¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180730

Ðû²¼Ê±¼ä 2018-07-30
¡¾Îó²î²¹¶¡¡¿LifeLock¹ÙÍø±£´æÎó²î£¬£¬£¬£¬¿Éµ¼ÖÂÊý°ÙÍòÓû§µÄµç×ÓÓʼþµØµãй¶


Ñо¿Ö°Ô±Nathan Reese·¢Ã÷Éí·Ý͵ÇÔ±£»£»£»£»£»£»¤¹«Ë¾LifeLockµÄÍøÕ¾±£´æÇå¾²Îó²î£¬£¬£¬£¬¿Éµ¼ÖÂÊý°ÙÍòÓû§µÄµç×ÓÓʼþµØµãй¶¡£¡£¡£¡£¡£Reese³Æ¿Éͨ¹ýÐÞ¸ÄURLµØµãÖеÄÒ»Á¬Êý×Ö²ÎÊýsubscriberkeyµÄ·½·¨£¬£¬£¬£¬±àд¾ç±¾»ñȡÿһ¸öLifeLockÓû§µÄµç×ÓÓʼþµØµã¡£¡£¡£¡£¡£Æ¾Ö¤2017Äê1ÔµÄÊý¾Ý£¬£¬£¬£¬LifeLockµÄÓû§ÊýÄ¿Áè¼ÝÁË450Íò¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÄÜʹÓÃÕâЩÐÅÏ¢ÌᳫÓÐÕë¶ÔÐÔµÄÍøÂç´¹ÂÚ¹¥»÷¡£¡£¡£¡£¡£LifeLockÒѾ­ÔÚ¸ÃÍøÕ¾ÉÏÐÞ¸´ÁË´ËÎó²î¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://krebsonsecurity.com/2018/07/lifelock-bug-exposed-millions-of-customer-email-addresses/


¡¾Îó²î²¹¶¡¡¿Çå¾²Ñо¿Ö°Ô±·¢Ã÷Swann¼ÒÓÃÉãÏñ»ú±£´æÇå¾²Îó²î


Ñо¿Ö°Ô±·¢Ã÷Swann IoTÉãÏñÍ·±£´æÇå¾²Îó²î£¬£¬£¬£¬¿ÉÔÊÐí¹¥»÷ÕßÉó²éºÍ»á¼ûÆäËüÓû§µÄÊÓÆµÁ÷¡£¡£¡£¡£¡£¸ÃÉãÏñÍ·µÄÔÆÐ§ÀÍÊÇÓÉOzvisionÌṩµÄ£¬£¬£¬£¬µ±Óû§Í¨¹ýSafe by SwannµÇ¼ϵͳʱ£¬£¬£¬£¬»áÏòЧÀÍÆ÷·¢³öÇëÇó£¨userListAssets£©£¬£¬£¬£¬Ð§ÀÍÆ÷½«·µ»ØÓëÕË»§Ïà¹ØÁªµÄ×°±¸Áбí¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷ͨ¹ýÐÞ¸ÄÐòÁкŲÎÊý¿ÉÒÔ»á¼ûÆäËüÓû§µÄÊÓÆµÁ÷¡£¡£¡£¡£¡£SwannÒѾ­ÐÞ¸´Á˸ÃÎó²î¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74868/hacking/swann-camera-hacking.html


¡¾ÍþвÇ鱨¡¿Çå¾²Ñо¿Ö°Ô±·¢Ã÷¶à¸öÓÃÓÚÍÆËÍ¹ã¸æÈí¼þµÄ¶ñÒâÍøÕ¾


·¨¹úÑо¿Ö°Ô±Ivan Kwiatkowski·¢Ã÷¶à¸öαװ³ÉÕýµ±ÍøÕ¾µÄ´¹ÂÚÍøÕ¾£¬£¬£¬£¬ÕâЩ´¹ÂÚÍøÕ¾ÊÔͼÏòÓû§ÍÆËÍ¹ã¸æÈí¼þInstallCore¡£¡£¡£¡£¡£ÀýÈ磬£¬£¬£¬¶ñÒâÍøÕ¾keepass.fr£¨Õýµ±ÍøÕ¾µÄÓòÃûÊÇkeepass.info£©ÉÏÌṩµÄKeePass°æ±¾À¦°óÁË¹ã¸æÈí¼þInstallCore¡£¡£¡£¡£¡£Ñо¿Ö°Ô±¹²·¢Ã÷ÁËÊýÊ®¸ö´ËÀàÍøÕ¾£¬£¬£¬£¬°üÀ¨7Zip¡¢FilezillaºÍAdBlock´¹ÂÚÍøÕ¾µÈ¡£¡£¡£¡£¡£ËùÓеÄÓòÃû¶¼ÊÇÓÉͳһ¸öµç×ÓÓʼþµØµã×¢²áµÄ¡£¡£¡£¡£¡£´ó´ó¶¼ÓòÃû¶¼×¢²áÔÚ.fr»ò.es TLDÏ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/fake-websites-for-keepass-7zip-audacity-others-found-pushing-adware/


¡¾ÍþвÇ鱨¡¿Google´ÓChromeÊÐËÁÖйýʧɾ³ýMetamask¹Ù·½²å¼þ£¬£¬£¬£¬»òµ¼Ö´¹ÂÚΣº¦


Google´ÓChromeÊÐËÁÖйýʧµØÉ¾³ýÁËÒÔÌ«·»Ç®°üMetamaskµÄ¹Ù·½²å¼þ£¬£¬£¬£¬µ«±£´æÁËÒ»¸öÐéα²å¼þ¡£¡£¡£¡£¡£¸ÃÐéα²å¼þÊÔͼʹÓÃMetamaskµÄÃû³ÆºÍÆ·ÅÆÀ´Íƹã×Ô¼º£¬£¬£¬£¬Æ¾Ö¤Braveä¯ÀÀÆ÷¿ª·¢Ö°Ô±Jonathan SampsonµÄ˵·¨£¬£¬£¬£¬¸Ã²å¼þʹÓÃÁË֮ǰÔÚÍøÂç´¹ÂڻÖÐʹÓõĵç×ÓÓʼþµØµã£¬£¬£¬£¬Òò´ËÕâºÜ¿ÉÄÜÊÇÒ»¸ö¶ñÒâ²å¼þ¡£¡£¡£¡£¡£¼¸¸öСʱ֮ºóGoogleÐÞÕýÁËÆäÐÐΪ£¬£¬£¬£¬É¾³ýÁ˸ÃÐéα²å¼þ²¢»Ö¸´Á˹ٷ½µÄ²å¼þ¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/cryptocurrency/google-removes-real-ethereum-wallet-from-web-store-but-leaves-fake-one-alone/


¡¾ÍþвÇ鱨¡¿Ñо¿ÍŶӷ¢Ã÷¶íAPT28ÊÔͼÕë¶ÔÃÀ²ÎÒéÔ±µÄ´¹ÂÚ¹¥»÷»î¶¯


Ñо¿Ö°Ô±·¢Ã÷¶íÂÞ˹APT×éÖ¯Fancy Bear£¨ÓÖ±»³ÆÎªAPT28£©ÊÔͼÕë¶ÔÃÀ²ÎÒéÔ±Claire McCaskill¼°ÆäÊÂÇéÖ°Ô±µÄ´¹ÂÚ¹¥»÷»î¶¯¡£¡£¡£¡£¡£McCaskillÕýÔÚΪÆä2018ÄêµÄÁ¬ÈξºÑ¡×ö×¼±¸¡£¡£¡£¡£¡£Æ¾Ö¤The Daily BeastµÄ±¨µÀ£¬£¬£¬£¬¹¥»÷Õßͨ¹ýÖ÷ÌâΪÐÞ¸ÄMicrosoft ExchangeÃÜÂëµÄÍøÂç´¹ÂÚÓʼþ£¬£¬£¬£¬ÊÔͼÇÔÈ¡¸ÃÒéÔ±¼°ÆäÊÂÇéÖ°Ô±µÄƾ֤¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74843/cyber-warfare-2/apt28-targeted-senator-mccaskill.html


¡¾¹¥»÷ÊÂÎñ¡¿°®´ïºÉÖÝ364ÃûÇô·¸ÈëÇÖJPayƽ°åµçÄÔ£¬£¬£¬£¬¹²ÇÔȡԼ22.5ÍòÃÀÔªµÄÊý×ÖÐÅ´û


ƾ֤ÃÀ¹ú°®´ïºÉÖÝÍâµØ¹ÙÔ±µÄ˵·¨£¬£¬£¬£¬¹²ÓÐ364ÃûÇô·¸ÈëÇÖÁËÀÎÓüJPayƽ°åµçÄÔµÄϵͳ£¬£¬£¬£¬Îª¸÷×ÔµÄÕË»§³äÈëÁË´ó×ÚµÄÐÅÓöî¶È£¬£¬£¬£¬ºÏ¼Æ¿ìÒª22.5ÍòÃÀÔª¡£¡£¡£¡£¡£ÔÚÕâЩÇô·¸ÖУ¬£¬£¬£¬ÓÐ50ÈËΪ×Ô¼º³äÖµµÄ½ð¶îÁè¼Ý1000ÃÀÔª£¬£¬£¬£¬×î¸ßµÄһλ³äÈëÁË¿ìÒª1ÍòÃÀÔª¡£¡£¡£¡£¡£Çô·¸Ê¹ÓÃÕâЩÐÅÓöî¶ÈÀ´¹ºÖÃÓÎÏ·¡¢ÒôÀֺ͵ç×ÓÓÊÏäЧÀÍ¡£¡£¡£¡£¡£ÏÖÔڸù«Ë¾ÒÑÐÞ¸´ÁËÆ½°åµçÄÔÉϵÄÎó²î¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/364-idaho-inmates-hacked-their-prison-tablets-for-free-credits/