ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸Áбí £»ºÚ¿ÍÀûÓÃÆ¾Ö¤Ìî³ä¹¥»÷³¬¹ý30Íò¸öSpotifyÓû§

°ä²¼¹¦·ò 2020-11-24
1.ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸Áбí


1.jpg


ºÚ¿Í¹«¿ª5Íò¸ö´æÔÚ·ì϶µÄFortinet VPNÉ豸Áбí £¬ÆäÖÐÔ̺¬À´×ÔÊÀ½ç¸÷µØµÄ´óÐÍÒøÐк͵±¾Ö×éÖ¯¡£ÕâЩÉ豸Öоù´æÔÚõè¾¶±éÀú·ì϶ £¬±»×·×ÙΪCVE-2018-13379 £¬ËüÓ°ÏìÁË´óÁ¿Î´½¨²¹µÄFortinet FortiOS SSL VPNÉ豸¡£¹¥»÷ÕßÄܹ»ÀûÓô˷ì϶ £¬´ÓFortinet VPN½Ó¼ûsslvpn_websessionÎļþÀ´ÇÔÈ¡µÇ¼ʹ´¦ £¬²¢½«ÆäÓÃÓÚ·ÛËéÍøÂç²¢²¿ÊðÀÕË÷Èí¼þ¡£Ö»¹Ü¸Ã·ì϶ÔÚÒ»Äêǰ¾Í±»¹«¿ªÅû¶ £¬µ«ºÚ¿ÍÈÔ·¢ÏÖ²¢¹«¿ªÁËÁË49577¸ö´æÔÚ´ËÀà·ì϶µÄ´óÐÍÉ豸µÄÁбí¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hacker-posts-exploits-for-over-49-000-vulnerable-fortinet-vpns/


2.ºÚ¿ÍÀûÓÃÆ¾Ö¤Ìî³ä¹¥»÷³¬¹ý30Íò¸öSpotifyÓû§


2.jpg


VPNMentor×êÑÐÈËÔ±·¢ÏÖ £¬ºÚ¿ÍÔÚʹÓÃÔ̺¬3ÒÚ¸öÓû§ÃûºÍÃÜÂë×éºÏµÄÊý¾Ý¿â £¬¶ÔSpotifyÓû§ÌáÒéÍ´´¦Ìî³ä¹¥»÷¡£¸ÃÊý¾Ý¿âÖеÄÿ¸ö¼Í¼¶¼Ô̺¬Ò»¸öµÇ¼Ãû£¨µç×ÓÓʼþµØÖ·£©¡¢Ò»¸öÃÜÂëÒÔ¼°¸ÃÍ´´¦ÊÇ·ñÄܹ»³É¹¦µÇ¼µ½SpotifyÕÊ»§µÄ·´À¡¡£×êÑÐÈËÔ±ÒÔΪ £¬Êý¾Ý¿âÖÐÁгöµÄ3Òڱʼͼ¿Éʹ¹¥»÷Õß¹¥ÆÆ300000ÖÁ350000¸öSpotifyÕÊ»§¡£Ä¿Ç° £¬SpotifyΪËùÓÐÊÜÓ°ÏìµÄÓû§½øÐйö¶¯³ÁÖÃÃÜÂë £¬µ«ÈÔ²»Ö§³ÖÖ§³Ö¶à³É·ÖÉí·ÝÑéÖ¤¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/over-300k-spotify-accounts-hacked-in-credential-stuffing-attack/


3.¼ÓÄôóÊ¥Ô¼º²ÊÐÔâÍøÂç¹¥»÷ £¬µ¼ÖÂÊÐÕþÍøÂç̱»¾


3.jpg


11ÔÂ15ÈÕ £¬¼ÓÄôóÊ¥Ô¼º²ÊÐÔâ·ê´ó¹æÄ£ÍøÂç¹¥»÷ £¬ÑϳÁ·ÛËéÁËÕû¸ö³ÇÊеÄÊÐÕþ»ù´¡ÉèÊ©¡£Õâ´Î¹¥»÷µ¼ÖÂÕû¸öÊÐÕþÍøÂç¹Ø¹Ø £¬Ô̺¬³ÇÊÐÍøÕ¾¡¢ÔÚÏßÖ§¸¶ÏµÍ³¡¢µç×ÓÓʼþºÍ¿Í»§·þÎñÀûÓ÷¨Ê½ £¬µ«²¢Î´ÓÐÈκÎÊÐÃñµÄÓ×ÎÒÐÅÏ¢±»Ð¹Â¶¡£×¨¼ÒÒÔΪ £¬´ËÊÂÎñΪÓÉÀÕË÷Èí¼þ¹¥»÷µ¼ÖµÄ £¬Ô¤¼Æ¿ÉÄܱØÒª¼¸¸öÐÇÆÚÄÜÁ¦ÆëÈ«¸´Ô­Õý³£¡£Ä¿Ç° £¬¸ÃÊÐÔÚÓëÁª¹úºÍÊ¡µ±¾ÖºÏ×÷ £¬ÒÔ´ÓÍøÂç¹¥»÷Öи´Ô­¹ýÀ´¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/111259/cyber-crime/saint-john-cyber-attack.html


4.Pickle FinanceÏîÄ¿Ôâ¹¥»÷ £¬Ëðʧ½ü2000ÍòÃÀÔª


4.jpg


Á÷¶¯ÐÔÍÚ¿óÏîÄ¿Pickle FinanceÔâµ½¹¥»÷ £¬Ëðʧ½ü2000ÍòÃÀÔª¡£Õâ´Î¹¥»÷ÖÐ £¬ºÚ¿Í²¢Ã»ÓÐʹÓÃ×î½üÔÚ´óÎÞÊýÀàËÆÊÂÎñÖгöÏÖµÄFlash Loan £¬¶øÊDz¿ÊðÁËÒ»¸ö¶ñÒâjarÀ´Î±ÔìµÄ»¥»» £¬ÒÔÀûÓÃPickle FinanceÖÇÄܺÏÔ¼DAI PickleJarÖеķì϶¡£¸ÃÏîÖ÷ÕÅÍŶӰµÊ¾ £¬Æä19759355¸öDAIÒѱ»ºÄ¾¡ £¬¶ø¸ÃÏîÖ÷ÕÅÁîÅÆ£¨PICKLE£©Ò²ÔÚÔâ·êºÚ¿Í¹¥»÷ºóËðʧÁËÆä¼ÛÖµµÄ50£¥ÒÔÉÏ £¬´ïµ½ÁË8.84ÃÀÔªµÄµÍµã¡£


Ô­ÎÄÁ´½Ó£º

https://www.fxstreet.com/cryptocurrencies/news/nearly-20-million-stolen-from-the-defi-protocol-pickle-finance-202011221250


5.ÁãÊÛ¹«Ë¾E-LandϰȾÀÕË÷Èí¼þµ¼Ö½ü°ëÊýÉÌµê¹Ø¹Ø


5.jpg


º«¹úʱװºÍÁãÊÛ¼¯ÍÅE-Land GroupÖÜÈÕ°µÊ¾ £¬ÓÉÓÚϰȾÀÕË÷Èí¼þ £¬Æä°ëÊýÉÌµê¹Ø¹Ø¡£¸Ã×éÖ¯³ÆÆä¹«Ë¾ÍøÂçϵͳÔÚÔ糿Ôâµ½ÀÕË÷Èí¼þµÄ¹¥»÷ £¬ÆÈʹÆäNC°Ù»õÉ̵êºÍNewCore OutletµÄ50¸ö·ÖÖ§»ú¹¹ÖеÄ23¸öÖÕ³¡ÁËÔËÓª¡£E-Land°µÊ¾ £¬Ä¿Ç°ÒÑ¹Ø¹ØÆä²¿ÃŹ«Ë¾ÍøÂçϵͳ £¬ÒÔ×î´óˮƽµØÏ÷¼õÇÖº¦ £¬²¢ÒÑÒªÇ󾯷½µ÷²éÍøÂç¹¥»÷¡£    


Ô­ÎÄÁ´½Ó£º

https://www.koreatimes.co.kr/www/tech/2020/11/694_299692.html


6.Wipro°ä²¼ÓйØÀûÓÃAIºÍMLÓ¦¶ÔÍøÂç¹¥»÷µÄ·ÖÎö»ã±¨


6.jpg


Wipro°ä²¼ÁËÓйØÀûÓÃAIºÍMLÓ¦¶ÔÍøÂç¹¥»÷µÄ·ÖÎö»ã±¨¡£»ã±¨·¢ÏÖ £¬ÔÚ´ÓǰµÄËÄÄêÀï £¬È«ÇòÓÐ49%µÄÓëÍøÂ簲ȫÓйصÄרÀû¶¼ÓëÈËΪÖÇÄܺͻúе½ø½¨µÄÀûÓÃÓйØ¡£¶ø½üÒ»°ë£¨49£¥£©µÄ×éÖ¯ÔÚÀ©´óÈÏÖª¼ì²âÄÜÁ¦ £¬ÒÔÓ¦¶ÔÆä°²È«ÔËÓªÖÐÐÄ(SOC)ÖеÄδ֪¹¥»÷¡£65£¥µÄ×éÖ¯ÔÚ¶Ô²Ù×÷¼¼Êõ£¨OT£©ºÍIoTÉ豸½øÐÐÈÕÖ¾¼à¿Ø £¬ÒÔ¼õÇáOT·çÏÕµÄÔö³¤¡£57£¥µÄ×éÖ¯Ö»Ô¸Òâ¹²ÏíIoC £¬64£¥µÄ×éÖ¯ÒÔΪÃûÓþ·çÏÕÊÇÐÅÏ¢¹²ÏíµÄ¹ÊÕÏ¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/11/23/ai-ml-tackle-unknown-attacks/