Google DriveÓû§³ÆÔÆ·þÎñÖеĴ洢Êý¾ÝÃÔʧ

°ä²¼¹¦·ò 2023-11-28
1¡¢Google DriveÓû§³ÆÔÆ·þÎñÖеĴ洢Êý¾ÝÃÔʧ


¾ÝýÌå11ÔÂ27ÈÕ±¨Â·£¬£¬£¬£¬ £¬£¬ £¬Google DriveÓû§»ã±¨³Æ£¬£¬£¬£¬ £¬£¬ £¬×î½ü´æ´¢ÔÚÔÆÖеÄÎļþºöÈ»ÒþûÁË£¬£¬£¬£¬ £¬£¬ £¬ÔÆ·þÎñ¸´Ô­µ½ÁË2023Äê4Ôµ½5ÔÂ×óÓҵĴ洢¿ìÕÕ¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìÕÊ»§µÄ»î¶¯ÈÕÖ¾ÏÔʾÓû§×î½üûÓÐÈκÎÅú¸Ä£¬£¬£¬£¬ £¬£¬ £¬È·Èϲ»ÊÇÓû§Òâ±íɾ³ýÁËÊý¾Ý¡£¡£¡£¡£¡£¡£×ÜÖ®£¬£¬£¬£¬ £¬£¬ £¬Ã»Óм£ÏóÅú×¢ÊÇÓû§·¸´í£¬£¬£¬£¬ £¬£¬ £¬¶øÊÇ·þÎñϵͳ³öÁËÎÊÌ⣬£¬£¬£¬ £¬£¬ £¬µ¼Ö±¾µØÉ豸ºÍGoogle CloudÖ®¼äµÄÊý¾ÝÎÞ·¨Í¬²½¡£¡£¡£¡£¡£¡£Ò»Ð©Óû§µÄÀëÏß»º´æÖпÉÄÜÔ̺¬ÃÔʧµÄÊý¾Ý£¬£¬£¬£¬ £¬£¬ £¬µ«Ä¿Ç°»¹Ã»Óв½ÖèÀ´¸´Ô­¶ÔÆäÖÐÊý¾ÝµÄ½Ó¼û¡£¡£¡£¡£¡£¡£GoogleÒѾ­ÔÚµ÷²éÕâ¸öÎÊÌ⣬£¬£¬£¬ £¬£¬ £¬ÉÐδÌṩ½¨¸´µÄÔ¤¼Æ¹¦·ò£¬£¬£¬£¬ £¬£¬ £¬½¨ÒéÓû§ÔÚÎÊÌâµÃµ½½â¾ö֮ǰ²»Òª¶Ôroot/dataÎļþ¼Ð½øÐиü¸Ä¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/google/google-drive-users-angry-over-losing-months-of-stored-data/


2¡¢TransUnionºÍExperianÒÉËÆÔâµ½¹¥»÷²¢±»ÀÕË÷6ǧÍòÃÀÔª


11ÔÂ23ÈÕ±¨Â·³Æ£¬£¬£¬£¬ £¬£¬ £¬ÄÏ·Ç×î´óµÄÁ½¼ÒÏû·ÑÕßÐÅÓþ»ã±¨»ú¹¹TransUnionºÍExperianÒÉËÆÔâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬ £¬£¬ £¬Óû§µÄ²ÆÕþºÍÓ×ÎÒÊý¾ÝÃæ¶Ô·çÏÕ¡£¡£¡£¡£¡£¡£N4ughtySecTUÍÅ»ï´ËÇ°Ôø¹¥»÷¹ýTransUnion£¬£¬£¬£¬ £¬£¬ £¬Õâ´ÎÔÙ´ÎÈÆ¹ýÁ˸ù«Ë¾µÄ·À»ðǽºÍ°²Õûϵͳ£¬£¬£¬£¬ £¬£¬ £¬³É¹¦ÇÔÈ¡ÁËÊý¾Ý¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÏòTransUnionÀÕË÷3000ÍòÃÀÔª£¬£¬£¬£¬ £¬£¬ £¬²¢ÏòExperianÀÕË÷3000ÍòÃÀÔª¡£¡£¡£¡£¡£¡£TransUnionºÍExperianй©ÒÑÊÕµ½ÀÕË÷ÒªÇ󣬣¬£¬£¬ £¬£¬ £¬µ«°µÊ¾Ã»Óз¢ÏÖÊý¾Ýй¶¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬ £¬£¬ £¬¹¥»÷ÕßÉÐδÌṩ¹ØÓÚ¹¥»÷»î¶¯ºÍÊý¾Ýй¶µÄÖ¤¾Ý¡£¡£¡£¡£¡£¡£


https://www.businesslive.co.za/bd/national/2023-11-23-hackers-demand-60m-from-transunion-and-experian-claiming-data-theft/


3¡¢DEXƽ̨KyberSwapÔâµ½¹¥»÷Ëðʧ¸ß´ï5470ÍòÃÀÔª


¾Ý11ÔÂ27ÈÕ±¨Â·£¬£¬£¬£¬ £¬£¬ £¬DEXƽ̨KyberSwapй©ÆäÔâµ½¹¥»÷£¬£¬£¬£¬ £¬£¬ £¬¼ÛÖµÔ¼5400ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò±»µÁ¡£¡£¡£¡£¡£¡£¹¥»÷²úÉúÔÚÉÏÖÜÈýÍí¼ä£¬£¬£¬£¬ £¬£¬ £¬¹¥»÷Õßͨ¹ýһϵÁи´ÔÓµÄ×÷Ϊ½«Óû§µÄ×ʽðÌáÈ¡µ½¹¥»÷ÕßµÄÇ®°üÖС£¡£¡£¡£¡£¡£¶Ô´Ë£¬£¬£¬£¬ £¬£¬ £¬¸Ãƽ̨ÔÝÍ£ÁË´æ¿î£¬£¬£¬£¬ £¬£¬ £¬·¢Õ¹Á˵÷²é£¬£¬£¬£¬ £¬£¬ £¬ÁªÏµÁËÓйظ÷·½£¬£¬£¬£¬ £¬£¬ £¬²¢Óë¹¥»÷Õß·¢Õ¹½»ÉæÀ´¾¡¿ÉÄÜ×·»ØËðʧ£¬£¬£¬£¬ £¬£¬ £¬Ô̺¬Ìṩ10%µÄÉͽð×÷Ϊ·µ»¹±»µÁ×ʽðµÄ¼Î½±¡£¡£¡£¡£¡£¡£¶à¼ÒÇø¿éÁ´°²È«¹«Ë¾ºÍ×êÑÐÈËÔ±³Æ£¬£¬£¬£¬ £¬£¬ £¬Õâ´Î¹¥»÷»î¶¯¼«¶È¸´ÔÓ¡£¡£¡£¡£¡£¡£


https://therecord.media/kyberswap-crypto-platform-54-million-hack


4¡¢IT¹«Ë¾AppscookÅäÖÃÃýÎóй¶Êý°ÙËùѧÌõÄѧÉúÐÅÏ¢


ýÌå11ÔÂ24Èճƣ¬£¬£¬£¬ £¬£¬ £¬IT¹«Ë¾AppscookÓÉÓÚϵͳÅäÖÃÃýÎ󣬣¬£¬£¬ £¬£¬ £¬Ð¹Â¶ÁË´óÁ¿Î´³ÉÄêÈ˵ÄÊý¾Ý¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±³Æ£¬£¬£¬£¬ £¬£¬ £¬Ê¢¿ªµÄDigitalOcean´æ´¢Í°Ô̺¬½üÒ»°ÙÍò¸öÃô¸ÐÎļþ£¬£¬£¬£¬ £¬£¬ £¬É漰ѧÉúºÍ¼Ò³¤ÐÕÃû¡¢ÕÕÆ¬¡¢µ®ÉúÖ¤Ã÷ºÍ¼ÒͥסַµÈ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾¿ª·¢µÄÀûÓ÷¨Ê½±»Ó¡¶ÈºÍ˹ÀïÀ¼¿¨µÄ600¶àËùѧÌÃÓÃÓÚ½ÌÓýÖÎÀí£¬£¬£¬£¬ £¬£¬ £¬Æä¹ÙÍø³Æ³¬¹ý50ÍòѧÉúºÍ100Íò¼Ò³¤Ê¹ÓÃ¸ÃÆ½Ì¨¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬ £¬£¬ £¬×êÑÐÈËÔ±ÒÑÁªÏµÁËAppscook£¬£¬£¬£¬ £¬£¬ £¬µ«ÉÐδÊÕµ½»Ø¸´¡£¡£¡£¡£¡£¡£


https://securityaffairs.com/154743/security/app-used-by-hundreds-of-schools-leaking-childrens-data.html


5¡¢AhnLabÅû¶AndarielÀûÓ÷ì϶CVE-2023-46604µÄÏêÇé


11ÔÂ27ÈÕ£¬£¬£¬£¬ £¬£¬ £¬AhnLabÔÚ¼à¿ØAndarielÍÅ»ï½üÆÚµÄ¹¥»÷ʱ£¬£¬£¬£¬ £¬£¬ £¬·¢ÏÔìäÀûÓÃApache ActiveMQÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2023-46604£©×°ÖöñÒâÈí¼þ¡£¡£¡£¡£¡£¡£AhnLab·¢ÏÖij¸öϵͳÖб»×°ÖÃÁËAndariel´ÓǰһÏòʹÓõĺóÃÅNukeSped¡£¡£¡£¡£¡£¡£µ÷²éÏÔʾ£¬£¬£¬£¬ £¬£¬ £¬¸ÃϵͳÖÐ×°ÖÃÁËApache ActiveMQ·þÎñÆ÷£¬£¬£¬£¬ £¬£¬ £¬²¢È·ÈÏÆäÖдæÔÚ×Ը÷ì϶ÐÅÏ¢°ä²¼ÒÔÀ´µÄ¸÷À๥»÷µÄÈÕÖ¾£¬£¬£¬£¬ £¬£¬ £¬Ô̺¬Éæ¼°HelloKittyÀÕË÷Èí¼þµÄ¹¥»÷ÈÕÖ¾¡£¡£¡£¡£¡£¡£Ä¿Ç°»¹Ã»ÓÐÖ±½ÓÈÕÖ¾£¬£¬£¬£¬ £¬£¬ £¬µ«×êÑÐÈËÔ±´§Ä¦AndarielÔÚÀûÓø÷ì϶À´×°ÖÃNukeSpedºÍTigerRatºóÃÅ¡£¡£¡£¡£¡£¡£


https://asec.ahnlab.com/en/59318/


6¡¢IBM°ä²¼¹ØÓÚWailingCrab¼°ÆäC2ͨѶµÄ·ÖÎö»ã±¨


11ÔÂ23ÈÕ±¨Â·£¬£¬£¬£¬ £¬£¬ £¬IBM°ä²¼»ã±¨¸ÅÊöÁËWailingCrab¼°ÆäC2ͨѶ£¬£¬£¬£¬ £¬£¬ £¬³Áµã½éÉÜÁËÆä¶ÔMQTTºÍ̸µÄʹÓᣡ£¡£¡£¡£¡£¹¥»÷Á´Ê¼ÓÚÔ̺¬PDF¸½¼þµÄÓʼþ£¬£¬£¬£¬ £¬£¬ £¬Ê¹ÓÃÁËÓâÆÚ½»»õºÍÔËÊ䷢ƱµÈÖ÷Ìâ¡£¡£¡£¡£¡£¡£ÆäÖÐÔ̺¬¶ñÒâURL£¬£¬£¬£¬ £¬£¬ £¬µã»÷¾Í»áÏÂÔØÒ»¸öJavaScriptÎļþ£¬£¬£¬£¬ £¬£¬ £¬¸ÃÎļþ¼ìË÷²¢Æô¶¯DiscordÉÏÍйܵÄWailingCrab¼ÓÔØ·¨Ê½¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬ £¬£¬ £¬×Ô2023ÄêÖÐÆÚÒÔÀ´£¬£¬£¬£¬ £¬£¬ £¬WailingCrabºóÃÅ×é¼þºÍC2Ö®¼äµÄͨѶÊÇʹÓÃMQTTºÍ̸ִÐеÄ£¬£¬£¬£¬ £¬£¬ £¬¸ÃºÍ̸ÊÇÒ»ÖÖÇáÁ¿¼¶IoTÐÂÎÅ´«µÝºÍ̸¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2023/11/alert-new-wailingcrab-malware-loader.html