ÎÖ˹±¤Ë®Îñ¾ÖÔâºÚ¿Í¹¥»÷£»£»£»£»£»£»¿ÆÂÞÀ¶àÖÝITЧÀÍÉÌCTSÔâµ½ÀÕË÷Èí¼þ¹¥»÷£»£»£»£»£»£»RyukбäÖÖ½âÃÜÆ÷ÓÐbug
Ðû²¼Ê±¼ä 2019-12-10
1.AirtelÓ¦ÓóÌÐò±£´æÎó²î¿Éµ¼Ö¿ͻ§Êý¾Ý̻¶
ÍøÂçÇå¾²Ñо¿Ö°Ô±Ehraz Ahmed·¢Ã÷Ó¡¶ÈAirtel¹«Ë¾µÄÓ¦ÓóÌÐò±£´æÇå¾²Îó²î£¬£¬£¬µ¼ÖÂÓû§µÄÃô¸ÐÐÅϢ̻¶¡£¡£¡£¡£¡£¿£¿£¿É»ñÈ¡µÄÐÅÏ¢°üÀ¨í§ÒâÓû§µÄÐÕÃû¡¢ÐԱ𡢵ç×ÓÓʼþµØµã¡¢³öÉúÈÕÆÚ¡¢×¡Ö·¡¢¶©ÔÄÐÅÏ¢¡¢ÍøÂçÐÅÏ¢¡¢¼¤»îÈÕÆÚ¡¢Óû§ÀàÐÍ£¨Ô¤¸¶·Ñ»òºó¸¶·Ñ£©¡¢IMEIºÅÂëµÈ¡£¡£¡£¡£¡£AhmedÌåÏÖAirtel¹«Ë¾µÄÿ¸öÓû§¶¼±£´æÎ£º¦£¬£¬£¬Õâ¿ÉÄÜÓ°ÏìÁËËùÓÐ3.255ÒÚÓû§¡£¡£¡£¡£¡£Airtel½²»°ÈËÈÏ¿ÉÁËÕâÒ»ÎÊÌ⣬£¬£¬²¢ÌåÏÖ¹«Ë¾ÔÚÊÕµ½¾¯±¨ºóÁ¬Ã¦ÐÞ¸´Á˸ÃÎó²î¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://economictimes.indiatimes.com/tech/internet/security-flaw-in-airtel-app-exposes-customers-data-fixed-now/articleshow/72421661.cms
2.¿ÆÂÞÀ¶àÖÝITЧÀÍÉÌCTSÔâµ½ÀÕË÷Èí¼þ¹¥»÷
¿ÆÂÞÀ¶àÖÝITЧÀÍÉÌCTSÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬²¨¼°100¶à¼ÒÑÀ¿ÆÕïËù¡£¡£¡£¡£¡£CTSרΪÑÀ¿ÆÕïËùÌṩITЧÀÍ£¬£¬£¬°üÀ¨ÍøÂçÇå¾²¡¢Êý¾Ý±¸·ÝºÍIPÓïÒôµç»°µÈ¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ11ÔÂ25ÈÕÔâµ½¹¥»÷£¬£¬£¬µ¼ÖÂ100¶à¼ÒÑÀ¿ÆÕïËùµÄÅÌËã»úѬȾÁËÀÕË÷Èí¼þSodinokibi¡£¡£¡£¡£¡£CTS¾Ü¾øÁ˹¥»÷ÕßË÷Òª70ÍòÃÀÔªÊê½ðµÄÒªÇ󣬣¬£¬ÓÉÓÚϵͳһֱÖÐÖ¹£¬£¬£¬ÏÖÔÚÐí¶àÑÀ¿ÆÕïËùÈÔÈ»ÎÞ·¨Õý³£ÓªÒµ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://krebsonsecurity.com/2019/12/ransomware-at-colorado-it-provider-affects-100-dental-offices/
3.ÎÖ˹±¤Ë®Îñ¾ÖÔâºÚ¿Í¹¥»÷£¬£¬£¬Ô¼3000¿Í»§ÐÅÏ¢±»ÇÔ
ÎÖ˹±¤Ë®Îñ¾ÖÌåÏÖÆäÒ»¼Ò³Ð°üÉÌCentralSquareÔâºÚ¿ÍÈëÇÖ£¬£¬£¬µ¼ÖÂÔ¼3000ÃûʹÓÃÐÅÓÿ¨Ö§¸¶Ë®·ÑÕ˵¥µÄÓû§Òþ˽ÐÅÏ¢¿ÉÄܱ»ÇÔ¡£¡£¡£¡£¡£±»µÁµÄÐÅÏ¢¿ÉÄܰüÀ¨ÐÕÃû¡¢µØµãºÍÐÅÓÿ¨Êý¾Ý£¬£¬£¬°üÀ¨¿¨ºÅºÍÇå¾²Â룬£¬£¬ÊÜÓ°ÏìµÄÓû§ÎªÔÚ8ÔÂ27ÈÕÖÁ10ÔÂ23ÈÕÖ®¼ä¾ÙÐÐÔÚÏ߸¶¿îµÄÓû§¡£¡£¡£¡£¡£Ë®Îñ¾ÖÅ®½²»°ÈËMary GugliuzzaÌåÏÖÒѾ֪ͨÁË¿ÉÄÜÊÜÓ°ÏìµÄÓû§£¬£¬£¬CentralSquare½«ÎªÊÜÓ°ÏìµÄÓû§ÌṩһÄêµÄÃâ·ÑÐÅÓÃ¼à¿ØÐ§ÀÍ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.nbcdfw.com/news/local/3000-Fort-Worth-Water-Department-Customers-Victims-of-Data-Breach-565838632.html
4.Spotify´¹ÂÚ¹¥»÷Ö÷ÒªÇÔÈ¡Óû§µÄÐÅÓÿ¨ÐÅÏ¢
Ñо¿Ö°Ô±·¢Ã÷Ò»¸öеĴ¹ÂÚ¹¥»÷»î¶¯£¬£¬£¬¹¥»÷ÕßÖ÷ÒªÕë¶ÔSpotifyÓû§£¬£¬£¬ÊÔͼÓÕÆÆäÕË»§Æ¾Ö¤ºÍ¸¶¿îÐÅÏ¢¡£¡£¡£¡£¡£¸Ã´¹ÂÚÓʼþÔÚÄ£ÄâSpotifyÒ³ÃæÖг£¼ûµÄÅäÉ«¼Æ»®¡¢logo¡¢×ÖÌåºÍÊ¢ÐÐͼƬÉÏÖ§¸¶Á˺ܴóÆð¾¢£¬£¬£¬ÊÔͼÓÕÆÓû§ÏàÐÅÆäÕË»§ÓÉÓÚÖ§¸¶Ê§°Ü¶øÎÞ·¨¼ÌÐøÏíÊܶ©ÔÄЧÀÍ¡£¡£¡£¡£¡£ÊÜÆµÄÓû§±»ÒªÇó»á¼ûÒ»¸öÐéαµÄSpotify´¹ÂÚÍøÕ¾£¬£¬£¬²¢ÊäÈëÏêϸµÄµÇ¼ÐÅÏ¢ºÍÖ§¸¶ÐÅÏ¢£¬£¬£¬°üÀ¨ÐÅÓÿ¨ºÅÂëºÍCVVÂë¡£¡£¡£¡£¡£Spotify¹«Ë¾ÖÒÑÔÓû§³Æ£¬£¬£¬¸Ã¹«Ë¾¾ø²»»áͨ¹ýµç×ÓÓʼþÒªÇó»áÔ±ÌṩСÎÒ˽¼ÒÒþ˽ÐÅÏ¢£¬£¬£¬ÀýÈçÖ§¸¶ÐÅÏ¢¡¢ÕË»§ÃÜÂë»ò˰ÎñºÅÂëµÈ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://au.finance.yahoo.com/news/spotify-scam-harvests-credit-card-details-200027468.html
5.д¹ÂڻÖ÷ÒªÕë¶ÔÉϹžíÖáOLÓÎÏ·Íæ¼Ò
´¹ÂÚ¹¥»÷Õßαװ³ÉÉϹžíÖáÓÎÏ·µÄ¿ª·¢Õߣ¬£¬£¬Õë¶Ô¾ßÓÐPlayStation¿ØÖÆÌ¨£¨¿ÉÄÜÉÐÓÐÆäËû£©µÄÓÎÏ·Õß¾ÙÐд¹ÂÚ¹¥»÷¡£¡£¡£¡£¡£ËûÃÇÏòÓû§·¢ËÍËæ»úµÄ˽ÈËÐÅÏ¢£¬£¬£¬ÖÒÑÔÆäÕË»§·ºÆðÇå¾²ÎÊÌ⣬£¬£¬ÒªÇóÓû§ÔÚ15·ÖÖÓµÄʱ¼äÀïÌṩµç×ÓÓʼþµØµã¡¢ÃÜÂëºÍ³öÉúÈÕÆÚ£¬£¬£¬²»È»ÆäÕË»§½«±»·â½û¡£¡£¡£¡£¡£¸Ã´¹ÂÚ¹¥»÷µÄ×îÖÕÄ¿µÄÊÇÇÔÈ¡Íæ¼ÒÕË»§ÄÚµÄÓÎÏ·ÉÌÆ·²¢ÔÚ°µÍøÉϳöÊÛ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/fake-elder-scrolls-online-devs-run-playstation-phishing-scam/
6.RyukбäÖÖ½âÃÜÆ÷ÓÐbug£¬£¬£¬¿ÉÄܵ¼ÖÂÊý¾ÝÓÀÊÀɥʧ
ƾ֤Çå¾²³§ÉÌEmsisoftµÄ˵·¨£¬£¬£¬ÀÕË÷Èí¼þRyuk×îбäÖֵĽâÃÜÆ÷±£´æÒ»¸öbug£¬£¬£¬×ÝÈ»Êܺ¦ÕßÖ§¸¶ÁËÊê½ð£¬£¬£¬Ò²¿ÉÄÜ»áÓÉÓÚ´Ëbugµ¼ÖÂÊý¾ÝÎÞ·¨»Ö¸´ºÍɥʧ¡£¡£¡£¡£¡£¸Ã±äÖÖ¶ÔÆä¼ÓÃÜÀú³Ì¾ÙÐÐÁËÐ޸쬣¬£¬ÈôÊÇÎļþ¾ÞϸÁè¼Ý54.4MB£¬£¬£¬ÔòÖ»¾ÙÐв¿·Ö¼ÓÃÜ£¬£¬£¬ÒªÁìÊǶÔÒ»¶¨ÃüÄ¿µÄ100Íò×Ö½ÚÊý¾Ý¿é¾ÙÐмÓÃÜ¡£¡£¡£¡£¡£È»¶øÆä½âÃÜÆ÷ÔÚÅÌËãÎļþ¾Þϸʱ´Óĩβ½Ø¶ÏÁËÒ»¸ö×Ö½Ú£¬£¬£¬ËäÈ»´ó´ó¶¼ÎļþÖÐ×îºóÒ»¸ö×Ö½ÚÖ»ÊÇÌî³ä£¬£¬£¬µ«Ä³Ð©À©Õ¹ÃûµÄÎļþ£¨ÀýÈçÐéÄâ´ÅÅÌÎļþ¡¢OracleÊý¾Ý¿âÎļþ£©ÔÚ×îºóÒ»¸ö×Ö½ÚÖд洢Ö÷ÒªÐÅÏ¢£¬£¬£¬Ê¹µÃË𻵵ÄÎļþÔÚ½âÃܺóÎÞ·¨×¼È·¼ÓÔØ¡£¡£¡£¡£¡£¸üÔã¸âµÄÊÇ£¬£¬£¬½âÃÜÆ÷»áÒÔΪÒÑ׼ȷ½âÃܲ¢É¾³ý¼ÓÃܵÄÎļþ£¬£¬£¬Ê¹µÃÊý¾Ý¸üÄѻָ´¡£¡£¡£¡£¡£Emsisoft½¨ÒéÓû§±£´æ¼ÓÃÜÎļþµÄ±¸·Ý£¬£¬£¬ÒÔÃâ±»½âÃÜÆ÷ËùÆÆË𡣡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ryuk-ransomware-decryptor-is-broken-could-lead-to-data-loss/


¾©¹«Íø°²±¸11010802024551ºÅ