˼¿ÆÇå¾²¸üÐÂÐÞ¸´ASAºÍFTDÖжà¸öÖ÷ÒªÎó²î£»£»£»£»£»£»1.15ÒÚ°Í»ù˹̹µç»°Óû§µÄÏêϸÐÅϢй¶
Ðû²¼Ê±¼ä 2020-05-091.˼¿ÆÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¸ö²úÆ·ÖеÄ12¸öÎó²î
˼¿ÆÐû²¼ÁËÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬£¬ÐÞ¸´ÁËÆä×Ô˳ӦÇå¾²×°±¸Èí¼þ£¨ASA£©ºÍFirepowerÍþв·ÀÓùÈí¼þ£¨FTD£©ÖеÄ12¸öÎó²î£¬£¬£¬£¬£¬£¬£¬£¬Î´¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÕâЩÎó²îÌᳫһϵÁй¥»÷£¬£¬£¬£¬£¬£¬£¬£¬ÀýÈçDoS¹¥»÷¡¢Ðá̽Ãô¸ÐÊý¾ÝµÈ¡£¡£¡£´Ë´ÎÐÞ¸´µÄ×îÑÏÖØµÄÎó²î£¨CVE-2020-3187£¬£¬£¬£¬£¬£¬£¬£¬CVSS 9.1£©ÔÚASAºÍFTDµÄWebЧÀͽӿÚÖУ¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßÌᳫĿ¼±éÀú¹¥»÷¡£¡£¡£»£»£»£»£»£ÉÐÓÐASAºÍFTDÖÐµÄÆäËûÎó²î£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨Îó²î£¨CVE-2020-3125£©ÔÊÐí¹¥»÷Õßð³äKerberosÃÜÔ¿·Ö·¢ÖÐÐÄ£¨KDC£©¡¢¾Ü¾øÐ§ÀÍÎó²î£¨CVE-2020-3298¡¢CVE-2020-3191¡¢CVE-2020-3254ºÍCVE-2020-3196£©¡¢ÄÚ´æ×ß©Îó²î£¨CVE-2020-3195£©¡¢ÐÅϢй¶Îó²î£¨CVE-2020-3259£©µÈ¡£¡£¡£ÁíÍ⣬£¬£¬£¬£¬£¬£¬£¬´Ë´ÎÇå¾²¸üл¹ÐÞ¸´ÁË22ÆäÖеÍΣÎó²î¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/cisco-fixes-high-severity-flaws-in-firepower-security-software-asa/155568/
2.ÃÀ¹ú¹«Ë¾SparboeÔâMAZEÍÅ»ïÀÕË÷²¡¶¾¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬Êý¾Ýй¶
ºÚ¿Í×éÖ¯MAZEÐû²¼ÆäÓÚ5ÔÂ1ÈÕ¶ÔÃÀ¹ú¹«Ë¾SparboeÌᳫÁËÀÕË÷²¡¶¾¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬²¢Ðû²¼Á˰üÀ¨ÓÐ17¸öÎļþ¼ÐµÄzipÎļþ£¬£¬£¬£¬£¬£¬£¬£¬Éù³Æ¸ÃÊý¾ÝÊÇ´ÓSparboeµÄϵͳÖÐÇÔÈ¡µÄ¡£¡£¡£¸ÃÎļþ¼ÐÖÐÓÐÏÖÈκÍǰ¹ÍÔ±ÐÅÏ¢¡¢¿â´æ¡¢Óöȱ¨¸æ¡¢Î£ÏÕ±¨¸æ¡¢Í£¿£¿£¿£¿£¿£¿£¿¿Ê±¼ä±íºÍÆäËûÊý¾Ý¡£¡£¡£ÏÖÔÚ¸ÃzipÎļþ±»ÃüÃûΪ¡° part1¡±£¬£¬£¬£¬£¬£¬£¬£¬ÒÔʾMAZE´ÓSparboe¹«Ë¾ÇÔÈ¡Á˸ü¶àµÄÊý¾Ý¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬£¬Sparboe ¹«Ë¾ÉÐδ¶Ô´ËÊÂ×ö³ö»Ø¸´£¬£¬£¬£¬£¬£¬£¬£¬Î´È·ÈÏ»ò·ñ¶¨´Ë´ÎµÄÀÕË÷Èí¼þ¹¥»÷¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.infosecurity-magazine.com/news/maze-claims-ransomware-attack-on-us/
3.Ô¼»áÓ¦ÓÃMobiFriends±£´æÎó²î£¬£¬£¬£¬£¬£¬£¬£¬Ð¹Â¶360ÍòÓû§ÐÅÏ¢
Ô¼»áÓ¦ÓÃMobiFriends±£´æÎó²î£¬£¬£¬£¬£¬£¬£¬£¬Æä3688060Óû§µÄСÎÒ˽¼ÒÏêϸÐÅϢй¶¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬£¬£¬ÕâЩÊý¾ÝÊÇ2019Äê1ÔºڿÍʹÓÃÁËÍøÕ¾µÄÇå¾²Îó²îÇÔÈ¡µÄ£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒ×î³õÔÚ°µÍø³öÊÛ¡£¡£¡£×î½ü£¬£¬£¬£¬£¬£¬£¬£¬ÕâЩÊý¾ÝÔÚ¹«ÍøÉÏй¶£¬£¬£¬£¬£¬£¬£¬£¬²¢ÔÚÂÛ̳ÉÏÃâ·Ñ¹²ÏíÈö²¥¡£¡£¡£Ð¹Â¶Êý¾Ý°üÀ¨Óû§Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬ÀýÈçMD5¼ÓÃܵÄÃÜÂë¡¢µç×ÓÓʼþµØµã¡¢ÊÖ»úºÅÂë¡¢³öÉúÈÕÆÚ¡¢ÐÔ±ðÐÅÏ¢¡¢Óû§ÃûºÍÓ¦ÓóÌÐò»òÍøÕ¾»î¶¯¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬£¬MobiFriends¹«Ë¾¶Ô´ËÊÂÎñÒ»Ö±¼á³ÖĬȻ£¬£¬£¬£¬£¬£¬£¬£¬Ò²Ã»Óлظ´ZDNetºÍRBSµÄÖÃÆÀÇëÇ󡣡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/dating-app-mobifriends-silent-on-security-breach-impacting-3-6-million-users/
4.µçÉ̹«Ë¾StorEnvyÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬Ð¹Â¶150ÍòÓû§ÐÅÏ¢
µçÉ̹«Ë¾StorEnvyÔâºÚ¿ÍÈëÇÖ,ÆäÁè¼Ý150Íò¿Í»§ºÍÉ̼ҵÄÐÅÏ¢±»ºÚ¿Í·ÅÔÚ°µÍøÉÏÈö²¥¡£¡£¡£´Ë´Îй¶Êý¾Ý°üÀ¨µç×ÓÓʼþ¡¢ÃÜÂ롢ȫÃû¡¢Óû§Ãû¡¢IPµØµã¡¢¶¼»á¡¢ÐÔ±ðÒÔ¼°É罻ýÌå×ÊÁÏÁ´½Ó£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒËùÓÐÊý¾Ý£¨ÀýÈçÃÜÂ룩¶¼ÊÇ´¿Îı¾ÃûÌõ쬣¬£¬£¬£¬£¬£¬£¬ÔÚijЩÇéÐÎÏ£¬£¬£¬£¬£¬£¬£¬£¬»¹¿ÉÒÔ¿´µ½¶©µ¥ÏêϸÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬ÀýÈç¶©µ¥ÈÕÆÚ¡¢¶©µ¥ºÅºÍ¹ºÖÃÖÐʹÓõĸ¶¿î·½·¨¡£¡£¡£¾ÝHackread.comÆÊÎö£¬£¬£¬£¬£¬£¬£¬£¬´Ë´ÎÊý¾Ýй¶ÊǺڿÍʹÓô¹ÂÚ¹¥»÷ºÍÉí·ÝµÁÓõ¼Öµġ£¡£¡£ÏÖÔÚÉв»ÇåÎúÊý¾Ýй¶¼òÖ±ÇÐʱ¼ä£¬£¬£¬£¬£¬£¬£¬£¬Storenvy¹«Ë¾Ò²ÉÐδ¶Ô´ËÊÂ×ö³ö»Ø¸´¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/e-commerce-firm-storenvy-hacked-accounts-leaked/
5.ºÚ¿Í³öÊÛ1.15ÒÚ°Í»ù˹̹µç»°Óû§µÄÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬±ê¼Û210ÍòÃÀÔª
¾ÝZDNet±¨µÀ£¬£¬£¬£¬£¬£¬£¬£¬¿ËÈÕ£¬£¬£¬£¬£¬£¬£¬£¬ºÚ¿ÍÕýÒÔ210ÍòÃÀÔªµÄ±ÈÌØ±ÒµÄ¼ÛÇ®³öÊÛ1.15ÒÚ°Í»ù˹̹µç»°Óû§µÄÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬¶ø±¾ÖÜÔçÆÚй¶µÄ4400ÍòÐÅÏ¢Ö»ÊÇÆäÖеÄÒ»²¿·Ö¡£¡£¡£´Ë´Îй¶Êý¾Ý°üÀ¨¿Í»§È«Ãû¡¢¼Òͥסַ£¨¶¼»á¡¢µØÇø¡¢½ÖµÀÃû³Æ£©¡¢¹ú¼ÒÉí·ÝÖ¤ºÅ£¨CNIC£©¡¢ÊÖ»úºÅÂë¡¢×ù»úºÅÂëºÍ¶©ÔÄÈÕÆÚ¡£¡£¡£¾ø´ó¶à×ß©Êý¾Ý¶¼ÊôÓÚ°Í»ùË¹Ì¹ÒÆ¶¯ÔËÓªÉÌJazzµÄÊÖ»úºÅÂ룬£¬£¬£¬£¬£¬£¬£¬µ«ZDNet»¹È·¶¨Ò²ÓÐÊôÓÚÆäËûÒÆ¶¯ÔËÓªÉ̵ĵ绰ºÅÂ룬£¬£¬£¬£¬£¬£¬£¬ÒÔÊÇÉÐÎÞ·¨Ö¤ÊµÕâЩÊý¾ÝÊÇ´ÓJazzЧÀÍÆ÷ÖÐй¶µÄ£¬£¬£¬£¬£¬£¬£¬£¬¶øJazz½²»°ÈËҲδ»Ø¸´ÖÃÆÀÇëÇ󡣡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/details-of-44m-pakistani-mobile-users-leaked-online-part-of-bigger-115m-cache/#ftag=RSSbaffb68
6.ºÚ¿ÍÇÔÈ¡Èý¼Ò¹«Ë¾µÄ2600ÍòÌõÓû§ÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬²¢ÔÚ°µÍø³öÊÛ
ºÚ¿Í×éÖ¯Shiny HuntersÇÔÈ¡Á˲ͰüÅäËÍЧÀÍÆ½Ì¨HomeChef¡¢ÕÕÆ¬´òӡЧÀÍÆ½Ì¨ChatBooksºÍ¸ßµÈ½ÌÓýÐÂÎÅÍøÕ¾Chronicle.comÈý¼Ò¹«Ë¾ÖеÄ2600ÍòÌõÓû§ÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬²¢ÔÚ°µÍøÉϱê¼Û³öÊÛ¡£¡£¡£HomeChefƽ̨Êý¾Ý¿â°üÀ¨800ÍòÌõ¼Í¼£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨bcrypt¹þÏ£ÃÜÂë¡¢IPµØµã¡¢µç»°ºÅÂë¡¢ÓÊÕþ±àÂëºÍСÎÒ˽¼ÒÉí·ÝÐÅÏ¢£¨PII£©£¬£¬£¬£¬£¬£¬£¬£¬±ê¼ÛΪ2500ÃÀÔª¡£¡£¡£ChatBooksƽ̨Êý¾Ý¿â°üÀ¨1500ÍòÌõÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÓʼþµØµã¡¢SHA-512ÃÜÂë¡¢É罻ýÌå»á¼ûÁîÅÆºÍһЩPII£¬£¬£¬£¬£¬£¬£¬£¬±ê¼ÛΪ2500ÃÀÔª¡£¡£¡£Chronicle.comÍøÕ¾Êý¾Ý¿â°üÀ¨300ÍòÌõÓû§¼Í¼£¬£¬£¬£¬£¬£¬£¬£¬±ê¼ÛΪ1500ÃÀÔª¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/hackers-sell-stolen-user-data-from-homechef-chatbooks-and-chronicle/


¾©¹«Íø°²±¸11010802024551ºÅ