ÒÆ¶¯ÀûÓÃÊý¾Ý°²È«ÓëÓ×ÎÒÐÅÏ¢±£»¤°×ƤÊ飻Áª¹úͼÊé¹ÝÏîÄ¿FDLP¹ÙÍøÒÉËÆÔâµ½ÒÁÀʺڿ͹¥»÷

°ä²¼¹¦·ò 2020-01-06


1.ÒÆ¶¯ÀûÓÃÊý¾Ý°²È«ÓëÓ×ÎÒÐÅÏ¢±£»¤°×ƤÊ飨2019Ä꣩


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


½üÈÕ£¬ÖйúÐÅͨԺ°²È«×êÑÐËù°ä²¼ÁË¡¶Òƶ¯ÀûÓã¨App£©Êý¾Ý°²È«ÓëÓ×ÎÒÐÅÏ¢±£»¤°×ƤÊ飨2019Ä꣩¡·£¬ÄÚÈݺ­¸ÇApp×îз¢Õ¹Ç÷Ïò¼°Éç»á¾­¼ÃÓ°Ïì¡¢µ±Ç°App´æÔÚµÄÖØÒªÊý¾Ý°²È«Òþ»¼¡¢¹úÄÚ±íAppÊý¾Ý°²È«ÖÎÀíʵ¼Ê¡¢AppÊý¾Ý°²È«×ÛºÏÖÎÀí½¨ÒéºÍÓû§ÈÈÇйØ×¢µÄ°²È«·À±¸¼¼Çɵȶà¸ö·½Ãæ¡£¸Ã°×ƤÊéÔÚÑÐÅÐApp·¢Õ¹Ç÷Ïò¼°Éç»á¾­¼ÃÓ°ÏìµÄ»ù´¡ÉÏ£¬³Áµã·ÖÎöĿǰÖ÷Á÷App´æÔÚµÄÊý¾Ý°²È«Òþ»¼£¬ÏµÍ³ÊáÀí×ܽá¹úÄÚ±íAppÊý¾Ý°²È«ÖÎÀí½ü¿ö£¬×îºó´Óµ±¾Ö¡¢ÆóÒµ¡¢ÐÐÒµÈý¸öά¶È×êÑÐÌá³öÁËÎÒ¹úAppÊý¾Ý°²È«ÓëÓ×ÎÒÐÅÏ¢±£»¤×ÛºÏÖÎÀí½¨Ò飬²¢´ÓÓû§ÊÓ½Ç×ܽáÌá³öÁËÓû§°²È«Ê¹Óü¼ÇÉ¡£


  Ô­ÎÄÁ´½Ó£º

http://www.caict.ac.cn/kxyj/qwfb/bps/201912/t20191229_272847.htm


2.µçÐÅÍøÂçÚ¿Æ­ÖÎÀíÓëÈËΪÖÇÄÜÀûÓÃ°×Æ¤Ê飨2019Ä꣩


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


½üÈÕÖйúÐÅͨԺ°²È«×êÑÐËù°ä²¼ÁË¡¶µçÐÅÍøÂçÚ¿Æ­ÖÎÀíÓëÈËΪÖÇÄÜÀûÓÃ°×Æ¤Ê飨2019Ä꣩¡·¡£¸Ã°×ƤÊé½áºÏµ±Ç°µçÐÅÍøÂçÚ¿Æ­·À±¸ÖÎÀí¹¤×÷ʵ¼ÊÇé¿öºÍÈËΪÖÇÄܼ¼ÊõµÄ·¢Õ¹ÀûÓã¬ÏµÍ³ÊáÀíÈËΪÖÇÄÜÔÚÖÎÀí¹¤×÷ÖеĻý¼«Ó°Ïì¼°¼¼Êõʵ¼ÊÀûÓã¬Í¬Ê±·Ö½âÈËΪÖÇÄܲ»µ±Ê¹ÓÃΪÖÎÀí¹¤×÷´øÀ´µÄ·çÏÕÌôÕ½£¬ÔÚ×ܽá¹úÄÚ±íµçÐÅÍøÂçÚ¿Æ­ÖÎÀí½ü¿öµÄ»ù´¡ÉÏ£¬Éî¿Ì·ÖÎöµ±Ç°ÈËΪÖÇÄܲ¼¾°ÏÂÖÎÀí¹¤×÷µÄÇ÷Ïò×ßÏòºÍÎÊÌâ¶Ì°å²¢×êÑÐÌá³ö¶ÔÓ¦µÄ´ëÊ©½¨Òé¡£°×ƤÊéÄÚÈݺ­¸ÇÈËΪÖÇÄÜÀûÓøøÖÎÀí¹¤×÷´øÀ´µÄ»ý¼«Ó°Ïì¼°·çÏÕÌôÕ½¡¢¹úÄÚ±íµçÐÅÍøÂçÚ¿Æ­ÖÎÀí½ü¿ö¡¢ÈËΪÖÇÄܲ¼¾°ÏÂÎÒ¹úÖÎÀí¹¤×÷Ãæ¶ÔµÄÎÊÌâ¼°´ëÊ©½¨ÒéµÈ¶à¸ö·½Ãæ¡£


 Ô­ÎÄÁ´½Ó£º

http://www.caict.ac.cn/kxyj/qwfb/bps/201912/t20191229_272846.htm


3.Áª¹úͼÊé¹ÝÏîÄ¿FDLP¹ÙÍøÒÉËÆÔâµ½ÒÁÀʺڿ͹¥»÷


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


±¾µØ¹¦·ò4ÈÕÍí£¬ÃÀ¹úºÓɽ°²È«Êý(DHS)ÔÚ¼à¿ØÃÀ¹úµ±¾Ö³ö°æ¾Ö(GPO)ÔËÓªµÄÁª¹úͼÊé¹Ý´òËã(FDLP)ÍøÕ¾Ôâµ½ºÚ¿Í¹¥»÷һʡ£±¨Â·³Æ£¬ÔÚÔâºÚ¿Í¹¥»÷ºó£¬¸ÃÍøÕ¾Ê×Ò³ÏÔʾµÄÊÇÒ»¸öÌØÀÊÆÕµÄÁ³Ô⵽ȭ»÷µÄÌØÐ´¾µÍ·£¬¶øÕâÖ»¹¥»÷ÌØÀÊÆÕµÄÈ­Í·ÒÂÐäÉÏ£¬»¹Ó¡ÓÐÒÁÀÊÒÁ˹À¼¸ïÃüÎÀ¶ÓÆìºÅͼ°¸¡£´Ë±í£¬ÕâÕÅͼµÄ²¼¾°ÔòÊÇÒÁÀÊ¡¢ÐðÀûÑǵÈÖж«¹ú¶ÈµÄµØÍ¼¡£ÃÀ¹úµ±¾Ö³ö°æ¾ÖÊ×ϯ¹«¹²¹ØÏµ¹ÙҲ֤ʵÁË´ËÊ£¬²¢°µÊ¾¸ÃÍøÕ¾Ä¿Ç°ÒÑ´¦ÓÚÀëÏß״̬¡£ÃÀ¹úºÓɽ°²È«ÊýCISA½²»°ÈËÈøÀ­¡¤É­µÂ¿Ë»ØÓ¦´ËʳÆÄ¿Ç°ÔÝÎÞ·¨Ö¤ÊµÕâÊÇÒÁÀʵ±¾ÖÔÞÖúµÄºÚ¿ÍÐÐΪ¡£¡°½ñÈÕ¶íÂÞ˹¡±(RT)Ìáµ½£¬Õâ´ÎºÚ¿Í¹¥»÷ÊÂÎñµÄÌáÒéÕß×Ô³ÆÀ´×Ô¡°ÒÁÀÊÍøÂ簲ȫ×éÖ¯ºÚ¿ÍS¡±¡£


 Ô­ÎÄÁ´½Ó£º

https://edition.cnn.com/2020/01/04/politics/dhs-hack-website-trump-trnd/index.html


4.°ÂµØÀû±í½»²¿Ôâµ½²»Ã÷ÆðÔ´µÄÍøÂç¹¥»÷


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


°ÂµØÀû±í½»²¿ÔÚÒ»·Ý½áºÏÉêÃ÷ÖаµÊ¾£¬ÆäÔâµ½²»Ã÷ÆðÔ´µÄÍøÂç¹¥»÷£¬ÓÉÓÚ¹¥»÷µÄÑϳÁÐÔºÍÐÔÖÊ£¬²»ÄÜÅųýÕâÊǹú¶È²¼¾°µÄ¹¥»÷ÕßÌáÒéµÄÕë¶ÔÐÔ¹¥»÷¡£¸Ã¹¥»÷²úÉúÔÚ1ÔÂ4ÈÕÐÇÆÚÁùÍíÉÏ£¬²¢±»Ñ¸ËÙ·¢ÏÖ£¬µ±¾ÖÁ¢¼´²ÉÈ¡ÁË·ÀÓù´ëÊ©±£»¤Æä»ù´¡ÉèÊ©£¬Í¬Ê±»¹³ÉÁ¢ÁËÒ»¸öרÃÅίԱ»áÓ¦¶ÔÕâÒ»ÊÂÎñ¡£Ä¿Ç°Éв»Ã÷ÏÔ¹¥»÷ÕßÊÇ·ñ»ñµÃÁ˶ÔÃô¸ÐÊý¾ÝµÄ½Ó¼ûȨÏÞ¡£ÎÀÉú²¿½²»°È˱˵᤹Åл¶û±«¶û£¨Peter Guschelbauer£©Í¨Öª¹«¹²¹ã²¥¹«Ë¾ORF³ÆÕâ´Î¹¥»÷ÈÔÔÚ³ÖÐø¡£


 Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/96022/hacking/austrias-foreign-ministry-cyberattack.html


5.Õë¶Ô°ÍÎ÷µÄAndroidÒøÐÐľÂíBasBanke·ÖÎö»ã±¨


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


AndroidÒøÐÐľÂíBasBankeÒ²±»³ÆÎªCoybot£¬ËüÖØÒªÕë¶Ô°ÍÎ÷ÒøÐÐÓû§¡£¸ÃľÂíÔøÔÚ2018Äê10ÔµİÍÎ÷´óѡʱ»ý¼«´«²¼£¬×î½üËüÓÖ³Áгʴ˿Ì×êÑÐÈËÔ±µÄÊÓÒ°ÖС£Ö»¹Ü×êÑÐÈËÔ±ÉÐδȷÈÏÆäϰȾý½é£¬µ«Ë¼¿¼µ½ÒÔǰµÄ°æ±¾£¬ËüºÜÓпÉÄÜͨ¹ýÐéαµÄFacebookÌû×ÓºÍWhatsAppÐÂÎÅ´«²¼¡£¸ÃľÂíÖØÒª¼Ù×°³ÉÐéαµÄAndroid»òGoogle Play¸üУ¬ÊÔͼÇÔÈ¡Óû§µÄÒøÐÐÍ´´¦¡£¸Ã¶ñÒâÈí¼þµÄÁíÒ»¸öÓÐȤµÄϸ½ÚÊÇÆäHTTPÒªÇóÓëWindows¶ñÒâÈí¼þPazera´æÔÚÀàËÆÐÔ¡£Õâ¿ÉÄÜÒâζ×ÅÖ»¹ÜPazeraרһÓÚÕë¶ÔÀ­¶¡ÃÀÖÞ¶øBasBanke½öÕë¶Ô°ÍÎ÷£¬µ«ËüÃǵĿª·¢Õß¿ÉÄÜÊÇͳһʵÌå¡£


 Ô­ÎÄÁ´½Ó£º

https://www.buguroo.com/en/blog/banking-malware-in-android-continues-to-grow.-a-look-at-the-recent-brazilian-banking-trojan-basbanke-coybot


6.·¸×ï·Ö×ÓÀûÓÃÈȵãµçÓ°ÌáÒé´¹µö¹¥»÷ºÍ·Ö·¢¶ñÒâÈí¼þ


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


¿¨°Í˹»ù°²È«×¨¼Ò·¢ÏÖ¹¥»÷ÕßÔÚÀûÓÃÈȵãµçÓ°¡¶ÐÇÇò´óÕ½£ºÌìÐÐÕßµÄáÈÆð¡·À´×÷ÎªÍøÂç´¹µöºÍ¶ñÒâÈí¼þ¹¥»÷µÄµö¶ü¡£×êÑÐÈËÔ±¹²·¢ÏÖÁË30¶à¸ö¼Ù×°³É¹Ù·½µçÓ°ÕË»§»òÊÜϰȾµÄÁ÷ýÌåÍøÕ¾ºÍÉ罻ýÌåÒ³Ãæ£¨ÕâÐ©ÍøÕ¾µÄÏÖʵÊýÁ¿¿ÉÄÜ»á¸ü¸ß£©£¬ÕâÐ©ÍøÕ¾ÒÔÒªÇó×¢²áΪ½è¿Ú£¬ÊÔÍ¼ÍøÂçÓû§µÄÐÅÓþ¿¨Êý¾Ý¡£´Ë±í£¬ÕâÐ©ÍøÕ¾»¹Ö¼ÔÚ´«²¼¶ñÒâÈí¼þ£¬×êÑÐÈËÔ±·¢ÏÖÁËÔ¼65¸ö¼Ù×°³ÉµçÓ°µÁ°æµÄ¶ñÒâÎļþ¡£


 Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/95879/cyber-crime/star-wars-saga-cyber-attacks.html