ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸ÁÐ±í£»£»£»£» £»£»ºÚ¿ÍÀûÓÃÆ¾Ö¤Ìî³ä¹¥»÷³¬¹ý30Íò¸öSpotifyÓû§

°ä²¼¹¦·ò 2020-11-24
1.ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸Áбí


1.jpg


ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸ÁÐ±í£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬À´×ÔÊÀ½ç¸÷µØµÄ´óÐÍÒøÐк͵±¾Ö×éÖ¯¡£¡£¡£¡£¡£¡£ÕâЩÉ豸Öоù´æÔÚõè¾¶±éÀú·ì϶£¬£¬£¬£¬£¬±»×·×ÙΪCVE-2018-13379£¬£¬£¬£¬£¬ËüÓ°ÏìÁË´óÁ¿Î´½¨²¹µÄFortinet FortiOS SSL VPNÉ豸¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÄܹ»ÀûÓô˷ì϶£¬£¬£¬£¬£¬´ÓFortinet VPN½Ó¼ûsslvpn_websessionÎļþÀ´ÇÔÈ¡µÇ¼ʹ´¦£¬£¬£¬£¬£¬²¢½«ÆäÓÃÓÚ·ÛËéÍøÂç²¢²¿ÊðÀÕË÷Èí¼þ¡£¡£¡£¡£¡£¡£Ö»¹Ü¸Ã·ì϶ÔÚÒ»Äêǰ¾Í±»¹«¿ªÅû¶£¬£¬£¬£¬£¬µ«ºÚ¿ÍÈÔ·¢ÏÖ²¢¹«¿ªÁËÁË49577¸ö´æÔÚ´ËÀà·ì϶µÄ´óÐÍÉ豸µÄÁÐ±í¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hacker-posts-exploits-for-over-49-000-vulnerable-fortinet-vpns/


2.ºÚ¿ÍÀûÓÃÆ¾Ö¤Ìî³ä¹¥»÷³¬¹ý30Íò¸öSpotifyÓû§


2.jpg


VPNMentor×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬£¬ºÚ¿ÍÔÚʹÓÃÔ̺¬3ÒÚ¸öÓû§ÃûºÍÃÜÂë×éºÏµÄÊý¾Ý¿â£¬£¬£¬£¬£¬¶ÔSpotifyÓû§ÌáÒéÍ´´¦Ìî³ä¹¥»÷¡£¡£¡£¡£¡£¡£¸ÃÊý¾Ý¿âÖеÄÿ¸ö¼Í¼¶¼Ô̺¬Ò»¸öµÇ¼Ãû£¨µç×ÓÓʼþµØÖ·£©¡¢Ò»¸öÃÜÂëÒÔ¼°¸ÃÍ´´¦ÊÇ·ñÄܹ»³É¹¦µÇ¼µ½SpotifyÕÊ»§µÄ·´À¡¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÒÔΪ£¬£¬£¬£¬£¬Êý¾Ý¿âÖÐÁгöµÄ3Òڱʼͼ¿Éʹ¹¥»÷Õß¹¥ÆÆ300000ÖÁ350000¸öSpotifyÕÊ»§¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬SpotifyΪËùÓÐÊÜÓ°ÏìµÄÓû§½øÐйö¶¯³ÁÖÃÃÜÂ룬£¬£¬£¬£¬µ«ÈÔ²»Ö§³ÖÖ§³Ö¶à³É·ÖÉí·ÝÑéÖ¤¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/over-300k-spotify-accounts-hacked-in-credential-stuffing-attack/


3.¼ÓÄôóÊ¥Ô¼º²ÊÐÔâÍøÂç¹¥»÷£¬£¬£¬£¬£¬µ¼ÖÂÊÐÕþÍøÂç̱»¾


3.jpg


11ÔÂ15ÈÕ£¬£¬£¬£¬£¬¼ÓÄôóÊ¥Ô¼º²ÊÐÔâ·ê´ó¹æÄ£ÍøÂç¹¥»÷£¬£¬£¬£¬£¬ÑϳÁ·ÛËéÁËÕû¸ö³ÇÊеÄÊÐÕþ»ù´¡ÉèÊ©¡£¡£¡£¡£¡£¡£Õâ´Î¹¥»÷µ¼ÖÂÕû¸öÊÐÕþÍøÂç¹Ø¹Ø£¬£¬£¬£¬£¬Ô̺¬³ÇÊÐÍøÕ¾¡¢ÔÚÏßÖ§¸¶ÏµÍ³¡¢µç×ÓÓʼþºÍ¿Í»§·þÎñÀûÓ÷¨Ê½£¬£¬£¬£¬£¬µ«²¢Î´ÓÐÈκÎÊÐÃñµÄÓ×ÎÒÐÅÏ¢±»Ð¹Â¶¡£¡£¡£¡£¡£¡£×¨¼ÒÒÔΪ£¬£¬£¬£¬£¬´ËÊÂÎñΪÓÉÀÕË÷Èí¼þ¹¥»÷µ¼Öµģ¬£¬£¬£¬£¬Ô¤¼Æ¿ÉÄܱØÒª¼¸¸öÐÇÆÚÄÜÁ¦ÆëÈ«¸´Ô­Õý³£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬¸ÃÊÐÔÚÓëÁª¹úºÍÊ¡µ±¾ÖºÏ×÷£¬£¬£¬£¬£¬ÒÔ´ÓÍøÂç¹¥»÷Öи´Ô­¹ýÀ´¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/111259/cyber-crime/saint-john-cyber-attack.html


4.Pickle FinanceÏîÄ¿Ôâ¹¥»÷£¬£¬£¬£¬£¬Ëðʧ½ü2000ÍòÃÀÔª


4.jpg


Á÷¶¯ÐÔÍÚ¿óÏîÄ¿Pickle FinanceÔâµ½¹¥»÷£¬£¬£¬£¬£¬Ëðʧ½ü2000ÍòÃÀÔª¡£¡£¡£¡£¡£¡£Õâ´Î¹¥»÷ÖУ¬£¬£¬£¬£¬ºÚ¿Í²¢Ã»ÓÐʹÓÃ×î½üÔÚ´óÎÞÊýÀàËÆÊÂÎñÖгöÏÖµÄFlash Loan£¬£¬£¬£¬£¬¶øÊDz¿ÊðÁËÒ»¸ö¶ñÒâjarÀ´Î±ÔìµÄ»¥»»£¬£¬£¬£¬£¬ÒÔÀûÓÃPickle FinanceÖÇÄܺÏÔ¼DAI PickleJarÖеķì϶¡£¡£¡£¡£¡£¡£¸ÃÏîÖ÷ÕÅÍŶӰµÊ¾£¬£¬£¬£¬£¬Æä19759355¸öDAIÒѱ»ºÄ¾¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬¶ø¸ÃÏîÖ÷ÕÅÁîÅÆ£¨PICKLE£©Ò²ÔÚÔâ·êºÚ¿Í¹¥»÷ºóËðʧÁËÆä¼ÛÖµµÄ50£¥ÒÔÉÏ£¬£¬£¬£¬£¬´ïµ½ÁË8.84ÃÀÔªµÄµÍµã¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.fxstreet.com/cryptocurrencies/news/nearly-20-million-stolen-from-the-defi-protocol-pickle-finance-202011221250


5.ÁãÊÛ¹«Ë¾E-LandϰȾÀÕË÷Èí¼þµ¼Ö½ü°ëÊýÉÌµê¹Ø¹Ø


5.jpg


º«¹úʱװºÍÁãÊÛ¼¯ÍÅE-Land GroupÖÜÈÕ°µÊ¾£¬£¬£¬£¬£¬ÓÉÓÚϰȾÀÕË÷Èí¼þ£¬£¬£¬£¬£¬Æä°ëÊýÉÌµê¹Ø¹Ø¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯³ÆÆä¹«Ë¾ÍøÂçϵͳÔÚÔ糿Ôâµ½ÀÕË÷Èí¼þµÄ¹¥»÷£¬£¬£¬£¬£¬ÆÈʹÆäNC°Ù»õÉ̵êºÍNewCore OutletµÄ50¸ö·ÖÖ§»ú¹¹ÖеÄ23¸öÖÕ³¡ÁËÔËÓª¡£¡£¡£¡£¡£¡£E-Land°µÊ¾£¬£¬£¬£¬£¬Ä¿Ç°ÒÑ¹Ø¹ØÆä²¿ÃŹ«Ë¾ÍøÂçϵͳ£¬£¬£¬£¬£¬ÒÔ×î´óˮƽµØÏ÷¼õÇÖº¦£¬£¬£¬£¬£¬²¢ÒÑÒªÇ󾯷½µ÷²éÍøÂç¹¥»÷¡£¡£¡£¡£¡£¡£    


Ô­ÎÄÁ´½Ó£º

https://www.koreatimes.co.kr/www/tech/2020/11/694_299692.html


6.Wipro°ä²¼ÓйØÀûÓÃAIºÍMLÓ¦¶ÔÍøÂç¹¥»÷µÄ·ÖÎö»ã±¨


6.jpg


Wipro°ä²¼ÁËÓйØÀûÓÃAIºÍMLÓ¦¶ÔÍøÂç¹¥»÷µÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£»ã±¨·¢ÏÖ£¬£¬£¬£¬£¬ÔÚ´ÓǰµÄËÄÄêÀ£¬£¬£¬£¬È«ÇòÓÐ49%µÄÓëÍøÂ簲ȫÓйصÄרÀû¶¼ÓëÈËΪÖÇÄܺͻúе½ø½¨µÄÀûÓÃÓйء£¡£¡£¡£¡£¡£¶ø½üÒ»°ë£¨49£¥£©µÄ×éÖ¯ÔÚÀ©´óÈÏÖª¼ì²âÄÜÁ¦£¬£¬£¬£¬£¬ÒÔÓ¦¶ÔÆä°²È«ÔËÓªÖÐÐÄ(SOC)ÖеÄδ֪¹¥»÷¡£¡£¡£¡£¡£¡£65£¥µÄ×éÖ¯ÔÚ¶Ô²Ù×÷¼¼Êõ£¨OT£©ºÍIoTÉ豸½øÐÐÈÕÖ¾¼à¿Ø£¬£¬£¬£¬£¬ÒÔ¼õÇáOT·çÏÕµÄÔö³¤¡£¡£¡£¡£¡£¡£57£¥µÄ×éÖ¯Ö»Ô¸Òâ¹²ÏíIoC£¬£¬£¬£¬£¬64£¥µÄ×éÖ¯ÒÔΪÃûÓþ·çÏÕÊÇÐÅÏ¢¹²ÏíµÄ¹ÊÕÏ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/11/23/ai-ml-tackle-unknown-attacks/