Maze¹¥»÷¸ç˹´ïÀè¼ÓÒøÐÐÇÔÈ¡ÆäÐÅÓþ¿¨ÐÅÏ¢ £»Nintendo 3DS²Ù×÷ϵͳÆëȫԴ´úÂëй¶

°ä²¼¹¦·ò 2020-05-26

1.ºÚ¿Í×éÖ¯Maze¹¥»÷¸ç˹´ïÀè¼ÓÒøÐÐ  £¬ÇÔÈ¡ÆäÐÅÓþ¿¨ÐÅÏ¢


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ºÚ¿Í×éÖ¯MazeÔÚÆäÍøÕ¾°ä²¼ÁË2GBµç×Ó±í¸ñ  £¬ÆäÖÐÔ̺¬¸ç˹´ïÀè¼ÓÒøÐУ¨BCR£©¿Í»§µÄÐÅÓþ¿¨¿¨ºÅ¡£4ÔÂ30ÈÕ  £¬MazeÐû³ÆËûÃDZðÀëÔÚ2019Äê8ºÍ2020Äê2Ô¶ÔBCR½øÐÐÁËÁ½´Î¹¥»÷  £¬ÇÔÈ¡Æä³¬¹ý1100ÍòÕÅÐÅÓþ¿¨  £¬²¢ÇÒÆäÖÐ14ÍòÕÅÊÇÃÀ¹ú¹«ÃñµÄ¡£Ö®ºó  £¬BCRÓÚ5ÔÂ1ÈÕ°ä²¼ÉêÃ÷  £¬³Æ¾­ºËʵºóÆäϵͳδÔâµ½ÈëÇÖ¡£×÷Ϊ»ØÓ¦  £¬Maze°ä²¼¸Ã±í¸ñ  £¬²¢ÔÚ5ÔÂ21ÈÕת´¢Á˸ÃÐÐÐÅÓþ¿¨Êý¾Ý¡£¸ÃÐÐÔÚ5ÔÂ22ÈÕ°ä²¼ÉêÃ÷°µÊ¾Æä¿Í»§µÄÂòÂô²»»áÊܵ½Õâ´ÎÊÂÎñµÄÓ°Ïì¡£ºÚ¿ÍÔò°µÊ¾Ð¹Â¶ÕâЩÊý¾Ý²¢²»ÊÇΪ»ñÀû  £¬¶øÊǵ«Ô¸ÌáÐÑÒøÐаÑÎȱ £»¤Ãô¸ÐÐÅÏ¢¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hackers-leak-credit-card-info-from-costa-ricas-state-bank/


2.reseteraÍøÓѱ¬ÁÏNintendo 3DS²Ù×÷ϵͳÆëȫԴ´úÂëй¶


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


¾ÝReseteraÍøÓѱ¬ÁÏ  £¬Ä¿Ç°Nintendo 3DS²Ù×÷ϵͳµÄÆëȫԴ´úÂëÒѾ­Ð¹Â¶¡£Õâ´ÎµÄй©²»ÏñWiiй©ÄÇÑùÔ̺¬Éè¼ÆÎĵµ  £¬µ«ÊÇÓкö࿪·¢Îļþ¡£²¢ÇҸôÎÊÂÎñ»¹Ó°ÏìÁËNintendo Switch  £¬ÓÉÓÚÆä²Ù×÷ϵͳҲ»ùÓÚ3DS²Ù×÷ϵͳ¡£Æ¾¾Ýй¶Îļþ  £¬NVIDIA¿´ÆðÀ´ÔÚ2006Äêʱ¾ÍÆðÍ·ÁË3DSµÄ¿ª·¢¡£³ý´ËÖ®±í  £¬¡¶±¦¿ÉÃΣºÕäÖé/×êʯ¡·µÄÔ´´úÂëҲй¶µ½ÁËÍøÉÏ  £¬²»ÍâÔÚÕâ´Îй¶ÖÐûÓÐеı¦¿ÉÃÎÔ­ÐÍ¡£


Ô­ÎÄÁ´½Ó£º

https://www.resetera.com/threads/nintendo-leaks-ultimate-3ds-os-source-code-has-been-leaked-and-pok%C3%A9mon-d-p.211467/


3.ºÚ¿Í¼ÙÒâLogMeInÌáÒéÍøÂç´¹µö¹¥»÷  £¬µÁÈ¡Óû§Æ¾Ö¤


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ºÚ¿Í¼ÙÒâLogMeInÌáÒéÍøÂç´¹µö¹¥»÷  £¬ÒÔµÁÈ¡Óû§Æ¾Ö¤¡£ÔÚÕâ´Î´¹µö¹¥»÷»î¶¯ÖÐ  £¬ºÚ¿Í¼ÙÒâLogMeIn¹«Ë¾ÖÒ¸æÓû§¸Ã¹«Ë¾µÄÁ½¸ö²úÆ·LogMeIn CentralºÍLogMeIn ProÖдæÔÚ0day¡£²¢Ðû³Æ¸Ãƽ̨ĿǰÒѾ­²»ÔÙ°²È«  £¬±ØÒª½øÐа²È«¸üР £¬ÒÔ´ËÓÕʹÓû§´ò¿ªÃûΪLogMeinµÄÁ´½Ó¡£¶øÊÕ¼þÈËÔò¸üÆ«²îÓÚÁ¢¼´¸üÐÂÒÔÈ·±£ÆäͨѶ°²È«  £¬ÔÚÆä´ò¿ªÁ´½ÓºóÖ®ºó±ã±»³Á¶¨Ïòµ½Î±ÔìµÄ´¹µöÒ³Ãæ  £¬²¢ÒªÇóÆäÊäÈëÆ¾Ö¤  £¬ÒÔ½øÐÐÇÔÈ¡»î¶¯¡£


Ô­ÎÄÁ´½Ó£º

https://www.ehackingnews.com/2020/05/email-phishing-scam-scammers.html


4.Ô½ÓüÈí¼þUnc0veÀûÓÃiOSÖÐ0day  £¬¿É½âËøËùÓÐiPhone


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


5ÔÂ24ÈÕ  £¬Unc0verÍŶӰ䲼ÁËÔ½ÓüÈí¼þ×îа汾Unc0ver 5.0.0  £¬¸Ã°æ±¾Äܹ»Æô¶¯ºÍ½âËøËùÓÐiOSÉ豸  £¬Ô̺¬×îа汾µÄiOS v13.5¡£¸ÃÍŶӰµÊ¾  £¬Õâ¸öÈí¼þÀûÓÃÁËÆä³ÉÔ±Pwn20wnd·¢ÏÖµÄiOSÖеÄ0day  £¬¶øÆ»¹û¹«Ë¾ÉõÖÁ¶¼²»ÖªÂ·´Ë·ì϶¡£Pwn20wnd°µÊ¾  £¬×ÔiOS 9ÒÔÀ´  £¬ËùÓÐÔ½ÓüÈí¼þ¶¼Ê¹ÓÃÁË1day·ì϶  £¬¶øÕâЩ·ì϶³ÇÊкܿ챻½¨¸´  £¬¶øunc0ver v5.0.0½«ÊÇ×ÔiOS 8ÒÔÀ´µÚÒ»¸öʹÓÃ0dayµÄ°æ±¾  £¬ÊÇÔ½ÓüÈí¼þº¹ÇàÉϵÄÒ»¸ö³ÁÒªÀï³Ì±®¡£°²È«×¨¼Ò½¨Òé²»ÒªÔ½Óü  £¬µ«Pwn20wndÐû³Æ  £¬Ð°汾ÓëÒÔÍù·ÖÆç  £¬Äܹ»Î¬³ÖiOS°²È«Ö°ÄÜÆëÈ«ºÍÕý³£ÔËÐС£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/new-unc0ver-jailbreak-released-works-on-all-recent-ios-versions/


5.ºÚ¿ÍÀûÓÃDiscord·Ö·¢AnarchyGrabber3  £¬ÇÔÈ¡Óû§ÃÜÂë


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ºÚ¿Í½«Ð°汾µÄľÂíAnarchyGrabber3¼Ù×°³ÉÓÎÏ·Îè±×Æ÷¡¢ºÚ¿Í¹¤¾ß»òÊܰæÈ¨± £»¤µÄÈí¼þ  £¬Í¨¹ýDiscord·Ö·¢  £¬Ö¼ÔÚÇÔÈ¡Óû§ÃÜÂë¡£AnarchyGrabberÊÇÒ»ÖÖÊ¢ÐеÄľÂí  £¬Í¨³£ÔÚºÚ¿ÍÂÛ̳ÉϺÍYouTubeÉÏ´«²¼  £¬ÇÔÈ¡DiscordÓû§ÁîÅÆ¡£¸Ãа汾Äܹ»ÇÔÈ¡Êܺ¦ÕߵĴ¿Îı¾ÃÜÂë  £¬²¢½«¸Ã¶ñÒâÈí¼þ´«²¼¸øÊܺ¦ÕßDiscordÉϵİé  £¬»¹Äܹ»½ûÓÃ2FA¡£¸ÃľÂíÖ®ËùÒÔÓÐЧ  £¬ÊÇÓÉÓÚAnarchyGrabber3ͨ¹ýһϵÁеIJÙ×÷ºóÄܹ»ÇÔÈ¡Óû§µÄµç×ÓÓʼþµØÖ·¡¢µÇ¼Ãû¡¢Óû§ÁîÅÆ¡¢´¿Îı¾ÃÜÂëºÍIPµØÖ·  £¬¶ø´óÎÞÊýÈËÉõÖÁ¶¼Ã»Óз¢ÏÖ×Ô¼ºÒѱ»Ï°È¾¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/discord-client-turned-into-a-password-stealer-by-updated-malware/


6.ÐÂDoS¹¥»÷RangeAmp¿ÉÊ¹ÍøÕ¾ºÍCDN·þÎñÆ÷̱»¾


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


Öйú´âÕß·¢ÏÖÁËÒ»ÖÖÐÂDoS¹¥»÷RangeAmp  £¬Í¨¹ýÀûÓôóÁ¿HTTPÊý¾Ý°üÀ´À©´óWebÁ÷Á¿  £¬Ê¹ÍøÕ¾ºÍÄÚÈÝ·Ö·¢ÍøÂ磨CDN£©·þÎñÆ÷̱»¾  £¬ÕâÖÖ¹¥»÷ÀûÓÃÁËHTTPÁìÓòÒªÇóÊôÐԵķì϶¡£ÏÖÒÑ·¢ÏÖÁËÁ½ÖÖRangeAmp¹¥»÷µÄ·½Ê½  £¬µÚÒ»ÖÖ±»³ÆÎªRangeAmpÓ××Ö½ÚÁìÓò£¨SBR£©¹¥»÷  £¬¹¥»÷Õßͨ¹ý·Å´óÁ÷ÏòÖ¸±ê·þÎñÆ÷µÄÁ÷Á¿ÒÔʹָ±êÕ¾µã±ÀÀ£  £¬µÚ¶þÖÖ±»³ÆÎªRangeAmp³Áµþ×Ö½ÚÁìÓò£¨OBR£©¹¥»÷  £¬¹¥»÷Õßͨ¹ýÔÚCDNÍøÂçÄÚ²¿·Å´óÁ÷Á¿  £¬Ê¹CDN·þÎñÆ÷ºÍÆäËûÖ¸±êÕ¾µãÎÞ·¨½Ó¼û¡£Ä¿Ç°  £¬13¼Ò¿ÉÄÜÊÜÓ°ÏìµÄCDNÌṩÉÌÖÐ  £¬ÓÐ12¼Ò°µÊ¾Òѽâ¾ö»ò´òËã½â¾ö´ËÎÊÌâ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/rangeamp-attacks-can-take-down-websites-and-cdn-servers/