¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180607

Ðû²¼Ê±¼ä 2018-06-07

¡¾Êý¾Ýй¶¡¿ÒÔÉ«ÁÐDNA¼ì²â¹«Ë¾MyHeritageÔâºÚ¿Í¹¥»÷£¬£¬£¬ £¬ £¬£¬£¬Áè¼Ý9200ÍòÓû§ÐÅϢй¶

ÒÔÉ«ÁÐDNA¼ì²â¹«Ë¾MyHeritage³Æ¸Ã¹«Ë¾ÓÚÈ¥ÄêÔâºÚ¿ÍÈëÇÖ£¬£¬£¬ £¬ £¬£¬£¬Ô¼9230ÍòÓû§µÄµç×ÓÓʼþµØµãºÍ¹þÏ£ÃÜÂëй¶¡£¡£ ¡£ÊÜÓ°ÏìµÄÓû§ÊÇ2017Äê10ÔÂ27ÈÕ֮ǰע²áMyHeritageÍøÕ¾µÄÓû§¡£¡£ ¡£¸Ã¹«Ë¾Ö¸³öÓÉÓÚÓû§µÄÐÅÓÿ¨¡¢×åÆ×ºÍ»ùÒòÊý¾ÝµÈÐÅÏ¢´æ´¢ÔÚµ¥¶ÀµÄϵͳÖУ¬£¬£¬ £¬ £¬£¬£¬ÕâЩÊý¾ÝûÓÐй¶¡£¡£ ¡£±ðµÄ£¬£¬£¬ £¬ £¬£¬£¬Óû§µÄÃÜÂëʹÓüÓÑιþÏ£¾ÙÐб£»£»£»£»¤£¬£¬£¬ £¬ £¬£¬£¬Òò¶øÄÑÒÔ±»ÆÆ½â£¬£¬£¬ £¬ £¬£¬£¬µ«¸Ã¹«Ë¾ÈÔÈ»½¨ÒéÓû§ÐÞ¸ÄÃÜÂë¡£¡£ ¡£¸Ã¹«Ë¾»¹ÌåÏÖ½«ÎªÓû§ÔöÌíË«ÒòËØÉí·ÝÑéÖ¤¡£¡£ ¡£

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/06/myheritage-data-breach.html

¡¾Êý¾Ýй¶¡¿°Ä´óÀûÑÇÈËÁ¦×ÊÔ´¹«Ë¾PageUpÒòѬȾ¶ñÒâÈí¼þ£¬£¬£¬ £¬ £¬£¬£¬²¿·ÖÓû§Êý¾Ýй¶

°Ä´óÀûÑÇHR¹«Ë¾PageUpÐû²¼ÉùÃ÷³Æ¸Ã¹«Ë¾ÔÚ5ÔÂ23ÈÕÒòѬȾ¶ñÒâÈí¼þµ¼Ö²¿·ÖÓû§µÄÊý¾Ýй¶¡£¡£ ¡£ÏÖÔÚÊÓ²ìÈÔ´¦ÓÚÔçÆÚ½×¶Î£¬£¬£¬ £¬ £¬£¬£¬Òò´Ë»¹²»ÇåÎú¶ñÒâÈí¼þ´ÓÆäϵͳ¼°¿Í»§ÄÇÀïÇÔÈ¡ÁËÄÄЩÊý¾Ý¡£¡£ ¡£¶à¼Ò¹«Ë¾ºÍ»ú¹¹£¬£¬£¬ £¬ £¬£¬£¬°üÀ¨ISP Telstra¡¢Ëþ˹ÂíÄáÑÇÖÝÕþ¸®¡¢Á¬Ëø³¬Êп­ÂêÌØ¡¢ABCµçÊǪ́¡¢°Ä´óÀûÑÇ´¢±¸ÒøÐеÈÊܵ½´Ë´ÎÊÂÎñµÄÓ°Ïì¡£¡£ ¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/malware-infection-at-hr-company-triggers-flurry-of-data-breach-notifications/

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿ÍŶÓÐû²¼¹ØÓÚ½©Ê¬ÍøÂçVPNFilterµÄ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ

˼¿ÆTalosÑо¿ÍŶÓÅû¶Á˹ØÓÚ½©Ê¬ÍøÂçVPNFilterµÄ¸ü¶àϸ½Ú¡£¡£ ¡£Ê×Ïȹ¥»÷Õß½«¸ü¶à³§É̵Ä×°±¸¼ÓÈëÁ˹¥»÷ÁÐ±í£¬£¬£¬ £¬ £¬£¬£¬°üÀ¨»ªË¶¡¢D-Link¡¢»ªÎª¡¢Ubiquiti¡¢UPVELºÍÖÐÐË£¬£¬£¬ £¬ £¬£¬£¬Ïêϸװ±¸ÁбíÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£¡£ ¡£Æä´Î£¬£¬£¬ £¬ £¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ÁËÒ»¸öеĵÚ3½×¶ÎÄ£¿£¿£¿£¿£¿£¿£¿éssler£¬£¬£¬ £¬ £¬£¬£¬¸ÃÄ£¿£¿£¿£¿£¿£¿£¿éÓÃÓÚ½«¶ñÒâÄÚÈÝ×¢Èëͨ¹ý¸Ã×°±¸µÄÍøÂçÁ÷Á¿£¬£¬£¬ £¬ £¬£¬£¬ÒÔÌᳫÖÐÐÄÈ˹¥»÷¡£¡£ ¡£±ðµÄ£¬£¬£¬ £¬ £¬£¬£¬ÉÐÓÐÒ»¸öµÚ3½×¶ÎÄ£¿£¿£¿£¿£¿£¿£¿édstrÓÃÓÚÌṩ×Ô»ÙºÍ×°±¸½ûÓù¦Ð§¡£¡£ ¡£×îºó£¬£¬£¬ £¬ £¬£¬£¬Ñо¿Ö°Ô±ÆÊÎöÁ˵Ú3½×¶ÎµÄÊý¾Ý°üÐá̽Æ÷¡£¡£ ¡£

Ô­ÎÄÁ´½Ó£ºhttps://blog.talosintelligence.com/2018/06/vpnfilter-update.html

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿ÍŶÓÐû²¼¹ØÓÚAPT×éÖ¯SofacyµÄ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ

PaloAlto NetworksµÄUnit42Ñо¿ÍŶÓÐû²¼¹ØÓÚAPT×éÖ¯SofacyµÄ¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ£¬£¬£¬ £¬ £¬£¬£¬Sofacyͨ¹ý¶ñÒâÈí¼þZebrocyÕë¶ÔÖÐÑǵØÇøµÄÕþ¸®Íâ½»»ú¹¹¡£¡£ ¡£¹¥»÷ÕßÏò°üÀ¨Ä¿µÄÔÚÄڵĴó¹æÄ£ÍøÂç·¢ËÍ´¹ÂÚÓʼþ£¬£¬£¬ £¬ £¬£¬£¬ÕâÓëÆäÒÔÍùµÄ¹¥»÷ģʽ´óΪ²î±ð¡£¡£ ¡£³ýÁËZebrocy¹¥»÷Ö®Í⣬£¬£¬ £¬ £¬£¬£¬Ñо¿Ö°Ô±»¹·¢Ã÷SofacyʹÓÃDDEÎó²î·Ö·¢ÓÐÓúÉÔØZebrocyºÍKoadicµÄ¹¥»÷»î¶¯¡£¡£ ¡£

Ô­ÎÄÁ´½Ó£ºhttps://researchcenter.paloaltonetworks.com/2018/06/unit42-sofacy-groups-parallel-attacks/

¡¾Îó²î²¹¶¡¡¿GoogleÐû²¼6ÔÂAndroidÇå¾²¸üУ¬£¬£¬ £¬ £¬£¬£¬¹²ÐÞ¸´57¸öÇå¾²Îó²î

±¾ÖÜÒ»GoogleÐû²¼ÁË6ÔÂAndroidÇå¾²¸üУ¬£¬£¬ £¬ £¬£¬£¬¹²ÐÞ¸´ÁË57¸öÓëϵͳ¡¢ÄÚºËÒÔ¼°µÚÈý·½¹«Ë¾Ð¾Æ¬×é¼þ£¨°üÀ¨Áª·¢¿Æ¡¢Ó¢Î°´ïºÍ¸ßͨ£©ÓйصÄÎó²î¡£¡£ ¡£ÑÏÖØÐÔ×î¸ßµÄÎó²îÊÇýÌå¿ò¼ÜÖеÄ3¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2018-9341¡¢CVE-2018-5146ºÍCVE-2017-13230£©¡£¡£ ¡£ÏêϸÎó²îÁбíÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£¡£ ¡£

Ô­ÎÄÁ´½Ó£ºhttps://threatpost.com/google-patches-11-critical-android-bugs-in-june-update/132512/

¡¾¶ñÒâÈí¼þ¡¿Ñо¿Ö°Ô±·¢Ã÷Ö÷ÒªÇÔÈ¡ÒøÐÐÆ¾Ö¤µÄChrome²å¼þDesbloquear Conteudo

¿¨°Í˹»ùʵÑéÊÒµÄÑо¿Ö°Ô±·¢Ã÷Chrome²å¼þDesbloquear Conteudo×ÅʵÊÇÒ»¸öÒøÐжñÒâÈí¼þ£¬£¬£¬ £¬ £¬£¬£¬¸Ã²å¼þÖ÷ÒªÕë¶Ô°ÍÎ÷£¬£¬£¬ £¬ £¬£¬£¬ÓÃÓÚÔÚÓû§»á¼ûÍøÉÏÒøÐÐʱÌᳫÖÐÐÄÈ˹¥»÷£¬£¬£¬ £¬ £¬£¬£¬ÒÔÇÔÈ¡µÇ¼ÃûºÍÃÜÂë¡£¡£ ¡£ÆäC&CЧÀÍÆ÷µÄÓòÃûʹÓÃÁËÒ»¸öÒѱ»±ê¼ÇµÄ¶ñÒâIPµØµã£¬£¬£¬ £¬ £¬£¬£¬ÔÚÑо¿Ö°Ô±ÁªÏµGoogleºó£¬£¬£¬ £¬ £¬£¬£¬ChromeÊÐËÁÒѾ­É¾³ýÁ˸òå¼þ¡£¡£ ¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.kaspersky.com/blog/malicious-chrome-extension/22697/