Rockwell AutomationµÄPLC±£´æÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î£»Ó¡¶ÈZee5ÔÙ´ÎÊý¾Ýй¶£¬Éæ¼°900ÍòÓû§µÄPII
Ðû²¼Ê±¼ä 2021-03-011.Rockwell AutomationµÄPLC±£´æÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î

Ñо¿Ö°Ô±·¢Ã÷Rockwell AutomationµÄ¿É±à³ÌÂß¼¿ØÖÆÆ÷£¨PLC£©Öб£´æÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î¡£¸ÃÎó²î±»×·×ÙΪCVE-2021-22681£¬CVSSÆÀ·ÖΪ10£¬Æä±£´æÓÚLogix DesignerÈí¼þÖУ¬ÊÇÓÉÓÚÑéÖ¤¿ØÖÆÆ÷ͨѶµÄ˽ÓÐÃÜÔ¿±£»¤È±·¦µ¼Öµġ£Î´¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉʹÓøÃÎó²îÈÆ¹ýÑéÖ¤»úÖÆÀ´ÅþÁ¬Logix¿ØÖÆÆ÷¡£±ðµÄ£¬Ê¹ÓôËÎó²îºÍµÚÈý·½¹¤¾ß»¹Äܸü¸Ä¿ØÖÆÆ÷µÄÉèÖúÍÓ¦ÓóÌÐò´úÂë¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/115085/ics-scada/rockwell-automation-software-flaw.html
2.Amazon AlexaÖб£´æ¿ÉÈÆ¹ýÉóºËÁ÷³ÌµÄÎó²î

Ñо¿ÍŶÓÔÚÍøÂçºÍÂþÑÜʽϵͳÇå¾²×êÑлᣨNDSS£©ÉÏÌá³ö AlexaÖб£´æ¿ÉÈÆ¹ýÉóºËÁ÷³ÌµÄÎó²î¡£ºÚ¿Í¿ÉʹÓøÃÎó²îÒÔí§Ò⿪·¢ÕßµÄÃûÒåÐû²¼¶ñÒâÓ¦Óã¬ÉõÖÁÔÚÉóºËͨʺó¸ü¸Äºó¶Ë´úÂ룬À´ÇÔÈ¡Óû§µÄÃô¸ÐÐÅÏ¢£¬ÀýÈçµç»°ºÅÂëºÍµØµã¡£Ñо¿Ö°Ô±Ú¹ÊÍÕâÊÇÓÉÓÚAmazon²»½ÓÄÉÈκÎ×Ô¶¯»¯µÄÒªÁìÀ´¼ì²â¶ñÒâÈí¼þ£¬¶øÒÀÀµÓÚÈ˹¤ÉóºËÔòÈÝÒ×·ºÆðÈËΪ¹ýʧ¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/02/alert-malicious-amazon-alexa-skills-can.html
3.Ó¡¶ÈZee5ÔÙ´ÎÊý¾Ýй¶£¬Éæ¼°900ÍòÓû§µÄPII

Ñо¿Ö°Ô±Rajshekhar Rajaharia·¢Ã÷Zee5Ôٴα¬·¢Êý¾Ýй¶ÊÂÎñ£¬Éæ¼°900ÍòÓû§µÄPII¡£Zee5ÊÇÓ¡¶ÈOTTƽ̨£¬ÓµÓÐÁè¼Ý1.5ÒÚÓû§¡£´Ë´ÎÊÂÎñй¶ÁËÁè¼Ý900ÍòÓû§µÄСÎÒ˽¼ÒÊý¾Ý£¬°üÀ¨Óû§µÄÃû×Ö¡¢µç×ÓÓʼþµØµã¡¢³öÉúÈÕÆÚ¡¢µç»°ºÅÂë¡¢Óû§ÃûÒÔ¼°ÉϴθüÐÂʱ¼äµÄ¼Í¼ʱ¼ä´Á¡£ÕâÊÇZee5µÚ¶þ´ÎÐû²¼ÓйØÊý¾Ýй¶µÄÐÂÎÅ£¬µÚÒ»´Î±¬·¢È¥Äê5Ô·ݣ¬ÔøÐ¹Â¶ÁËÉÏǧ¸öÓû§µÄÓû§ÃûºÍ´¿Îı¾ÃÜÂë¡£
ÔÎÄÁ´½Ó£º
https://techdator.net/zee5-data-breach-pii-of-9-million-zee5-users-allegedly-leaked-online/
4.½üÆÚµÄAOLÓʼþ´¹ÂÚÔ˶¯Õë¶ÔÖÐÍíÄêÈËÇÔȡƾ֤

BleepingComputerÖÒÑÔ½üÆÚµÄAOLÓʼþ´¹ÂÚÔ˶¯Õë¶ÔÖÐÍíÄêÈËÇÔȡƾ֤¡£µ±´ó´ó¶¼ÈËʹÓÃGmail¡¢Outlook»òÆäËûÏÖ´úÃâ·ÑÓʼþ·þÎñʱ£¬Ðí¶àÍíÄêÈËÈÔÔÚʹÓÃAOL¡£¶ø´Ë´Î´¹ÂÚÔ˶¯Ö÷ÒªÕë¶ÔÕâһȺÈË£¬ÒÔÓÊÏ佫ÔÚ3ÌìÄڹرÕΪÖ÷Ì⣬ÓÕʹÓû§ÔÚ´¹ÂÚÒ³ÃæµÇ¼ÕÊ»§À´¾ÙÐÐÑéÖ¤£¬ÇÔÈ¡Æäƾ֤¡£±ðµÄ£¬Ïà±ÈÓÚÕë¶ÔÆäËû·þÎñ£¨ÀýÈçGmail£©µÄÔ˶¯£¬´Ë´Î¹¥»÷¸üÈÝÒ×ͨ¹ýAOLµÄµç×ÓÓʼþ¹ýÂËÆ÷¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/beware-aol-phishing-email-states-your-account-will-be-closed/
5.FortiGuard LabsÐû²¼2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ×±¨¸æ

FortiGuard LabsÐû²¼ÁË2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ×±¨¸æ¡£±¨¸æÖ¸³ö£¬Õë¶ÔÎïÁªÍø£¨IoT£©×°±¸£¨ÀýÈç¼ÒÍ¥ÓéÀÖϵͳ¡¢¼Òͥ·ÓÉÆ÷ºÍÅþÁ¬µÄÇå¾²×°±¸£©µÄ¹¥»÷³ÉΪÖ÷ÒªÍþв£»¹©Ó¦Á´¹¥»÷³ÉΪ½¹µã£¬SolarWinds¹¥»÷ÊÂÎñ½«¸ÃÎÊÌâÍÆÏòÁËи߶ȣ»ÀÕË÷Èí¼þÔ˶¯ÔÚ2020ÄêϰëÄêÔöÌíÁËÆß±¶£¬Ö÷ҪĿµÄÐÐÒµ°üÀ¨Ò½ÁƱ£½¡¡¢×¨Òµ·þÎñ¹«Ë¾¡¢ÏûºÄÕß·þÎñ¹«Ë¾¡¢¹«¹²²¿·ÖºÍ½ðÈÚ·þÎñ¹«Ë¾¡£
ÔÎÄÁ´½Ó£º
https://www.fortinet.com/blog/industry-trends/fortiguard-labs-global-threat-landscape-report-2021
6.DragosÐû²¼2020ÄêICSÍøÂçÇå¾²µÄ»ØÊ×±¨¸æ

DragosÐû²¼ÁË2020ÄêICSÍøÂçÇå¾²µÄ»ØÊ×±¨¸æ£¬Õë¶ÔICS/OTµÄÍøÂçÍþв¡¢Îó²î¡¢ÆÀ¹ÀºÍÊÂÎñÏìÓ¦¾ÙÐÐÁËÆÊÎö¡£2020ÄêÓÐ703¸öICS/OTÎó²î£¬±È2019ÄêÔöÌíÁË29£¥¡£Ñо¿Ö°Ô±·¢Ã÷ÁËËĸöÖ÷ÒªÕë¶ÔÄÜÔ´ºÍÖÆÔìÒµµÄÐÂICSÍŻ»®·ÖÊÇKAMACITE¡¢STIBNITE¡¢TALONITEºÍVANADINITE¡£±¨¸æ»¹Ìá³öÁËÔöÇ¿ICSÇéÐÎÇå¾²ÐÔ½¨Ò飬°üÀ¨ÔöÌíOTÍøÂçµÄ¿É¼ûÐÔ¡¢È·¶¨Ö÷ÒªÐÔ¼°ÓÅÏȼ¶¡¢ÔöÇ¿ÊÂÎñÏìÓ¦ÄÜÁ¦¡¢ÍøÂç¸ôÀëÑéÖ¤ºÍÇå¾²Ö¤ÊéÖÎÀíµÈ¡£
ÔÎÄÁ´½Ó£º
https://www.dragos.com/year-in-review/


¾©¹«Íø°²±¸11010802024551ºÅ