FacebookÔÞ³ÉÏòFTCÖ§¸¶50ÒÚÃÀÔª·£¿£¿î;Ó¡¶ÈС¶îÐÅ´ûÒøÐÐJana CashÒâÍâй¶260ÍòÓû§ÉúÒâÐÅÏ¢

Ðû²¼Ê±¼ä 2019-07-25
1¡¢Ó¡¶ÈС¶îÐÅ´ûÒøÐÐJana CashÒâÍâй¶260ÍòÓû§ÉúÒâÐÅÏ¢


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Ñо¿Ö°Ô±·¢Ã÷Ó¡¶ÈС¶îÐÅ´ûÒøÐÐJana CashµÄÒ»¸öÊý¾Ý¿âδÊÜÃÜÂë±£»£»¤£¬£¬£¬£¬£¬µ¼ÖÂÊý°ÙÍòÓû§µÄÉúÒâÐÅÏ¢¿É±»¹ûÕæ»á¼û¡£¡£Ð¹Â¶µÄÃô¸ÐÐÅÏ¢°üÀ¨260ÍòÓû§µÄÉúÒâ¼Í¼£¬£¬£¬£¬£¬ÒÔ¼°ËûÃǵÄKYC PIIÐÅÏ¢£¬£¬£¬£¬£¬ÀýÈçÇ®°üID¡¢Óû§Ãû¡¢µç×ÓÓʼþ¡¢IPµØµãºÍ¶Ë¿ÚºÅµÈ¡£¡£ÔÚÑо¿Ö°Ô±×ª´ï¸Ã¹«Ë¾ºó£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÒѶÔElasticÊý¾Ý¿â¾ÙÐб£»£»¤¡£¡£ÏÖÔÚÉв»ÇåÎú¸ÃÊý¾Ý¿â̻¶Á˶೤ʱ¼äÒÔ¼°ÊÇ·ñÒѱ»ÆäËûÈË»á¼û¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://securitydiscovery.com/jana-bank-data-leak/


2¡¢Èðµä¼ÓÃÜÇ®±ÒÉúÒâËùQuickBitй¶30ÍòÌõ¿Í»§¼Í¼


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Èðµä¼ÓÃÜÇ®±ÒÉúÒâËùQuickBitת´ï³Æ£¬£¬£¬£¬£¬Ò»¸öµÚÈý·½ÏàÖúͬ°éµÄMongoDBδÉèÃÜÂ룬£¬£¬£¬£¬µ¼ÖÂ30ÍòQuickBit¿Í»§µÄÐÅϢй¶¡£¡£Ð¹Â¶µÄÊý¾Ý°üÀ¨Óû§µÄÐÕÃû¡¢µØµã¡¢ÓÊÏ䵨µã¡¢ÐԱ𡢳öÉúÈÕÆÚµÈ¡£¡£QuickBitÇ¿µ÷³ÆÃ»ÓÐÃÜÂë¡¢Éç»áÇå¾²ºÅÂëºÍ¼ÓÃÜÇ®±ÒÃÜԿй¶¡£¡£¸ÃÊÂÎñÓÉÇå¾²Ñо¿Ô±Paul Bischoff·¢Ã÷£¬£¬£¬£¬£¬¹²Ó°ÏìÁË2%µÄQuickBitÓû§¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.coindesk.com/crypto-exchange-quickbit-confirms-data-breach-impacting-300000-users


3¡¢Graduation AllianceÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬ÊýǧÃûѧÉúÐÅϢй¶


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Graduation Alliance³ÆÆäЧÀÍÆ÷ÔâδÊÚȨµÚÈý·½ÈëÇÖ£¬£¬£¬£¬£¬µ¼ÖÂÌïÄÉÎ÷ÖݵÄÊýǧÃû¹«Á¢Ñ§Ð£Ñ§ÉúµÄСÎÒ˽¼ÒÐÅϢй¶¡£¡£Ð¹Â¶µÄÐÅÏ¢°üÀ¨Ñ§ÉúµÄÐÕÃû¡¢³öÉúÈÕÆÚ¡¢ÐÔ±ð¡¢ÖÖ×å¡¢ACT·ÖÊýµÈ£¬£¬£¬£¬£¬µ«²»°üÀ¨ÈκÎÉç»áÇå¾²ºÅÂëºÍµØµãÐÅÏ¢¡£¡£Graduation AllianceÒÑÏòTHECºÍ½ÌÓý²¿×ª´ïÁË´Ë´ÎÊÂÎñ£¬£¬£¬£¬£¬²¢¹ÍÓ¶ÁËÇ徲ר¼Ò¶Ô´ËÊÂÎñ¾ÙÐÐÖÜÈ«µÄÊӲ졣¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.wsmv.com/graduation-alliance-data-breach-statement/pdf_7eab99b0-ad84-11e9-a1cd-3bab9f09eb00.html


4¡¢Ñо¿ÍŶÓÐû²¼¹ØÓÚFIN8¶ñÒ⹤¾ßBADHATCHµÄÆÊÎö±¨¸æ

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Gigamon ATRÑо¿ÍŶÓÐû²¼FIN8¶ñÒ⹤¾ßBADHATCHµÄÆÊÎö±¨¸æ¡£¡£BADHATCHÊÇÒ»¸ö·´µ¯shell¹¤¾ß£¬£¬£¬£¬£¬ÒÔÒ»¸ö×Ôɾ³ýPowerShell¾ç±¾×îÏÈ¡£¡£¸Ã¾ç±¾°üÀ¨64λshellcodeµÄ×Ö½ÚÊý×飬£¬£¬£¬£¬Ëü½«¸´ÖƵ½PowerShellÀú³ÌµÄÄÚ´æÖУ¬£¬£¬£¬£¬²¢Í¨¹ýŲÓÃCreateThreadÀ´Ö´ÐС£¡£ÓÉÓÚ×Ö½ÚÊý×éºóÃæµÄÏÂÁîÊÇbase64±àÂëµÄ£¬£¬£¬£¬£¬Òò´Ë¿ÉÄÜÌÓ±ÜÇå¾²²úÆ·µÄ¼ì²â¡£¡£Æä·´µ¯shell½«ÅþÁ¬µ½Ò»¸öÓ²±àÂëµÄIPµØµã£¬£¬£¬£¬£¬²¢ÇÒûÓÐÓòÃû¡£¡£Ñо¿Ö°Ô±»¹½ÏÁ¿ÁËPowerSniff¡¢PUNCHBUGGYºÍBADHATCHÖ®¼äµÄÇø±ð¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://atr-blog.gigamon.com/2019/07/23/abadbabe-8badf00d:-discovering-badhatch-and-a-detailed-look-at-fin8's-tooling/


5¡¢ÃÀ¹úÓ¡µÚ°²ÄÉÖÝVigoÏØÔâµ½ÀÕË÷Èí¼þ¹¥»÷

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÃÀ¹úÓ¡µÚ°²ÄÉÖݵÄVigoÏØÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬¸ÃÏØÕýÔÚ¶Ô´ËÊÂÎñ¾ÙÐÐÊӲ졣¡£¸ÃÏØµÄÐÐÕþÖ÷×ùJudith AndersonÌåÏÖÓÚÖܶþÔçÉÏÎüÊÕµ½ÁËÀÕË÷Èí¼þ¹¥»÷֪ͨ¡£¡£¹ÙÔ±ÌåÏÖÕýÔÚ¼ì²â¸ÃÏØµÄÅÌËã»úϵͳÊÜÓ°ÏìµÄˮƽ¡£¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÖÐʹÓõÄÀÕË÷Èí¼þµÄÀàÐÍ£¬£¬£¬£¬£¬¸ÃÏØÒ²Ã»ÓÐÎüÊÕµ½Êê½ðÇëÇ󡣡£IT²¿·ÖÖ÷¹ÜJeremy SnowdenÌåÏÖÉв»ÇåÎúÊÇ·ñÓÐÖ÷ÒªÐÅϢй¶¡£¡£ÕâÊǽüÆÚÕë¶ÔÃÀ¹úÏØÕþ¸®²¿·ÖµÄÀÕË÷Èí¼þ¹¥»÷µÄ×îÐÂÒ»Æð¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.apnews.com/65b22b56e7384c7db4031a07c92c64f9


6¡¢FacebookÔÞ³ÉÏòFTCÖ§¸¶50ÒÚÃÀÔª·£¿£¿î

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


¾ÝÍâý±¨µÀ£¬£¬£¬£¬£¬FacebookÒÑÓëÃÀ¹úÁª°îÉÌҵίԱ»á£¨FTC£©¸æ¿¢Ï¢ÕùЭÒ飬£¬£¬£¬£¬ÔÞ³ÉÖ§¸¶50ÒÚÃÀÔªµÄ·£¿£¿î£¬£¬£¬£¬£¬²¢ÊµÑéеÄÒþ˽±£»£»¤¿ò¼ÜºÍÏòFTCÌṩеļà²â¹¤¾ß¡£¡£ÕâÊÇÓÐÊ·ÒÔÀ´¶Ô¹«Ë¾¾ÙÐеÄ×î´óµÄÏûºÄÕßÒþ˽й¶·£¿£¿î£¬£¬£¬£¬£¬Ò²ÊÇÃÀ¹úÕþ¸®¶ÔÈκÎÎ¥¹æÐÐΪµÄ×î´óÒ»±Ê·£¿£¿î¡£¡£Æ¾Ö¤Ï¢ÕùЭÒ飬£¬£¬£¬£¬Facebook»¹ÐèÒª½¨ÉèÒ»¸ö¶àÌõÀíµÄºÏ¹æÏµÍ³£¬£¬£¬£¬£¬¸ÃϵͳÓÉ×ÔÁ¦µÄÒþ˽±£»£»¤Î¯Ô±»á¡¢ºÏ¹æ¹ÙÔ±ºÍµÚÈý·½ÆÀ¹ÀÔ±×é³É£¬£¬£¬£¬£¬ÒÔ×èֹδÀ´Óû§Òþ˽±»ÓÕÆ­µÄÊÂÎñ±¬·¢¡£¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/technology/facebook-to-pay-over-5-billion-following-ftc-sec-settlements/