TikTokÒòÎ¥·´Cookie»®¶¨±»·¨¹úCNIL·£¿î540ÍòÃÀÔª

Ðû²¼Ê±¼ä 2023-01-16
1¡¢TikTokÒòÎ¥·´Cookie»®¶¨±»·¨¹úCNIL·£¿î540ÍòÃÀÔª

      

¾ÝýÌå1ÔÂ14ÈÕ±¨µÀ£¬TikTok±»·¨¹úÊý¾Ý±£»¤»ú¹¹(CNIL)·£¿î500ÍòÅ·Ôª£¨Ô¼ºÏ540ÍòÃÀÔª£©¡£CNILÔÚͨ¸æÖÐÚ¹ÊÍ£¬ËüÓÚ2021Äê6Ô¼ì²éÁËTikTokÍøÕ¾£¬·¢Ã÷¸Ãƽ̨µÄÓû§²»¿ÉÏñ½ÓÊÜcookieÄÇÑùÈÝÒ׵ؾܾøcookie¡£±ðµÄ£¬Óû§Ã»ÓлñµÃÓйØcookieÓÃ;µÄ×ã¹»ÏêϸÐÅÏ¢¡£ÕâÖÖÉè¼ÆÐÐΪ±»ÒÔΪΥ·´ÁË·¨¹úÊý¾Ý±£»¤·¨(DPA)µÚ82Ìõ£¬Ê¹Æä³ÉΪ¼ÌÑÇÂíÑ·¡¢¹È¸è¡¢MetaºÍ΢ÈíÖ®ºóÃæÁÙÀàËÆ´¦·ÖµÄƽ̨¡£


https://thehackernews.com/2023/01/tiktok-fined-54-million-by-french.html


2¡¢Êý×ÖÇ鱨¹«Ë¾CellebriteµÄ1.7TBÊý¾Ý±»Ðû²¼ÔÚDDoSsecret

      

ýÌå1ÔÂ15Èճƣ¬ÒÔÉ«ÁÐÊý×ÖÇ鱨¹«Ë¾CellebriteµÄ1.7TBÊý¾Ýй¶¡£ËüÊÇÊý×Öȡ֤ÁìÓòµÄÁìÏȹ«Ë¾Ö®Ò»£¬Ö´·¨²¿·ÖºÍÇ鱨»ú¹¹Ê¹ÓÃÆä·þÎñUFEDÀ´½âËøºÍ»á¼ûÒÆ¶¯Éè±¹ØÁ¬ÄÊý¾Ý¡£Õâ¼Ò¹«Ë¾ºÍÁíÒ»¼ÒÈðµäµÄȡ֤¹«Ë¾MSABµÄÊý¾ÝÒѱ»Enlace HacktivistÍÅ»ïй¶£¬ØÊºóͨ¹ýDDoSsecretƽ̨¹ûÕæ¡£Ð¹Â¶Êý¾Ýͨ¹ýTorrent·ÖÏí£¬°üÀ¨Õû¸öCellbriteÌ×¼þ£¬ÒÔ¼°ÓÃÓÚÈí¼þÍâµØ»¯ºÍ¿Í»§ÊÖÒÕÖ¸ÄϵĴó×ÚÎļþ¡£


https://securityaffairs.com/140838/data-breach/cellebrite-software-leaked-online.html


3¡¢°²¼òª¾ÆÀà¹ÜÖÆ¾Ö(LCBO)ÍøÕ¾±»ºÚ¿Í»§Ö§¸¶ÐÅϢй¶

      

¾Ý1ÔÂ15ÈÕ±¨µÀ£¬¼ÓÄô󰲼òªʡ¾ÆÀà¹ÜÖÆ¾Ö(LCBO)µÄÍøÕ¾Ôâµ½Magecart¹¥»÷¡£LCBOÊÇÒ»¼ÒÕþ¸®ÆóÒµ£¬Ò²ÊǸùú×î´óµÄ¾ÆÀàÁãÊÛÉÌ¡£Ëü͸¶¹¥»÷ÕßÒѾ­ÈëÇÖÆäÍøÕ¾²¢×¢Èë¶ñÒâ´úÂ룬ּÔÚÔÚ½áÕËʱÇÔÈ¡¿Í»§µÄÖ§¸¶ÐÅÏ¢¡£ÊӲ췢Ã÷£¬2023Äê1ÔÂ5ÈÕÖÁ1ÔÂ10ÈÕʱ´úÔÚ½áÕËÒ³ÃæÉÏÌṩСÎÒ˽¼ÒÐÅÏ¢²¢½øÈëLCBO.comÖ§¸¶Ò³ÃæµÄ¿Í»§£¬ÆäÐÅÏ¢¿ÉÄÜÒѱ»Ð¹Â¶£¬Éæ¼°ÐÕÃû¡¢Óʼþ¡¢µØµã¡¢ÐÅÓÿ¨ÐÅÏ¢¡¢AeroplanºÅºÍLCBO.comÕÊ»§ÃÜÂëµÈ¡£ÏÖÔÚÊÂÎñÈÔÔÚÊÓ²ìÖУ¬Ó¦ÓóÌÐòºÍLCBO.comÍøÕ¾ÒÑÏÂÏß¡£


https://securityaffairs.com/140823/data-breach/lcbo-magecart-attack.html


4¡¢NortonLifeLock³ÆÆä²¿·ÖÓû§µÄÕË»§Ô⵽ƾ֤Ìî³ä¹¥»÷

      

1ÔÂ13ÈÕ±¨µÀ³Æ£¬Gen Digital£¨Ç°ÉíΪSymantecºÍNortonLifeLock£©ÕýÔÚÏò¿Í»§·¢ËÍÊý¾Ýй¶֪ͨ£¬¼û¸æËûÃǺڿÍÒÑͨ¹ýƾ֤Ìî³ä¹¥»÷ÈëÇÖ²¿·ÖNorton Password ManagerÕÊ»§¡£NortonLifeLockÚ¹Ê͵À£¬2022Äê12ÔÂ1ÈÕ×óÓÒ£¬¹¥»÷ÕßʹÓôӰµÍø¹ºÖõÄÓû§ÃûºÍÃÜÂëʵÑéµÇ¼Norton¿Í»§µÄÕÊ»§£¬ËûÃÇ12ÔÂ12ÈÕ¼ì²âµ½´ó×ÚµÄʧ°ÜµÇ¼ʵÑ飬ÕâÅú×¢±£´æ×²¿â¹¥»÷¡£×èÖ¹12ÔÂ22ÈÕ£¬¸Ã¹«Ë¾ÒÑÍê³ÉÄÚ²¿ÊӲ췢Ã÷¹¥»÷ÕßÒÑÀÖ³ÉÈëÇÖ²¿·Ö¿Í»§ÕË»§¡£ÏÖÔÚ£¬¸Ã¹«Ë¾ÒÑÖØÖÃÊÜÓ°ÏìÕÊ»§µÄÃÜÂ룬²¢½¨ÒéÓû§ÆôÓÃË«ÒòËØÉí·ÝÑéÖ¤¡£


https://www.bleepingcomputer.com/news/security/nortonlifelock-warns-that-hackers-breached-password-manager-accounts/


5¡¢trustanduse.comÒòÉèÖùýʧй¶Լ50ÍòÓû§µÄÐÅÏ¢

      

CybernewsÔÚ1ÔÂ11ÈÕ³ÆÆä·¢Ã÷ÁËÒ»¸ö¿É¹ûÕæ»á¼ûµÄÊý¾Ý¿â£¬ÆäÖд洢Á˶à´ï855GBµÄÓû§ºÍÓªÒµÊý¾Ý¡£ÕâЩÊý¾ÝÊôÓÚÉç½»Êг¡trustanduse.com£¬Éæ¼°Ô¼439000ÃûÓû§£¬ÓÚ6ÔÂ21ÈÕÊ״α»·¢Ã÷£¬²¢ÇÒÔÚÖÁÉÙ6¸öÔµÄʱ¼äÄڿɱ»»á¼û¡£Ñо¿Ö°Ô±³Æ£¬ÓÉÓÚ¸ÃÍøÕ¾Ã»ÓÐʵÑéÊʵ±µÄÉí·ÝÑéÖ¤£¬Òò´ËËûÃÇÄܹ»Éó²éÓ¦ÓóÌÐò½Ó¿Ú£¨API£©µÄÎĵµºÍɳºÐÇéÐΡ£Ð¹Â¶µÄÐÅÏ¢Õ¹ÏÖÁËËûÃÇÏàÖúµÄ¹«Ë¾¡¢Êг¡Õ½ÂÔ¡¢¹«Ë¾µÄÔË×÷·½·¨ÒÔ¼°¶ÔÆä²úÆ·µÄ»á¼ûȨÏÞ£¬ÏÖÔÚ¸ÃÎÊÌâÒѱ»½â¾ö¡£


https://cybernews.com/security/social-marketplace-exposes-half-million-users/


6¡¢Î¢ÈíDefender ASR¹æÔò±£´æBug»áɾ³ýÓ¦ÓõĿì½Ý·½·¨

      

ýÌå1ÔÂ13ÈÕ±¨µÀ³Æ£¬Microsoft Defender ASR¹æÔò±£´æBug£¬»á´Ó×ÀÃæ¡¢×îÏȲ˵¥ºÍʹÃüÀ¸ÖÐɾ³ýÓ¦ÓóÌÐò¿ì½Ý·½·¨¡£Õý³£ÊÂÇéʱ£¬´ËASR¹æÔòÓ¦×èÖ¹¶ñÒâÈí¼þʹÓÃVBAºêŲÓÃWin32 API¡£µ«ÓÐÎÊÌâµÄDefenderÊðÃû(1.381.2140.0)µ¼ÖÂÁËASR¹æÔòÐÐΪ²»µ±£¬Óû§µÄÓ¦ÓóÌÐò¿ì½Ý·½·¨±»Îó±êΪ¶ñÒ⡣ΪÏàʶ¾öÕâ¸öÎÊÌ⣬΢ÈíÒѾ­½ûÓÃÁËÓÐÎÊÌâµÄASR¹æÔò£¬²¢ÒªÇó¿Í»§ÔÚÖÎÀíÖÐÐļì²éSI MO497128ÒÔ»ñÈ¡¸ü¶à¸üС£


https://www.bleepingcomputer.com/news/microsoft/buggy-microsoft-defender-asr-rule-deletes-windows-app-shortcuts/