ĦÂå¸çÕþ¸®ÓÃNSO GroupÌØ¹¤Èí¼þ¼àÊӸùú¼ÇÕß;ºÚ¿ÍÓÃGoogle AnalyticsÈÆ¹ýCSPÇÔÊØÐÅÓÿ¨ÐÅÏ¢

Ðû²¼Ê±¼ä 2020-06-24

1.ĦÂå¸çÕþ¸®»òÔÚʹÓÃNSO GroupµÄÌØ¹¤Èí¼þ¼àÊӸùú¼ÇÕß


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


¹ú¼ÊÌØÉâ×éÖ¯ÌåÏÖ£¬£¬ £¬£¬£¬£¬£¬£¬ÆäÇå¾²ÍŶÓÔÚĦÂå¸ç¼ÇÕßµÄÊÖ»úÉÏ·¢Ã÷ÁËNSO Group¿ª·¢µÄÌØ¹¤Èí¼þ£¬£¬ £¬£¬£¬£¬£¬£¬´ËÊ»òÓë¸Ã¹úÕþ¸®ÓйØ¡£¡£¡£¡£¡£ ¡£¡£Ä¦Âå¸ç¼ÇÕßOmar RadiÔâµ½¼àÊÓÈí¼þµÄ¹¥»÷£¬£¬ £¬£¬£¬£¬£¬£¬¸ÃÈí¼þÄܹ»¸ú×ÙÎı¾¡¢µç»°¡¢µç×ÓÓʼþ¡¢ÉãÏñ»úµÈ¡£¡£¡£¡£¡£ ¡£¡£ºÚ¿Íͨ¹ýÍøÂç×¢Èë¹¥»÷ÒÔ×èµ²ºÍʹÓÃÄ¿µÄµÄ»¥ÁªÍøÁ÷Á¿£¬£¬ £¬£¬£¬£¬£¬£¬¸ÃÒªÁì²»ÐèÒªÓëÊܺ¦Õß½»»¥£¬£¬ £¬£¬£¬£¬£¬£¬Ö»Ð轫ĿµÄä¯ÀÀÖØÊÓзÓɵ½Ò»¸ö¶ñÒâÍøÕ¾¡£¡£¡£¡£¡£ ¡£¡£¹ú¼ÊÌØÉâ×éÖ¯ÌåÏÖ£¬£¬ £¬£¬£¬£¬£¬£¬¹¥»÷ÕßÉí·ÝËäδ»ñµÃÈ·ÈÏ£¬£¬ £¬£¬£¬£¬£¬£¬µ«ÖÖÖÖÖ¤¾ÝÅú×¢¼àÊÓÕßΪĦÂå¸çÕþ¸®£¬£¬ £¬£¬£¬£¬£¬£¬ÓÉÓÚNSO¼¯ÍÅÒ»ÔÙÌåÏÖ¸ÃÈí¼þ½ö±»³öÊÛ¸øÁËÕþ¸®¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.cyberscoop.com/nso-group-spyware-amnesty-international-omar-radi-morocco/


2.ºÚ¿ÍʹÓÃGoogle AnalyticsÆ½Ì¨ÈÆ¹ýCSPÇÔÊØÐÅÓÿ¨ÐÅÏ¢


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ºÚ¿ÍÕýÔÚʹÓÃGoogle AnalyticsÆ½Ì¨ÈÆ¹ýÄÚÈÝÇå¾²Õþ²ß£¨CSP£©£¬£¬ £¬£¬£¬£¬£¬£¬À´ÇÔÈ¡ÔÚÏßÊÐËÁÓû§Ìá½»µÄÐÅÓÿ¨ÐÅÏ¢¡£¡£¡£¡£¡£ ¡£¡£ÍøÂçÇå¾²¹«Ë¾SansecºÍPerimeterXµÄ×îÐÂÑо¿Åú×¢£¬£¬ £¬£¬£¬£¬£¬£¬ÔÚ°²ÅÅÁËGoogle AnalyticsµÄÍøÕ¾ÉÏ£¬£¬ £¬£¬£¬£¬£¬£¬Ê¹ÓÃCSP±ÜÃâÐÅÓÿ¨ÇÔÈ¡¹¥»÷ÒѾ­ºÁÎÞÒâÒå¡£¡£¡£¡£¡£ ¡£¡£ÓÉÓÚCSP½¹µã¹¦Ð§Öб£´æÎó²î£¬£¬ £¬£¬£¬£¬£¬£¬Ëü²»¿É×èÖ¹»ùÓÚ×¢ÈëµÄ¹¥»÷£¬£¬ £¬£¬£¬£¬£¬£¬Òò´ËºÚ¿Í¿ÉÒÔͨ¹ýÒ»¸öweb skimmer½ÅÔ­À´ÇÔÈ¡Êý¾Ý²¢½«ÆäÒÔ¼ÓÃܵÄÐÎʽ·¢Ëͻع¥»÷Õß¡£¡£¡£¡£¡£ ¡£¡£SansecµÄÍþвÑо¿Ð¡×é͸¶£¬£¬ £¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓÃGoogle AnalyticsÒѾ­ÀÖ³ÉÈÆ¹ýÊýÊ®¸öµç×ÓÉÌÎñÍøÕ¾ÉϵÄCSP¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hackers-use-google-analytics-to-steal-credit-cards-bypass-csp/


3.ºÚ¿ÍÔÚ°µÍø³öÊÛÊ¢ÐÐÓÎÏ·StalkerÖÐÁè¼Ý130ÍòÍæ¼ÒÐÅÏ¢


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Çå¾²Ñо¿Ö°Ô±·¢Ã÷£¬£¬ £¬£¬£¬£¬£¬£¬ºÚ¿ÍÔÚ°µÍø³öÊÛÁËÊ¢ÐÐÓÎÏ·StalkerÖÐÁè¼Ý130ÍòÍæ¼ÒÐÅÏ¢£¬£¬ £¬£¬£¬£¬£¬£¬Ð¹Â¶ÐÅÏ¢°üÀ¨Óû§Ãû¡¢ÃÜÂë¡¢µç×ÓÓʼþµØµã¡¢µç»°ºÅÂëºÍIPµØµã¡£¡£¡£¡£¡£ ¡£¡£´Ë´Î³öÊ۵Ĺ²ÓÐÁ½¸öÊý¾Ý¿â£¬£¬ £¬£¬£¬£¬£¬£¬»®·ÖΪ120ÍòÌõ¼Í¼ºÍ136000Ìõ¼Í¼¡£¡£¡£¡£¡£ ¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬ £¬£¬£¬£¬£¬£¬Óû§µÄÃÜÂëÊǾ­ÓÉMD5¼ÓÃܺͼÓÑδ¦Öóͷ£µÄ£¬£¬ £¬£¬£¬£¬£¬£¬ÕâËäÈ»ÊÇÇå¾²ÐԽϵ͵ÄËã·¨µ«±ÈÒÔ´¿Îı¾ÐÎʽÉúÑÄÃÜÂë¸üºÃ¡£¡£¡£¡£¡£ ¡£¡£ÏÖÔÚ£¬£¬ £¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÒÑÓëºÚ¿ÍÔÚÏßÊÐËÁµÄµç×ÓÉÌÎñƽ̨ÁªÏµ£¬£¬ £¬£¬£¬£¬£¬£¬ÏÖÔÚÒÑÍÑ»ú¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/stalker-online-breach-13-m-user/


4.°ÄÖÞACCCÐû²¼±¨¸æ£¬£¬ £¬£¬£¬£¬£¬£¬¸Ã¹úÈ¥ÄêÓÐÁè¼Ý2.5ÍòÆð´¹ÂÚ¹¥»÷ÊÂÎñ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


°Ä´óÀûÑÇACCCÏÂÊôµÄScamwatchÐû²¼ÁËScamwatch Targeting scams£º×Ô2009ÄêÒÔÀ´¶Ôڲƭ»î¶¯µÄ»ØÊ×±¨¸æ£¬£¬ £¬£¬£¬£¬£¬£¬Í³¼Æ2019Äê¸Ã¹ú±¬·¢ÁËÁè¼Ý2.5ÍòÆð´¹ÂÚ¹¥»÷ÊÂÎñ¡£¡£¡£¡£¡£ ¡£¡£ÔÚ2019Ä꣬£¬ £¬£¬£¬£¬£¬£¬ÍøÂç´¹ÂÚÊÇ×î³£¼ûµÄڲƭÊֶΣ¬£¬ £¬£¬£¬£¬£¬£¬×ܹ²±¨¸æÁËÓÐ25168ÆðÊÂÎñ£¬£¬ £¬£¬£¬£¬£¬£¬ÔÚËù±¨¸æÖÐÓÐ513ÆðÔì³ÉÁ˲ÆÎñËðʧ£¬£¬ £¬£¬£¬£¬£¬£¬×ܼÆ150Íò°ÄÔª¡£¡£¡£¡£¡£ ¡£¡£¶øÔì³ÉËðʧ×î´óµÄ¹¥»÷ÀàÐÍΪÆóÒµµç×ÓÓʼþй¶£¨BEC£©Õ©Æ­£¬£¬ £¬£¬£¬£¬£¬£¬Ëðʧ1.32ÒÚ°ÄÔª£¬£¬ £¬£¬£¬£¬£¬£¬Æä´ÎΪÔì³ÉÁË1.26ÒÚ°ÄÔªËðʧµÄͶ×ÊÕ©Æ­ºÍ8300Íò°ÄÔªµÄÔ¼»áÕ©Æ­¡£¡£¡£¡£¡£ ¡£¡£¶øÕ©Æ­µÄÖ÷Ҫ;¾¶ÒÀȻΪµç»°£¨69522Æð£©£¬£¬ £¬£¬£¬£¬£¬£¬Æä´ÎÊǵç×ÓÓʼþ£¨40277Æð£©£¬£¬ £¬£¬£¬£¬£¬£¬¶ÌÐÅ£¨27894Æð£©ºÍ»¥ÁªÍø£¨11776Æð£©¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/australians-reported-25000-phishing-scams-to-the-accc-last-year/


5.Apache Dubbo·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1948£©


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾

2020Äê6ÔÂ23ÈÕApache¹Ù·½Ðû²¼Í¨¸æ£¬£¬ £¬£¬£¬£¬£¬£¬ÐÞ¸´ÁËÒ»¸öApache DubboÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1948£©¡£¡£¡£¡£¡£ ¡£¡£¸ÃÎó²îÔ´ÓÚApache Dubbo Provider±£´æ·´ÐòÁл¯Îó²î£¬£¬ £¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ·¢ËÍ´øÓÐÎÞ·¨Ê¶±ðµÄЧÀÍÃû»òÒªÁìÃû¼°Ä³Ð©¶ñÒâ²ÎÊý¸ºÔصÄRPCÇëÇ󣬣¬ £¬£¬£¬£¬£¬£¬µ±¶ñÒâ²ÎÊý±»·´ÐòÁл¯Ê±½«µ¼Ö¶ñÒâ´úÂëÖ´ÐС£¡£¡£¡£¡£ ¡£¡£¸ÃÎó²îÓ°ÏìÁËËùÓÐʹÓÃ2.7.6»ò¸üµÍ°æ±¾µÄDubboÓû§¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://github.com/apache/dubbo/releases/tag/dubbo-2.7.7


6.ÀÕË÷Èí¼þREvilɨÃèÊܺ¦ÕßϵͳÖеÄPoSÒÔѰеÄ׬Ǯ·½·¨


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


SymantecÍþвÇ鱨ÍŶӵÄÑо¿Ö°Ô±·¢Ã÷ºÚ¿ÍÔÚеÄÀÕË÷»î¶¯ÖÐʹÓÃREvilɨÃèÊܺ¦ÕßϵͳÖеÄÐÅÓÿ¨»òPoint of Sale£¨PoS£©Êý¾Ý£¬£¬ £¬£¬£¬£¬£¬£¬»òÔÚѰÕÒеÄ׬Ǯ·½·¨¡£¡£¡£¡£¡£ ¡£¡£Ç鱨ÆÊÎöʦJon DiMaggioÌåÏÖ£¬£¬ £¬£¬£¬£¬£¬£¬ÈôÊÇËûÃÇɨÃèµ½ÁËPoSϵͳ£¬£¬ £¬£¬£¬£¬£¬£¬±ã¿ÉÒÔ×°ÖÃPOS¶ñÒâɨÃèÈí¼þÇÔÊØÐÅÓÿ¨ÏêϸÐÅÏ¢¡£¡£¡£¡£¡£ ¡£¡£SymantecÆÊÎöµÀ£¬£¬ £¬£¬£¬£¬£¬£¬²¿·ÖÊܺ¦¹«Ë¾¹æÄ£½ÏС£¬£¬ £¬£¬£¬£¬£¬£¬ÎÞ·¨Ö§¸¶Êê½ð£¬£¬ £¬£¬£¬£¬£¬£¬Òò´Ë¸ÃºÚ¿ÍÍÅ»ïɨÃèPoSϵͳÖеÄÐÅÓÿ¨Êý¾Ý¿ÉÄÜÊÇΪÁËÊý¾Ý͵ÇÔ£¬£¬ £¬£¬£¬£¬£¬£¬»òÖ»ÊÇΪÁËʹ¼ÓÃܵÄÊý¾Ý¸üÓмÛÖµÒÔÒªÇóÊܺ¦ÕßÖ§¸¶Êê½ð¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/revil-ransomware-scans-victims-network-for-point-of-sale-systems/