¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20180607

°ä²¼¹¦·ò 2018-06-07

¡¾Êý¾Ýй¶¡¿ÒÔÉ«ÁÐDNA¼ì²â¹«Ë¾MyHeritageÔâºÚ¿Í¹¥»÷£¬£¬£¬ £¬£¬£¬£¬³¬¹ý9200ÍòÓû§ÐÅϢй¶

ÒÔÉ«ÁÐDNA¼ì²â¹«Ë¾MyHeritage³Æ¸Ã¹«Ë¾ÓÚÈ¥ÄêÔâºÚ¿ÍÈëÇÖ£¬£¬£¬ £¬£¬£¬£¬Ô¼9230ÍòÓû§µÄµç×ÓÓʼþµØÖ·ºÍ¹þÏ£ÃÜÂëй¶¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄÓû§ÊÇ2017Äê10ÔÂ27ÈÕ֮ǰע²áMyHeritageÍøÕ¾µÄÓû§¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ö¸³öÓÉÓÚÓû§µÄÐÅÓþ¿¨¡¢×åÆ×ºÍ»ùÒòÊý¾ÝµÈÐÅÏ¢´æ´¢ÔÚµ¥¶ÀµÄϵͳÖУ¬£¬£¬ £¬£¬£¬£¬ÕâЩÊý¾ÝûÓÐй¶¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬ £¬£¬£¬£¬Óû§µÄÃÜÂëʹÓüÓÑιþÏ£½øÐб£»£»£» £»£»£»¤£¬£¬£¬ £¬£¬£¬£¬Òò¶øÄÑÒÔ±»ÆÆ½â£¬£¬£¬ £¬£¬£¬£¬µ«¸Ã¹«Ë¾ÒÀÈ»½¨ÒéÓû§Åú¸ÄÃÜÂë¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹°µÊ¾½«ÎªÓû§Ôö³¤Ë«³É·ÖÉí·ÝÑéÖ¤¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/06/myheritage-data-breach.html

¡¾Êý¾Ýй¶¡¿°Ä´óÀûÑÇÈËÁ¦×ÊÔ´¹«Ë¾PageUpÒòϰȾ¶ñÒâÈí¼þ£¬£¬£¬ £¬£¬£¬£¬²¿ÃÅÓû§Êý¾Ýй¶

°Ä´óÀûÑÇHR¹«Ë¾PageUp°ä²¼ÉêÃ÷³Æ¸Ã¹«Ë¾ÔÚ5ÔÂ23ÈÕÒòϰȾ¶ñÒâÈí¼þµ¼Ö²¿ÃÅÓû§µÄÊý¾Ýй¶¡£¡£¡£¡£¡£¡£Ä¿Ç°µ÷²éÈÔ´¦ÓÚÔçÆÚ½×¶Î£¬£¬£¬ £¬£¬£¬£¬Òò¶ø»¹²»Ã÷ÏÔ¶ñÒâÈí¼þ´ÓÆäϵͳ¼°¿Í»§ÄÇÀïÇÔÈ¡ÁËÄÄЩÊý¾Ý¡£¡£¡£¡£¡£¡£¶à¼Ò¹«Ë¾ºÍ»ú¹¹£¬£¬£¬ £¬£¬£¬£¬Ô̺¬ISP Telstra¡¢Ëþ˹ÂíÄáÑÇÖݵ±¾Ö¡¢Á¬Ëø³¬Êп­ÂêÌØ¡¢ABCµçÊǪ́¡¢°Ä´óÀûÑÇ´¢ÐîÒøÐеÈÊܵ½Õâ´ÎÊÂÎñµÄÓ°Ïì¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/malware-infection-at-hr-company-triggers-flurry-of-data-breach-notifications/

¡¾·ÖÎö»ã±¨¡¿×êÑÐÍŶӰ䲼¹ØÓÚ½©Ê¬ÍøÂçVPNFilterµÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨

˼¿ÆTalos×êÑÐÍŶÓÅû¶Á˹ØÓÚ½©Ê¬ÍøÂçVPNFilterµÄ¸ü¶àϸ½Ú¡£¡£¡£¡£¡£¡£Ê×Ïȹ¥»÷Õß½«¸ü¶à³§É̵ÄÉ豸²ÎÓëÁ˹¥»÷Áбí£¬£¬£¬ £¬£¬£¬£¬Ô̺¬»ªË¶¡¢D-Link¡¢»ªÎª¡¢Ubiquiti¡¢UPVELºÍÖÐÐË£¬£¬£¬ £¬£¬£¬£¬¾ßÌåÉ豸ÁбíÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£¡£¡£¡£¡£¡£Æä´Î£¬£¬£¬ £¬£¬£¬£¬×êÑÐÈËÔ±·¢ÏÖÁËÒ»¸öеĵÚ3½×¶ÎÄ£¿£¿£¿£¿£¿éssler£¬£¬£¬ £¬£¬£¬£¬¸ÃÄ£¿£¿£¿£¿£¿éÓÃÓÚ½«¶ñÒâÄÚÈÝ×¢Èëͨ¹ý¸ÃÉ豸µÄÍøÂçÁ÷Á¿£¬£¬£¬ £¬£¬£¬£¬ÒÔÌáÒéÖÐÑëÈ˹¥»÷¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬ £¬£¬£¬£¬»¹ÓÐÒ»¸öµÚ3½×¶ÎÄ£¿£¿£¿£¿£¿édstrÓÃÓÚÌṩ×Ô»ÙºÍÉ豸½ûÓÃÖ°ÄÜ¡£¡£¡£¡£¡£¡£×îºó£¬£¬£¬ £¬£¬£¬£¬×êÑÐÈËÔ±·ÖÎöÁ˵Ú3½×¶ÎµÄÊý¾Ý°üÐá̽Æ÷¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://blog.talosintelligence.com/2018/06/vpnfilter-update.html

¡¾·ÖÎö»ã±¨¡¿×êÑÐÍŶӰ䲼¹ØÓÚAPT×éÖ¯SofacyµÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨

PaloAlto NetworksµÄUnit42×êÑÐÍŶӰ䲼¹ØÓÚAPT×éÖ¯SofacyµÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨£¬£¬£¬ £¬£¬£¬£¬Sofacyͨ¹ý¶ñÒâÈí¼þZebrocyÕë¶ÔÖÐÑǵØÓòÈ·µ±¾Ö±í½»»ú¹¹¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÏòÔ̺¬Ö¸±êÔÚÄڵĴóÁìÓòÍøÂç·¢ËÍ´¹µöÓʼþ£¬£¬£¬ £¬£¬£¬£¬ÕâÓëÆäÒÔÍùµÄ¹¥»÷ģʽ´óΪ·ÖÆç¡£¡£¡£¡£¡£¡£³ýÁËZebrocy¹¥»÷Ö®±í£¬£¬£¬ £¬£¬£¬£¬×êÑÐÈËÔ±»¹·¢ÏÖSofacyÀûÓÃDDE·ì϶·Ö·¢ÓÐЧºÉÔØZebrocyºÍKoadicµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://researchcenter.paloaltonetworks.com/2018/06/unit42-sofacy-groups-parallel-attacks/

¡¾·ì϶²¹¶¡¡¿Google°ä²¼6ÔÂAndroid°²È«¸üУ¬£¬£¬ £¬£¬£¬£¬¹²½¨¸´57¸ö°²È«·ì϶

±¾ÖÜÒ»Google°ä²¼ÁË6ÔÂAndroid°²È«¸üУ¬£¬£¬ £¬£¬£¬£¬¹²½¨¸´ÁË57¸öÓëϵͳ¡¢ÄÚºËÒÔ¼°µÚÈý·½¹«Ë¾Ð¾Æ¬×é¼þ£¨Ô̺¬Áª·¢¿Æ¡¢Ó¢Î°´ïºÍ¸ßͨ£©Óйصķì϶¡£¡£¡£¡£¡£¡£ÑϳÁÐÔ×î¸ßµÄ·ì϶ÊÇýÌå¿ò¼ÜÖеÄ3¸öÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2018-9341¡¢CVE-2018-5146ºÍCVE-2017-13230£©¡£¡£¡£¡£¡£¡£¾ßÌå·ì϶ÁбíÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://threatpost.com/google-patches-11-critical-android-bugs-in-june-update/132512/

¡¾¶ñÒâÈí¼þ¡¿×êÑÐÈËÔ±·¢ÏÖÖØÒªÇÔÈ¡ÒøÐÐÍ´´¦µÄChrome²å¼þDesbloquear Conteudo

¿¨°Í˹»ù³¢ÊÔÊÒµÄ×êÑÐÈËÔ±·¢ÏÖChrome²å¼þDesbloquear ConteudoÆäʵÊÇÒ»¸öÒøÐжñÒâÈí¼þ£¬£¬£¬ £¬£¬£¬£¬¸Ã²å¼þÖØÒªÕë¶Ô°ÍÎ÷£¬£¬£¬ £¬£¬£¬£¬ÓÃÓÚÔÚÓû§½Ó¼ûÍøÉÏÒøÐÐʱÌáÒéÖÐÑëÈ˹¥»÷£¬£¬£¬ £¬£¬£¬£¬ÒÔÇÔÈ¡µÇ¼ÃûºÍÃÜÂë¡£¡£¡£¡£¡£¡£ÆäC&C·þÎñÆ÷µÄÓòÃûʹÓÃÁËÒ»¸öÒѱ»ÏóÕ÷µÄ¶ñÒâIPµØÖ·£¬£¬£¬ £¬£¬£¬£¬ÔÚ×êÑÐÈËÔ±ÁªÏµGoogleºó£¬£¬£¬ £¬£¬£¬£¬ChromeÉ̵êÒѾ­É¾³ýÁ˸òå¼þ¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.kaspersky.com/blog/malicious-chrome-extension/22697/