CNCERTÐû²¼¡¶2019ÄêÉϰëÄêÎÒ¹ú»¥ÁªÍøÍøÂçÇå¾²Ì¬ÊÆ¡·£»Sweet ChatÒâÍâй¶½ü1000ÍòÓû§µÄÕÕÆ¬¼°Ì¸ÌìÄÚÈÝ

Ðû²¼Ê±¼ä 2019-08-14
1¡¢CNCERTÐû²¼¡¶2019ÄêÉϰëÄêÎÒ¹ú»¥ÁªÍøÍøÂçÇå¾²Ì¬ÊÆ¡·

Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


2019ÄêÉϰëÄê £¬ÎÒ¹ú»ù´¡ÍøÂçÔËÐÐ×ÜÌ寽ÎÈ £¬Î´±¬·¢½Ï´ó¹æÄ£ÒÔÉÏÍøÂçÇå¾²ÊÂÎñ¡£µ«Êý¾Ýй¶ÊÂÎñ¼°Î£º¦¡¢ÓÐ×éÖ¯µÄÂþÑÜʽ¾Ü¾ø·þÎñ¹¥»÷×ÌÈÅÎÒ¹úÖ÷ÒªÍøÕ¾Õý³£ÔËÐС¢Óã²æ´¹ÂÚÓʼþ¹¥»÷ÊÂÎñƵ·¢ £¬¶à¸ö¸ßΣÎó²î±»ÆØ³ö £¬ÎÒ¹úÍøÂç¿Õ¼äÈÔÃæÁÙÖî¶àΣº¦ÓëÌôÕ½¡£CNCERT´Ó¶ñÒâ³ÌÐò¡¢Îó²îÒþ»¼¡¢Òƶ¯»¥ÁªÍøÇå¾²¡¢ÍøÕ¾Çå¾²ÒÔ¼°ÔÆÆ½Ì¨Çå¾²¡¢¹¤ÒµÏµÍ³Çå¾²¡¢»¥ÁªÍø½ðÈÚÇå¾²µÈ·½Ãæ £¬¶ÔÎÒ¹ú»¥ÁªÍøÍøÂçÇå¾²ÇéÐοªÕ¹ºê¹Û¼à²â¡£Êý¾ÝÏÔʾ £¬Óë2018ÄêÉϰëÄêÊý¾Ý½ÏÁ¿ £¬2019ÄêÉϰëÄêÎÒ¹ú¾³ÄÚͨÓÃÐÍ¡°ÁãÈÕ¡±Îó²îÊÕ¼ÊýÄ¿ £¬Éæ¼°Òªº¦ÐÅÏ¢»ù´¡ÉèÊ©µÄÊÂÎñÐÍÎó²îת´ïÊýÄ¿ £¬Ôâ¸Ä¶¯¡¢Ö²ÈëºóÃÅ¡¢·ÂÃ°ÍøÕ¾ÊýÄ¿µÈÓÐËùÉÏÉý £¬ÆäËûÖÖÖÖ¼à²âÊý¾ÝÓÐËù½µµÍ»ò»ù±¾³Öƽ¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.cert.org.cn/publish/main/upload/File/2019%20First%20half%20year%20.pdf


2¡¢Sweet ChatÒâÍâй¶½ü1000ÍòÓû§µÄÕÕÆ¬¼°Ì¸ÌìÄÚÈÝ


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


Çå¾²Ñо¿Ô±Darryl Burke·¢Ã÷̸ÌìÓ¦ÓÃSweet ChatµÄÒ»¸ö²»Çå¾²µÄ·þÎñÆ÷̻¶ÁËÁè¼Ý1000ÍòÓû§µÄÃô¸ÐÐÅÏ¢ £¬ÕâЩÐÅÏ¢°üÀ¨ÊµÊ±Ì¸ÌìÄÚÈÝÒÔ¼°Ë½ÈËÕÕÆ¬µÈ¡£BurkeÌåÏÖÈκÎÓµÓÐMQTT¹¥»÷¹¤¾ßµÄÈ˶¼¿ÉÒÔÔÚÏßÉó²éÕâЩÐÅÏ¢¡£Ñо¿Ö°Ô±ÓÚ7ÔÂ21ÈÕ֪ͨÁ˸ù«Ë¾ £¬µ«¸Ã¹«Ë¾Ö±ÖÁ8ÔÂ12ÈղŶԸ÷þÎñÆ÷¾ÙÐÐÁËÔÝʱÐÞ¸´¡£


Ô­ÎÄÁ´½Ó£ºhttps://blog.burke-consulting.net/sweet-chat/


3¡¢LEEÊý¾Ý¿âδÉèÃÜÂë £¬369ÍòÓû§µÄÒþ˽ÐÅϢй¶

Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£

Çå¾²Ñо¿Ô±Jeremiah Fowler·¢Ã÷ÊôÓÚ·ÇÓªÀû×éÖ¯LEEµÄÒ»¸öElasticsearchÊý¾Ý¿âδÊܱ£»¤ £¬µ¼ÖÂ369ÍòÓû§µÄ520ÍòÌõÃô¸Ð¼Í¼й¶¡£Êý¾Ý¿âÖаüÀ¨µÄÃô¸ÐÐÅÏ¢°üÀ¨ÐÕÃû¡¢¼Òͥסַ¡¢ÐÔ±ð¡¢ÖÖ×åÒÔ¼°IPµØÖ·¡¢¶Ë¿ÚºÅ¡¢Â·¾¶ÒÔ¼°´æ´¢ÐÅÏ¢µÈ¡£ÔÚ½Óµ½±¨¸æºó £¬¸Ã×éÖ¯ÓÚ7ÔÂ31ÈÕÒÆ³ýÁËÊý¾Ý¿âµÄ¹ûÕæ»á¼ûȨÏÞ¡£


Ô­ÎÄÁ´½Ó£ºhttps://securitydiscovery.com/leadership-for-educational-equity/


4¡¢Charleston CountyÒâÍâй¶800ÃûÔ±¹¤µÄÃô¸ÐÐÅÏ¢


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


ÃÀ¹úCharleston CountyÒâÍâй¶ÁË824ÃûÔ±¹¤µÄÒþ˽ÐÅÏ¢¡£Æ¾Ö¤ÍâµØ¾¯Ô±³¤°ì¹«ÊÒÎüÊÕµ½µÄ֪ͨ £¬ÕâÒ»ÊÂÎñµÄÒòÓÉÊÇÈËΪʧÎó £¬Ò»ÃûHR¹ýʧµØ½«Ô±¹¤ÐÅÏ¢ÁÐ±í·¢Ë͸øÒ»ÃûǰԱ¹¤¡£ÁбíÖеÄÐÅÏ¢°üÀ¨ÐÕÃû¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢ÐÔ±ð¡¢Ð½Ë®¡¢¹ÍÓ¶ÈÕÆÚÒÔ¼°Ïà¹ØÆÀ¼ÛµÈ¡£Ã»ÓÐÒøÐп¨ÐÅϢй¶¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.live5news.com/2019/08/13/data-breach-exposes-information-more-than-charleston-co-employees/

5¡¢ÐÂAndroidÒøÐÐľÂíCerberus £¬Ãé×¼30¶à¼ÒÒøÐÐ


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


ÐÂAndroidÒøÐÐľÂíCerberusÕýÔÚ°µÍøÌṩ×âÓ÷þÎñ¡£CerberusµÄ¿ª·¢ÕßÔÚTwitterÉϳÆCerberus²¢Ã»ÓÐʹÓÃÈκÎÏÖÓÐÒøÐÐľÂíµÄ´úÂë¡£Ëû»¹ÌåÏÖ¸ÃľÂíÒÑÔÚÒÑÍùÁ½ÄêÖб»ÓÃÓÚ˽ÃܵĹ¥»÷»î¶¯ £¬²¢ÓÚÁ½¸öÔÂǰ×îÏÈÌṩ³ö×â·þÎñ £¬¼ÛǮΪ2000ÃÀÔªÒ»¸öÔ £¬°ëÄê»òÄê×âÓÐÓŻݡ£Æ¾Ö¤Threat FabricÑо¿Ö°Ô±µÄ±¨¸æ £¬¸ÃÒøÐÐľÂíͬʱ»¹¾ßÓÐÔ¶¿Ø¹¦Ð§ £¬¿ÉÕë¶Ô30¸öÄ¿µÄ×éÖ¯ £¬°üÀ¨7¼Ò·¨¹úÒøÐС¢7¼ÒÃÀ¹úÒøÐкÍ1¼ÒÈÕ±¾ÒøÐеÈ¡£

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2019/08/cerberus-android-banking-trojan.html

6¡¢Ð¶ñÒâÈí¼þXwo £¬Ö÷ÒªÇÔÈ¡Óû§µÄµÇ¼ƾ֤


Ò«ÊÀÓéÀÖ-¿Æ¼¼¸³Äܳ¡¾°,ÈÃÓéÀÖ¸üÓÐȤ¡£


AT&TÑо¿ÍŶӷ¢Ã÷жñÒâÈí¼þXwo £¬¸Ã¶ñÒâÈí¼þÖ÷ҪɨÃèϵͳÉÏ´æ´¢µÄƾ֤ÒÔ¼°Ì»Â¶µÄ·þÎñ £¬²¢½«É¨ÃèЧ¹û·¢ËÍÖÁC&C·þÎñÆ÷¡£ËüɨÃèµÄÄ¿µÄ·þÎñ°üÀ¨Ê¹ÓÃĬÈÏÃÜÂëµÄMongoDB¡¢Memcached¡¢MySQL¡¢PostgreSQL¡¢Tomcat¡¢RedisÒÔ¼°FTPµÈ £¬Ëü»¹¿ÉÒÔ´ÓĬÈÏSVN¼°Git·¾¶ÍøÂçÐÅÏ¢ £¬Ñо¿Ö°Ô±ÒÔΪÕâÖÖÐÅÏ¢ÍøÂç¿ÉÄÜÊÇΪδÀ´µÄ´ó¹æÄ£¹¥»÷»î¶¯×ö×¼±¸¡£XwoµÄ»ù´¡ÉèÊ©ÓëMongoLock¼°X Bash±£´æÏàËÆÖ®´¦ £¬ÕâÒâζ×ÅÕâÈý¸ö¶ñÒâÈí¼þ¿ÉÄÜÀ´×ÔÓÚͳһ¸ö¹¥»÷Õß¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bmmagazine.co.uk/business/new-malware-xwo-can-swipe-all-your-credentials-at-once/