¿ËÂÞµØÑǵçÐÅÔËÓªÉÌA1 Hrvatskaй¶Լ20ÍòÓû§ÐÅÏ¢
°ä²¼¹¦·ò 2022-02-15¿ËÂÞµØÑǵçÐÅÔËÓªÉÌA1 Hrvatskaй¶Լ20ÍòÓû§ÐÅÏ¢
¾ÝýÌå2ÔÂ11ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬¿ËÂÞµØÑǵçÐÅÔËÓªÉÌA1 Hrvatskaй¶ÁË10%Óû§£¨Ô¼20ÍòÈË£©µÄÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ã»ÓÐÌṩ¹ØÓÚÕâ´ÎÊÂÎñµÄϸ½Ú£¬£¬£¬£¬£¬£¬Ö»³ÆËûÃǵÄÒ»¸öÓû§Êý¾Ý¿âÔâµ½ÁËδ¾ÊÚȨ½Ó¼û£¬£¬£¬£¬£¬£¬µ¼ÖÂÐÕÃû¡¢Ó×ÎÒ¼ø±ðºÅÂë¡¢ÏÖʵµØÖ·ºÍµç»°ºÅÂëµÈÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£ÎÖ´ï·á¼¸ÈÕǰÔâµ½¹¥»÷µ¼ÖÂÆäÔÚÆÏÌÑÑÀµÄ·þÎñÖжϣ¬£¬£¬£¬£¬£¬A1 HrvatskaÊÇÆäÕ½ÊõºÏ×÷ͬ°é£¬£¬£¬£¬£¬£¬Éв»ÄÜÈ·¶¨ÕâÁ½´Î°²È«ÊÂÎñÖ®¼äÊÇ·ñ´æÔÚÁªÏµ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/croatian-phone-carrier-data-breach-impacts-200-000-clients/
ÖйúÏã¸Ûº£ÒݾƵêÊý¾Ý¿âÔâ¹¥»÷³¬100Íò¿Í»§ÐÅϢй¶
2ÔÂ11Èյı¨Â·³Æ£¬£¬£¬£¬£¬£¬ÖйúÏã¸ÛµÄº£ÒݾƵ꼯ÍÅÔ¤Ô¼Êý¾Ý¿âÔâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬Ô¼120Íò¿Í»§µÄÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£ÒþÖÔרԱAda ChungÉÏÖÜÎ尵ʾ£¬£¬£¬£¬£¬£¬ÆäÔÚÉÏÖÜÈýÊÕµ½Í¨ÖªºóÒѾ¶Ô´ËÊ·¢Õ¹µ÷²é¡£¡£¡£¡£¡£¡£¡£ÊÐÃñ¿Éͨ¹ý´¦Ê´¦ÈÈÏß28272827¡¢¼¯Íźô½ÐÖÐÐÄ39080740»ò¹«Ë¾¹ÙÍø²éÎÊÊÇ·ñÊܵ½´ËÊÂÎñµÄÓ°Ïì¡£¡£¡£¡£¡£¡£¡£
https://gbcode.rthk.hk/TuniS/news.rthk.hk/rthk/en/component/k2/1633250-20220211.htm
SentinelOne°ä²¼ModifiedElephant¹¥»÷Ó¡¶ÈµÄ·ÖÎö»ã±¨
SentinelOneÔÚ2ÔÂ9ÈÕ°ä²¼»ã±¨£¬£¬£¬£¬£¬£¬Åû¶ÁËModifiedElephant¹¥»÷Ó¡¶ÈµÄϸ½Ú¡£¡£¡£¡£¡£¡£¡£ModifiedElephantÖÁÉÙ´Ó2012ÄêÆðÍ·ÔËÓª£¬£¬£¬£¬£¬£¬Ê¹ÓÃÁËóÒ×Ô¶³Ì½Ó¼ûľÂí(RAT)£¬£¬£¬£¬£¬£¬²¢ÇÒÓëóÒ×¼à¿ØÐÐÒµÓÐÁªÏµ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õßͨ¹ýÓã²æÊ½´¹µö»î¶¯À´·Ö·¢¶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬ÀýÈçNetWireºÍDarkCometµÈ£¬£¬£¬£¬£¬£¬ÖØÒªÕë¶ÔÓ¡¶È¸÷µØµÄÈËȨ»î¶¯ÓйØÈËÔ±¡¢Ñ§ÕߺÍÂÉʦµÈ£¬£¬£¬£¬£¬£¬×îÖÕÖ¼ÔÚÖ²ÈëÓÐ×ïµÄÊý×ÖÖ¤¾Ý¡£¡£¡£¡£¡£¡£¡£
https://www.sentinelone.com/labs/modifiedelephant-apt-and-a-decade-of-fabricating-evidence/
FritzFrogÔٴλع飬£¬£¬£¬£¬£¬Õë¶ÔÒ½ÁÆ¡¢½ÌÓýºÍµ±¾ÖµÄ×éÖ¯
2ÔÂ10ÈÕ£¬£¬£¬£¬£¬£¬°²È«¹«Ë¾Akamai°ä²¼Á˹ØÓÚP2P½©Ê¬ÍøÂçFritzFrogµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£FritzFrogÓÚ2020Äê8Ô³õ´Î±»·¢ÏÖ£¬£¬£¬£¬£¬£¬Õâ´Î»Ø¹éÔÚÒ»¸öÔÂÄÚµÄϰȾÂÊÔö³¤ÁË10±¶£¬£¬£¬£¬£¬£¬ÒѾ¹¥»÷ÁË1500̨ҽÁƱ£½¡¡¢½ÌÓýºÍµ±¾ÖÐÐÒµµÄ·þÎñÆ÷£¬£¬£¬£¬£¬£¬ÆäÖдó²¿ÃÅλÓÚÖйú¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þʹÓÃGolang±àд£¬£¬£¬£¬£¬£¬Ôö³¤ÁËÐÂÖ°ÄÜ£¬£¬£¬£¬£¬£¬Ô̺¬Ê¹ÓôúÀíÍøÂçºÍ¶¨Î»WordPress·þÎñÆ÷£¬£¬£¬£¬£¬£¬²¢ÇÒÆä¶ÔµÈ¼Ü¹¹ºÍרÓдúÂëÓµÓнϸßˮƽµÄ¸´ÔÓÐÔ¡£¡£¡£¡£¡£¡£¡£
https://www.akamai.com/blog/security/fritzfrog-p2p
·¨¹ú³ÆGoogle AnalyticsÎ¥·´GDPR½«ÍøÂçµÄÊý¾Ý´«Êäµ½ÃÀ¹ú
¾ÝýÌå2ÔÂ10Èճƣ¬£¬£¬£¬£¬£¬·¨¹úÊý¾Ý±£»£»£»£»£»£»¤¼à¹Ü»ú²Ã¶¨Google AnalyticsÎ¥·´ÁËGDPR¡£¡£¡£¡£¡£¡£¡£¹ú¶ÈÐÅϢѧºÍ×ÔÓÉίԱ»á(CNIL)°µÊ¾£¬£¬£¬£¬£¬£¬Google Analytics´«Êäµ½ÃÀ¹úµÄÊý¾ÝûÓеõ½¡°³ä·Ö¼à¹Ü¡±£¬£¬£¬£¬£¬£¬Î¥·´ÁËGDPRµÚ44ÌõÌõ¿î¡£¡£¡£¡£¡£¡£¡£CNIL³Æ£¬£¬£¬£¬£¬£¬Ö»¹ÜGoogleÒѾ²ÉÈ¡Á˶î±íµÄ´ëÊ©À´¹æ·¶Google AnalyticsÖеÄÊý¾Ý´«Ê䣬£¬£¬£¬£¬£¬µ«ÕâЩ»¹²»¼°ÒÔÅųýÃÀ¹úµý±¨·þÎñ½Ó¼ûÕâЩÊý¾ÝµÄ¿ÉÄÜÐÔ¡£¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/02/france-rules-that-using-google.html
ÀÕË÷ÍÅ»ïBlackByte³ÆÆäÒÑÈëÇÖNFL¾É½ðɽ49È˶Ó
ýÌå2ÔÂ13ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬£¬ÀÕË÷ÍÅ»ïBlackByteÒÑÈëÇ־ɽðɽ49È˶ӡ£¡£¡£¡£¡£¡£¡£¾É½ðɽ49È˶ӣ¨San Francisco 49ers£©ÊÇNFLÖÐ×îÓмÛÖµºÍ×î´«ÆæµÄÇò¶ÓÖ®Ò»£¬£¬£¬£¬£¬£¬¾ÍÔÚNFL³ï±¸Ó½Ó2022Ä곬µÈÍëµÄʱ³½£¬£¬£¬£¬£¬£¬BlackByteÐû³Æ¹¥»÷ÁË49ers²¢Æðͷй¶±»µÁÎļþ£¬£¬£¬£¬£¬£¬¾ÝϤÊÇ292MBµÄ²ÆÕþÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¸ÃÇò¶ÓÔÚÒ»·ÝÉêÃ÷ÖÐ֤ʵÁËÕâ´Î¹¥»÷£¬£¬£¬£¬£¬£¬²¢°µÊ¾¹¥»÷µ¼ÖÂËûÃDz¿ÃÅÍøÂçÁÙʱÖжϣ¬£¬£¬£¬£¬£¬Ä¿Ç°ÈÔÔÚ¸´ÔϵͳµÄ¹ý³ÌÖÓ×£¡£¡£¡£¡£¡£¡£
https://www.securityweek.com/ransomware-gang-says-it-has-hacked-49ers-football-team
°²È«¹¤¾ß
VulnLab
Yavuzlar ¿ª·¢µÄ Web ·ì϶³¢ÊÔÊÒÏîÄ¿¡£¡£¡£¡£¡£¡£¡£
https://github.com/Yavuzlar/VulnLab
Http2Smugl
¸Ã¹¤ÓµÓÐÖúÓÚ¼ì²âºÍÀûÓà HTTP ÒªÇó×ß˽£¬£¬£¬£¬£¬£¬ÒÔ·ÀËüͨ¹ýǰ¶Ë·þÎñÆ÷ͨ¹ý HTTP/2 -> HTTP/1.1 ת»»À´ÊµÏÖ¡£¡£¡£¡£¡£¡£¡£
https://github.com/neex/http2smugl
FACT
ÓÃÓÚÍøÂç¡¢´¦ÖúͿÉÊÓ»¯À´×ÔÓÉÔÆÖлò±¾µØÔËÐеĻúе¼¯ÈºµÄȡ֤Êý¾Ý¡£¡£¡£¡£¡£¡£¡£
https://github.com/unicornunicode/FACT
iris-web
ËüÊÇÊÂÎñÏìÓ¦·ÖÎöʦµÄºÏ×÷ƽ̨£¬£¬£¬£¬£¬£¬ÔÊÐíÔÚ¼¼Êõ²ãÃæ¹²Ïíµ÷²é¡£¡£¡£¡£¡£¡£¡£
https://dfir-iris.github.io/
hobbits
ÓÃÓÚ·ÖÎö¡¢´¦ÖúͿÉÊÓ»¯±ÈÌØµÄÈí¼þƽ̨¡£¡£¡£¡£¡£¡£¡£
°²È«·ÖÎö
ÃÀ¹ú¹ú·À²¿Ñ¡Ôñ DataRobot Ϊµ±¾ÖµÄÈËΪÖÇÄÜ´òËãÌṩ¶¯Á¦
https://www.helpnetsecurity.com/2022/02/13/datarobot-department-of-defense/
¹È¸è°µÊ¾£¬£¬£¬£¬£¬£¬×éÖ¯ÔÚ¸ü¿ìµØ½â¾öÁãÈÕ·ì϶
https://securityaffairs.co/wordpress/127932/security/zero-day-flaws-metrics.html
¹È¸èÔÚ 2021 ÄêÏò Bug Hunters Ö§¸¶ÁË 870 ÍòÃÀÔª
https://www.darkreading.com/vulnerabilities-threats/google-paid-record-8-7-million-to-bug-hunters-in-2021
CISA ºÅÁîÁª¹ú»ú¹¹ÔÚ 2 Ô 25 ÈÕ֮ǰ¸üРiPhone¡¢Mac
https://www.bleepingcomputer.com/news/security/cisa-orders-federal-agencies-to-update-iphones-macs-until-feb-25th/
΢Èí£º¶Ô Windows 10 20H2 µÄÖ§³Ö½«ÓÚ 2022 Äê 5 ÔÂʵÏÖ
https://www.bleepingcomputer.com/news/microsoft/microsoft-support-for-windows-10-20h2-ending-in-may-2022/
зì϶¿ÉÈúڿÍÔ¶³Ì·ÛËéÎ÷ÃÅ×Ó PLC
https://www.securityweek.com/new-vulnerabilities-can-allow-hackers-remotely-crash-siemens-plcs


¾©¹«Íø°²±¸11010802024551ºÅ