TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÊý¾Ýй¶£»£»£»£»£»£»£»Î¯ÄÚÈðÀ­´ó¹æÄ£Í£µçµ¼Ö²¿·ÖµØÇø»¥ÁªÍøÖÐÖ¹

Ðû²¼Ê±¼ä 2020-03-03

1.°Ä´óÀûÑÇÐÅϢרԱ°ì¹«ÊÒÐû²¼Êý¾Ýй¶֪ͨ£¨NDB£©±¨¸æ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ƾ֤°Ä´óÀûÑÇÐÅϢרԱ°ì¹«ÊÒ£¨OAIC£©µÄÊý¾Ýй¶֪ͨ£¨NDB£©±¨¸æ£¬£¬£¬ÔÚ2019Äê7ÔÂ1ÈÕÖÁ2019Äê12ÔÂ31ÈÕʱ´ú±¨¸æµÄÊý¾Ýй¶ÊÂÎñÊýĿΪ537Æð£¬£¬£¬±ÈÉϰëÄêµÄ460ÆðÔöÌíÁË19%¡£¡£¡£¡£¡£¡£¶ñÒâ¹¥»÷£¨°üÀ¨ÍøÂçÊÂÎñ£©ÈÔÈ»ÊÇÔì³ÉÊý¾Ýй¶µÄÖ÷ÒªÔµ¹ÊÔ­ÓÉ£¬£¬£¬Õ¼ËùÓÐÊÂÎñµÄ64%¡£¡£¡£¡£¡£¡£ÓÉÈËΪ¹ýʧÒýÆðµÄÊý¾Ýй¶ռËùÓÐй¶µÄ32£¥£¬£¬£¬µÍÓÚÉÏÒ»¸ö±¨¸æÆÚµÄ34£¥¡£¡£¡£¡£¡£¡£Ò½ÁÆÐÐÒµÔٴγÉΪ±¬·¢×ß©×î¶àµÄÐÐÒµ£¬£¬£¬Õ¼ËùÓÐÊÂÎñµÄ22%£¬£¬£¬Æä´ÎÊǽðÈÚ£¬£¬£¬Õ¼14%¡£¡£¡£¡£¡£¡£ÁªÏµ·½·¨ÈÔÈ»ÊÇÊý¾Ýй¶ÖÐ×î³£¼ûµÄСÎÒ˽¼ÒÐÅÏ¢ÀàÐÍ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.oaic.gov.au/privacy/notifiable-data-breaches/notifiable-data-breaches-statistics/notifiable-data-breaches-report-july-december-2019/


2.TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÈ·ÈÏÔâºÚ¿Í¹¥»÷ÇÒÊý¾Ýй¶


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


TeslaºÍSpaceXµÄÁã¼þÖÆÔìÉÌVisserÈ·ÈÏÔâÓöÊý¾Ýй¶ÊÂÎñ£¬£¬£¬¸Ã¹«Ë¾ÊÇÒ»¼ÒרÃÅΪ̫¿ÕºÍ¹ú·À³Ð°üÉÌÉè¼ÆÏ¸ÃÜÁã¼þµÄÖÆÔìÉÌ¡£¡£¡£¡£¡£¡£ÔÚÒ»·Ý¼ò¶ÌµÄÉùÃ÷ÖУ¬£¬£¬¸Ã¹«Ë¾È·ÈÏÆä½üÆÚ³ÉΪ¡°ÍøÂçÇå¾²·¸·¨ÊÂÎñ£¨°üÀ¨»á¼ûºÍ͵ÇÔÊý¾Ý£©µÄÄ¿µÄ¡±¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾½²»°ÈËÌåÏÖ½«¡°¼ÌÐø¶Ô¸Ã¹¥»÷¾ÙÐÐÖÜÈ«ÊӲ죬£¬£¬²¢ÇÒÓªÒµÔËÐÐÕý³£¡±¡£¡£¡£¡£¡£¡£TechCrunchÑо¿Ö°Ô±³ÆÕâ´Î¹¥»÷ºÜÓпÉÄÜÊÇÓÉDoppelPaymerÀÕË÷Èí¼þÒýÆðµÄ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://techcrunch.com/2020/03/01/visser-breach/


3.Ó¢¹úWi-FiÌṩÉÌC3UKÔÆÊý¾Ý¿âй¶1ÍòÃûÌú·Âÿͼͼ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


C3UKÔÚÓ¢¹ú¸÷µØµÄ»ð³µÕ¾ÎªÂÿÍÌṩÃâ·ÑµÄWi-fi¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÈÏ¿ÉδÄܶ԰üÀ¨Óû§ÐÅÏ¢µÄÊý¾Ý¿âÌṩ±£»£»£»£»£»£»£»¤£¬£¬£¬µ¼ÖÂ1ÍòÃûÓ¢¹úÌú·Âÿ͵ÄСÎÒ˽¼ÒÊý¾Ýй¶¡£¡£¡£¡£¡£¡£Çå¾²Ñо¿Ô±Ò®ÀûÃ×ÑÇ¡¤¸£ÀÕ£¨Jeremiah Fowler£©·¢Ã÷¸Ã¹«Ë¾µÄAWSÊý¾Ý¿â²»ÊÜÃÜÂë±£»£»£»£»£»£»£»¤£¬£¬£¬Òò´ËÈκÎÈ˶¼¿ÉÒÔÉó²éÓû§Êý¾Ý¡£¡£¡£¡£¡£¡£¸ÃÊý¾Ý¿âÊÇÔÚ2019Äê11ÔÂ28ÈÕÖÁ2020Äê2ÔÂ12ÈÕÖ®¼ä½¨ÉèµÄ£¬£¬£¬ÆäÖаüÀ¨1.46ÒÚÌõ¼Í¼£¬£¬£¬ÀýÈçÂÿ͵ijöÉúÈÕÆÚ¡¢µç×ÓÓʼþµØµãºÍÂÃÐÐÍýÏë¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄÂÿͰüÀ¨ÔÚHarlow Mill¡¢Chelmsford¡¢Colchester¡¢Waltham Cross¡¢Burnham¡¢NorwichºÍLondon BridgeʹÓÃÃâ·ÑWi-FiЧÀ͵ÄÂÿÍ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾³ÆÊý¾Ý¿âûÓаüÀ¨Óû§µÄÃÜÂë»ò²ÆÎñÐÅÏ¢µÈÒªº¦Êý¾Ý¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/data-of-10k-rail-passengers/


4.ίÄÚÈðÀ­´ó¹æÄ£Í£µçµ¼Ö²¿·ÖµØÇø»¥ÁªÍøÖÐÖ¹


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


3ÔÂ1ÈÕίÄÚÈðÀ­ÔâÓö´ó¹æÄ£Í£µçÊÂÎñ£¬£¬£¬µ¼Ö¸ùúÔ¼35£¥µÄµçÐÅ»ù´¡Éèʩ̱»¾¡£¡£¡£¡£¡£¡£»£»£»£»£»£»£»¥ÁªÍøÊÓ²ìÕ¾NetBlocks±¨¸æ³Æ£¬£¬£¬Í£µçºÍ¹©Ó¦²¨¶¯µ¼Ö¸ùúºÜ´óÒ»²¿·Ö»¥ÁªÍøÅþÁ¬ÖÐÖ¹¡£¡£¡£¡£¡£¡£Í£Ó°Ï·ÏìÁËίÄÚÈðÀ­µÄ¶à¸öÖÝ£¬£¬£¬Òƶ¯ÍøÂçÒ²²¿·ÖÊܵ½ÊÂÎñµÄÓ°Ï죬£¬£¬µ«¸Ã×éÖ¯±¨¸æ³Æ²¨¶¯ºóËüÃÇÒÑѸËÙ»Ö¸´¡£¡£¡£¡£¡£¡£Õâ²¢²»ÊÇίÄÚÈðÀ­µçÍøµÚÒ»´ÎÊܵ½´ó¹æÄ£Í£µçµÄÓ°Ï죬£¬£¬2019Äê3Ô¸ùú¾ÍÔøÔâÓö´ó¹æÄ£Í£µçÊÂÎñ£¬£¬£¬ÆäʱίÄÚÈðÀ­Í¨Ñ¶ºÍÐÅÏ¢´ó³¼ºÀ¶ûºÕ¡¤ÂÞµÂÀï¸ñ˹£¨Jorge Rodriguez£©Ö¸ÔðÍ£µçÊÇÓÉÃÀ¹ú¶Ô¹ÅÀïË®Á¦·¢µç³§·¢¶¯ÍøÂç¹¥»÷µ¼ÖµÄ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/98771/security/venezuela-power-outage.html


5.Ñо¿Ö°Ô±ÑÝʾͨ¹ý³¬Éù²¨ÈëÇÖÆ»¹ûºÍ¹È¸èÓïÒôÖúÊÖ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Ñо¿Ö°Ô±·¢Ã÷Ò»ÖÖÐµĹ¥»÷ÒªÁ죬£¬£¬¿ÉÒÔͨ¹ýÔÚ¹ÌÌåÖÊÁÏÖÐÈö²¥³¬Éù²¨À´Ãé×¼ÓïÒôÖúÊÖ×°±¸£¬£¬£¬´Ó¶øÔÚÊܺ¦Õß²»ÖªÇéµÄÇéÐÎÏÂÓëÓïÒô×°±¸¾ÙÐн»»¥ºÍʵÑéÈëÇÖ¡£¡£¡£¡£¡£¡£ÕâÖÖ¹¥»÷±»³ÆÎª¡°SurferingAttack¡±£¬£¬£¬ËüʹÓÃÁ˹ÌÌåÖÊÁÏ£¨ÀýÈç×À×Ó£©ÖÐÉùÒô´«ÊäµÄÆæÒìÌØÕ÷£¬£¬£¬ÒÔ¡°Ê¹¹¥»÷Õß¿ÉÒÔÓëÓïÒô×°±¸Ö®¼ä¾ÙÐиü³¤¾àÀëµÄ¶à´Î½»»¥£¬£¬£¬¶øÎÞÐè·ºÆðÔÚÊÓÏßÄÚ¡£¡£¡£¡£¡£¡£¡±Ñо¿Ö°Ô±ÔÚÂÛÎÄÖиÅÊöÁ˹¥»÷Õß¿ÉÄÜʹÓÃÕâÖÖ¹¥»÷Ð®ÖÆSMS¶ÌÐÅË«ÒòËØÉí·ÝÑéÖ¤Â룬£¬£¬ÉõÖÁ²¦´òڲƭÐԵ绰µÄÐÐΪ¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±²âÊÔÁË17ÖÖ×°±¸£¬£¬£¬ÆäÖÐ13̨װ±¸ÔËÐеÄÊÇ´øÓÐGoogle AssistantµÄAndroidϵͳ£¬£¬£¬ËĄ̈ÊÇ´øÓÐApple SiriµÄiPhone£¬£¬£¬Ñо¿Ö°Ô±Äܹ»¿ØÖÆ15̨װ±¸£¬£¬£¬µ«¸ÃÊÖÒÕ¶ÔÈýÐǵÄGalaxy Note 10+ºÍ»ªÎªµÄMate 9ÎÞЧ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://nakedsecurity.sophos.com/2020/03/02/siri-and-google-assistant-hacked-in-new-ultrasonic-attack/


6.Õë¶Ôº«¹úµÄ¡°Blue Esteeate Part5¡± APT¹¥»÷ÆÊÎö±¨¸æ


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ƾ֤East SecurityµÄÒ»·Ý±¨¸æ£¬£¬£¬2ÔÂ28ÈÕ·ºÆðÁËʹÓÃαװ³ÉHangulÎĵµ£¨ºó׺ÃûΪhwp£¬£¬£¬º«¹úÈËʹÓõÄÒ»ÖÖÎĵµÃûÌ㩼òÀúµÄscrÎļþ¾ÙÐеÄAPT¹¥»÷¡£¡£¡£¡£¡£¡£¸ÃAPT¹¥»÷ÖÐʹÓõĶñÒâÎļþ±»¼ì²âΪTrojan.Agent.115608C/Trojan.Agent.Detplock¡£¡£¡£¡£¡£¡£EastÈ·Èϸù¥»÷Ϊ·¸·¨ÍÅ»ïKim Soo-kiÌᳫµÄAPT¹¥»÷-¼´Blue House Green Support/Sangchunjae Estimate APT¹¥»÷-µÄµÚ5¸ö±äÌå¡£¡£¡£¡£¡£¡£¸Ã±äÌåÓÚ2ÔÂ27ÈÕ±àÒ룬£¬£¬ÊÇÆÁÄ»±£»£»£»£»£»£»£»¤³ÌÐòÀàÐ͵ĿÉÖ´ÐÐÎļþ£¬£¬£¬¿ÉÄ£ÄâhwpÎĵµ£¬£¬£¬ÀýÈçÂÄÀú±íform.hwp.scr¡£¡£¡£¡£¡£¡£ÈôÊÇÓû§ÊµÑ齫Îļþ×÷ΪhwpÎĵµÉó²é£¬£¬£¬Ôò¸Ã¶ñÒâÈí¼þ½«ÔËÐУ¬£¬£¬ÊÍ·ÅÏÖʵÓÐÓÃÔØºÉ²¢×ÔÐÐɾ³ý£¨»Ö¸´form.hwp.scr£©£¬£¬£¬ÒÔ×èÖ¹ÒýÆðÓû§µÄÏÓÒÉ¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ½«ÍøÂçºÍÉÏ´«Êܺ¦ÕßµÄÐÅÏ¢£¬£¬£¬²¢ÆÚ´ý¹¥»÷ÕߵįäËûÏÂÁî¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://blog.alyac.co.kr/2784