ÖÐÑëÃåÒòÒ½ÁÆÖÐÐÄÔâºÚ¿ÍÈëÇÖÖÂ14.5ÍòÈËÊý¾Ýй¶

Ðû²¼Ê±¼ä 2026-01-15

1. ÖÐÑëÃåÒòÒ½ÁÆÖÐÐÄÔâºÚ¿ÍÈëÇÖÖÂ14.5ÍòÈËÊý¾Ýй¶


1ÔÂ13ÈÕ£¬ÖÐÑëÃåÒòÒ½ÁƱ£½¡ÖÐÐÄ£¨CMH£©ÏµÍ³2025Äê3ÔÂ19ÈÕÖÁ6ÔÂ1ÈÕʱ´úÔâºÚ¿ÍÒ»Á¬ÈëÇÖ³¬Á½¸öÔ£¬Ö±ÖÁCMH·¢Ã÷ÈëÇÖ¡£¾­ÊÓ²ìÆÊÎöÍê³ÉÓÚ2025Äê11ÔÂ6ÈÕ£¬×îÖÕÈ·¶¨´Ë´ÎÊý¾Ýй¶ÊÂÎñÓ°Ïì145,381ÈË£¬Éæ¼°»¼Õß¼°ÏÖÈΡ¢Ç°ÈÎÔ±¹¤Ãô¸ÐÐÅÏ¢¡£CMH×÷ΪΪÖÁÉÙ40ÍòÉú³ÝÌṩ·þÎñµÄ×ÛºÏÒ½ÁƱ£½¡ÏµÍ³£¬ÖÎÀí×ÅÖÐÑëÃåÒòÖÝÒ½ÁÆÖÐÐÄ£¨CMMC£©¡¢²¼ÀïÆæ¶ÙÒ½ÔººÍÀ­Ä·¸£µÂÒ½ÔºµÈ»ú¹¹¡£Ð¹Â¶Êý¾ÝÀàÐÍÒòСÎÒ˽¼Ò¶øÒ죬Ïêϸ°üÀ¨È«Ãû¡¢³öÉúÈÕÆÚ¡¢ÖÎÁÆÐÅÏ¢¡¢·þÎñÈÕÆÚ¡¢ÌṩÉÌÃû³Æ¡¢¿µ½¡°ü¹ÜÐÅÏ¢¼°Éç»áÇå¾²ºÅÂ루SSN£©¡£´ËÀàÐÅϢй¶ʹ»¼ÕßÃæÁÙÍøÂç´¹ÂÚ¡¢Éí·ÝðÓúÍڲƭΣº¦ÏÔÖøÔöÌí¡£CMHÔÚ·¢Ã÷ÈëÇÖºóÏÕЩÁ¬Ã¦Æô¶¯Í¨Öª³ÌÐò£¬²¢ËæÊÓ²ìÉîÈëÒ»Á¬¸üÐÂÊÜÓ°ÏìÖ°Ô±Ãûµ¥£¬Í¬Ê±ÉèÁ¢»¼ÕßÖ§³ÖÈÈÏßÒÔ½â´ðÒÉÎÊ¡¢ÎüÊÕÊý¾ÝÀÄÓþٱ¨»ò½â¾öÒÉÂÇ¡£Îª¼õÇá½ðÈÚڲƭΣº¦£¬CMH»¹ÎªÊÜÓ°Ï컼ÕßÌṩÃâ·ÑÐÅÓÃ¼à¿Ø·þÎñ£¬²¢½¨ÒéÆä×ÐϸºË²éÒ½ÁƱ£½¡ÌṩÕߺͿµ½¡°ü¹ÜÍýÏë·¢Ë͵ÄÉùÃ÷£¬Èô·¢Ã÷δÏíÊܵķþÎñ¼Í¼£¬Ó¦Á¬Ã¦ÁªÏµ·þÎñÌṩÉÌ»òÒ½Áưü¹Ü¹«Ë¾¡£


https://www.bleepingcomputer.com/news/security/central-maine-healthcare-breach-exposed-data-of-over-145-000-people/


2. º«¹ú½ÌÔ´¼¯ÍÅÔâÀÕË÷Èí¼þ¹¥»÷ÖÂϵͳ¹Ø±Õ


1ÔÂ13ÈÕ£¬º«¹ú×î´ó½ÌÓý¼°ÉúÑÄÓÃÆ·ÆóÒµ½ÌÔ´¼¯ÍÅÓÚ±¾ÖÜÄ©ÔâÓöÀÕË÷Èí¼þ¹¥»÷£¬ÒѹرÕÄÚ²¿ÅÌËã»úÍøÂçÒªº¦²¿·Ö¡£ÖÜÁùÆÆÏþ£¬¼¯Íżà²âµ½Òì³£Ô˶¯ºóÁ¬Ã¦Æô¶¯Ó¦¼±ÏìÓ¦ÍýÏ룬¸ôÀëÊÜÓ°Ïì·þÎñÆ÷ÒÔ×èÖ¹ºÚ¿Í½øÒ»²½ÉøÍ¸¡£¼¯ÍÅÉùÃ÷³Æ£¬³õ³ÌÐò²éÏÔʾÀÕË÷Èí¼þ¹¥»÷µ¼Ö²¿·ÖÊý¾ÝÍâй£¬ÏÖÔÚÕýÓëרҵÇå¾²ÍŶӼ°º«¹úÕþ¸®»ú¹¹ÏàÖú£¬ÖÜÈ«ºË²éÈëÇÖÔµ¹ÊÔ­ÓÉ¡¢Ó°Ïì¹æÄ£¼°¿Í»§ÐÅÏ¢ÊÇ·ñÊܲ¨¼°¡£´Ë´ÎÊÂÎñµ¼Ö½ÌÔ´¼¯ÍÅÆì϶à¼Ò×Ó¹«Ë¾ÍøÕ¾£¨°üÀ¨½ÌÓý¡¢ÂÃÓεÈӪҵƽ̨£©ÎÞ·¨»á¼û£¬ÏµÍ³»Ö¸´ÊÂÇéÕýÔÚÇå¾²ÍÆ½øÖС£¾Ý¡¶ÑÇÖÞÉÌÒµÈÕ±¨¡·Åû¶£¬ºÚ¿ÍÒÑÏò¼¯ÍÅÌá³öÀÕË÷ÒªÇ󣻡¶³¯ÏÊÈÕ±¨¡·Ôòµ£ÐÄ£¬Ð¹Â¶Êý¾Ý¿ÉÄÜÉæ¼°Êý°ÙÍòʹÓÃÆä½ÌÓý·þÎñµÄ¶ùͯÐÕÃû¡¢µØµãµÈÃô¸ÐÐÅÏ¢£¬Òý·¢Éç»á¶Ôδ³ÉÄêÈËÒþ˽Çå¾²µÄÆÕ±é¹Ø×¢¡£½ÌÔ´¼¯ÍÅÇ¿µ÷£¬ÒÑÏòº«¹ú»¥ÁªÍøÕñÐËÔºµÈÊÓ²ì»ú¹¹±¨¸æÇå¾²Îó²î£¬²¢ÔÊÐíÈôÈ·ÈϿͻ§ÐÅϢй¶£¬½«ÊµÊ±Í¸Ã÷֪ͨÊÜÓ°ÏìÓû§¡£


https://therecord.media/kyowon-group-south-korea-suspected-ransomware-attack


3. ÃÀ¹úVerizon WirelessÔâÓö´ó¹æÄ£ÍøÂçÖÐÖ¹


1ÔÂ14ÈÕ£¬ÃÀ¹úµçОÞÍ·Verizon WirelessÔâÓö´ó¹æÄ£ÍøÂçÖÐÖ¹ÊÂÎñ£¬Òý·¢È«ÃÀÓû§ÆÕ±é¹Ø×¢¡£¾ÝÓû§·´Ïì¼°¼à²âƽ̨DownDetector±¨µÀ£¬×ÔÃÀ¹ú¶«²¿Ê±¼äÖÐÎç12µã×óÓÒÆð£¬´ó×ÚVerizonÓû§±¨¸æÊÖ»ú·ºÆð¡°SOSģʽ¡±Òì³££¬ÌåÏÖΪÎÞ·¨ÎüÊÕͨÀýÐźÅ£¬½öÄܲ¦´ò½ôÆÈµç»°¡£´Ë´ÎÖÐÖ¹Ó°Ïì¹æÄ£ÁýÕÖÈ«ÃÀ¸÷µØ£¬²¢·Ç¾ÖÏÞÓÚÌØ¶¨ÇøÓò»òÖÝ£¬²¿·ÖÓû§ÊµÑ鲦´òµç»°Ê±»¹»áÌýµ½¡°±»½Ð·½ÔÝʱÎÞ·¨½ÓÌý¡±µÄ¼ÒôÌáÐÑ¡£Verizon¹Ù·½ÔÚÉ罻ýÌåXÉÏѸËÙ»ØÓ¦£¬È·ÈÏ¡°²¿·Ö¿Í»§µÄÎÞÏßÓïÒôºÍÊý¾Ý·þÎñÊܵ½ÎÊÌâÓ°Ï족£¬²¢ÌåÏÖ¹¤³ÌʦÒÑÈ«Á¦Í¶ÈëÊӲ죬ÔÊÐí¡°¾¡¿ì½â¾öÎÊÌ⡱¡£¹«Ë¾Ç¿µ÷¡°¿É¿¿µÄÍøÂçÅþÁ¬ÖÁ¹ØÖ÷Òª¡±£¬²¢¶ÔÓÉ´ËÔì³ÉµÄδ±ãÖÂǸ¡£Ëæºó¸üеÄÉùÃ÷ÖУ¬VerizonÖØÉêÍŶӡ°ËùÓÐͶÈëÊÂÇ顱£¬×¨×¢ÓÚ½â¾öÖÐÖ¹ÎÊÌâ¡£ÖµµÃ×¢ÖØµÄÊÇ£¬ÍøÂçÇå¾²Ñо¿Ô±vxdbÖ¸³ö£¬Í³Ò»Ê±¼ä¶ÎÄÚ£¬AT&T¡¢T-Mobile¼°US CellularµÈÆäËûÒÆ¶¯ÔËÓªÉÌÒ²·ºÆð·þÎñÖÐÖ¹Õ÷Ïó¡£²»¹ý£¬T-MobileÌåÏÖ£¬ÆäÍøÂçÔËÐÐÕý³££¬µ«ÊÜVerizonÖÐÖ¹Ó°Ï죬T-MobileÓû§¿ÉÄÜÔÝʱÎÞ·¨ÁªÏµÊ¹ÓÃVerizon·þÎñµÄÓû§¡£


https://www.bleepingcomputer.com/news/mobile/verizon-wireless-outage-puts-phones-in-sos-mode-without-cell-service/


4. Bluspark GlobalÎïÁ÷ƽ̨Bluvoyix̻¶¿Í»§Êý¾Ý


1ÔÂ14ÈÕ£¬ÃÀ¹úŦԼBluspark Global¹«Ë¾£¬ÆäÎïÁ÷ƽ̨BluvoyixΪÊý°Ù¼Ò´óÐÍÆóÒµÌṩȫÇò»õÎïÔËÊäÓë×·×Ù·þÎñ£¬Ö§³Öן£Á¿¹©Ó¦Á´ÔË×÷¡£È»¶ø£¬Çå¾²Ñо¿Ô±Eaton Zveare·¢Ã÷¸Ãƽ̨±£´æÑÏÖØÇå¾²Îó²î£ºÃ÷ÎÄÃÜÂë´æ´¢¡¢Î´¾­Éí·ÝÑéÖ¤µÄAPI½Ó¿Ú£¬µ¼Ö°üÀ¨2007ÄêÒÔÀ´µÄ»õÔ˼ͼµÄËùÓпͻ§Êý¾Ý̻¶ÓÚ»¥ÁªÍø£¬¹¥»÷Õß¿ÉÈÝÒ×½¨ÉèÖÎÀíÔ±ÕË»§²¢»ñÈ¡Ãô¸ÐÐÅÏ¢¡£ZveareÔÚ2025Äê10ÔÂÊ״η¢Ã÷Îó²îºó£¬ÒòBlusparkȱ·¦¹ûÕæÁªÏµ·½·¨£¬¶à´Îͨ¹ýµç×ÓÓʼþ¡¢ÓïÒôÁôÑÔ¼°LinkedInÁªÏµÎ´¹û¡£Ëæºó£¬Ëûͨ¹ý·ÇÓªÀû×éÖ¯Maritime Hacking Village¼°TechCrunchÒ»Á¬Ê©Ñ¹£¬×îÖÕÔÚTechCrunch¸½Éϲ¿·ÖÃÜÂëÒÔ֤ʵÎó²îÑÏÖØÐÔºó£¬Blusparkͨ¹ý״ʦÊÂÎñËù»ØÓ¦£¬²¢ÐÞ¸´ÁËÎå¸öÒªº¦Îó²î¡£¹«Ë¾ÍýÏëÍÆ³öÎó²îÅû¶ÍýÏ룬µ«ÏêϸÇå¾²²½·¥¡¢µÚÈý·½ÆÀ¹ÀÏ£Íû¼°¿Í»§Êý¾ÝÊÇ·ñ±»¶ñÒâʹÓþùδÃ÷È·Åû¶¡£


https://techcrunch.com/2026/01/14/us-cargo-tech-company-publicly-exposed-its-shipping-systems-and-customer-data-to-the-web/


5. Å·ÖÞÌú·¹«Ë¾¿Í»§Ãô¸ÐÐÅÏ¢±»µÁ


1ÔÂ14ÈÕ£¬Å·ÖÞÌú·¹«Ë¾£¨Eurail/Interrail£©¿ËÈÕÈ·Èϱ¬·¢ÖØ´óÊý¾Ýй¶ÊÂÎñ£¬¿Í»§Ãô¸ÐÐÅÏ¢±»µÁ¡£¸Ã¹«Ë¾ÓÚ1ÔÂ10ÈÕÊ×´ÎÅû¶ÊÂÎñ£¬µ«ÊÜÓ°Ïì¿Í»§×Ô1ÔÂ13ÈÕÆð²ÅÂ½ÐøÊÕµ½Í¨ÖªÓʼþ¡£¾ÝÊӲ죬й¶Êý¾Ýº­¸ÇÐÕÃû¡¢³öÉúÈÕÆÚ¡¢ÐԱ𡢵ç×ÓÓÊÏä¡¢¼Òͥסַ¡¢µç»°ºÅÂë¼°»¤ÕÕÏêϸÐÅÏ¢¡£ÖµµÃ×¢ÖØµÄÊÇ£¬Í¨¹ýDiscoverEUÍýÏë»ñµÃͨÐÐÖ¤µÄÓοÍ£¬ÆäÉí·ÝÖ¤¸´Ó¡¼þ¡¢ÒøÐÐÕË»§²Î¿¼ºÅÂë¼°¿µ½¡Êý¾ÝÒ²¿ÉÄÜÔâй¶£¬¶øÖ±½Ó¹ºÖÃÂÃÐÐͨƱµÄ¿Í»§»¤ÕÕÕÕÆ¬Î´´æ´¢ÓÚϵͳ£¬¹ÊδÊÜÓ°Ï졣ŷÖÞÌú·¹«Ë¾Ç¿µ÷£¬ÏÖÔÚÉÐÎÞÖ¤¾ÝÅú×¢±»µÁÊý¾ÝÒѱ»ÀÄÓûò¹ûÕæÅû¶£¬µ«±£´æÍøÂç´¹ÂÚ¡¢ÓÕÆ­¹¥»÷¡¢Î´¾­ÊÚȨ»á¼û¼°Éí·Ý͵ÇÔµÈDZÔÚΣº¦¡£ÎªÓ¦¶Ô´Ë´ÎÊÂÎñ£¬¹«Ë¾ÒѽÓÄɶàÏî²½·¥£ºÐÞ¸´ÏµÍ³Îó²î¡¢ÖØÖÃÆ¾Ö¤¡¢ÔöÇ¿Çå¾²¿ØÖÆ£¬²¢Æ¾Ö¤Å·ÃË¡¶Í¨ÓÃÊý¾Ý±£»¤ÌõÀý¡·£¨GDPR£©ÒªÇóÏòºÉÀ¼Êý¾Ý±£»¤»ú¹¹±¨¸æ¡£Í¬Ê±£¬¹«Ë¾ÔÊÐíÖ±½Ó֪ͨÊý¾Ý¿ÉÄÜй¶µÄ¿Í»§£¬²¢¶ÔÊÂÎñÔì³ÉµÄµ£ÐÄÖÂǸ¡£


https://www.theregister.com/2026/01/14/eurail_breach/


6. °Ä´óÀûÑÇά¶àÀûÑÇÖݽÌÓý²¿·ÖѧÉúÊý¾Ýй¶


1ÔÂ14ÈÕ£¬°Ä´óÀûÑÇά¶àÀûÑÇÖݽÌÓý²¿·Ö±¬·¢Ò»ÆðѧÉúÊý¾Ýй¶ÊÂÎñ¡£¹¥»÷Õß²»·¨»á¼ûÁ˰üÀ¨Ä¿½ñ¼°Íù½ìѧÉúСÎÒ˽¼ÒÐÅÏ¢¡¢µç×ÓÓʼþµØµãµÄÊý¾Ý¿â£¬µ¼ÖÂѧÉúÕË»§ÃÜÂë±»ÖØÖ᣾ݲ¿·ÖÅû¶£¬Ð¹Â¶Êý¾Ý°üÀ¨Ñ§ÉúÐÕÃû¡¢Ñ§Ð£Ãû³Æ¡¢Äê¼¶¡¢Ñ§Ð£·¢·ÅµÄµç×ÓÓʼþµØµã¼°¼ÓÃÜÃÜÂ룬µ«³öÉúÈÕÆÚ¡¢¼Òͥסַ¡¢µç»°ºÅÂëµÈÃô¸ÐÐÅϢδ±»²¨¼°¡£×÷ΪԤ·À²½·¥£¬²¿·ÖÒÑÖØÖÃËùÓÐѧÉúÃÜÂ룬ѧÉúÔÝʱÎÞ·¨»á¼ûѧУÕË»§¡£ÐÂÃÜÂ뽫ÓÅÏÈ·¢·Å¸øVCE£¨Î¬¶àÀûÑÇÖݽÌÓýÖ¤Ê飩ѧÉú£¬ÆäËûѧÉú½«ÔÚѧÄêÒÁʼ»ñµÃÐÂÆ¾Ö¤¡£²¿·ÖͬʱÌáÐѼҳ¤£¬Ðè½ÌÓýº¢×ÓСÐIJ»Ã÷ȪԴÓʼþ£¬×èÖ¹µã»÷¿ÉÒÉÁ´½Ó¡£Î¬¶àÀûÑÇÖݹ«Á¢Ñ§Ð£ÏÏû³ÁýÕÖ1500ÓàËùѧУ£¬·þÎñÔ¼65ÍòÃûѧÉú£¬µ«ÏêϸÊÜÓ°ÏìѧÉúÊýÄ¿ÉÐδ¹ûÕæ¡£²¿·ÖÌåÏÖÒѲéÃ÷ÊÂÎñÔµ¹ÊÔ­ÓÉ£¬Ïû³ý¹¥»÷;¾¶£¬²¢½ÓÄɱ£»¤²½·¥£¬½«ÔÚ»ñµÃ¸ü¶àÐÅÏ¢ºóÒ»Á¬¸üÐÂѧУ¼°¼Ò³¤¡£È»¶ø£¬¹¥»÷Õß»ñÈ¡Êý¾Ý¿âµÄʱ¼ä¡¢Îó²î·¢Ã÷ʱµã¼°ÊÇ·ñË÷ÒªÊê½ðµÈÒªº¦ÐÅÏ¢ÈÔδÅû¶¡£


https://www.bleepingcomputer.com/news/security/victorian-department-of-education-notifies-parents-of-data-breach/