ÐÅÏ¢°²È«Öܱ¨-2018ÄêµÚ26ÖÜ
°ä²¼¹¦·ò 2018-07-02Ò»¡¢±¾Öܰ²È«Ì¬ÊÆ×ÛÊö
2018Äê06ÔÂ25ÈÕÖÁ29ÈÕ¹²ÊÕ¼°²È«·ì϶55¸ö£¬£¬£¬£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇSchneider Electric U.motion BuilderÕ»»º³åÇøÒç¶Âí½Å£»£»£»£»£»Delta Industrial Automation COMMGR AHSIM_5x0 SimulatorÕ»»º³åÇøÒç¶Âí½Å£»£»£»£»£»Adobe Reader DCÔ½½ç¶ÁËÁÒâ´úÂëÖ´Ðзì϶£»£»£»£»£»Microsoft OneDrive DLL´¦ÖÃËÁÒâ´úÂëÖ´Ðзì϶£»£»£»£»£»Apache HBase°²È«ÏÞ¶ÈÈÆ¹ý·ì϶¡£¡£¡£¡£¡£¡£¡£¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇ×êÑÐÈËÔ±ÖÒ¸æ³ÆÊ¹ÓÃTLSÈÏÖ¤ÍøÕ¾µÄNetflix´¹µö»î¶¯²»ÐÝÔö³¤£»£»£»£»£»Ó¢¹ú˰Îñ»ú¹ØHMRCÉæÏÓÎ¥·¨ÍøÂçÔ¼510ÍòÓû§µÄÓïÒô¼Í¼£»£»£»£»£»Wi-FiÁªÃËÕýʽ°ä²¼ÐÂÒ»´ú°²È«³ß¶ÈWPA3£¬£¬£¬£¬£¬£¬£¬£¬¿É½øÒ»²½Ìá¸ßÍøÂ簲ȫÐÔ£»£»£»£»£»FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬Êý°Ù¼Ò¾ÆµêµÄÓû§Êý¾Ýй¶£»£»£»£»£»FacebookµÚÈý·½ÀûÓõ¼ÖÂÔ¼1.2ÒÚÓû§µÄÊý¾ÝÃæ¶Ôй¶·çÏÕ¡£¡£¡£¡£¡£¡£¡£¡£
ƾ¾ÝÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬£¬£¬£¬±¾Öܰ²È«ÍþвΪÖÓ×£¡£¡£¡£¡£¡£¡£¡£
¶þ¡¢³ÁÒª°²È«·ì϶Áбí
1¡¢Schneider Electric U.motion BuilderÕ»»º³åÇøÒç¶Âí½Å
Schneider Electric U.motion Builder´æÔÚÕ»µÄ»º³åÇøÒç¶Âí½Å£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬£¬£¬ÒÔÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://www.schneiderelectric.com/en/download/document/Umotion_Server_update/
2¡¢Delta Industrial Automation COMMGR AHSIM_5x0 SimulatorÕ»»º³åÇøÒç¶Âí½Å
Delta Industrial Automation COMMGR AHSIM_5x0 Simulator´¦ÖÃTCP±¨ÎÄ´æÔÚÕ»Òç¶Âí½Å£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬£¬£¬Äܹ»COMMGR¹ý³Ì¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttp://www.deltaww.com/Products/PluginWebUserControl/downloadCenterCounter.aspx?DID=2093&DocPath=1&hl=en-US
3¡¢Adobe Reader DCÔ½½ç¶ÁËÁÒâ´úÂëÖ´Ðзì϶
Adobe Reader DC´æÔÚÔ½½ç¶Á·ì϶£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄPDFÎļþ£¬£¬£¬£¬£¬£¬£¬£¬ÓÕʹÓû§½âÎö£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://helpx.adobe.com/security/products/acrobat/apsb18-02.html
4¡¢Microsoft OneDrive DLL´¦ÖÃËÁÒâ´úÂëÖ´Ðзì϶
Microsoft OneDrive´¦ÖÃËÑË÷õè¾¶´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄDLL£¬£¬£¬£¬£¬£¬£¬£¬ÓÕʹÓû§½âÎö£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://blogs.technet.microsoft.com/srd/2018/04/04/triaging-a-dll-planting-vulnerability/
5¡¢Apache HBase°²È«ÏÞ¶ÈÈÆ¹ý·ì϶
Apache HBase´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬£¬£¬Èƹý°²È«ÏÞ¶È£¬£¬£¬£¬£¬£¬£¬£¬Ö´ÐÐδÊÚȨµÄ²Ù×÷¡£¡£¡£¡£¡£¡£¡£¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://lists.apache.org/thread.html/a919e38f587c714c386a01d40fc8f45bd4219a65aaf2dc0bb4eccc96@%3Cdev.hbase.apache.org%3E
Èý¡¢³ÁÒª°²È«ÊÂÎñ×ÛÊö
1¡¢×êÑÐÈËÔ±ÖÒ¸æ³ÆÊ¹ÓÃTLSÈÏÖ¤ÍøÕ¾µÄNetflix´¹µö»î¶¯²»ÐÝÔö³¤
SANS¼¼Êõ×êÑÐÔºÔº³¤Johannes Ullrich³ÆÊ¹ÓÃTLSÈÏÖ¤ÍøÕ¾µÄNetflix´¹µö»î¶¯²»ÐÝÔö³¤¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÊ×ÏÈÈëÇÖWordPress»òDrupalµÈCMS¹¹½¨µÄÍøÕ¾£¬£¬£¬£¬£¬£¬£¬£¬¶øºó´´½¨Netflix´¹µöÍøÕ¾²¢»ñÈ¡ÓëNetflixÃû³ÆÓйصÄTLSÖ¤Ê飬£¬£¬£¬£¬£¬£¬£¬Èçnetflix.domain.com»ònetflix.login.domain.com£¬£¬£¬£¬£¬£¬£¬£¬ÕâʹÆä¿´ÆðÀ´Ô½·¢¿ÉÐÅ¡£¡£¡£¡£¡£¡£¡£¡£¹ÌÈ»NetflixÕË»§¼ÛÖµ²¢²»¸ß£¬£¬£¬£¬£¬£¬£¬£¬µ«ÕâÖÖ¹¥»÷Ò×ÓÚʵÏÖ×Ô¶¯»¯ÇÒÄÑÒÔÈÃÊܺ¦Õß·¢ÏÖ¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://threatpost.com/new-phishing-scam-reels-in-netflix-users-to-tls-certified-sites/132976/
2¡¢Ó¢¹ú˰Îñ»ú¹ØHMRCÉæÏÓÎ¥·¨ÍøÂçÔ¼510ÍòÓû§µÄÓïÒô¼Í¼
ÒþÖÔ±£»£»£»£»£»¤×éÖ¯Big Brother Watch·¢ÏÖÓ¢¹úµÄ˰Îñ»ú¹ØHMRCÉæÏÓÎ¥·¨ÍøÂçÔ¼510ÍòÓ¢¹ú¹«ÃñµÄÓïÒô¼Í¼¡£¡£¡£¡£¡£¡£¡£¡£HMRCͨ¹ý2017Äê1ÔÂÍÆ³öµÄÒ»ÏîÓïÒô¼ø±ð·þÎñÍøÂçÁËÕâЩ¼Í¼£¬£¬£¬£¬£¬£¬£¬£¬¸Ã·þÎñÔÊÐíÓû§ÔÚºô½ÐHMRCʱͨ¹ýÓïÒô½øÐÐÉí·ÝÑéÖ¤¡£¡£¡£¡£¡£¡£¡£¡£µ«Big Brother Watch·¢ÏÖÓû§ÎÞ·¨Ñ¡Ôñ²»Ê¹Óø÷þÎñ£¬£¬£¬£¬£¬£¬£¬£¬ËùÓв¦´òHMRCÈÈÏßµÄÓû§¶¼±»ÆÈ¼ÔìÁËÓïÒô¼Í¼£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÓû§ÎÞ·¨Ñ¡Ôñ´ÓHMRCµÄÊý¾Ý¿âÖÐɾ³ýÆäÓïÒô¼Í¼¡£¡£¡£¡£¡£¡£¡£¡£¸Ã×éÖ¯ÒÔΪHMRC´Ë¾ÙÏÔÖøÎ¥·´ÁËGDPR£¬£¬£¬£¬£¬£¬£¬£¬Ó¢¹úÐÅϢרԱ°ì¹«ÊÒ£¨ICO£©ÒѶԴËÊ·¢Õ¹ÕýʽµÄµ÷²é¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/government/uk-tax-agency-recorded-the-voices-of-51-million-brits/
3¡¢Wi-FiÁªÃËÕýʽ°ä²¼ÐÂÒ»´ú°²È«³ß¶ÈWPA3£¬£¬£¬£¬£¬£¬£¬£¬¿É½øÒ»²½Ìá¸ßÍøÂ簲ȫÐÔ

±¾ÖÜÒ»Wi-FiÁªÃËÕýʽ°ä²¼ÐÂÒ»´ú°²È«³ß¶ÈWPA3£¬£¬£¬£¬£¬£¬£¬£¬WPA3ÊÇÓÃÓÚWi-FiÏνӵÄÓû§Éí·ÝÑéÖ¤¼¼ÊõµÄ×îа汾¡£¡£¡£¡£¡£¡£¡£¡£WPA3ÓÐÁ½ÖÖ°²È«Ä£Ê½£¬£¬£¬£¬£¬£¬£¬£¬WPA3-PersonalºÍWPA3-Enterprise£¬£¬£¬£¬£¬£¬£¬£¬ÕâÁ½ÖÖ°²È«Ä£Ê½µÄÖØÒªÇø±ðÔÚÓÚÉí·ÝÑéÖ¤½×¶Î¡£¡£¡£¡£¡£¡£¡£¡£¶ÔÓÚÆóÒµ¡¢µ±¾ÖºÍ½ðÈÚÍøÂçÖÐʹÓõÄÉ豸£¬£¬£¬£¬£¬£¬£¬£¬½¨ÒéʹÓÃWPA3-Enterprise°²È«Ä£Ê½£¬£¬£¬£¬£¬£¬£¬£¬WPA3-PersonalÔòÊÇÃæÏòͨ³£Ó×ÎÒÓû§¡£¡£¡£¡£¡£¡£¡£¡£Wi-FiÁªÃ˰µÊ¾WPA3µÄSAEËã·¨¿ÉÄÜÕмܱ©Á¦¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬WPA3½«ÔÚÂÅ´Îʧ°Ü³¢ÊÔºó×èÖ¹ÈÏÖ¤ÒªÇ󡣡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-wpa3-wi-fi-standard-released/
4¡¢FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬Êý°Ù¼Ò¾ÆµêµÄÓû§Êý¾Ýй¶
°ÍÀè¾ÆµêÔ¤Ô¼¹«Ë¾FastBookingÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬Êý°Ù¼Ò¾ÆµêµÄÓû§Êý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£¡£FastBooking³Æ¹¥»÷ÕßÔÚ6ÔÂ14ÈÕÀûÓÃÆä·þÎñÆ÷ÉÏÒ»¸öÈí¼þµÄ·ì϶װÖÃÁ˶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÔÈ¡Á˾ƵêÓû§µÄÐÕÃû¡¢¹ú¼®¡¢µØÖ·¡¢µç×ÓÓʼþµØÖ·ºÍ¾ÆµêÔ¤Ô¼ÓйØÐÅÏ¢£¨¾ÆµêÃû³Æ¡¢ÈëסºÍÍË·¿£©µÈÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬ÇÔÈ¡µÄÊý¾Ý»¹Ô̺¬²¿ÃÅÓû§µÄÒøÐп¨ÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬È翨ºÅ¡¢¹ýÆÚÈÕÆÚµÈ¡£¡£¡£¡£¡£¡£¡£¡£FastBooking³Æ¸ÃÊÂÎñÓ°ÏìÁËÈÕ±¾µÄ380¼Ò¾Æµê£¬£¬£¬£¬£¬£¬£¬£¬Bleeping ComputerÒÔΪÕâÒ»Êý×ÖÔÚÈ«ÇòÁìÓòÄÚ¿ÉÄܳ¬¹ýÁË1000¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/hundreds-of-hotels-affected-by-data-breach-at-hotel-booking-software-provider/
5¡¢FacebookµÚÈý·½ÀûÓõ¼ÖÂÔ¼1.2ÒÚÓû§µÄÊý¾ÝÃæ¶Ôй¶·çÏÕ
×êÑÐÈËÔ±Inti De Ceukelaire·¢ÏÖµÚÈý·½ÖÇÁ¦½ÏÁ¿ÀûÓÃNametests.comʹԼ1.2ÒÚFacebookÓû§µÄÊý¾ÝÃæ¶Ôй¶·çÏÕ¡£¡£¡£¡£¡£¡£¡£¡£Ö»ÓÐFacebookÓû§ÔÚNameTestsÍøÕ¾ÉÏ×¢²á£¬£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾½«Äܹ»»ñÈ¡Óû§µÄÓ×ÎÒÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£µ«×êÑÐÈËÔ±·¢ÏÖNameTestsÍøÕ¾ÃýÎ󵨽«Æä¡°Access-Control-Allow-Origin¡±Õ½ÊõÅäÖóÉͨÅä·û*£¬£¬£¬£¬£¬£¬£¬£¬ÕâÔÊÐíÈκÎÍøÕ¾½Ó¼ûÆä×ÊÔ´£¬£¬£¬£¬£¬£¬£¬£¬Ô̺¬ÕâЩÓû§µÄÓ×ÎÒÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£NameTestsÒѾ½¨¸´Á˸ÃÎÊÌâ¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/06/facebook-users-data-leak.html
©ADLab 8827Ì«Ñô¼¯ÍÅ»ý¼«·ÀÓù³¢ÊÔÊÒ 2016


¾©¹«Íø°²±¸11010802024551ºÅ