UniswapºÍLendf.meÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ëðʧ2500ÍòÃÀÔª£»£»£»µÂ¹úÕþ¸®ÔâCOVID-19´¹ÂÚ¹¥»÷ËðʧÊýÍòÍòÅ·Ôª
Ðû²¼Ê±¼ä 2020-04-211.FPGAоƬStarbleedÎó²î£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÈüÁé˼¶à¸ö²úÆ·
Ñо¿Ö°Ô±·¢Ã÷FPGAоƬ±£´æStarbleedÎó²î£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÁËÈüÁé˼7ϵÁеÄSpartan¡¢Artix¡¢Kintex¡¢Virtex×ÓϵÁжà¸ö²úÆ·¡£¡£¡£¡£¡£¡£ÓÉÓÚÎó²îΪӲ¼þ¼¶±ðÎó²î£¬£¬£¬£¬£¬£¬£¬Òò¶øÖ»ÄÜͨ¹ýÌæ»»Ð¾Æ¬À´ÐÞ¸´Îó²î¡£¡£¡£¡£¡£¡£Çå¾²Ñо¿Ö°Ô±·¢Ã÷¿ÉÒÔͨ¹ý½âÃܱ»¼ÓÃܵıÈÌØÁ÷À´»á¼ûºÍÐÞ¸ÄÓÃÓÚ±à³ÌµÄÎļþ¡£¡£¡£¡£¡£¡£Òò´Ë£¬£¬£¬£¬£¬£¬£¬ºÚ¿Í¿ÉÒÔʹÓøÃÎó²îÍêÈ«¿ØÖÆFPGAоƬ£¬£¬£¬£¬£¬£¬£¬²¢ÇÒ¿ÉÄÜ͵ȡ±ÈÌØÁ÷ÖеÄ֪ʶ²úȨ¡£¡£¡£¡£¡£¡£µÂ¹úMax PlanckÑо¿ËùµÄChristof Paar½ÌÊÚÌåÏÖ£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÉõÖÁ¿ÉÒÔ¾ÙÐÐÔ¶³Ì¹¥»÷£¬£¬£¬£¬£¬£¬£¬»òÊÇÏòFPGAоƬֲÈëÓ²¼þľÂí¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.helpnetsecurity.com/2020/04/20/starbleed-vulnerability/
2.UniswapºÍLendf.meÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ëðʧ2500ÍòÃÀÔª
ºÚ¿Í¹¥»÷ÁËUniswapÉúÒâËùºÍLendf.me½è´ûƽ̨£¬£¬£¬£¬£¬£¬£¬ÍµÈ¡Á˼ÛÖµÁè¼Ý2500ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò¡£¡£¡£¡£¡£¡£´Ë´Î¹¥»÷»®·Ö±¬·¢ÔÚÖÜÁùºÍÖÜÈÕ£¬£¬£¬£¬£¬£¬£¬ÊÓ²ìÖ°Ô±ÒÔΪÕâÁ½´Î¹¥»÷ºÜ¿ÉÄÜÊÇͳһ¸öÍÅ»ïÌᳫµÄ¡£¡£¡£¡£¡£¡£¾ÝÊӲ죬£¬£¬£¬£¬£¬£¬ºÚ¿ÍÁ¬ÏµÁ˲î±ðÇø¿éÁ´ÊÖÒÕÖеĶà¸öÎó²î×é³ÉÁËÒ»´ÎÖØ´óµÄÖØÈë¹¥»÷£¬£¬£¬£¬£¬£¬£¬ÔÚÔʼÉúÒâ±»Åú×¼»ò¾Ü¾øÖ®Ç°Ò»Ö±µØÈ¡Ç®¡£¡£¡£¡£¡£¡£¾Ý³ÆºÚ¿ÍÔڴ˴ι¥»÷ÖÐʹÓÃÁËOpenZeppelin¹«Ë¾ÓÚ2019Äê7ÔÂÔÚGitHubÉÏÐû²¼µÄÎó²îʹÓᣡ£¡£¡£¡£¡£Ö±µ½±¾ÎÄÐû²¼Ê±£¬£¬£¬£¬£¬£¬£¬Uniswap×ܹ²ËðʧÁË30ÍòÃÀÔªÖÁ110ÍòÃÀÔª£¬£¬£¬£¬£¬£¬£¬¶øLendf.meËðʧÁËÁè¼Ý2450ÍòÃÀÔª¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬ÕâÁ½¸öÍøÕ¾¾ùÒѹرգ¬£¬£¬£¬£¬£¬£¬ÒÔ±ÜÃâ½øÒ»²½µÄ¹¥»÷¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/hackers-steal-25-million-worth-of-cryptocurrency-from-uniswap-and-lendf-me/
3.CISI¹ÙÍø±»Ö²Èë¶ñÒâ´úÂ룬£¬£¬£¬£¬£¬£¬Óû§²ÆÎñÐÅÏ¢±»ÇÔ
Ó¢¹úÌØÐí֤ȯͶ×ÊлᣨCISI£©ÒÑÈ·ÈÏÆä¹ÙÍø±»Ö²Èë¶ñÒâ´úÂ룬£¬£¬£¬£¬£¬£¬Óû§µÄ²ÆÎñÐÅÏ¢¿ÉÄܱ»ÇÔ¡£¡£¡£¡£¡£¡£CISIÔÚ×Éѯ¹«Ë¾±ÏÂíÍþ£¨KPMG£©µÄ×ÊÖú϶ԴËÊ¿ªÕ¹ÁËÊӲ죬£¬£¬£¬£¬£¬£¬·¢Ã÷¹¥»÷Õßͨ¹ýµÚÈý·½Ó¦ÓóÌÐò»ñµÃÁËCISIÍøÕ¾µÄ»á¼ûȨÏÞ²¢ÏòÍøÕ¾Ö²ÈëÁ˶ñÒâ´úÂ룬£¬£¬£¬£¬£¬£¬È»ºóÔÚÓû§ÔÚÏßÖ§¸¶Ê±ÍµÈ¡Æä²ÆÎñÐÅÏ¢¡£¡£¡£¡£¡£¡£CISIÌåÏÖ¹¥»÷¿ÉÄܱ¬·¢ÔÚ2020Äê2ÔÂÖÐÑ®£¬£¬£¬£¬£¬£¬£¬ËûÃÇÒѾÁªÏµÁË5785¸öÔÚ2020Äê2ÔÂ1ÈÕÖÁ2020Äê4ÔÂ15ÈÕÖ®¼ä±¬·¢¹ýÉúÒâµÄ¿Í»§£¬£¬£¬£¬£¬£¬£¬²¢Ô¤¼Æ´ËÊÂÎñ»áÓ°Ïìµ½½ü1000ÃûÓû§¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://international-adviser.com/cisi-payment-breach-leaves-members-vulnerable-to-fraud/
4.µÂ¹úÕþ¸®ÔâCOVID-19´¹ÂÚ¹¥»÷ËðʧÊýÍòÍòÅ·Ôª
µÂ¹ú±±ÍþÖÝÕþ¸®ÓÉÓÚÆäÓÃÀ´·Ö·¢Covid19¾ÈÖú½ðµÄÍøÕ¾µÄ²»Çå¾²ÐÔ£¬£¬£¬£¬£¬£¬£¬ËðʧÁËÊýÍòÍòÅ·Ôª¡£¡£¡£¡£¡£¡£ÓÉÓÚ¸ÃÍøÕ¾½öÒªÇóÍâµØ×¡ÃñºÍ¹«Ë¾Ìîд±í¸ñ£¬£¬£¬£¬£¬£¬£¬¶øÃ»ÓнÓÄÉÈκÎÌØÁíÍâÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬£¬Ê¹µÃºÚ¿Í¿ÉÒÔ¾ÙÐд¹ÂÚ¹¥»÷¡£¡£¡£¡£¡£¡£¾ÝϤ£¬£¬£¬£¬£¬£¬£¬ºÚ¿ÍαÔìÁ˸ùٷ½ÍøÕ¾£¬£¬£¬£¬£¬£¬£¬²¢Í¨¹ý·¢Ë͵ç×ÓÓʼþµÄ·½·¨ÓÕʹÓû§Éϰ¶´ËαÔìÍøÕ¾ÒÔÇÔÈ¡ÆäСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£¡£Ö®ºóʹÓÃÕæÊÊÓû§µÄСÎÒ˽¼ÒÐÅÏ¢ÏòÕþ¸®Ìá³öÉêÇë¾ÈÖú½ðµÄÇëÇ󣬣¬£¬£¬£¬£¬£¬²¢½«»ãÈë×ʽðµÄÒøÐÐÕÊ»§Ð޸ijÉËûÃÇ×Ô¼ºµÄÕË»§¡£¡£¡£¡£¡£¡£¾ÝHandelsblatt±¨µÀ£¬£¬£¬£¬£¬£¬£¬Õþ¸®ÒÑÊÕµ½38Íò·ÝÒªÔ®ÖúÉêÇ룬£¬£¬£¬£¬£¬£¬²¢ÒѾÔÞ³ÉΪÆäÖеÄ36Íò·Ý¸¶¿î¡£¡£¡£¡£¡£¡£¾ÝµÂ¹úµçÊǪ́Tagesschau±¨µÀ£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÓÐ3500ÖÁ4000·ÝÉêÇëÊǼٵ쬣¬£¬£¬£¬£¬£¬¼òªԤ¼Æ±±ÍþÖÝÕþ¸®ÏÖÔÚµÄËðʧÖÁÉÙΪ3150ÍòÅ·Ôª£¨3425ÍòÃÀÔª£©£¬£¬£¬£¬£¬£¬£¬×î¸ß¿ÉÄÜΪ1ÒÚÅ·Ôª£¨1.09ÒÚÃÀÔª£©¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/german-government-might-have-lost-tens-of-millions-of-euros-in-covid-19-phishing-attack/
5.ºÉÀ¼COVID-19¸ú×ÙÓ¦ÓÃCovid19 Alertй¶»¼ÕßÐÅÏ¢
¾ÝRTL NieuwsÍøÕ¾±¨µÀ£¬£¬£¬£¬£¬£¬£¬ºÉÀ¼ÄâÓÃÀ´¸ú×ÙCOVID-19»¼ÕßµÄÓ¦ÓóÌÐòCovid19 AlertÒâÍâй¶Óû§ÐÅÏ¢¡£¡£¡£¡£¡£¡£Covid 19 AlertµÄ½²»°ÈËÌåÏÖ£¬£¬£¬£¬£¬£¬£¬ÔÚËûÃǽ«Ô´´úÂë·¢Ë͸ø×¨¼Ò¾ÙÐÐÆÊÎöʱ£¬£¬£¬£¬£¬£¬£¬²»Ð¡ÐĽ«Óû§Êý¾Ý·ÅÔÚÁËÍøÉÏ¡£¡£¡£¡£¡£¡£ÕâЩԴÎļþÖаüÀ¨ImmotefÓ¦ÓõÄÊý¾Ý¿â£¬£¬£¬£¬£¬£¬£¬ÄÚÀï´æ·ÅÓкÉÀ¼Óû§µÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬°üÀ¨½ü200¸öÓû§µÄÐÕÃû¡¢µç×ÓÓʼþµØµãºÍ¹þÏ£ÃÜÂë¡£¡£¡£¡£¡£¡£Covid19 Alert¿ª·¢ÍŶÓÌåÏÖ¸ÃÊÂÎñÒѱ¨¸æ¸øºÉÀ¼Êý¾Ý±£»£»£»¤¾Ö£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÕýÔÚÆð¾¢½â¾ö´ËÇå¾²ºÍÒþ˽ÎÊÌâ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/101914/digital-id/coronavirus-contact-tracing-app-data-leak.html
6.Ñо¿»ú¹¹·¢Ã÷Õë¶ÔÕþ¸®¾¼Ã´Ì¼¤ÍýÏëµÄ¶ñÒâÓòÃû¼¤Ôö
Check PointµÄÑо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬£¬½ü¼¸ÖÜÕë¶ÔÕþ¸®¾¼Ã´Ì¼¤ÍýÏëºÍ¾ÈÔ®ÍýÏëµÄ¶ñÒâÓòÃû¼±¾çÔöÌí£¬£¬£¬£¬£¬£¬£¬Ö¼ÔÚÆÈ¡Óû§µÄСÎÒ˽¼ÒÐÅÏ¢¾ÙÐÐڲơ£¡£¡£¡£¡£¡£´Ó3ÔÂ16ÈÕÃÀ¹úÕþ¸®Ìá³öÁ˾¼Ã´Ì¼¤ÍýÏë×îÏÈ£¬£¬£¬£¬£¬£¬£¬Ð¶ñÒâÓòÃûµÄ×¢²áÊýÄ¿ËæÖ®ÔöÌíµ½Ç°¼¸ÖܵÄ3.5±¶£¬£¬£¬£¬£¬£¬£¬¶ø´¹ÂÚ¹¥»÷µÄ´ÎÊýÃÍÔöÖÁÖðÈÕ14000´Î£¬£¬£¬£¬£¬£¬£¬Ô¼ÎªÖ®Ç°µÄ6±¶£¬£¬£¬£¬£¬£¬£¬4ÔÂ7-14ÈÕ¸üÊǼ¤ÔöÖÁÖðÈÕ20000´Î¡£¡£¡£¡£¡£¡£×Ô1Ô·ÝCOVID-19±¬·¢ÒÔÀ´£¬£¬£¬£¬£¬£¬£¬ÒѾÓÐÔ¼68000¸öÓë¹Ú×´²¡¶¾Ïà¹ØµÄÐÂÓòÃû±»×¢²á£¬£¬£¬£¬£¬£¬£¬ÆäÖÐ4ÔÂ2ÈÕºóÐÂ×¢²áÁË17000¸öÓò£¬£¬£¬£¬£¬£¬£¬ÆäÖÐ2£¥ÊǶñÒâÓòÃû£¬£¬£¬£¬£¬£¬£¬¶ø21£¥Îª¿ÉÒÉÓòÃû¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬£¬ÕâЩ¶ñÒâÍøÕ¾ÍýÏëʹÓÃCovid-19¾¼Ã´Ì¼¤ÍýÏëµÄÐÂÎÅÀ´ÓÕʹÓû§Éϰ¶¸ÃÍøÕ¾£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÇÔÈ¡Êܺ¦ÕßµÄСÎÒ˽¼ÒÐÅÏ¢²¢ÇÒÌᳫ²ÆÎñڲƵȹ¥»÷¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.jpost.com/israel-news/israeli-researchers-hackers-aiming-to-exploit-government-financial-aid-625218