Facebookδ¾­Óû§ÔÊÐíÉÏ´«150ÍòÓû§ÓʼþÁªÏµÈË£»£»£»£»APT34ʹÓõŤ¾ßй¶£»£»£»£»TA505¹¥»÷È«Çò½ðÈÚ»ú¹¹

Ðû²¼Ê±¼ä 2019-04-19
1¡¢FacebookÐÂÊý¾Ý³óÎÅ£¬£¬£¬£¬£¬ £¬£¬Î´¾­Óû§ÔÊÐíÉÏ´«150ÍòÓû§ÓʼþÁªÏµÈË


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


ÔÚÖÜÈýÐû²¼µÄÒ»·ÝÉùÃ÷ÖУ¬£¬£¬£¬£¬ £¬£¬FacebookÌåÏÖ×Ô2016Äê5ÔÂÒÔÀ´¸Ã¹«Ë¾¡°ÎÞÒâ¼ä¡±ÔÚδ¾­Óû§ÔÊÐíµÄÇéÐÎÏÂÏòЧÀÍÆ÷ÉÏ´«Á˶à´ï150ÍòÓû§µÄµç×ÓÓʼþÁªÏµÈË¡£¡£¡£ÕâÊÇFacebook½üÆÚÃæÁÙµÄһϵÁÐÒþ˽Ïà¹ØÎÊÌâºÍÕùÒéÖеÄ×îÐÂÊÂÎñ¡£¡£¡£FacebookÌåÏÖÒÑÔÚÒ»¸öÔÂǰ×èÖ¹ÁË¿ÉÒɵĵç×ÓÓʼþÑéÖ¤Àú³Ì£¬£¬£¬£¬£¬ £¬£¬²¢ÏòÓû§°ü¹Üδ·ÖÏíÕâЩÁªÏµÈËÐÅÏ¢¼°ÒѾ­×îÏÈɾ³ýÕâЩÁªÏµÈË¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/04/facebook-email-database.html

2¡¢¶íÂÞ˹·¸·¨ÍÅ»ïTA505й¥»÷»î¶¯£¬£¬£¬£¬£¬ £¬£¬Ö÷ÒªÕë¶ÔÈ«Çò½ðÈÚ»ú¹¹


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


CyberIntÑо¿ÍŶӷ¢Ã÷¶íÂÞ˹·¸·¨ÍÅ»ïTA505µÄй¥»÷»î¶¯£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßʹÓÃÔ¶¿ØÄ¾ÂíÕë¶ÔÈ«ÇòµÄ½ðÈÚ»ú¹¹¡£¡£¡£TA505×Ô2015ÄêÒÔÀ´Ò»Ö±»îÔ¾£¬£¬£¬£¬£¬ £¬£¬ÆäʹÓõĶñÒ⹤¾ßÖڶ࣬£¬£¬£¬£¬ £¬£¬°üÀ¨ÒøÐÐľÂíDridex¡¢Ô¶¿ØÄ¾ÂítRAT¡¢FlawedAmmy RAT¼°ÀÕË÷Èí¼þPhiladelphia¡¢GlobeImposterºÍLocky¡£¡£¡£ÔÚ×î½üµÄ¹¥»÷»î¶¯ÖÐTA505Ö÷ҪʹÓÃÁËÄ£¿£¿£¿£¿£¿£¿é»¯µÄtRat¡¢ServHelperºÍRMSºóÃÅ£¬£¬£¬£¬£¬ £¬£¬Ä¿µÄ¹æÄ£°üÀ¨ÖÇÀû¡¢Ó¡¶È¡¢Òâ´óÀû¡¢ÂíÀ­Î¬¡¢°Í»ù˹̹ºÍº«¹úµÄ½ðÈÚ»ú¹¹ÒÔ¼°ÃÀ¹úµÄÁãÊÛÉÌ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/84072/hacking/russian-ta505-financial-attacks.html

3¡¢ÐÂDNSÐ®ÖÆ¹¥»÷Sea Turtle£¬£¬£¬£¬£¬ £¬£¬Ö÷ÒªÕë¶ÔÖж«µØÇø

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾

˼¿ÆTalosÅû¶ÐÂDNSÐ®ÖÆ¹¥»÷Sea Turtle£¬£¬£¬£¬£¬ £¬£¬¸Ã¹¥»÷»î¶¯×îÔç×îÏÈÓÚ2017Äê1Ô£¬£¬£¬£¬£¬ £¬£¬²¢Ò»Ö±»îÔ¾µ½½ñÄêµÚÒ»¼¾¶È£¬£¬£¬£¬£¬ £¬£¬Ö÷ÒªÕë¶ÔÖж«ºÍ±±·ÇµØÇøµÄ¹«¹²ºÍ˽Ӫ²¿·Ö¡£¡£¡£Ôڴ˴ι¥»÷ÖУ¬£¬£¬£¬£¬ £¬£¬ÖÁÉÙÓÐ13¸ö²î±ð¹ú¼ÒµÄ40¸ö²î±ð×éÖ¯Êܵ½ÈëÇÖ¡£¡£¡£Ñо¿Ö°Ô±¸ß¶È×ÔÐŵØÒÔΪÕâÏî¹¥»÷»î¶¯ÊÇÓÉÏȽøµÄ¡¢¹ú¼Ò×ÊÖúµÄ¹¥»÷Õß¾ÙÐеÄ£¬£¬£¬£¬£¬ £¬£¬¸Ã¹¥»÷ÕßÖ¼ÔÚ×·Çó¶ÔÃô¸ÐÍøÂçºÍϵͳµÄÒ»Á¬»á¼û¡£¡£¡£¸Ã¹¥»÷»î¶¯µÄÖ÷ҪĿµÄÊǹú¼ÒÇå¾²»ú¹¹¡¢Íâ½»²¿ºÍÄÜÔ´×éÖ¯£¬£¬£¬£¬£¬ £¬£¬´ÎҪĿµÄÊÇDNS×¢²áÉÌ¡¢µçÐŹ«Ë¾ºÍ»¥ÁªÍøÐ§ÀÍÌṩÉÌ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/dns-hijackers-target-middle-east-1-1/

4¡¢ÒÁÀÊAPT34ʹÓõÄÌØ¹¤¹¤¾ßÔ´ÂëÔÚTelegramÉÏй¶


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


×Ô3ÔÂÖÐÑ®ÒÔÀ´£¬£¬£¬£¬£¬ £¬£¬TelegramÓû§Lab DookhteganÔÚTelegramƵµÀÉÏй¶ÁËÒÁÀÊ·¸·¨ÍÅ»ïAPT34µÄÍøÂçÌØ¹¤¹¤¾ßÔ´Âë¡£¡£¡£AlphabetµÄÇ徲ר¼ÒChronicle֤ʵÁËÕâЩ¹¤¾ßµÄÕæÊµÐÔ¡£¡£¡£ÕâÁù¸öºÚ¿Í¹¤¾ß°üÀ¨Glimpse¡¢PoisonFrog¡¢HyperShell¡¢HighShell¡¢Fox PanelºÍWebmask¡£¡£¡£³ý´ËÖ®Í⣬£¬£¬£¬£¬ £¬£¬Dookhtegan»¹Ð¹Â¶ÁË66ÃûÊܺ¦ÕßµÄÊý¾Ý¼°APT34ÒÑÍù¹¥»÷»î¶¯µÄÏà¹ØÊý¾Ý£¬£¬£¬£¬£¬ £¬£¬°üÀ¨ÔøÍйܹýWeb shellµÄIPµØµã¡¢ÓòÃûµÈ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/source-code-of-iranian-cyber-espionage-tools-leaked-on-telegram/

5¡¢DrupalÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬ £¬£¬ÐÞ¸´½¹µã×é¼þÖеĶà¸öÎó²î


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


¿ªÔ´ÄÚÈÝÖÎÀíϵͳDrupalÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬ £¬£¬ÐÞ¸´½¹µã×é¼þÖеĶà¸öÎó²î£¬£¬£¬£¬£¬ £¬£¬°üÀ¨jQuery 3.4.0ÖÐÐÞ¸´µÄÒ»¸öÎó²î£¨¸ÃÎó²îÉÐδ±»·ÖÅÉCVE±àºÅ£©¼°Symfony PHP×é¼þÖеĿçÕ¾¾ç±¾Îó²î£¨CVE-2019-10909£©¡¢Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2019-10910£©ºÍÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î£¨CVE-2019-1091£©¡£¡£¡£½¨ÒéÓû§¾¡¿ì¸üÐÂÖÁDrupal 8.6.15¡¢Drupal 8.5.15»òDrupal 7.66¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/04/drupal-security-update.html

6¡¢µç×ÓÉÌÎñƽ̨Shopify APIй¶ÊýǧÉ̼ҵÄÊÕÈëÐÅÏ¢


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


Fathi·¢Ã÷µç×ÓÉÌÎñƽ̨ShopifyµÄÒ»¸öAPIй¶ÁËÊýǧÉ̼ҵÄÊÕÈëÐÅÏ¢¡£¡£¡£¸ÃAPIÊôÓÚShopify Exchange App£¬£¬£¬£¬£¬ £¬£¬Ô­±¾ÓÃÓÚÄÚ²¿»ñÈ¡ÏúÊÛÊý¾Ý²¢ÏÔʾÔÚͼ±íÖС£¡£¡£Ñо¿Ö°Ô±·¢Ã÷¸ÃAPI±£´æÎó²î£¬£¬£¬£¬£¬ £¬£¬ÎÞÐèÌØÈ¨»òÓû§½»»¥¼´¿É»ñÈ¡É̼ҵÄÏúÊÛÐÅÏ¢£¬£¬£¬£¬£¬ £¬£¬¹²ÓÐ12100¼ÒÉÌ»§Êܵ½Ó°Ï죬£¬£¬£¬£¬ £¬£¬ÆäÖÐÑо¿Ö°Ô±»ñÈ¡µ½ÁËÁè¼Ý8700·ÝÏúÊÛºÍÁ÷Á¿Êý¾Ý¡£¡£¡£ShopifyÒѾ­ÐÞ²¹ÁËÕâ¸öÎó²î¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/shopify-flaw-exposed-merchant-revenue-traffic/143902/

ÉùÃ÷£º±¾×ÊѶÓÉ918²©ÌìÌÃάËûÃüÇ徲С×é·­ÒëºÍÕûÀí