¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180628

Ðû²¼Ê±¼ä 2018-06-28

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷ÊÆ±¨¸æ

 

¿¨°Í˹»ùʵÑéÊÒÔÚ2016-2018ÀÕË÷Èí¼þºÍ¶ñÒâÍÚ¿óÈí¼þµÄÇ÷ÊÆ±¨¸æÖÐÖ¸³ö£¬£¬ £¬£¬ÀÕË÷Èí¼þÕýÔÚ¿ìËÙÏûÊÅ£¬£¬ £¬£¬¶ø¶ñÒâÍÚ¿óÈí¼þÕýÔÚÈ¡¶ø´úÖ®¡£¡£¡£ÔâÀÕË÷Èí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ2581026ïÔÌ­µ½2017-2018µÄ1811937£¬£¬ £¬£¬ïÔÌ­ÁËÔ¼30%£» £»£»£»£»£»¶øÔâ¶ñÒâÍÚ¿óÈí¼þ¹¥»÷µÄÓû§×ÜÊý´Ó2016-2017µÄ1899236ÔöÌíµ½2017-2018µÄ2735611£¬£¬ £¬£¬ÔöÌíÁ˽ü44.5%¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://media.kasperskycontenthub.com/wp-content/uploads/sites/58/2018/06/27125925/KSN-report_Ransomware-and-malicious-cryptominers_2016-2018_ENG.pdf

 

¡¾ÆÊÎö±¨¸æ¡¿Ñо¿»ú¹¹Ðû²¼ÍøÂçÍþв±¨¸æ£¬£¬ £¬£¬ÖØµã¹Ø×¢2018Q1µÄÍþвÇ÷ÊÆ

 

McAfeeʵÑéÊÒÔÚÆäMcAfee LabsÍþв±¨¸æ£¨2018Äê6Ô°棩ÖзÖÏíÁËÆäµÚÒ»¼¾¶ÈÍøÂçµÄÊÓ²ìÑо¿ºÍÍþвͳ¼ÆÊý¾Ý£¬£¬ £¬£¬±¨¸æÖ¸³öÕûÌåµÄжñÒâÈí¼þÔÚµÚÒ»¼¾¶ÈϽµÁË31%£¬£¬ £¬£¬µ«·¸·¨·Ö×ÓÕýÔÚ¿ª·¢ÓÃÓÚÌÓ±ÜÇå¾²·ÀÓùµÄÐÂÊÖÒÕºÍÕ½ÂÔ¡£¡£¡£µÚÒ»¼¾¶ÈµÄÕûÌåÇå¾²ÊÂÎñÔöÌíÁË41%£¬£¬ £¬£¬ÆäÖÐÕë¶Ô¶à¸öµØÇøµÄÊÂÎñÔöÌí×î´ó£¬£¬ £¬£¬Îª67%£¬£¬ £¬£¬Õë¶ÔÃÀ¹úµÄÇå¾²ÊÂÎñÔöÌíÁË40%¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.mcafee.com/enterprise/en-us/assets/reports/rp-quarterly-threats-jun-2018.pdf

 

¡¾Êý¾Ýй¶¡¿FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬ £¬£¬Êý°Ù¼ÒÂùݵÄÓû§Êý¾Ýй¶

 

°ÍÀèÂùÝÔ¤¶©¹«Ë¾FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬ £¬£¬Êý°Ù¼ÒÂùݵÄÓû§Êý¾Ýй¶¡£¡£¡£FastBooking³Æ¹¥»÷ÕßÔÚ6ÔÂ14ÈÕʹÓÃÆäЧÀÍÆ÷ÉÏÒ»¸öÈí¼þµÄÎó²î×°ÖÃÁ˶ñÒâÈí¼þ£¬£¬ £¬£¬²¢ÇÔÈ¡ÁËÂùÝÓû§µÄÐÕÃû¡¢¹ú¼®¡¢µØµã¡¢µç×ÓÓʼþµØµãºÍÂùÝÔ¤¶¨Ïà¹ØÐÅÏ¢£¨ÂùÝÃû³Æ¡¢ÈëסºÍÍË·¿£©µÈÊý¾Ý£¬£¬ £¬£¬ÇÔÈ¡µÄÊý¾Ý»¹°üÀ¨²¿·ÖÓû§µÄÒøÐп¨ÐÅÏ¢£¬£¬ £¬£¬È翨ºÅ¡¢ÓâÆÚÈÕÆÚµÈ¡£¡£¡£FastBooking³Æ¸ÃÊÂÎñÓ°ÏìÁËÈÕ±¾µÄ380¼ÒÂùÝ£¬£¬ £¬£¬Bleeping ComputerÒÔΪÕâÒ»Êý×ÖÔÚÈ«Çò¹æÄ£ÄÚ¿ÉÄÜÁè¼ÝÁË1000¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/hundreds-of-hotels-affected-by-data-breach-at-hotel-booking-software-provider/

 

¡¾Çå¾²Îó²î¡¿Ñо¿Ö°Ô±Åû¶WordPressÖеÄÒ»¸öÉÐδÐÞ¸´µÄÇå¾²Îó²î

 

RIPSÇå¾²Ñо¿Ö°Ô±Åû¶WordPressÖеÄÒ»¸öÇå¾²Îó²î£¬£¬ £¬£¬¸ÃÎó²îÓÚ2017Äê11Ô±¨¸æ¸øWordPress¿ª·¢ÍŶÓ£¬£¬ £¬£¬µ«WordPress¿ª·¢ÍŶӲ¢Î´Ðû²¼ÐÞ¸´²¹¶¡¡£¡£¡£Ñо¿Ö°Ô±³Æ¾ßÓÐÌû×ӱ༭Æ÷»á¼ûȨÏÞµÄÓû§£¨¿ÉÒÔÉÏ´«ºÍɾ³ýͼƬ¼°ÆäËõÂÔͼµÄÓû§£©¿ÉÔÚÍøÕ¾ÉÏ×¢Èë¶ñÒâ´úÂ룬£¬ £¬£¬µ¼ÖÂWordPress½¹µãµÄÒªº¦Îļþ±»É¾³ý¡£¡£¡£Ñо¿Ö°Ô±ÖÒÑԳƾßÓÐÒ»¶¨¼¶±ðȨÏÞµÄÓû§¿ÉʹÓôËÎó²îÐ®ÖÆÍøÕ¾£¬£¬ £¬£¬¸ÃÎó²îÓ°ÏìÁËËùÓеÄWordPress°æ±¾¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/unpatched-flaw-disclosed-in-wordpress-cms-core/

 

¡¾Îó²î²¹¶¡¡¿SophosÐû²¼ÆäÇå¾²·À»¤²úÆ·µÄ¸üУ¬£¬ £¬£¬ÐÞ¸´¶à¸öÇå¾²Îó²î

 

NettitudeÇå¾²Ñо¿Ö°Ô±ÔÚSophos SafeGuardÇå¾²·À»¤²úÆ·Öз¢Ã÷7¸öÍâµØÌáȨÎó²î£¬£¬ £¬£¬ÕâЩÎó²îµÄ±àºÅΪCVE-2018-6851µ½CVE-2018-6857¡£¡£¡£Ñо¿Ö°Ô±Åû¶ÁËÿһ¸öÎó²îµÄÊÖÒÕϸ½Ú£¬£¬ £¬£¬²¢Ðû²¼ÁËÒ»¸öÑÝʾÔõÑùÌáȨÖÁSYSTEMµÄÊÓÆµ¡£¡£¡£Sophos֤ʵÕâЩÎó²îÓ°ÏìÁËWindowsƽ̨µÄSafeGuard Enterprise Client¡¢SafeGuard EasyºÍSafeGuard LAN Crypt²úÆ·£¬£¬ £¬£¬²¢ÒÑÐû²¼ÁËÏà¹ØÐÞ¸´²¹¶¡¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/sophos-patches-privilege-escalation-flaws-safeguard-products

 

¡¾ÍþвÇ鱨¡¿Ñо¿ÍŶӷ¢Ã÷AsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƭ»î¶¯

 

McAfee Mobile ResearchÍŶӷ¢Ã÷AsiaHitGroup GangµÄÐÂÒ»ÂּƷÑڲƭ»î¶¯£¬£¬ £¬£¬ÆäÖÐÖÁÉÙ15¸ö¶ñÒâÓ¦ÓÃÓÚ2018ÄêÔÚGoogle PlayÉÏÐû²¼¡£¡£¡£AsiaHitGroup GangÖÁÉÙ´Ó2016ÄêÄêµ××îÏÈ»îÔ¾£¬£¬ £¬£¬2018Äê1ÔÂÑо¿Ö°Ô±·¢Ã÷¸Ã×éÖ¯µÄ¶ñÒâÓ¦ÓÃSonvpay.CÔٴηºÆðÔÚGoogle PlayÉÏ¡£¡£¡£¸ÃÓ¦ÓÃÓÃÓÚÓÕÆ­Óû§¶©Ôĸ߼¶¸¶·ÑЧÀÍ£¬£¬ £¬£¬Ñо¿Ö°Ô±Ô¤¼Æ¸Ã×éÖ¯×Ô1Ô·ÝÒÔÀ´ÒѾ­×¬È¡ÁË60500-145000ÃÀÔª¡£¡£¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://securingtomorrow.mcafee.com/mcafee-labs/asiahitgroup-gang-again-sneaks-billing-fraud-apps-onto-google-play/