-12306 incident- in the eyes of the dark clouds

A vulnerability report of the ancestors: a large number of 12306 users in the Internet, including user accounts, plain text passwords, ID card mailbox, etc. (unknown of leakage), but interpretation of a vulnerability report that has not yet public details It is very unreliable. This thing 12306 has been informed, and the black cloud also provides evidence of the white hat discovery, so what is the situation of the official final reply together, and do not guess or even misleading. Since this vulnerability has not been publicly disclosed and officially handled, I dont talk about it today, talk about more 13W account sensitive data for two days. Once this data, this data immediately led to various institutions and media follow-up, quickly launched “reliable” analysis, or known than reliable “reliable” news … When each family is eager to make a sound, dark clouds The white hat is still silently looking for clues, maximizing the scope of the impact, looks at the harvest together: First, the most original file name of this 13W data should be sauce: Why still after-sales group? It is difficult to provide update and not Satisfied with the return service? But no matter what, this group number is a very critical clue, so our white hat is disguised into buyers. I really contacted a seller in the group (the quantity is too huge, I cant verify the authenticity, so blur Handling) This person directly throws 7 data, and the format is consistent with the 13W spread on the Internet, but only one of the other people who have no overbar of the 13W data cannot be found. It seems that the integrity of the 13W data is full of doubts. Well, the mouth is very strict (the most valuable hacker acquisition method to fail, so you cant conclusively, the white hat thinks, it is better to take some data with yourself with your own users, and look at the combination and authenticity. Results These data were not found in 13W data (and can be logged in to 12306 after testing 12306) How much is the data we dont know? Wushujuns knowledge is a afternoon. . . Unfortunately, this point of time is just over the report of the outside media. The seller seems to be smelling the danger suddenly disappearing, no longer seeing, I dont see it (today I found that QQ data is also emptied, thank you for the media! Thank xxtv !!) Finally, Wu Yunjun will provide these 13W data provided outside the white hat. Sensitive data is again supplied to 12306 (because of this critical difference data, it will help the official positioning log in the key clues in the log. Whoever gets the first time, which people may bought it!At the same time, Wu Yunjun also hopes that users do not have users in the 13W data, and try to change the password aspect. How many of our passwords have been leaked and traded, this no one can say it clear. I am afraid that the Wu Yunjun will play a play, so I left these users to log in to the account of HASH to prevent meaningless dramatic, and I am interested in the Yellow surname Friends can log in to the account on MD5. In case of these proof data. 52756d1668dd14c1e33a63621477c5840f8d1248c84d20aad702128ae971b276a3e6e52a651199a9c6b711bd3a14492851db1240829c66ee23ad55b9a5fec1d1becd24f6163450e4cc701287f0b2a70c4076fb754d18fadba7110ab4f2263a97e9608120662cfaf91fd25c046439cf3d => this is the only repeat comparing 13W login name 6425d54303515197442050bf0437d47e0f7e29afa557dc52521d1aa5c218a16577238d3221eaeae50fb1d8ec29ad253cf24095592060f77f833a045308106bd668f7b000cbf818b0043a72e22eee4215d1755335f4197cd587102d6323b184b765c946fe68b6c2e7aa43c0ece1343a2f04e55fb5a707d157c59c84f699daf007cefa8782f7d544c8f3b0c112d1898454cb218a652e29ee22ad64dd ** 85071709b4b2fe87df032d1e7d3861a96e0aa7839dd044cd6e38d31670 ** f321fa3b4ad5211 ** 27264346a7c2c3edd68a19829d59ceab1e1BDA8334BD33EAF60965D831DC908B6680C56FEC6749AA08070D2DE8A About this 13W data, many institutional organizations are talking about hitting libraries, where information is not clear. However, the black hat has a white hat to give some analysis, for reference only (these have been leaked and flowing for many years of data power is not ah) 13W data folk analysis, believes that the official can check the official The original origin of the event and give the user a satisfactory answer. This event we saw the official positive response, and saw the users vigilance and saw the level of the black production on the 12306 account data. If you can pay more about your account safely (alter password, give up existing password, because the leaks may be mastered), the company monitors re-powers some (if it is a hit, so many data cannot be If you hit the quiet, you will always have this thing. Safe can not always rely on fire, but also to accumulate. Finally, Wu Yunjun is giving you all the information points whiskers for everyone, respectively,: 1) 12306 official security awareness for 12306 official security awareness, everyone from Wu Yun Historical report self-experience manufacturers information _ China Railways Science The list of vulnerabilities in the research institute actually this 12306 response and means is timely, according to Weibo users, many leaks are quickly locked. But no matter who is responsible, this wave data is obviously targeted at the 12306 ticket purchase platform. I hope that the official survey is that even if it is inconvenient to openly affected the user, at least give the user a reminder or mandatory password change, they are the largest victim needs protection. Finally, if the official does have an account interface vulnerability that can hit the library, it is also desirable to tell if it is discovered and processed, and you can continue to hit the library theft user data. Here is a slot to spit: After you know the leak, the first idea of ??Wu Yunjun is also a password, then delete the identity card information saved in the account, which will be filled in the future. The results found that 12306 is not! Yun! Xu! Delete! It seems that the document takes a period of time after the account is allowed to delete, and if my data does not let me delete … But can I do clearly show (Internet company It is very good, sensitive information has an asterisk protection) 2) Third-party grabbing leaks in this leakage incidentBefore, Wu Yunjun is also thinking, will these third-party ticketing agencies will record our information under the premise of not inform us? Really not too dare. As a result, in the first two days, a vulnerability report seems to confirm that this suspected UC browser functional plug-in “grabbing help” is not properly designed to lead to privacy information leaks such as tickets / ID cards (vulnerabilities are currently repaired). The vulnerability does not record the users plain text password, so it has nothing to do with this leak, but it is indeed the alarm of the third party to grab the ticket. It is not the official platform to limit too much, no one will abandon regular channels to choose a third-party ticketing platform, so since we have chosen, we must have a trust of users! 3) The principle of hit the library does not mention, many media Understand, it is a bit like old monk. The hit the library attacks in the wind turbulent fire of the domestic and foreign cavity, and a flourishing phase. Whenever some companies have been dragged, the influence is not just its own, but also indirectly threaten these users to serve in other companies! So the influence and responsibility of the hit library have not been clear, no one admits. Nowadays, the information, password, mobile phone, ID card, address, friend relationship, etc. can be leaked … Look at Weibo some users have been used to identity information, but such information is the core of certain security mechanisms Part, this is not a good thing to be vigilant. I hope that Internet companies will work together with Multi-party agencies to investigate the resident responsible party, and they pay attention to user information security, dont work hard on your mouth. And the leaks such as accounts need to make victims, and do a good prevention in advance. But this is possible? Is this impossible ?? This, maybe …

First, Egyptian Travel

The Jewish “Bible” said that God put Palestinum to Abrans and its descendants, but the Bible recorded the story recorded in Abram. . However, this is obviously very bad about the later Jews. If you can leave Gods promise, what is the sacredness of this land? So Joseph is emphasized in “Jewish History” Branda left Canaan just hiding the famine, once he fought, he immediately returned to the promise.

The author of the Bible and the author of “Jewish History”, Joseph, who is sitting in the window of a new desk, recalling their ancestors, and the lifestyle of the nomad is obviously unfamiliar. Abram is not wanting to read the Wanli Road, nor is it a typical lifestyle of a herds, a typical lifestyle of the past. The nomads need the lush water grass to nurture the livestock, always stay in a place to graze is very unwise, so the land is far from the importance of the nomads. It is not as important as farming residents. The Jews of the later generation hopes that their ancestors will also fight for the land of Canaan like them, I am afraid that Abram is disappointed with his children. Not only this, when the story of the earliest ancestors of the Hebrew, there have been many plots that make the Jews of the later generations cant understand, but we can find that those incredible stories are just a nomadic Living habits and the customs of people at the time. read more

[단독] 커플템+달달 눈빛교환열애 레드벨벳 조이♥크러쉬 반려견 산책 데이트 현장(종합)

스포츠조선이 단독 입수한 두 사람의 데이트는 조이의 반려견 햇님이와 크러쉬의 반려견 두유까지 함께해 두 배로 행복한 모습이었다. 크러쉬와 조이는 각자의 반려견과 함께 서울 용산구 이촌동의 한 아파트 단지에서 만났다. 오버핏 반팔 티셔츠에 반바지, 슬리퍼를 매치한 편안한 차림이었지만, 커플템 모자로 풋풋한 커플의 설렘을 드러냈다. 두 사람은 나란히 반려견을 산책시키며 담소를 나눴다. 비록 코로나19 방역수칙에 따라 마스크를 착용한 상태였지만 주고받는 눈빛은 달달함 그 자체였다. read more

-5G + 8K- industry boom is expected to rise nearly 5 billion yuann the OLED concept stock

On July 1st, the Shanghai and Shenzhen stock index collected high-speed jumping and high-speed, and the Shanghai Composite Index opened easily to recover 3,000 points. The market funds are strong, and the money is good, and the two markets can once again enlarge. As of the closing, Shanghai index rose 2.22%, received 3044.90 points, Shenzhen, Shenzhen rose 3.84%, 3.75%, respectively. In this context, the collective in the OLED concept stock is strong, and the overall rise is 6.58%, and the 83 ingredient stock price is all achieved. Aspects, Kaisheng Technology, Powerful New Materials, Fuyang Hui, Tong Xingda, Star Technology, Zhiyun Shares, Xiangshan Shares, Unified Equipment, Rainbow Shares, Longhua Technology, Deep Tiantia A, Oufi Guang, Huading Technology, Beijing Dongfang A and other 14 stocks have settled on Monday, and Visin (9.58%), Jingquan Hua (8.48%), Jin Fu Technology (8.44%), East Mountain Precision (8.44%), Duo Tuo Shares (8.31%), pensions (8.26%), TCL Group (8.11%) and Changxin Technology (8.10%), etc. have also exceeded 8%. Good market performance is inseparable from funding, July 1st, 4.754 billion yuan in large subscriptions into 68 OLED concept stocks. Among them, there are 43 conceptual stocks, net inflows in net inflows above 10 million yuan, Jingdong A (174,4954,600 yuan), Oufai Guang (408.152 million yuan), TCL Group (319.44 million yuan), piloting a wisdom (305.7382 million yuan) , The big laser (2360.18,900 yuan), deep talents A (22946.34 million), Dongshan Precision (1470.56 million) and Shiliang (1383.83 million yuan) and other stocks have reached more than 100 million yuan, Dong Xu Photoelectric (9518.83 million), Tai Chi Industrial (746.843 million), Changxin Technology (70.568 million), Vi Tsino (51.854 million yuan), Kaisheng Technology (51.570,100 yuan), Huading Technology (461.26 million yuan) , Star Technology (4609.39 million), Liand (39,804,100 yuan), Chengzhi shares (37.13.01 million yuan), Sichuan Changhong (3544.01 million yuan), Xinxiang (342.145 million yuan), Jingquan Hua (3382.56 million Yuan) and strong new materials (313.752 million yuan)The same shares have also been over 30 million yuan in large single fund layout. In fact, not only the mainstream funds in the field have favored the OLED concept stocks, but also the long-term funds represented by social security, but also in advance. According to the statistics of the same faunction data, as of the end of the first quarter of 2019, a total of 13 companies were held by the social security fund, and the number of shareholdings were Jingdong A (180.29 million shares), Xinyi Technology (4520.09 million shares), the country. Star radio (245890 million shares), Changxin Technology (238556 million shares), Shenghong Technology (224899 million), Shen Kangjia A (20099,500 shares), Julyzhi shares (2000 million shares), Wan Run shares (13.11.97 million Shares), big laser (640.00 million shares), Jin Duo shares (550.07 million shares), Zhongying Electronics (37.54 million shares), Anjie Technology (3104 million shares) and Nanda Optoelectronics (233.15 million shares). It is reported that the 2019 International New Display Technology Exhibition opened at recently opened, Jingdong A, Shen Tianma A, etc. showing a large number of new products with a large number of new products. Global Display Material giant Merck said that new technologies such as “5g + 8K” will become a huge new kinetic energy in the panel industry. Not only is the liquid crystal material, but they also focus on displaying new applications – LCD windows this year, I hope to open another window in the display panel industry, leading the industrial growth. Analysts said, “5G + 8K” became the keyword of the exhibition, under the promotion of the policy, “5G + 8K” will give a new kinetic energy to the industry to bring product replacement, driving the industrial prospects is expected to rise. In the expected future development of the entire industry, the recent institution has gradually increased the attention of the plate component stocks. There are 20 concept stocks in the near 30 days to “buy” or “rendering” and other optimistic rating, of which Elementary test electronic (10 houses), Wan Run shares (6), Feidai materials (3), Dongshan Precision (2), Xinzhibang (2), Unique Laser (2), Jingdong A ( Two faucet stocks such as Jin Duo Shares (2) have recently been recommended by the agency, and the rear market performance is worthy of attention. For future investment logic, Financial Securities, Tongxong Securities, it is recommended to explore OLED concept stocks from three major main lines: first is the field of post-module equipment. Pay attention to breakthroughs in the field of the module equipment (fitting, bonding, detection) and has oneEquipment enterprises in R & D capabilities. Includes: a big laser, refine electron, and joint equipment. Secondly, the OLED upper reaches. Specific fields such as luminescent materials, polarizing plates, FPCs, drive ICs, targets, etc., investment targets include: Wanrun shares, Fuyang Hui, strong new materials, three profiles, etc. Finally, the domestic panel manufacturer of the flexible OLED panel.