Binance±»µÁ7000¶àBTC£»GE CommunicatorºóÃÅÕË»§£»½©Ê¬ÍøÂçMirai´úÂë¿Éµ¼ÖÂC2·þÎñÆ÷Íß½â

Ðû²¼Ê±¼ä 2019-05-08
1¡¢AIHS¹«Ë¾²¿·Ö»¼Õß¼°¹©Ó¦É̵ÄÃô¸ÐÐÅϢй¶

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
ÃÀ¹úÓ¡¶È¿µ½¡Óë·þÎñ¹«Ë¾£¨AIHS£©±¬·¢Êý¾Ýй¶ÊÂÎñ£¬Æ¾Ö¤¸Ã¹«Ë¾Ðû²¼µÄ֪ͨ£¬Ò»Ãûǰ¹ÍÔ±ÔÚÈÎְʱ´ú½«²¿·ÖAIHSµç×ÓÓʼþת·¢µ½ÆäСÎÒ˽¼ÒÓÊÏ䣬µ¼Ö²¿·Ö»¼Õß¡¢Ô±¹¤¼°¹©Ó¦É̵ÄÃô¸ÐÐÅϢй¶¡£ÊÜËðµÄ»¼ÕßÐÅÏ¢°üÀ¨ÐÕÃû¡¢Õ˵¥Ã÷ϸ¡¢Ò½Áưü¹ÜÊý¾Ý¡¢½ÓÊÜAIHS·þÎñµÄÈÕÆÚ¼°Ö§¸¶½ð¶îµÈ£¬ÏÖÔÚÉв»ÇåÎúÊÇ·ñÓл¼ÕßÊý¾Ý±»ÀÄÓá£ÕâÒ»ÊÂÎñ±¬·¢ÔÚ2ÔÂ26ÈÕÖÁ3ÔÂ6ÈÕʱ´ú¡£AIHS½«ÎªÊÜÓ°ÏìµÄ»¼ÕßÌṩ12¸öÔµÄÉí·Ý͵ÇÔ±£»¤·þÎñ¡£

Ô­ÎÄÁ´½Ó£ºhttps://cyware.com/news/aihs-reports-data-breach-involving-information-related-to-employees-patients-and-vendors-f823c1cd

2¡¢BVHMÒâÍâй¶²¿·ÖѧÉúµÄСÎÒ˽¼ÒÃô¸ÐÐÅÏ¢

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
¾É½ðɽ¹«Á¢Ñ§Ð£BVHMµÄÊÂÇéÖ°Ô±ÒâÍ⽫Ŀ½ñ¼°ÒÑÍùµÄѧÉúÊý¾ÝÏòһЩBVHMÉçÇø³ÉÔ±·ÖÏí£¬µ¼ÖÂÕâЩÉçÇø³ÉÔ±¿ÉÔÚ½ü2¸öСʱÄÚ»á¼ûѧÉúÐÅÏ¢¡£Éæ¼°µÄÐÅÏ¢°üÀ¨Ñ§ÉúµÄÐÕÃû¡¢ID¡¢Óû§Ãû¡¢SFUSDϵͳµÄÃÜÂë¡¢µç×ÓÓʼþ¼°Ñ§Ï°¹¤¾ßµÈ¡£ÔÚµÃÖª´Ëʺó£¬BVHM¸ü¸ÄÁËËùÓÐÊÜÓ°ÏìѧÉúµÄÃÜÂ룬²¢¶Ô´ËÊÂÎñÕö¿ªÊӲ졣

Ô­ÎÄÁ´½Ó£ºhttps://cyware.com/news/buena-vista-horace-mann-student-data-accidentally-shared-with-bvhm-community-members-8b2bae2a

3¡¢GE CommunicatorºóÃÅÕË»§¼°ÌáȨÎó²î

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
¹¤ÒµÍøÂçÇå¾²³§ÉÌDragosÑо¿Ö°Ô±Reid Wightman·¢Ã÷£¬Í¨ÓÃµçÆøµÄGE CommunicatorÈí¼þ±£´æ5¸öÇå¾²Îó²î£¬°üÀ¨Ó²±àÂëµÄºóÃÅÕË»§ºÍÌáȨÎó²îµÈ¡£GE CommunicatorÓÃÓÚÉèÖú͵÷ÊÔGEµÄ¹¦ÂÊÕÉÁ¿ÒÇÆ÷£¬¸Ã¹¤¾ß±»ÆÕ±éÓÃÓÚÌìϸ÷µØµÄµçÁ¦¹«Ë¾ºÍ´óÐÍÖÆÔìÉ̵È¡£Ñо¿Ö°Ô±ÌåÏÖÕâЩÎó²î¿ÉÔÊÐí¹¥»÷Õß»ñµÃÊÂÇéÕ¾µÄÖÎÀíȨÏÞ£¬µ«Ê¹ÓÃËüÃÇÐèÒªÍøÂç»òÍâµØ»á¼ûȨÏÞ¡£GEÐû²¼GE Communicator 4.0.517ÐÞ²¹ÁËÕâЩÎó²î¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/several-vulnerabilities-found-ge-power-meter-software

4¡¢Ë¼¿ÆÐÞ¸´TelePresenceºÍASA 5500-X×°±¸ÖеÄÁ½¸öDoSÎó²î

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
˼¿ÆÐÞ¸´ÁËÁ½¸ö¿Éµ¼ÖÂDoSµÄÒªº¦Îó²î£¬ÕâЩÎó²îÓ°ÏìÁË˼¿ÆµÄTelePresenceÊÓÆµÍ¨Ñ¶·þÎñÆ÷ºÍASA 5500-XϵÁзÀ»ðǽװ±¸¡£ÆäÖÐÎó²î£¨CVE-2019-1721£©ÓëÊÜÓ°Ïì×°±¸¶ÔXMLÊäÈëµÄ²»×¼È·´¦Öóͷ£ÓйØ£¬¸ÃÎó²î¿ÉÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß½«CPUʹÓÃÂÊÕ¼ÓÃÖÁ100%£¬´Ó¶øÔì³ÉDoS¡£ÁíÒ»¸öÎó²î£¨CVE-2019-1694£©ÓëTCPÁ÷Á¿µÄ²»×¼È·´¦Öóͷ£ÓйØ¡£Ë¼¿ÆÒѾ­Ðû²¼Èí¼þ¸üÐÂÐÞ¸´ÁËÕâÁ½¸öÎó²î£¬½¨Ò龡¿ì¸üС£

Ô­ÎÄÁ´½Ó£ºhttps://cyware.com/news/cisco-patches-two-critical-vulnerabilities-that-could-lead-to-dos-attacks-ec7019e9

5¡¢½©Ê¬ÍøÂçMirai´úÂë±£´æÎó²î£¬¿Éµ¼ÖÂC2·þÎñÆ÷Íß½â

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
NewSkyÑо¿Ô±Ankit Anubhav³Æ½©Ê¬ÍøÂçMiraiµÄ´úÂëÖб£´æÒ»¸öbug£¬¿ÉÓÃÓÚÍß½âÆäC2·þÎñÆ÷¡£ÏêϸµÄÒªÁìÊÇ£¬Ê¹ÓÃ1025¸öa×Ö·û×÷ΪÓû§ÃûÌᳫÅþÁ¬£¬´Ëʱ»áµ¼ÖÂMiraiµÄC2·þÎñÆ÷Í߽⡣AnubhavÚ¹ÊͳÆ£¬MiraiÔ´´úÂëÖн«Óû§Ãûת´ï¸øReadLineº¯Êý£¬µ«¸Ãº¯Êý±£´æÒ»¸öÀο¿³¤¶ÈµÄ»º³åÇø£¬Òò´ËÌṩ´óÓÚ1024µÄÊäÈë»áµ¼Ö¸ÃÄ£¿éÍ߽⡣ÓÉÓÚ2018-2019ÄêµÄ´ó´ó¶¼½©Ê¬ÍøÂç¶¼ÊÇ»ùÓÚMirai£¬Òò´Ë¸ÃÎó²î±£´æÓÚ¶à¸ö»îÔ¾±äÖÖÖС£Ò°ÍâµÄһЩ¹¥»÷Õß¶¼ÖªµÀÕâ¸öÎó²î²¢¾­³£Ê¹ÓÃËüÀ´Í߽⾺ÕùµÐÊֵķþÎñÆ÷¡£

Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/85040/malware/mirai-servers-hack.html

6¡¢ºÚ¿Í´Ó¼ÓÃÜÇ®±ÒÉúÒâËùBinanceµÁ×ßÁè¼Ý7000ö±ÈÌØ±Ò

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 
5ÔÂ7ÈÕBinanceÐû³Æ±¬·¢Çå¾²ÊÂÎñ£¬ºÚ¿Í´Ó¸ÃÉúÒâËùÇÔÈ¡ÁËÁè¼Ý7000ö±ÈÌØ±Ò£¬×ܼÛֵԼΪ4100ÍòÃÀÔª¡£ºÚ¿ÍʹÓÃÖÖÖÖÊÖÒÕ£¬°üÀ¨ÍøÂç´¹ÂÚ¡¢²¡¶¾µÈ¹¥»÷·½·¨£¬»ñµÃÁËÓû§ÕË»§µÄ»á¼ûȨÏÞ£¬°üÀ¨APIÃÜÔ¿¡¢2FAÑéÖ¤ÂëºÍÆäËüÐÅÏ¢µÈ¡£5ÔÂ7ÈÕºÚ¿Í×îÏÈ´ÓÕâЩÕË»§Öдó¹æÄ£³·³ö£¬ÔÚ¼¸¸öСʱÄÚ±¬·¢ÁË7074¸ö±ÈÌØ±ÒµÄÉúÒâ¡£BinanceÁ¬Ã¦½«ÍøÕ¾ÖÃÓÚά»¤Ä£Ê½£¬²¢ÊÓ²ìÍÑÀë¸Ãƽ̨µÄ¾Þ¶î×ʽð¡£BinanceÍýÏëʹÓÃÆäÓû§Çå¾²×ʲú»ù½ð£¨SAFU£©À´Ìî²¹ËùÔâÊܵÄËðʧ£¬Òò´ËÓû§²»»áÒò´ËÊܵ½Ëðʧ¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/hackers-steal-41-million-from-cryptocurrency-exchange-binance/