ŦԼͨ¹ýÐÂÊý¾Ýй¶֪ͨ·¨°¸ £¬Êý¾Ý¼à¹ÜÔÙ´ÎÉý¼¶ £»2019ÄêÉϰëÄ곬¹ý2300ÍòÕÅÐÅÓþ¿¨ÔÚ°µÍøÏúÊÛ

°ä²¼¹¦·ò 2019-07-29
1¡¢Å¦Ô¼Í¨¹ýÐÂÊý¾Ýй¶֪ͨ·¨°¸ £¬Êý¾Ý¼à¹ÜÔÙ´ÎÉý¼¶


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ŦԼÖÝÖݳ¤Andrew M. Cuomo½üÈÕÇ©ÊðÁËÒ»ÏîеÄÊý¾Ýй¶֪ͨ·¨°¸ £¬¸Ã·¨°¸µÄÃû³ÆÎª¡°×èÖ¹ºÚ¿Í¼°¸Ä½øµç×ÓÊý¾Ý°²È«¡± £¬¼´SHIELD·¨°¸ £¬Ö¼ÔÚ± £»¤Å¦Ô¼¹«ÃñµÄÒþÖÔÊý¾Ý²¢¼ÓÇ¿¸ÃÖݵÄÊý¾Ýй¶Õþ²ß¡£¸Ã·¨°¸À©´óÁËÓ×ÎÒÐÅÏ¢µÄÁìÓò £¬½«ÉúÎï¼ø±ðÐÅÏ¢¡¢µç×ÓÓʼþµØÖ·¼°ÃÜÂë¡¢°²È«ÎÊÌâ¼°´ð°¸ÁÐÈëÆäÖС£¸Ã·¨°¸»¹Ôö³¤ÁËÃñÊ´¦·£ £¬²¢½«Í¨ÖªÒªÇóÀûÓÃÓÚÈκÎÕ¼ÓÐŦԼ¹«ÃñÒþÖÔÐÅÏ¢µÄÓ×ÎÒ»òʵÌå £¬¶ø²»½ö½öÊÇÔÚŦԼÖÝ·¢Õ¹ÒµÎñµÄʵÌå¡£¸Ã·¨°¸»¹½«ÌṩÉí·Ý͵ÇÔ± £»¤·þÎñдÈë˾·¨ £¬ÒªÇóCRAÔÚ²úÉúÉæ¼°Éç»á°²È«ºÅÂëµÄÊý¾Ýй¶ºó±ØÐëÏòÏû·ÑÕßÌṩºÏÀíµÄ± £»¤·þÎñ¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-york-passes-law-to-update-data-breach-notification-requirements/


2¡¢°Ä´óÀûÑǹúÃñÒøÐÐÒò±¨´ðʧÎóй¶1.3Íò¿Í»§ÐÅÏ¢


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


°Ä´óÀûÑǹúÃñÒøÐУ¨NAB£©°µÊ¾ÓÐ1.3ÍòÃû¿Í»§µÄÐÅÏ¢Ô⵽й¶ £¬ÆäÔ­ÒòÊÇËûÃǵÄÓ×ÎÒÊý¾Ýδ¾­Ðí¿É±»ÉÏ´«ÖÁÁ½¼ÒÊý¾Ý·þÎñ¹«Ë¾¡£NABÊ×ϯÊý¾Ý¹ÙGlenda CrispÔÚÒ»·ÝÉêÃ÷ÖаµÊ¾ £¬ÕâÒ»ÊÂÎñÊÇÓɱ¨´ðʧÎóµ¼ÖµÄ £¬¸ÃÐÐΪΥ·´ÁËNABµÄÊý¾Ý°²È«Õþ²ß¡£Ð¹Â¶µÄÊý¾ÝÔ̺¬¿Í»§µÄÐÕÃû¡¢µ®ÉúÈÕÆÚ¡¢ÁªÏµ·½Ê½ÒÔ¼°Éí·ÝÖ¤ºÅÂë¡£¸ÃÒøÐв¹³ä³ÆÃ»ÓеǼʹ´¦»òÃÜÂëй¶ £¬²¢ÇÒûÓÐÖ¤¾ÝÅú×¢ÈκÎÐÅÏ¢±»¸´Ôì»ò½øÒ»²½Åû¶¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.reuters.com/article/us-nab-cyber/australias-nab-says-13000-customers-personal-data-breached-idUSKCN1UL16P


3¡¢¼ÓÄô󰲴ÖÂÔÊ¡ÔâÀÕË÷Èí¼þ¹¥»÷ £¬µ±¾Ö»Ø¾øÖ§¸¶Êê½ð    


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


¼ÓÄô󰲴ÖÂÔÊ¡¶«²¿ÊÐÇøÔÚ6ÔÂ30ÈÕÔâµ½ÀÕË÷Èí¼þ¹¥»÷ £¬ÊÐÕþ·þÎñÊܵ½Ó°Ïì¡£¸ÃÊеÄÍÆËã»úϵͳ±»·¸·¨½Ó¼û £¬²¢Ï°È¾ÁËÀÕË÷Èí¼þ £¬ÊÜÓ°ÏìµÄϵͳÔ̺¬ÊÐÕþµ±¾ÖµÄµç×ÓÓʼþϵͳµÈ¡£¹¥»÷ÕßÒªÇóÒÔ±ÈÌØ±ÒÖ§¸¶7000µ½10000ÃÀÔªµÄÊê½ð £¬µ«ÊÐÕþµ±¾Ö»Ø¾øÁËÕâÒ»ÒªÇó £¬²¢×Ôǰ½øÐÐÊý¾Ý¸´Ô­¡£ÔÚÊÂÎñ²úÉú¼¸Ììºó £¬³ýµç×ÓÓʼþϵͳ±í £¬ËùÓÐÆäËüµÄ³ÇÊзþÎñ¶¼ÒѸ´Ô­Õý³£¡£Êе±¾ÖÒÑÏò¾¯·½ÒÔ¼°°²´ÖÂÔÊ¡ÐÅÏ¢ºÍÒþÖÔרԱ»ã±¨ÁË´ËÊÂÎñ £¬µ±Ç°µ÷²éÈÔÔÚ½øÐÐÖС£


Ô­ÎÄÁ´½Ó£ºhttps://www.spamfighter.com/News-22325-Eastern-Ontario-municipality-suffered-from-a-ransomware-attack.htm


4¡¢SynologyÖÒ¸æÕë¶ÔÆäNASÉ豸µÄ±©Á¦ÆÆ½â¹¥»÷


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


Synology£¨ÈºêÍ£©ÏòÆäNASÉ豸µÄÓû§·¢³öÖÒ¸æ £¬¹¥»÷ÕßÔÚʹÓñ©Á¦¹¥»÷£¨×ֵ乥»÷£©ÆÆ½âÓû§µÄÖÎÀíԱʹ´¦ £¬²¢Í¨¹ýÀÕË÷Èí¼þeCh0raix¼ÓÃÜÓû§µÄÊý¾Ý¡£¸Ã¹¥»÷»î¶¯ÓÚ7ÔÂ19ÈÕÆô¶¯ £¬SynologyÁ¢¿Ì֪ͨÁËTWCERT/CCºÍCERT/CC £¬ÒÔ¹²Í¬½â¾ö´ËÊÂÎñ¡£Synology°²È«ÊÂÎñÏìÓ¦ÍŶӵľ­ÀíKen Lee°µÊ¾ÕâÊÇÒ»´ÎÓÐ×éÖ¯µÄ¹¥»÷ £¬¹¥»÷ÕßʹÓý©Ê¬ÍøÂçµÄµØÖ·À´°µ²ØÆäÕæÕýµÄÔ´IP¡£¸Ã¹«Ë¾½¨Òé¿Í»§Ê¹ÓÃSynologyµÄÍøÂçºÍÕÊ»§ÖÎÀíÉèÖÃÀ´Ô¤·À»ùÓÚ»¥ÁªÍøµÄ¹¥»÷ £¬Ô̺¬ÆôÓ÷À»ðǽ¡¢½öÔÊÐí¹«¹²¶Ë¿ÚÌṩ¸ù»ù·þÎñÒÔ¼°ÆôÓÃÁ½²½ÑéÖ¤¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/ransomware-crooks-hit-synology-nas-devices-with-brute-force-password-attacks/


5¡¢15Äêºóµç×ÓÓʼþÈ䳿MyDoomÔÚÈÔÔÚ´«²¼


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ƾ¾ÝCylance×êÑÐÍŶӵķÖÎö £¬µç×ÓÓʼþÈ䳿MyDoomÔÚµ®Éú15ÄêºóÈÔÔÚÍøÉÏ´«²¼¡£MydoomÖÁÉÙ´Ó2004ÄêÆðÍ·»îÔ¾ £¬ÆäÖØÒª´«²¼²½ÖèÊÇÔÚÊÜϰȾµÄϵͳÉÏÍøÂçµç×ÓÓʼþµØÖ·²¢Í¨¹ý¸½¼þ½øÐз¢ËÍ¡£MyDoomÔÚ´Óǰ¼¸ÄêÖÐά³ÖÏà¶Ô²»±ä £¬ÔÚ2015ÄêÖÁ2018ÄêÆÚ¼äMyDoomÔÚPalo Alto Networks¼ì²âµ½µÄËùÓжñÒâµç×ÓÓʼþÖÐÕ¼1.1£¥ £¬Õ¼¶ñÒ⸽¼þÀà±ðÖеÄ21.4£¥¡£ÖйúºÍÃÀ¹úÊÇMyDoomµÄÖØÒªÏ°È¾Çø £¬¿Æ¼¼¹«Ë¾ÊÇ×î³£¼ûµÄÖ¸±êÐÐÒµ¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/notorious-mydoom-worm-still-on-autopilot-after-15-years/


6¡¢2019ÄêÉϰëÄ곬¹ý2300ÍòÕÅÐÅÓþ¿¨ÔÚ°µÍøÏúÊÛ


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ƾ¾ÝSixgill°ä²¼µÄ°µÍø½ðÈÚڲƭ»ã±¨ £¬ÔÚ2019ÄêÉϰëÄê¹²Óг¬¹ý2300ÍòÕű»µÁÐÅÓþ¿¨ÔÚ°µÍøÉÏÏúÊÛ £¬ÆäÖг¬¹ý1500ÍòÕÅÐÅÓþ¿¨ÊÇÃÀ¹ú¿¯ÐеÄ £¬¶øÆäËü¹ú¶ÈµÄ±»µÁ¿¨ºÅ¾ùÓ×ÓÚ10%¡£À´×Ô¶íÂÞ˹µÄ±»µÁÐÅÓþ¿¨ÊýÁ¿ÖÁÉÙ £¬Õ¼±ÈÏÕЩΪ0£¨2300ÍòÖÐÖ»ÓÐ316ÕÅ¿¨£©¡£57%µÄ±»µÁ¼Í¼ÓëVisa¿¨ÓйØ £¬Æä´ÎÊÇMastercard £¬Õ¼29% £¬AMEXÕ¼12%¡£·¸×ï·Ö×Ó¸üÇàíùÔ̺¬CVVºÅÂ루65£¥£©¶ø²»ÊÇÊý¾Ýת´¢£¨35£¥£©µÄ¼Í¼¡£°µÍøÉϱ»µÁÐÅÓþ¿¨µÄ¼ÛÖµ×îµÍΪ5ÃÀÔª¡£


Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/88990/deep-web/payment-card-data-dark-web.html