁãÊÛ¼¯ÍÅE-Land GroupÖÜÈÕ°µÊ¾£¬ÓÉÓÚϰȾÀÕË÷Èí¼þ£¬Æä°ëÊýÉÌµê¹Ø¹Ø¡£¸Ã×éÖ¯³ÆÆä¹«Ë¾ÍøÂçϵͳÔÚÔ糿Ôâµ½ÀÕË÷Èí¼þµÄ¹¥»÷£¬ÆÈʹÆäNC°Ù»õÉ̵êºÍNewCore OutletµÄ50¸ö·ÖÖ§»ú¹¹ÖеÄ23¸öÖÕ³¡ÁËÔËÓª¡£E-Land°µÊ¾£¬Ä¿Ç°ÒÑ¹Ø¹ØÆä²¿ÃŹ«Ë¾ÍøÂçϵͳ£¬ÒÔ×î´óˮƽµØÏ÷¼õÇÖº¦£¬²¢ÒÑÒªÇ󾯷½µ÷²éÍøÂç¹¥»÷¡£    


Ô­ÎÄÁ´½Ó£º

https://www.koreatimes.co.kr/www/tech/2020/11/694_299692.html


6.Wipro°ä²¼ÓйØÀûÓÃAIºÍMLÓ¦¶ÔÍøÂç¹¥»÷µÄ·ÖÎö»ã±¨


6.jpg


Wipro°ä²¼ÁËÓйØÀûÓÃAIºÍMLÓ¦¶ÔÍøÂç¹¥»÷µÄ·ÖÎö»ã±¨¡£»ã±¨·¢ÏÖ£¬ÔÚ´ÓǰµÄËÄÄêÀȫÇòÓÐ49%µÄÓëÍøÂ簲ȫÓйصÄרÀû¶¼ÓëÈËΪÖÇÄܺͻúе½ø½¨µÄÀûÓÃÓйØ¡£¶ø½üÒ»°ë£¨49£¥£©µÄ×éÖ¯ÔÚÀ©´óÈÏÖª¼ì²âÄÜÁ¦£¬ÒÔÓ¦¶ÔÆä°²È«ÔËÓªÖÐÐÄ(SOC)ÖеÄδ֪¹¥»÷¡£65£¥µÄ×éÖ¯ÔÚ¶Ô²Ù×÷¼¼Êõ£¨OT£©ºÍIoTÉ豸½øÐÐÈÕÖ¾¼à¿Ø£¬ÒÔ¼õÇáOT·çÏÕµÄÔö³¤¡£57£¥µÄ×éÖ¯Ö»Ô¸Òâ¹²ÏíIoC£¬64£¥µÄ×éÖ¯ÒÔΪÃûÓþ·çÏÕÊÇÐÅÏ¢¹²ÏíµÄ¹ÊÕÏ¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/11/23/ai-ml-tackle-unknown-attacks/