ÔËÓªÉÌRogers´ó¹æÄ£Ð§ÀÍÖÐÖ¹£¬£¬£¬£¬£¬£¬£¬È«¼ÓÄôó¾ùÊÜÓ°Ï죻£»£»£»£»OracleÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¸ö²úÆ·ÖеÄ390¸öÎó²î

Ðû²¼Ê±¼ä 2021-04-21

1.ÔËÓªÉÌRogers´ó¹æÄ£Ð§ÀÍÖÐÖ¹£¬£¬£¬£¬£¬£¬£¬È«¼ÓÄôó¾ùÊÜÓ°Ïì


1.jpg


µçÐÅÔËÓªÉÌRogers±¬·¢´ó¹æÄ£Ð§ÀÍÖÐÖ¹£¬£¬£¬£¬£¬£¬£¬¼ÓÄôóÌìϹæÄ£ÄÚ¾ùÊÜÓ°Ïì¡£¡£¡£¡£ÖÐÖ¹±¬·¢ÔÚÔ¼ÄªÆÆÏþ1µã×óÓÒ£¬£¬£¬£¬£¬£¬£¬Óû§±¨¸æÆäÎÞ·¨Ê¹ÓÃÓïÒô»òÊý¾ÝЧÀÍ¡£¡£¡£¡£RogersÔÚÖÜÒ»£¨4ÔÂ19ÈÕ£©Ðû²¼ÉùÃ÷Ö¸³öÆä²¿·Ö¹¦Ð§ÔÝʱÎÞ·¨Ê¹Ó㬣¬£¬£¬£¬£¬£¬»ù´¡Ôµ¹ÊÔ­ÓÉÊǰ®Á¢ÐÅ×î½üµÄÈí¼þÉý¼¶Ó°ÏìÁËÆäÎÞÏßÍøÂçÖÐÐIJ¿·ÖµÄһ̨װ±¸£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂÁ˼äЪÐÔÓµ¶Â£¬£¬£¬£¬£¬£¬£¬¶ÔÌìϸ÷µØÐí¶à¿Í»§µÄЧÀÍÔì³ÉÁËÓ°Ïì¡£¡£¡£¡£RogersÓÚ4ÔÂ20ÈÕÐû²¼ÍÆÎijÆ£¬£¬£¬£¬£¬£¬£¬Ð§ÀÍÏÖÔÚÒѻָ´Õý³£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/mobile/rogers-is-down-canadian-users-report-voice-and-data-outages/


2.OracleÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¸ö²úÆ·ÖеÄ390¸öÎó²î


2.jpg


OracleÒÑÓÚ2021Äê4ÔÂÐû²¼ÁËÖ÷Òª²¹¶¡¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´Á˶à¸ö²úÆ·ÖеÄ390¸öÎó²î¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄ½ÏΪÑÏÖØµÄÎó²îΪOracleͨѶӦÓóÌÐòÖÐCVSSÆÀ·ÖΪ9.8µÄCVE-2020-11612¡¢CVE-2019-0228¡¢CVE-2020-11612ºÍCVE-2020-28052£¬£¬£¬£¬£¬£¬£¬Instantis EnterpriseTrackÖеÄCVE-2019-0219£¬£¬£¬£¬£¬£¬£¬ÆóÒµÖÎÀíÆ÷»ù´¡Æ½Ì¨ÖеÄCVE-2019-17195ÒÔ¼°OracleÉÌÒµÖÇÄÜÆóÒµ°æÖеÄCVE-2020-9480µÈÎó²î¡£¡£¡£¡£OracleÇ¿ÁÒ½¨Òé¿Í»§¾¡¿ìÓ¦ÓÃÇå¾²²¹¶¡¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.oracle.com/security-alerts/cpuapr2021.html


3.Æû³µ°ü¹ÜÉÌGeicoÔâ¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ð¹Â¶½ü3ÍòÍò³µÁ¾µÄÐÅÏ¢


3.jpg


Geico¹«Ë¾Ôâµ½¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ð¹Â¶½ü3ÍòÍò³µÁ¾µÄÐÅÏ¢¡£¡£¡£¡£GeicoÊÇÃÀ¹úµÚ¶þ´óÆû³µ°ü¹Ü¹«Ë¾£¬£¬£¬£¬£¬£¬£¬ÓµÓÐÁè¼Ý1700Íò·Ý±£µ¥£¬£¬£¬£¬£¬£¬£¬Éæ¼°Áè¼Ý2800ÍòÁ¾Æû³µ¡£¡£¡£¡£¸Ã¹«Ë¾×î½üÈ·¶¨£¬£¬£¬£¬£¬£¬£¬ÔÚ2021Äê1ÔÂ21ÈÕÖÁ3ÔÂ1ÈÕÖ®¼ä£¬£¬£¬£¬£¬£¬£¬ºÚ¿ÍʹÓÃÔÚÏßÏúÊÛÃÅ»§ÍøÕ¾»á¼ûÁËÆäÓû§µÄÊý¾Ý¡£¡£¡£¡£GeicoÒÔΪ¹¥»÷Õß¿ÉÄÜÍýÏëʹÓÃÇÔÈ¡µ½µÄ¼ÝʻִÕÕºÅÂ룬£¬£¬£¬£¬£¬£¬ÒÔ±£µ¥³ÖÓÐÈ˵ÄÃûÒåÉêÇëʧҵ¾ÈÔ®£¬£¬£¬£¬£¬£¬£¬²¢ÌåÏÖ½«ÎªÊÜÓ°ÏìµÄ¿Í»§ÌṩΪÆÚÒ»ÄêµÄÃâ·ÑÉí·Ý±£»£»£»£»£»¤Ð§ÀÍÀ´×÷ΪÅâ³¥¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/geico-data-breach-exposed-customers-drivers-license-numbers/


4.ºÚ¿ÍÒÔ55ÍòÃÀÔª³öÊÛ13TB Domino's IndiaµÄÐÅÏ¢


4.jpg


Ñо¿Ö°Ô±Rajshekhar Rajaharia·¢Ã÷ºÚ¿ÍÔÚ°µÍø³öÊÛ13TB Domino's IndiaµÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬Éæ¼°1.8ÒÚ¸ö¶©µ¥µÄÏêϸÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬°üÀ¨¿Í»§µÄÐÕÃû¡¢µç»°ºÅÂë¡¢¸¶¿îÏêϸÐÅÏ¢ÒÔ¼°²¿·ÖÕÅÐÅÓÿ¨ÏêϸÐÅÏ¢¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬Rajaharia͸¶ºÚ¿ÍÏëÓøÃÊý¾Ý¿â»»È¡55ÍòÃÀÔªµÄÊê½ð¡£¡£¡£¡£¾Ýͳ¼Æ£¬£¬£¬£¬£¬£¬£¬ÔÚÒÑÍù6¸öÔÂÀ£¬£¬£¬£¬£¬£¬Ó¡¶ÈµÄÒ»¸ö×é֯ƽ¾ùÿÖÜÊܵ½1681´Î¹¥»÷£¬£¬£¬£¬£¬£¬£¬Õâ±ÈÈ«ÇòµÄƽ¾ùÖµ£¨667Æð£©ºá¿ç2.5±¶ÒÔÉÏ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/dominos-india-database-hacked-13-tb-data/


5.ºÚ¿ÍÔÚ°µÍø³öÊÛÁè¼Ý7000ÍòTwitterÓû§µÄÊý¾Ý


5.jpg


Çå¾²¹«Ë¾Swascan·¢Ã÷ºÚ¿ÍÔÚ°µÍø800ÃÀÔªµÄ¼ÛÇ®³öÊÛÁè¼Ý7000ÍòTwitterÓû§µÄÊý¾Ý¡£¡£¡£¡£´Ë´Î³öÊÛµÄÐÅÏ¢°üÀ¨Óû§µÄÐÕÃû¡¢TwitterÕÊ»§¡¢µç×ÓÓʼþµØµãºÍµç»°ºÅÂëµÈÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬µ«²»°üÀ¨ÃÜÂë¡£¡£¡£¡£Ö®ºó£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±·¢Ã÷ÁíÒ»¸öÓû§ÔÚ°µÍø¹ûÕæÁË1800ÍòTwitterÓû§µÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÓʼþµØµãµÄÃÜÂë¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬Éв»ÇåÎúºÚ¿ÍÊÇÒÔºÎÖÖÒªÁìÍøÂçµ½µÄÕâЩÊý¾Ý£¬£¬£¬£¬£¬£¬£¬Swascan½¨ÒéÓû§½ÓÄÉ2FAÉí·ÝÑéÖ¤²¢×¼Ê±¸üÐÂÃÜÂëÀ´±£»£»£»£»£»¤ÕÊ»§¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://latesthackingnews.com/2021/04/19/70-million-twitter-users-data-dumped-for-sale-after-facebook-linkedin/


6.Lazarus APTÔÚ½üÆÚµÄ¹¥»÷ÖÐʹÓÃÐÂÒªÁìÈÆ¹ý¼ì²â



6.jpg


Malwarebytes·¢Ã÷³¯ÏÊAPT×éÖ¯ÔÚ½üÆÚµÄ¹¥»÷ÖÐʹÓÃÐÂÒªÁìÈÆ¹ý¼ì²â¡£¡£¡£¡£´Ë´ÎµÄÍøÂç´¹ÂڻʼÓÚ4ÔÂ13ÈÕ£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß½«Æä¶ñÒâHTAÎļþ×÷ΪѹËõµÄzlibÎļþǶÈëµ½PNGÎļþÖУ¬£¬£¬£¬£¬£¬£¬È»ºóÔÚÔËÐÐʱ½«Æäת»»ÎªBMPÃûÌþÙÐнâѹËõ¡£¡£¡£¡£ÓÕ¶üÎļþÊǺ«ÎÄдµÄ£¬£¬£¬£¬£¬£¬£¬½¨ÉèÓÚ2021Äê3ÔÂ31ÈÕ£¬£¬£¬£¬£¬£¬£¬Î±×°³ÉÁ˺«¹úij¶¼»áÉúÒâ»áµÄ¼ÓÈëÉêÇë±í£¬£¬£¬£¬£¬£¬£¬ÔÚÓû§Ê״η­¿ªÊ±»áÆôÓú꣬£¬£¬£¬£¬£¬£¬×îÖÕ½«×°ÖÃÒ»¸öÃûΪAppStore.exeµÄ¿ÉÖ´ÐÐÎļþ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/04/lazarus-apt-hackers-are-now-using-bmp.html