FiberHome FTTH ONT·ÓÉÆ÷ÖдæÔÚ28¸öºóÃÅÕÊ»§£»µÂ¹ú±Ê¼Ç±¾ÁãÊÛÉÌÒò¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª
°ä²¼¹¦·ò 2021-01-18
×êÑÐÈËÔ±Pierre Kim·¢ÏÖFiberHome FTTH ONT·ÓÉÆ÷ÖдæÔÚ28¸öºóÃÅÕÊ»§ºÍ¶à¸öÆäËû·ì϶¡£¸Ã·ÓÉÆ÷ÖØÒª²¿ÊðÓÚÄÏÃÀºÍ¶«ÄÏÑÇ£¬Í¨³£×°ÖÃÔÚÑ¡ÔñǧÕ×λµÄ¹«Ô¢Â¥ÄÚ¡¢¼ÒÍ¥»òÆóÒµÄÚ²¿¡£Kim³ÆÆä·¢ÏÖ´óÁ¿¿É±»ÀÄÓÃÀ´ÊÕÊÜISPµÄºóÃźͷì϶£¬ÀýÈçºóÃÅÔÊÐí¹¥»÷Õßͨ¹ý·¢ËÍÌØÔìµÄHTTPSÒªÇó[https£º// [ip]/telnet£¿enable=0£¦key=calculated£¨BR0_MAC£©]Óë·ÓÉÆ÷µÄTelnetÏνӣ¬Web·þÎñÆ÷Ô̺¬22¸öÓÉ·ÖÆçµÄInternet·þÎñÌṩÉÌʹÓõÄÓ²±àÂëÍ´´¦µÈ¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/multiple-backdoors-and-vulnerabilities-discovered-in-fiberhome-routers/
2.µÂ¹ú±Ê¼Ç±¾ÁãÊÛÉÌÒò¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª

µÂ¹ú±Ê¼Ç±¾ÁãÊÛÉÌNBB£¨notebooksbilliger.de£©ÒòÀûÓÃÊÓÆµ¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª¡£¸Ã¹«Ë¾Á½ÄêǰÔÚÆä²Ö¿â¡¢ÏúÊÛÇøºÍͨ³£¹¤×÷ÇøÖÐ×°ÖÃÁËÊÓÆµ¼à¿ØÏµÍ³£¬Ö÷ÕÅÊÇÔ¤·ÀºÍµ÷²é±»µÁºÍ¸ú×Ù²úÆ·¡£µÂ¹úÊý¾Ý¼à¹Ü»ú¹¹°µÊ¾ÀûÓÃÈç´ËÃܼ¯µÄÊÓÆµ¼à¿Ø£¬ÒѾÑϳÁ¼Óº¦Ô±¹¤µÄÈ¨ÊÆ¡£´Ë±í£¬NBB»¹ÔÚ¿Í»§²»ÖªÇéµÄÇé¿öÏ£¬ÔÚÆäÏúÊÛ³¡Ëù²âÊÔÉ豸ʱ¼Í¼Á˿ͻ§µÄÐÅÏ¢£¬ÕâÊÇÁíÒ»¸ö³Á´óµÄÒþÖÔ¼Óº¦ÐÐΪ¡£Õâ´ÎÊÇÆ¾¾Ý2018Äê°ä²¼µÄGDPRÔڵ¹ú¡¢ÉõÖÁÕû¸öÅ·ÖÞ´¦ÒÔµÄ×î¸ß·£¿îÖ®Ò»¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/gdpr-german-laptop-retailer-fined-eur10-4m-for-video-monitoring-employees/
3.Ó¢¹ú¾¯·½ÈÏ¿ÉÒò¼¼ÊõÎÊÌâÎóɾ³¬¹ý21ÍòÌõ·¸×ï¼Í¼

Ó¢¹ú¾¯·½ÈÏ¿ÉÒò¼¼ÊõÎÊÌâÎóɾ213000Ìõ·¸×ï¼Í¼£¬Ô̺¬Ö¸ÎÆÐÅÏ¢¡¢DNAÐÅÏ¢ºÍ¿ÛÁôº¹ÇàµÈ¡£Õâ´ÎµÄÊÂÎñ±»¹é×ïÓÚ±àÂëÃýÎó£¬Ôڲ鳱»ÏóÕ÷Ϊɾ³ýµÄÊý¾ÝÊÇ·ñÄܹ»±»ºÏ·¨±£Áô֮ǰ£¬Êý¾ÝÒÑ´ÓÊý¾Ý¿âÖÐÃÔʧ¡£ÄÚÕþ²¿³ÆÔÚ¾¡¿ì¸´ÔÎóɾµÄÊý¾Ý£¬Õâ´Î²¢Ã»ÓÐûÓÐÈκÎΣÏÕÈËÎïµÄ¼Í¼±»É¾³ý¡£Ä¿Ç°ÈÔÔÚµ÷²éÊÂÎñÓ°ÏìÁìÓò£¬Éв»Ã÷ÏÔÿÖÖÀàÐÍÃÔʧÁ˼¸¶à±Ê¼Í¼¡£
ÔÎÄÁ´½Ó£º
https://www.bbc.com/news/uk-55684320
4.OpenWRTÂÛ̳³ÆÆäÔâµ½¹¥»÷£¬Óû§Êý¾Ý±»µÁ

OpenWRTÂÛ̳³ÆÆäÔÚ±¾ÖÜÁù04:00×óÓÒÔâµ½¹¥»÷£¬Óû§Êý¾Ý±»µÁ¡£OpenWRTÊÇÒ»¸ö¿ªÔ´´úÂëÏîÄ¿£¬Îª¼ÒÓ÷ÓÉÆ÷ÌṩÃâ·ÑÇÒ¿É×Ô½ç˵µÄ¹Ì¼þ¡£OpenWRTÍŶӰµÊ¾£¬¹ÌÈ»¹¥»÷ÕßÎÞ·¨ÏÂÔØÆäÊý¾Ý¿âµÄÆëÈ«¸±±¾£¬µ«ÒѾµÁÈ¡ÁËÂÛ̳Óû§ÃûºÍµç×ÓÓʼþµØÖ·µÈÓ×ÎÒ¾ßÌåÐÅÏ¢¡£±»µÁÊý¾Ý²¢Î´Ô̺¬ÃÜÂ룬µ«ÊdzöÓÚ°²È«Ë¼¿¼£¬OpenWRTÖÎÀíÔ±ÒѳÁÖÃËùÓÐÂÛ̳Óû§ÃÜÂëºÍAPIÃÜÔ¿¡£´Ë±í£¬OpenWRTÖÎÀíÔ±»¹ÌáÐÑÓû§£¬±»µÁÊý¾Ý¿ÉÄܱ»ÓÃÓÚ½«À´µÄ´¹µö¹¥»÷¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/113586/data-breach/openwrt-forum-hacked.html
5.Tenable°ä²¼2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ׻㱨

Tenable°ä²¼ÁË2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ׻㱨¡£»ã±¨¶Ô2020ÄêµÄ·ì϶ºÍÍþÐ²Ì¬ÊÆ½øÐзÖÎö£¬·¢ÏÖ2020Äê»ã±¨µÄ³£¼û·ì϶ºÍÅû¶£¨CVE£©×ÜÊý£¨18358£©±È2019Äê»ã±¨µÄ×ÜÊý£¨17305£©¸ß6£¥¡£ÔÚ2020ÄêÅû¶µÄ·ì϶ÖУ¬ÓÐ29¸ö±»¼ø±ðΪеÄ0day£¬ÆäÖг¬¹ý35£¥Óëä¯ÀÀÆ÷Óйأ¬½ü29£¥Î»ÓÚ²Ù×÷ϵͳÄÚ¡£´Ë±í£¬ÔÚÏļ¾Åû¶ÁË547¸ö·ì϶£¬ÆäÖÐÔ̺¬F5¡¢Palo Alto Networks¡¢PulseSecure¡¢vBulletinµÈµÄÖØÒª·ì϶¡£´Ó1Ôµ½10Ô£¬ÓÐ730ÆðÊÂÎñµ¼ÖÂÁ˳¬¹ý220ÒڱʼͼµÄй¶¡£
ÔÎÄÁ´½Ó£º
https://zh-cn.tenable.com/cyber-exposure/2020-threat-landscape-retrospective?tns_redirect=true
6.Okera°ä²¼2021Äê´óÊý¾ÝÇ÷ÏòµÄ·ÖÎö»ã±¨

Okera°ä²¼ÁË2021Äê´óÊý¾ÝÇ÷ÏòµÄ·ÖÎö»ã±¨¡£¸Ã»ã±¨Ô¤²âÁ˽«À´Ò»Äê¼´½«³öÏÖµÄÎåÖÖ´óÊý¾ÝµÄÇ÷Ïò£¬±ðÀëΪÊý¾ÝÒþÖԺͽӼû½ÚÔ콫³ÉΪÌá¸ßÊÕÈëµÄÆ·ÅÆ²î¾à»¯³É·Ö£»ÔÚÊý¾ÝĿ¼ºÍÔªÊý¾ÝÖÎÀí·½ÃæµÄͶ×ʽ«»ñµÃ»Ø±¨£»¼¯³ÉµÄ»ìºÏÊý¾Ýƽ̨½«Å¤×ªÔÆÀûÓ÷¨Ê½µÄÖ°Äܲ¢ÆðÍ·½»¸¶¼ÛÖµ£»Êý¾Ý·ÖÎöºÍÊý¾Ýƽ̨¼¼ÊõµÄ¸ü¶à´¹Ö±»¯£»CDO½«Í¨¹ýÖ´ÐÐÉ¢²¼Ê½Êý¾ÝÖÎÀíÄ£ÐÍÀ´½øÒ»²½×ª±äÆä¹«Ë¾¡£
ÔÎÄÁ´½Ó£º
https://www.okera.com/okera-unveils-five-top-data-privacy-and-analytics-trends-for-2021/


¾©¹«Íø°²±¸11010802024551ºÅ