TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÊý¾Ýй¶£»£»£»£» £»£»Î¯ÄÚÈðÀ­´ó¹æÄ£Í£µçµ¼Ö²¿·ÖµØÇø»¥ÁªÍøÖÐÖ¹

Ðû²¼Ê±¼ä 2020-03-03

1.°Ä´óÀûÑÇÐÅϢרԱ°ì¹«ÊÒÐû²¼Êý¾Ýй¶֪ͨ£¨NDB£©±¨¸æ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


ƾ֤°Ä´óÀûÑÇÐÅϢרԱ°ì¹«ÊÒ£¨OAIC£©µÄÊý¾Ýй¶֪ͨ£¨NDB£©±¨¸æ£¬£¬£¬£¬£¬ÔÚ2019Äê7ÔÂ1ÈÕÖÁ2019Äê12ÔÂ31ÈÕʱ´ú±¨¸æµÄÊý¾Ýй¶ÊÂÎñÊýĿΪ537Æð£¬£¬£¬£¬£¬±ÈÉϰëÄêµÄ460ÆðÔöÌíÁË19%¡£ ¡£¡£¡£¶ñÒâ¹¥»÷£¨°üÀ¨ÍøÂçÊÂÎñ£©ÈÔÈ»ÊÇÔì³ÉÊý¾Ýй¶µÄÖ÷ÒªÔµ¹ÊÔ­ÓÉ£¬£¬£¬£¬£¬Õ¼ËùÓÐÊÂÎñµÄ64%¡£ ¡£¡£¡£ÓÉÈËΪ¹ýʧÒýÆðµÄÊý¾Ýй¶ռËùÓÐй¶µÄ32£¥£¬£¬£¬£¬£¬µÍÓÚÉÏÒ»¸ö±¨¸æÆÚµÄ34£¥¡£ ¡£¡£¡£Ò½ÁÆÐÐÒµÔٴγÉΪ±¬·¢×ß©×î¶àµÄÐÐÒµ£¬£¬£¬£¬£¬Õ¼ËùÓÐÊÂÎñµÄ22%£¬£¬£¬£¬£¬Æä´ÎÊǽðÈÚ£¬£¬£¬£¬£¬Õ¼14%¡£ ¡£¡£¡£ÁªÏµ·½·¨ÈÔÈ»ÊÇÊý¾Ýй¶ÖÐ×î³£¼ûµÄСÎÒ˽¼ÒÐÅÏ¢ÀàÐÍ¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.oaic.gov.au/privacy/notifiable-data-breaches/notifiable-data-breaches-statistics/notifiable-data-breaches-report-july-december-2019/


2.TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÈ·ÈÏÔâºÚ¿Í¹¥»÷ÇÒÊý¾Ýй¶


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÈ·ÈÏÔâÓöÊý¾Ýй¶ÊÂÎñ£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÊÇÒ»¼ÒרÃÅΪ̫¿ÕºÍ¹ú·À³Ð°üÉÌÉè¼ÆÏ¸ÃÜÁã¼þµÄÖÆÔìÉÌ¡£ ¡£¡£¡£ÔÚÒ»·Ý¼ò¶ÌµÄÉùÃ÷ÖУ¬£¬£¬£¬£¬¸Ã¹«Ë¾È·ÈÏÆä½üÆÚ³ÉΪ¡°ÍøÂçÇå¾²·¸·¨ÊÂÎñ£¨°üÀ¨»á¼ûºÍ͵ÇÔÊý¾Ý£©µÄÄ¿µÄ¡±¡£ ¡£¡£¡£¸Ã¹«Ë¾½²»°ÈËÌåÏÖ½«¡°¼ÌÐø¶Ô¸Ã¹¥»÷¾ÙÐÐÖÜÈ«ÊӲ죬£¬£¬£¬£¬²¢ÇÒÓªÒµÔËÐÐÕý³£¡±¡£ ¡£¡£¡£TechCrunchÑо¿Ö°Ô±³ÆÕâ´Î¹¥»÷ºÜÓпÉÄÜÊÇÓÉDoppelPaymerÀÕË÷Èí¼þÒýÆðµÄ¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://techcrunch.com/2020/03/01/visser-breach/


3.Ó¢¹úWi-FiÌṩÉÌC3UKÔÆÊý¾Ý¿âй¶1ÍòÃûÌú·Âÿͼͼ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


C3UKÔÚÓ¢¹ú¸÷µØµÄ»ð³µÕ¾ÎªÂÿÍÌṩÃâ·ÑµÄWi-fi¡£ ¡£¡£¡£¸Ã¹«Ë¾ÈÏ¿ÉδÄܶ԰üÀ¨Óû§ÐÅÏ¢µÄÊý¾Ý¿âÌṩ±£»£»£»£» £»£»¤£¬£¬£¬£¬£¬µ¼ÖÂ1ÍòÃûÓ¢¹úÌú·Âÿ͵ÄСÎÒ˽¼ÒÊý¾Ýй¶¡£ ¡£¡£¡£Çå¾²Ñо¿Ô±Ò®ÀûÃ×ÑÇ¡¤¸£ÀÕ£¨Jeremiah Fowler£©·¢Ã÷¸Ã¹«Ë¾µÄAWSÊý¾Ý¿â²»ÊÜÃÜÂë±£»£»£»£» £»£»¤£¬£¬£¬£¬£¬Òò´ËÈκÎÈ˶¼¿ÉÒÔÉó²éÓû§Êý¾Ý¡£ ¡£¡£¡£¸ÃÊý¾Ý¿âÊÇÔÚ2019Äê11ÔÂ28ÈÕÖÁ2020Äê2ÔÂ12ÈÕÖ®¼ä½¨ÉèµÄ£¬£¬£¬£¬£¬ÆäÖаüÀ¨1.46ÒÚÌõ¼Í¼£¬£¬£¬£¬£¬ÀýÈçÂÿ͵ijöÉúÈÕÆÚ¡¢µç×ÓÓʼþµØµãºÍÂÃÐÐÍýÏë¡£ ¡£¡£¡£ÊÜÓ°ÏìµÄÂÿͰüÀ¨ÔÚHarlow Mill¡¢Chelmsford¡¢Colchester¡¢Waltham Cross¡¢Burnham¡¢NorwichºÍLondon BridgeʹÓÃÃâ·ÑWi-FiЧÀ͵ÄÂÿ͡£ ¡£¡£¡£¸Ã¹«Ë¾³ÆÊý¾Ý¿âûÓаüÀ¨Óû§µÄÃÜÂë»ò²ÆÎñÐÅÏ¢µÈÒªº¦Êý¾Ý¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/data-of-10k-rail-passengers/


4.ίÄÚÈðÀ­´ó¹æÄ£Í£µçµ¼Ö²¿·ÖµØÇø»¥ÁªÍøÖÐÖ¹


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


3ÔÂ1ÈÕίÄÚÈðÀ­ÔâÓö´ó¹æÄ£Í£µçÊÂÎñ£¬£¬£¬£¬£¬µ¼Ö¸ùúÔ¼35£¥µÄµçÐÅ»ù´¡Éèʩ̱»¾¡£ ¡£¡£¡£»£»£»£» £»£»¥ÁªÍøÊÓ²ìÕ¾NetBlocks±¨¸æ³Æ£¬£¬£¬£¬£¬Í£µçºÍ¹©Ó¦²¨¶¯µ¼Ö¸ùúºÜ´óÒ»²¿·Ö»¥ÁªÍøÅþÁ¬ÖÐÖ¹¡£ ¡£¡£¡£Í£Ó°Ï·ÏìÁËίÄÚÈðÀ­µÄ¶à¸öÖÝ£¬£¬£¬£¬£¬Òƶ¯ÍøÂçÒ²²¿·ÖÊܵ½ÊÂÎñµÄÓ°Ï죬£¬£¬£¬£¬µ«¸Ã×éÖ¯±¨¸æ³Æ²¨¶¯ºóËüÃÇÒÑѸËÙ»Ö¸´¡£ ¡£¡£¡£Õâ²¢²»ÊÇίÄÚÈðÀ­µçÍøµÚÒ»´ÎÊܵ½´ó¹æÄ£Í£µçµÄÓ°Ï죬£¬£¬£¬£¬2019Äê3Ô¸ùú¾ÍÔøÔâÓö´ó¹æÄ£Í£µçÊÂÎñ£¬£¬£¬£¬£¬ÆäʱίÄÚÈðÀ­Í¨Ñ¶ºÍÐÅÏ¢´ó³¼ºÀ¶ûºÕ¡¤ÂÞµÂÀï¸ñ˹£¨Jorge Rodriguez£©Ö¸ÔðÍ£µçÊÇÓÉÃÀ¹ú¶Ô¹ÅÀïË®Á¦·¢µç³§·¢¶¯ÍøÂç¹¥»÷µ¼Öµġ£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/98771/security/venezuela-power-outage.html


5.Ñо¿Ö°Ô±ÑÝʾͨ¹ý³¬Éù²¨ÈëÇÖÆ»¹ûºÍ¹È¸èÓïÒôÖúÊÖ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


Ñо¿Ö°Ô±·¢Ã÷Ò»ÖÖÐµĹ¥»÷ÒªÁ죬£¬£¬£¬£¬¿ÉÒÔͨ¹ýÔÚ¹ÌÌåÖÊÁÏÖÐÈö²¥³¬Éù²¨À´Ãé×¼ÓïÒôÖúÊÖ×°±¸£¬£¬£¬£¬£¬´Ó¶øÔÚÊܺ¦Õß²»ÖªÇéµÄÇéÐÎÏÂÓëÓïÒô×°±¸¾ÙÐн»»¥ºÍʵÑéÈëÇÖ¡£ ¡£¡£¡£ÕâÖÖ¹¥»÷±»³ÆÎª¡°SurferingAttack¡±£¬£¬£¬£¬£¬ËüʹÓÃÁ˹ÌÌåÖÊÁÏ£¨ÀýÈç×À×Ó£©ÖÐÉùÒô´«ÊäµÄÆæÒìÌØÕ÷£¬£¬£¬£¬£¬ÒÔ¡°Ê¹¹¥»÷Õß¿ÉÒÔÓëÓïÒô×°±¸Ö®¼ä¾ÙÐиü³¤¾àÀëµÄ¶à´Î½»»¥£¬£¬£¬£¬£¬¶øÎÞÐè·ºÆðÔÚÊÓÏßÄÚ¡£ ¡£¡£¡£¡±Ñо¿Ö°Ô±ÔÚÂÛÎÄÖиÅÊöÁ˹¥»÷Õß¿ÉÄÜʹÓÃÕâÖÖ¹¥»÷Ð®ÖÆSMS¶ÌÐÅË«ÒòËØÉí·ÝÑéÖ¤Â룬£¬£¬£¬£¬ÉõÖÁ²¦´òڲƭÐԵ绰µÄÐÐΪ¡£ ¡£¡£¡£Ñо¿Ö°Ô±²âÊÔÁË17ÖÖ×°±¸£¬£¬£¬£¬£¬ÆäÖÐ13̨װ±¸ÔËÐеÄÊÇ´øÓÐGoogle AssistantµÄAndroidϵͳ£¬£¬£¬£¬£¬ËĄ̈ÊÇ´øÓÐApple SiriµÄiPhone£¬£¬£¬£¬£¬Ñо¿Ö°Ô±Äܹ»¿ØÖÆ15̨װ±¸£¬£¬£¬£¬£¬µ«¸ÃÊÖÒÕ¶ÔÈýÐǵÄGalaxy Note 10+ºÍ»ªÎªµÄMate 9ÎÞЧ¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://nakedsecurity.sophos.com/2020/03/02/siri-and-google-assistant-hacked-in-new-ultrasonic-attack/


6.Õë¶Ôº«¹úµÄ¡°Blue Esteeate Part5¡± APT¹¥»÷ÆÊÎö±¨¸æ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


ƾ֤East SecurityµÄÒ»·Ý±¨¸æ£¬£¬£¬£¬£¬2ÔÂ28ÈÕ·ºÆðÁËʹÓÃαװ³ÉHangulÎĵµ£¨ºó׺ÃûΪhwp£¬£¬£¬£¬£¬º«¹úÈËʹÓõÄÒ»ÖÖÎĵµÃûÌ㩼òÀúµÄscrÎļþ¾ÙÐеÄAPT¹¥»÷¡£ ¡£¡£¡£¸ÃAPT¹¥»÷ÖÐʹÓõĶñÒâÎļþ±»¼ì²âΪTrojan.Agent.115608C/Trojan.Agent.Detplock¡£ ¡£¡£¡£EastÈ·Èϸù¥»÷Ϊ·¸·¨ÍÅ»ïKim Soo-kiÌᳫµÄAPT¹¥»÷-¼´Blue House Green Support/Sangchunjae Estimate APT¹¥»÷-µÄµÚ5¸ö±äÌå¡£ ¡£¡£¡£¸Ã±äÌåÓÚ2ÔÂ27ÈÕ±àÒ룬£¬£¬£¬£¬ÊÇÆÁÄ»±£»£»£»£» £»£»¤³ÌÐòÀàÐ͵ĿÉÖ´ÐÐÎļþ£¬£¬£¬£¬£¬¿ÉÄ£ÄâhwpÎĵµ£¬£¬£¬£¬£¬ÀýÈçÂÄÀú±íform.hwp.scr¡£ ¡£¡£¡£ÈôÊÇÓû§ÊµÑ齫Îļþ×÷ΪhwpÎĵµÉó²é£¬£¬£¬£¬£¬Ôò¸Ã¶ñÒâÈí¼þ½«ÔËÐУ¬£¬£¬£¬£¬ÊÍ·ÅÏÖʵÓÐÓÃÔØºÉ²¢×ÔÐÐɾ³ý£¨»Ö¸´form.hwp.scr£©£¬£¬£¬£¬£¬ÒÔ×èÖ¹ÒýÆðÓû§µÄÏÓÒÉ¡£ ¡£¡£¡£¸Ã¶ñÒâÈí¼þ½«ÍøÂçºÍÉÏ´«Êܺ¦ÕßµÄÐÅÏ¢£¬£¬£¬£¬£¬²¢ÆÚ´ý¹¥»÷ÕߵįäËûÏÂÁî¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://blog.alyac.co.kr/2784