FiberHome FTTH ONT·ÓÉÆ÷Öб£´æ28¸öºóÃÅÕÊ»§£»µÂ¹úÌõ¼Ç±¾ÁãÊÛÉÌÒò¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª
Ðû²¼Ê±¼ä 2021-01-18
Ñо¿Ö°Ô±Pierre Kim·¢Ã÷FiberHome FTTH ONT·ÓÉÆ÷Öб£´æ28¸öºóÃÅÕÊ»§ºÍ¶à¸öÆäËûÎó²î¡£¸Ã·ÓÉÆ÷Ö÷Òª°²ÅÅÓÚÄÏÃÀºÍ¶«ÄÏÑÇ£¬Í¨³£×°ÖÃÔÚÑ¡ÔñǧÕ×λµÄ¹«Ô¢Â¥ÄÚ¡¢¼ÒÍ¥»òÆóÒµÄÚ²¿¡£Kim³ÆÆä·¢Ã÷´ó×ڿɱ»ÀÄÓÃÀ´½ÓÊÜISPµÄºóÃźÍÎó²î£¬ÀýÈçºóÃÅÔÊÐí¹¥»÷Õßͨ¹ý·¢ËÍÌØÖÆµÄHTTPSÇëÇó[https£º// [ip]/telnet£¿enable=0£¦key=calculated£¨BR0_MAC£©]Óë·ÓÉÆ÷µÄTelnetÅþÁ¬£¬Web·þÎñÆ÷°üÀ¨22¸öÓɲî±ðµÄInternet·þÎñÌṩÉÌʹÓõÄÓ²±àÂëÆ¾Ö¤µÈ¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/multiple-backdoors-and-vulnerabilities-discovered-in-fiberhome-routers/
2.µÂ¹úÌõ¼Ç±¾ÁãÊÛÉÌÒò¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª

µÂ¹úÌõ¼Ç±¾ÁãÊÛÉÌNBB£¨notebooksbilliger.de£©ÒòʹÓÃÊÓÆµ¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª¡£¸Ã¹«Ë¾Á½ÄêǰÔÚÆä¿ÍÕ»¡¢ÏúÊÛÇøºÍͨË×ÊÂÇéÇøÖÐ×°ÖÃÁËÊÓÆµ¼à¿ØÏµÍ³£¬Ä¿µÄÊDZÜÃâºÍÊӲ챻µÁºÍ¸ú×Ù²úÆ·¡£µÂ¹úÊý¾Ýî¿Ïµ»ú¹¹ÌåÏÖʹÓÃÔÆÔÆ÷缯µÄÊÓÆµ¼à¿Ø£¬ÒѾÑÏÖØÇÖÕ¼Ô±¹¤µÄȨÁ¦¡£±ðµÄ£¬NBB»¹ÔÚ¿Í»§²»ÖªÇéµÄÇéÐÎÏ£¬ÔÚÆäÏúÊÛ³¡ºÏ²âÊÔ×°±¸Ê±¼Í¼Á˿ͻ§µÄÐÅÏ¢£¬ÕâÊÇÁíÒ»¸öÖØ´óµÄÒþ˽ÇÖÕ¼ÐÐΪ¡£´Ë´ÎÊÇÆ¾Ö¤2018ÄêÐû²¼µÄGDPRÔڵ¹ú¡¢ÒÔÖÂÕû¸öÅ·ÖÞ´¦ÒÔµÄ×î¸ß·£¿îÖ®Ò»¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/gdpr-german-laptop-retailer-fined-eur10-4m-for-video-monitoring-employees/
3.Ó¢¹ú¾¯·½ÈÏ¿ÉÒòÊÖÒÕÎÊÌâÎóɾÁè¼Ý21ÍòÌõ·¸·¨¼Í¼

Ó¢¹ú¾¯·½ÈÏ¿ÉÒòÊÖÒÕÎÊÌâÎóɾ213000Ìõ·¸·¨¼Í¼£¬°üÀ¨Ö¸ÎÆÐÅÏ¢¡¢DNAÐÅÏ¢ºÍ¾Ð²¶ÀúÊ·µÈ¡£´Ë´ÎµÄÊÂÎñ±»¹é×ïÓÚ±àÂë¹ýʧ£¬ÔÚ¼ì²é±»±ê¼ÇΪɾ³ýµÄÊý¾ÝÊÇ·ñ¿ÉÒÔ±»Õýµ±±£´æÖ®Ç°£¬Êý¾ÝÒÑ´ÓÊý¾Ý¿âÖÐɥʧ¡£ÄÚÕþ²¿³ÆÕýÔÚ¾¡¿ì»Ö¸´ÎóɾµÄÊý¾Ý£¬´Ë´Î²¢Ã»ÓÐûÓÐÈκÎΣÏÕÈËÎïµÄ¼Í¼±»É¾³ý¡£ÏÖÔÚÈÔÔÚÊÓ²ìÊÂÎñÓ°Ïì¹æÄ££¬Éв»ÇåÎúÿÖÖÀàÐÍɥʧÁ˼¸¶àÌõ¼Í¼¡£
ÔÎÄÁ´½Ó£º
https://www.bbc.com/news/uk-55684320
4.OpenWRTÂÛ̳³ÆÆäÔâµ½¹¥»÷£¬Óû§Êý¾Ý±»µÁ

OpenWRTÂÛ̳³ÆÆäÔÚ±¾ÖÜÁù04:00×óÓÒÔâµ½¹¥»÷£¬Óû§Êý¾Ý±»µÁ¡£OpenWRTÊÇÒ»¸ö¿ªÔ´´úÂëÏîÄ¿£¬Îª¼ÒÓ÷ÓÉÆ÷ÌṩÃâ·ÑÇÒ¿É×Ô½ç˵µÄ¹Ì¼þ¡£OpenWRTÍŶÓÌåÏÖ£¬ËäÈ»¹¥»÷ÕßÎÞ·¨ÏÂÔØÆäÊý¾Ý¿âµÄÍêÕû¸±±¾£¬µ«ÒѾ͵ȡÁËÂÛ̳Óû§ÃûºÍµç×ÓÓʼþµØµãµÈСÎÒ˽¼ÒÏêϸÐÅÏ¢¡£±»µÁÊý¾Ý²¢Î´°üÀ¨ÃÜÂ룬¿ÉÊdzöÓÚÇ徲˼Á¿£¬OpenWRTÖÎÀíÔ±ÒÑÖØÖÃËùÓÐÂÛ̳Óû§ÃÜÂëºÍAPIÃÜÔ¿¡£±ðµÄ£¬OpenWRTÖÎÀíÔ±»¹ÌáÐÑÓû§£¬±»µÁÊý¾Ý¿ÉÄܱ»ÓÃÓÚδÀ´µÄ´¹ÂÚ¹¥»÷¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/113586/data-breach/openwrt-forum-hacked.html
5.TenableÐû²¼2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ×±¨¸æ

TenableÐû²¼ÁË2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ×±¨¸æ¡£±¨¸æ¶Ô2020ÄêµÄÎó²îºÍÍþÐ²Ì¬ÊÆ¾ÙÐÐÆÊÎö£¬·¢Ã÷2020Ä걨¸æµÄ³£¼ûÎó²îºÍÅû¶£¨CVE£©×ÜÊý£¨18358£©±È2019Ä걨¸æµÄ×ÜÊý£¨17305£©¸ß6£¥¡£ÔÚ2020ÄêÅû¶µÄÎó²îÖУ¬ÓÐ29¸ö±»Ê¶±ðΪеÄ0day£¬ÆäÖÐÁè¼Ý35£¥Óëä¯ÀÀÆ÷Óйأ¬½ü29£¥Î»ÓÚ²Ù×÷ϵͳÄÚ¡£±ðµÄ£¬ÔÚÏÄÈÕÅû¶ÁË547¸öÎó²î£¬ÆäÖаüÀ¨F5¡¢Palo Alto Networks¡¢PulseSecure¡¢vBulletinµÈµÄÖ÷ÒªÎó²î¡£´Ó1Ôµ½10Ô£¬ÓÐ730ÆðÊÂÎñµ¼ÖÂÁËÁè¼Ý220ÒÚÌõ¼Í¼µÄй¶¡£
ÔÎÄÁ´½Ó£º
https://zh-cn.tenable.com/cyber-exposure/2020-threat-landscape-retrospective?tns_redirect=true
6.OkeraÐû²¼2021Äê´óÊý¾ÝÇ÷ÊÆµÄÆÊÎö±¨¸æ

OkeraÐû²¼ÁË2021Äê´óÊý¾ÝÇ÷ÊÆµÄÆÊÎö±¨¸æ¡£¸Ã±¨¸æÕ¹ÍûÁËδÀ´Ò»Äê¼´½«·ºÆðµÄÎåÖÖ´óÊý¾ÝµÄÇ÷ÊÆ£¬»®·ÖΪÊý¾ÝÒþ˽ºÍ»á¼û¿ØÖƽ«³ÉΪÌá¸ßÊÕÈëµÄÆ·ÅÆ²î±ð»¯ÒòËØ£»ÔÚÊý¾ÝĿ¼ºÍÔªÊý¾ÝÖÎÀí·½ÃæµÄͶ×ʽ«»ñµÃ»Ø±¨£»¼¯³ÉµÄ»ìÏýÊý¾Ýƽ̨½«¸Ä±äÔÆÓ¦ÓóÌÐòµÄ¹¦Ð§²¢×îÏȽ»¸¶¼ÛÖµ£»Êý¾ÝÆÊÎöºÍÊý¾Ýƽ̨ÊÖÒյĸü¶à±ÊÖ±»¯£»CDO½«Í¨¹ýʵÑéÂþÑÜʽÊý¾ÝÖÎÀíÄ£×ÓÀ´½øÒ»²½×ª±äÆä¹«Ë¾¡£
ÔÎÄÁ´½Ó£º
https://www.okera.com/okera-unveils-five-top-data-privacy-and-analytics-trends-for-2021/


¾©¹«Íø°²±¸11010802024551ºÅ