¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20190103

Ðû²¼Ê±¼ä 2019-01-03
1¡¢°ÄÖÞÊý×Ö¿µ½¡ÊðÐû²¼2017-2018Äê¶È±¨¸æ£¬£¬£¬£¬Åû¶42ÆðÊý¾Ýй¶ÊÂÎñ

ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


°Ä´óÀûÑÇÊý×Ö¿µ½¡Êð£¨ADHA£©ÔÚÆä2017-2018Äê¶È±¨¸æÖÐÌåÏÖ£¬£¬£¬£¬My Health RecordϵͳÖеÄÒ½ÁƼͼÔÚ2017Äê7ÔÂ1ÈÕÖÁ2018Äê6ÔÂ30ÈÕʱ´ú¹²±¬·¢42ÆðÊý¾Ýй¶ÊÂÎñ¡£¡£ÆäÖдó´ó¶¼Ð¹Â¶ÊÂÎñÓëÒ½Áưü¹ÜڲƭÓйأ¬£¬£¬£¬My Health Record²¢Î´Ôâµ½Ëðº¦ÆäÍêÕûÐÔºÍÇå¾²ÐԵĶñÒâ¹¥»÷¡£¡£×èÖ¹2018Äê7ÔÂ27ÈÕ£¬£¬£¬£¬ÒÑÓÐÔ¼ËÄ·ÖÖ®Ò»µÄ°Ä´óÀûÑÇÈËÔÚMy Health RecordϵͳÖн¨ÉèÁËÒ½ÁƼͼ¡£¡£

   

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/my-health-record-had-42-data-breaches-in-2017-18-but-no-malicious-attacks-adha/


2¡¢ÃÀ¹úÎÀÉú²¿Ðû²¼Ò½ÁÆÐÐÒµÍøÂçÇ徲ʵ¼ù±¨¸æ

ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø



ÃÀ¹úÎÀÉú²¿£¨HHS£©Ðû²¼Ò»·ÝÕë¶ÔÒ½ÁÆÐÐÒµµÄÍøÂçÇå¾²Ö¸ÄÏ£¬£¬£¬£¬¸Ã³öÊéÎïµÄÃû³ÆÎª¡¶Ò½ÁÆÐÐÒµÍøÂçÇ徲ʵ¼ù£ºÖÎÀíÍþв¼°±£»£»£»£»£»£»¤»¼Õß¡·¡£¡£Õâ·Ý±¨¸æÊÇHHS¼°Ò½ÁÆ×¨¼ÒÆÆ·ÑÁ½Äêʱ¼äµÄÊÂÇéЧ¹û£¬£¬£¬£¬ÊÇÓÉ2015ÄêµÄÍøÂçÇå¾²·¨°¸ÊÚȨµÄ¡£¡£¸ÃÖ¸ÄÏ̽ÌÖÁËÒ½ÁÆÐÐÒµÃæÁÙµÄÎå´óÏà¹ØÍþв£¬£¬£¬£¬²¢½¨Òé½ÓÄÉ10ÖÖÍøÂçÇå¾²²½·¥À´»º½âÕâЩÍþв¡£¡£¸ÃÖ¸ÄÏ»¹Ç¿µ÷ÁË¿ìËÙÓ¦¶ÔÕâЩÍþвµÄÖ÷ÒªÐÔ¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.nextgov.com/cybersecurity/2019/01/hhs-releases-voluntary-cybersecurity-practices-health-industry/153835/


3¡¢Ô½ÄÏÕþ¸®Í¨¹ýÐÂÍøÂçÇå¾²·¨£¬£¬£¬£¬ÔÊÐíÕþ¸®»á¼ûÓû§Êý¾Ý

ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


¾Ý·¨ÐÂÉç1ÔÂ1ÈÕ±¨µÀ£¬£¬£¬£¬Ô½ÄÏ´Óµ±Ìì×îÏÈʵÑ鼫ΪÑÏ¿áµÄÍøÂçÇå¾²·¨¡£¡£¸Ã¹æÔò¶¨£¬£¬£¬£¬»¥ÁªÍø¹«Ë¾±ØÐèɾ³ý±»Õþ¸®È϶¨Îª¡°Óж¾¡±µÄÍøÉÏÄÚÈÝ£¬£¬£¬£¬Ô½ÄÏÍøÃñÒ²²»µÃÔÚ»¥ÁªÍøÉÏÉ¢²¼·´Õþ¸®ÐÅÏ¢»òÍáÇúÀúÊ·¡£¡£±ðµÄ£¬£¬£¬£¬Facebook¡¢GoogleµÈ¹ú¼Ê¿Æ¼¼¹«Ë¾ÒªÔÚÔ½ÄÏ¿ªÕ¹ÓªÒµ±ØÐèÔÚÔ½ÄϺ£ÄÚÉèÁ¢Ð§ÀÍ´¦£¬£¬£¬£¬²¢ÇÒÔÚÔ½ÄÏÕþ¸®ÒªÇóʱ±ØÐ轫Óû§Êý¾ÝÌá½»¸øÕþ¸®¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/vietnams-new-cyber-law-threatens/


4¡¢Popsugar's Twinning app±£´æÇå¾²Îó²î£¬£¬£¬£¬¿Éµ¼ÖÂÓû§ÕÕÆ¬Ð¹Â¶

ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


Popsugar¡¯s Twinning appÊÇÒ»¿îÕÕÆ¬Æ¥ÅäÓ¦Ó㬣¬£¬£¬¿ÉÒÔ½«Óû§ÉÏ´«µÄÕÕÆ¬ÓëÃûÈ˵ÄÕÕÆ¬¾ÙÐнÏÁ¿£¬£¬£¬£¬²¢¿ÉÒÔÔÚFacebookºÍTwitterÉÏ·ÖÏíЧ¹û¡£¡£¸ÃÓ¦Óý«Óû§ÉÏ´«µÄËùÓÐÕÕÆ¬/×ÔÕÕÏà¶¼´æ´¢ÔÚAWS bucketÖУ¬£¬£¬£¬¶ø¸ÃbucketµÄµØµã¿ÉÒÔÔÚTwinning appµÄÍøÕ¾´úÂëÖÐÕÒµ½£¬£¬£¬£¬´Ó¶øµ¼ÖÂÓû§ÕÕÆ¬Ð¹Â¶¡£¡£Popsugar¹¤³Ì¸±×ܲÃMike Patnode֤ʵ¸ÃbucketµÄȨÏÞÉèÖò»×¼È·¡£¡£

 

 Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/popsugars-twinning-app-was-found-exposing-users-uploaded-photos-6bfd1738


5¡¢Õë¶ÔPayPalµÄÍøÂç´¹ÂÚȦÌ×ÔÚTwitterÉÏÐû²¼

ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


2019Äê1ÔÂ1ÈÕ£¬£¬£¬£¬Ò»¸öÕë¶ÔPayPalÕË»§µÄ´¹ÂÚȦÌ×ÔÚTwitterÉÏÐû²¼£¬£¬£¬£¬ÊÔͼͨ¹ýÐÒÔ˳齱ȦÌ×À´»ñÈ¡Óû§µÄ²ÆÎñÐÅÏ¢¡£¡£¸Ã´¹ÂÚÒ³ÃæÒªÇó»á¼ûÕߵǼËûÃǵÄÕË»§²¢ÑéÖ¤ÏêϸÐÅÏ¢ÒÔÓ®µÃÐÂÄêÀñÎï¡£¡£µ«Õ©Æ­ÕßÊ®·Ö×¾ÁÓ£¬£¬£¬£¬URLÖеÄPayPal±»¹ýʧµÄƴдΪPayPall£¬£¬£¬£¬²¢ÇÒÍÆÎÄÉϵÄͼƬÓëPayPalµÄÆæÒìÆ·ÅÆÐÎÏ󲢷ׯçÖ¡£¡£ËäÈ»´¹ÂÚÍøÕ¾Ò³Ãæ¿´ÆðÀ´ÏñÊÇÕýµ±µÄPayPalÍøÕ¾£¬£¬£¬£¬µ«Æä²¢Ã»ÓÐʹÓÃHTTPS¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/paypal-phishing-scam-posted-as-a-promoted-tweet-on-twitter-4857131f


6¡¢PewDiePieµÚÈý²¨¹¥»÷À´Ï®£¬£¬£¬£¬Áè¼Ý1Íǫ̀ÖÇÄܵçÊÓ±»Ð®ÖÆ

ÈËÉú¾ÍÊDz©-×ðÁú¿­Ê±Öйú¹ÙÍø


ºÚ¿ÍÐ®ÖÆÁËÁè¼Ý1Íǫ̀Chromecast¡¢ÖÇÄܵçÊÓºÍGoogle Home×°±¸À´²¥·ÅÊÓÆµ£¬£¬£¬£¬±Þ²ßÓû§¶©ÔÄPewDiePieµÄYouTubeƵµÀ¡£¡£¹¥»÷Õß²¢Î´Ê¹ÓÃÈκÎ×°±¸ÖеÄÎó²î£¬£¬£¬£¬¶øÊÇʹÓÃÉèÖò»×¼È·µÄ·ÓÉÆ÷À´ÊµÑé¹¥»÷¡£¡£¹¥»÷ÕßCastHackÔÚTwitterÉÏÚ¹ÊÍ˵£¬£¬£¬£¬ÕâЩ·ÓÉÆ÷ÆôÓÃÁËUPnPЧÀÍ£¬£¬£¬£¬²¢ÔÚ»¥ÁªÍøÉÏ̻¶Á˶˿Ú8008¡¢8009ºÍ8443£¬£¬£¬£¬ÕâЩ¶Ë¿ÚÊÇÖÇÄܵçÊÓµÈ×°±¸Ê¹ÓõĶ˿Ú¡£¡£¹¥»÷ÕßÔÚÍøÕ¾https://casthack[.]thehackergiraffe[.]com/ÉÏÌṩ´Ë´Î¹¥»÷µÄʵʱÐÅÏ¢£¬£¬£¬£¬ÏÖÔÚÔâµ½Ð®ÖÆµÄ×°±¸Êý×ÖÈÔÔÚÔöÌí¡£¡£Óû§¿Éͨ¹ý½ûÓ÷ÓÉÆ÷ÉϵÄUPnPЧÀÍÀ´±£»£»£»£»£»£»¤Æä×°±¸¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/hacker-hijacks-thousands-of-chromecasts-and-smart-tvs-to-play-pewdiepie-ad/


ÉùÃ÷£º±¾×ÊѶÓÉÈËÉú¾ÍÊDz©Î¬ËûÃüÇ徲С×é·­ÒëºÍÕûÀí