MetaÒòÃ÷ÎÄ´æ´¢6ÒÚÓû§ÃÜÂë±»·£1ÒÚÃÀÔª
°ä²¼¹¦·ò 2024-09-309ÔÂ27ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬°®¶ûÀ¼Êý¾Ý±£»£»£»£»£»¤Î¯Ô±»á£¨DPC£©¶ÔFacebookĸ¹«Ë¾Meta´¦ÒÔ9100ÍòÅ·Ôª£¨Ô¼1.01ÒÚÃÀÔª£©·£¿£¿£¿£¿£¿£¿£¿£¿î£¬£¬£¬£¬£¬£¬£¬£¬ÔÒòÊÇMetaÔÚ2019ÄêÒâ±í½«6ÒÚÓû§µÄÃÜÂëÒÔÃ÷ÎÄ´ó¾Ö´æ´¢¡£¡£¡£¡£¡£ÕâÒ»´¦·£Ô´ÓÚһ·³ÖÐø5ÄêµÄµ÷²é¡£¡£¡£¡£¡£2019Äê3Ô£¬£¬£¬£¬£¬£¬£¬£¬°²È«×êÑÐÔ±²¼Àµ¶÷¡¤¿ËÀײ¼Ë¹·¢ÏÖMetaÓû§ÃÜÂ밲ȫȱµã£¬£¬£¬£¬£¬£¬£¬£¬MetaËæºóÈ·Èϲ¢ÔÚÄÚ²¿ÏµÍ³ÉÏ·¢ÏÖδ¼ÓÃܵÄÓû§ÃÜÂ룬£¬£¬£¬£¬£¬£¬£¬²¢ÏòDPC´«µÝ£¬£¬£¬£¬£¬£¬£¬£¬Í¬Ê±Ç¿µ÷ûÓÐÖ¤¾ÝÅú×¢ÃÜÂë±»ÀÄÓ㬣¬£¬£¬£¬£¬£¬£¬²¢Á¢¼´½¨¸´Á˸ÃÃýÎ󡣡£¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬£¬£¬£¬DPCÈ϶¨MetaÎ¥·´ÁË¡¶Í¨ÓÃÊý¾Ý±£»£»£»£»£»¤ÌõÀý¡·£¨GDPR£©ÖеĶàÏȫҪÇ󣬣¬£¬£¬£¬£¬£¬£¬Ô̺¬Î´ÄÜ֪ͨºÍ¼Í¼Êý¾Ýй¶£¬£¬£¬£¬£¬£¬£¬£¬Î´Ê¹ÓÃÊʵ±µÄ¼¼Êõ»ò×éÖ¯´ëʩȷ±£Óû§ÃÜÂ밲ȫ£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°Î´Ö´ÐÐÊʵ±µÄ°²È«´ëʩȷ±£Óû§ÃÜÂë³ÖÐø»úÃÜÐÔ¡£¡£¡£¡£¡£DPC¸±×¨Ô±¸ñÀ×¶òÄ·¡¤¶àÒÁ¶û°µÊ¾£¬£¬£¬£¬£¬£¬£¬£¬Óû§ÃÜÂë²»Ó¦ÒÔÃ÷ÎÄ´ó¾Ö´æ´¢£¬£¬£¬£¬£¬£¬£¬£¬Ë¼¿¼µ½½Ó¼û´ËÀàÊý¾ÝµÄÈË¿ÉÄÜ´øÀ´µÄÀÄÓ÷çÏÕ¡£¡£¡£¡£¡£¹ÌÈ»×î³õµÄ±¬ÁÏÕß¿ËÀײ¼Ë¹Ã»Óз¢ÏÖFacebookÔ±¹¤Æäʱ½Ó¼ûÁ˱»ÆØ¹âÃÜÂëµÄÖ¤¾Ý£¬£¬£¬£¬£¬£¬£¬£¬µ«°²È«È±µã¿ÉÄÜÈÃFacebookµÄ20ÍòÔ±¹¤ÖеÄÈκÎÒ»ÈË¿´µ½Õâ¶à´ï6ÒÚ¸öÕË»§µÄÃ÷ÎÄÃÜÂë¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬£¬Meta½üÆÚÒòÂÅ´ÎÎ¥·´GDPR»®¶¨¶ø±»·£¿£¿£¿£¿£¿£¿£¿£¿î£¬£¬£¬£¬£¬£¬£¬£¬Ô̺¬Êý¾Ýץȡй¶¡¢Óû§Ô޳ɺÍÊý¾Ý´¦ÖÃÎ¥¹æ£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°ÏòÃÀ¹ú´«ÊäÓ×ÎÒÊý¾ÝµÄ·½Ê½µÈ£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖÐ×î´óµÄÒ»±Ê·£¿£¿£¿£¿£¿£¿£¿£¿î¸ß´ï12ÒÚÅ·Ôª¡£¡£¡£¡£¡£MetaÔÚ¶ÔDPCµÄÅоöÌá³öÉÏËß¡£¡£¡£¡£¡£
https://cybernews.com/security/meta-100m-fine-dpc-ireland-plaintext-passwords-facebook-leak/
2. NVIDIA Container ToolkitÑϳÁ·ì϶ӰÏìAIÀûÓð²È«
9ÔÂ29ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬NVIDIA Container ToolkitÖдæÔÚÒ»¸ö±»×·×ÙΪCVE-2024-0132µÄÑϳÁ·ì϶£¬£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶ÔÊÐí¹¥»÷ÕßÖ´ÐÐÈÝÆ÷ÌÓÒݹ¥»÷²¢»ñµÃ¶ÔÖ÷»úϵͳµÄÆëÈ«½Ó¼ûȨÏÞ£¬£¬£¬£¬£¬£¬£¬£¬´Ó¶øÖ´ÐкÅÁî»òй¼ûô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¸Ã·ì϶ӰÏìNVIDIA Container Toolkit 1.16.1¼°¸üÔç°æ±¾ÒÔ¼°GPU Operator 24.6.1¼°¸üÔç°æ±¾£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÓÉÓڸÿâԤװÔںܶàÒÔAIΪÖÐÐĵį½Ì¨ºÍÐé¹¹»úÓ³ÏñÖУ¬£¬£¬£¬£¬£¬£¬£¬³¬¹ý35%µÄÔÆ»·¾³Ãæ¶ÔÀûÓø÷ì϶½øÐй¥»÷µÄ·çÏÕ¡£¡£¡£¡£¡£ÎÊÌâÔÚÓÚÈÝÆ÷»¯µÄGPUÓëÖ÷»úÖ®¼ä²»×㰲ȫ¸ôÀ룬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÈÝÆ÷¹ÒÔØÖ÷»úÎļþϵͳµÄÃô¸Ð²¿ÃÅ»ò½Ó¼ûÔËÐÐʱ×ÊÔ´¡£¡£¡£¡£¡£Wiz×êÑÐÈËÔ±·¢ÏÖÁ˸÷ì϶£¬£¬£¬£¬£¬£¬£¬£¬²¢ÓÚ9ÔÂ1ÈÕÏòNVIDIA»ã±¨£¬£¬£¬£¬£¬£¬£¬£¬NVIDIAÓÚ9ÔÂ26ÈÕ°ä²¼Á˽¨¸´·¨Ê½¡£¡£¡£¡£¡£½¨ÒéÊÜÓ°ÏìµÄÓû§Éý¼¶µ½NVIDIA Container Toolkit°æ±¾1.16.2ºÍNVIDIA GPU Operator 24.6.2¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬£¬£¬ÀûÓø÷ì϶µÄ¼¼Êõϸ½ÚÈÔ´¦ÓÚ±£ÃÜ״̬£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ±ãÊÜÓ°ÏìµÄ×éÖ¯Óй¦·òÔÚÆä»·¾³Öлº½â¸ÃÎÊÌâ¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/critical-flaw-in-nvidia-container-toolkit-allows-full-host-takeover/
3. °ÍÎ÷Ô⸴ÔÓ¶ñÒâÈí¼þϰȾÁ´¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬Éæ¼°BBTokÒøÐÐľÂí
9ÔÂ29ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬G DATA CyberDefense×î½ü·¢ÏÖÁËÒ»ÏîÕë¶Ô°ÍÎ÷ʵÌåµÄ¸´ÔÓ¶ñÒâÈí¼þϰȾÁ´£¬£¬£¬£¬£¬£¬£¬£¬¸ÃϰȾÁ´ÓëBBTokÒøÐÐľÂíÓйأ¬£¬£¬£¬£¬£¬£¬£¬Ñ¡È¡¶à½×¶Î²½Öè¡£¡£¡£¡£¡£¹¥»÷Õßͨ¹ý´¹µöµç×ÓÓʼþ·¢ËͼÙ×°³É°ÍÎ÷³£ÓÃÊý×Ö·¢Æ±µÄ¶ñÒâISOÓ³Ïñ£¬£¬£¬£¬£¬£¬£¬£¬ÓÕʹÓû§Ö´ÐжñÒâ¸ºÔØ¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÀûÓÃMicrosoft Build Engine±àÒë¶ñÒâC#´úÂ룬£¬£¬£¬£¬£¬£¬£¬²¢Ê¹ÓÃAppDomain Manager×¢Èë¼¼ÊõʵÏָ߼¶Ö´ÐУ¬£¬£¬£¬£¬£¬£¬£¬Í¬Ê±Ñ¡È¡ConfuserEx±äÌå»ìºÏ.NET¼ÓÔØ·¨Ê½ÒÔÌӱܼì²â¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬£¬¶ñÒâÈí¼þ»¹Ô̺¬¶àÖÖÓÆ¾ÃÐÔ»úÔ죬£¬£¬£¬£¬£¬£¬£¬²¢³¢ÊÔ½ûÓð²È«¹¤¾ß¡£¡£¡£¡£¡£Ï°È¾Á´ÖÐʹÓúϷ¨´úÀí·þÎñÆ÷ÀûÓ÷¨Ê½CCProxy¼Ù×°³ÉºÏ·¨µÄÍøÂç¹ý³Ì£¬£¬£¬£¬£¬£¬£¬£¬ÍƽøÓëºÅÁîºÍ½ÚÔì·þÎñÆ÷µÄͨѶ¡£¡£¡£¡£¡£½¨ÒéÆóÒµÖ´ÐÐÑϸñµÄµç×ÓÓʼþ¹ýÂË¡¢¶¨ÆÚ¸üÐÂÈí¼þ¡¢²¿Êð¸ß¼¶¶Ëµã±£»£»£»£»£»¤£¬£¬£¬£¬£¬£¬£¬£¬²¢½ÌÓýÔ±¹¤Ïàʶ´¹µöµç×ÓÓʼþµÄΣÏÕ£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼õÇá´ËÀà¸ß¼¶ÒøÐÐľÂí´øÀ´µÄ·çÏÕ¡£¡£¡£¡£¡£
https://securityonline.info/net-loaders-and-stealthy-persistence-bbtok-trojans-new-tricks/
4. GiveWP¾èÔù²å¼þ·¢ÏÖÑϳÁ·ì϶£¬£¬£¬£¬£¬£¬£¬£¬10Íò¸öWordPressÍøÕ¾Ãæ¶Ô·çÏÕ
9ÔÂ29ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬ÔÚÊ¢ÐÐµÄ WordPress GiveWP ¾èÔù²å¼þÖз¢ÏÖÁËÒ»¸öÑϳÁ·ì϶CVE-2024-8353£¬£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶ԴÓÚPHP¶ÔÏó×¢È룬£¬£¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐУ¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíδ¾Éí·ÝÑéÖ¤µÄ¹¥»÷Õ߯ëÈ«½ÚÔìÊÜÓ°ÏìµÄÍøÕ¾¡£¡£¡£¡£¡£·ì϶×î¸ßÑϳÁÐÔÆÀ·ÖΪ10£¬£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚ´¦Öò»ÊÜÐÅÀµµÄÊäÈë²»µ±£¬£¬£¬£¬£¬£¬£¬£¬³ö¸ñÊÇÔÚ·´ÐòÁл¯¶à¸ö²ÎÊýÆÚ¼ä²úÉú¡£¡£¡£¡£¡£Ö»¹ÜÔÚ°æ±¾3.16.1ÖÐÒѲ¿Ãލ²¹£¬£¬£¬£¬£¬£¬£¬£¬µ«ËùÓа汾µÄGiveWP£¨Ô̺¬3.16.1£©¶¼´æÔÚ´Ë·ì϶£¬£¬£¬£¬£¬£¬£¬£¬¸Ã²å¼þĿǰÒÑ×°Öó¬¹ý10Íò´Î£¬£¬£¬£¬£¬£¬£¬£¬¶Ô´óÁ¿ÒÀÀµ¸Ã²å¼þµÄWordPressÍøÕ¾×é³É³Á´ó°²È«·çÏÕ¡£¡£¡£¡£¡£Òò¶ø£¬£¬£¬£¬£¬£¬£¬£¬Á¢¼´½«GiveWP¸üÐÂÖÁ3.16.2»ò¸ü¸ß°æ±¾ÖÁ¹Ø³ÁÒª£¬£¬£¬£¬£¬£¬£¬£¬Í¬Ê±ÍøÕ¾ÖÎÀíÔ±Ó¦¼à¿ØÈÕÖ¾ÖÐÊÇ·ñ´æÔÚ¿ÉÒɻ£¬£¬£¬£¬£¬£¬£¬£¬²¢Ë¼¿¼Ñ¡È¡¶î±íµÄ°²È«²ãÒÔ½µµÍ½«À´·ì϶µÄ·çÏÕ¡£¡£¡£¡£¡£
https://securityonline.info/cve-2024-8353-critical-givewp-flaw-100k-wordpress-sites-at-risk/
5. KimsukyʹÓÃжñÒâÈí¼þKLogEXEºÍFPSpy½øÐÐÍøÂç¼äµý»î¶¯
9ÔÂ29ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Unit 42 ×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬£¬£¬£¬£¬³ôÃûÔ¶ÑïµÄ³¯Ïʸ߼¶³ÖÐøÐÔÍþв×éÖ¯ Sparkling Pisces£¨±ðÃû Kimsuky£©ÔÚʹÓÃÁ½¿îеĶñÒâÈí¼þÑù±¾£ºÎ´¼Í¼µÄ¼üÅ̼ͼÆ÷ KLogEXE ºÍºóÃűäÖÖ FPSpy£¬£¬£¬£¬£¬£¬£¬£¬½øÒ»²½À©´óÆä¹¤¾ß°üºÍÖ°ÄÜ¡£¡£¡£¡£¡£ÕâЩ¶ñÒâÈí¼þ±»ÓÃÓÚÕë¶Ôº«¹ú¡¢ÈÕ±¾µÈ¹ú¶ÈµÄ¹Ø¼ü²¿ÃŵÄÍøÂç¼äµý»î¶¯¡£¡£¡£¡£¡£KLogEXE ¿ÉÄÜ¼à¿ØÊܺ¦ÕߵļüÅÌÊäÈëºÍÊó±êµã»÷£¬£¬£¬£¬£¬£¬£¬£¬ÍøÂçÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬²¢Í¨¹ý HTTP ·¢Ë͵½ Sparkling Pisces µÄºÅÁîºÍ½ÚÔì·þÎñÆ÷¡£¡£¡£¡£¡£ËüʹÓà HackingTeam й¶µÄ´úÂë»ìºÏ API ŲÓ㬣¬£¬£¬£¬£¬£¬£¬ÒÔÈÆ¹ý¾²Ì¬¼ì²â²½Öè¡£¡£¡£¡£¡£FPSpy ÔòÊÇ»ùÓÚ Sparkling Pisces ֮ǰµÄ¶ñÒâÈí¼þ»î¶¯µÄ¸ß¼¶ºóÃÅ£¬£¬£¬£¬£¬£¬£¬£¬ÌṩÁ˳ý¼üÅ̼ͼ֮±íµÄһϵÁÐÖ°ÄÜ£¬£¬£¬£¬£¬£¬£¬£¬Ô̺¬Êý¾ÝÍøÂç¡¢Ö´ÐÐËÁÒâºÅÁîºÍÏÂÔØÆäËû¼ÓÃÜÄ£¿£¿£¿£¿£¿£¿£¿£¿é¡£¡£¡£¡£¡£Á½¿î¶ñÒâÈí¼þÖ®¼ä´æÔÚ´óÁ¿»ù´¡ÉèÊ©³Áµþ£¬£¬£¬£¬£¬£¬£¬£¬¹²ÏíÒ»ÑùµÄ C2 »ù´¡ÉèÊ©ºÍ´úÂë¿â£¬£¬£¬£¬£¬£¬£¬£¬Åú×¢ËüÃǶ¼ÊÇ Sparkling Pisces Ðͬ»î¶¯µÄÒ»²¿ÃÅ¡£¡£¡£¡£¡£Sparkling Pisces µÄ»ù´¡ÉèÊ©¸´ÔÓÇÒÊÊÓ¦ÐÔÇ¿£¬£¬£¬£¬£¬£¬£¬£¬Ê¹°²È«ÍŶÓÄÑÒÔ×·×ÙÆä»î¶¯¡£¡£¡£¡£¡£
https://securityonline.info/klogexe-fpspy-kimsukys-evolving-cyber-espionage-arsenal/
6. ¼ÙðӢÐÛÁªÃËÏÂÔØ¸æ°×´«²¼Lumma Stealer¶ñÒâÈí¼þ
9ÔÂ26ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Ëæ×ÅÓ¢ÐÛÁªÃË£¨LoL£©È«Çò×ܾöÈüµÄÈȶȲ»ÐÝÅÊÉý£¬£¬£¬£¬£¬£¬£¬£¬ÍøÂç·¸×ï·Ö×ÓÕýÀûÓÃÕâÒ»»úÓö£¬£¬£¬£¬£¬£¬£¬£¬Í¨¹ý¶ñÒâÈí¼þ»î¶¯¶ÔÓÎÏ··ÛË¿Óû§Ö´Ðй¥»÷¡£¡£¡£¡£¡£¾ÝBitdefender Labs×î½ü»ã±¨£¬£¬£¬£¬£¬£¬£¬£¬Ò»ÖÖÕë¶ÔÅ·ÖÞÍæ¼ÒµÄÐÂÐÍÍøÂçÍþвÒѵ¼ÖÂÔ¼4000ÃûÊܺ¦Õߣ¬£¬£¬£¬£¬£¬£¬£¬ÆäÖжàΪ³ÉÄêÄÐÐÔ¡£¡£¡£¡£¡£ÕâÖÖ¶ñÒâ»î¶¯Í¨¹ý¾«ÐÄÉè¼ÆµÄÉ罻ýÌåÓÎÏ·¸æ°×£¬£¬£¬£¬£¬£¬£¬£¬ÓÕµ¼·ÛË¿ÏÂÔØ¿´ËƺϷ¨µÄÓ¢ÐÛÁªÃËÓÎÏ·£¬£¬£¬£¬£¬£¬£¬£¬ÊµÔò×°ÖÃÁËLumma Stealer¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¸ÃÈí¼þ¿ÉÄÜÇÔÊØÐÅÓþ¿¨ÐÅÏ¢¡¢ÃÜÂë¡¢¼ÓÃÜÇ®°ü¼°ä¯ÀÀÆ÷»á»°cookieµÈÃô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£Êܺ¦Õ߻ᱻÊèµ¼ÖÁÒ»¸ö·Â»¹ÊǰæÓ¢ÐÛÁªÃËÏÂÔØÒ³ÃæµÄÍøÕ¾£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÒ³ÃæÑ¡È¡´í±ð×ÖÇÀ×¢¼¼Êõ£¬£¬£¬£¬£¬£¬£¬£¬Ôö³¤Á˼ì²âÄѶȡ£¡£¡£¡£¡£Ò»µ©µã»÷ÏÂÔØÁ´½Ó£¬£¬£¬£¬£¬£¬£¬£¬Êܺ¦Õß½«±»³Á¶¨ÏòÖÁÔ̺¬¶ñÒâ´æµµµÄBitbucket´æ´¢¿â£¬£¬£¬£¬£¬£¬£¬£¬ÏÂÔØµÄѹËõ°üÖÐÔ̺¬Lumma StealerµÄÏÂÔØÆ÷¡£¡£¡£¡£¡£Lumma StealerÖ°ÄÜ׳´ó£¬£¬£¬£¬£¬£¬£¬£¬Äܽ«×ÔÉí×¢ÈëºÏ·¨µÄWindows¹ý³ÌÒÔÌӱܼì²â£¬£¬£¬£¬£¬£¬£¬£¬²¢½«ÇÔÈ¡µÄÊý¾ÝÔÚµØÏÂÊг¡ÏúÊÛ£¬£¬£¬£¬£¬£¬£¬£¬½ø¶øÍƽøÉí·Ý͵ÇÔºÍÍøÂç´¹µö¹¥»÷¡£¡£¡£¡£¡£°²È«×¨¼ÒÌáÐÑÓû§£¬£¬£¬£¬£¬£¬£¬£¬±ÉÈËÔØÓÎϷʱÎñ±Ø×Ðϸ²é³ÍøÕ¾URL£¬£¬£¬£¬£¬£¬£¬£¬½¨Òé´Ó¹Ù·½Çþ·ÏÂÔØ£¬£¬£¬£¬£¬£¬£¬£¬²¢¾¯Ìè¹ýÓÚÓÕÈ˵ÄÔÚÏ߸æ°×£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ±£»£»£»£»£»¤×Ô¼ºµÄÓ×ÎÒÐÅÏ¢°²È«¡£¡£¡£¡£¡£
https://hackread.com/fake-league-of-legends-download-ads-lumma-stealer/#google_vignette


¾©¹«Íø°²±¸11010802024551ºÅ