2017年9月22日金曜日

22日 金曜日、仏滅

+ PDFCreator 3.0 Released
http://www.pdfforge.org/blog/pdfcreator-30-release

+ UPDATE: Cisco Aironet 1830 Series and 1850 Series Access Points Mobility Express Default Credential Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170405-ame

+ UPDATE:Cisco Mobility Express 1800 Access Point Series Authentication Bypass Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-ap1800

+ UPDATE: Apache Struts 2 Remote Code Execution Vulnerability Affecting Multiple Cisco Products: September 2017
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170909-struts2-rce

+ UPDATE: Multiple Vulnerabilities in Apache Struts 2 Affecting Cisco Products: September 2017
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170907-struts2

+ UPDATE: Cisco IOS and IOS XE Software Cluster Management Protocol Remote Code Execution Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170317-cmp

+ UPDATE: Cisco Aironet 1800, 2800, and 3800 Series Access Points Plug-and-Play Arbitrary Code Execution Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170503-cme

+ UPDATE: Cisco Unified Customer Voice Portal Operations Console Privilege Escalation Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170920-cvp

+ Samba 4.7.0 Available for Download
https://www.samba.org/samba/history/samba-4.7.0.html

+ Apache Log4j 2.9.1 released
http://logging.apache.org/log4j/2.x/changes-report.html#a2.9.1

+ Java Development Kit 9 released
http://www.oracle.com/technetwork/java/javase/9-relnotes-3622618.html

+ Samba Multiple Flaws Let Remote Users Hijack Connections and Remote Authenticated Users Obtain Potentially Sensitive Information
http://www.securitytracker.com/id/1039401
CVE-2017-12150
CVE-2017-12151
CVE-2017-12163

PostgreSQL 10 RC1 Released
https://www.postgresql.org/about/news/1783/

記者の眼
知らないと損をする、フィッシング撲滅の切り札「DMARC」
http://itpro.nikkeibp.co.jp/atcl/watcher/14/334361/091500919/?ST=security&itp_list_theme

新・ITエンジニア図鑑
引く手あまたのセキュリティエンジニア、攻撃手法や国際規格の事情通
http://itpro.nikkeibp.co.jp/atcl/column/17/072100297/083100016/?ST=security&itp_list_theme

SIMフリースマートフォンを徹底レビュー
7800円の最安級スマホ「g06+」、Jアラート対応の気配り端末だった
http://itpro.nikkeibp.co.jp/atcl/column/15/120300274/092000048/?ST=security&itp_list_theme

週末に遊べるラズパイ
ラズパイが自宅Dropboxになる「NextCloudPi」
http://itpro.nikkeibp.co.jp/atcl/column/17/041900152/092100023/?ST=security&itp_list_theme

セキュリティ診断のイロハ
狙われやすいセキュリティの弱点、攻撃者の手法で見つける
http://itpro.nikkeibp.co.jp/atcl/column/17/061600244/091100011/?ST=security&itp_list_theme

DDoS攻撃の停止と引き換えに金銭を要求する脅迫メール、JPCERT/CCが注意喚起
http://itpro.nikkeibp.co.jp/atcl/news/17/092102298/?ST=security&itp_list_theme

FX事業者などを狙ったDDoS攻撃が多発、外為どっとコムや東洋証券が被害
http://itpro.nikkeibp.co.jp/atcl/news/17/092102295/?ST=security&itp_list_theme

ホワイトハッカーを育成、DNPが訓練コース開設
http://itpro.nikkeibp.co.jp/atcl/news/17/092102294/?ST=security&itp_list_theme

ランサムウエアの感染トップはやはり「WannaCry」
http://itpro.nikkeibp.co.jp/atcl/news/17/092102293/?ST=security&itp_list_theme

人気のPC最適化ソフト「CCleaner」にマルウエア混入、正規のデジタル署名で配布
http://itpro.nikkeibp.co.jp/atcl/news/17/092102292/?ST=security&itp_list_theme

富士通SSL、マカフィー製品を活用したマルウエア対策サービス
http://itpro.nikkeibp.co.jp/atcl/news/17/092102291/?ST=security&itp_list_theme

狙われる産業制御システム、NTTセキュリティが対策サービスを開始
http://itpro.nikkeibp.co.jp/atcl/news/17/092102290/?ST=security&itp_list_theme

You lost your ballpoint pen, Slack? Why's your Linux version unsigned?
http://www.linuxsecurity.com/content/view/175913/169/

Apple’s facial recognition: Well, it is more secure for the, er, sleeping user
http://www.linuxsecurity.com/content/view/175912/169/

0 件のコメント:

コメントを投稿