¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20190301
Ðû²¼Ê±¼ä 2019-03-01
ÔÎÄÁ´½Ó£º
https://cyware.com/news/google-chrome-zero-day-vulnerability-could-allow-attackers-to-collect-user-information-via-pdf-files-01b8df3d2¡¢CoinomiÇ®°üÃ÷ÎÄ´«ÊäÓû§ÃÜÂ룬µ¼ÖÂÔ¼7ÍòÃÀÔª±»ÇÔ
ÔÎÄÁ´½Ó£º
https://cyware.com/news/cryptocurrency-wallet-coinomi-sends-users-passwords-to-googles-spellchecker-in-plain-text-3b3b794c3¡¢Ë¼¿ÆTalosÖÒÑÔÕë¶ÔElasticsearch·þÎñÆ÷µÄÐÂÒ»ÂÖ¹¥»÷Ô˶¯
˼¿ÆTalosÑо¿Ö°Ô±ÖÒÑԳƽüÆÚÕë¶ÔElasticsearch·þÎñÆ÷µÄ¹¥»÷Ô˶¯¼¤Ôö¡£ÕâЩ¹¥»÷Ô˶¯Ö÷ÒªÈö²¥¶ñÒâÈí¼þºÍÍÚ¿óÈí¼þ£¬¾Ý³ÆÓÐ6¸ö²î±ðµÄ·¸·¨ÍÅ»ï¼ÓÈëÆäÖС£ÆäÄ¿µÄÖ÷ÒªÊǰ汾1.4.2¼°¸üÔç°æ±¾µÄElasticsearch·þÎñÆ÷£¬²¢Ê¹Ó÷þÎñÆ÷ÖÐδ´ò²¹¶¡µÄ¾ÉÎó²î¾ÙÐÐÈö²¥¡£×î³£±»Ê¹ÓõÄÁ½¸öÎó²îÊÇCVE-2014-3120ºÍCVE-2015-1427£¬¿ÉÔÊÐíÖ´ÐÐí§ÒâshellÏÂÁî¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/targeted-malware-attacks-against-elasticsearch-clusters-surge/4¡¢Topps.comÔâFormjacking¹¥»÷£¬²¿·Ö¿Í»§µÄÖ§¸¶ÐÅϢй¶
ÌåÓý¹«Ë¾Topps³ÉΪFormjacking¹¥»÷µÄ×îÐÂÊܺ¦Õߣ¬Æ¾Ö¤¸Ã¹«Ë¾Ðû²¼µÄ֪ͨ£¬´Ë´Î¹¥»÷ÊÂÎñÓ°ÏìÁË2018Äê11ÔÂ19ÈÕÖÁ2019Äê1ÔÂ9ÈÕʱ´úÔÚÆä¹ÙÍøTopps.com϶©µ¥µÄ¿Í»§¡£±»ÇÔÈ¡µÄÐÅÏ¢°üÀ¨¿Í»§µÄÐÕÃû¡¢Óʼĵص㡢µç»°ºÅÂë¡¢µç×ÓÓʼþµØµãÒÔ¼°ÐÅÓÿ¨/½è¼Ç¿¨ºÅ¡¢µ½ÆÚÈÕÆÚºÍÇå¾²ÂëµÈÖ§¸¶ÐÅÏ¢¡£¸Ã¹«Ë¾ÌåÏÖʹÓÃPayPal¾ÙÐÐÖ§¸¶µÄ¿Í»§Î´ÊÜÓ°Ïì¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/sports-company-topps-becomes-the-latest-victim-of-formjacking-attack-3422027d5¡¢NEWSQUESTÍøÕ¾±£´æ×¢È룬¿Éµ¼ÖÂä¯ÀÀÆ÷±»Ð®ÖÆ

ƾ֤UKNIP247µÄ±¨µÀ£¬Ó¢¹úÐÂÎÅÍøÕ¾NewsquestÔâµ½ºÚ¿ÍÈëÇÖ£¬Æä¹ÙÍø±»×¢È벡¶¾£¬µ¼ÖÂÈκλá¼ûNewquestÍøÕ¾µÄÓû§µÄä¯ÀÀÆ÷±»Ð®ÖÆ¡£ÕâЩÓû§±»Öض¨Ïòµ½Ò»¸ö³é½±ÍøÕ¾£¬Ö»Óе±Óû§ÖØÆôÁËä¯ÀÀÆ÷»òÅÌËã»úÖ®ºó£¬²Å»ª»Ö¸´Æä»á¼û¡£
ÔÎÄÁ´½Ó£º
https://www.uknip.co.uk/2019/02/newsquest-websites-comprised-by-major-security-breach/6¡¢Ë¼¿ÆÐÞ¸´RV110WµÈ·ÓÉÆ÷×°±¸ÖеÄRCEÎó²î
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/cisco-fixes-critical-rce-vulnerability-in-rv110w-rv130w-and-rv215w-routers/ÉùÃ÷£º±¾×ÊѶÓÉ×ðÁú¿Ê±Î¬ËûÃüÇ徲С×é·ÒëºÍÕûÀí


¾©¹«Íø°²±¸11010802024551ºÅ