UniswapºÍLendf.meÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬Ëðʧ2500ÍòÃÀÔª£»£»µÂ¹úÕþ¸®ÔâCOVID-19´¹ÂÚ¹¥»÷ËðʧÊýÍòÍòÅ·Ôª

Ðû²¼Ê±¼ä 2020-04-21

1.FPGAоƬStarbleedÎó²î£¬£¬£¬£¬£¬£¬Ó°ÏìÈüÁé˼¶à¸ö²úÆ·


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Ñо¿Ö°Ô±·¢Ã÷FPGAоƬ±£´æStarbleedÎó²î£¬£¬£¬£¬£¬£¬Ó°ÏìÁËÈüÁé˼7ϵÁеÄSpartan¡¢Artix¡¢Kintex¡¢Virtex×ÓϵÁжà¸ö²úÆ·¡£¡£ÓÉÓÚÎó²îΪӲ¼þ¼¶±ðÎó²î£¬£¬£¬£¬£¬£¬Òò¶øÖ»ÄÜͨ¹ýÌæ»»Ð¾Æ¬À´ÐÞ¸´Îó²î¡£¡£Çå¾²Ñо¿Ö°Ô±·¢Ã÷¿ÉÒÔͨ¹ý½âÃܱ»¼ÓÃܵıÈÌØÁ÷À´»á¼ûºÍÐÞ¸ÄÓÃÓÚ±à³ÌµÄÎļþ¡£¡£Òò´Ë£¬£¬£¬£¬£¬£¬ºÚ¿Í¿ÉÒÔʹÓøÃÎó²îÍêÈ«¿ØÖÆFPGAоƬ£¬£¬£¬£¬£¬£¬²¢ÇÒ¿ÉÄÜ͵ȡ±ÈÌØÁ÷ÖеÄ֪ʶ²úȨ¡£¡£µÂ¹úMax PlanckÑо¿ËùµÄChristof Paar½ÌÊÚÌåÏÖ£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÉõÖÁ¿ÉÒÔ¾ÙÐÐÔ¶³Ì¹¥»÷£¬£¬£¬£¬£¬£¬»òÊÇÏòFPGAоƬֲÈëÓ²¼þľÂí¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/04/20/starbleed-vulnerability/


2.UniswapºÍLendf.meÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬Ëðʧ2500ÍòÃÀÔª


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ºÚ¿Í¹¥»÷ÁËUniswapÉúÒâËùºÍLendf.me½è´ûƽ̨£¬£¬£¬£¬£¬£¬ÍµÈ¡Á˼ÛÖµÁè¼Ý2500ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò¡£¡£´Ë´Î¹¥»÷»®·Ö±¬·¢ÔÚÖÜÁùºÍÖÜÈÕ£¬£¬£¬£¬£¬£¬ÊÓ²ìÖ°Ô±ÒÔΪÕâÁ½´Î¹¥»÷ºÜ¿ÉÄÜÊÇͳһ¸öÍÅ»ïÌᳫµÄ¡£¡£¾ÝÊӲ죬£¬£¬£¬£¬£¬ºÚ¿ÍÁ¬ÏµÁ˲î±ðÇø¿éÁ´ÊÖÒÕÖеĶà¸öÎó²î×é³ÉÁËÒ»´ÎÖØ´óµÄÖØÈë¹¥»÷£¬£¬£¬£¬£¬£¬ÔÚԭʼÉúÒâ±»Åú×¼»ò¾Ü¾øÖ®Ç°Ò»Ö±µØÈ¡Ç®¡£¡£¾Ý³ÆºÚ¿ÍÔڴ˴ι¥»÷ÖÐʹÓÃÁËOpenZeppelin¹«Ë¾ÓÚ2019Äê7ÔÂÔÚGitHubÉÏÐû²¼µÄÎó²îʹÓᣡ£Ö±µ½±¾ÎÄÐû²¼Ê±£¬£¬£¬£¬£¬£¬Uniswap×ܹ²ËðʧÁË30ÍòÃÀÔªÖÁ110ÍòÃÀÔª£¬£¬£¬£¬£¬£¬¶øLendf.meËðʧÁËÁè¼Ý2450ÍòÃÀÔª¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬ÕâÁ½¸öÍøÕ¾¾ùÒѹرգ¬£¬£¬£¬£¬£¬ÒÔ±ÜÃâ½øÒ»²½µÄ¹¥»÷¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/hackers-steal-25-million-worth-of-cryptocurrency-from-uniswap-and-lendf-me/


3.CISI¹ÙÍø±»Ö²Èë¶ñÒâ´úÂ룬£¬£¬£¬£¬£¬Óû§²ÆÎñÐÅÏ¢±»ÇÔ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Ó¢¹úÌØÐí֤ȯͶ×ÊЭ»á£¨CISI£©ÒÑÈ·ÈÏÆä¹ÙÍø±»Ö²Èë¶ñÒâ´úÂ룬£¬£¬£¬£¬£¬Óû§µÄ²ÆÎñÐÅÏ¢¿ÉÄܱ»ÇÔ¡£¡£CISIÔÚ×Éѯ¹«Ë¾±ÏÂíÍþ£¨KPMG£©µÄ×ÊÖú϶ԴËÊ¿ªÕ¹ÁËÊӲ죬£¬£¬£¬£¬£¬·¢Ã÷¹¥»÷Õßͨ¹ýµÚÈý·½Ó¦ÓóÌÐò»ñµÃÁËCISIÍøÕ¾µÄ»á¼ûȨÏÞ²¢ÏòÍøÕ¾Ö²ÈëÁ˶ñÒâ´úÂ룬£¬£¬£¬£¬£¬È»ºóÔÚÓû§ÔÚÏßÖ§¸¶Ê±ÍµÈ¡Æä²ÆÎñÐÅÏ¢¡£¡£CISIÌåÏÖ¹¥»÷¿ÉÄܱ¬·¢ÔÚ2020Äê2ÔÂÖÐÑ®£¬£¬£¬£¬£¬£¬ËûÃÇÒѾ­ÁªÏµÁË5785¸öÔÚ2020Äê2ÔÂ1ÈÕÖÁ2020Äê4ÔÂ15ÈÕÖ®¼ä±¬·¢¹ýÉúÒâµÄ¿Í»§£¬£¬£¬£¬£¬£¬²¢Ô¤¼Æ´ËÊÂÎñ»áÓ°Ïìµ½½ü1000ÃûÓû§¡£¡£


Ô­ÎÄÁ´½Ó£º

https://international-adviser.com/cisi-payment-breach-leaves-members-vulnerable-to-fraud/


4.µÂ¹úÕþ¸®ÔâCOVID-19´¹ÂÚ¹¥»÷ËðʧÊýÍòÍòÅ·Ôª


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


µÂ¹ú±±ÍþÖÝÕþ¸®ÓÉÓÚÆäÓÃÀ´·Ö·¢Covid19¾ÈÖú½ðµÄÍøÕ¾µÄ²»Çå¾²ÐÔ£¬£¬£¬£¬£¬£¬ËðʧÁËÊýÍòÍòÅ·Ôª¡£¡£ÓÉÓÚ¸ÃÍøÕ¾½öÒªÇóÍâµØ×¡ÃñºÍ¹«Ë¾Ìîд±í¸ñ£¬£¬£¬£¬£¬£¬¶øÃ»ÓнÓÄÉÈκÎÌØÁíÍâÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬Ê¹µÃºÚ¿Í¿ÉÒÔ¾ÙÐд¹ÂÚ¹¥»÷¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬ºÚ¿ÍαÔìÁ˸ùٷ½ÍøÕ¾£¬£¬£¬£¬£¬£¬²¢Í¨¹ý·¢Ë͵ç×ÓÓʼþµÄ·½·¨ÓÕʹÓû§Éϰ¶´ËαÔìÍøÕ¾ÒÔÇÔÈ¡ÆäСÎÒ˽¼ÒÐÅÏ¢¡£¡£Ö®ºóʹÓÃÕæÊÊÓû§µÄСÎÒ˽¼ÒÐÅÏ¢ÏòÕþ¸®Ìá³öÉêÇë¾ÈÖú½ðµÄÇëÇ󣬣¬£¬£¬£¬£¬²¢½«»ãÈë×ʽðµÄÒøÐÐÕÊ»§Ð޸ijÉËûÃÇ×Ô¼ºµÄÕË»§¡£¡£¾ÝHandelsblatt±¨µÀ£¬£¬£¬£¬£¬£¬Õþ¸®ÒÑÊÕµ½38Íò·ÝÒªÔ®ÖúÉêÇ룬£¬£¬£¬£¬£¬²¢ÒѾ­ÔÞ³ÉΪÆäÖеÄ36Íò·Ý¸¶¿î¡£¡£¾ÝµÂ¹úµçÊǪ́Tagesschau±¨µÀ£¬£¬£¬£¬£¬£¬ÆäÖÐÓÐ3500ÖÁ4000·ÝÉêÇëÊǼٵ쬣¬£¬£¬£¬£¬¼òªԤ¼Æ±±ÍþÖÝÕþ¸®ÏÖÔÚµÄËðʧÖÁÉÙΪ3150ÍòÅ·Ôª£¨3425ÍòÃÀÔª£©£¬£¬£¬£¬£¬£¬×î¸ß¿ÉÄÜΪ1ÒÚÅ·Ôª£¨1.09ÒÚÃÀÔª£©¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/german-government-might-have-lost-tens-of-millions-of-euros-in-covid-19-phishing-attack/


5.ºÉÀ¼COVID-19¸ú×ÙÓ¦ÓÃCovid19 Alertй¶»¼ÕßÐÅÏ¢


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


¾ÝRTL NieuwsÍøÕ¾±¨µÀ£¬£¬£¬£¬£¬£¬ºÉÀ¼ÄâÓÃÀ´¸ú×ÙCOVID-19»¼ÕßµÄÓ¦ÓóÌÐòCovid19 AlertÒâÍâй¶Óû§ÐÅÏ¢¡£¡£Covid 19 AlertµÄ½²»°ÈËÌåÏÖ£¬£¬£¬£¬£¬£¬ÔÚËûÃǽ«Ô´´úÂë·¢Ë͸ø×¨¼Ò¾ÙÐÐÆÊÎöʱ£¬£¬£¬£¬£¬£¬²»Ð¡ÐĽ«Óû§Êý¾Ý·ÅÔÚÁËÍøÉÏ¡£¡£ÕâЩԴÎļþÖаüÀ¨ImmotefÓ¦ÓõÄÊý¾Ý¿â£¬£¬£¬£¬£¬£¬ÄÚÀï´æ·ÅÓкÉÀ¼Óû§µÄÊý¾Ý£¬£¬£¬£¬£¬£¬°üÀ¨½ü200¸öÓû§µÄÐÕÃû¡¢µç×ÓÓʼþµØµãºÍ¹þÏ£ÃÜÂë¡£¡£Covid19 Alert¿ª·¢ÍŶÓÌåÏÖ¸ÃÊÂÎñÒѱ¨¸æ¸øºÉÀ¼Êý¾Ý±£»£»¤¾Ö£¬£¬£¬£¬£¬£¬²¢ÇÒÕýÔÚÆð¾¢½â¾ö´ËÇå¾²ºÍÒþ˽ÎÊÌâ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/101914/digital-id/coronavirus-contact-tracing-app-data-leak.html


6.Ñо¿»ú¹¹·¢Ã÷Õë¶ÔÕþ¸®¾­¼Ã´Ì¼¤ÍýÏëµÄ¶ñÒâÓòÃû¼¤Ôö


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Check PointµÄÑо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬½ü¼¸ÖÜÕë¶ÔÕþ¸®¾­¼Ã´Ì¼¤ÍýÏëºÍ¾ÈÔ®ÍýÏëµÄ¶ñÒâÓòÃû¼±¾çÔöÌí£¬£¬£¬£¬£¬£¬Ö¼ÔÚÆ­È¡Óû§µÄСÎÒ˽¼ÒÐÅÏ¢¾ÙÐÐڲƭ¡£¡£´Ó3ÔÂ16ÈÕÃÀ¹úÕþ¸®Ìá³öÁ˾­¼Ã´Ì¼¤ÍýÏë×îÏÈ£¬£¬£¬£¬£¬£¬Ð¶ñÒâÓòÃûµÄ×¢²áÊýÄ¿ËæÖ®ÔöÌíµ½Ç°¼¸ÖܵÄ3.5±¶£¬£¬£¬£¬£¬£¬¶ø´¹ÂÚ¹¥»÷µÄ´ÎÊýÃÍÔöÖÁÖðÈÕ14000´Î£¬£¬£¬£¬£¬£¬Ô¼ÎªÖ®Ç°µÄ6±¶£¬£¬£¬£¬£¬£¬4ÔÂ7-14ÈÕ¸üÊǼ¤ÔöÖÁÖðÈÕ20000´Î¡£¡£×Ô1Ô·ÝCOVID-19±¬·¢ÒÔÀ´£¬£¬£¬£¬£¬£¬ÒѾ­ÓÐÔ¼68000¸öÓë¹Ú×´²¡¶¾Ïà¹ØµÄÐÂÓòÃû±»×¢²á£¬£¬£¬£¬£¬£¬ÆäÖÐ4ÔÂ2ÈÕºóÐÂ×¢²áÁË17000¸öÓò£¬£¬£¬£¬£¬£¬ÆäÖÐ2£¥ÊǶñÒâÓòÃû£¬£¬£¬£¬£¬£¬¶ø21£¥Îª¿ÉÒÉÓòÃû¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬ÕâЩ¶ñÒâÍøÕ¾ÍýÏëʹÓÃCovid-19¾­¼Ã´Ì¼¤ÍýÏëµÄÐÂÎÅÀ´ÓÕʹÓû§Éϰ¶¸ÃÍøÕ¾£¬£¬£¬£¬£¬£¬²¢ÇÒÇÔÈ¡Êܺ¦ÕßµÄСÎÒ˽¼ÒÐÅÏ¢²¢ÇÒÌᳫ²ÆÎñڲƭµÈ¹¥»÷¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.jpost.com/israel-news/israeli-researchers-hackers-aiming-to-exploit-government-financial-aid-625218