2019ÄêÃÀ¹úÁè¼Ý3800ÍòÌõÒ½ÁƱ£½¡¼Í¼й¶£»£»£»2019ÄêQ3À¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ

Ðû²¼Ê±¼ä 2019-11-27
1¡¢2019ÄêÃÀ¹úÁè¼Ý3800ÍòÌõÒ½ÁƱ£½¡¼Í¼й¶

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾

10Ô·Ý£¬£¬£¬£¬£¬£¬ÃÀ¹úÎÀÉúÓ빫ÖÚЧÀͲ¿£¨HHS£©¹«ÃñȨÁ¦°ì¹«ÊÒÊÕµ½52ÆðÊý¾Ýй¶֪ͨ£¬£¬£¬£¬£¬£¬Ó°ÏìÊýÊ®ÍòÌõÒ½ÁƼͼ¡£¡£¡£ÕâÒ»Êý×ÖΪ2014Äê1ÔÂÒÔÀ´µÄµ¥ÔÂ×î¸ßÊý×Ö£¬£¬£¬£¬£¬£¬¹²Éæ¼°661830ÌõÒ½ÁƱ£½¡¼Í¼¡£¡£¡£¾ÝHIPAA Journal±¨µÀ£¬£¬£¬£¬£¬£¬×èÖ¹10ÔÂ⣬£¬£¬£¬£¬£¬½ñÄê̻¶¡¢É¥Ê§»ò±»µÁµÄÒ½ÁƼͼÊýÄ¿ÒÑÍ»ÆÆÁË3800Íò´ó¹Ø£¬£¬£¬£¬£¬£¬ÊÇ2018ÄêÕûÄêÊý×ÖµÄÈý±¶¶à£¬£¬£¬£¬£¬£¬ÊÇ2017ÄêµÄÆß±¶¡£¡£¡£µ«ÀúÊ·×î¸ß¼Í¼·ºÆðÔÚ2015Ä꣬£¬£¬£¬£¬£¬ÆäʱµÄÊý×ÖΪ1.14ÒÚÌõ¼Í¼¡£¡£¡£

   

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/over-38-million-healthcare-records-exposed-in-breaches-over-2019/

2¡¢Á½¸öAndroid SDK²»·¨ÍøÂçFacebook¼°TwitterÓû§Êý¾Ý


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Ñо¿Ö°Ô±·¢Ã÷Á½¸öµÚÈý·½SDK£¨OneAudienceºÍMobiburn£©¿ÉÉñÃØÍøÂçTwitterºÍFacebookÓû§Êý¾Ý£¬£¬£¬£¬£¬£¬TwitterºÍFacebookÕýÔÚ¾ÙÐÐÊӲ졣¡£¡£ÕâÁ½¸öSDK¶¼ÊÇÊý¾ÝÇ®±Ò»¯Ð§ÀÍ£¬£¬£¬£¬£¬£¬Í¨¹ýÏò¿ª·¢Ö°Ô±¸¶·ÑÒÔ½«ÆäSDK¼¯³Éµ½Ó¦ÓÃÖУ¬£¬£¬£¬£¬£¬È»ºóÍøÂçÓû§µÄÐÐΪÊý¾ÝÓÃÓÚ¹ã¸æÓªÏú¡£¡£¡£Í¨³£´ËÀàÌ×¼þ²»»á»á¼ûÓû§µÇ¼Facebook»òTwitterºóÌìÉúµÄСÎÒ˽¼ÒÐÅÏ¢¡¢ÕË»§ÃÜÂëµÈÊý¾Ý¡£¡£¡£TwitterÔÚһƪ²©¿ÍÖÐÈ·ÈÏOneAudience SDK¿Éδ¾­ÊÚȨ´ÓTwitterÕÊ»§ÖÐÍøÂçÓû§µÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£TwitterûÓÐ͸¶ÊÜÓ°ÏìµÄÓû§ÊýÄ¿£¬£¬£¬£¬£¬£¬µ«ÌåÏÖÖ»ÓÐAndroidÓû§Êܵ½Ó°Ïì¡£¡£¡£FacebookÌåÏÖÒ²Êܵ½¸ÃÎÊÌâÓ°Ï죬£¬£¬£¬£¬£¬°üÀ¨OneAudience SDKºÍMobiBurn SDK¡£¡£¡£Á½¼ÒSDK¿ª·¢Õß»ØÓ¦³ÆËûÃǽöÌṩ¹¤¾ß£¬£¬£¬£¬£¬£¬µ«²»ÒÔÈκη½·¨¼ÓÈëÊý¾ÝÍøÂ磬£¬£¬£¬£¬£¬½«ÔðÈιé×ïÓÚÀÄÓÃÆäSDKµÄapp¿ª·¢Ö°Ô±¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/11/sdk-twitter-facebook-android.html

3¡¢·¸·¨ÍÅ»ïFullz House´Ó´¹ÂÚ¹¥»÷תÏòMagecart¶ñÒâ»î¶¯

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾

±¾ÖܶþRiskQÐû²¼ÁËÒ»·Ý¹ØÓÚ·¸·¨ÍÅ»ïFullz HouseµÄ¹¥»÷»î¶¯¼°Æä×÷°¸ÊÖ·¨×ª±äµÄ±¨¸æ¡£¡£¡£Fullz HouseÒÔǰרÃÅ´ÓÊÂÍøÂç´¹ÂÚ£¬£¬£¬£¬£¬£¬µ«ÏÖÔÚÒѾöÒéתÏòMagecart¹¥»÷¡£¡£¡£¸Ã×é֯ı»®×ÅÒ»¸öÃûΪBlueMagicStoreµÄ°µÍøÉúÒâÍøÕ¾£¬£¬£¬£¬£¬£¬ÓÃÓÚ³öÊÛСÎÒ˽¼ÒÉí·ÝÐÅÏ¢ºÍ±»µÁµÄÒøÐÐÊý¾Ý£¬£¬£¬£¬£¬£¬×î½üFullz House¿ªÉèÁËCardHouseÒ³Ãæ£¬£¬£¬£¬£¬£¬ÓÃÓÚ³öÊÛ±»µÁµÄÐÅÓÿ¨ÐÅÏ¢¡£¡£¡£´¹ÂÚ¹¥»÷ͨ³£Ä£ÄâPayPalµÈÖ§¸¶ÉÌ£¬£¬£¬£¬£¬£¬µ«Fullz HouseÏÖÔÚ±àдÁË×Ô¼ºµÄƲÔüÆ÷´úÂ룬£¬£¬£¬£¬£¬RiskIQÑо¿Ö°Ô±ÒÔΪÕâÖÖÇéÐκÜÉÙ¼û¡£¡£¡£¸Ã´úÂëÀàËÆÓÚ2014Äê·¢Ã÷µÄµÚÒ»ÖÖÆ²ÔüÆ÷£¬£¬£¬£¬£¬£¬¼ì²éÓû§ÊäÈë×ֶεÄת±ä¶ø²»ÊÇÆÚ´ýÊܺ¦ÕßÍê³É¹ºÖᣡ£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/fullz-house-threat-group-pivots-from-phishing-to-magecart-card-skimming-attacks/

4¡¢Èý·ÖÖ®Ò»µÄÎó²îʹÓù¤¾ß°üǨáãµ½ÎÞÎļþ¹¥»÷

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ÔÚ×î½üÐû²¼µÄÒ»·Ý±¨¸æÖУ¬£¬£¬£¬£¬£¬MalwarebytesÑо¿Ö°Ô±ÌåÏÖÎó²îʹÓù¤¾ß°üÕýÔڸıäÆäÕ½ÂÔ¡£¡£¡£Ä¿½ñ»î¶¯µÄ9¸öEKÖÐÖÁÉÙÓÐ3¸öÕýÔÚʹÓÃÎÞÎļþ¹¥»÷£¬£¬£¬£¬£¬£¬ÕâÊÇEKÊ×´ÎÆÕ±é½ÓÄɸÃÊÖÒÕ¡£¡£¡£Ê¹ÓôËÊÖÒÕµÄEK°üÀ¨Magnitude¡¢UnderminerºÍPurple Fox£¬£¬£¬£¬£¬£¬ËäÈ»ÓëSpelevo¡¢FalloutºÍRIGµÈÆÕ±éʹÓõÄEKÏà±ÈÕâЩ¶¼ÊÇСÐÍEK£¬£¬£¬£¬£¬£¬µ«Èý·ÖÖ®Ò»µÄÖ÷ÒªEKÕýÔÚʹÓÃÎÞÎļþÊÖÒÕÕâÒ»ÊÂʵÅú×¢ÎúδÀ´¼¸¸öÔºͼ¸ÄêEKÊг¡µÄÉú³¤Æ«Ïò¡£¡£¡£¸Ã¹«Ë¾»¹ÌåÏÖÔ½À´Ô½¶àµÄEK²»ÔÙʹÓÃFlash PlayerÎó²î¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.zdnet.com/article/exploit-kits-are-slowly-migrating-toward-fileless-attacks/

5¡¢¿¨°Í˹»ùÐû²¼2019ÄêQ3À¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


¿¨°Í˹»ùÐû²¼2019ÄêµÚÈý¼¾¶ÈµÄÀ¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ¡£¡£¡£±¾¼¾¶ÈÀ¬»øÓʼþÔÚÈ«Çòµç×ÓÓʼþÁ÷Á¿ÖÐµÄÆ½¾ùÕ¼±È£¨56.26%£©±ÈÉÏÒ»¼¾¶È½µµÍÁË1.38¸ö°Ù·Öµã£¬£¬£¬£¬£¬£¬Í¬Ê±Öض¨Ïòµ½´¹ÂÚÍøÕ¾µÄ¹¥»÷ÊýÄ¿ÓëÉÏÒ»¼¾¶ÈÏà±ÈϽµÁË2500Íò£¬£¬£¬£¬£¬£¬½öΪ1.05ÒڴΡ£¡£¡£±¾¼¾¶ÈÀ¬»øÓʼþȪԴµÄ¹ú¼ÒÅÅÃûÖеÚÒ»ÃûÊÇÖйú£¬£¬£¬£¬£¬£¬Æä·Ý¶îΪ20.43%¡£¡£¡£¿£¿£¿£¿¨°Í˹»ùÇå¾²½â¾ö¼Æ»®¹²×èÖ¹ÁËÔ¼4809Íò¸ö¶ñÒâµÄÓʼþ¸½¼þ£¬£¬£¬£¬£¬£¬ÆäÖÐBackdoor.Win32.Androm³ÉΪ×î³£¼ûµÄ¶ñÒâÈí¼þ¼Ò×壬£¬£¬£¬£¬£¬ÆäÕ¼ÓʼþÁ÷Á¿µÄ·Ý¶îΪ7.49£¥¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://securelist.com/spam-report-q3-2019/95177/

6¡¢Å¦Ô¼¾¯Ô±¾ÖÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬Ö¸ÎÆÊý¾Ý¿â¹Ø±Õ

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ÔڳаüÉÌÅþÁ¬µ½NYPDµÄÍøÂçºó£¬£¬£¬£¬£¬£¬¶ą̀ÅÌËã»úϵͳÔâÀÕË÷Èí¼þѬȾ¡£¡£¡£¸ÃÊÂÎñ±¬·¢ÔÚ2018Äê10Ô£¬£¬£¬£¬£¬£¬NYPD×ܹ²ÔÚ23̨ÅÌËã»úÉÏ·¢Ã÷ÁËѬȾ¡£¡£¡£²¿·Ö¹ÙÔ±³Æ¸ÃѬȾ¡°´ÓδִÐС±£¬£¬£¬£¬£¬£¬ÕâÒâζ×ÅÀÕË÷Èí¼þûÓÐÔì³ÉÈκÎË𺦣¬£¬£¬£¬£¬£¬µ«NYPD´¦ÓÚÉóÉ÷˼Á¿¶ø½«ÊµÊ±É¨ÃèÖ¸ÎÆ¸ú×Ùϵͳ¹Ø±Õ¡£¡£¡£¹ÙÔ±ÔÚ½ÓÊÜ¡¶Å¦Ô¼Óʱ¨¡·²É·ÃʱÌåÏÖÖ¸ÎÆÊý¾Ý¿âÓÚµÚ¶þÌìÔçÉϻָ´Õý³£¡£¡£¡£NYPDÉù³ÆÆäÍøÂçÖÐÖ»ÓÐÔ¼0.1£¥µÄÅÌËã»úÊܵ½ÁËÓ°Ï죬£¬£¬£¬£¬£¬²¢ÇÒûÓÐÈκÎÎļþ±»Ëø¶¨¡£¡£¡£ÏÖÔÚÉÐδÅû¶ÓйØÀÕË÷Èí¼þÀàÐÍ¡¢¹¥»÷Õß¼°×°±¸±»Ñ¬È¾µÄ³Ð°üÉ̵ĸü¶àÐÅÏ¢¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/ransomware-infiltrates-nypd-s-fingerprint-database-causes-system-shutdown-528314.shtml