UniswapºÍLendf.meÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬ £¬£¬Ëðʧ2500ÍòÃÀÔª£»£»£»µÂ¹úÕþ¸®ÔâCOVID-19´¹ÂÚ¹¥»÷ËðʧÊýÍòÍòÅ·Ôª

Ðû²¼Ê±¼ä 2020-04-21

1.FPGAоƬStarbleedÎó²î£¬£¬£¬£¬£¬ £¬£¬Ó°ÏìÈüÁé˼¶à¸ö²úÆ·


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Ñо¿Ö°Ô±·¢Ã÷FPGAоƬ±£´æStarbleedÎó²î£¬£¬£¬£¬£¬ £¬£¬Ó°ÏìÁËÈüÁé˼7ϵÁеÄSpartan¡¢Artix¡¢Kintex¡¢Virtex×ÓϵÁжà¸ö²úÆ·¡£¡£¡£¡£¡£¡£ÓÉÓÚÎó²îΪӲ¼þ¼¶±ðÎó²î£¬£¬£¬£¬£¬ £¬£¬Òò¶øÖ»ÄÜͨ¹ýÌæ»»Ð¾Æ¬À´ÐÞ¸´Îó²î¡£¡£¡£¡£¡£¡£Çå¾²Ñо¿Ö°Ô±·¢Ã÷¿ÉÒÔͨ¹ý½âÃܱ»¼ÓÃܵıÈÌØÁ÷À´»á¼ûºÍÐÞ¸ÄÓÃÓÚ±à³ÌµÄÎļþ¡£¡£¡£¡£¡£¡£Òò´Ë£¬£¬£¬£¬£¬ £¬£¬ºÚ¿Í¿ÉÒÔʹÓøÃÎó²îÍêÈ«¿ØÖÆFPGAоƬ£¬£¬£¬£¬£¬ £¬£¬²¢ÇÒ¿ÉÄÜ͵ȡ±ÈÌØÁ÷ÖеÄ֪ʶ²úȨ¡£¡£¡£¡£¡£¡£µÂ¹úMax PlanckÑо¿ËùµÄChristof Paar½ÌÊÚÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßÉõÖÁ¿ÉÒÔ¾ÙÐÐÔ¶³Ì¹¥»÷£¬£¬£¬£¬£¬ £¬£¬»òÊÇÏòFPGAоƬֲÈëÓ²¼þľÂí¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/04/20/starbleed-vulnerability/


2.UniswapºÍLendf.meÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬ £¬£¬Ëðʧ2500ÍòÃÀÔª


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ºÚ¿Í¹¥»÷ÁËUniswapÉúÒâËùºÍLendf.me½è´ûƽ̨£¬£¬£¬£¬£¬ £¬£¬ÍµÈ¡Á˼ÛÖµÁè¼Ý2500ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò¡£¡£¡£¡£¡£¡£´Ë´Î¹¥»÷»®·Ö±¬·¢ÔÚÖÜÁùºÍÖÜÈÕ£¬£¬£¬£¬£¬ £¬£¬ÊÓ²ìÖ°Ô±ÒÔΪÕâÁ½´Î¹¥»÷ºÜ¿ÉÄÜÊÇͳһ¸öÍÅ»ïÌᳫµÄ¡£¡£¡£¡£¡£¡£¾ÝÊӲ죬£¬£¬£¬£¬ £¬£¬ºÚ¿ÍÁ¬ÏµÁ˲î±ðÇø¿éÁ´ÊÖÒÕÖеĶà¸öÎó²î×é³ÉÁËÒ»´ÎÖØ´óµÄÖØÈë¹¥»÷£¬£¬£¬£¬£¬ £¬£¬ÔÚԭʼÉúÒâ±»Åú×¼»ò¾Ü¾øÖ®Ç°Ò»Ö±µØÈ¡Ç®¡£¡£¡£¡£¡£¡£¾Ý³ÆºÚ¿ÍÔڴ˴ι¥»÷ÖÐʹÓÃÁËOpenZeppelin¹«Ë¾ÓÚ2019Äê7ÔÂÔÚGitHubÉÏÐû²¼µÄÎó²îʹÓᣡ£¡£¡£¡£¡£Ö±µ½±¾ÎÄÐû²¼Ê±£¬£¬£¬£¬£¬ £¬£¬Uniswap×ܹ²ËðʧÁË30ÍòÃÀÔªÖÁ110ÍòÃÀÔª£¬£¬£¬£¬£¬ £¬£¬¶øLendf.meËðʧÁËÁè¼Ý2450ÍòÃÀÔª¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬ £¬£¬ÕâÁ½¸öÍøÕ¾¾ùÒѹرÕ£¬£¬£¬£¬£¬ £¬£¬ÒÔ±ÜÃâ½øÒ»²½µÄ¹¥»÷¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/hackers-steal-25-million-worth-of-cryptocurrency-from-uniswap-and-lendf-me/


3.CISI¹ÙÍø±»Ö²Èë¶ñÒâ´úÂ룬£¬£¬£¬£¬ £¬£¬Óû§²ÆÎñÐÅÏ¢±»ÇÔ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Ó¢¹úÌØÐí֤ȯͶ×ÊЭ»á£¨CISI£©ÒÑÈ·ÈÏÆä¹ÙÍø±»Ö²Èë¶ñÒâ´úÂ룬£¬£¬£¬£¬ £¬£¬Óû§µÄ²ÆÎñÐÅÏ¢¿ÉÄܱ»ÇÔ¡£¡£¡£¡£¡£¡£CISIÔÚ×Éѯ¹«Ë¾±ÏÂíÍþ£¨KPMG£©µÄ×ÊÖú϶ԴËÊ¿ªÕ¹ÁËÊӲ죬£¬£¬£¬£¬ £¬£¬·¢Ã÷¹¥»÷Õßͨ¹ýµÚÈý·½Ó¦ÓóÌÐò»ñµÃÁËCISIÍøÕ¾µÄ»á¼ûȨÏÞ²¢ÏòÍøÕ¾Ö²ÈëÁ˶ñÒâ´úÂ룬£¬£¬£¬£¬ £¬£¬È»ºóÔÚÓû§ÔÚÏßÖ§¸¶Ê±ÍµÈ¡Æä²ÆÎñÐÅÏ¢¡£¡£¡£¡£¡£¡£CISIÌåÏÖ¹¥»÷¿ÉÄܱ¬·¢ÔÚ2020Äê2ÔÂÖÐÑ®£¬£¬£¬£¬£¬ £¬£¬ËûÃÇÒѾ­ÁªÏµÁË5785¸öÔÚ2020Äê2ÔÂ1ÈÕÖÁ2020Äê4ÔÂ15ÈÕÖ®¼ä±¬·¢¹ýÉúÒâµÄ¿Í»§£¬£¬£¬£¬£¬ £¬£¬²¢Ô¤¼Æ´ËÊÂÎñ»áÓ°Ïìµ½½ü1000ÃûÓû§¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://international-adviser.com/cisi-payment-breach-leaves-members-vulnerable-to-fraud/


4.µÂ¹úÕþ¸®ÔâCOVID-19´¹ÂÚ¹¥»÷ËðʧÊýÍòÍòÅ·Ôª


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


µÂ¹ú±±ÍþÖÝÕþ¸®ÓÉÓÚÆäÓÃÀ´·Ö·¢Covid19¾ÈÖú½ðµÄÍøÕ¾µÄ²»Çå¾²ÐÔ£¬£¬£¬£¬£¬ £¬£¬ËðʧÁËÊýÍòÍòÅ·Ôª¡£¡£¡£¡£¡£¡£ÓÉÓÚ¸ÃÍøÕ¾½öÒªÇóÍâµØ×¡ÃñºÍ¹«Ë¾Ìîд±í¸ñ£¬£¬£¬£¬£¬ £¬£¬¶øÃ»ÓнÓÄÉÈκÎÌØÁíÍâÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬ £¬£¬Ê¹µÃºÚ¿Í¿ÉÒÔ¾ÙÐд¹ÂÚ¹¥»÷¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬ £¬£¬ºÚ¿ÍαÔìÁ˸ùٷ½ÍøÕ¾£¬£¬£¬£¬£¬ £¬£¬²¢Í¨¹ý·¢Ë͵ç×ÓÓʼþµÄ·½·¨ÓÕʹÓû§Éϰ¶´ËαÔìÍøÕ¾ÒÔÇÔÈ¡ÆäСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£Ö®ºóʹÓÃÕæÊÊÓû§µÄСÎÒ˽¼ÒÐÅÏ¢ÏòÕþ¸®Ìá³öÉêÇë¾ÈÖú½ðµÄÇëÇ󣬣¬£¬£¬£¬ £¬£¬²¢½«»ãÈë×ʽðµÄÒøÐÐÕÊ»§Ð޸ijÉËûÃÇ×Ô¼ºµÄÕË»§¡£¡£¡£¡£¡£¡£¾ÝHandelsblatt±¨µÀ£¬£¬£¬£¬£¬ £¬£¬Õþ¸®ÒÑÊÕµ½38Íò·ÝÒªÔ®ÖúÉêÇ룬£¬£¬£¬£¬ £¬£¬²¢ÒѾ­ÔÞ³ÉΪÆäÖеÄ36Íò·Ý¸¶¿î¡£¡£¡£¡£¡£¡£¾ÝµÂ¹úµçÊǪ́Tagesschau±¨µÀ£¬£¬£¬£¬£¬ £¬£¬ÆäÖÐÓÐ3500ÖÁ4000·ÝÉêÇëÊǼٵÄ£¬£¬£¬£¬£¬ £¬£¬¼òªԤ¼Æ±±ÍþÖÝÕþ¸®ÏÖÔÚµÄËðʧÖÁÉÙΪ3150ÍòÅ·Ôª£¨3425ÍòÃÀÔª£©£¬£¬£¬£¬£¬ £¬£¬×î¸ß¿ÉÄÜΪ1ÒÚÅ·Ôª£¨1.09ÒÚÃÀÔª£©¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/german-government-might-have-lost-tens-of-millions-of-euros-in-covid-19-phishing-attack/


5.ºÉÀ¼COVID-19¸ú×ÙÓ¦ÓÃCovid19 Alertй¶»¼ÕßÐÅÏ¢


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


¾ÝRTL NieuwsÍøÕ¾±¨µÀ£¬£¬£¬£¬£¬ £¬£¬ºÉÀ¼ÄâÓÃÀ´¸ú×ÙCOVID-19»¼ÕßµÄÓ¦ÓóÌÐòCovid19 AlertÒâÍâй¶Óû§ÐÅÏ¢¡£¡£¡£¡£¡£¡£Covid 19 AlertµÄ½²»°ÈËÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬ÔÚËûÃǽ«Ô´´úÂë·¢Ë͸ø×¨¼Ò¾ÙÐÐÆÊÎöʱ£¬£¬£¬£¬£¬ £¬£¬²»Ð¡ÐĽ«Óû§Êý¾Ý·ÅÔÚÁËÍøÉÏ¡£¡£¡£¡£¡£¡£ÕâЩԴÎļþÖаüÀ¨ImmotefÓ¦ÓõÄÊý¾Ý¿â£¬£¬£¬£¬£¬ £¬£¬ÄÚÀï´æ·ÅÓкÉÀ¼Óû§µÄÊý¾Ý£¬£¬£¬£¬£¬ £¬£¬°üÀ¨½ü200¸öÓû§µÄÐÕÃû¡¢µç×ÓÓʼþµØµãºÍ¹þÏ£ÃÜÂë¡£¡£¡£¡£¡£¡£Covid19 Alert¿ª·¢ÍŶÓÌåÏÖ¸ÃÊÂÎñÒѱ¨¸æ¸øºÉÀ¼Êý¾Ý±£»£»£»¤¾Ö£¬£¬£¬£¬£¬ £¬£¬²¢ÇÒÕýÔÚÆð¾¢½â¾ö´ËÇå¾²ºÍÒþ˽ÎÊÌâ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/101914/digital-id/coronavirus-contact-tracing-app-data-leak.html


6.Ñо¿»ú¹¹·¢Ã÷Õë¶ÔÕþ¸®¾­¼Ã´Ì¼¤ÍýÏëµÄ¶ñÒâÓòÃû¼¤Ôö


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Check PointµÄÑо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬½ü¼¸ÖÜÕë¶ÔÕþ¸®¾­¼Ã´Ì¼¤ÍýÏëºÍ¾ÈÔ®ÍýÏëµÄ¶ñÒâÓòÃû¼±¾çÔöÌí£¬£¬£¬£¬£¬ £¬£¬Ö¼ÔÚÆ­È¡Óû§µÄСÎÒ˽¼ÒÐÅÏ¢¾ÙÐÐڲƭ¡£¡£¡£¡£¡£¡£´Ó3ÔÂ16ÈÕÃÀ¹úÕþ¸®Ìá³öÁ˾­¼Ã´Ì¼¤ÍýÏë×îÏÈ£¬£¬£¬£¬£¬ £¬£¬Ð¶ñÒâÓòÃûµÄ×¢²áÊýÄ¿ËæÖ®ÔöÌíµ½Ç°¼¸ÖܵÄ3.5±¶£¬£¬£¬£¬£¬ £¬£¬¶ø´¹ÂÚ¹¥»÷µÄ´ÎÊýÃÍÔöÖÁÖðÈÕ14000´Î£¬£¬£¬£¬£¬ £¬£¬Ô¼ÎªÖ®Ç°µÄ6±¶£¬£¬£¬£¬£¬ £¬£¬4ÔÂ7-14ÈÕ¸üÊǼ¤ÔöÖÁÖðÈÕ20000´Î¡£¡£¡£¡£¡£¡£×Ô1Ô·ÝCOVID-19±¬·¢ÒÔÀ´£¬£¬£¬£¬£¬ £¬£¬ÒѾ­ÓÐÔ¼68000¸öÓë¹Ú×´²¡¶¾Ïà¹ØµÄÐÂÓòÃû±»×¢²á£¬£¬£¬£¬£¬ £¬£¬ÆäÖÐ4ÔÂ2ÈÕºóÐÂ×¢²áÁË17000¸öÓò£¬£¬£¬£¬£¬ £¬£¬ÆäÖÐ2£¥ÊǶñÒâÓòÃû£¬£¬£¬£¬£¬ £¬£¬¶ø21£¥Îª¿ÉÒÉÓòÃû¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬ÕâЩ¶ñÒâÍøÕ¾ÍýÏëʹÓÃCovid-19¾­¼Ã´Ì¼¤ÍýÏëµÄÐÂÎÅÀ´ÓÕʹÓû§Éϰ¶¸ÃÍøÕ¾£¬£¬£¬£¬£¬ £¬£¬²¢ÇÒÇÔÈ¡Êܺ¦ÕßµÄСÎÒ˽¼ÒÐÅÏ¢²¢ÇÒÌᳫ²ÆÎñڲƭµÈ¹¥»÷¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.jpost.com/israel-news/israeli-researchers-hackers-aiming-to-exploit-government-financial-aid-625218