2019ÄêÃÀ¹úÁè¼Ý3800ÍòÌõÒ½ÁƱ£½¡¼Í¼й¶£»£»£»£»2019ÄêQ3À¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ

Ðû²¼Ê±¼ä 2019-11-27
1¡¢2019ÄêÃÀ¹úÁè¼Ý3800ÍòÌõÒ½ÁƱ£½¡¼Í¼й¶

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨

10Ô·Ý£¬£¬£¬ £¬£¬£¬ÃÀ¹úÎÀÉúÓ빫ÖÚЧÀͲ¿£¨HHS£©¹«ÃñȨÁ¦°ì¹«ÊÒÊÕµ½52ÆðÊý¾Ýй¶֪ͨ£¬£¬£¬ £¬£¬£¬Ó°ÏìÊýÊ®ÍòÌõÒ½ÁƼͼ¡£¡£¡£¡£¡£¡£¡£ÕâÒ»Êý×ÖΪ2014Äê1ÔÂÒÔÀ´µÄµ¥ÔÂ×î¸ßÊý×Ö£¬£¬£¬ £¬£¬£¬¹²Éæ¼°661830ÌõÒ½ÁƱ£½¡¼Í¼¡£¡£¡£¡£¡£¡£¡£¾ÝHIPAA Journal±¨µÀ£¬£¬£¬ £¬£¬£¬×èÖ¹10ÔÂ⣬£¬£¬ £¬£¬£¬½ñÄê̻¶¡¢É¥Ê§»ò±»µÁµÄÒ½ÁƼͼÊýÄ¿ÒÑÍ»ÆÆÁË3800Íò´ó¹Ø£¬£¬£¬ £¬£¬£¬ÊÇ2018ÄêÕûÄêÊý×ÖµÄÈý±¶¶à£¬£¬£¬ £¬£¬£¬ÊÇ2017ÄêµÄÆß±¶¡£¡£¡£¡£¡£¡£¡£µ«ÀúÊ·×î¸ß¼Í¼·ºÆðÔÚ2015Ä꣬£¬£¬ £¬£¬£¬ÆäʱµÄÊý×ÖΪ1.14ÒÚÌõ¼Í¼¡£¡£¡£¡£¡£¡£¡£

   

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/over-38-million-healthcare-records-exposed-in-breaches-over-2019/

2¡¢Á½¸öAndroid SDK²»·¨ÍøÂçFacebook¼°TwitterÓû§Êý¾Ý


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Ñо¿Ö°Ô±·¢Ã÷Á½¸öµÚÈý·½SDK£¨OneAudienceºÍMobiburn£©¿ÉÉñÃØÍøÂçTwitterºÍFacebookÓû§Êý¾Ý£¬£¬£¬ £¬£¬£¬TwitterºÍFacebookÕýÔÚ¾ÙÐÐÊӲ졣¡£¡£¡£¡£¡£¡£ÕâÁ½¸öSDK¶¼ÊÇÊý¾ÝÇ®±Ò»¯Ð§ÀÍ£¬£¬£¬ £¬£¬£¬Í¨¹ýÏò¿ª·¢Ö°Ô±¸¶·ÑÒÔ½«ÆäSDK¼¯³Éµ½Ó¦ÓÃÖУ¬£¬£¬ £¬£¬£¬È»ºóÍøÂçÓû§µÄÐÐΪÊý¾ÝÓÃÓÚ¹ã¸æÓªÏú¡£¡£¡£¡£¡£¡£¡£Í¨³£´ËÀàÌ×¼þ²»»á»á¼ûÓû§µÇ¼Facebook»òTwitterºóÌìÉúµÄСÎÒ˽¼ÒÐÅÏ¢¡¢ÕË»§ÃÜÂëµÈÊý¾Ý¡£¡£¡£¡£¡£¡£¡£TwitterÔÚһƪ²©¿ÍÖÐÈ·ÈÏOneAudience SDK¿Éδ¾­ÊÚȨ´ÓTwitterÕÊ»§ÖÐÍøÂçÓû§µÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£TwitterûÓÐ͸¶ÊÜÓ°ÏìµÄÓû§ÊýÄ¿£¬£¬£¬ £¬£¬£¬µ«ÌåÏÖÖ»ÓÐAndroidÓû§Êܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£¡£FacebookÌåÏÖÒ²Êܵ½¸ÃÎÊÌâÓ°Ï죬£¬£¬ £¬£¬£¬°üÀ¨OneAudience SDKºÍMobiBurn SDK¡£¡£¡£¡£¡£¡£¡£Á½¼ÒSDK¿ª·¢Õß»ØÓ¦³ÆËûÃǽöÌṩ¹¤¾ß£¬£¬£¬ £¬£¬£¬µ«²»ÒÔÈκη½·¨¼ÓÈëÊý¾ÝÍøÂ磬£¬£¬ £¬£¬£¬½«ÔðÈιé×ïÓÚÀÄÓÃÆäSDKµÄapp¿ª·¢Ö°Ô±¡£¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/11/sdk-twitter-facebook-android.html

3¡¢·¸·¨ÍÅ»ïFullz House´Ó´¹ÂÚ¹¥»÷תÏòMagecart¶ñÒâ»î¶¯

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨

±¾ÖܶþRiskQÐû²¼ÁËÒ»·Ý¹ØÓÚ·¸·¨ÍÅ»ïFullz HouseµÄ¹¥»÷»î¶¯¼°Æä×÷°¸ÊÖ·¨×ª±äµÄ±¨¸æ¡£¡£¡£¡£¡£¡£¡£Fullz HouseÒÔǰרÃÅ´ÓÊÂÍøÂç´¹ÂÚ£¬£¬£¬ £¬£¬£¬µ«ÏÖÔÚÒѾöÒéתÏòMagecart¹¥»÷¡£¡£¡£¡£¡£¡£¡£¸Ã×é֯ı»®×ÅÒ»¸öÃûΪBlueMagicStoreµÄ°µÍøÉúÒâÍøÕ¾£¬£¬£¬ £¬£¬£¬ÓÃÓÚ³öÊÛСÎÒ˽¼ÒÉí·ÝÐÅÏ¢ºÍ±»µÁµÄÒøÐÐÊý¾Ý£¬£¬£¬ £¬£¬£¬×î½üFullz House¿ªÉèÁËCardHouseÒ³Ãæ£¬£¬£¬ £¬£¬£¬ÓÃÓÚ³öÊÛ±»µÁµÄÐÅÓÿ¨ÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£´¹ÂÚ¹¥»÷ͨ³£Ä£ÄâPayPalµÈÖ§¸¶ÉÌ£¬£¬£¬ £¬£¬£¬µ«Fullz HouseÏÖÔÚ±àдÁË×Ô¼ºµÄƲÔüÆ÷´úÂ룬£¬£¬ £¬£¬£¬RiskIQÑо¿Ö°Ô±ÒÔΪÕâÖÖÇéÐκÜÉÙ¼û¡£¡£¡£¡£¡£¡£¡£¸Ã´úÂëÀàËÆÓÚ2014Äê·¢Ã÷µÄµÚÒ»ÖÖÆ²ÔüÆ÷£¬£¬£¬ £¬£¬£¬¼ì²éÓû§ÊäÈë×ֶεÄת±ä¶ø²»ÊÇÆÚ´ýÊܺ¦ÕßÍê³É¹ºÖᣡ£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/fullz-house-threat-group-pivots-from-phishing-to-magecart-card-skimming-attacks/

4¡¢Èý·ÖÖ®Ò»µÄÎó²îʹÓù¤¾ß°üǨáãµ½ÎÞÎļþ¹¥»÷

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ÔÚ×î½üÐû²¼µÄÒ»·Ý±¨¸æÖУ¬£¬£¬ £¬£¬£¬MalwarebytesÑо¿Ö°Ô±ÌåÏÖÎó²îʹÓù¤¾ß°üÕýÔڸıäÆäÕ½ÂÔ¡£¡£¡£¡£¡£¡£¡£Ä¿½ñ»î¶¯µÄ9¸öEKÖÐÖÁÉÙÓÐ3¸öÕýÔÚʹÓÃÎÞÎļþ¹¥»÷£¬£¬£¬ £¬£¬£¬ÕâÊÇEKÊ×´ÎÆÕ±é½ÓÄɸÃÊÖÒÕ¡£¡£¡£¡£¡£¡£¡£Ê¹ÓôËÊÖÒÕµÄEK°üÀ¨Magnitude¡¢UnderminerºÍPurple Fox£¬£¬£¬ £¬£¬£¬ËäÈ»ÓëSpelevo¡¢FalloutºÍRIGµÈÆÕ±éʹÓõÄEKÏà±ÈÕâЩ¶¼ÊÇСÐÍEK£¬£¬£¬ £¬£¬£¬µ«Èý·ÖÖ®Ò»µÄÖ÷ÒªEKÕýÔÚʹÓÃÎÞÎļþÊÖÒÕÕâÒ»ÊÂʵÅú×¢ÎúδÀ´¼¸¸öÔºͼ¸ÄêEKÊг¡µÄÉú³¤Æ«Ïò¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹ÌåÏÖÔ½À´Ô½¶àµÄEK²»ÔÙʹÓÃFlash PlayerÎó²î¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.zdnet.com/article/exploit-kits-are-slowly-migrating-toward-fileless-attacks/

5¡¢¿¨°Í˹»ùÐû²¼2019ÄêQ3À¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


¿¨°Í˹»ùÐû²¼2019ÄêµÚÈý¼¾¶ÈµÄÀ¬»øÓʼþºÍ´¹ÂÚ¹¥»÷±¨¸æ¡£¡£¡£¡£¡£¡£¡£±¾¼¾¶ÈÀ¬»øÓʼþÔÚÈ«Çòµç×ÓÓʼþÁ÷Á¿ÖÐµÄÆ½¾ùÕ¼±È£¨56.26%£©±ÈÉÏÒ»¼¾¶È½µµÍÁË1.38¸ö°Ù·Öµã£¬£¬£¬ £¬£¬£¬Í¬Ê±Öض¨Ïòµ½´¹ÂÚÍøÕ¾µÄ¹¥»÷ÊýÄ¿ÓëÉÏÒ»¼¾¶ÈÏà±ÈϽµÁË2500Íò£¬£¬£¬ £¬£¬£¬½öΪ1.05ÒڴΡ£¡£¡£¡£¡£¡£¡£±¾¼¾¶ÈÀ¬»øÓʼþȪԴµÄ¹ú¼ÒÅÅÃûÖеÚÒ»ÃûÊÇÖйú£¬£¬£¬ £¬£¬£¬Æä·Ý¶îΪ20.43%¡£¡£¡£¡£¡£¡£¡ £¿£¿ £¿¨°Í˹»ùÇå¾²½â¾ö¼Æ»®¹²×èÖ¹ÁËÔ¼4809Íò¸ö¶ñÒâµÄÓʼþ¸½¼þ£¬£¬£¬ £¬£¬£¬ÆäÖÐBackdoor.Win32.Androm³ÉΪ×î³£¼ûµÄ¶ñÒâÈí¼þ¼Ò×壬£¬£¬ £¬£¬£¬ÆäÕ¼ÓʼþÁ÷Á¿µÄ·Ý¶îΪ7.49£¥¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://securelist.com/spam-report-q3-2019/95177/

6¡¢Å¦Ô¼¾¯Ô±¾ÖÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬ £¬£¬£¬Ö¸ÎÆÊý¾Ý¿â¹Ø±Õ

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ÔڳаüÉÌÅþÁ¬µ½NYPDµÄÍøÂçºó£¬£¬£¬ £¬£¬£¬¶ą̀ÅÌËã»úϵͳÔâÀÕË÷Èí¼þѬȾ¡£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñ±¬·¢ÔÚ2018Äê10Ô£¬£¬£¬ £¬£¬£¬NYPD×ܹ²ÔÚ23̨ÅÌËã»úÉÏ·¢Ã÷ÁËѬȾ¡£¡£¡£¡£¡£¡£¡£²¿·Ö¹ÙÔ±³Æ¸ÃѬȾ¡°´ÓδִÐС±£¬£¬£¬ £¬£¬£¬ÕâÒâζ×ÅÀÕË÷Èí¼þûÓÐÔì³ÉÈκÎË𺦣¬£¬£¬ £¬£¬£¬µ«NYPD´¦ÓÚÉóÉ÷˼Á¿¶ø½«ÊµÊ±É¨ÃèÖ¸ÎÆ¸ú×Ùϵͳ¹Ø±Õ¡£¡£¡£¡£¡£¡£¡£¹ÙÔ±ÔÚ½ÓÊÜ¡¶Å¦Ô¼Óʱ¨¡·²É·ÃʱÌåÏÖÖ¸ÎÆÊý¾Ý¿âÓÚµÚ¶þÌìÔçÉϻָ´Õý³£¡£¡£¡£¡£¡£¡£¡£NYPDÉù³ÆÆäÍøÂçÖÐÖ»ÓÐÔ¼0.1£¥µÄÅÌËã»úÊܵ½ÁËÓ°Ï죬£¬£¬ £¬£¬£¬²¢ÇÒûÓÐÈκÎÎļþ±»Ëø¶¨¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚÉÐδÅû¶ÓйØÀÕË÷Èí¼þÀàÐÍ¡¢¹¥»÷Õß¼°×°±¸±»Ñ¬È¾µÄ³Ð°üÉ̵ĸü¶àÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://news.softpedia.com/news/ransomware-infiltrates-nypd-s-fingerprint-database-causes-system-shutdown-528314.shtml