ÃÀ¹ú¶à¼Òº½¿Õ¹«Ë¾ÒòAerodataϵͳ¹ÊÕÏ×÷·Ïº½°à£»£»Burrell Behavioral й¶6.7Íò»¼ÕßµÄePHIÐÅÏ¢

Ðû²¼Ê±¼ä 2019-04-02

1.Burrell Behavioral Healthй¶Áè¼Ý6.7Íò»¼ÕßµÄePHIÐÅÏ¢


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÃÀ¹úÃÜËÕÀïÖÝBurrell Behavioral Health£¨BBH£©ÒÑ֪ͨÁè¼Ý6.7Íò»¼Õ߯äePHIÐÅÏ¢Ô⵽й¶¡£¡£¡£¡£¡£¡£Õâһй¶ÊÂÎñ±¬·¢ÔÚ2018Äê8Ô£¬£¬ £¬£¬£¬£¬Ôµ¹ÊÔ­ÓÉÊÇÒ»¸öӪҵͬ°éµÄÃÅ»§ÍøÕ¾Ã»ÓлñµÃ±£»£»¤¡£¡£¡£¡£¡£¡£Ð¹Â¶µÄÐÅÏ¢°üÀ¨»¼ÕßµÄÐÕÃû¡¢µØµã¡¢µç»°ºÅÂë¡¢³öÉúÈÕÆÚ¡¢ÐÔ±ð¡¢Éç»áÇå¾²ºÅÂëºÍ¼ÝÕÕºÅÂëµÈ¡£¡£¡£¡£¡£¡£BBH½«ÎªÊܵ½Ó°ÏìµÄ»¼ÕßÌṩÃâ·ÑµÄÐÅÓÃ¼à¿ØºÍ±£»£»¤Ð§ÀÍ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://cyware.com/news/burrell-behavioral-health-notifies-over-67000-patients-of-a-data-breach-d09cd7b3


2.°Ä´óÀûÑÇACSCÖÒÑÔÕë¶ÔPaypalÓû§µÄ´¹ÂÚ¹¥»÷


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


°Ä´óÀûÑÇÍøÂçÇå¾²ÖÐÐÄ£¨ACSC£©ÖÒÑÔÕë¶ÔPaypalÓû§µÄ´¹ÂÚ¹¥»÷£¬£¬ £¬£¬£¬£¬ÕâÖÖ´¹ÂÚÓʼþαװ³ÉPaypalµÄ֪ͨ£¬£¬ £¬£¬£¬£¬³ÆÈôÊÇÓû§ÔÚ48СʱÄÚûÓÐͨ¹ýÓʼþÖеÄÁ´½Ó¼¤»îÕË»§²¢¸üÐÂÕË»§ÏêϸÐÅÏ¢£¬£¬ £¬£¬£¬£¬ÆäÕË»§½«±»ÓÀÊÀ·â½û¡£¡£¡£¡£¡£¡£µ«¸ÃÁ´½ÓÏÖʵÉÏÖ¸ÏòÒ»¸ö´¹ÂÚÍøÕ¾£¬£¬ £¬£¬£¬£¬ÓÃÓÚÇÔÈ¡Óû§ÊäÈëµÄÏêϸÐÅÏ¢¡£¡£¡£¡£¡£¡£ACSCÖÒÑÔ³ÆÇëÎðµã»÷ÓʼþÖеÄÁ´½Ó£¬£¬ £¬£¬£¬£¬²¢½«Æäת·¢ÖÁphishing@paypal.com.au¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://au.finance.yahoo.com/news/warning-scammers-now-trying-steal-details-paypal-025324987.html


3.À¬»øÓʼþEmotetͬʱ·Ö·¢¶ñÒâÈí¼þNozelesnºÍNymaim


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Ç÷ÊÆ¿Æ¼¼Ñо¿ÍŶӷ¢Ã÷ÓëEmotetÏà¹ØµÄÀ¬»øÓʼþ»î¶¯Ò²ÔÚ·Ö·¢¶ñÒâÈí¼þNymaim£¬£¬ £¬£¬£¬£¬²¢Ëæºó¼ÓÔØÀÕË÷Èí¼þNozelesn¡£¡£¡£¡£¡£¡£2019Äê1ÔÂ9ÈÕÖÁ2019Äê2ÔÂ7ÈÕʱ´ú£¬£¬ £¬£¬£¬£¬Ñо¿ÍŶÓÔÚÈ«Çò¹æÄ£ÄÚ¹²¼ì²âµ½Áè¼Ý1.4Íò¸öÀàËÆµÄÀ¬»øÓʼþ¡£¡£¡£¡£¡£¡£ÕâЩÀ¬»øÓʼþµÄÖ÷Ìâ°üÀ¨½ôÆÈ³ö¿ÚµØÍ¼¡¢·¢»õÏêÇé¡¢¿ìµÝÐÅÏ¢¡¢»ã¿îÐÅÏ¢¡¢¼Ó¼±¿ìµÝµÈ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://blog.trendmicro.com/trendlabs-security-intelligence/emotet-distributed-ransomware-loader-for-nozelesn-found-via-managed-detection-and-response/


4.Çå¾²Ñо¿ÍŶÓÐû²¼¹ã¸æÈí¼þBatMobiµÄÆÊÎö±¨¸æ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Malwarebytes LabsÑо¿ÍŶÓÐû²¼¹ØÓÚ¹ã¸æÈí¼þBatMobiµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£BatMobiÔ­±¾ÊÇÒ»¸öÇå½àµÄ¹ã¸æSDK£¬£¬ £¬£¬£¬£¬µ«ÔÚ1ÔÂÖÐÑ®×óÓÒ·ºÆðÁËһЩ¹ã¸æÈí¼þ±äÌ壨ÀýÈçAndroid/Adware.BatMobi£©£¬£¬ £¬£¬£¬£¬ÎªÓû§ÕÐÖÂÔã¸âµÄÌåÑé¡£¡£¡£¡£¡£¡£¸Ã±äÌå»áÔÚGoogle PlayÖе¯³ö¹ã¸æ£¬£¬ £¬£¬£¬£¬µ±Óû§ÔÚGoogle PlayÖÐ×°Öûò¸üÐÂÓ¦ÓÃʱ£¬£¬ £¬£¬£¬£¬¾Í»áµ¯³ö¹ã¸æ¡£¡£¡£¡£¡£¡£ÔÚ3Ô·Ý£¬£¬ £¬£¬£¬£¬ÕâЩ¹ã¸æÔ´ÓÖ×èÖ¹Á˻¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://blog.malwarebytes.com/cybercrime/2019/03/awaking-the-beast-adware-batmobi/


5.Kubernetes·¾¶±éÀúÎó²î£¬£¬ £¬£¬£¬£¬¿Éµ¼ÖÂí§Òâ´úÂëÖ´ÐÐ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


TwistlockÑо¿Ö°Ô±·¢Ã÷KubernetesÈ¥ÄêÐÞ¸´µÄÒ»¸öĿ¼±éÀúÎó²î£¨CVE-2018-1002100£©²¢Î´ÍêÈ«»ñµÃÐÞ¸´£¬£¬ £¬£¬£¬£¬¹¥»÷ÕßÈÔ¿ÉÒÔ¾ÙÐÐĿ¼±éÀú¡¢ÇÔÈ¡Ãô¸ÐÐÅÏ¢ÉõÖÁÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ÓÉÓÚKubectlͨ³£Ê¹ÓÃÓû§È¨ÏÞÔËÐУ¬£¬ £¬£¬£¬£¬Òò´ËʵÏÖ´úÂëÖ´Ðв¢½ûÖ¹Òס£¡£¡£¡£¡£¡£Õâ¸öеÄÎó²î£¨CVE-2019-1002101£©ÒÑÔÚKubernetes°æ±¾1.11.9¡¢1.12.7¡¢1.13.5ºÍ1.14.0ÖлñµÃÐÞ¸´¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://www.securityweek.com/serious-path-traversal-flaw-found-kubernetes


6.ÃÀ¹ú¶à¼Òº½¿Õ¹«Ë¾ÒòAerodataϵͳ¹ÊÕÏ×÷·Ïº½°à


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÓÉÓÚµÚÈý·½³Ð°üÉÌAerodataϵͳ·ºÆð¹ÊÕÏ£¬£¬ £¬£¬£¬£¬µ¼ÖÂ4ÔÂ1ÈÕÃÀ¹ú¶à¼Òº½¿Õ¹«Ë¾µÄº½°àÑÓÎóºÍ×÷·Ï¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄº½¿Õ¹«Ë¾°üÀ¨Î÷ÄϺ½¿Õ¹«Ë¾¡¢ÃÀ¹úº½¿Õ¹«Ë¾¡¢´ïÃÀº½¿Õ¹«Ë¾¡¢ÃÀ¹úÁªºÏº½¿Õ¹«Ë¾¡¢°¢À­Ë¹¼Óº½¿Õ¹«Ë¾ºÍ½ÝÀ¶º½¿Õ¹«Ë¾¡£¡£¡£¡£¡£¡£Æ¾Ö¤ÃÀ¹úÁª°îº½¿ÕÖÎÀí¾Ö£¨FAA£©µÄ˵·¨£¬£¬ £¬£¬£¬£¬ÏÖÔڸùÊÕÏÒÑ»ñµÃ½â¾ö£¬£¬ £¬£¬£¬£¬ËùÓк½°à¶¼ÒѰ´ÍýÏë¾ÙÐк½ÐС£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/technology/us-airlines-cancel-delay-flights-because-of-aerodata-outage/