×êÑÐÈËÔ±ÔÚVirusTotalƽ̨·¢ÏÖ¿ÉÀûÓõÄSpectre·ì϶£»ºÚ¿ÍÔÚ°µÍøÏúÊÛ3¿îVPNÈí¼þµÄ2100ÍòµÄÓû§Êý¾Ý

°ä²¼¹¦·ò 2021-03-02

1.ºÚ¿ÍÔÚ°µÍøÏúÊÛ3¿îVPNÈí¼þµÄ2100ÍòµÄÓû§Êý¾Ý


1.jpg


ºÚ¿ÍÔÚ°µÍøÏúÊÛ3¿îAndroid VPN·þÎñ£¨SuperVPN¡¢GeckoVPNºÍChatVPN£©µÄÓû§Í´´¦ºÍÉ豸Êý¾Ý£¬×ܹ²Éæ¼°2100ÍòÓû§¡£Ð¹Â¶µÄÓû§ÐÅÏ¢Ô̺¬µç×ÓÓʼþµØÖ·¡¢Óû§Ãû¡¢ÐÕÃû¡¢¹úÃû¡¢Ëæ»úÌìÉúµÄÃÜÂë×Ö·û´®¡¢¸¶¿îÓйØ×ÊÁϺ͸߼¶»áÔ±Éí·Ý¼°ÆäÓÐЧÆÚµÈ£¬É豸Êý¾ÝÔ̺¬É豸ÐòÁкš¢ÊÖ»úÀàÐͺÍÔì×÷ÉÌ¡¢É豸IDºÍÉ豸IMSI±àºÅµÈ¡£´Ë±í£¬¹¥»÷ÕßÐû³ÆÒÑ»ñµÃ¶ÔVPN·þÎñÆ÷µÄÔ¶³Ì½Ó¼ûȨÏÞ£¬Ä¿Ç°ÏúÊÛ¼Ûֵδ֪¡£


Ô­ÎÄÁ´½Ó£º

https://cybernews.com/security/one-of-the-biggest-android-vpns-hacked-data-of-21-million-users-from-3-android-vpns-put-for-sale-online/


2.DDoSecretsÍÅ»ïÐû³ÆÒÑÇÔÈ¡GabÍøÕ¾µÄ70 GBÊý¾Ý


2.jpg


DDoSecretsÍÅ»ïÐû³ÆÒÑÇÔÈ¡ÓÒÒíÉç½»ÍøÂçÆ½Ì¨Gab.comµÄ70 GBÊý¾Ý¡£2020Äê2ÔÂ26ÈÕ£¬Gab.com°ä·¢ÁËÎÄÕ·ñ¶¨ÆäÔâµ½ÁËÊý¾Ýй¶£¬²¢°µÊ¾Ò»ÖÜÇ°ÍøÕ¾µÄÀëÏßÊÇÓÉÓÚ±ÈÌØ±ÒÇ®°üÀ¬»øÓʼþ´æÔÚһЩÎÊÌâ¡£µ«DDoSecrets³ÆÆäÒѳɹ¦ÇÔÈ¡70 GBµÄÊý¾Ý£¬Ô̺¬¹«¹²Ìû×Ó¡¢¸öÈËÌû×Ó¡¢Óû§Ó×ÎÒ×ÊÁÏ¡¢Óû§¹þÏ£Öµ¡¢DMºÍSQLÌåʽµÄ´¿Îı¾ÃÜÂëÒÔ¼°²¿ÃÅ´¿Îı¾ÌåʽµÄ̸ÌìÐÂÎÅ¡£ 


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/gab-hacked-ddosecrets-leak-profiles-posts-dms-passwords-online/


3.¼ÓÃÜÇ®±ÒÂòÂôËùCryptopiaÆÆ²úºóÔÙ´ÎÔâµ½¹¥»÷


3.jpg


ÐÂÎ÷À¼µÄ¼ÓÃÜÇ®±ÒÂòÂôËùCryptopiaÆÆ²úºóÔÙ´ÎÔâµ½¹¥»÷¡£2019Äê1ÔÂ14ÈÕ£¬CryptopiaÔâµ½¹¥»÷£¬ºÚ¿ÍÇÔÈ¡Á˼ÛÖµÔ¼3000ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò£¬Ä¿Ç°¸ÃÂòÂôµØµãËãÕÊÖС£2ÔÂ1ÈÕ£¬CryptopiaÔÙ´ÎÔâµ½¹¥»÷£¬ºÚ¿Í´ÓÀäÇ®°üÖÐÇÔÈ¡¼ÛÖµÔ¼62000ÐÂÎ÷À¼Ôª£¨45000ÃÀÔª£©µÄXSN¼ÓÃÜÇ®±Ò¡£¸ÃÇ®°üµÚÒ»´Î¹¥»÷ÒÔÀ´Ò»Ïò´¦ÓÚÐÝÃß״̬£¬Ô̺¬¼ÛÖµÔ¼270ÍòÃÀÔªµÄStakenet±¾µØ´ú±ÒXSN¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115099/hacking/cryptopia-hacked-twice.html


4.×êÑÐÈËÔ±ÔÚVirusTotalƽ̨·¢ÏÖ¿ÉÀûÓõÄSpectre·ì϶


4.jpg


×êÑÐÈËÔ±Julien VoisinÔÚ¶ñÒâÈí¼þ·ÖÎöƽ̨VirusTotal·¢ÏÖ¿ÉÀûÓõÄSpectre·ì϶¡£¸Ã·ì϶±»×·×ÙΪCVE-2017-5753£¬ÓÚ2018Äê1Ô±»Åû¶£¬ÊÇIntel¡¢AMDºÍARM´¦ÖÃÆ÷ϵͳ½á¹¹ÖеÄÓ²¼þÉè¼Æ·ì϶£¬¿É±»ÓÃÀ´ÇÔÈ¡Ãô¸ÐÊý¾Ý¡£¸Ã·ì϶ÒÑÊÕµ½ËùÓÐÖØÒª´¦ÖÃÆ÷ºÍOS¹©¸øÉ̵IJ¹¶¡£¬µ«Voisin·¢´Ë¿ÌÉϸöÔÂÉÏ´«µ½VirusTotalƽ̨µÄÕë¶ÔLinuxºÍWindowsµÄ2¸öSpectre·ì϶£¬¿É´ÓÖ¸±êÉ豸µÄÄÚºËÄÚ´æÖÐÇÔÈ¡WindowsϵͳÉϵÄLM/NT¹þÏ£ºÍLinuxϵͳµÄ/etc/shadowÎļþ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/working-windows-and-linux-spectre-exploits-found-on-virustotal/


5.Code42°ä²¼2021ÄêÊý¾Ýй¶µÄÔ¤²â»ã±¨


5.jpg


Code42°ä²¼ÁË2021ÄêÊý¾Ýй¶µÄÔ¤²â»ã±¨¡£¸Ã»ã±¨¶ÔÃÀ¹úóÒ×¾ö²ßÕߺÍIT°²È«¸¨µ¼Õß½øÐе÷²é£¬½ÒʾÁ˵¼ÖÂÄÚ²¿·çÏÕÎÊÌâÈÕÒæÑϳÁµÄÔ­Òò¡£»ã±¨Ö¸³ö£¬ÓëCOVID֮ǰÏà±È£¬Ä¿Ç°Ô±¹¤Ð¹Â¶ÎļþµÄ¿ÉÄÜÐÔÒªÓâÔ½85£¥£»³¬¹ý°ëÊýµÄ×éÖ¯£¨54£¥£©Ã»ÓÐÄÚ²¿·çÏÕÓ¦¶ÔÔ¤°¸£¬¶ø40£¥µÄ×é֯δÆÀ¹À»º½âÄÚ²¿ÍþвµÄÄÜÁ¦£»59£¥µÄIT°²È«µÄ¸¨µ¼ÕßÔ¤¼ÆÄÚ²¿·çÏÕ»áÔÚ½«À´Á½ÄêÄÚÔö³¤¡£


Ô­ÎÄÁ´½Ó£º

https://www.code42.com/resources/report-2021-data-exposure/


6.Skybox°ä²¼2021Äê·ì϶ºÍÍþвÇ÷ÏòµÄÔ¤²â»ã±¨


6.jpg


Skybox Security°ä²¼ÁË2021Äê·ì϶ºÍÍþвÇ÷ÏòµÄÔ¤²â»ã±¨¡£»ã±¨·¢ÏÖ£¬ÔÚÈ«ÇòÁìÓòÄÚ£¬ÓÉÓÚCOVIDºÍ²»ÐÝÀ©´óµÄ¹¥»÷Ãæ£¬ÍøÂçÍþв³ÊÖðÄêÔö³¤µÄÇ÷Ïò¡£ÐµĶñÒâÈí¼þÑù±¾ÊýÁ¿ÏÕЩ·­ÁËÒ»·¬£¬ÀÕË÷Èí¼þÊýÁ¿Í¬±ÈÔö³¤ÁË106£¥£¬ÌØÂåÒÁľÂíÔö³¤ÁË128£¥£»2020Ä꣬зì϶Ϊ18341¸ö£¬·ì϶ÊýÁ¿´ïµ½Ð¸ß£»ÔËÓª¼¼Êõ£¨OT£©·ì϶ͬ±ÈÔö³¤30£¥£¬¹¤ÒµÎïÁªÍø£¨IIoT£©·ì϶ͬ±ÈÔö³¤ÁË308£¥¡£


Ô­ÎÄÁ´½Ó£º

https://www.skyboxsecurity.com/trends-report/