¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20190103

Ðû²¼Ê±¼ä 2019-01-03
1¡¢°ÄÖÞÊý×Ö¿µ½¡ÊðÐû²¼2017-2018Äê¶È±¨¸æ £¬£¬£¬£¬£¬£¬Åû¶42ÆðÊý¾Ýй¶ÊÂÎñ

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


°Ä´óÀûÑÇÊý×Ö¿µ½¡Êð£¨ADHA£©ÔÚÆä2017-2018Äê¶È±¨¸æÖÐÌåÏÖ £¬£¬£¬£¬£¬£¬My Health RecordϵͳÖеÄÒ½ÁƼͼÔÚ2017Äê7ÔÂ1ÈÕÖÁ2018Äê6ÔÂ30ÈÕʱ´ú¹²±¬·¢42ÆðÊý¾Ýй¶ÊÂÎñ ¡£¡£ÆäÖдó´ó¶¼Ð¹Â¶ÊÂÎñÓëÒ½Áưü¹ÜڲƭÓÐ¹Ø £¬£¬£¬£¬£¬£¬My Health Record²¢Î´Ôâµ½Ëðº¦ÆäÍêÕûÐÔºÍÇå¾²ÐԵĶñÒâ¹¥»÷ ¡£¡£×èÖ¹2018Äê7ÔÂ27ÈÕ £¬£¬£¬£¬£¬£¬ÒÑÓÐÔ¼ËÄ·ÖÖ®Ò»µÄ°Ä´óÀûÑÇÈËÔÚMy Health RecordϵͳÖн¨ÉèÁËÒ½ÁƼͼ ¡£¡£

   

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/my-health-record-had-42-data-breaches-in-2017-18-but-no-malicious-attacks-adha/


2¡¢ÃÀ¹úÎÀÉú²¿Ðû²¼Ò½ÁÆÐÐÒµÍøÂçÇ徲ʵ¼ù±¨¸æ

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾



ÃÀ¹úÎÀÉú²¿£¨HHS£©Ðû²¼Ò»·ÝÕë¶ÔÒ½ÁÆÐÐÒµµÄÍøÂçÇå¾²Ö¸ÄÏ £¬£¬£¬£¬£¬£¬¸Ã³öÊéÎïµÄÃû³ÆÎª¡¶Ò½ÁÆÐÐÒµÍøÂçÇ徲ʵ¼ù£ºÖÎÀíÍþв¼°±£»£»£»¤»¼Õß¡· ¡£¡£Õâ·Ý±¨¸æÊÇHHS¼°Ò½ÁÆ×¨¼ÒÆÆ·ÑÁ½Äêʱ¼äµÄÊÂÇéЧ¹û £¬£¬£¬£¬£¬£¬ÊÇÓÉ2015ÄêµÄÍøÂçÇå¾²·¨°¸ÊÚȨµÄ ¡£¡£¸ÃÖ¸ÄÏ̽ÌÖÁËÒ½ÁÆÐÐÒµÃæÁÙµÄÎå´óÏà¹ØÍþв £¬£¬£¬£¬£¬£¬²¢½¨Òé½ÓÄÉ10ÖÖÍøÂçÇå¾²²½·¥À´»º½âÕâЩÍþв ¡£¡£¸ÃÖ¸ÄÏ»¹Ç¿µ÷ÁË¿ìËÙÓ¦¶ÔÕâЩÍþвµÄÖ÷ÒªÐÔ ¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.nextgov.com/cybersecurity/2019/01/hhs-releases-voluntary-cybersecurity-practices-health-industry/153835/


3¡¢Ô½ÄÏÕþ¸®Í¨¹ýÐÂÍøÂçÇå¾²·¨ £¬£¬£¬£¬£¬£¬ÔÊÐíÕþ¸®»á¼ûÓû§Êý¾Ý

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


¾Ý·¨ÐÂÉç1ÔÂ1ÈÕ±¨µÀ £¬£¬£¬£¬£¬£¬Ô½ÄÏ´Óµ±Ìì×îÏÈʵÑ鼫ΪÑÏ¿áµÄÍøÂçÇå¾²·¨ ¡£¡£¸Ã¹æÔò¶¨ £¬£¬£¬£¬£¬£¬»¥ÁªÍø¹«Ë¾±ØÐèɾ³ý±»Õþ¸®È϶¨Îª¡°Óж¾¡±µÄÍøÉÏÄÚÈÝ £¬£¬£¬£¬£¬£¬Ô½ÄÏÍøÃñÒ²²»µÃÔÚ»¥ÁªÍøÉÏÉ¢²¼·´Õþ¸®ÐÅÏ¢»òÍáÇúÀúÊ· ¡£¡£±ðµÄ £¬£¬£¬£¬£¬£¬Facebook¡¢GoogleµÈ¹ú¼Ê¿Æ¼¼¹«Ë¾ÒªÔÚÔ½ÄÏ¿ªÕ¹ÓªÒµ±ØÐèÔÚÔ½ÄϺ£ÄÚÉèÁ¢Ð§ÀÍ´¦ £¬£¬£¬£¬£¬£¬²¢ÇÒÔÚÔ½ÄÏÕþ¸®ÒªÇóʱ±ØÐ轫Óû§Êý¾ÝÌá½»¸øÕþ¸® ¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/vietnams-new-cyber-law-threatens/


4¡¢Popsugar's Twinning app±£´æÇå¾²Îó²î £¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂÓû§ÕÕÆ¬Ð¹Â¶

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Popsugar¡¯s Twinning appÊÇÒ»¿îÕÕÆ¬Æ¥ÅäÓ¦Óà £¬£¬£¬£¬£¬£¬¿ÉÒÔ½«Óû§ÉÏ´«µÄÕÕÆ¬ÓëÃûÈ˵ÄÕÕÆ¬¾ÙÐнÏÁ¿ £¬£¬£¬£¬£¬£¬²¢¿ÉÒÔÔÚFacebookºÍTwitterÉÏ·ÖÏíЧ¹û ¡£¡£¸ÃÓ¦Óý«Óû§ÉÏ´«µÄËùÓÐÕÕÆ¬/×ÔÕÕÏà¶¼´æ´¢ÔÚAWS bucketÖÐ £¬£¬£¬£¬£¬£¬¶ø¸ÃbucketµÄµØµã¿ÉÒÔÔÚTwinning appµÄÍøÕ¾´úÂëÖÐÕÒµ½ £¬£¬£¬£¬£¬£¬´Ó¶øµ¼ÖÂÓû§ÕÕÆ¬Ð¹Â¶ ¡£¡£Popsugar¹¤³Ì¸±×ܲÃMike Patnode֤ʵ¸ÃbucketµÄȨÏÞÉèÖò»×¼È· ¡£¡£

 

 Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/popsugars-twinning-app-was-found-exposing-users-uploaded-photos-6bfd1738


5¡¢Õë¶ÔPayPalµÄÍøÂç´¹ÂÚȦÌ×ÔÚTwitterÉÏÐû²¼

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


2019Äê1ÔÂ1ÈÕ £¬£¬£¬£¬£¬£¬Ò»¸öÕë¶ÔPayPalÕË»§µÄ´¹ÂÚȦÌ×ÔÚTwitterÉÏÐû²¼ £¬£¬£¬£¬£¬£¬ÊÔͼͨ¹ýÐÒÔ˳齱ȦÌ×À´»ñÈ¡Óû§µÄ²ÆÎñÐÅÏ¢ ¡£¡£¸Ã´¹ÂÚÒ³ÃæÒªÇó»á¼ûÕߵǼËûÃǵÄÕË»§²¢ÑéÖ¤ÏêϸÐÅÏ¢ÒÔÓ®µÃÐÂÄêÀñÎï ¡£¡£µ«Õ©Æ­ÕßÊ®·Ö×¾ÁÓ £¬£¬£¬£¬£¬£¬URLÖеÄPayPal±»¹ýʧµÄƴдΪPayPall £¬£¬£¬£¬£¬£¬²¢ÇÒÍÆÎÄÉϵÄͼƬÓëPayPalµÄÆæÒìÆ·ÅÆÐÎÏ󲢷ׯçÖ ¡£¡£ËäÈ»´¹ÂÚÍøÕ¾Ò³Ãæ¿´ÆðÀ´ÏñÊÇÕýµ±µÄPayPalÍøÕ¾ £¬£¬£¬£¬£¬£¬µ«Æä²¢Ã»ÓÐʹÓÃHTTPS ¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/paypal-phishing-scam-posted-as-a-promoted-tweet-on-twitter-4857131f


6¡¢PewDiePieµÚÈý²¨¹¥»÷À´Ï® £¬£¬£¬£¬£¬£¬Áè¼Ý1Íǫ̀ÖÇÄܵçÊÓ±»Ð®ÖÆ

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ºÚ¿ÍÐ®ÖÆÁËÁè¼Ý1Íǫ̀Chromecast¡¢ÖÇÄܵçÊÓºÍGoogle Home×°±¸À´²¥·ÅÊÓÆµ £¬£¬£¬£¬£¬£¬±Þ²ßÓû§¶©ÔÄPewDiePieµÄYouTubeƵµÀ ¡£¡£¹¥»÷Õß²¢Î´Ê¹ÓÃÈκÎ×°±¸ÖеÄÎó²î £¬£¬£¬£¬£¬£¬¶øÊÇʹÓÃÉèÖò»×¼È·µÄ·ÓÉÆ÷À´ÊµÑé¹¥»÷ ¡£¡£¹¥»÷ÕßCastHackÔÚTwitterÉÏÚ¹ÊÍ˵ £¬£¬£¬£¬£¬£¬ÕâЩ·ÓÉÆ÷ÆôÓÃÁËUPnPЧÀÍ £¬£¬£¬£¬£¬£¬²¢ÔÚ»¥ÁªÍøÉÏ̻¶Á˶˿Ú8008¡¢8009ºÍ8443 £¬£¬£¬£¬£¬£¬ÕâЩ¶Ë¿ÚÊÇÖÇÄܵçÊÓµÈ×°±¸Ê¹ÓÃµÄ¶Ë¿Ú ¡£¡£¹¥»÷ÕßÔÚÍøÕ¾https://casthack[.]thehackergiraffe[.]com/ÉÏÌṩ´Ë´Î¹¥»÷µÄʵʱÐÅÏ¢ £¬£¬£¬£¬£¬£¬ÏÖÔÚÔâµ½Ð®ÖÆµÄ×°±¸Êý×ÖÈÔÔÚÔöÌí ¡£¡£Óû§¿Éͨ¹ý½ûÓ÷ÓÉÆ÷ÉϵÄUPnPЧÀÍÀ´±£»£»£»¤Æä×°±¸ ¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/hacker-hijacks-thousands-of-chromecasts-and-smart-tvs-to-play-pewdiepie-ad/


ÉùÃ÷£º±¾×ÊѶÓÉÄϹ¬NGÓéÀÖάËûÃüÇ徲С×é·­ÒëºÍÕûÀí