¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180821

Ðû²¼Ê±¼ä 2018-08-21

¡¾ÍþвÇ鱨¡¿Ñо¿Åú×¢GDPRʵÑéºóÅ·ÃËÐÂÎÅÍøÕ¾ÉϵĵÚÈý·½cookieÊýĿϽµÁË22%


ƾ֤ţ½ò´óѧReuters InstituteµÄÒ»·Ý±¨¸æ £¬Å·ÃËÐÂÎÅÍøÕ¾ÉϵĵÚÈý·½cookieµÄÊýÄ¿ÔÚGDPRʵÑéºóϽµÁË22%¡£¸Ã±¨¸æ»®·ÖÆÊÎöÁË2018Äê4ÔÂÒÔ¼°7ÔµÄÊý¾Ý £¬º­¸ÇÁË·ÒÀ¼¡¢·¨¹ú¡¢µÂ¹ú¡¢Òâ´óÀû¡¢²¨À¼¡¢Î÷°àÑÀºÍÓ¢¹úÆß¸ö¹ú¼ÒµÄ200¸öÐÂÎÅÍøÕ¾¡£Ï½µ·ù¶È×î´óµÄÊÇÓ¢¹ú £¬ÆäÐÂÎÅÍøÕ¾Ê¹Óõĸú×Ùcookie±ÈGDPRʵÑéǰïÔÌ­ÁË45%¡£Ï½µ·ù¶È×îСµÄÊǵ¹ú £¬Îª6%¡£¶ø²¨À¼ÔòÊÇΨÖðÒ»¸öcookieÊýÄ¿ÔöÌíµÄ¹ú¼Ò £¬ÔöÌí·ù¶ÈΪ20%¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/technology/number-of-third-party-cookies-on-eu-news-sites-dropped-by-22-percent-post-gdpr/


¡¾ÍþвÇ鱨¡¿Ñо¿Ö°Ô±³ÆJavaScript webÓ¦Óü°web·þÎñÆ÷Ò×ÊÜReDoS¹¥»÷µÄÓ°Ïì


Ñо¿Ö°Ô±ÖÒÑÔ³ÆJavaScript WebÓ¦ÓúÍWeb·þÎñÆ÷Ò×ÊÜÕýÔò±í´ïʽ£¨regex£©¾Ü¾ø·þÎñ¹¥»÷£¨ReDoS£©µÄÓ°Ïì¡£Ñо¿Ö°Ô±ÔøÔÚ2012Äê̽ÌÖ¹ýReDoS¹¥»÷ £¬µ«ÆäʱJavaScriptºÍNode.jsÔÚWeb¿ª·¢ÁìÓò»¹Ã»ÓÐÐγɽñÌìÕâÑùµÄ¹æÄ£¡£2017ÄêµÄºóÐøÑо¿Åú×¢ £¬ÔÚNode.js¿âºÍÓ¦ÓÃÖз¢Ã÷µÄÎó²îÖÐReDoSÎó²îÕ¼5%¡£ÉÏÖܵ¹úµÄÁ½ÃûѧÕßÅû¶ÁËÔÚNode.jsÄ£¿éÖз¢Ã÷µÄ25¸öÐÂReDoSÎó²î £¬ÕâЩÎó²îÓ°ÏìÁËÔ¼340¸öÍøÕ¾¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/javascript-web-apps-and-servers-vulnerable-to-redos-attacks/


¡¾ÍþвÇ鱨¡¿Ñо¿ÍŶӷ¢Ã÷ʹÓÃEGGÎļþ·Ö·¢GandCrab v4.3µÄд¹ÂÚ¹¥»÷


Ç÷ÊÆ¿Æ¼¼Ñо¿ÍŶӷ¢Ã÷ʹÓÃEGG£¨.egg£©ÎļþÀ´·Ö·¢ÀÕË÷Èí¼þGandCrab v4.3µÄд¹ÂÚ¹¥»÷Ô˶¯¡£EGGÊÇÒ»ÖÖÀàËÆÓÚ.zipµÄѹËõÎļþÃûÌà £¬ÆäÔÚº«¹ú±»ÆÕ±éʹÓà £¬EGGÃûÌõÄÎļþÖ»ÄÜͨ¹ýALZipÈí¼þ¾ÙÐнâѹËõ¡£Ñо¿Ö°Ô±ÔÚ2018Äê8ÔÂ7ÈÕÊӲ쵽¸Ã´¹ÂÚÔ˶¯µÄÀ¬»øÓʼþ £¬¸Ã¹¥»÷Ö÷ÒªÕë¶Ôº«¹ú £¬Æä±³ºóµÄ¹¥»÷Õß¿ÉÄÜÊÇ·¸·¨ÍÅ»ïVenusLocker¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.trendmicro.com/vinfo/us/security/news/cybercrime-and-digital-threats/-egg-files-in-spam-delivers-gandcrab-v4-3-ransomware-to-south-korean-users


¡¾Êý¾Ýй¶¡¿Ö±²¥Æ½Ì¨TwitchÖеĴúÂëbugµ¼Ö²¿·ÖÓû§µÄÃô¸ÐÐÅϢй¶


TwitchÖÒÑÔÓû§³ÆÆäÒÑɾ³ýµÄij¸ö¹¦Ð§Öб£´æ´úÂëbug £¬¿Éµ¼Ö²¿·ÖÓû§µÄÃô¸ÐÐÅϢй¶¡£TwitchÊÇÑÇÂíÑ·×Ó¹«Ë¾Twitch InteractiveÆìϵÄÊÓÆµÖ±²¥Æ½Ì¨ £¬¸Ã·þÎñÓÚ2011ÄêÍÆ³ö £¬ÏÖÔÚÿÔµĻîÔ¾Óû§Áè¼Ý1.4ÒÚ¡£ÔÚ2018Äê5ÔÂ5ÈÕ £¬Twitchɾ³ýÁËÒ»¸öÃûΪMessagesµÄ¹¦Ð§ £¬²¢ÔÊÐíÓû§ÏÂÔØÀúÊ·ÐÂÎŵĴ浵¡£µ«ÓÉÓÚÌìÉúÑĵµÎļþµÄ´úÂëÖб£´æbug £¬²¿·ÖÓû§¿ÉÄÜÔÚÆä´æµµÎļþÖз¢Ã÷ÊôÓÚ±ðµÄÓû§µÄÀúÊ·ÐÂÎÅ¡£ÕâЩÐÂÎÅ¿ÉÄܰüÀ¨ºÜÊÇÃô¸ÐµÄÐÅÏ¢¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/twitch-glitch-exposed-some-users-private-messages/


¡¾¶ñÒâÈí¼þ¡¿Çå¾²Ñо¿ÍŶӷ¢Ã÷ÀÕË÷Èí¼þMatrixµÄбäÌåFOX


Çå¾²Ñо¿ÍŶÓMalwareHunterTeam·¢Ã÷ÀÕË÷Èí¼þMatrixµÄÒ»¸öбäÌå £¬¸Ã±äÌ彫.FOXÀ©Õ¹Ãû¸½¼Óµ½¼ÓÃܵÄÎļþºó¡£FOXͨ¹ýRDP·þÎñÊÖ¶¯¾ÙÐÐ×°Öà £¬ÆäʹÓÃSysinternals¹¤¾ßÀ´¹Ø±ÕÄ¿µÄÎļþµÄËùÓз­¿ª¾ä±úÒÔʵÑé¼ÓÃÜ £¬²¢ÓëÏÂÁîºÍ¿ØÖÆ·þÎñÆ÷£¨C2£©Í¨Ñ¶ÒÔ¾ÙÐÐ״̬¸üС£ÏÖÔÚ»¹Ã»ÓиñäÌåµÄ½âÃܹ¤¾ß¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-fox-ransomware-matrix-variant-tries-its-best-to-close-all-file-handles/


¡¾¹¥»÷ÊÂÎñ¡¿Î÷°àÑÀ²¿·ÖÕþ¸®ÍøÕ¾Ôâµ½ºÚ¿ÍÍÅ»ïAnonymousµÄ¹¥»÷


±¾ÖÜÒ»Î÷°àÑÀ²¿·ÖÕþ¸®ÍøÕ¾Ôâµ½ºÚ¿Í¹¥»÷ £¬°üÀ¨ÏÜ·¨·¨Ôº¡¢¾­¼ÃºÍÍâ½»²¿µÄ¹Ù·½ÍøÕ¾¶¼±»ÆÈÏÂÏß £¬Ö±ÖÁ»Æ»èÈÔÎÞ·¨»á¼û¡£ºÚ¿ÍÍÅ»ïAnonymousÉù³ÆÆä²ß»®Á˴˴ι¥»÷ £¬×÷Ϊ¶ÔÂíµÂÀï×èÖ¹¼ÓÌ©ÂÞÄáÑÇ×ÔÁ¦µÄ¿¹Òé¡£AnonymousÔøÔÚ2017Äê10ÔÂÌᳫ¹ýÕë¶ÔÏÜ·¨·¨Ôº¹ÙÍøµÄ¹¥»÷¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/anonymous-hackers-target-spain-sites-catalonia-protest