Spotify²¥·ÅÁбíÓë²¥¿Í³É·¸·¨·Ö×ÓÍÆ¹ãµÁ°æÈí¼þÐÂÇþ·

°ä²¼¹¦·ò 2024-11-21

1. Spotify²¥·ÅÁбíÓë²¥¿Í³É·¸·¨·Ö×ÓÍÆ¹ãµÁ°æÈí¼þÐÂÇþ·


11ÔÂ19ÈÕ£¬£¬£¬£¬£¬£¬Spotifyƽ̨ÉϵIJ¥·ÅÁбíºÍ²¥¿Í±»·¸·¨·Ö×ÓÀÄÓ㬣¬£¬£¬£¬£¬ÓÃÓÚÍÆ¹ãµÁ°æÈí¼þ¡¢ÓÎÏ·Îè±×Âë¡¢À¬»øÁ´½ÓºÍ¡°µÁ°æÈí¼þ¡±ÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£Í¨¹ýÔÚ²¥·ÅÁбíÃû³ÆºÍ²¥¿ÍÃèÊöÖÐǶÈëÖ¸±ê¹Ø¼ü×ÖºÍÁ´½Ó£¬£¬£¬£¬£¬£¬ÕâЩÍþвÐÐΪÕß¿ÉÄÜ´ÓÌáÉýÆä¿ÉÒÉÔÚÏß×ʲúµÄSEOÖÐÊÜÒæ£¬£¬£¬£¬£¬£¬ÓÉÓÚSpotifyµÄÍøÂç²¥·ÅÆ÷Á˾ֻá³Ê´Ë¿ÌGoogleµÈËÑË÷ÒýÇæÖС£¡£¡£¡£¡£¡£¡£¡£ÀýÈ磬£¬£¬£¬£¬£¬ÓÐÍøÂ簲ȫר¼Ò·¢ÏÖÁ˱êÌâΪ¡°Sony Vegas Pro 13 Crack...¡±µÄSpotify²¥·ÅÁбí£¬£¬£¬£¬£¬£¬¸ÃÁÐ±í½«Á÷Á¿Êèµ¼ÖÁ²¥·ÅÁбí±êÌâºÍÃèÊöÖÐÁгöµÄ¡°Ãâ·Ñ¡±Èí¼þÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬²¥¿ÍÒ²±»ÓÃÓÚÐû´«À¬»øÁ´½Ó¡¢¿´ËÆÈ¦Ì׵ĵ籨Ƶ·µÈ¡£¡£¡£¡£¡£¡£¡£¡£ÕâЩÁ´½Óͨ³£»£» £»£»£»£»£»áÊèµ¼Óû§ÖÁ³ä³â¸æ°×¡¢À¬»øÄÚÈÝ¡¢Ðéα¡°µ÷²é¡±ºÍ¼ÓÃÜÔùÆ·µÄ·þÎñÆ÷£¬£¬£¬£¬£¬£¬Óû§±ØÐëä¯ÀÀÕâЩÐÅÏ¢ÄÜÁ¦×îÖÕÏÂÔØÆÆ½âµÄÈí¼þ²úÆ·£¬£¬£¬£¬£¬£¬¶øÕâ»á´øÀ´·çÏÕ¡£¡£¡£¡£¡£¡£¡£¡£SpotifyÒÑɾ³ýÓйز¥·ÅÁбíºÍ²¥¿Í£¬£¬£¬£¬£¬£¬²¢°µÊ¾Æäƽ̨¹æ¶¨²»Èݰ䲼¡¢·ÖÏí»òÌṩÓйØÖ´ÐжñÒâÈí¼þ»òÓйضñÒâÐÐΪµÄ×¢Ã÷¡£¡£¡£¡£¡£¡£¡£¡£Í¬Ê±£¬£¬£¬£¬£¬£¬µÚÈý·½ÀûÓ÷¨Ê½ºÍ·þÎñÒ²±»ÍþвÐÐΪÕßÀûÓÃÀ´½«À¬»øÄÚÈÝÒýÈëÆ½Ì¨¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/spotify-abused-to-promote-pirated-software-and-game-cheats/


2. Great Plains Regional Medical CenterÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬133,000ÈËÊý¾Ýй¶


11ÔÂ19ÈÕ£¬£¬£¬£¬£¬£¬Great Plains Regional Medical Center£¨Î»ÓÚ¶í¿ËÀ­ºÉÂíÖÝ£©Ôâ·êÁËÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬µ¼ÖÂ133,149È˵ÄÓ×ÎÒÊý¾ÝÔ⵽й¶¡£¡£¡£¡£¡£¡£¡£¡£ÔÚ2024Äê9ÔÂ5ÈÕÖÁ8ÈÕÆÚ¼ä£¬£¬£¬£¬£¬£¬Ò»ÃûÍþвÐÐΪÕß½Ó¼û²¢¼ÓÃÜÁ˸ÃÒ½ÁÆÖÐÐÄϵͳÉϵÄÎļþ£¬£¬£¬£¬£¬£¬²¢¿ÉÄܸ´ÔìÁËÆäÖÐһЩÎļþ¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÒ½ÁÆÖÐÐÄÔÚÍøÂ簲ȫ¹«Ë¾µÄЭÖúÏ·¢Õ¹Á˵÷²é£¬£¬£¬£¬£¬£¬²¢Ñ¸ËÙ¸´Ô­ÁËϵͳ£¬£¬£¬£¬£¬£¬µ«ÓÐÏÞÊýÁ¿µÄ»¼ÕßÐÅÏ¢ÎÞ·¨¸´Ô­¡£¡£¡£¡£¡£¡£¡£¡£Ð¹Â¶µÄÐÅÏ¢¿ÉÄÜÔ̺¬ÐÕÃû¡¢È˶¡Í³¼ÆÐÅÏ¢¡¢½¡È«±£ÏÕÐÅÏ¢¡¢ÁÙ´²Ò½ÖÎÐÅÏ¢¡¢¼ÝÊ»ÅÆÕÕºÅÂëÒÔ¼°Éç»á°²È«ºÅÂëµÈÃô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÒ½ÁÆÖÐÐÄÔÚ֪ͨÊÜÓ°ÏìµÄ»¼Õߣ¬£¬£¬£¬£¬£¬²¢ÎªËûÃÇÌṩÃâ·ÑµÄÐÅÓþ¼à¿Ø¡£¡£¡£¡£¡£¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬£¬¸ÃÒ½ÁÆÖÐÐIJ¢Î´Ð¹Â©Óйع¥»÷ÆäϵͳµÄÀÕË÷Èí¼þ¼Ò×åµÄÐÅÏ¢£¬£¬£¬£¬£¬£¬Ä¿Ç°Ò²Ã»ÓÐÀÕË÷Èí¼þ×éÖ¯Ðû³Æ¶ÔÕâ´Î°²È«·ìÏ¶ÕÆ¹Ü¡£¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.com/171156/data-breach/great-plains-regional-medical-center-data-breach.html


3. EquinoxÊý¾Ýй¶ÊÂÎñ£ºLockBitÀÕË÷Èí¼þÍÅ»ïÒÉΪĻºóºÚÊÖ


11ÔÂ20ÈÕ£¬£¬£¬£¬£¬£¬Å¦Ô¼ÖÝÎÀÉúÓ빫¼Ò·þÎñ×éÖ¯Equinox֪ͨ³¬¹ý21,000Ãû¿Í»§ºÍÔ±¹¤£¬£¬£¬£¬£¬£¬ËûÃÇÔÚ½üÆß¸öÔÂǰµÄÒ»´ÎÊý¾Ý°²È«ÊÂÎñÖУ¬£¬£¬£¬£¬£¬Ó×ÎÒ½¡È«¡¢²ÆÕþµÈÐÅÏ¢±»µÁ¡£¡£¡£¡£¡£¡£¡£¡£¾Ý´§Ä¦£¬£¬£¬£¬£¬£¬Õâ´ÎÊÂÎñÓɱ¾Ó¦Òѱ»¹Ø¹ØµÄLockBitÀÕË÷Èí¼þÍÅ»ïËùΪ¡£¡£¡£¡£¡£¡£¡£¡£EquinoxΪŦԼÖÝÊ׸®µØÓòÌṩÉúÀí½¡È«¡¢½äñ«·þÎñ¡¢¼ÒÍ¥±©Á¦Ö§³ÖµÈ¶àÏî·þÎñ¡£¡£¡£¡£¡£¡£¡£¡£4ÔÂ29ÈÕ£¬£¬£¬£¬£¬£¬¸Ã×éÖ¯ÍøÂç½Ó¼ûÖжÏ£¬£¬£¬£¬£¬£¬Ëæºó·¢ÏÖÍøÂçÖеÄijЩÎļþ¿ÉÄܱ»Î´¾­ÊÚȨ½Ó¼û»òÏÂÔØ¡£¡£¡£¡£¡£¡£¡£¡£9ÔÂ16ÈÕ£¬£¬£¬£¬£¬£¬EquinoxÈ·ÈÏijЩÈ˵ÄÓ×ÎÒºÍÊܱ£»£» £»£»£»£»£»¤µÄ½¡È«ÐÅÏ¢¿ÉÄÜÒò¶øÊÂÎñÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£ÖµÍ×ÌùÐĵÄÊÇ£¬£¬£¬£¬£¬£¬LockBit 3.0ÀÕË÷Èí¼þ×éÖ¯ÔøÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾ÉÏÁгöEquinox£¬£¬£¬£¬£¬£¬Ðû³ÆÇÔÈ¡ÁË49GBÊý¾Ý£¬£¬£¬£¬£¬£¬²¢×îÖÕй¶ÁË31.8GBÎļþ¡£¡£¡£¡£¡£¡£¡£¡£Ö»¹ÜLockBitÔÚ2Ô·ÝÊܵ½¸ßµ÷·ÛË飬£¬£¬£¬£¬£¬µ«×èÖ¹ÀÕË÷Èí¼þ»ö»¼ÒÀÈ»¼«¶ÈÄÑÌ⣬£¬£¬£¬£¬£¬LockBit 3.0ÈÔÊǽñÄê×î»îÔ¾µÄ¼ÓÃܺÍÀÕË÷ÍÅ»ïÖ®Ò»¡£¡£¡£¡£¡£¡£¡£¡£


https://www.theregister.com/2024/11/20/equinox_patients_employees_data/


4. Oracle PLM¿ò¼Ü¸ßΣ·ì϶Ôâ¿í·ºÀûÓ㬣¬£¬£¬£¬£¬Óû§Ð辡¿ì´ò²¹¶¡


11ÔÂ20ÈÕ£¬£¬£¬£¬£¬£¬Oracle½üÆÚ°ä²¼ÖҸ棬£¬£¬£¬£¬£¬Ö¸³öÆä»ðËÙ²úÆ·ÐÔÃüÖÜÆÚÖÎÀí£¨PLM£©¿ò¼ÜÖдæÔÚÒ»¸öÒѱ»¿í·ºÀûÓõĸßÑϳÁÐÔ°²È«·ì϶£¬£¬£¬£¬£¬£¬±àºÅΪCVE-2024-21287£¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ7.5¡£¡£¡£¡£¡£¡£¡£¡£¸Ã·ì϶ÎÞÐèÉí·ÝÑéÖ¤¼´¿É±»Ô¶³ÌÀûÓ㬣¬£¬£¬£¬£¬¿ÉÄܵ¼ÖÂÃô¸ÐÐÅϢй¶£¬£¬£¬£¬£¬£¬Ô̺¬ÎļþÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£¡£OracleÔÚ²¼¸æÖÐÇ¿µ÷£¬£¬£¬£¬£¬£¬ÎÞÐèÓû§ÃûºÍÃÜÂ룬£¬£¬£¬£¬£¬¹¥»÷Õß¼´¿Éͨ¹ýÍøÂçÔ¶³Ì¹¥»÷£¬£¬£¬£¬£¬£¬³É¹¦ÀûÓø÷ì϶ºó¿ÉÄÜÏÂÔØPLMÀûÓ÷¨Ê½È¨ÏÞÏ¿ɽӼûµÄÎļþ¡£¡£¡£¡£¡£¡£¡£¡£CrowdStrikeµÄ°²È«×êÑÐÈËÔ±Joel SnapeºÍLutz WolfÒò·¢ÏÖ²¢»ã±¨´Ë·ì϶¶øÊܵ½ÔÞÃÀ¡£¡£¡£¡£¡£¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬£¬Ä¿Ç°Éв»Ã÷ÏÔË­ÔÚÀûÓô˷ì϶¡¢¶ñÒâ»î¶¯µÄÖ¸±êÊÇË­ÒÔ¼°¹¥»÷ÁìÓòÓжà¹ã¡£¡£¡£¡£¡£¡£¡£¡£Oracle°²È«±£ÏÕ¸±×ܲÃEric Maurice½¨ÒéÓû§¾¡¿ìÀûÓÃ×îв¹¶¡ÒÔ»ñµÃ×î¼Ñ±£»£» £»£»£»£»£»¤¡£¡£¡£¡£¡£¡£¡£¡£


https://thehackernews.com/2024/11/oracle-warns-of-agile-plm-vulnerability.html


5. WordPress²å¼þReally Simple SecurityÏÖÑϳÁ·ì϶£¬£¬£¬£¬£¬£¬Ó°Ï쳬400Íò¸öÍøÕ¾


11ÔÂ18ÈÕ£¬£¬£¬£¬£¬£¬WordPress²å¼þReally Simple Security´æÔÚÑϳÁ·ì϶£¬£¬£¬£¬£¬£¬Ó°ÏìÁ˳¬¹ý400Íò¸öÍøÕ¾£¬£¬£¬£¬£¬£¬Ê¹¹¥»÷Õß¿ÉÄÜ»ñµÃÆëÈ«µÄÖÎÀíÔ±½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£¡£¡£¡£¸Ã·ì϶±àºÅΪCVE-2024-10924£¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ9.8£¬£¬£¬£¬£¬£¬ÊÇWordfence×êÑÐÈËÔ±Istv¨¢n M¨¢rtonÔÚ2024Äê11ÔÂ6ÈÕ·¢Ïֵġ£¡£¡£¡£¡£¡£¡£¡£Really Simple Security£¨ÒÔǰ³ÆÎªReally Simple SSL£©ÊÇÒ»¿îÊ¢ÐеÄWordPress¹¤¾ß£¬£¬£¬£¬£¬£¬ÓÃÓÚ¼ÓÇ¿ÍøÕ¾°²È«ÐÔ¡£¡£¡£¡£¡£¡£¡£¡£È»¶ø£¬£¬£¬£¬£¬£¬¸Ã²å¼þÔÚË«³É·ÖÉí·ÝÑéÖ¤Ö°ÄÜÖдæÔÚÉí·ÝÑéÖ¤ÈÆ¹ý·ì϶£¬£¬£¬£¬£¬£¬µ±ÆôÓøÃÖ°ÄÜʱ£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»Ô¶³Ì½Ó¼ûÍøÕ¾ÉϵÄÈκÎÕÊ»§£¬£¬£¬£¬£¬£¬Ô̺¬ÖÎÀíÔ¹ØÊ»§¡£¡£¡£¡£¡£¡£¡£¡£·ì϶ÊÇÓÉÓÚÔÚË«³É·ÖREST API²Ù×÷ÖжÔÓû§²é³­ÃýÎó´¦Öò»µ±Ôì³ÉµÄ¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÖÒ¸æ³Æ£¬£¬£¬£¬£¬£¬¸Ã·ì϶¿É±àд¾ç±¾£¬£¬£¬£¬£¬£¬ÔÊÐí¹¥»÷ÕßÔÚ´ó¹æÄ£×Ô¶¯¹¥»÷ÖÐ×Ô¶¯ÀûÓᣡ£¡£¡£¡£¡£¡£¡£´Ë·ì϶½öÓ°ÏìÔÚ²å¼þÉèÖÃÖÐÆôÓÃÁË¡°Ë«³É·ÖÉí·ÝÑéÖ¤¡±µÄWordPressÍøÕ¾£¬£¬£¬£¬£¬£¬Ó°ÏìÁìÓòÔ̺¬¡°Ãâ·Ñ°æ¡±¡¢¡°×¨Òµ°æ¡±ºÍ¡°×¨Òµ¶àÕ¾µã°æ¡±µÄ²å¼þ°æ±¾9.0.0ÖÁ9.1.1.1¡£¡£¡£¡£¡£¡£¡£¡£¸Ã·ì϶ÒÑÔÚ9.1.2°æÖн¨¸´£¬£¬£¬£¬£¬£¬°²È«¸üÐÂÒѰ䲼£¬£¬£¬£¬£¬£¬µ«ÖÎÀíÔ±Ó¦ÑéÖ¤ËûÃÇÊÇ·ñʹÓõÄÊÇ×îа汾¡£¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.com/171100/hacking/really-simple-security-plugin-flaw-affects-4m-sites.html


6. ·¨¹úÒ½ÔºÊý¾Ýй¶£º75Íò»¼Õ߼ͼÔâÆØ¹â


11ÔÂ20ÈÕ£¬£¬£¬£¬£¬£¬Ò»Â·Éæ¼°·¨¹úÒ½ÔºµÄÊý¾Ýй¶ÊÂÎñÒý·¢ÁË¿í·º¹Ø×¢¡£¡£¡£¡£¡£¡£¡£¡£Ò»Ãû×Ô³ÆÎª¡°nears¡±µÄÍþвÐÐΪÕßÐû³Æ¹¥»÷Á˶à¼Ò·¨¹úÒ½ÁÆ»ú¹¹£¬£¬£¬£¬£¬£¬ÄܽӼû³¬¹ý150ÍòÈ˵IJ¡Àú¡£¡£¡£¡£¡£¡£¡£¡£¾ßÌå¶øÑÔ£¬£¬£¬£¬£¬£¬ºÚ¿Íͨ¹ýÈí¼þÒ½ÁƼ¯ÍÅÈëÇÖÁËÌṩµç×Ó²¡Àú½â¾ö¹æ»®µÄMediBoard£¬£¬£¬£¬£¬£¬µ¼ÖÂÒ»¼Òδ¾ßÃûµÄ·¨¹úÒ½Ôº75ÍòÓàÃû»¼ÕßµÄÒ½ÁƼͼ±»Ð¹Â¶¡£¡£¡£¡£¡£¡£¡£¡£ÕâЩ¼Í¼Ô̺¬»¼ÕßµÄÈ«Ãû¡¢µ®ÉúÈÕÆÚ¡¢ÐԱ𡢼Òͥסַ¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØÖ·¡¢Ò½ÉúÐÅÏ¢¡¢´¦·½¼°½¡È«¿¨º¹ÇàµÈÃô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£Softway Medical GroupÈ·ÈϺڿÍÈëÇÖÁËMediBoardÕÊ»§£¬£¬£¬£¬£¬£¬µ«Ç¿µ÷Êý¾Ýй¶²¢·ÇÈí¼þ·ì϶»òÅäÖÃÃýÎóËùÖ£¬£¬£¬£¬£¬£¬¶øÊÇҽԺʹÓÃÁ˱»µÁµÄÍ´´¦¡£¡£¡£¡£¡£¡£¡£¡£ºÚ¿ÍÉõÖÁÆðÍ·ÏúÊÛËûÃÇÐû³ÆµÄMediBoardƽ̨½Ó¼ûȨÏÞ£¬£¬£¬£¬£¬£¬Éæ¼°¶à¼Ò·¨¹úÒ½Ôº£¬£¬£¬£¬£¬£¬ÔÊÐíÂò·½²é¿´Ò½ÔºµÄÃô¸ÐÒ½ÁƱ£½¡ºÍÕ˵¥ÐÅÏ¢¡¢»¼Õ߼ͼ£¬£¬£¬£¬£¬£¬²¢¾ß±¸ÆÌÅźÍÅú¸ÄÔ¤Ô¼»òÒ½ÁƼͼµÄÄÜÁ¦¡£¡£¡£¡£¡£¡£¡£¡£Ö»¹ÜÊý¾ÝÉÐδ±»¹«¿ªÏúÊÛ£¬£¬£¬£¬£¬£¬µ«´æÔÚÃâ·Ñй¶µ½ÍøÉϵķçÏÕ£¬£¬£¬£¬£¬£¬Ôö³¤ÁËÊÜÓ°ÏìÈËÔ±Ôâ·êÍøÂç´¹µö¡¢Ú¿Æ­ºÍÉç»á¹¤³Ì¹¥»÷µÄ¿ÉÄÜÐÔ¡£¡£¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/cyberattack-at-french-hospital-exposes-health-data-of-750-000-patients/