1¡¢Ó¡¶ÈС¶îÐÅ´ûÒøÐÐJana CashÒâÍâй¶260ÍòÓû§ÉúÒâÐÅÏ¢
Ñо¿Ö°Ô±·¢Ã÷Ó¡¶ÈС¶îÐÅ´ûÒøÐÐJana CashµÄÒ»¸öÊý¾Ý¿âδÊÜÃÜÂë±£»¤£¬µ¼ÖÂÊý°ÙÍòÓû§µÄÉúÒâÐÅÏ¢¿É±»¹ûÕæ»á¼û¡£Ð¹Â¶µÄÃô¸ÐÐÅÏ¢°üÀ¨260ÍòÓû§µÄÉúÒâ¼Í¼£¬ÒÔ¼°ËûÃǵÄKYC PIIÐÅÏ¢£¬ÀýÈçÇ®°üID¡¢Óû§Ãû¡¢µç×ÓÓʼþ¡¢IPµØµãºÍ¶Ë¿ÚºÅµÈ¡£ÔÚÑо¿Ö°Ô±×ª´ï¸Ã¹«Ë¾ºó£¬¸Ã¹«Ë¾ÒѶÔElasticÊý¾Ý¿â¾ÙÐб£»¤¡£ÏÖÔÚÉв»ÇåÎú¸ÃÊý¾Ý¿â̻¶Á˶೤ʱ¼äÒÔ¼°ÊÇ·ñÒѱ»ÆäËûÈË»á¼û¡£
ÔÎÄÁ´½Ó£ºhttps://securitydiscovery.com/jana-bank-data-leak/
2¡¢Èðµä¼ÓÃÜÇ®±ÒÉúÒâËùQuickBitй¶30ÍòÌõ¿Í»§¼Í¼
Èðµä¼ÓÃÜÇ®±ÒÉúÒâËùQuickBitת´ï³Æ£¬Ò»¸öµÚÈý·½ÏàÖúͬ°éµÄMongoDBδÉèÃÜÂ룬µ¼ÖÂ30ÍòQuickBit¿Í»§µÄÐÅϢй¶¡£Ð¹Â¶µÄÊý¾Ý°üÀ¨Óû§µÄÐÕÃû¡¢µØµã¡¢ÓÊÏ䵨µã¡¢ÐԱ𡢳öÉúÈÕÆÚµÈ¡£QuickBitÇ¿µ÷³ÆÃ»ÓÐÃÜÂë¡¢Éç»áÇå¾²ºÅÂëºÍ¼ÓÃÜÇ®±ÒÃÜԿй¶¡£¸ÃÊÂÎñÓÉÇå¾²Ñо¿Ô±Paul Bischoff·¢Ã÷£¬¹²Ó°ÏìÁË2%µÄQuickBitÓû§¡£
ÔÎÄÁ´½Ó£ºhttps://www.coindesk.com/crypto-exchange-quickbit-confirms-data-breach-impacting-300000-users
3¡¢Graduation AllianceÔâºÚ¿ÍÈëÇÖ£¬ÊýǧÃûѧÉúÐÅϢй¶
Graduation Alliance³ÆÆä·þÎñÆ÷ÔâδÊÚȨµÚÈý·½ÈëÇÖ£¬µ¼ÖÂÌïÄÉÎ÷ÖݵÄÊýǧÃû¹«Á¢Ñ§Ð£Ñ§ÉúµÄСÎÒ˽¼ÒÐÅϢй¶¡£Ð¹Â¶µÄÐÅÏ¢°üÀ¨Ñ§ÉúµÄÐÕÃû¡¢³öÉúÈÕÆÚ¡¢ÐÔ±ð¡¢ÖÖ×å¡¢ACT·ÖÊýµÈ£¬µ«²»°üÀ¨ÈκÎÉç»áÇå¾²ºÅÂëºÍµØµãÐÅÏ¢¡£Graduation AllianceÒÑÏòTHECºÍ½ÌÓý²¿×ª´ïÁË´Ë´ÎÊÂÎñ£¬²¢¹ÍÓ¶ÁËÇ徲ר¼Ò¶Ô´ËÊÂÎñ¾ÙÐÐÖÜÈ«µÄÊӲ졣
ÔÎÄÁ´½Ó£ºhttps://www.wsmv.com/graduation-alliance-data-breach-statement/pdf_7eab99b0-ad84-11e9-a1cd-3bab9f09eb00.html
4¡¢Ñо¿ÍŶÓÐû²¼¹ØÓÚFIN8¶ñÒ⹤¾ßBADHATCHµÄÆÊÎö±¨¸æ
Gigamon ATRÑо¿ÍŶÓÐû²¼FIN8¶ñÒ⹤¾ßBADHATCHµÄÆÊÎö±¨¸æ¡£BADHATCHÊÇÒ»¸ö·´µ¯shell¹¤¾ß£¬ÒÔÒ»¸ö×Ôɾ³ýPowerShell¾ç±¾×îÏÈ¡£¸Ã¾ç±¾°üÀ¨64λshellcodeµÄ×Ö½ÚÊý×飬Ëü½«¸´ÖƵ½PowerShellÀú³ÌµÄÄÚ´æÖУ¬²¢Í¨¹ýŲÓÃCreateThreadÀ´Ö´ÐС£ÓÉÓÚ×Ö½ÚÊý×éºóÃæµÄÏÂÁîÊÇbase64±àÂëµÄ£¬Òò´Ë¿ÉÄÜÌÓ±ÜÇå¾²²úÆ·µÄ¼ì²â¡£Æä·´µ¯shell½«ÅþÁ¬µ½Ò»¸öÓ²±àÂëµÄIPµØµã£¬²¢ÇÒûÓÐÓòÃû¡£Ñо¿Ö°Ô±»¹½ÏÁ¿ÁËPowerSniff¡¢PUNCHBUGGYºÍBADHATCHÖ®¼äµÄÇø±ð¡£
ÔÎÄÁ´½Ó£ºhttps://atr-blog.gigamon.com/2019/07/23/abadbabe-8badf00d:-discovering-badhatch-and-a-detailed-look-at-fin8's-tooling/
5¡¢ÃÀ¹úÓ¡µÚ°²ÄÉÖÝVigoÏØÔâµ½ÀÕË÷Èí¼þ¹¥»÷
ÃÀ¹úÓ¡µÚ°²ÄÉÖݵÄVigoÏØÔâÀÕË÷Èí¼þ¹¥»÷£¬¸ÃÏØÕýÔÚ¶Ô´ËÊÂÎñ¾ÙÐÐÊӲ졣¸ÃÏØµÄÐÐÕþÖ÷×ùJudith AndersonÌåÏÖÓÚÖܶþÔçÉÏÎüÊÕµ½ÁËÀÕË÷Èí¼þ¹¥»÷֪ͨ¡£¹ÙÔ±ÌåÏÖÕýÔÚ¼ì²â¸ÃÏØµÄÅÌËã»úϵͳÊÜÓ°ÏìµÄˮƽ¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÖÐʹÓõÄÀÕË÷Èí¼þµÄÀàÐÍ£¬¸ÃÏØÒ²Ã»ÓÐÎüÊÕµ½Êê½ðÇëÇó¡£IT²¿·ÖÖ÷¹ÜJeremy SnowdenÌåÏÖÉв»ÇåÎúÊÇ·ñÓÐÖ÷ÒªÐÅϢй¶¡£ÕâÊǽüÆÚÕë¶ÔÃÀ¹úÏØÕþ¸®²¿·ÖµÄÀÕË÷Èí¼þ¹¥»÷µÄ×îÐÂÒ»Æð¡£
ÔÎÄÁ´½Ó£ºhttps://www.apnews.com/65b22b56e7384c7db4031a07c92c64f9
6¡¢FacebookÔÞ³ÉÏòFTCÖ§¸¶50ÒÚÃÀÔª·£¿î
¾ÝÍâý±¨µÀ£¬FacebookÒÑÓëÃÀ¹úÁª°îÉÌҵίԱ»á£¨FTC£©¸æ¿¢Ï¢ÕùÐÒ飬ÔÞ³ÉÖ§¸¶50ÒÚÃÀÔªµÄ·£¿î£¬²¢ÊµÑéеÄÒþ˽±£»¤¿ò¼ÜºÍÏòFTCÌṩеļà²â¹¤¾ß¡£ÕâÊÇÓÐÊ·ÒÔÀ´¶Ô¹«Ë¾¾ÙÐеÄ×î´óµÄÏûºÄÕßÒþ˽й¶·£¿î£¬Ò²ÊÇÃÀ¹úÕþ¸®¶ÔÈκÎÎ¥¹æÐÐΪµÄ×î´óÒ»±Ê·£¿î¡£Æ¾Ö¤Ï¢ÕùÐÒ飬Facebook»¹ÐèÒª½¨ÉèÒ»¸ö¶àÌõÀíµÄºÏ¹æÏµÍ³£¬¸ÃϵͳÓÉ×ÔÁ¦µÄÒþ˽±£»¤Î¯Ô±»á¡¢ºÏ¹æ¹ÙÔ±ºÍµÚÈý·½ÆÀ¹ÀÔ±×é³É£¬ÒÔ×èֹδÀ´Óû§Òþ˽±»ÓÕÆµÄÊÂÎñ±¬·¢¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/technology/facebook-to-pay-over-5-billion-following-ftc-sec-settlements/