FiberHome FTTH ONT·ÓÉÆ÷Öб£´æ28¸öºóÃÅÕÊ»§ £»µÂ¹úÌõ¼Ç±¾ÁãÊÛÉÌÒò¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª

Ðû²¼Ê±¼ä 2021-01-18
1.FiberHome FTTH ONT·ÓÉÆ÷Öб£´æ28¸öºóÃÅÕÊ»§


1.jpg


Ñо¿Ö°Ô±Pierre Kim·¢Ã÷FiberHome FTTH ONT·ÓÉÆ÷Öб£´æ28¸öºóÃÅÕÊ»§ºÍ¶à¸öÆäËûÎó²î¡£¸Ã·ÓÉÆ÷Ö÷Òª°²ÅÅÓÚÄÏÃÀºÍ¶«ÄÏÑÇ £¬Í¨³£×°ÖÃÔÚÑ¡ÔñǧÕ×λµÄ¹«Ô¢Â¥ÄÚ¡¢¼ÒÍ¥»òÆóÒµÄÚ²¿¡£Kim³ÆÆä·¢Ã÷´ó×ڿɱ»ÀÄÓÃÀ´½ÓÊÜISPµÄºóÃźÍÎó²î £¬ÀýÈçºóÃÅÔÊÐí¹¥»÷Õßͨ¹ý·¢ËÍÌØÖÆµÄHTTPSÇëÇó[https£º// [ip]/telnet£¿enable=0£¦key=calculated£¨BR0_MAC£©]Óë·ÓÉÆ÷µÄTelnetÅþÁ¬ £¬Web·þÎñÆ÷°üÀ¨22¸öÓɲî±ðµÄInternet·þÎñÌṩÉÌʹÓõÄÓ²±àÂëÆ¾Ö¤µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/multiple-backdoors-and-vulnerabilities-discovered-in-fiberhome-routers/


2.µÂ¹úÌõ¼Ç±¾ÁãÊÛÉÌÒò¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª


2.png


µÂ¹úÌõ¼Ç±¾ÁãÊÛÉÌNBB£¨notebooksbilliger.de£©ÒòʹÓÃÊÓÆµ¼à¿ØÔ±¹¤±»GDPR·£¿î1040ÍòÅ·Ôª¡£¸Ã¹«Ë¾Á½ÄêǰÔÚÆä¿ÍÕ»¡¢ÏúÊÛÇøºÍͨË×ÊÂÇéÇøÖÐ×°ÖÃÁËÊÓÆµ¼à¿ØÏµÍ³ £¬Ä¿µÄÊDZÜÃâºÍÊӲ챻µÁºÍ¸ú×Ù²úÆ·¡£µÂ¹úÊý¾Ýî¿Ïµ»ú¹¹ÌåÏÖʹÓÃÔÆÔÆ÷缯µÄÊÓÆµ¼à¿Ø £¬ÒѾ­ÑÏÖØÇÖÕ¼Ô±¹¤µÄȨÁ¦¡£±ðµÄ £¬NBB»¹ÔÚ¿Í»§²»ÖªÇéµÄÇéÐÎÏ £¬ÔÚÆäÏúÊÛ³¡ºÏ²âÊÔ×°±¸Ê±¼Í¼Á˿ͻ§µÄÐÅÏ¢ £¬ÕâÊÇÁíÒ»¸öÖØ´óµÄÒþ˽ÇÖÕ¼ÐÐΪ¡£´Ë´ÎÊÇÆ¾Ö¤2018ÄêÐû²¼µÄGDPRÔڵ¹ú¡¢ÒÔÖÂÕû¸öÅ·ÖÞ´¦ÒÔµÄ×î¸ß·£¿îÖ®Ò»¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/gdpr-german-laptop-retailer-fined-eur10-4m-for-video-monitoring-employees/


3.Ó¢¹ú¾¯·½ÈÏ¿ÉÒòÊÖÒÕÎÊÌâÎóɾÁè¼Ý21ÍòÌõ·¸·¨¼Í¼


3.png


Ó¢¹ú¾¯·½ÈÏ¿ÉÒòÊÖÒÕÎÊÌâÎóɾ213000Ìõ·¸·¨¼Í¼ £¬°üÀ¨Ö¸ÎÆÐÅÏ¢¡¢DNAÐÅÏ¢ºÍ¾Ð²¶ÀúÊ·µÈ¡£´Ë´ÎµÄÊÂÎñ±»¹é×ïÓÚ±àÂë¹ýʧ £¬ÔÚ¼ì²é±»±ê¼ÇΪɾ³ýµÄÊý¾ÝÊÇ·ñ¿ÉÒÔ±»Õýµ±±£´æÖ®Ç° £¬Êý¾ÝÒÑ´ÓÊý¾Ý¿âÖÐɥʧ¡£ÄÚÕþ²¿³ÆÕýÔÚ¾¡¿ì»Ö¸´ÎóɾµÄÊý¾Ý £¬´Ë´Î²¢Ã»ÓÐûÓÐÈκÎΣÏÕÈËÎïµÄ¼Í¼±»É¾³ý¡£ÏÖÔÚÈÔÔÚÊÓ²ìÊÂÎñÓ°Ïì¹æÄ£ £¬Éв»ÇåÎúÿÖÖÀàÐÍɥʧÁ˼¸¶àÌõ¼Í¼¡£


Ô­ÎÄÁ´½Ó£º

https://www.bbc.com/news/uk-55684320


4.OpenWRTÂÛ̳³ÆÆäÔâµ½¹¥»÷ £¬Óû§Êý¾Ý±»µÁ


4.png


OpenWRTÂÛ̳³ÆÆäÔÚ±¾ÖÜÁù04:00×óÓÒÔâµ½¹¥»÷ £¬Óû§Êý¾Ý±»µÁ¡£OpenWRTÊÇÒ»¸ö¿ªÔ´´úÂëÏîÄ¿ £¬Îª¼ÒÓ÷ÓÉÆ÷ÌṩÃâ·ÑÇÒ¿É×Ô½ç˵µÄ¹Ì¼þ¡£OpenWRTÍŶÓÌåÏÖ £¬ËäÈ»¹¥»÷ÕßÎÞ·¨ÏÂÔØÆäÊý¾Ý¿âµÄÍêÕû¸±±¾ £¬µ«ÒѾ­ÍµÈ¡ÁËÂÛ̳Óû§ÃûºÍµç×ÓÓʼþµØÖ·µÈСÎÒ˽¼ÒÏêϸÐÅÏ¢¡£±»µÁÊý¾Ý²¢Î´°üÀ¨ÃÜÂë £¬¿ÉÊdzöÓÚÇ徲˼Á¿ £¬OpenWRT¹ÜÀíÔ±ÒÑÖØÖÃËùÓÐÂÛ̳Óû§ÃÜÂëºÍAPIÃÜÔ¿¡£±ðµÄ £¬OpenWRT¹ÜÀíÔ±»¹ÌáÐÑÓû§ £¬±»µÁÊý¾Ý¿ÉÄܱ»ÓÃÓÚδÀ´µÄ´¹ÂÚ¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/113586/data-breach/openwrt-forum-hacked.html


5.TenableÐû²¼2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ×±¨¸æ


5.png


TenableÐû²¼ÁË2020ÄêÍþÐ²Ì¬ÊÆµÄ»ØÊ×±¨¸æ¡£±¨¸æ¶Ô2020ÄêµÄÎó²îºÍÍþÐ²Ì¬ÊÆ¾ÙÐÐÆÊÎö £¬·¢Ã÷2020Ä걨¸æµÄ³£¼ûÎó²îºÍÅû¶£¨CVE£©×ÜÊý£¨18358£©±È2019Ä걨¸æµÄ×ÜÊý£¨17305£©¸ß6£¥¡£ÔÚ2020ÄêÅû¶µÄÎó²îÖÐ £¬ÓÐ29¸ö±»Ê¶±ðΪеÄ0day £¬ÆäÖÐÁè¼Ý35£¥Óëä¯ÀÀÆ÷ÓÐ¹Ø £¬½ü29£¥Î»ÓÚ²Ù×÷ϵͳÄÚ¡£±ðµÄ £¬ÔÚÏÄÈÕÅû¶ÁË547¸öÎó²î £¬ÆäÖаüÀ¨F5¡¢Palo Alto Networks¡¢PulseSecure¡¢vBulletinµÈµÄÖ÷ÒªÎó²î¡£´Ó1Ôµ½10Ô £¬ÓÐ730ÆðÊÂÎñµ¼ÖÂÁËÁè¼Ý220ÒÚÌõ¼Í¼µÄй¶¡£


Ô­ÎÄÁ´½Ó£º

https://zh-cn.tenable.com/cyber-exposure/2020-threat-landscape-retrospective?tns_redirect=true


6.OkeraÐû²¼2021Äê´óÊý¾ÝÇ÷ÊÆµÄÆÊÎö±¨¸æ


6.png


OkeraÐû²¼ÁË2021Äê´óÊý¾ÝÇ÷ÊÆµÄÆÊÎö±¨¸æ¡£¸Ã±¨¸æÕ¹ÍûÁËδÀ´Ò»Äê¼´½«·ºÆðµÄÎåÖÖ´óÊý¾ÝµÄÇ÷ÊÆ £¬»®·ÖΪÊý¾ÝÒþ˽ºÍ»á¼û¿ØÖƽ«³ÉΪÌá¸ßÊÕÈëµÄÆ·ÅÆ²î±ð»¯ÒòËØ £»ÔÚÊý¾ÝĿ¼ºÍÔªÊý¾Ý¹ÜÀí·½ÃæµÄͶ×ʽ«»ñµÃ»Ø±¨ £»¼¯³ÉµÄ»ìÏýÊý¾Ýƽ̨½«¸Ä±äÔÆÓ¦ÓóÌÐòµÄ¹¦Ð§²¢×îÏȽ»¸¶¼ÛÖµ £»Êý¾ÝÆÊÎöºÍÊý¾Ýƽ̨ÊÖÒյĸü¶à±ÊÖ±»¯ £»CDO½«Í¨¹ýʵÑéÂþÑÜʽÊý¾Ý¹ÜÀíÄ£×ÓÀ´½øÒ»²½×ª±äÆä¹«Ë¾¡£


Ô­ÎÄÁ´½Ó£º

https://www.okera.com/okera-unveils-five-top-data-privacy-and-analytics-trends-for-2021/