ºÚ¿ÍDataÔÚ°µÍø³öÊÛÔ¼3.5ÒÚÌõAsk.FMÓû§µÄ¼Í¼

Ðû²¼Ê±¼ä 2022-09-22
1¡¢ºÚ¿ÍDataÔÚ°µÍø³öÊÛÔ¼3.5ÒÚÌõAsk.FMÓû§µÄ¼Í¼

      

¾ÝýÌå9ÔÂ20ÈÕ±¨µÀ£¬£¬£¬£¬£¬ÃûΪDataµÄºÚ¿ÍÔÚ°µÍø³öÊÛÉç½»ÍøÕ¾Ask.FM(ASKfm)µÄÓû§Êý¾Ý¡£¡£¡£¡£¡£¡£ ¡£DataÌåÏÖ£¬£¬£¬£¬£¬Âò¼Ò¿ÉÒÔ»ñµÃ607¸ö´æ´¢¿âÒÔ¼°ËûÃǵÄGitlab¡¢Jira¡¢ConfluenceÊý¾Ý¿â£¬£¬£¬£¬£¬Êý¾Ý¿âÖÐÓÐÔ¼3.5ÒÚÌõ¼Í¼£¬£¬£¬£¬£¬ÆäÖÐÔ¼4500ÍòÌõʹÓõ¥µãµÇ¼¾ÙÐеǼ¡£¡£¡£¡£¡£¡£ ¡£¾ÝϤ£¬£¬£¬£¬£¬¹¥»÷ÕßÔÚ2019ÄêÊ״λá¼ûЧÀÍÆ÷£¬£¬£¬£¬£¬ÔÚ2020Äê3ÔÂ14ÈÕ»ñÈ¡ÁËÊý¾Ý¿â¡£¡£¡£¡£¡£¡£ ¡£Data»¹ÌṩÁ˹¥»÷µÄÊÖÒÕϸ½Ú£¬£¬£¬£¬£¬²¢ÌåÏÖAsk.FMÈÔÈ»ºÜųÈõ¡£¡£¡£¡£¡£¡£ ¡£


https://www.databreaches.net/ask-fm-user-database-with-350m-user-records-has-shown-up-for-sale/


2¡¢Malwarebytes×èÖ¹Óû§»á¼ûÍйÜÔÚGoogleµÄЧÀÍ

      

¾Ý9ÔÂ21ÈÕ±¨µÀ£¬£¬£¬£¬£¬Malwarebytes½â¾öÁËÒ»¸öÎÊÌ⣬£¬£¬£¬£¬¸ÃÎÊÌâ»á×èÖ¹Óû§»á¼ûÍйÜÔÚGoogleÉϵÄÍøÕ¾ºÍЧÀÍ£¬£¬£¬£¬£¬°üÀ¨GoogleËÑË÷ºÍYoutube¡£¡£¡£¡£¡£¡£ ¡£MalwarebytesÔÚÍÆÎÄÖÐÚ¹ÊÍ˵£¬£¬£¬£¬£¬ÕâÊÇÓÉÓ°Ï칫˾Çå¾²²úÆ·ÖеÄWeb¹ýÂË×é¼þÄ£¿£¿£¿£¿£¿£¿£¿éµÄÎÊÌ⵼ֵġ£¡£¡£¡£¡£¡£ ¡£¸Ã¹«Ë¾ÌṩÁËÒ»ÖÖ½â¾öÒªÁ죬£¬£¬£¬£¬Óû§¿ÉÒÔ·­¿ªMalwarebytes²¢¹Ø±Õʵʱ± £»£»£»£»£»£»¤¿¨ÖеÄWeb± £»£»£»£»£»£»¤Ñ¡ÏîÀ´½ûÓùýʧÄ£¿£¿£¿£¿£¿£¿£¿é¡£¡£¡£¡£¡£¡£ ¡£ÔÚһСʱºó£¬£¬£¬£¬£¬¸Ã¹©Ó¦ÉÌ͸¶Òѽâ¾öÎÊÌ⣬£¬£¬£¬£¬ËùÓÐÓû§µÄÈí¼þ½«×ÔÐиüв¢ÐÞ¸´Îó±¨ÎÊÌâ¡£¡£¡£¡£¡£¡£ ¡£


https://www.bleepingcomputer.com/news/technology/malwarebytes-mistakenly-blocks-google-youtube-for-malware/


3¡¢ÀÕË÷ÍÅ»ïHivÉù³Æ¶ÔŦԼÈüÂíЭ»á(NYRA)µÄ¹¥»÷ÈÏÕæ

      

ýÌå9ÔÂ20ÈÕ±¨µÀ£¬£¬£¬£¬£¬ÀÕË÷ÍÅ»ïHiveÉù³Æ¶ÔŦԼÈüÂíЭ»á(NYRA)µÄ¹¥»÷ÈÏÕæ¡£¡£¡£¡£¡£¡£ ¡£NYRAÊÇŦԼÈý¸ö×î´óµÄ´¿ÖÖÈüÂí³¡µÄÔËÓªÉÌ£¬£¬£¬£¬£¬´ËÇ°ÔøÅû¶ÆäÓÚ2022Äê6ÔÂ30ÈÕÔâµ½¹¥»÷£¬£¬£¬£¬£¬Ó°ÏìÁËITÔËÓªºÍÍøÕ¾¡£¡£¡£¡£¡£¡£ ¡£±ðµÄ£¬£¬£¬£¬£¬Óû§µÄÉç»áÇå¾²ºÅÂë¡¢¼ÝʻִÕÕʶÓÖÃûÂë¡¢¿µ½¡¼Í¼ºÍ¿µ½¡°ü¹ÜÐÅÏ¢¿ÉÄÜÒѾ­Ð¹Â¶¡£¡£¡£¡£¡£¡£ ¡£¹¥»÷ÕßÓÚ9ÔÂ19ÈÕÔÚÆäÍøÕ¾Ðû²¼Á˾ݳÆÊÇ´ÓNYRAÇÔÈ¡µÄËùÓÐÎļþ£¬£¬£¬£¬£¬Ñо¿Ö°Ô±ÍƲâÊê½ð̸ÅÐÒѾ­¿¢Ê¡£¡£¡£¡£¡£¡£ ¡£NYRA½«ÎªÊÜÓ°ÏìÓû§ÌṩΪÆÚ24¸öÔµÄExperianÉí·Ý± £»£»£»£»£»£»¤Ð§ÀÍ¡£¡£¡£¡£¡£¡£ ¡£


https://www.bleepingcomputer.com/news/security/hive-ransomware-claims-attack-on-new-york-racing-association/


4¡¢2K GamesÓÎϷƽ̨Ôâµ½¹¥»÷²¢±»ÓÃÀ´·Ö·¢RedLine

      

ýÌå9ÔÂ20Èճƣ¬£¬£¬£¬£¬ÃÀ¹úÊÓÆµÓÎÏ·¿¯ÐÐÉÌ2K GamesÔâµ½¹¥»÷£¬£¬£¬£¬£¬±»ÓÃÀ´·Ö·¢¶ñÒâÈí¼þRedLine¡£¡£¡£¡£¡£¡£ ¡£±¾Öܶþ×îÏÈ£¬£¬£¬£¬£¬Ðí¶à2K¿Í»§ÊÕµ½À´×ÔSupportϵͳµÄµç×ÓÓʼþ£¬£¬£¬£¬£¬Óʼþ°üÀ¨Ò»¸öÃûΪ2K Launcher.zipµÄ¸½¼þ£¬£¬£¬£¬£¬¸ÃÎļþÍйÜÔÚ2ksupport.zendesk.comÉÏ£¬£¬£¬£¬£¬Î±×°³ÉÁËÒ»¸öеÄÓÎÏ·Æô¶¯Æ÷¡£¡£¡£¡£¡£¡£ ¡£ÏÂÔØµÄ´æµµ°üÀ¨107 MBµÄ¿ÉÖ´ÐÐÎļþ2K Launcher.exe£¬£¬£¬£¬£¬VirusTotalºÍAny.RunÌåÏÖ£¬£¬£¬£¬£¬ÕâÊÇÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þRedLine¡£¡£¡£¡£¡£¡£ ¡£ÏÖÔÚ£¬£¬£¬£¬£¬2KËÆºõÒѽ«ÆäSupportϵͳ¹Ø±Õ£¬£¬£¬£¬£¬Óû§ÎÞ·¨Ê¹ÓõǼƾ֤»á¼ûÆäƱ֤¡£¡£¡£¡£¡£¡£ ¡£


https://www.bleepingcomputer.com/news/security/2k-game-support-hacked-to-email-redline-info-stealing-malware/


5¡¢Ñо¿Ö°Ô±Åû¶OracleÔÆ»ù´¡ÉèÊ©ÖеÄÎó²îAttachMe

      

Ñо¿Ö°Ô±ÔÚ9ÔÂ20ÈÕÅû¶ÁËOracleÔÆ»ù´¡ÉèÊ©(OCI)ÖеÄÒ»¸öÐÂÎó²îAttachMe¡£¡£¡£¡£¡£¡£ ¡£Ñо¿Ö°Ô±³Æ£¬£¬£¬£¬£¬Ö»Òª¹¥»÷ÕßÓµÓÐÆäOracleÔÆ±êʶ·û(OCID)£¬£¬£¬£¬£¬¾Í¿ÉÒÔ¶ÔÈκÎδ¸½¼ÓµÄ´æ´¢¾í»òÔÊÐí¶à¸½¼þµÄ¸½¼Ó´æ´¢¾í¾ÙÐжÁд£¬£¬£¬£¬£¬À´ÇÔÈ¡Ãô¸ÐÊý¾Ý»òͨ¹ý¿ÉÖ´ÐÐÎļþÌᳫ¸ü¾ßÆÆËðÐԵĹ¥»÷¡£¡£¡£¡£¡£¡£ ¡£¸ÃÎó²î¿ÉÄܵ¼ÖÂȨÏÞÌáÉýºÍ¿ç×â»§»á¼û£¬£¬£¬£¬£¬Ò²ÌåÏÖÁËÔÆ×â»§¸ôÀëÔÚÔÆ»ù´¡ÉèÊ©ÖеÄÖ÷ÒªÐÔ¡£¡£¡£¡£¡£¡£ ¡£ÔÚÊÕµ½Îó²î±¨¸æºóµÄ24СʱÄÚ£¬£¬£¬£¬£¬OracleΪËùÓÐOCIÓû§ÐÞ¸´Á˸ÃÎó²î£¬£¬£¬£¬£¬¶øÎÞÐèÓû§½ÓÄÉÈκβ½·¥¡£¡£¡£¡£¡£¡£ ¡£


https://www.wiz.io/blog/attachme-oracle-cloud-vulnerability-allows-unauthorized-cross-tenant-volume-access


6¡¢¼ÓÃÜÇ®±Ò¹«Ë¾WintermuteÔâµ½¹¥»÷ËðʧԼ1.6ÒÚÃÀÔª 

      

9ÔÂ20ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬¼ÓÃÜÇ®±Ò¹«Ë¾WintermuteÒѱ»ºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬²¢ÔÚDeFiÓªÒµÖÐËðʧÁË1.622ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£ ¡£¸Ã¹«Ë¾²¢Î´ÌṩÇÔÈ¡×ʽðµÄÏêϸÐÅÏ¢£¬£¬£¬£¬£¬µ«Ñо¿Ö°Ô±ÒÔΪ£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜʹÓÃÁËProfanityÖеÄÎó²î¡£¡£¡£¡£¡£¡£ ¡£WintermuteÊǼÓÃÜÇ®±Òƽ̨µÄ¡°×öÊÐÉÌ¡±£¬£¬£¬£¬£¬ÈÔÈ»Óг¥¸¶ÄÜÁ¦£¬£¬£¬£¬£¬³ÖÓÐÁ½±¶ÓÚ±»µÁÊý¶îµÄ¹ÉȨ¡£¡£¡£¡£¡£¡£ ¡£²»¹ý£¬£¬£¬£¬£¬Ô¤¼Æ½ÓÏÂÀ´µÄ¼¸ÌìЧÀÍ»áÖÐÖ¹£¬£¬£¬£¬£¬ÓÉÓÚ¸ÃÆ½Ì¨ÈÔÔÚÆð¾¢»Ö¸´ÓªÒµ¡£¡£¡£¡£¡£¡£ ¡£¹«Ë¾CEO GaevoyÌåÏÖ£¬£¬£¬£¬£¬Ô¸Ò⽫´ËÊÂÊÓΪ°×ñÊÂÎñ£¬£¬£¬£¬£¬ÕâÒâζ×ÅËûÃÇÔ¸ÒâÌṩÉͽðÇÒûÓÐÈκÎÖ´·¨Ð§¹û£¬£¬£¬£¬£¬µ«²»ÖªµÀ¹¥»÷ÕßÊÇ·ñ»á½«±»µÁ×ʽ𷵻¹¸øWintermute¡£¡£¡£¡£¡£¡£ ¡£


https://therecord.media/cryptocurrency-company-wintermute-says-hackers-stole-160-million/