TikTokÒòÎ¥·´Cookie¹æ¶¨±»·¨¹úCNIL· £¿î540ÍòÃÀÔª

Ðû²¼Ê±¼ä 2023-01-16
1¡¢TikTokÒòÎ¥·´Cookie¹æ¶¨±»·¨¹úCNIL· £¿î540ÍòÃÀÔª

      

¾ÝýÌå1ÔÂ14ÈÕ±¨µÀ£¬TikTok±»·¨¹úÊý¾Ý±£»¤»ú¹¹(CNIL)· £¿î500ÍòÅ·Ôª£¨Ô¼ºÏ540ÍòÃÀÔª£©¡£CNILÔÚͨ¸æÖнâÊÍ£¬ËüÓÚ2021Äê6Ô¼ì²éÁËTikTokÍøÕ¾£¬·¢ÏÖ¸ÃÆ½Ì¨µÄÓû§²»ÄÜÏñ½ÓÊÜcookieÄÇÑùÇáÒ׵ؾܾøcookie¡£´ËÍ⣬Óû§Ã»ÓлñµÃÓйØcookieÓÃ;µÄ×ã¹»ÏêϸÐÅÏ¢¡£ÕâÖÖÉè¼ÆÐÐΪ±»ÈÏΪΥ·´ÁË·¨¹úÊý¾Ý±£»¤·¨(DPA)µÚ82Ìõ£¬Ê¹Æä³ÉΪ¼ÌÑÇÂíÑ·¡¢¹È¸è¡¢MetaºÍ΢ÈíÖ®ºóÃæÁÙÀàËÆ´¦·£µÄƽ̨¡£


https://thehackernews.com/2023/01/tiktok-fined-54-million-by-french.html


2¡¢Êý×ÖÇ鱨¹«Ë¾CellebriteµÄ1.7TBÊý¾Ý±»Ðû²¼ÔÚDDoSsecret

      

ýÌå1ÔÂ15Èճƣ¬ÒÔÉ«ÁÐÊý×ÖÇ鱨¹«Ë¾CellebriteµÄ1.7TBÊý¾Ýй¶¡£ËüÊÇÊý×Öȡ֤ÁìÓòµÄÁìÏȹ«Ë¾Ö®Ò»£¬Ö´·¨²¿ÃźÍÇ鱨»ú¹¹Ê¹ÓÃÆä·þÎñUFEDÀ´½âËøºÍ·ÃÎÊÒÆ¶¯Éè±¹ØÁ¬ÄÊý¾Ý¡£Õâ¼Ò¹«Ë¾ºÍÁíÒ»¼ÒÈðµäµÄȡ֤¹«Ë¾MSABµÄÊý¾ÝÒѱ»Enlace HacktivistÍÅ»ïй¶£¬ºóÀ´Í¨¹ýDDoSsecretƽ̨¹ûÈ»¡£Ð¹Â¶Êý¾Ýͨ¹ýTorrent·ÖÏí£¬°üÂÞÕû¸öCellbriteÌ×¼þ£¬ÒÔ¼°ÓÃÓÚÈí¼þµ±µØ»¯ºÍ¿Í»§¼¼ÊõÖ¸ÄϵĴóÁ¿Îļþ¡£


https://securityaffairs.com/140838/data-breach/cellebrite-software-leaked-online.html


3¡¢°²´óÂÔ¾ÆÀà¹ÜÖÆ¾Ö(LCBO)ÍøÕ¾±»ºÚ¿Í»§Ö§¸¶ÐÅϢй¶

      

¾Ý1ÔÂ15ÈÕ±¨µÀ£¬¼ÓÄô󰲴óÂÔÊ¡¾ÆÀà¹ÜÖÆ¾Ö(LCBO)µÄÍøÕ¾Ôâµ½Magecart¹¥»÷¡£LCBOÊÇÒ»¼ÒÕþ¸®ÆóÒµ£¬Ò²ÊǸùú×î´óµÄ¾ÆÀàÁãÊÛÉÌ¡£Ëü͸¶¹¥»÷ÕßÒѾ­ÈëÇÖÆäÍøÕ¾²¢×¢Èë¶ñÒâ´úÂ룬ּÔÚÔÚ½áÕËʱÇÔÈ¡¿Í»§µÄÖ§¸¶ÐÅÏ¢¡£ÊӲ췢ÏÖ£¬2023Äê1ÔÂ5ÈÕÖÁ1ÔÂ10ÈÕÆÚ¼äÔÚ½áÕËÒ³ÃæÉÏÌṩ¸öÈËÐÅÏ¢²¢½øÈëLCBO.comÖ§¸¶Ò³ÃæµÄ¿Í»§£¬ÆäÐÅÏ¢¿ÉÄÜÒѱ»Ð¹Â¶£¬Éæ¼°ÐÕÃû¡¢Óʼþ¡¢µØÖ·¡¢ÐÅÓÿ¨ÐÅÏ¢¡¢AeroplanºÅºÍLCBO.comÕÊ»§ÃÜÂëµÈ¡£Ä¿Ç°Ê¼þÈÔÔÚÊÓ²ìÖУ¬Ó¦Ó÷¨Ê½ºÍLCBO.comÍøÕ¾ÒÑÏÂÏß¡£


https://securityaffairs.com/140823/data-breach/lcbo-magecart-attack.html


4¡¢NortonLifeLock³ÆÆä²¿ÃÅÓû§µÄÕË»§Ô⵽ƾ¾ÝÌî³ä¹¥»÷

      

1ÔÂ13ÈÕ±¨µÀ³Æ£¬Gen Digital£¨Ç°ÉíΪSymantecºÍNortonLifeLock£©ÕýÔÚÏò¿Í»§·¢ËÍÊý¾Ýй¶֪ͨ£¬¼û¸æËûÃǺڿÍÒÑͨ¹ýƾ¾ÝÌî³ä¹¥»÷ÈëÇÖ²¿ÃÅNorton Password ManagerÕÊ»§¡£NortonLifeLock½âÊ͵À£¬2022Äê12ÔÂ1ÈÕ×óÓÒ£¬¹¥»÷ÕßʹÓôӰµÍø¹ºÖõÄÓû§ÃûºÍÃÜÂëʵÑéµÇ¼Norton¿Í»§µÄÕÊ»§£¬ËûÃÇ12ÔÂ12ÈÕ¼ì²âµ½´óÁ¿µÄʧ°ÜµÇ¼ʵÑ飬Õâ±íÃ÷´æÔÚײ¿â¹¥»÷¡£½ØÖÁ12ÔÂ22ÈÕ£¬¸Ã¹«Ë¾ÒÑÍê³ÉÄÚ²¿ÊӲ췢ÏÖ¹¥»÷ÕßÒÑÀÖ³ÉÈëÇÖ²¿Ãſͻ§ÕË»§¡£Ä¿Ç°£¬¸Ã¹«Ë¾ÒÑÖØÖÃÊÜÓ°ÏìÕÊ»§µÄÃÜÂ룬²¢½¨ÒéÓû§ÆôÓÃË«ÒòËØÉí·ÝÑéÖ¤¡£


https://www.bleepingcomputer.com/news/security/nortonlifelock-warns-that-hackers-breached-password-manager-accounts/


5¡¢trustanduse.comÒòÅäÖôíÎóй¶Լ50ÍòÓû§µÄÐÅÏ¢

      

CybernewsÔÚ1ÔÂ11ÈÕ³ÆÆä·¢ÏÖÁËÒ»¸ö¿É¹ûÈ»·ÃÎʵÄÊý¾Ý¿â£¬ÆäÖд洢Á˶à´ï855GBµÄÓû§ºÍÒµÎñÊý¾Ý¡£ÕâЩÊý¾ÝÊôÓÚÉç½»Êг¡trustanduse.com£¬Éæ¼°Ô¼439000ÃûÓû§£¬ÓÚ6ÔÂ21ÈÕÊ״α»·¢ÏÖ£¬¶øÇÒÔÚÖÁÉÙ6¸öÔµÄʱ¼äÄڿɱ»·ÃÎÊ¡£Ñо¿ÈËÔ±³Æ£¬ÓÉÓÚ¸ÃÍøÕ¾Ã»ÓÐʵʩÊʵ±µÄÉí·ÝÑéÖ¤£¬Òò´ËËûÃÇÄܹ»¼ì²ìÓ¦Ó÷¨Ê½½Ó¿Ú£¨API£©µÄÎĵµºÍɳºÐ»·¾³¡£Ð¹Â¶µÄÐÅÏ¢½ÒʾÁËËûÃǺÏ×÷µÄ¹«Ë¾¡¢Êг¡Õ½ÂÔ¡¢¹«Ë¾µÄÔË×÷·½Ê½ÒÔ¼°¶ÔÆä²úÎïµÄ·ÃÎÊȨÏÞ£¬Ä¿Ç°¸ÃÎÊÌâÒѱ»½â¾ö¡£


https://cybernews.com/security/social-marketplace-exposes-half-million-users/


6¡¢Î¢ÈíDefender ASR¹æÔò´æÔÚBug»áɾ³ýÓ¦ÓõĿì½Ý·½Ê½

      

ýÌå1ÔÂ13ÈÕ±¨µÀ³Æ£¬Microsoft Defender ASR¹æÔò´æÔÚBug£¬»á´Ó×ÀÃæ¡¢¿ªÊ¼²Ëµ¥ºÍÈÎÎñÀ¸ÖÐɾ³ýÓ¦Ó÷¨Ê½¿ì½Ý·½Ê½¡£Õý³£ÊÂÇéʱ£¬´ËASR¹æÔòÓ¦×èÖ¹¶ñÒâÈí¼þʹÓÃVBAºêµ÷ÓÃWin32 API¡£µ«ÓÐÎÊÌâµÄDefenderÇ©Ãû(1.381.2140.0)µ¼ÖÂÁËASR¹æÔòÐÐΪ²»Í×£¬Óû§µÄÓ¦Ó÷¨Ê½¿ì½Ý·½Ê½±»Îó±êΪ¶ñÒ⡣ΪÁ˽â¾öÕâ¸öÎÊÌ⣬΢ÈíÒѾ­½ûÓÃÁËÓÐÎÊÌâµÄASR¹æÔò£¬²¢ÒªÇó¿Í»§ÔÚ¹ÜÀíÖÐÐļì²éSI MO497128ÒÔ»ñÈ¡¸ü¶à¸üС£


https://www.bleepingcomputer.com/news/microsoft/buggy-microsoft-defender-asr-rule-deletes-windows-app-shortcuts/