ÃÀ¹ÙÔ±ÈÏ¿ÉÏò¶íÂÞ˹µçÍøÖ²È벡¶¾ £»AMCAÊý¾Ýй¶²¨¼°ÈËÊýÁè¼Ý2000Íò £»WebLogic ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î

Ðû²¼Ê±¼ä 2019-06-17
1¡¢ÃÀ¹ÙÔ±ÈÏ¿ÉÏò¶íÂÞ˹µçÍøÖ²È벡¶¾ £¬ÌØÀÊÆÕÅ­í¡ÃÀýÅѹú

×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!
 
ÍâµØÊ±¼ä6ÔÂ15ÈÕ £¬¡¶Å¦Ô¼Ê±±¨¡·Ô®ÒýÃÀ¹úÏÖÈκÍǰÈÎÕþ¸®¹ÙÔ±µÄ»°³Æ £¬ÃÀ¹úÕýÔÚ¼Ó´ó¶Ô¶íÂÞ˹µçÍøµÄÍøÂç¹¥»÷ £¬¡°ÖÁÉÙ´Ó2012Äê×îÏÈ £¬ÃÀ¹úÒѽ«Õì²é̽²âÆ÷ÖÃÈë¶íÂÞ˹µçÍøµÄ¿ØÖÆÏµÍ³¡£¡±ÉÏÊö¹ÙÔ±ÌåÏÖ £¬ÏÖÔÚÃÀ¹úµÄÕ½ÂÔÒѾ­¸ü¶àµØ×ªÏò½ø¹¥ £¬²¢ÒÔ¡°Ø¨¹ÅδÓС±µÄÉî¶È½«Ç±ÔڵĶñÒâÈí¼þ°²¶ÙÓÚ¶íÂÞ˹ϵͳÄÚ¡£ÃÀ¹úÕþÒª²¢Î´¾Í±¨µÀ×÷³ö»ØÓ¦ £¬µ«¿´Í걨µÀµÄÌØÀÊÆÕÈ´Ê®·ÖÄÕÅ­ £¬ËûËæ¼´ÔÚÍÆÌØÉÏ·¢ÍÆÎÄ»Øí¡ £¬³Æ¡¶Å¦Ô¼Ê±±¨¡·µÄ±¨µÀÊÇ¼ÙµÄ £¬²¢³ÆÆä×ö·¨¡°¼òÖ±ÊÇÅѹúÐо¶ £¬ÊÇÈËÃñµÄ³ðÈË£¡¡±

Ô­ÎÄÁ´½Ó£ºhttps://www.nytimes.com/2019/06/15/us/politics/trump-cyber-russia-grid.html

2¡¢AMCAÊý¾Ýй¶²¨¼°ÈËÊýÁè¼Ý2000Íò £¬5¼Ò¹«Ë¾ÊÜÓ°Ïì

×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!
 
ÃÀ¹úÒ½ÁÆÆóÒµÕ˵¥·þÎñÉÌAMCAµÄÊý¾Ýй¶ÊÂÎñÏÖÒѲ¨¼°Áè¼Ý2000Íò»¼Õß¡£Ð¹Â¶µÄÊý¾ÝÊôÓÚÃÀ¹ú¸÷¸öÁÙ´²ºÍѪҺ¼ì²âʵÑéÊҵϼÕß £¬°üÀ¨ËûÃǵÄÐÕÃû¡¢¼Òͥסַ¡¢µç»°ºÅÂë¡¢³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¡¢Ö§¸¶¿¨ÏêϸÐÅÏ¢ºÍÒøÐÐÕË»§ÐÅÏ¢µÈ¡£ÊÜÓ°ÏìµÄʵÑéÊÒ°üÀ¨Quest Diagnostics£¨²¨¼°1190Íò»¼Õߣ©¡¢LabCorp£¨770Íò»¼Õߣ©¡¢BioReferenceʵÑéÊÒ£¨Opko Health×Ó¹«Ë¾ £¬422600Ãû»¼Õߣ©¡¢Carecentrix£¨50ÍòÃû»¼Õߣ©ºÍSunrise Laboratories£¨Î´¹ûÕæ»¼ÕßÊý£©¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/amca-data-breach-has-now-gone-over-the-20-million-mark/

3¡¢ÃÀ¹úÈýËù´óѧһÁ¬Åû¶Êý¾Ýй¶ÊÂÎñ £¬²¨¼°Ñ§Éú¼°Ô±¹¤Òþ˽

×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!
 
ÃÀ¹úÈýËù´óѧÁ½ÌìÄÚÒ»Á¬Åû¶Êý¾Ýй¶ÊÂÎñ £¬²¨¼°Ñ§Éú¼°Ô±¹¤Òþ˽¡£ÕâÈýËù´óѧ»®·ÖÊǸñÀ×˹À¼´óѧ¡¢¶íÀÕ¸ÔÖÝÁ¢´óѧºÍÃÜËÕÀïÖÝÄϲ¿ÖÝÁ¢´óѧ¡£6ÔÂ14ÈÕ¸ñÀ×˹À¼´óѧÅû¶³Æ²¿·ÖÔ±¹¤ÓÊÏäÕË»§ÔâδÊÚȨ»á¼û £¬ÊÂÎñ±¬·¢ÔÚ3ÔÂ29ÈÕ¡¢4ÔºÍ5ÔÂ1ÈÕ¡£¶íÀÕ¸ÔÖÝÁ¢´óѧºÍÃÜËÕÀïÖÝÄϲ¿ÖÝÁ¢´óѧͬÑùÔâµ½´¹ÂÚÓʼþ¹¥»÷ £¬ÕâЩÊÂÎñÕýÔÚ½øÒ»³ÌÐò²éÖ®ÖС£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/three-us-universities-disclose-data-breaches-over-two-day-span/

4¡¢Akamaiб¨¸æ³Æ½ü17¸öÔÂÓÎÏ·ÐÐÒµÔâµ½120ÒÚ´Îײ¿â¹¥»÷

×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!
 

ƾ֤AkamaiµÄ»¥ÁªÍøÇå¾²±¨¸æ £¬ÔÚ2017Äê11ÔÂÖÁ2019Äê3ÔµÄ17¸öÔÂÄÚ £¬Õë¶ÔÓÎÏ·ÐÐÒµµÄײ¿â¹¥»÷´ÎÊý´ï120ÒڴΡ£ÔÚͳһʱÆÚÄÚ £¬Akamai¹²¼Í¼µ½Õë¶ÔËùÓÐÐÐÒµµÄ550ÒÚ´Îײ¿â¹¥»÷¡£¸Ã±¨¸æ»¹ÏÔʾ £¬SQL×¢È루SQLi£©¹¥»÷¼ÌÐøÔöÌí £¬ÏÖÔÚÕ¼ËùÓÐWebÓ¦ÓóÌÐò¹¥»÷µÄ½üÈý·ÖÖ®¶þ£¨65.1£¥£© £»ÍâµØÎļþ°üÀ¨£¨LFI£©¹¥»÷Õ¼24.7£¥¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.helpnetsecurity.com/2019/06/14/gaming-community-credential-stuffing-attacks/

5¡¢Oracle WebLogic ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CNNVD-201906-596£©

×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!
 
CNNVDÐû²¼¹ØÓÚOracle WebLogic ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CNNVD-201906-596£©µÄÔ¤¾¯¡£¹¥»÷Õß¿ÉʹÓøÃÎó²îÔÚδÊÚȨµÄÇéÐÎÏ·¢Ë͹¥»÷Êý¾Ý £¬ÊµÏÖí§Òâ´úÂëÖ´ÐС£¸ÃÎó²îÊÇÓÉÓÚOracleÒ»¸öÀúÊ·Îó²î£¨CNNVD-201904-961 £¬CVE-2019-2725£©ÐÞ²¹²»ÍêÉÆµ¼Ö £¬Ö»¹Ü4ÔÂ26ÈÕOracleÐû²¼Á˲¹¶¡ £¬µ«¿ËÈÕ·¢Ã÷¸ÃÎó²îÈԿɱ»ÐµĹ¥»÷·½·¨Ê¹Óá£Oracle WebLogic Server 10.3.6.0¡¢12.1.3.0µÈ°æ±¾¾ùÊÜÎó²îÓ°Ïì¡£ÏÖÔÚ £¬ Oracle¹Ù·½ÔÝδÐû²¼¸ÃÎó²î²¹¶¡ £¬µ«¿ÉÒÔͨ¹ýÔÝʱÐÞ²¹²½·¥»º½âÎó²î´øÀ´µÄΣº¦¡£

Ô­ÎÄÁ´½Ó£ºhttps://mp.weixin.qq.com/s/EhieSVXW9V2q5B9TlJyrug

6¡¢NEO UrologyÔâÀÕË÷Èí¼þ¹¥»÷ £¬ÒÑÖ§¸¶7.5ÍòÃÀÔªµÄÊê½ð

×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!
 
¶íº¥¶íÖÝÒ½Áƹ«Ë¾NEO UrologyÔâºÚ¿Í¹¥»÷ £¬ÆäÅÌËã»úϵͳ±»ÀÕË÷Èí¼þ¼ÓÃÜ¡£¸Ã¹«Ë¾Í¨¹ýµÚÈýÆ«Ïò¹¥»÷ÕßÖ§¸¶Á˼ÛÖµ7.5ÍòÃÀÔªµÄ±ÈÌØ±Ò £¬ÒÔ»ñÈ¡½âÃÜÃÜÔ¿¡£Æ¾Ö¤IT·þÎñÉÌµÄÆÊÎö £¬ËûÃÇÏÓÒɹ¥»÷ÕßÀ´×ÔÓÚ¶íÂÞ˹¡£¹¥»÷ÕߵĴ«ÕæÁªÏµ·½·¨ÊÇ¡°Pay4Day.io¡± £¬¾¯ÆÓÖ±ÔÚ¾ÙÐнøÒ»²½µÄÊӲ졣

Ô­ÎÄÁ´½Ó£ºhttp://www.wfmj.com/story/40646778/boardman-medical-practice-hacked-told-to-pay-75000-in-bitcoin-to-unlock-system