0PatchÐû²¼Windows DropboxÌáȨ0dayµÄÔÝʱÐÞ¸´²¹¶¡£¡£¡£¡£»£»£»£»£»£»Islands²ÍÌüÔâPoS¶ñÒâÈí¼þ¹¥»÷

Ðû²¼Ê±¼ä 2019-12-23


1.0PatchÐû²¼Windows DropboxÌáȨ0dayµÄÔÝʱÐÞ¸´²¹¶¡


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


Çå¾²Ñо¿Ô±DecoderºÍChris Danieli·¢Ã÷WindowsµÄDropboxÖб£´æÒ»¸öÁãÈÕÎó²î£¬£¬ £¬£¬£¬£¬£¬¹¥»÷Õß¿ÉʹÓøÃÎó²î»ñȡϵͳSYSTEMȨÏÞ¡£¡£¡£¡£DropboxÉÐδÐû²¼ÐÞ²¹¸ÃÎó²îµÄа汾£¬£¬ £¬£¬£¬£¬£¬µ«Óû§¿Éͨ¹ý0PatchÓ¦ÓÃÔÝʱµÄ½â¾ö¼Æ»®¡£¡£¡£¡£DecoderÔÚһƪ²©¿ÍÎÄÕÂÖÐÐû²¼ÁËÏà¹ØÏêϸÐÅÏ¢£¬£¬ £¬£¬£¬£¬£¬µ«Î´ÌṩʹÓôúÂë¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏÖ×îÐÂÈí¼þ°æ±¾87.4.138Êܵ½¸ÃÎó²îµÄÓ°Ïì¡£¡£¡£¡£


  Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/dropbox-zero-day-vulnerability-gets-temporary-fix/


2.MalwarebytesÐÞ¸´AdwCleanerÖеÄDLLÐ®ÖÆÎó²î


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


MalwarebytesÐû²¼AdwCleaner 8.0.1£¬£¬ £¬£¬£¬£¬£¬¸Ãа汾³ýÁ˶ÔɨÃèÒýÇæ¾ÙÐÐÁËÖÖÖÖË¢ÐÂÖ®Í⣬£¬ £¬£¬£¬£¬£¬»¹ÐÞ¸´ÁËÒ»¸öDLLÐ®ÖÆÎó²î¡£¡£¡£¡£¸ÃÎó²îÓÉÇå¾²Ñо¿Ô±G¨¹nterBorn·¢Ã÷£¬£¬ £¬£¬£¬£¬£¬ËûÓÚ2019Äê12ÔÂ10ÈÕÏòMalwarebytes±¨¸æÁË´ËÎó²î¡£¡£¡£¡£¼òÆÓÀ´Ëµ£¬£¬ £¬£¬£¬£¬£¬AdwCleanerÆô¶¯Ê±½«ÊµÑé¼ÓÔØËùÐèµÄDLL£¬£¬ £¬£¬£¬£¬£¬Õâ¿ÉÄܰüÀ¨¹¥»÷Õß½¨ÉèµÄͬÃû¶ñÒâDLL£¬£¬ £¬£¬£¬£¬£¬ÓÉÓÚAdwCleaner¾ßÓÐÖÎÀíÔ±ÌØÈ¨£¬£¬ £¬£¬£¬£¬£¬ÕâÒâζ×ŶñÒâDLLÒ²½«ÒÔÌáÉýµÄÌØÈ¨Ö´ÐС£¡£¡£¡£¸ÃÎó²îÓ°ÏìÁËAdwCleaner 8.0.1֮ǰµÄ°æ±¾¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/software/adwcleaner-801-fixes-dll-hijacking-vulnerability/


3.SonyLIVÐÞ¸´Òƶ¯APP¼°ÍøÕ¾APIÖеÄÐÅϢй¶Îó²î


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


SonyLIVÐÞ¸´Ò»¸ö¿ÉÄÜʹ¹¥»÷Õß»ñÈ¡Óû§Ãô¸ÐÐÅÏ¢µÄÇå¾²Îó²î¡£¡£¡£¡£¸ÃÎó²î±£´æÓÚSony Pictures Networks OTTƽ̨µÄAPIÖУ¬£¬ £¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔʹÓÃÒÑ×¢²áÓû§µÄµç×ÓÓÊÏ䵨µãÀ´»ñȡСÎÒ˽¼Ò×ÊÁÏͼƬ¡¢ÐÕÃû¡¢ÉúÈպ͵绰ºÅÂëµÈÐÅÏ¢¡£¡£¡£¡£ÓÉÓÚ¸ÃÎó²î±£´æÓڵǼ¹¦Ð§µÄAPIÖУ¬£¬ £¬£¬£¬£¬£¬Òò´ËËüÓ°ÏìÁËSonyLivµÄÒÆ¶¯Ó¦ÓóÌÐò¼°ÆäÍøÕ¾¡£¡£¡£¡£SonyLIVÔÚGoogle PlayÉϵÄÏÂÔØÁ¿Áè¼Ý1ÒÚ¡£¡£¡£¡£ÔÚ½Óµ½±¨¸æºó£¬£¬ £¬£¬£¬£¬£¬SonyLIVÍŶÓÒѾ­ÐÞ¸´Á˸ÃÎó²î¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://gadgets.ndtv.com/apps/news/sonyliv-api-flaw-fix-user-information-attack-app-update-2151958


4.Âåɼí¶Ò½ÁƱ£½¡¹«Ë¾Lyfebinй¶Êýǧ¸öÒ½ÁÆÓ°ÏñÎļþ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


Ò½ÁƱ£½¡Ê×´´¹«Ë¾Lyfebinй¶Êýǧ¸öÒ½ÁÆÓ°ÏñÎļþ£¬£¬ £¬£¬£¬£¬£¬°üÀ¨XÉäÏß¡¢MRIɨÃèºÍ³¬Éù²¨¼ì²éͼÏñµÈ¡£¡£¡£¡£Õâ¼ÒλÓÚÂåÉ¼í¶µÄÒ½Áƹ«Ë¾ÔÊÐíÒ½ÉúºÍÒ½ÎñְԱͨ¹ýÆäÍøÕ¾´æ´¢Ò½ÁÆÓ°Ïñ£¬£¬ £¬£¬£¬£¬£¬´Ó¶øÊ¹»¼ÕߺÍÒ½Éú¿ÉÒÔ´ÓÈκεط½»á¼ûËüÃÇ¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷ÕâЩÎļþ±»´æ´¢ÔÚûÓÐÃÜÂë±£»£»£»£»£»£»¤µÄAWS´æ´¢Í°ÖУ¬£¬ £¬£¬£¬£¬£¬ÔÊÐí»¥ÁªÍøÉϵÄÈκÎÈ˾ÙÐлá¼û¡£¡£¡£¡£ÎļþµÄÈÕÆÚ½éÓÚ2018Äê9ÔÂÖÁ2019Äê10ÔÂÖ®¼ä¡£¡£¡£¡£ÔÚ½Óµ½±¨¸æºó£¬£¬ £¬£¬£¬£¬£¬Lyfebin¶Ô¸ÃÊý¾Ý¿â¾ÙÐÐÁ˱£»£»£»£»£»£»¤£¬£¬ £¬£¬£¬£¬£¬µ«¾Ü¾øÍ¸Â¶ÊÜÓ°ÏìµÄ»¼ÕßÊýÄ¿¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://techcrunch.com/2019/12/20/lyfebin-medical-imagees-exposed/


5.Islands²ÍÌüÔâPoS¶ñÒâÈí¼þ¹¥»÷£¬£¬ £¬£¬£¬£¬£¬¿Í»§ÐÅÓÿ¨Êý¾Ý±»µÁ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


ƾ֤Islands²ÍÌüÐû²¼µÄÊý¾Ýй¶֪ͨ£¬£¬ £¬£¬£¬£¬£¬Æä¶à¸ö²ÍÌüÔâµ½PoS¶ñÒâÈí¼þ¹¥»÷£¬£¬ £¬£¬£¬£¬£¬²¿·Ö¿Í»§µÄÐÅÓÿ¨ÐÅÏ¢±»µÁ¡£¡£¡£¡£¸ÃÊÂÎñÓ°ÏìÁË2019Äê2ÔÂ13ÈÕÖÁ2019Äê9ÔÂ27ÈÕÖ®¼äÔÚ60¼Ò×Ó²ÍÌü¾Í²ÍµÄ¿Í»§£¬£¬ £¬£¬£¬£¬£¬ÆäÖдó´ó¶¼ÊÜÓ°ÏìµÄ²ÍÌüλÓÚ¼ÓÀû¸£ÄáÑÇÖÝ£¬£¬ £¬£¬£¬£¬£¬Æä´ÎÊÇÑÇÀûÉ£ÄÇÖÝ¡¢ÏÄÍþÒĺÍÄÚ»ª´ïÖÝ¡£¡£¡£¡£±»µÁµÄÐÅÏ¢¿ÉÄܰüÀ¨³Ö¿¨ÈËÐÕÃû¡¢¿¨ºÅ¡¢ÓÐÓÃÆÚºÍÄÚ²¿ÑéÖ¤Âë¡£¡£¡£¡£IslandsÒѾ­ÖÕÖ¹ÁË¶ÔÆäÖ§¸¶ÍøÂçµÄδÊÚȨ»á¼û£¬£¬ £¬£¬£¬£¬£¬²¢Ð­ÖúÖ´·¨²¿·Ö¾ÙÐÐÊӲ졣¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.islandsrestaurants.com/paymentcardnotification


6.Ñо¿Ö°Ô±·¢Ã÷ÒÔGreta ThunbergΪÖ÷ÌâµÄEmotet¹¥»÷»î¶¯


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


ProofpointÑо¿ÍŶӷ¢Ã÷Ò»¸öʹÓÃÈðµäÌìÆø×ª±ä»î¶¯¼ÒGreta Thunberg×÷ΪÓÕ¶üµÄEmotetÀ¬»øÓʼþ»î¶¯¡£¡£¡£¡£¸ÃÀ¬»øÓʼþµÄÖ÷ÌâÁ¬ÏµÁË4¸öÒªËØ£¬£¬ £¬£¬£¬£¬£¬°üÀ¨ÖøÃûµÄÈðµä»·±£Ö÷ÒåÕßGreta Thunberg¡¢Ê¥µ®¼ÙÆÚ¡¢»·±£ÒâʶÓëÐж¯Ö÷ÒåÒÔ¼°¡¶Ê±´ú¡·ÔÓÖ¾×î½ü½«ThunbergÆÀѡΪ¡°Äê¶ÈÈËÎ¡£¡£¡£¡£ÕâÊÇÒ»¸öÈ«ÇòÐÔµÄÀ¬»øÓʼþ»î¶¯£¬£¬ £¬£¬£¬£¬£¬Ñо¿Ö°Ô±ÊӲ쵽ÓÃÓÚ·¢ËÍÀ¬»øÓʼþµÄÓÊÏ䵨µãΪ.com¡¢.eduÒÔ¼°°Ä´óÀûÑÇ¡¢°ÂµØÀû¡¢¼ÓÄôó¡¢Å·ÃË¡¢µÂ¹ú¡¢Òâ´óÀû¡¢ÈÕ±¾¡¢ÐÂ¼ÓÆÂ¡¢ÈðÊ¿¡¢°¢ÁªÇõºÍÓ¢¹úÓòÃû×îºóµÄÓÊÏä¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/95505/malware/greta-thunberg-emotet-spam.html