GoogleÐû²¼Çå¾²¸üÐÂÐÞ¸´ChromeÖеĶà¸öÎó²î
Ðû²¼Ê±¼ä 2023-03-231¡¢GoogleÐû²¼Çå¾²¸üÐÂÐÞ¸´ChromeÖеĶà¸öÎó²î
GoogleÔÚ3ÔÂ21ÈÕÐû²¼Çå¾²¸üУ¬£¬£¬£¬ÐÞ¸´ÁËChromeÖеÄ8¸öÎó²î¡£¡£ÆäÖУ¬£¬£¬£¬½ÏΪÑÏÖØµÄÊÇPasswordsÖеÄÊͷźóʹÓÃÎó²î£¨CVE-2023-1528£©¡¢WebHIDÖеÄÄÚ´æÔ½½ç»á¼ûÎó²î£¨CVE-2023-1529£©¡¢ÔÚPDFÖеÄÊͷźóʹÓÃÎó²î£¨CVE-2023-1530£©ºÍGPUÊÓÆµÖеÄÔ½½ç¶ÁÈ¡Îó²î£¨CVE-2023-1532£©µÈ¡£¡£GoogleÌåÏÖ£¬£¬£¬£¬ÔÚ´ó´ó¶¼Óû§¸üÐÂÐÞ¸´³ÌÐò֮ǰ£¬£¬£¬£¬Îó²îÏêϸÐÅÏ¢ºÍÁ´½ÓµÄ»á¼û¿ÉÄÜ»áÊܵ½ÏÞÖÆ¡£¡£
https://chromereleases.googleblog.com/2023/03/stable-channel-update-for-desktop_21.html
2¡¢Á÷ýÌåÆ½Ì¨Lionsgate½ü3000ÍòÌõ¼Í¼й¶
¾ÝCybernewsÔÚ3ÔÂ22ÈÕ±¨µÀ£¬£¬£¬£¬ÓµÓÐ3700Íò¶©»§µÄÊÓÆµÁ÷ýÌåÆ½Ì¨Lionsgate PlayµÄElasticSearchÉèÖùýʧ£¬£¬£¬£¬Ð¹Â¶ÁËÓû§Êý¾Ý¡£¡£Ñо¿Ö°Ô±·¢Ã÷ÁËÒ»¸ö20 GBЧÀÍÆ÷ÈÕÖ¾£¬£¬£¬£¬°üÀ¨½ü3000ÍòÌõÌõÄ¿£¬£¬£¬£¬×îÔçµÄÈÕÆÚÊÇ2022Äê5Ô¡£¡£ÈÕ־й¶Á˶©ÔÄÕßµÄIPµØµãÒÔ¼°ÓйØ×°±¸¡¢²Ù×÷ϵͳºÍWebä¯ÀÀÆ÷µÄÓû§ÐÅÏ¢¡£¡£»£»£»£»¹Ð¹Â¶ÁËÆ½Ì¨µÄʹÓÃÊý¾Ý£¬£¬£¬£¬ÈçÓû§Ô¢Ä¿ÄÚÈݵÄÎÊÌâIDºÍËÑË÷ÅÌÎʵȣ¬£¬£¬£¬Í¨³£¿£¿£¿£¿ÉÓÃÓÚÆÊÎöºÍÐÔÄܸú×Ù¡£¡£Cybernews¾Í´ËÊÂÁªÏµÁËLionsgate£¬£¬£¬£¬¸Ã¹«Ë¾µÄ»ØÓ¦ÊÇÒѽ«Ð§ÀÍÆ÷±£»£»£»£»¤ÆðÀ´£¬£¬£¬£¬¿ÉÊÇ×èÖ¹ÏÖÔÚÉÐδÌṩ¹Ù·½»ØÓ¦¡£¡£
https://cybernews.com/security/lionsgate-data-leak/
3¡¢REF2924ÍÅ»ïʹÓÃNAPLISTENER¹¥»÷¶«ÄÏÑǵØÇø
¾ÝýÌå3ÔÂ20ÈÕ±¨µÀ£¬£¬£¬£¬REF2924ʹÓÃжñÒâÈí¼þNAPLISTENER¹¥»÷ÄÏÑǺͶ«ÄÏÑǵÄ×éÖ¯¡£¡£Elastic³Æ¸ÃÍÅ»ïʹÓÃÁ˶àÖÖ»úÖÆ£¬£¬£¬£¬½«Öصã´ÓÊý¾ÝÇÔÈ¡×ªÒÆµ½³¤ÆÚ»á¼û¡£¡£2023Äê1ÔÂ20ÈÕ£¬£¬£¬£¬Ò»¸öеĿÉÖ´ÐÐÎļþWmdtc.exe±»½¨Éè²¢×÷ΪWindowsЧÀÍ×°Ö㬣¬£¬£¬Í¨¹ýαװ³ÉMicrosoftÂþÑÜʽÊÂÎñ´¦Öóͷ£Ðµ÷Æ÷ЧÀÍ(Msdtc.exe)ʹÓõÄÕýµ±¶þ½øÖÆÎļþ¡£¡£Wmdtc.exe±»³ÆÎªNAPLISTENER£¬£¬£¬£¬ÕâÊÇÒ»¸öÓÃC#¿ª·¢µÄHTTPÕìÌýÆ÷£¬£¬£¬£¬Ö¼ÔÚÈÆ¹ý»ùÓÚÍøÂçµÄÇå¾²¼ì²â¡£¡£
https://www.elastic.co/cn/security-labs/naplistener-more-bad-dreams-from-the-developers-of-siestagraph
4¡¢LockBitÒ²³ÆÒÑÇÔÈ¡²¢½«¹ûÕæ°Â¿ËÀ¼ÊÐϵͳÖеÄÎļþ
¾Ý3ÔÂ21ÈÕ±¨µÀ£¬£¬£¬£¬ÁíÒ»¸öÀÕË÷ÍÅ»ïLockBitÒ²Éù³Æ´Ó°Â¿ËÀ¼ÊÐϵͳÖÐÇÔÈ¡ÁËÎļþ¡£¡£È»¶ø£¬£¬£¬£¬¸ÃÍÅ»ïÉÐδÐû²¼ÈκÎÖ¤¾ÝÀ´Ö¤ÊµËûÃǵĹ¥»÷»î¶¯¡£¡£ÕâÊÇ×ÔPlayÍÅ»ïÔÚ3Ô³õÌåÏֶ԰¿ËÀ¼ÊеÄÍøÂç¹¥»÷ÈÏÕæºó£¬£¬£¬£¬µÚ¶þ¸öÀÕË÷ÍÅ»ïÉù³ÆÇÔÈ¡ÁËÊý¾Ý¡£¡£LockBitÔÚÆäÍøÕ¾ÉÏÌí¼ÓÁËÐÂÌõÄ¿£¬£¬£¬£¬²¢Íþв½«ÔÚ4ÔÂ10ÈÕ¹ûÕæËùÓÐÊý¾Ý¡£¡£°Â¿ËÀ¼ÊÐÉÐδ¾Í´ËʽÒÏþÉùÃ÷¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬LockBitÔøÔÚ2022Äê6ÔÂÉù³ÆËüÈëÇÖÁËMandiantµÄϵͳ²¢ÇÔÈ¡ÁËÊýÊ®Íò¸öÎļþ£¬£¬£¬£¬ØÊºóÕⱻ֤ʵÊÇÒ»¸öÐû´«àåÍ·¡£¡£
https://www.bleepingcomputer.com/news/security/lockbit-ransomware-gang-now-also-claims-city-of-oakland-breach/
5¡¢ChatGPT·ºÆðBug¿ÉÒÔ¿´µ½ÆäËûÓû§µÄ¶Ô»°ÀúÊ·ÎÊÌâ
ýÌå3ÔÂ21Èճƣ¬£¬£¬£¬ChatGPT·ºÆðÁËÒ»¸öBug£¬£¬£¬£¬µ¼ÖÂÆäËûÓû§µÄ̸ÌìÀúʷй¶¡£¡£¸ÃÎÊÌâ×î³õÊÇÓÉһλÏÓÒÉÆäÕÊ»§±»ºÚµÄÓû§ÔÚRedditÉϱ¨¸æµÄ£¬£¬£¬£¬ËûÔÚ¶Ô»°ÀúÊ·ÎÊÌâÖз¢Ã÷Á˲»ÊôÓÚ×Ô¼ºµÄ¶Ô»°¡£¡£ÐÂÎÅ´«¿ªºó£¬£¬£¬£¬ÍÆÌØÉÏµÄÆäËûÓû§Ò²Éù³ÆÔÚ×Ô¼ºµÄÕ˺ÅÉÏ¿´µ½Á˱ðÈ˵Ä̸Ìì¼Í¼¡£¡£Ðí¶àÓû§³Æ¸ÃÎÊÌâÑÏÖØÇÖÕ¼ÁËÓû§Òþ˽¡£¡£ChatGPTÓÚ±¾ÖÜÒ»ÔÝʱ½ûÓÃÁËÆä̸ÌìЧÀÍ£¬£¬£¬£¬ÒÔÊÓ²ìºÍÐÞ¸´¸ÃÎó²î¡£¡£3ÔÂ23ÈÕ£¬£¬£¬£¬OpenAI CEO Sam AltmanÈÏ¿ÉÆä¿ªÔ´¿âÖеÄÒ»¸ö¹ýʧµ¼ÖÂÓû§µÄ̸ÌìÀúʷй¶£¬£¬£¬£¬²¢Ðû²¼ÁËÍÆÎÄÖÂǸ¡£¡£
https://www.hackread.com/chatgpt-bug-conversation-history-titles/
6¡¢Unit 42Ðû²¼2023ÄêÀÕË÷Èí¼þÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ
3ÔÂ21ÈÕ£¬£¬£¬£¬Unit 42Ðû²¼ÁË2023ÄêÀÕË÷Èí¼þÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬¶àÖØÀÕË÷Õ½ÂÔµÄʹÓÃÒ»Á¬ÉÏÉý¡£¡£×èÖ¹2022Äêµ×£¬£¬£¬£¬ÔÚÔ¼70%µÄ°¸¼þÖб¬·¢ÁËÊý¾Ýй¶£¬£¬£¬£¬2021ÄêÖÐÖ»ÓÐÔ¼40%µÄÊý¾Ý±»µÁ¡£¡£É§ÈÅÊÇÁíÒ»ÖÖÀÕË÷Õ½ÂÔ£¬£¬£¬£¬2022Äêµ×Ô¼20%µÄÀÕË÷Èí¼þ°¸¼þ°üÀ¨¸ÃÒòËØ£¬£¬£¬£¬¶ø2021Äê½öÓв»µ½1%¡£¡£ÖÆÔìÒµÊÜ´ËÀ๥»÷×î¶à£¬£¬£¬£¬ÃÀ¹úµÄ×éÖ¯Êܵ½Ó°Ïì×îÑÏÖØ£¨Õ¼42%£©¡£¡£Ñо¿Ö°Ô±Ô¤¼ÆÔÚ2023Ä꣬£¬£¬£¬·ºÆð´óÐÍÔÆÀÕË÷Èí¼þ¹¥»÷¡¢ÄÚ²¿ÍþвÏà¹ØµÄÚ²ÆÀÕË÷ÔöÌíºÍ³öÓÚÕþÖÎÄîÍ·µÄÀÕË÷ÔöÌíµÈ¡£¡£
https://start.paloaltonetworks.com/2023-unit42-ransomware-extortion-report