¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20190103

Ðû²¼Ê±¼ä 2019-01-03
1¡¢°ÄÖÞÊý×Ö¿µ½¡ÊðÐû²¼2017-2018Äê¶È±¨¸æ£¬£¬£¬Åû¶42ÆðÊý¾Ýй¶ÊÂÎñ

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


°Ä´óÀûÑÇÊý×Ö¿µ½¡Êð£¨ADHA£©ÔÚÆä2017-2018Äê¶È±¨¸æÖÐÌåÏÖ£¬£¬£¬My Health RecordϵͳÖеÄÒ½ÁƼͼÔÚ2017Äê7ÔÂ1ÈÕÖÁ2018Äê6ÔÂ30ÈÕʱ´ú¹²±¬·¢42ÆðÊý¾Ýй¶ÊÂÎñ¡£¡£¡£¡£¡£ÆäÖдó´ó¶¼Ð¹Â¶ÊÂÎñÓëÒ½Áưü¹ÜڲƭÓйأ¬£¬£¬My Health Record²¢Î´Ôâµ½Ëðº¦ÆäÍêÕûÐÔºÍÇå¾²ÐԵĶñÒâ¹¥»÷¡£¡£¡£¡£¡£×èÖ¹2018Äê7ÔÂ27ÈÕ£¬£¬£¬ÒÑÓÐÔ¼ËÄ·ÖÖ®Ò»µÄ°Ä´óÀûÑÇÈËÔÚMy Health RecordϵͳÖн¨ÉèÁËÒ½ÁƼͼ¡£¡£¡£¡£¡£

   

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/my-health-record-had-42-data-breaches-in-2017-18-but-no-malicious-attacks-adha/


2¡¢ÃÀ¹úÎÀÉú²¿Ðû²¼Ò½ÁÆÐÐÒµÍøÂçÇ徲ʵ¼ù±¨¸æ

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾



ÃÀ¹úÎÀÉú²¿£¨HHS£©Ðû²¼Ò»·ÝÕë¶ÔÒ½ÁÆÐÐÒµµÄÍøÂçÇå¾²Ö¸ÄÏ£¬£¬£¬¸Ã³öÊéÎïµÄÃû³ÆÎª¡¶Ò½ÁÆÐÐÒµÍøÂçÇ徲ʵ¼ù£ºÖÎÀíÍþв¼°± £»£»£»£»£»£»¤»¼Õß¡·¡£¡£¡£¡£¡£Õâ·Ý±¨¸æÊÇHHS¼°Ò½ÁÆ×¨¼ÒÆÆ·ÑÁ½Äêʱ¼äµÄÊÂÇéЧ¹û£¬£¬£¬ÊÇÓÉ2015ÄêµÄÍøÂçÇå¾²·¨°¸ÊÚȨµÄ¡£¡£¡£¡£¡£¸ÃÖ¸ÄÏ̽ÌÖÁËÒ½ÁÆÐÐÒµÃæÁÙµÄÎå´óÏà¹ØÍþв£¬£¬£¬²¢½¨Òé½ÓÄÉ10ÖÖÍøÂçÇå¾²²½·¥À´»º½âÕâЩÍþв¡£¡£¡£¡£¡£¸ÃÖ¸ÄÏ»¹Ç¿µ÷ÁË¿ìËÙÓ¦¶ÔÕâЩÍþвµÄÖ÷ÒªÐÔ¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.nextgov.com/cybersecurity/2019/01/hhs-releases-voluntary-cybersecurity-practices-health-industry/153835/


3¡¢Ô½ÄÏÕþ¸®Í¨¹ýÐÂÍøÂçÇå¾²·¨£¬£¬£¬ÔÊÐíÕþ¸®»á¼ûÓû§Êý¾Ý

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


¾Ý·¨ÐÂÉç1ÔÂ1ÈÕ±¨µÀ£¬£¬£¬Ô½ÄÏ´Óµ±Ìì×îÏÈʵÑ鼫ΪÑÏ¿áµÄÍøÂçÇå¾²·¨¡£¡£¡£¡£¡£¸Ã¹æÔò¶¨£¬£¬£¬»¥ÁªÍø¹«Ë¾±ØÐèɾ³ý±»Õþ¸®È϶¨Îª¡°Óж¾¡±µÄÍøÉÏÄÚÈÝ£¬£¬£¬Ô½ÄÏÍøÃñÒ²²»µÃÔÚ»¥ÁªÍøÉÏÉ¢²¼·´Õþ¸®ÐÅÏ¢»òÍáÇúÀúÊ·¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬Facebook¡¢GoogleµÈ¹ú¼Ê¿Æ¼¼¹«Ë¾ÒªÔÚÔ½ÄÏ¿ªÕ¹ÓªÒµ±ØÐèÔÚÔ½ÄϺ£ÄÚÉèÁ¢Ð§ÀÍ´¦£¬£¬£¬²¢ÇÒÔÚÔ½ÄÏÕþ¸®ÒªÇóʱ±ØÐ轫Óû§Êý¾ÝÌá½»¸øÕþ¸®¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/vietnams-new-cyber-law-threatens/


4¡¢Popsugar's Twinning app±£´æÇå¾²Îó²î£¬£¬£¬¿Éµ¼ÖÂÓû§ÕÕÆ¬Ð¹Â¶

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


Popsugar¡¯s Twinning appÊÇÒ»¿îÕÕÆ¬Æ¥ÅäÓ¦Ó㬣¬£¬¿ÉÒÔ½«Óû§ÉÏ´«µÄÕÕÆ¬ÓëÃûÈ˵ÄÕÕÆ¬¾ÙÐнÏÁ¿£¬£¬£¬²¢¿ÉÒÔÔÚFacebookºÍTwitterÉÏ·ÖÏíЧ¹û¡£¡£¡£¡£¡£¸ÃÓ¦Óý«Óû§ÉÏ´«µÄËùÓÐÕÕÆ¬/×ÔÕÕÏà¶¼´æ´¢ÔÚAWS bucketÖУ¬£¬£¬¶ø¸ÃbucketµÄµØµã¿ÉÒÔÔÚTwinning appµÄÍøÕ¾´úÂëÖÐÕÒµ½£¬£¬£¬´Ó¶øµ¼ÖÂÓû§ÕÕÆ¬Ð¹Â¶¡£¡£¡£¡£¡£Popsugar¹¤³Ì¸±×ܲÃMike Patnode֤ʵ¸ÃbucketµÄȨÏÞÉèÖò»×¼È·¡£¡£¡£¡£¡£

 

 Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/popsugars-twinning-app-was-found-exposing-users-uploaded-photos-6bfd1738


5¡¢Õë¶ÔPayPalµÄÍøÂç´¹ÂÚȦÌ×ÔÚTwitterÉÏÐû²¼

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


2019Äê1ÔÂ1ÈÕ£¬£¬£¬Ò»¸öÕë¶ÔPayPalÕË»§µÄ´¹ÂÚȦÌ×ÔÚTwitterÉÏÐû²¼£¬£¬£¬ÊÔͼͨ¹ýÐÒÔ˳齱ȦÌ×À´»ñÈ¡Óû§µÄ²ÆÎñÐÅÏ¢¡£¡£¡£¡£¡£¸Ã´¹ÂÚÒ³ÃæÒªÇó»á¼ûÕߵǼËûÃǵÄÕË»§²¢ÑéÖ¤ÏêϸÐÅÏ¢ÒÔÓ®µÃÐÂÄêÀñÎï¡£¡£¡£¡£¡£µ«Õ©Æ­ÕßÊ®·Ö×¾ÁÓ£¬£¬£¬URLÖеÄPayPal±»¹ýʧµÄƴдΪPayPall£¬£¬£¬²¢ÇÒÍÆÎÄÉϵÄͼƬÓëPayPalµÄÆæÒìÆ·ÅÆÐÎÏ󲢷ׯçÖ¡£¡£¡£¡£¡£ËäÈ»´¹ÂÚÍøÕ¾Ò³Ãæ¿´ÆðÀ´ÏñÊÇÕýµ±µÄPayPalÍøÕ¾£¬£¬£¬µ«Æä²¢Ã»ÓÐʹÓÃHTTPS¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/paypal-phishing-scam-posted-as-a-promoted-tweet-on-twitter-4857131f


6¡¢PewDiePieµÚÈý²¨¹¥»÷À´Ï®£¬£¬£¬Áè¼Ý1Íǫ̀ÖÇÄܵçÊÓ±»Ð®ÖÆ

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


ºÚ¿ÍÐ®ÖÆÁËÁè¼Ý1Íǫ̀Chromecast¡¢ÖÇÄܵçÊÓºÍGoogle Home×°±¸À´²¥·ÅÊÓÆµ£¬£¬£¬±Þ²ßÓû§¶©ÔÄPewDiePieµÄYouTubeƵµÀ¡£¡£¡£¡£¡£¹¥»÷Õß²¢Î´Ê¹ÓÃÈκÎ×°±¸ÖеÄÎó²î£¬£¬£¬¶øÊÇʹÓÃÉèÖò»×¼È·µÄ·ÓÉÆ÷À´ÊµÑé¹¥»÷¡£¡£¡£¡£¡£¹¥»÷ÕßCastHackÔÚTwitterÉÏÚ¹ÊÍ˵£¬£¬£¬ÕâЩ·ÓÉÆ÷ÆôÓÃÁËUPnPЧÀÍ£¬£¬£¬²¢ÔÚ»¥ÁªÍøÉÏ̻¶Á˶˿Ú8008¡¢8009ºÍ8443£¬£¬£¬ÕâЩ¶Ë¿ÚÊÇÖÇÄܵçÊÓµÈ×°±¸Ê¹ÓõĶ˿Ú¡£¡£¡£¡£¡£¹¥»÷ÕßÔÚÍøÕ¾https://casthack[.]thehackergiraffe[.]com/ÉÏÌṩ´Ë´Î¹¥»÷µÄʵʱÐÅÏ¢£¬£¬£¬ÏÖÔÚÔâµ½Ð®ÖÆµÄ×°±¸Êý×ÖÈÔÔÚÔöÌí¡£¡£¡£¡£¡£Óû§¿Éͨ¹ý½ûÓ÷ÓÉÆ÷ÉϵÄUPnPЧÀÍÀ´± £»£»£»£»£»£»¤Æä×°±¸¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/hacker-hijacks-thousands-of-chromecasts-and-smart-tvs-to-play-pewdiepie-ad/


ÉùÃ÷£º±¾×ÊѶÓÉ918²©ÌìÌÃάËûÃüÇ徲С×é·­ÒëºÍÕûÀí