ÃÀ¹ú½ðÈÚ¹«Ë¾FAFCй¶8.85ÒÚÌõµÖѺ´û¿î¼Í¼;macOS GatekeeperÈÆ¹ý·ì϶£¬£¬£¬£¬£¬£¬£¬Ó°Ïì10.14.5¼°Ö®Ç°°æ±¾
°ä²¼¹¦·ò 2019-05-27
¾ÝŦԼʱ±¨±¨Â·£¬£¬£¬£¬£¬£¬£¬ÃÀ¹ú½ðÈÚ¹«Ë¾First American Financial Corporation¹ÙÍøÉϵÄÒ»¸ö·ì϶й¶ÁË16ÄêÀ´ÓëµÖѺ´û¿îÓйصÄ8.85Òڱʼͼ¡£¡£¡£¡£¡£¡£¸Ã·ì϶ÔÊÐíÈκÎÈ˽ӼûFirst American´æ´¢µÄÉç»á°²È«ºÅÂë¡¢ÒøÐÐÕË»§¾ßÌåÐÅÏ¢¡¢¼ÝÕÕÒÔ¼°µÖѺ´û¿îºÍ˰ÎñÐÅÏ¢¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾°µÊ¾ÔÚÆÀ¹À´ËÊÂÎñ¶Ô¿Í»§ÐÅÏ¢°²È«ÐÔµÄÓ°Ï죬£¬£¬£¬£¬£¬£¬ÔÚÄÚ²¿ÉóºËʵÏÖ֮ǰ£¬£¬£¬£¬£¬£¬£¬½«²»»á°ä·¢ÈÎºÎÆÀÂÛ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.nytimes.com/2019/05/24/technology/data-leak-first-american.html
2¡¢macOS GatekeeperÈÆ¹ý·ì϶£¬£¬£¬£¬£¬£¬£¬Ó°Ïì10.14.5¼°Ö®Ç°°æ±¾
Òâ´óÀû°²È«³§ÉÌSegmentµÄ×êÑÐÈËÔ±Filippo CavallarinÅû¶MacOS XÖеÄÒ»¸öGateKeeperÈÆ¹ý·ì϶£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶¿ÉÔÊÐí¹¥»÷ÕßÔÚÎÞÐèÓû§½»»¥µÄÇé¿öÏÂÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£GatekeeperÊÇmacOSÖеÄÄÚÖ÷ÀÓù»úÔ죬£¬£¬£¬£¬£¬£¬¿É×èÖ¹OSÔËÐв»ÊÜÐÅÀµµÄ·¨Ê½¡£¡£¡£¡£¡£¡£Æ¾¾Ý×êÑÐÈËÔ±Åû¶µÄϸ½Ú£¬£¬£¬£¬£¬£¬£¬Gatekeeper½«±í²¿Çý¶¯Æ÷ºÍÍøÂç¹²ÏíÊÓΪ°²È«µØÎ»£¬£¬£¬£¬£¬£¬£¬²¢ÔÊÐíÔËÐÐËüÃÇÔ̺¬µÄÈκÎÀûÓ÷¨Ê½£¬£¬£¬£¬£¬£¬£¬½«ÕâÒ»µãÓëÁí±íÁ½¸öºÏ·¨Ö°ÄÜÏà½áºÏ£¨×Ô¶¯¹ÒÔØºÍ¶Ô·ûºÅÁ´½ÓµÄÖ§³Ö£©£¬£¬£¬£¬£¬£¬£¬Äܹ»ÈƹýGatekeeperÔËÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¸Ã·ì϶ӰÏìÁËmacOS 10.14.5¼°Ö®Ç°µÄ°æ±¾£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚAppleÔÚ90ÌìÄÚûÓн¨¸´¸Ã·ì϶£¬£¬£¬£¬£¬£¬£¬Òò¶ø×êÑÐÈËÔ±Åû¶ÁËÓйØÐÅÏ¢¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-unpatched-macos-gatekeeper-bypass-published-online/
3¡¢Shubert OrganizationÔ±¹¤ÕË»§ÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬¿Í»§ÐÅÏ¢¿ÉÄÜй¶
ƾ¾Ý²¿Ãſͻ§ÊÕµ½µÄÓʼþ֪ͨ£¬£¬£¬£¬£¬£¬£¬Shubert Organization¶à¸öÔ±¹¤µÄµç×ÓÓʼþÕË»§ÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬ÕâЩÕË»§ÖÐÔ̺¬¿Í»§µÄÐÕÃû¡¢ÐÅÓþ¿¨ºÅºÍµ½ÆÚÈÕÆÚµÈÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬µ«²»Ã÷ÏÔÈëÇÖÕßÊÇ·ñ½Ó¼ûÁËÕâЩÐÅÏ¢¡£¡£¡£¡£¡£¡£Shubert OrganizationÕ¼ÓÐ17¼Ò°ÙÀÏ»ã¾çÔººÍƱÎñ¹«Ë¾Telecharge¡£¡£¡£¡£¡£¡£³ýÁËÏò¶à¸öÖݵļà¹Ü»ú¹¹ºÍ¼ì²ì³¤»ã±¨´ËÊÂ±í£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾»¹ÏòÊÜÓ°ÏìµÄÓû§Ìṩ24¸öÔµÄÃâ·ÑÐÅÓþ¼à¿Ø·þÎñ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.forbes.com/sites/marchershberg/2019/05/23/shubert-organization-suffers-data-breach/#44bc20a81de9
4¡¢Õë¶ÔMySQL·þÎñÆ÷µÄ¹¥»÷º£³±£¬£¬£¬£¬£¬£¬£¬ÖØÒª·Ö·¢GandCrab
Sophos×êÑÐÈËÔ±Andrew Brandt·¢ÏÖÒ»¸öÕë¶ÔMySQL·þÎñÆ÷µÄй¥»÷º£³±£¬£¬£¬£¬£¬£¬£¬Æ¾¾ÝBrandtµÄ²©¿Í£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßɨÃ軥ÁªÍøÉ϶³öµÄMySQLÊý¾Ý¿â£¬£¬£¬£¬£¬£¬£¬²é³Æäµ×²ã·þÎñÆ÷ÊÇ·ñÊÇWindowsϵͳ£¬£¬£¬£¬£¬£¬£¬¶øºóͨ¹ýSQLºÅÁîÔڸ÷þÎñÆ÷ÉÏÖ²Èë¶ñÒâÎļþ£¬£¬£¬£¬£¬£¬£¬¸ÃÎļþ½«Ê¹ÓÃÀÕË÷Èí¼þGandCrabϰȾϵͳ¡£¡£¡£¡£¡£¡£ÕâЩɨÃèÖØÒªÕë¶ÔÅäÖÃÃýÎó»òδÉèÃÜÂëµÄÊý¾Ý¿â¡£¡£¡£¡£¡£¡£Brandt¸ú×Ù¹¥»÷ÕߵķþÎñÆ÷·¢ÏÖ£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÒ»¸öGandCrabÑù±¾ÔÚÎåÌìÄÚ·Ö·¢Á˽ü800´Î£¬£¬£¬£¬£¬£¬£¬ÁíÒ»¸öÑù±¾Ôò±»ÏÂÔØÁË2300ÂŴΡ£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/hackers-are-scanning-for-mysql-servers-to-deploy-gandcrab-ransomware/
5¡¢ÎïÁªÍø¹¥»÷µ¼ÖÂÓ¢¹úÆóҵÿÄêËðʧ³¬10ÒÚÓ¢°÷
ƾ¾ÝºÉÀ¼°²È«³§ÉÌIrdetoµÄ×îÐÂ×êÑУ¬£¬£¬£¬£¬£¬£¬Õë¶ÔÎïÁªÍøÉ豸µÄÍøÂç¹¥»÷¿ÉÄÜʹµÃÓ¢¹úÿÄê¾¼ÃËðʧ³¬¹ý10ÒÚÓ¢°÷¡£¡£¡£¡£¡£¡£¶ÔÓ¢¹úÔËÊä¡¢Ôì×÷ºÍÒ½ÁÆÐÐÒµµÄµ÷Ñз¢ÏÖ£¬£¬£¬£¬£¬£¬£¬¶ÔÏνÓÌ×¼þµÄ¹¥»÷¾ùÔÈÔì³ÉµÄËðʧ´ï24.4ÍòÓ¢°÷¡£¡£¡£¡£¡£¡£³¬¹ýÒ»°ëµÄµ÷²é¶ÔÏóÐû³ÆÔÚ´ÓǰһÄêÖÐÔâ·êÁËIoT¹¥»÷µ¼ÖµÄÉ豸ͣ»£»£»£»£»£»ú¡£¡£¡£¡£¡£¡£Îå·ÖÖ®¶þ£¨41%£©µÄÊÜ·ÃÕß°µÊ¾¿Í»§Êý¾ÝÔÚÕâЩ¹¥»÷ÖÐÊܵ½ÇÖº¦¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.infosecurity-magazine.com/news/iot-attacks-cost-uk-firms-over-1bn-1/
6¡¢Ð±ÈÌØ±Òڿƻ£¬£¬£¬£¬£¬£¬£¬ÖØÒª·Ö·¢HiddenTearºÍBaldr
×êÑÐÈËÔ±Fros·¢ÏÖÒ»¸öÐû³ÆÌṩÃâ·Ñ±ÈÌØ±ÒµÄڿƻ£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ýÍøÕ¾Éϵĸæ°×·Ö·¢Ò»¸öÃûΪ¡°±ÈÌØ±ÒÍøÂçÆ÷¡±µÄ·¨Ê½£¬£¬£¬£¬£¬£¬£¬³Æ¸Ã·¨Ê½Äܹ»Ãâ·ÑÇÒ×Ô¶¯µØÃ¿Ìì׬ȡ15-45ÃÀÔªµÄ±ÈÌØ±Ò¡£¡£¡£¡£¡£¡£µ«ÏÖʵÉϸ÷¨Ê½ÊÇÒ»¸öľÂí£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚ¿ªÊͶñÒâpayload£¬£¬£¬£¬£¬£¬£¬Ô̺¬ÀÕË÷Èí¼þHiddenTearÒÔ¼°ÐÅÏ¢ÇÔȡľÂíBaldr¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-bitcoin-scam-leads-to-ransomware-and-info-stealing-trojans/


¾©¹«Íø°²±¸11010802024551ºÅ