΢ÈíAI²¿·ÖÑо¿Ö°Ô±ÒâÍâй¶38 TB˽ԿºÍÃÜÂëµÈÊý¾Ý
Ðû²¼Ê±¼ä 2023-09-191¡¢Î¢ÈíAI²¿·ÖÑо¿Ö°Ô±ÒâÍâй¶38 TB˽ԿºÍÃÜÂëµÈÊý¾Ý
¾Ý9ÔÂ18ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬Çå¾²¹«Ë¾Wiz·¢Ã÷£¬£¬£¬£¬£¬£¬Î¢ÈíAIÑо¿²¿·ÖÔÚÏò¹«¹²GitHub´æ´¢¿âТ˳¿ªÔ´È˹¤ÖÇÄÜѧϰģ×ÓʱÒâÍâй¶ÁË38 TBµÄÃô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£Ð¹Â¶µÄÊý¾Ý°üÀ¨Î¢ÈíЧÀ͵ÄÃÜÂë¡¢ÃÜÔ¿ÒÔ¼°À´×Ô359Ãû΢ÈíÔ±¹¤µÄ30000¶àÌõÄÚ²¿TeamsÐÂÎŵĴ浵¡£¡£¡£¡£¡£¡£Î¢Èí½«Êý¾Ýй¶ÓëʹÓùýÓÚ¿íËɵĹ²Ïí»á¼ûÊðÃû£¨SAS£©ÁîÅÆÁªÏµÆðÀ´£¬£¬£¬£¬£¬£¬¸ÃÁîÅÆ¿É¶Ô¹²ÏíÎļþ¾ÙÐÐÍêÈ«¿ØÖÆ¡£¡£¡£¡£¡£¡£Êý¾Ý×Ô2020Äê7ÔÂ×îÏÈй¶£¬£¬£¬£¬£¬£¬ÓÚ½ñÄê6ÔÂ24ÈÕ½â¾ö¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/151004/data-breach/microsoft-ai-data-leak.html
2¡¢Trygg-Hansaй¶65Íò¿Í»§ÐÅÏ¢±»Èðµä·£¿£¿£¿£¿î3500Íò¿ËÀÊ
¾ÝýÌå9ÔÂ17ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬°ü¹Ü¹«Ë¾Trygg-HansaÒòй¶650000Ãû¿Í»§µÄÐÅÏ¢£¬£¬£¬£¬£¬£¬±»ÈðµäÒþ˽±£»£»£»£»¤¾Ö£¨IMY£©´¦ÒÔ3500ÍòÈðµä¿ËÀʵÄÐÐÕþ´¦·£¿£¿£¿£¿î¡£¡£¡£¡£¡£¡£IMYµÄÉó²éÏÔʾ£¬£¬£¬£¬£¬£¬2018Äê10ÔÂÖÁ2021Äê2ÔÂʱ´ú¿É»á¼û65ÍòÃû¿Í»§µÄÊý¾Ý£¬£¬£¬£¬£¬£¬ÆäÖгýÁË¿µ½¡Êý¾ÝÍ⣬£¬£¬£¬£¬£¬ÉÐÓвÆÎñÐÅÏ¢¡¢ÁªÏµ·½·¨¡¢Éç½»ÐÅÏ¢¡¢Çå¾²ºÅÂëºÍ°ü¹Ü³ÖÓÐÁ¿µÈÆäËüÊý¾Ý¡£¡£¡£¡£¡£¡£IMYÖ¸³ö£¬£¬£¬£¬£¬£¬Trygg-HansaÔÚʹÓÃÏà¹ØITϵͳ֮ǰ£¬£¬£¬£¬£¬£¬»òÔÚʹÓøÃϵͳµÄºÜ³¤Ò»¶Îʱ¼äÄÚ¶¼Ó¦¸ÃÓÐʱ»ú·¢Ã÷²¢ÐÞ¸´¸ÃÎÊÌâ¡£¡£¡£¡£¡£¡£IMYÒÔΪTrygg-Hansaδ½ÓÄÉÊʵ±µÄ²½·¥À´È·±£ÓëΣº¦Ï൱µÄÇå¾²¼¶±ð£¬£¬£¬£¬£¬£¬Òò´Ë·£¿£¿£¿£¿î3500Íò¿ËÀÊ¡£¡£¡£¡£¡£¡£
https://www.databreaches.net/swedens-privacy-protection-agency-fines-insurer-trygg-hansa-for-exposing-sensitive-customer-data/
3¡¢USDoDй¶ÃÀ¹úÐÅÓûú¹¹TransUnionÁè¼Ý3 GBµÄÊý¾Ý
9ÔÂ18ÈÕ±¨µÀ³Æ£¬£¬£¬£¬£¬£¬ÍâºÅΪUSDoDµÄºÚ¿Íй¶Á˾ݳÆÊÇ´ÓÃÀ¹úÏûºÄÕßÐÅÓûú¹¹TransUnionÇÔÈ¡µÄÊý¾Ý¡£¡£¡£¡£¡£¡£TransUnionÊÇÃÀ¹úÈý´óÕ÷ОÞÍ·Ö®Ò»£¬£¬£¬£¬£¬£¬ÍøÂç²¢»ã×ÜÁË30¶à¸ö¹ú¼ÒºÍµØÇøµÄÁè¼Ý10ÒÚÏûºÄÕßµÄÐÅÏ¢¡£¡£¡£¡£¡£¡£´Ë´Îй¶µÄÊý¾Ý¿âÁè¼Ý3 GB£¬£¬£¬£¬£¬£¬°üÀ¨Ô¼58505È˵ÄPIIÐÅÏ¢£¬£¬£¬£¬£¬£¬±é²¼È«Çò£¬£¬£¬£¬£¬£¬°üÀ¨ÃÀ¹úºÍÅ·ÖÞ¡£¡£¡£¡£¡£¡£vx-underground³Æ£¬£¬£¬£¬£¬£¬¸Ãµµ°¸°üÀ¨¿É×·Ëݵ½2022Äê3ÔÂ2ÈÕµÄÊý¾Ý¡£¡£¡£¡£¡£¡£²»¾Ãǰ£¬£¬£¬£¬£¬£¬USDoD»¹Ð¹Â¶ÁËAirbusµÄ3200Ãû¹©Ó¦É̵ÄÐÅÏ¢£¬£¬£¬£¬£¬£¬ÒÔ¼°FBI¹²ÏíϵͳInfraGardµÄÊý¾Ý¿â¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/150968/data-breach/transunion-data-leak.html
4¡¢GoogleÔÞ³ÉÒÔ9300ÍòÃÀԪϢÕùAndroidÓû§×·×ÙµÄËßËÏ
ýÌå9ÔÂ15Èճƣ¬£¬£¬£¬£¬£¬GoogleÔÞ³ÉÖ§¸¶9300ÍòÃÀÔª£¬£¬£¬£¬£¬£¬ÒÔÏ¢ÕùÒ»ÏîÖ¸¿ØÆäÎ¥·´ÃÀ¹úÏûºÄÕß±£»£»£»£»¤·¨µÄËßËÏ¡£¡£¡£¡£¡£¡£¼ÓÖÝ˾·¨²¿µÄÒ»ÏîÊӲ췢Ã÷£¬£¬£¬£¬£¬£¬GoogleÔÚÍøÂç¡¢±£´æºÍʹÓÃAndroidÓû§µÄλÖÃÊý¾ÝÓÃÓÚÏûºÄÕ߯ÊÎöºÍ¹ã¸æµÈÄ¿µÄ·½Ãæ±£´æÓÕÆÐÐΪ£¬£¬£¬£¬£¬£¬ËùÓÐÕâЩ¶¼Ã»ÓлñµÃÓû§µÄÖªÇéºÍÔ޳ɡ£¡£¡£¡£¡£¡£ÖصãÊÇλÖøú×Ù£¬£¬£¬£¬£¬£¬µ±Óû§ÍêÈ«½ûÓÃλÖøú×Ùʱ£¬£¬£¬£¬£¬£¬»áĬÈÏÆôÓá°ÍøÂçºÍÓ¦ÓóÌÐò»î¶¯¡±ÉèÖ㬣¬£¬£¬£¬£¬¿ÉÍøÂç¡¢±£´æºÍʹÓÃÓû§µÄλÖÃÊý¾Ý¡£¡£¡£¡£¡£¡£ÔÚÏ¢ÕùÖ®ºó£¬£¬£¬£¬£¬£¬GoogleÔÞ³ÉʵÑéÔ½·¢Óû§ÓѺõÄÕÊ»§¿ØÖÆ£¬£¬£¬£¬£¬£¬Í¬Ê±ÏÞÖÆÌØ¶¨Î»ÖÃÊý¾ÝÀà±ðµÄʹÓúͱ£´æ¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/google/google-pays-93m-to-settle-android-tracking-lawsuit-in-california/
5¡¢Î¢ÈíÅû¶ncurses¿âÖеÄÄÚ´æËð»µÎó²îCVE-2023-29491
΢ÈíÔÚ9ÔÂ14ÈÕÅû¶ÁËncurses¿âÖеÄÒ»×éÄÚ´æËð»µÎó²îµÄϸ½ÚÐÅÏ¢¡£¡£¡£¡£¡£¡£ÕâЩÎó²îͳ³ÆÎªCVE-2023-29491£¨CVSSÆÀ·Ö7.8£©£¬£¬£¬£¬£¬£¬¿É±»ÓÃÀ´ÔÚLinuxºÍmacOSϵͳÉÏÖ´ÐжñÒâ´úÂë¡£¡£¡£¡£¡£¡£ncurses¿âÓÚ1993ÄêÐû²¼£¬£¬£¬£¬£¬£¬Ìṩ֧³Ö»ùÓÚÎı¾µÄÓû§½çÃæ(TUI)µÄAPI£¬£¬£¬£¬£¬£¬Í¨³£±»¿ÉÒÆÖ²²Ù×÷ϵͳ½Ó¿Ú(POSIX)ϵͳÉϵÄÖÖÖÖ³ÌÐòʹÓᣡ£¡£¡£¡£¡£Ê¹ÓÃÇéÐαäÁ¿Öж¾£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÁ¬ÏµÊ¹ÓÃÕâЩÎó²îÀ´ÌáÉýȨÏÞ£¬£¬£¬£¬£¬£¬²¢ÔÚÄ¿µÄ³ÌÐòµÄϵͳÖÐÔËÐдúÂë»òÖ´ÐÐÆäËü¹¥»÷¡£¡£¡£¡£¡£¡£Î¢ÈíÓÚ4Ô·ÝÐÞ¸´Á˸ÃÎó²î¡£¡£¡£¡£¡£¡£
https://www.microsoft.com/en-us/security/blog/2023/09/14/uncursing-the-ncurses-memory-corruption-vulnerabilities-found-in-library/
6¡¢MandiantÐû²¼¹ØÓÚUNC3944¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ
9ÔÂ14ÈÕ£¬£¬£¬£¬£¬£¬MandiantÐû²¼Á˹ØÓÚUNC3944¹¥»÷»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£×Ô2022ÄêÖÁ2023ÄêÍ·£¬£¬£¬£¬£¬£¬UNC3944רעÓÚ»á¼ûÓÃÓÚ¾ÙÐÐSIM½»Á÷¹¥»÷µÄƾ֤»òϵͳ£¬£¬£¬£¬£¬£¬È»¶øÔÚ2023ÄêÖÐÆÚ£¬£¬£¬£¬£¬£¬UNC3944×îÏÈתÏòÔÚÄ¿µÄϵͳÖа²ÅÅÀÕË÷Èí¼þ¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÔÚUNC3944Ðж¯Ê±´úÊӲ쵽µÄTTP£¬£¬£¬£¬£¬£¬°üÀ¨ºÜÊÇÒÀÀµÓÚÉ繤¹¥»÷¾ÙÐгõʼ»á¼û£¬£¬£¬£¬£¬£¬Ê¹ÓÃÉÌҵסլÊðÀíЧÀÍ´Óͳһ¾ÖÓò»á¼ûÄ¿µÄÒÔÈÆ¹ý¼à¿Ø¹¤¾ß£¬£¬£¬£¬£¬£¬Ê¼ÖÕʹÓÃÕýµ±Èí¼þ£¬£¬£¬£¬£¬£¬Ðж¯½Ú×༫¿ì²¢ÔÚ¼¸ÌìÄÚ¾ÍÄÜ»á¼ûÒªº¦ÏµÍ³À´ÇÔÈ¡´ó×ÚÊý¾ÝµÈ¡£¡£¡£¡£¡£¡£
https://www.mandiant.com/resources/blog/unc3944-sms-phishing-sim-swapping-ransomware


¾©¹«Íø°²±¸11010802024551ºÅ