ÃÀ¹ÙÔ±ÈÏ¿ÉÏò¶íÂÞ˹µçÍøÖ²È벡¶¾ £»AMCAÊý¾Ýй¶²¨¼°ÈËÊýÁè¼Ý2000Íò £»WebLogic ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î

Ðû²¼Ê±¼ä 2019-06-17
1¡¢ÃÀ¹ÙÔ±ÈÏ¿ÉÏò¶íÂÞ˹µçÍøÖ²È벡¶¾£¬ÌØÀÊÆÕÅ­í¡ÃÀýÅѹú

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
ÍâµØÊ±¼ä6ÔÂ15ÈÕ£¬¡¶Å¦Ô¼Ê±±¨¡·Ô®ÒýÃÀ¹úÏÖÈκÍǰÈÎÕþ¸®¹ÙÔ±µÄ»°³Æ£¬ÃÀ¹úÕýÔÚ¼Ó´ó¶Ô¶íÂÞ˹µçÍøµÄÍøÂç¹¥»÷£¬¡°ÖÁÉÙ´Ó2012Äê×îÏÈ£¬ÃÀ¹úÒѽ«Õì²é̽²âÆ÷ÖÃÈë¶íÂÞ˹µçÍøµÄ¿ØÖÆÏµÍ³¡£¡±ÉÏÊö¹ÙÔ±ÌåÏÖ£¬ÏÖÔÚÃÀ¹úµÄÕ½ÂÔÒѾ­¸ü¶àµØ×ªÏò½ø¹¥£¬²¢ÒÔ¡°Ø¨¹ÅδÓС±µÄÉî¶È½«Ç±ÔڵĶñÒâÈí¼þ°²¶ÙÓÚ¶íÂÞ˹ϵͳÄÚ¡£ÃÀ¹úÕþÒª²¢Î´¾Í±¨µÀ×÷³ö»ØÓ¦£¬µ«¿´Í걨µÀµÄÌØÀÊÆÕÈ´Ê®·ÖÄÕÅ­£¬ËûËæ¼´ÔÚÍÆÌØÉÏ·¢ÍÆÎÄ»Øí¡£¬³Æ¡¶Å¦Ô¼Ê±±¨¡·µÄ±¨µÀÊǼٵÄ£¬²¢³ÆÆä×ö·¨¡°¼òÖ±ÊÇÅѹúÐо¶£¬ÊÇÈËÃñµÄ³ðÈË£¡¡±

Ô­ÎÄÁ´½Ó£ºhttps://www.nytimes.com/2019/06/15/us/politics/trump-cyber-russia-grid.html

2¡¢AMCAÊý¾Ýй¶²¨¼°ÈËÊýÁè¼Ý2000Íò£¬5¼Ò¹«Ë¾ÊÜÓ°Ïì

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
ÃÀ¹úÒ½ÁÆÆóÒµÕ˵¥·þÎñÉÌAMCAµÄÊý¾Ýй¶ÊÂÎñÏÖÒѲ¨¼°Áè¼Ý2000Íò»¼Õß¡£Ð¹Â¶µÄÊý¾ÝÊôÓÚÃÀ¹ú¸÷¸öÁÙ´²ºÍѪҺ¼ì²âʵÑéÊҵϼÕߣ¬°üÀ¨ËûÃǵÄÐÕÃû¡¢¼Òͥסַ¡¢µç»°ºÅÂë¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢Ö§¸¶¿¨ÏêϸÐÅÏ¢ºÍÒøÐÐÕË»§ÐÅÏ¢µÈ¡£ÊÜÓ°ÏìµÄʵÑéÊÒ°üÀ¨Quest Diagnostics£¨²¨¼°1190Íò»¼Õߣ©¡¢LabCorp£¨770Íò»¼Õߣ©¡¢BioReferenceʵÑéÊÒ£¨Opko Health×Ó¹«Ë¾£¬422600Ãû»¼Õߣ©¡¢Carecentrix£¨50ÍòÃû»¼Õߣ©ºÍSunrise Laboratories£¨Î´¹ûÕæ»¼ÕßÊý£©¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/amca-data-breach-has-now-gone-over-the-20-million-mark/

3¡¢ÃÀ¹úÈýËù´óѧһÁ¬Åû¶Êý¾Ýй¶ÊÂÎñ£¬²¨¼°Ñ§Éú¼°Ô±¹¤Òþ˽

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
ÃÀ¹úÈýËù´óѧÁ½ÌìÄÚÒ»Á¬Åû¶Êý¾Ýй¶ÊÂÎñ£¬²¨¼°Ñ§Éú¼°Ô±¹¤Òþ˽¡£ÕâÈýËù´óѧ»®·ÖÊǸñÀ×˹À¼´óѧ¡¢¶íÀÕ¸ÔÖÝÁ¢´óѧºÍÃÜËÕÀïÖÝÄϲ¿ÖÝÁ¢´óѧ¡£6ÔÂ14ÈÕ¸ñÀ×˹À¼´óѧÅû¶³Æ²¿·ÖÔ±¹¤ÓÊÏäÕË»§ÔâδÊÚȨ»á¼û£¬ÊÂÎñ±¬·¢ÔÚ3ÔÂ29ÈÕ¡¢4ÔºÍ5ÔÂ1ÈÕ¡£¶íÀÕ¸ÔÖÝÁ¢´óѧºÍÃÜËÕÀïÖÝÄϲ¿ÖÝÁ¢´óѧͬÑùÔâµ½´¹ÂÚÓʼþ¹¥»÷£¬ÕâЩÊÂÎñÕýÔÚ½øÒ»³ÌÐò²éÖ®ÖС£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/three-us-universities-disclose-data-breaches-over-two-day-span/

4¡¢Akamaiб¨¸æ³Æ½ü17¸öÔÂÓÎÏ·ÐÐÒµÔâµ½120ÒÚ´Îײ¿â¹¥»÷

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 

ƾ֤AkamaiµÄ»¥ÁªÍøÇå¾²±¨¸æ£¬ÔÚ2017Äê11ÔÂÖÁ2019Äê3ÔµÄ17¸öÔÂÄÚ£¬Õë¶ÔÓÎÏ·ÐÐÒµµÄײ¿â¹¥»÷´ÎÊý´ï120ÒڴΡ£ÔÚͳһʱÆÚÄÚ£¬Akamai¹²¼Í¼µ½Õë¶ÔËùÓÐÐÐÒµµÄ550ÒÚ´Îײ¿â¹¥»÷¡£¸Ã±¨¸æ»¹ÏÔʾ£¬SQL×¢È루SQLi£©¹¥»÷¼ÌÐøÔöÌí£¬ÏÖÔÚÕ¼ËùÓÐWebÓ¦ÓóÌÐò¹¥»÷µÄ½üÈý·ÖÖ®¶þ£¨65.1£¥£© £»ÍâµØÎļþ°üÀ¨£¨LFI£©¹¥»÷Õ¼24.7£¥¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.helpnetsecurity.com/2019/06/14/gaming-community-credential-stuffing-attacks/

5¡¢Oracle WebLogic ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CNNVD-201906-596£©

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
CNNVDÐû²¼¹ØÓÚOracle WebLogic ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CNNVD-201906-596£©µÄÔ¤¾¯¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚδÊÚȨµÄÇéÐÎÏ·¢Ë͹¥»÷Êý¾Ý£¬ÊµÏÖí§Òâ´úÂëÖ´ÐС£¸ÃÎó²îÊÇÓÉÓÚOracleÒ»¸öÀúÊ·Îó²î£¨CNNVD-201904-961£¬CVE-2019-2725£©ÐÞ²¹²»ÍêÉÆµ¼Ö£¬Ö»¹Ü4ÔÂ26ÈÕOracleÐû²¼Á˲¹¶¡£¬µ«¿ËÈÕ·¢Ã÷¸ÃÎó²îÈԿɱ»ÐµĹ¥»÷·½·¨Ê¹Óá£Oracle WebLogic Server 10.3.6.0¡¢12.1.3.0µÈ°æ±¾¾ùÊÜÎó²îÓ°Ïì¡£ÏÖÔÚ£¬ Oracle¹Ù·½ÔÝδÐû²¼¸ÃÎó²î²¹¶¡£¬µ«¿ÉÒÔͨ¹ýÔÝʱÐÞ²¹²½·¥»º½âÎó²î´øÀ´µÄΣº¦¡£

Ô­ÎÄÁ´½Ó£ºhttps://mp.weixin.qq.com/s/EhieSVXW9V2q5B9TlJyrug

6¡¢NEO UrologyÔâÀÕË÷Èí¼þ¹¥»÷£¬ÒÑÖ§¸¶7.5ÍòÃÀÔªµÄÊê½ð

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
¶íº¥¶íÖÝÒ½Áƹ«Ë¾NEO UrologyÔâºÚ¿Í¹¥»÷£¬ÆäÅÌËã»úϵͳ±»ÀÕË÷Èí¼þ¼ÓÃÜ¡£¸Ã¹«Ë¾Í¨¹ýµÚÈýÆ«Ïò¹¥»÷ÕßÖ§¸¶Á˼ÛÖµ7.5ÍòÃÀÔªµÄ±ÈÌØ±Ò£¬ÒÔ»ñÈ¡½âÃÜÃÜÔ¿¡£Æ¾Ö¤IT·þÎñÉÌµÄÆÊÎö£¬ËûÃÇÏÓÒɹ¥»÷ÕßÀ´×ÔÓÚ¶íÂÞ˹¡£¹¥»÷ÕߵĴ«ÕæÁªÏµ·½·¨ÊÇ¡°Pay4Day.io¡±£¬¾¯ÆÓÖ±ÔÚ¾ÙÐнøÒ»²½µÄÊӲ졣

Ô­ÎÄÁ´½Ó£ºhttp://www.wfmj.com/story/40646778/boardman-medical-practice-hacked-told-to-pay-75000-in-bitcoin-to-unlock-system