GandCrab v5.2Ãâ·Ñ½âÃܹ¤¾ß£»£»£»£»£»£»£»Õë¶ÔAzure EximµÄÈ䳿¹¥»÷£»£»£»£»£»£»£»EquifaxÊý¾Ýй¶ӰÏìÃÀ¹ú¶à¸öµ±¾Ö»ú¹¹
°ä²¼¹¦·ò 2019-06-18
°²È«³§ÉÌBitdefenderÓëÅ·ÖÞÐ̾¯×éÖ¯¡¢DIICOT¡¢FBI¼°´ó³ÇÊо¯Ô±¾Ö½áºÏ°ä²¼ÁËÀÕË÷Èí¼þGandCrab×îа汾µÄ½âÃÜÆ÷¡£¡£¡£¡£¡£¡£¸Ã½âÃÜÆ÷ºÏÓÃÓÚGandCrab v5.0µ½5.2Ö®¼äµÄËùÓа汾£¬£¬£¬£¬£¬¿ÉÔÚBitdefender LabsºÍNo More Ransom¹ÙÍø¸ßµÍÔØ¡£¡£¡£¡£¡£¡£¼øÓÚGandCrab¿ª·¢ÕßÒѾÅÜ·£¬£¬£¬£¬£¬Äܹ»È·ÈÏGandCrab v5.2ÊǸÃÀÕË÷Èí¼þµÄ×îºóÒ»¸ö°æ±¾£¬£¬£¬£¬£¬ÕâÒ²Òâζ×ÅĿǰËùÓа汾µÄGandCrab¶¼ÓнâÃÜÆ÷¿ÉÓᣡ£¡£¡£¡£¡£¾Ý¹À¼Æ£¬£¬£¬£¬£¬×Ô2018Äê1Ô³õ´Î³öÏÖÒÔÀ´£¬£¬£¬£¬£¬GandCrabÒÑϰȾÁ˳¬¹ý150ÍòWindowsÓû§¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://cyware.com/news/researchers-unleash-free-decryption-tool-for-all-version-of-gandcrab-ransomware-0273a19f
2¡¢Î¢Èí°ä²¼ÖҸ棺Õë¶ÔAzure Exim·þÎñÆ÷µÄÈ䳿¹¥»÷
6ÔÂ15ÈÕ΢Èí°²È«Ó¦¼±ÏìÓ¦ÖÐÐÄ£¨MSRC£©ÖÒ¸æÕë¶ÔAzureƽ̨Exim·þÎñÆ÷µÄ»îÔ¾LinuxÈ䳿¹¥»÷¡£¡£¡£¡£¡£¡£Æ¾¾ÝAzureÊÂÎñÏìÓ¦¾ÀíJR AquinoµÄ˵·¨£¬£¬£¬£¬£¬MSRCÈ·Èϼì²âµ½Õë¶ÔLinux EximÓʼþ·þÎñÆ÷£¨°æ±¾4.87µ½4.91£©µÄÈ䳿¹¥»÷£¬£¬£¬£¬£¬¸ÃÈä³æÖØÒªÀûÓÃRCE·ì϶£¨CVE-2019-10149£©¡£¡£¡£¡£¡£¡£ÎªÁË×èÖ¹Èä³æÍ¨¹ýAzure·þÎñÆ÷·¢ËÍÀ¬»øÓʼþ£¬£¬£¬£¬£¬Î¢Èí¶Ô·þÎñÆ÷µÄ³öÕ¾µç×ÓÓʼþ¹æ¶¨Ôö³¤ÁËеÄÏÞ¶È£¬£¬£¬£¬£¬¸ÃÏÞ¶ÈÄܹ»»º½âÈ䳿µÄϰȾְÄÜ£¬£¬£¬£¬£¬µ«Õâ²¢²»ÁÏζ×Å´æÔÚ·ì϶µÄAzure·þÎñÆ÷Êܵ½±£»£»£»£»£»£»£»¤£¬£¬£¬£¬£¬Î¢ÈíÇ¿ÁÒ½¨ÒéËùÓÐAzureÓû§½«ÒÑ×°ÖõÄEximÓʼþ·þÎñÆ÷Éý¼¶µ½°æ±¾4.92¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/microsoft/microsoft-warns-about-worm-attacking-exim-servers-on-azure/
3¡¢EquifaxÊý¾Ýй¶ӰÏìÃÀ¹ú¶à¸öµ±¾Ö»ú¹¹µÄÉí·ÝÑéÖ¤Á÷³Ì
ÃÀ¹úµ±¾ÖÎÊÔð°ì¹«ÊÒ£¨GAO£©µÄл㱨ָ³ö£¬£¬£¬£¬£¬2017ÄêEquifaxµÄÊý¾Ýй¶ÊÂÎñÓ°ÏìÁ˶à¸öµ±¾Ö»ú¹¹µÄÔÚÏßÉí·ÝÑéÖ¤Á÷³Ì¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄ»ú¹¹Ô̺¬Ò½ÁƱ£ÏÕºÍÒ½ÁƲ¹Öú·þÎñÖÐÐÄ£¨CMS£©¡¢Éç»á±£ÏÕÖÎÀí¾Ö£¨SSA£©¡¢ÃÀ¹úÓÊÕþ·þÎñ£¨USPS£©ºÍÍËÒÛÎäÊ¿ÊÂÎñ²¿£¨VA£©¡£¡£¡£¡£¡£¡£ÃÀ¹ú¹«ÃñÔÚÕâЩµ±¾Ö»ú¹¹¹ÙÍøÉêÇ븣Àûʱ£¬£¬£¬£¬£¬ÒÀÀµÓÚEquifaxµÈÐÅÓþ»ã±¨»ú¹¹£¨CRA£©ÌṩµÄÊý¾Ý×÷ΪÉêÇëÈËÉí·ÝµÄÖ¤Ã÷£¬£¬£¬£¬£¬ÓÉÓÚºÚ¿ÍÒ²Õ¼ÓÐÕâЩÊý¾Ý£¬£¬£¬£¬£¬Ê¹µÃÕâÒ»¹ý³Ì²»ÔÙ¿ÉÐÅ¡£¡£¡£¡£¡£¡£2017ÄêÃÀ¹ú¹ú¶È³ß¶ÈÓë¼¼Êõ×êÑÐÔº£¨NIST£©½¨ÒéÓÃÆäËû½â¾ö¹æ»®´úÌæ»ùÓÚCRAµÄÔÚÏßÉí·ÝÖ¤Ã÷£¬£¬£¬£¬£¬µ«GAO·¢ÏÖÉÏÊö»ú¹¹ÈÔÔÚʹÓþɵÄCRAÊý¾Ý¿â½øÐÐÔÚÏßÉí·Ý¼ø±ðÑéÖ¤¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/equifax-breach-impacted-the-online-id-verification-process-at-many-us-govt-agencies/
4¡¢°Ä´óÀûÑÇÉϵ۽̴óѧÔâ´¹µö¹¥»÷£¬£¬£¬£¬£¬Ô±¹¤Í´´¦±»ÇÔ
°Ä´óÀûÑÇÉϵ۽̴óѧÔâµ½´¹µö¹¥»÷£¬£¬£¬£¬£¬µ¼ÖÂÔ±¹¤µÄÓ×ÎÒÐÅÏ¢±»ÇÔ¡£¡£¡£¡£¡£¡£¸Ã´óѧ֤ʵ£¬£¬£¬£¬£¬5ÔÂ22ÈÕ²¿ÃÅÔ±¹¤µÄµç×ÓÓʼþÕË»§ºÍ´óѧϵͳÔâµ½ºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬Ô±¹¤ÓÊÏäÕË»§ÖеÄÈÕÀú¡¢ÒøÐÐÕË»§ÐÅÏ¢µÈ±»ÇÔ¡£¡£¡£¡£¡£¡£¸Ã´óѧÒÑ֪ͨ°Ä´óÀûÑÇÐÅϢרԱ°ì¹«ÊÒ£¬£¬£¬£¬£¬²¢ÇÒÒªÇóÊÜÓ°ÏìµÄÔ±¹¤³ÁÖÃÃÜÂë¡£¡£¡£¡£¡£¡£ÕâÊÇÒ»¸öÔÂÄÚ°Ä´óÀûÑDzúÉúµÄµÚ¶þÆð´óѧÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬£¬ÉÏһ·ÊǰĴóÀûÑǹúÁ¢´óѧй¶ÁË19ÄêµÄÔ±¹¤ºÍѧÉúÐÅÏ¢¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://cyware.com/news/australian-catholic-university-suffers-data-breach-impacting-the-personal-details-of-its-staff-9c97875a
5¡¢Ó¢¹ú´È±¯»ú¹¹MermaidsÒâ±íй¶1100¶à·âÃô¸ÐÓʼþ
ƾ¾Ý¡¶ÐÇÆÚÈÕÌ©ÎîÊ¿±¨¡·µÄ±¨Â·£¬£¬£¬£¬£¬Ó¢¹ú´È±¯»ú¹¹MermaidsÒâ±íй¶1100¶à·âÃô¸Ðµç×ÓÓʼþ¡£¡£¡£¡£¡£¡£ÕâЩÓʼþÊÇ2016ÄêÖÁ2017ÄêÆÚ¼ä´È±¯»ú¹¹Ö÷¹ÜÓëÊÜÍпͻ§µÄÍùÀ´Óʼþ£¬£¬£¬£¬£¬Óʼþй¶ÁËÁªÏµÈ˵ÄÐÕÃû¡¢µØÖ·¡¢µç»°ºÅÂëÒÔ¼°Ïò´È±¯»ú¹¹×·ÇóÔ®ÊÖµÄÈõÊÆÇàÉÙÄêµÄÃô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£ÕâЩ×ÊÁϱ»ÉÏ´«µ½ÍøÕ¾ÉÏ£¬£¬£¬£¬£¬Ö»ÐèÊäÈë¸Ã»ú¹¹µÄÓ¢¹ú´È±¯»ú¹¹±àºÅ¼´¿É½Ó¼û¡£¡£¡£¡£¡£¡£ÔÚ½Óµ½»ã±¨ºó£¬£¬£¬£¬£¬MermaidsÒÑ´ÓÍøÉÑþ³ØýÁËÕâЩÄÚÈÝ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/mermaids-transgender-charity-apologizes-for-data-breach/
6¡¢NetflixÅû¶LinuxÄÚºËÖеĶà¸öDoS·ì϶
Netflix×êÑÐÈËÔ±Jonathan Looney·¢ÏÖÈý¸öLinux·ì϶£¬£¬£¬£¬£¬ÕâЩ·ì϶ÓëÄں˴¦ÖÃTCPµÄ·½Ê½Óйأ¬£¬£¬£¬£¬Ô¶³Ì¹¥»÷Õß¿ÉÀûÓÃÕâЩ·ì϶´¥·¢kernel panicºÍDoS¡£¡£¡£¡£¡£¡£Æ¾¾ÝRed HatµÄ˵·¨£¬£¬£¬£¬£¬SACK Panic·ì϶£¨CVE-2019-11477£©±»·ÖÅäΪCVSS3 7.5·Ö£¬£¬£¬£¬£¬Áí±íÁ½¸ö·ì϶£¨CVE-2019-11478ºÍCVE- 2019-11479£©±»·ÖÅäΪÖÐΣ·ì϶¡£¡£¡£¡£¡£¡£ÆäÖÐSACK Panic·ì϶ӰÏìÁËLinuxÄÚºË2.6.29¼°¸ü¸ß°æ±¾£¬£¬£¬£¬£¬¿Éͨ¹ýÔÚTCP MSS½ÏÓ×µÄTCPÏνÓÉÏ·¢ËÍÌØÔìSACKÐòÁд¥·¢ÕûÊýÒç³ö¡£¡£¡£¡£¡£¡£Áí±íÁ½¸ö·ì϶ӰÏìÁËËùÓеÄLinux°æ±¾¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/multiple-linux-and-freebsd-dos-vulnerabilities-found-by-netflix/


¾©¹«Íø°²±¸11010802024551ºÅ