¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20190129

°ä²¼¹¦·ò 2019-01-29
1¡¢Å·ÖÞÍøÂçÐÅÏ¢°²È«¾ÖENISA°ä²¼2018ÄêÍøÂçÍþв¾°¹Û»ã±¨

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


Å·ÖÞÍøÂçÐÅÏ¢°²È«¾Ö£¨ENISA£©°ä²¼2018ÄêÍþв¾°¹Û»ã±¨£¬£¬£¬£¬£¬£¬£¬¸Ã»ã±¨³Áµã½éÉÜÁË2018ÄêµÄÍøÂçÍþвÇ÷Ïò±ä¶¯£¬£¬£¬£¬£¬£¬£¬Ô̺¬µç×ÓÓʼþºÍ´¹µö¶ÌÐÅÒѾ­³ÉÎªÖØÒªµÄ¶ñÒâÈí¼þϰȾý½é £»£»£»£» £» £»£» £»¶ñÒâ¿ó¹¤³ÉΪ·¸×ï·Ö×ӵijÁÒª»ñÀû¼¿Á© £»£»£»£» £» £»£» £»¹ú¶ÈÔÞÖúµÄ·¸×ïÍÅ»ïÔ½À´Ô½¶àµØ¶Ô×¼ÒøÐÐ £»£»£»£» £» £»£» £»ÓÉÓÚ¶ÌȱµÍ¶ËÎïÁªÍøÉ豸ºÍ·þÎñµÄ± £»£»£»£» £» £»£» £»¤»úÔ죬£¬£¬£¬£¬£¬£¬¶ÔͨÓÃÎïÁªÍø± £»£»£»£» £» £»£» £»¤¼Ü¹¹/ÓÅÁ¼Êµ¼ÊµÄÐèÒªÒÀÈ»ÊÇÒ»¸ö½ôÆÈµÄÎÊÌâ £»£»£»£» £» £»£» £»Íþвµý±¨±ØÒªÊ¹ÓÃеÄ×Ô¶¯»¯¹¤¾ßºÍ²½ÖèÀ´Ó¦¶Ô×Ô¶¯»¯µÄ¹¥»÷ £»£»£»£» £» £»£» £»°²È«ÁìÓòÓ¦¸Ã³Áµã¹Ø×¢È˲źͼ¼ÊõµÄÅàѵ ¡£¡£¡£¡£¡£¸Ã»ã±¨»¹´ÓÕþ²ß¡¢ÆóÒµÒÔ¼°¼¼Êõ¡¢×êÑкͽÌÓý·½ÃæÌá³öÁ˽¨Òé ¡£¡£¡£¡£¡£

  

 Ô­ÎÄÁ´½Ó£º

https://www.enisa.europa.eu/publications/enisa-threat-landscape-report-2018/


2¡¢LocalBitcoinsµÚÈý·½Èí¼þ°²È«·ì϶£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂ2.8ÍòÃÀÔª±ÈÌØ±Ò±»ÇÔ

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


¼ÓÃÜÇ®±ÒÂòÂôËùLocalBitcoinsÔâµ½´¹µö¹¥»÷£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß½«Óû§³Á¶¨Ïòµ½´¹µöÍøÕ¾£¬£¬£¬£¬£¬£¬£¬ÇÔÈ¡Óû§µÄLocalBitcoinsµÇ¼ʹ´¦£¬£¬£¬£¬£¬£¬£¬Ëæºó´ÓÁù¸öÕË»§ÖÐÇÔÈ¡ÁËÔ¼8¸ö±ÈÌØ±Ò£¨¼ÛÖµÔ¼2.8ÍòÃÀÔª£© ¡£¡£¡£¡£¡£LocalBitcoinsÔÚ1ÔÂ26ÈÕ·¢ÏÖÁËÕâÒ»ÊÂÎñ£¬£¬£¬£¬£¬£¬£¬²¢ÖÕ³¡ÁËÆ½Ì¨ÉϵÄËùÓÐÂòÂôÒÔ×èÖ¹½øÒ»²½µÄ¹¥»÷ ¡£¡£¡£¡£¡£Æ¾¾ÝLocalBitcoinsµÄµ÷²é»ã±¨£¬£¬£¬£¬£¬£¬£¬¸ÃÊÂÎñÓëµÚÈý·½Èí¼þÖеݲȫ·ì϶ÓÐ¹Ø ¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/localbitcoins-blames-security-breach-on-forum-third-party-software/


3¡¢¹¥»÷Õß¶Ô׼˼¿ÆRV320/RV325·ÓÉÆ÷£¬£¬£¬£¬£¬£¬£¬³¬¹ý9ǧ̨É豸ÔÚÏß¶³ö

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


ÔÚ×êÑÐÈËÔ±°ä²¼ÁËÁ½¸öзì϶µÄPoC´úÂëºó£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÔÚ»ý¼«ÀûÓÃÕâÁ½¸ö·ì϶¶Ô׼˼¿ÆRV320/RV325·ÓÉÆ÷ ¡£¡£¡£¡£¡£ÕâÁ½¸ö·ì϶±ðÀëÊǺÅÁî×¢Èë·ì϶£¨CVE-2019-1652£©ºÍÐÅϢй¶·ì϶£¨CVE-2019-1653£©£¬£¬£¬£¬£¬£¬£¬µÚÒ»¸ö·ì϶ӰÏìÁ˹̼þ°æ±¾1.4.2.15µ½1.4.2.19µÄÉ豸£¬£¬£¬£¬£¬£¬£¬µÚ¶þ¸ö·ì϶ӰÏìÁ˹̼þ°æ±¾1.4.2.15ºÍ1.4.2.17 ¡£¡£¡£¡£¡£Bad PacketsµÄ×êÑÐÈËÔ±°µÊ¾£¬£¬£¬£¬£¬£¬£¬ËûÃÇ·¢ÏÖÈ«ÇòÖÁÉÙÓÐ9657¸ö˼¿ÆÂ·ÓÉÆ÷£¨Ô̺¬6247¸öRV320ºÍ3410¸öRV325£©ÔÚÏß¶³ö£¬£¬£¬£¬£¬£¬£¬ÆäÖдó²¿ÃÅλÓÚÃÀ¹ú ¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/01/hacking-cisco-routers.html


4¡¢ÊÓÆµ·ÖÏíÆ½Ì¨DailyMotionÔâײ¿â¹¥»÷£¬£¬£¬£¬£¬£¬£¬²¿ÃÅÓû§Êܵ½Ó°Ïì

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


ÊÓÆµ·ÖÏíÆ½Ì¨DailyMotionÔÚ1ÔÂ25ÈÕ°ä·¢Ô⵽ײ¿â¹¥»÷£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß»ñµÃÁ˲¿ÃÅÓû§ÕË»§µÄ½Ó¼ûȨÏÞ ¡£¡£¡£¡£¡£DailyMotionÒѾʹËÊÂÎñ֪ͨÁËÊÜÓ°ÏìµÄÓû§£¬£¬£¬£¬£¬£¬£¬²¢ÒªÇóËûÃǽøÐÐÃÜÂë³ÁÖà ¡£¡£¡£¡£¡£DailyMotionÔÚÈ«Çò¹²ÓÐ18ÖÖ˵»°µÄ°æ±¾£¬£¬£¬£¬£¬£¬£¬ÆäÔÚAlexaÁ÷Á¿ÅÅÃûÖÐÅÅÔÚµÚ134λ ¡£¡£¡£¡£¡£Æ¾¾ÝDailyMotion°ä²¼µÄ֪ͨ£¬£¬£¬£¬£¬£¬£¬×²¿â¹¥»÷²úÉúÔÚ1ÔÂ19ÈÕ£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÒÑÆ¾¾ÝGDPR֪ͨÁËCNIL ¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/dailymotion-resets-passwords-after-credential-stuffing-attack/


5¡¢WordPress²å¼þTotal DonationsÁãÈÕ·ì϶£¬£¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂÍøÕ¾±»ÊÕÊÜ

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


DefiantµÄ×êÑÐÈËÔ±Mikey Veenstra·¢ÏÖ¹¥»÷ÕßÔÚÀûÓÃWordPress²å¼þTotal DonationsÖеÄÁãÈÕ·ì϶À´ÈëÇÖWordPressÍøÕ¾ ¡£¡£¡£¡£¡£¸Ã²å¼þÓÃÓÚÍøÂçºÍÖÎÀíÓû§µÄ¾èÔù£¬£¬£¬£¬£¬£¬£¬µ«²å¼þÖеķì϶£¨CVE-2019-6703£©¿ÉÔÊÐí¹¥»÷ÕßÊÕÊÜÍøÕ¾ ¡£¡£¡£¡£¡£ÓÉÓÚ²å¼þ¿ª·¢ÕßµÄÍøÕ¾×Ô2018Äê5ÔÂÒÔÀ´ÒÑʧЧ£¬£¬£¬£¬£¬£¬£¬¸Ã·ìϼû»Óн¨¸´²¹¶ ¡£¡£¡£¡£¡£¬£¬£¬£¬£¬£¬£¬Òò¶øÓû§Ó¦¸Ã¾¡¿ìɾ³ý´Ë²å¼þ ¡£¡£¡£¡£¡£

 

 Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/zero-day-vulnerability-in-total-donations-plugin-could-allow-attackers-to-take-over-wordpress-sites-2a0f5714


6¡¢FBI¼°Å·ÖÞÓйص±¾Ö²é·â°µÍøÊг¡xDedic£¬£¬£¬£¬£¬£¬£¬¿ÛÁôÈýÃûÏÓ·¸

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


1ÔÂ24ÈÕ£¬£¬£¬£¬£¬£¬£¬FBI¼°Å·ÖÞÓйص±¾Ö²é·âÁ˰µÍøÊг¡xDedicµÄÓòÃûºÍ·þÎñÆ÷£¬£¬£¬£¬£¬£¬£¬²¢ÔÚÎÚ¿ËÀ¼¿ÛÁôÁËÈýÃûÏÓ·¸ ¡£¡£¡£¡£¡£xDedicÖØÒªÓÃÓÚÏúÊÛ»ò²É°ì±»ºÚ¿ÍÈëÇֵķþÎñÆ÷£¬£¬£¬£¬£¬£¬£¬Í¨³£ÊÇÊÜËðµÄRDP·þÎñÕË»§ ¡£¡£¡£¡£¡£¸ÃÍøÕ¾×Ô2014ÄêÒÔÀ´Ò»Ïò´æÔÚ£¬£¬£¬£¬£¬£¬£¬ÆäÊܺ¦Õ߱鲼ÊÀ½ç¸÷µØµÄ¸÷ÀàÐÐÒµ£¬£¬£¬£¬£¬£¬£¬Ô̺¬´¦Ëù¡¢ÖݺÍÁª¹úµ±¾ÖµÄ»ù´¡ÉèÊ©¡¢Ò½Ôº¡¢½»Í¨ÖÎÀí»ú¹¹¡¢¹ÜÕʺÍÂÉʦÊÂÎñËùÒÔ¼°´óѧµÈ ¡£¡£¡£¡£¡£µ±¾ÖÒÔΪ¸ÃÍøÕ¾ÎªÚ²Æ­ÕßÌṩÁ˳¬¹ý6800ÍòÃÀÔªµÄ×ʽ𠡣¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/authorities-shut-down-xdedic-marketplace-for-buying-hacked-servers/


ÉêÃ÷£º±¾×ÊѶÓÉ8827Ì«Ñô¼¯ÍÅάËûÃü°²È«Ó××é·­ÒëºÍÕû¶Ù