¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180829

Ðû²¼Ê±¼ä 2018-08-29

¡¾Çå¾²Îó²î¡¿Ñо¿Ö°Ô±Åû¶Windows10×îÐÂÁãÈÕÎó²î£¬£¬£¬£¬£¬£¬£¬£¬ÔÝÎÞ½â¾öÒªÁì


Ò»ÃûÇå¾²Ñо¿Ö°Ô±ÔÚTwitterÉÏÅû¶ÁËWindows10ϵͳÖеÄÒ»¸ö×îÐÂÁãÈÕÎó²î£¬£¬£¬£¬£¬£¬£¬£¬²¢ÔÚGitHubÉÏÐû²¼ÁËPoC´úÂë¡£¡£¡£¸ÃÎó²î±£´æÓÚWindowsµÄÍýÏëʹÃü³ÌÐòÖУ¬£¬£¬£¬£¬£¬£¬£¬¸ü׼ȷµØËµ£¬£¬£¬£¬£¬£¬£¬£¬±£´æÓڸ߼¶ÍâµØÀú³ÌŲÓã¨ALPC£©ÖС£¡£¡£¸ÃÎó²îÊÇÒ»¸öÍâµØÌáȨÎó²î£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐí¹¥»÷Õß´ÓUSERȨÏÞÌáȨµ½SYSTEMȨÏÞ¡£¡£¡£CERT/CCÒѾ­È·ÈÏÁ˸ÃÎó²î£¬£¬£¬£¬£¬£¬£¬£¬²¢Ðû²¼Á˹ٷ½¾¯±¨¡£¡£¡£ÓÉÓÚÑо¿Ö°Ô±²¢Î´Í¨ÖªÎ¢ÈíÓйشËÎó²îµÄÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚÉÐÎÞ¸ÃÎó²îµÄ½â¾ö²½·¥¡£¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/08/windows-zero-day-exploit.html


¡¾Êý¾Ýй¶¡¿AbbyyÒòÊý¾Ý¿âÉèÖùýʧµ¼ÖÂ20¶àÍò¸ö¿Í»§Îļþй¶


8ÔÂ19ÈÕÇå¾²Ñо¿Ö°Ô±Bob DiachenkoÔÚAWSÔÆÆ½Ì¨ÉÏ·¢Ã÷ÊôÓÚOCRÈí¼þ¿ª·¢ÉÌAbbyyµÄÒ»¸öMongoDBЧÀÍÆ÷ÎÞÐèµÇ¼¼´¿É¹ûÕæ»á¼û¡£¡£¡£¸ÃÊý¾Ý¿â¾ÞϸΪ142GB£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨¶àÖÖÃô¸ÐÎļþµÄɨÃè¼þ£¬£¬£¬£¬£¬£¬£¬£¬ÈçÌõÔ¼¡¢±£ÃÜЭÒé¡¢ÄÚ²¿Ðżþ¼°±¸Íü¼µÈ¡£¡£¡£ÆäÖаüÀ¨ÊôÓÚAbbyy¿Í»§µÄ20¶àÍò¸öÎļþ¡£¡£¡£¸ÃÊý¾Ý¿â¿ÉÄÜÊÇAbbyyµÄ»ù´¡ÉèÊ©µÄÒ»²¿·Ö¡£¡£¡£AbbyyµÄÇå¾²ÍŶÓÔÚ½Óµ½Í¨ÖªÁ½ÌìºóÐÞ¸´Á˸ÃÊý¾Ý¿âµÄÉèÖùýʧÎÊÌâ¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/ocr-software-dev-exposes-200-000-customer-documents/


¡¾Îó²î²¹¶¡¡¿AdobeÐû²¼±¾Ôµڶþ¸ö½ôÆÈÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬£¬ÐÞ¸´Creative CloudÖеÄÒ»¸öÎó²î


AdobeÐû²¼±¾Ôµڶþ¸ö½ôÆÈÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬£¬ÐÞ¸´WindowsºÍmacOSƽ̨ÉϵÄCreative Cloud×ÀÃæÈí¼þÖеÄÒ»¸öÌáȨÎó²î¡£¡£¡£¸ÃÎó²î£¨CVE-2018-12829£©µÄÆÀ¼¶ÎªÖ÷Òª£¬£¬£¬£¬£¬£¬£¬£¬AdobeÌåÏÖÆä·¢Ã÷±£´æ¸ÃÎó²îµÄ¹ûÕæPoC´úÂë¡£¡£¡£Creative Cloud Desktop Application 4.6.0¼°¸üÔçµÄ°æ±¾Êܵ½Ó°Ï죬£¬£¬£¬£¬£¬£¬£¬½¨ÒéÓû§¾¡¿ìÉý¼¶ÖÁ°æ±¾4.6.1¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://threatpost.com/adobe-pushes-out-unscheduled-creative-cloud-application-fix/136968/


¡¾¶ñÒâÈí¼þ¡¿Ñо¿ÍŶÓÐû²¼¹ØÓÚÒÆ¶¯ÒøÐÐľÂíAsacubµÄÆÊÎö±¨¸æ


¿¨°Í˹»ùʵÑéÊÒÐû²¼¹ØÓÚÒÆ¶¯ÒøÐÐľÂíAsacubµÄÆÊÎö±¨¸æ¡£¡£¡£2018Äê×î³£¼ûµÄAsacub±äÌåÊǰ汾5.0.3¡£¡£¡£AsacubÖ÷ÒªÕë¶Ô¶íÂÞ˹£¬£¬£¬£¬£¬£¬£¬£¬98%µÄѬȾ£¨225000£©±¬·¢ÔÚ¶íÂÞ˹£¬£¬£¬£¬£¬£¬£¬£¬µ«¸ÃľÂíÒ²Õë¶ÔÎÚ¿ËÀ¼¡¢ÍÁ¶úÆä¡¢µÂ¹ú¡¢°×¶íÂÞ˹¡¢²¨À¼¡¢ÑÇÃÀÄáÑÇ¡¢¹þÈø¿Ë˹̹ºÍÃÀ¹úµÈ¹ú¼Ò¡£¡£¡£Asacubͨ¹ýÍøÂç´¹ÂÚ¶ÌÐÅÈö²¥£¬£¬£¬£¬£¬£¬£¬£¬¶ÌÐÅÖаüÀ¨¶ñÒâAPKÎļþµÄ´¹ÂÚÁ´½Ó¡£¡£¡£Asacub³£Î±×°³ÉMMSÓ¦ÓûòÃâ·Ñ¹ã¸æÐ§À͵Ŀͻ§¶Ë£¬£¬£¬£¬£¬£¬£¬£¬ÈçPhoto¡¢Message¡¢Avito OfferºÍMMS MessageµÈ¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://securelist.com/the-rise-of-mobile-banker-asacub/87591/


¡¾¶ñÒâÈí¼þ¡¿Çå¾²Ñо¿Ö°Ô±·¢Ã÷Õë¶ÔPOSϵͳµÄжñÒâÈí¼þRtPOS


À´×ÔBooz Allen HamiltonµÄÑо¿Ö°Ô±·¢Ã÷Ò»¸öжñÒâÈí¼þRtPOS¡£¡£¡£RtPOSËÆºõÀ´×Ô¶íÂÞ˹£¬£¬£¬£¬£¬£¬£¬£¬Ö÷ÒªÕë¶ÔPOSϵͳ¡£¡£¡£RtPOSµÄ¹¦Ð§ÓÐÏÞ£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒûÓÐÍøÂçÅþÁ¬¹¦Ð§£¬£¬£¬£¬£¬£¬£¬£¬ÕâÒâζÕßRtPOS²»»áÅþÁ¬Ô¶³ÌЧÀÍÆ÷ÒÔ»ñÈ¡ÏÂÁî»ò´«Êä±»µÁµÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬ËùÓÐÍøÂçµÄÒøÐп¨Êý¾Ý¶¼´æ´¢ÔÚÍâµØDATÎļþÖС£¡£¡£Õâ¿ÉÄÜÊÇÓÉÓÚRtPOS»¹´¦ÓÚ¿ª·¢½×¶Î£¬£¬£¬£¬£¬£¬£¬£¬»òÕßRtPOSÖ»ÓÃÓÚÍøÂçÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß½«»áʹÓÃÆäËüµÄ¶ñÒâÈí¼þ¾ÙÐÐÊý¾Ý´«Êä¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/booz-allen-hamilton-researchers-detail-new-rtpos-point-of-sale-malware/


¡¾Çå¾²²¥±¨¡¿GDPRʵÑé3¸öÔºóÅ·ÃËÓû§ÈÔÎÞ·¨»á¼ûÔ¼1200¸öUSÐÂÎÅÍøÕ¾


ÔÚÅ·ÃËÍÆ³öеÄͨÓÃÊý¾Ý±£»£»£»£»£»£»£»£»¤ÌõÀý£¨GDPR£©Èý¸ö¶àԺ󣬣¬£¬£¬£¬£¬£¬£¬Å·ÃËÓû§ÈÔÈ»ÎÞ·¨»á¼û½ü1200¸öÃÀ¹úÐÂÎÅÍøÕ¾¡£¡£¡£´ó´ó¶¼ÍøÕ¾¶¼ÊÇһЩÌṩÍâµØÐÂÎű¨µÀµÄСÐÍÐÂÎÅÍøÕ¾£¬£¬£¬£¬£¬£¬£¬£¬µ«¸ÃÁбíÖÐÒ²°üÀ¨Ò»Ð©ÖøÃûµÄÐÂÎÅÍøÕ¾£¬£¬£¬£¬£¬£¬£¬£¬ÈçÂåɼí¶Ê±±¨¡¢Ö¥¼Ó¸çÂÛ̳±¨¡¢Å¦Ô¼ÖðÈÕÐÂÎÅ¡¢´ïÀ­Ë¹ÐÂÎÅ¡¢°Í¶ûµÄĦ̫Ñô±¨ºÍʥ·Ò×˹Óʱ¨µÈ¡£¡£¡£GDPRÒªÇóÍøÕ¾±ÈÒÔǰ¸üÉîÈëµØÅû¶ÆäÊý¾ÝÍøÂçÐÐΪ£¬£¬£¬£¬£¬£¬£¬£¬²¢ÒªÇóÍøÕ¾»ñµÃ»á¼ûÕßµÄÃ÷È·ÔÊÐí¡£¡£¡£µ«ÕâÐ©ÍøÕ¾ÈÔûÓиüÐÂÒÔÖª×ãÕâЩҪÇ󣬣¬£¬£¬£¬£¬£¬£¬Õâ¿ÉÄÜÊÇÓÉÓÚͶÈë×ʽðºÍÊÕÒæÏà²î¹ý´óµÄ¹ØÏµ¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/technology/nearly-1-200-us-news-sites-still-not-available-for-eu-users-after-gdpr/