2026年9月2日水曜日

2日 火曜日、先負

+ Google Chrome 152.0.7977.75/.76 released
https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop.html

+ Mozilla Firefox 155.0 released
https://www.firefox.com/en-US/firefox/155.0/releasenotes/

+ Mozilla Foundation Security Advisory 2026-82 Security Vulnerabilities fixed in Firefox 155
https://www.mozilla.org/en-US/security/advisories/mfsa2026-82/
CVE-2026-84117
CVE-2026-84118
CVE-2026-84119
CVE-2026-84120
CVE-2026-84121
CVE-2026-84122
CVE-2026-84123
CVE-2026-84124
CVE-2026-84125
CVE-2026-84126
CVE-2026-84127
CVE-2026-84128
CVE-2026-84129
CVE-2026-84130
CVE-2026-84131
CVE-2026-84132
CVE-2026-84133
CVE-2026-84134
CVE-2026-84135
CVE-2026-84136
CVE-2026-84137
CVE-2026-84138
CVE-2026-84139
CVE-2026-84140
CVE-2026-84141
CVE-2026-84142
CVE-2026-84143
CVE-2026-84144
CVE-2026-84145

+ Mozilla Foundation Security Advisory 2026-85 Security Vulnerabilities fixed in Firefox ESR 153.2
https://www.mozilla.org/en-US/security/advisories/mfsa2026-85/

+ Mozilla Foundation Security Advisory 2026-84 Security Vulnerabilities fixed in Firefox ESR 140.15
https://www.mozilla.org/en-US/security/advisories/mfsa2026-84/

+ Mozilla Foundation Security Advisory 2026-83 Security Vulnerabilities fixed in Firefox ESR 115.40
https://www.mozilla.org/en-US/security/advisories/mfsa2026-83/

+ Mozilla Foundation Security Advisory 2026-88 Security Vulnerabilities fixed in Thunderbird 153.2
https://www.mozilla.org/en-US/security/advisories/mfsa2026-88/

+ Mozilla Foundation Security Advisory 2026-87 Security Vulnerabilities fixed in Thunderbird 140.15
https://www.mozilla.org/en-US/security/advisories/mfsa2026-87/

+ Mozilla Foundation Security Advisory 2026-86 Security Vulnerabilities fixed in Thunderbird 155
https://www.mozilla.org/en-US/security/advisories/mfsa2026-86/

VU#456290 Hugging Face Transformers library writes remote code to disk prior to consent check
https://www.kb.cert.org/vuls/id/456290

決算が暴くサイバー被害
被害企業の防止策 守りより「復旧力」へ [Part 4]
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/082700567/082700004/?ST=nxt_thmit_security

決算が暴くサイバー被害
ランサム損失は28社 1年で倍の236億円に [Part 3]
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/082700567/082700003/?ST=nxt_thmit_security

決算が暴くサイバー被害
18社が損失計上 海外拠点が標的に [Part 2]
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/082700567/082700002/?ST=nxt_thmit_security

マルウエア徹底解剖
AIを取り巻くサイバー脅威を整理する [第81回]
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/111900071/081800082/?ST=nxt_thmit_security

データは語る
67%がSCS評価制度の取り組み進行 業務システムの共同利用は約9割
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/020600010/082700232/?ST=nxt_thmit_security

決算が暴くサイバー被害
「社長の声」装い詐取 不正アクセスなき詐欺 [Part 1]
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/082700567/082700001/?ST=nxt_thmit_security

勝村幸博の「今日も誰かが狙われる」
AIエージェント同士が「縄張り争い」、矛盾した指示によるリスク明らかに
https://xtech.nikkei.com/atcl/nxt/column/18/00676/082500232/?ST=nxt_thmit_security

2026年9月1日火曜日

1日 火曜日、友引

+ RHSA-2026:61766 Moderate: glib2 security update
https://access.redhat.com/errata/RHSA-2026:61766
CVE-2026-15588
CVE-2026-58010
CVE-2026-58011
CVE-2026-58012
CVE-2026-58013
CVE-2026-58014
CVE-2026-58015

+ RHSA-2026:61257 Important: iperf3 security update
https://access.redhat.com/errata/RHSA-2026:61257
CVE-2026-71217

+ RHSA-2026:61248 Moderate: libxml2 security update
https://access.redhat.com/errata/RHSA-2026:61248
CVE-2026-11979

+ RHSA-2026:61623 Moderate: gzip security update
https://access.redhat.com/errata/RHSA-2026:61623
CVE-2026-41991
CVE-2026-41992

+ RHSA-2026:61581 Moderate: tar security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:61581
CVE-2026-5704
CVE-2026-18477
CVE-2026-18508

+ RHSA-2026:61389 Important: iperf3 security update
https://access.redhat.com/errata/RHSA-2026:61389
CVE-2026-71217

+ RHSA-2026:61386 Important: nodejs:24 security update
https://access.redhat.com/errata/RHSA-2026:61386
CVE-2026-56846
CVE-2026-56848
CVE-2026-58043

+ RHSA-2026:61383 Important: nodejs:22 security update
https://access.redhat.com/errata/RHSA-2026:61383
CVE-2026-56846
CVE-2026-56848
CVE-2026-58043

+ RHSA-2026:61379 Important: freerdp security update
https://access.redhat.com/errata/RHSA-2026:61379
CVE-2026-55194
CVE-2026-67288
CVE-2026-67291
CVE-2026-67301

+ RHSA-2026:61355 Moderate: dbus-broker security update
https://access.redhat.com/errata/RHSA-2026:61355
CVE-2026-16730

+ RHSA-2026:61316 Important: xmlrpc-c security update
https://access.redhat.com/errata/RHSA-2026:61316
CVE-2026-15928

+ RHSA-2026:61247 Moderate: libxml2 security update
https://access.redhat.com/errata/RHSA-2026:61247
CVE-2026-6653
CVE-2026-11979

piyokangoの週刊システムトラブル
アイドル事務所VOISINGが利用するBIツールから個人情報流出、5万件公開か
https://xtech.nikkei.com/atcl/nxt/column/18/00598/010900379/?ST=nxt_thmit_security

ニュース解説
SBOM国際ガイダンスで「最小要素」追加、企業の作成負担増も運用にメリット
https://xtech.nikkei.com/atcl/nxt/column/18/00001/12005/?ST=nxt_thmit_security

ニュース解説
1200体のAIが「裏技」で情報共有、700体が攻撃に参加 OpenAIの侵入事案
https://xtech.nikkei.com/atcl/nxt/column/18/00001/12000/?ST=nxt_thmit_security

JVN#84094853 PALLET CONTROL製品におけるアクセス制御不備の脆弱性
https://jvn.jp/jp/JVN84094853/index.html

JVN#48718197 リコー製Web Image Monitorを実装している複数のレーザープリンタおよび複合機(MFP)における反射型クロスサイトスクリプティングの脆弱性
https://jvn.jp/jp/JVN48718197/index.html

JVN#65118274 リコー製Web Image Monitorを実装している複数のレーザープリンタおよび複合機(MFP)におけるオープンリダイレクトの脆弱性
https://jvn.jp/jp/JVN65118274/index.html

JVNVU#90210212 ヤマハ製VOCALOID6 Editorにおける複数の脆弱性
https://jvn.jp/vu/JVNVU90210212/index.html

2026年8月31日月曜日

31日 月曜日、先勝

+ ■NSDの脆弱性情報が公開されました(CVE-2026-18664、CVE-2026-18916、CVE-2026-19401、CVE-2026-19538)
CVE-2026-18664
CVE-2026-18916
CVE-2026-19401
CVE-2026-19538

+ PHP 8.5.1, 8.4.25 released
https://www.php.net/ChangeLog-8.php#8.5.10
https://www.php.net/ChangeLog-8.php#8.4.25

JVN#42348352 GROWIにおける複数の脆弱性
https://jvn.jp/jp/JVN42348352/index.html

JVN#04485476 SOYシリーズにおける複数の脆弱性
https://jvn.jp/jp/JVN04485476/index.html

JVN#42011956 Zabbix agentにおけるDLL読み込みに関する脆弱性
https://jvn.jp/jp/JVN42011956/index.html

JVNVU#98375707 Siemens製品に対するアップデート(2026年8月)
https://jvn.jp/vu/JVNVU98375707/index.html

JVNVU#99593741 CISA ICS Advisory / ICS Medical Advisory(2026年08月27日)
https://jvn.jp/vu/JVNVU99593741/index.html

JVNVU#95523788 三菱電機数値制御装置におけるサービス運用妨害(DoS)の脆弱性
https://jvn.jp/vu/JVNVU95523788/index.html

JVNVU#96620683 三菱電機製FA製品のEthernet機能におけるサービス運用妨害(DoS)の脆弱性
https://jvn.jp/vu/JVNVU96620683/index.html

JVN#18593874 楽天Koboデスクトップアプリ(Windows版)のインストーラにおけるDLL読み込みに関する脆弱性
https://jvn.jp/jp/JVN18593874/index.html

月刊ランサムリポート
ランサムグループ「INC」の存在感が強まる Citrix Bleedを悪用して侵入
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/041600214/081800019/?ST=nxt_thmit_security

月刊ランサムリポート 第21回
急増するDeadLock被害、感染すると1対1のチャットにただちに誘導
https://xtech.nikkei.com/atcl/nxt/column/18/03053/082800022/?ST=nxt_thmit_security

日経コンピュータ 勝村幸博の「今日も誰かが狙われる」
ホテルからのM365が危ない 公衆Wi-Fi機器への侵害を警告
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/052100113/082600193/?ST=nxt_thmit_security

日経コンピュータ 大森敏行のプログラミングで行こう
大手AIベンダーで続々発生 AIの「暴走」は止められるか
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/052100112/082400145/?ST=nxt_thmit_security

ネットワーク機器利用実態調査2026
企業規模別のシェアが見える
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/081800254/081800001/?ST=nxt_thmit_security

NEWS close-up
狙われるGitHub
内部リポジトリー漏洩リスクは公開版の6倍に 「非公開だから安全」は危険な思い込み
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/041800012/081800336/?ST=nxt_thmit_security

中国テックジャイアント最前線 第67回
アリババのAIコーディングツール「Qoder」、組織力の強化も支援
https://xtech.nikkei.com/atcl/nxt/column/18/02653/082400083/?ST=nxt_thmit_security

ニュース解説
富士通がAI時代のサイバー防衛戦略、「減速防御」を掲げ年内にもサービス化
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11994/?ST=nxt_thmit_security

2026年8月27日木曜日

27日 木曜日、先負

+ RHSA-2026:60305 Important: go-toolset:rhel8 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:60305
CVE-2026-33818
CVE-2026-56853
CVE-2026-56858
CVE-2026-56859
CVE-2026-56860
CVE-2026-56862

+ RHSA-2026:59821 Important: kernel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:59821
CVE-2026-52924
CVE-2026-63886
CVE-2026-63913
CVE-2026-64189
CVE-2026-64191
CVE-2026-64276
CVE-2026-64277
CVE-2026-64320

+ RHSA-2026:60304 Important: golang security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:60304
CVE-2026-33818
CVE-2026-56853
CVE-2026-56858
CVE-2026-56859
CVE-2026-56860
CVE-2026-56862

+ RHSA-2026:60224 Moderate: pam security update
https://access.redhat.com/errata/RHSA-2026:60224
CVE-2026-54411

+ RHSA-2026:60226 Moderate: attr security update
https://access.redhat.com/errata/RHSA-2026:60226
CVE-2026-54371

+ RHSA-2026:59723 Important: kernel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:59723
CVE-2025-68211
CVE-2026-23003
CVE-2026-43114
CVE-2026-52920
CVE-2026-52924
CVE-2026-53131
CVE-2026-53185
CVE-2026-53268
CVE-2026-64189
CVE-2026-64191
CVE-2026-64276
CVE-2026-64277
CVE-2026-74581

+ Google Chrome 153.0.8010.12/.13 released
https://chromereleases.googleblog.com/2026/08/early-stable-update-for-desktop_0935803414.html

+ FreeBSD-SA-26:63.posixshm TOCTOU race in POSIX shared memory large page configuration
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:63.posixshm.asc
CVE-2026-58094

+ FreeBSD-SA-26:62.tty Kernel use-after-free via tty ioctls
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:62.tty.asc
CVE-2026-58093

+ FreeBSD-SA-26:61.openssl Multiple vulnerabilities in OpenSSL
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:61.openssl.asc
CVE-2026-14457
CVE-2026-18798
CVE-2026-54874
CVE-2026-63072
CVE-2026-63073
CVE-2026-63074
CVE-2026-63075
CVE-2026-63076

+ FreeBSD-SA-26:60.ppp Multiple vulnerabilities in ppp(8)
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:60.ppp.asc
CVE-2026-58095
CVE-2026-58096
CVE-2026-58097

+ FreeBSD-SA-26:59.mac_do Unauthorized credential switching
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:59.mac_do.asc
CVE-2026-58092

+ FreeBSD-SA-26:58.sound Kernel use-after-free via the SNDCTL_DSP_SYNCSTART ioctl
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:58.sound.asc
CVE-2026-58091

+ FreeBSD-SA-26:57.unix Use-after-free in unix SOCK_STREAM message handling
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:57.unix.asc
CVE-2026-58090

+ FreeBSD-SA-26:56.hwpmc hwpmc fails to detach PMCs during exec credential transitions
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:56.hwpmc.asc
CVE-2026-58089

+ UPDATE: JVNVU#95772889 OpenSSLにおける秘密鍵のタイミング攻撃に対する問題(OpenSSL Security Advisory [20th January 2025])
https://jvn.jp/vu/JVNVU95772889/index.html

+ UPDATE* JVNVU#90424473 OpenSSLにおける境界外書き込みの脆弱性(OpenSSL Security Advisory [16th October 2024])
https://jvn.jp/vu/JVNVU90424473/index.html

+ UPDATE: JVNVU#94584169 OpenSSLのASN.1 オブジェクト識別子変換における処理時間遅延の問題(Security Advisory [30th May 2023])
https://jvn.jp/vu/JVNVU94584169/index.html

+ UPDATE: JVNVU#94632906 OpenSSLのX.509ポリシー制限の検証における過剰なリソース消費の問題
https://jvn.jp/vu/JVNVU94632906/index.html

+ UPDATE: JVNVU#91213144 OpenSSLに複数の脆弱性
https://jvn.jp/vu/JVNVU91213144/index.html

+ UPDATE: JVNVU#98667810 OpenSSL に複数の脆弱性
https://jvn.jp/vu/JVNVU98667810/index.html

+ JVNVU#92836377 GNU C Libraryにおける複数の脆弱性
https://jvn.jp/vu/JVNVU92836377/index.html

+ JVNVU#96149019 Apache Tomcatにおける複数の脆弱性(2026年8月25日)
https://jvn.jp/vu/JVNVU96149019/index.html

+ JVNVU#96558110 OpenSSLにおける脆弱性に対するアップデート(2026年8月25日)
https://jvn.jp/vu/JVNVU96558110/index.html

+ OpenSSLの脆弱性(CVE-2026-14457, CVE-2026-18798, CVE-2026-54874, CVE-2026-63072, CVE-2026-63073, CVE-2026-63074, CVE-2026-63075, CVE-2026-63076, CVE-2026-75803)と4.0.2, 3.6.4, 3.5.8, 3.4.7, 3.0.22, 1.1.1zi,1.0.2zrリリース
https://security.sios.jp/vulnerability/openssl-security-vulnerability-20260826/
CVE-2026-14457
CVE-2026-18798
CVE-2026-54874
CVE-2026-63072
CVE-2026-63073
CVE-2026-63074
CVE-2026-63075
CVE-2026-63076
CVE-2026-75803

JVNTA#95077890 SSH接続の安全性を低下させる攻撃手法Terrapin Attackについて
https://jvn.jp/ta/JVNTA95077890/index.html

JVNVU#96423082 Diffie-Hellman鍵交換におけるサービス運用妨害(DoS)の脆弱性
https://jvn.jp/vu/JVNVU96423082/index.html

JVN#67155805 Androidアプリ「マイナポイント」におけるアクセス制限不備の脆弱性
https://jvn.jp/jp/JVN67155805/index.html

JVN#18496672 CorvusSKKにおける複数の脆弱性
https://jvn.jp/jp/JVN18496672/index.html

JVNVU#94434952 Kaltura HTML5 Player Libraryにおける複数の脆弱性
https://jvn.jp/vu/JVNVU94434952/index.html

日経NETWORK 特別リポート
企業を襲うサイバー詐欺の実態
決算調査で判明
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/041800013/081800106/?ST=nxt_thmit_security

NEWS close-up
AIモデルの他社システム侵入が相次ぐ
OpenAIに続きAnthropicでも発生 AIモデルの「暴走」対策が課題に
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/041800012/081800337/?ST=nxt_thmit_security

吉川孝志のマルウエア徹底解剖 第31回
徹底解説 AIはサイバーセキュリティーの何を変え、何を変えなかったのか
https://xtech.nikkei.com/atcl/nxt/column/18/02805/081900032/?ST=nxt_thmit_security

北郷達郎のテクノロジー温故知新
「電脳コイル」から20年、描かれた世界観を実現する最新AIグラスを検証
https://xtech.nikkei.com/atcl/nxt/column/18/02598/081900036/?ST=nxt_thmit_security

2026年8月26日水曜日

26日 水曜日、友引

+ RHSA-2026:59487 Important: gstreamer1-plugins-base security update
https://access.redhat.com/errata/RHSA-2026:59487
CVE-2026-18297

+ RHSA-2026:59241 Important: python-pyasn1 security update
https://access.redhat.com/errata/RHSA-2026:59241
CVE-2026-59886

+ RHSA-2026:59216 Important: nginx:1.24 security update
https://access.redhat.com/errata/RHSA-2026:59216
CVE-2026-56434
CVE-2026-60005

+ RHSA-2026:59179 Important: gstreamer1-plugins-good security update
https://access.redhat.com/errata/RHSA-2026:59179
CVE-2026-18295
CVE-2026-18296
CVE-2026-18298
CVE-2026-18299

+ RHSA-2026:59146 Important: kpatch-patch-4_18_0-553_109_1, kpatch-patch-4_18_0-553_125_1, kpatch-patch-4_18_0-553_53_1, kpatch-patch-4_18_0-553_72_1, and kpatch-patch-4_18_0-553_85_1 security update
https://access.redhat.com/errata/RHSA-2026:59146
CVE-2026-43499
CVE-2026-45984
CVE-2026-46116
CVE-2026-46227

+ RHSA-2026:58898 Important: firefox security update
https://access.redhat.com/errata/RHSA-2026:58898
CVE-2026-74934
CVE-2026-74935
CVE-2026-74936
CVE-2026-74939
CVE-2026-74940
CVE-2026-74941
CVE-2026-74942
CVE-2026-74943
CVE-2026-74944
CVE-2026-74945
CVE-2026-74946
CVE-2026-74948
CVE-2026-74949
CVE-2026-74953
CVE-2026-74957
CVE-2026-74959
CVE-2026-74960
CVE-2026-74962
CVE-2026-74963
CVE-2026-74964
CVE-2026-74965
CVE-2026-74967
CVE-2026-74969
CVE-2026-74971
CVE-2026-74972
CVE-2026-74973
CVE-2026-74974
CVE-2026-74976
CVE-2026-74983
CVE-2026-74987
CVE-2026-74990

+ RHSA-2026:58562 Important: python-urwid security update
https://access.redhat.com/errata/RHSA-2026:58562
CVE-2026-9323

+ RHSA-2026:59490 Important: nginx:1.24 security update
https://access.redhat.com/errata/RHSA-2026:59490
CVE-2026-56434
CVE-2026-60005

+ RHSA-2026:59347 Low: httpd security update
https://access.redhat.com/errata/RHSA-2026:59347
CVE-2026-29167

+ RHSA-2026:59152 Important: gstreamer1-plugins-good security update
https://access.redhat.com/errata/RHSA-2026:59152
CVE-2026-18295
CVE-2026-18296
CVE-2026-18298
CVE-2026-18299

+ RHSA-2026:59149 Important: kpatch-patch-5_14_0-687_10_1 security update
https://access.redhat.com/errata/RHSA-2026:59149
CVE-2026-43499
CVE-2026-45984
CVE-2026-46116
CVE-2026-46227
CVE-2026-64531

+ RHSA-2026:58982 Moderate: grafana security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:58982
CVE-2026-33376
CVE-2026-33377

+ RHSA-2026:58897 Important: firefox security update
https://access.redhat.com/errata/RHSA-2026:58897
CVE-2026-74934
CVE-2026-74935
CVE-2026-74936
CVE-2026-74939
CVE-2026-74940
CVE-2026-74941
CVE-2026-74942
CVE-2026-74943
CVE-2026-74944
CVE-2026-74945
CVE-2026-74946
CVE-2026-74948
CVE-2026-74949
CVE-2026-74953
CVE-2026-74957
CVE-2026-74959
CVE-2026-74960
CVE-2026-74962
CVE-2026-74963
CVE-2026-74964
CVE-2026-74965
CVE-2026-74967
CVE-2026-74969
CVE-2026-74971
CVE-2026-74972
CVE-2026-74973
CVE-2026-74974
CVE-2026-74976
CVE-2026-74983
CVE-2026-74987
CVE-2026-74990

+ Google Chrome 152.0.7977.64/.65 released
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0256176589.html

+ Mozilla Firefox 154.0.1 released
https://www.firefox.com/en-US/firefox/154.0.1/releasenotes/

+ Zabbix 7.4.14, 7.0.30 released
https://www.zabbix.com/rn/rn7.4.14
https://www.zabbix.com/rn/rn7.0.30

+ OpenSSL 4.0.2, 3.6.4, 3.5.8, 3.4.7, 3.0.22 released
https://github.com/openssl/openssl/releases#release-openssl-4.0.2
https://github.com/openssl/openssl/releases#release-openssl-3.6.4
https://github.com/openssl/openssl/releases#release-openssl-3.5.8
https://github.com/openssl/openssl/releases#release-openssl-3.4.7
https://github.com/openssl/openssl/releases#release-openssl-3.0.22

+ AEAD Forgeries with Empty Ciphertext When Using EVP_Cipher()
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-75803
CVE-2026-75803

+ RPK Server Signature Algorithm Selection Can Dereference a Missing Certificate
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-14457
CVE-2026-14457

+ QUIC Server May Trigger Double Free When Processing INITIAL Packet
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-18798
CVE-2026-18798

+ Excessive Memory Use Buffering DTLS Records for a Future Epoch
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-54874
CVE-2026-54874

+ Heap Buffer Overflow in CMS Key Unwrapping
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-63072
CVE-2026-63072

+ Untrusted Sender DN Used as Format String in CMP Response Validation
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-63073
CVE-2026-63073

+ CMP Indefinite Cache Growth of ExtraCerts
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-63074
CVE-2026-63074

+ QUIC ACK-only Packet Retention Can Cause Memory Exhaustion
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-63075
CVE-2026-63075

+ Invalid Pointer Dereference in CMP Server via Crafted protectionAlg
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-63076
CVE-2026-63076

+ JVN#08517956 Apache Struts 2におけるリソース枯渇の脆弱性
https://jvn.jp/jp/JVN08517956/index.html

VU#308749 Remote Code Execution and Arbitrary File Read Vulnerabilities in Kaltura Servers
https://www.kb.cert.org/vuls/id/308749

当事者が語る! トラブルからの脱出
社内システムが使えない ランサム攻撃者がデータ暗号化
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/041800004/081800104/?ST=nxt_thmit_security

AI時代に必須の備えとは~AIリスク教本 第4回
法を守れば十分とは言い切れず、AIリスク対応が難しい理由
https://xtech.nikkei.com/atcl/nxt/column/18/03713/00004/?ST=nxt_thmit_security

AIパソコン「DGX Spark」試用リポート 第3回
生成AIの学習もこなすDGX Spark、雑誌記事を学ばせて実際に書かせてみた
https://xtech.nikkei.com/atcl/nxt/column/18/03726/081900003/?ST=nxt_thmit_security

ニュース解説
中国AIモデル「Kimi K3」もサンドボックス脱出、評価環境の設定不備を突く
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11984/?ST=nxt_thmit_security

JVNVU#95422936 古野電気製FA-50(簡易型船舶自動識別装置、AIS)におけるハードコードされた認証情報使用および認証欠如の脆弱性
https://jvn.jp/vu/JVNVU95422936/index.html

JVNVU#96980428 KONAMI製METAL GEAR ONLINE 3におけるヒープベースのバッファオーバーフローの脆弱性
https://jvn.jp/vu/JVNVU96980428/index.html

2026年8月25日火曜日

25日 火曜日、先勝

VU#728712 Konami's Metal Gear Online 3 contains a heap-based buffer overflow
https://www.kb.cert.org/vuls/id/728712

AI時代に必須の備えとは~AIリスク教本 第3回
AIリスクが発生する根本要因は? 従来のソフトウエア品質管理が通用せず
https://xtech.nikkei.com/atcl/nxt/column/18/03713/00003/?ST=nxt_thmit_security

AIパソコン「DGX Spark」試用リポート 第2回
DGX Sparkの本命用途は「ローカル推論」、GUIを使った操作も可能に
https://xtech.nikkei.com/atcl/nxt/column/18/03726/081900002/?ST=nxt_thmit_security

piyokangoの週刊システムトラブル
小売のREXTでランサムウエア被害、一部休業から全店営業 ポイント停止続く
https://xtech.nikkei.com/atcl/nxt/column/18/00598/010900378/?ST=nxt_thmit_security

JVN#33423625 SKYSEA Client ViewおよびSKYMEC IT Managerにおける複数の脆弱性
https://jvn.jp/jp/JVN33423625/index.html

JVN#84326763 SKYSEA Client Viewにおける複数の脆弱性
https://jvn.jp/jp/JVN84326763/index.html

JVN#74538868 サクラエディタにおけるOSコマンドインジェクションの脆弱性
https://jvn.jp/jp/JVN74538868/index.html

2026年8月24日月曜日

24日 月曜日、赤口

+ Apache Tomcat 10.1.59 Released
https://tomcat.apache.org/tomcat-10.1-doc/changelog.html#Tomcat_10.1.59_(schultz)

VU#756733 Calix GS7 XGS GS5239XG residential router contains missing authentication vulnerability
https://www.kb.cert.org/vuls/id/756733

JVN#81414813 UNIVERGE IX-R/IX-Vシリーズルータにおける重要な機能に対する認証の欠如の脆弱性
https://jvn.jp/jp/JVN81414813/index.html

JVN#09266484 スマートフォンアプリ「日本科学未来館アシストアプリ」におけるクロスサイトスクリプティングの脆弱性
https://jvn.jp/jp/JVN09266484/index.html

JVNVU#90210212 ヤマハ製VOCALOID6 Editorにおける複数の脆弱性
https://jvn.jp/vu/JVNVU90210212/index.html

JVNVU#97889580 CISA ICS Advisory / ICS Medical Advisory(2026年08月20日)
https://jvn.jp/vu/JVNVU97889580/index.html

AIパソコン「DGX Spark」試用リポート 第1回
AIパソコンDGX Sparkを使ってみよう、基本は「普通」のLinuxパソコン
https://xtech.nikkei.com/atcl/nxt/column/18/03726/081900001/?ST=nxt_thmit_security

記者の眼
量子の脅威をビジネスチャンスに、迫る「Qデー」と日本企業の技術力
https://xtech.nikkei.com/atcl/nxt/column/18/00138/082002086/?ST=nxt_thmit_security

AI時代に必須の備えとは~AIリスク教本 第2回
仮想リスクシナリオ2:「顧客の嘘」を勝手に捏造し始めた保険金査定AI?
https://xtech.nikkei.com/atcl/nxt/column/18/03713/00002/?ST=nxt_thmit_security

2026年8月21日金曜日

21日 金曜日、先負

+ Google Chrome 151.0.7922.173/.174 released
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html

+ Microsoft Drivers for PHP for SQL Server 5.13.3 released
https://learn.microsoft.com/ja-jp/sql/connect/php/release-notes-php-sql-driver?view=sql-server-ver17&source=recommendations

AI時代に必須の備えとは~AIリスク教本 第1回
仮想リスクシナリオ1:小売りチェーンの販売戦略AIがSNS裏工作?
https://xtech.nikkei.com/atcl/nxt/column/18/03713/00001/?ST=nxt_thmit_security

JVNVU#91609598 複数のセイコーエプソン製プリンターおよびスキャナーにおける失効したルート証明書が残存している問題
https://jvn.jp/vu/JVNVU91609598/index.html

JVNVU#91551881 RDK-BのWebUIにおける複数の脆弱性
https://jvn.jp/vu/JVNVU91551881/index.html

2026年8月20日木曜日

20日 木曜日、友引

+ RHSA-2026:56966 Moderate: gstreamer1-plugins-good security update
https://access.redhat.com/errata/RHSA-2026:56966
CVE-2026-18649
CVE-2026-73433
CVE-2026-73434

+ RHSA-2026:56936 Important: mysql:8.4 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:56936
CVE-2026-46936
CVE-2026-47012
CVE-2026-47023
CVE-2026-47052
CVE-2026-47064
CVE-2026-60145
CVE-2026-60163
CVE-2026-60177
CVE-2026-60178
CVE-2026-60182
CVE-2026-60183
CVE-2026-60184
CVE-2026-60185
CVE-2026-60186
CVE-2026-60187
CVE-2026-60188
CVE-2026-60189
CVE-2026-60190
CVE-2026-60191
CVE-2026-60315
CVE-2026-60316
CVE-2026-60331
CVE-2026-60332
CVE-2026-60585
CVE-2026-60747
CVE-2026-61081
CVE-2026-61094
CVE-2026-61096
CVE-2026-61109

+ RHSA-2026:57149 Important: ansible-core security update
https://access.redhat.com/errata/RHSA-2026:57149
CVE-2026-11332

+ RHSA-2026:56970 Important: perl-Date-Manip security update
https://access.redhat.com/errata/RHSA-2026:56970
CVE-2026-60075

+ Google Chrome 152.0.7977.54/.55 released
https://chromereleases.googleblog.com/2026/08/early-stable-update-for-desktop_02031437787.html

+ ISC BIND 9.20.27 released
https://downloads.isc.org/isc/bind9/9.20.27/doc/arm/html/notes.html

VU#874418 RDK-B WebUI contains multiple vulnerabilities
https://www.kb.cert.org/vuls/id/874418

JVNVU#91551881 RDK-BのWebUIにおける複数の脆弱性
https://jvn.jp/vu/JVNVU91551881/index.html

JVN#47716829 acmailerにおける複数の脆弱性
https://jvn.jp/jp/JVN47716829/index.html

JVNVU#90536447 CISA ICS Advisory / ICS Medical Advisory(2026年08月18日)
https://jvn.jp/vu/JVNVU90536447/index.html

海外依存を抜け出せ、国産セキュリティー製品の勝ち筋 第4回
「一人情シス」を支える国産セキュリティー、運用力で海外勢と勝負
https://xtech.nikkei.com/atcl/nxt/column/18/03715/080700002/?ST=nxt_thmit_security

ニュース解説
デジ庁など7省庁がSNS大手5社に詐欺広告の対策要請、焦点は追跡可能性
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11971/?ST=nxt_thmit_security

2026年8月19日水曜日

19日 水曜日、先勝

+ RHSA-2026:56521 Important: gstreamer1-plugins-bad-free security update
https://access.redhat.com/errata/RHSA-2026:56521
CVE-2026-19387

+ RHSA-2026:56219 Important: python3 security update
https://access.redhat.com/errata/RHSA-2026:56219
CVE-2026-11940

+ RHSA-2026:56131 Moderate: pam security update
https://access.redhat.com/errata/RHSA-2026:56131
CVE-2026-54411

+ RHSA-2026:56133 Moderate: attr security update
https://access.redhat.com/errata/RHSA-2026:56133
CVE-2026-54371

+ RHSA-2026:56130 Important: sg3_utils security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:56130
CVE-2026-16313

+ RHSA-2026:55764 Important: kernel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:55764
CVE-2025-39902
CVE-2026-17523
CVE-2026-43206
CVE-2026-53016
CVE-2026-53136
CVE-2026-53329
CVE-2026-53374
CVE-2026-63879
CVE-2026-63884
CVE-2026-64219

+ RHSA-2026:55560 Important: pcp security update
https://access.redhat.com/errata/RHSA-2026:55560
CVE-2026-16524
CVE-2026-16526
CVE-2026-16527
CVE-2026-16529

+ RHSA-2026:55530 Important: 389-ds:1.4 security update
https://access.redhat.com/errata/RHSA-2026:55530
CVE-2026-11770
CVE-2026-11788
CVE-2026-15722

+ RHSA-2026:55865 Important: gstreamer1-plugins-bad-free and gstreamer1-plugins-ugly-free security update
https://access.redhat.com/errata/RHSA-2026:55865
CVE-2026-19387
CVE-2026-19389

+ RHSA-2026:55841 Important: unbound security update
https://access.redhat.com/errata/RHSA-2026:55841
CVE-2026-44690
CVE-2026-55973

+ RHSA-2026:55772 Important: haproxy security update
https://access.redhat.com/errata/RHSA-2026:55772
CVE-2026-55203
CVE-2026-55204

+ RHSA-2026:55763 Important: kpatch-patch-5_14_0-687_10_1 security update
https://access.redhat.com/errata/RHSA-2026:55763
CVE-2026-43038
CVE-2026-43125
CVE-2026-43329
CVE-2026-46244
CVE-2026-64530

+ RHSA-2026:55603 Important: nodejs:24 security update
https://access.redhat.com/errata/RHSA-2026:55603
CVE-2026-11822
CVE-2026-11824
CVE-2026-14257
CVE-2026-54272
CVE-2026-69152
CVE-2026-69192

+ RHSA-2026:55601 Important: nodejs:22 security update
https://access.redhat.com/errata/RHSA-2026:55601
CVE-2026-11822
CVE-2026-11824
CVE-2026-14257
CVE-2026-69152
CVE-2026-69192

+ About the security content of Safari 26.6.1
https://support.apple.com/en-us/148286
CVE-2026-64784
CVE-2026-43795
CVE-2026-65338
CVE-2026-65341
CVE-2026-64782
CVE-2026-64781
CVE-2026-65351
CVE-2026-65340
CVE-2026-65337
CVE-2026-65336
CVE-2026-65335
CVE-2026-65333
CVE-2026-65332
CVE-2026-65331
CVE-2026-64715
CVE-2026-64780
CVE-2026-65334
CVE-2026-43794
CVE-2026-64787
CVE-2026-64778
CVE-2026-64779

+ Google Chrome 151.0.7922.169/.170, 150.0.7871.250 released
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html
https://chromereleases.googleblog.com/2026/08/extended-stable-update-for-desktop_01726425345.html

+ Mozilla Firefox 154.0 released
https://www.firefox.com/en-US/firefox/154.0/releasenotes/

+ Mozilla Foundation Security Advisory 2026-74 Security Vulnerabilities fixed in Firefox 154
https://www.mozilla.org/en-US/security/advisories/mfsa2026-74/
CVE-2026-75874
CVE-2026-74934
CVE-2026-74935
CVE-2026-74936
CVE-2026-74937
CVE-2026-74938
CVE-2026-74939
CVE-2026-74940
CVE-2026-74941
CVE-2026-74942
CVE-2026-74943
CVE-2026-74944
CVE-2026-74945
CVE-2026-74946
CVE-2026-74947
CVE-2026-74948
CVE-2026-74949
CVE-2026-74950
CVE-2026-74951
CVE-2026-74952
CVE-2026-74953
CVE-2026-74954
CVE-2026-74955
CVE-2026-74956
CVE-2026-74957
CVE-2026-74958
CVE-2026-74959
CVE-2026-74960
CVE-2026-74961
CVE-2026-74962
CVE-2026-74963
CVE-2026-74964
CVE-2026-74965
CVE-2026-74966
CVE-2026-74967
CVE-2026-74968
CVE-2026-74969
CVE-2026-74970
CVE-2026-74971
CVE-2026-74972
CVE-2026-74973
CVE-2026-74974
CVE-2026-74975
CVE-2026-74976
CVE-2026-74977
CVE-2026-74978
CVE-2026-74979
CVE-2026-74980
CVE-2026-74981
CVE-2026-74982
CVE-2026-74983
CVE-2026-74984
CVE-2026-74985
CVE-2026-74986
CVE-2026-74987
CVE-2026-74988
CVE-2026-74989
CVE-2026-74990

+ Mozilla Thunderbird 154.0 released
https://www.thunderbird.net/en-US/thunderbird/154.0/releasenotes/

+ Mozilla Foundation Security Advisory 2026-78 Security Vulnerabilities fixed in Thunderbird 154
https://www.mozilla.org/en-US/security/advisories/mfsa2026-78/

+ Mozilla Foundation Security Advisory 2026-77 Security Vulnerabilities fixed in Firefox ESR 153.1
https://www.mozilla.org/en-US/security/advisories/mfsa2026-77/

+ Mozilla Foundation Security Advisory 2026-76 Security Vulnerabilities fixed in Firefox ESR 140.14
https://www.mozilla.org/en-US/security/advisories/mfsa2026-76/

+ Mozilla Foundation Security Advisory 2026-75 Security Vulnerabilities fixed in Firefox ESR 115.39
https://www.mozilla.org/en-US/security/advisories/mfsa2026-75/

+ Mozilla Foundation Security Advisory 2026-80 Security Vulnerabilities fixed in Thunderbird 153.1
https://www.mozilla.org/en-US/security/advisories/mfsa2026-80/

+ Mozilla Foundation Security Advisory 2026-79 Security Vulnerabilities fixed in Thunderbird 140.14
https://www.mozilla.org/en-US/security/advisories/mfsa2026-79/

+ Apache Tomcat 11.0.25, 9.0.121 released
https://tomcat.apache.org/tomcat-11.0-doc/changelog.html#Tomcat_11.0.25_(markt)
https://tomcat.apache.org/tomcat-9.0-doc/changelog.html#Tomcat_9.0.121_(remm)

+ Linux Kernelの脆弱性(CVE-2026-68081~CVE-2026-68479)
https://security.sios.jp/vulnerability/kernel-security-vulnerability-20260819/

JVN#06609828 Apache Alluraにおけるサーバサイドリクエストフォージェリの脆弱性
https://jvn.jp/jp/JVN06609828/index.html

勝村幸博の「今日も誰かが狙われる」
ホテルからのMicrosoft 365利用が危ない、公衆Wi-Fi機器への侵害を警告
https://xtech.nikkei.com/atcl/nxt/column/18/00676/080600231/?ST=nxt_thmit_security

海外依存を抜け出せ、国産セキュリティー製品の勝ち筋
国内に軸足、海外の拠点や人材を生かす国産セキュリティーの現実解
https://xtech.nikkei.com/atcl/nxt/column/18/03715/080700005/?ST=nxt_thmit_security

未成年保護から選挙対策まで、世界で強まるSNS規制 第3回
選挙偽情報対策で法改正、企業SNS運用に投稿・拡散の新リスク
https://xtech.nikkei.com/atcl/nxt/column/18/03714/080500003/?ST=nxt_thmit_security

2026年8月18日火曜日

18日 火曜日、赤口

+ About the security content of iOS 26.6.1 and iPadOS 26.6.1
https://support.apple.com/en-us/148282
CVE-2026-65339
CVE-2026-65347
CVE-2026-65346
CVE-2026-64788
CVE-2026-65343
CVE-2026-65349
CVE-2026-65330
CVE-2026-65329
CVE-2026-64784
CVE-2026-43795
CVE-2026-65338
CVE-2026-65341
CVE-2026-64782
CVE-2026-64781
CVE-2026-65351
CVE-2026-65340
CVE-2026-65337
CVE-2026-65336
CVE-2026-65335
CVE-2026-65333
CVE-2026-65332
CVE-2026-65331
CVE-2026-64715
CVE-2026-64780
CVE-2026-65334
CVE-2026-43794
CVE-2026-64787
CVE-2026-64778
CVE-2026-64779

+ About the security content of iOS 18.7.10 and iPadOS 18.7.10
https://support.apple.com/en-us/148287

+ About the security content of macOS Tahoe 26.6.2
https://support.apple.com/en-us/148281

+ visionOS 26.6.1 released
https://support.apple.com/en-us/100100

記者の眼
「不正アクセス」に他責の響き、ニュースリリースがぼかす管理不備
https://xtech.nikkei.com/atcl/nxt/column/18/00138/081402080/?ST=nxt_thmit_security

未成年保護から選挙対策まで、世界で強まるSNS規制 第2回
米豪のSNS規制、若年層への情報発信に壁 日本企業は広報戦略見直しも
https://xtech.nikkei.com/atcl/nxt/column/18/03714/080500002/?ST=nxt_thmit_security

piyokangoの週刊システムトラブル
Eストアーで885万件超漏洩、配送先や店舗のFTPパスワードも対象
https://xtech.nikkei.com/atcl/nxt/column/18/00598/010900377/?ST=nxt_thmit_security

海外依存を抜け出せ、国産セキュリティー製品の勝ち筋 第2回
価格や日本語対応だけではない、国産セキュリティーが選ばれる強み
https://xtech.nikkei.com/atcl/nxt/column/18/03715/080700004/?ST=nxt_thmit_security

JVN#58692577 F-RevoCRMにおけるクロスサイトスクリプティングの脆弱性
https://jvn.jp/jp/JVN58692577/index.html

JVN#40688603 miCheckerにおけるXML外部実体参照(XXE)に関する脆弱性
https://jvn.jp/jp/JVN40688603/index.html

JVN#91713656 Synology Assistantにおける不適切なファイルアクセス権設定の脆弱性
https://jvn.jp/jp/JVN91713656/index.html

2026年8月17日月曜日

17日 月曜日、大安

+ ■Windows DNSの脆弱性情報が公開されました(CVE-2026-70330、他15件)
https://jprs.jp/tech/security/2026-08-14-windows.html

+ PuTTY 0.85 released
https://www.chiark.greenend.org.uk/~sgtatham/putty/releases/0.85.html

+ S2-070 All Struts 2 developers and users of the JSON plugin
https://cwiki.apache.org/confluence/spaces/WW/pages/444334417/S2-070
CVE-2026-73631

+ S2-071 All Struts 2 developers and users of the JSON plugin
https://cwiki.apache.org/confluence/spaces/WW/pages/444334419/S2-071
CVE-2026-73632

+ S2-073 Struts 2 developers and users whose applications expose an endpoint collecting Content Security Policy violation reports
https://cwiki.apache.org/confluence/spaces/WW/pages/444334431/S2-073
CVE-2026-73634

+ S2-074 All Struts 2 developers and users
https://cwiki.apache.org/confluence/spaces/WW/pages/444334689/S2-074
CVE-2026-73635

+ ProFTPD 1.3.9d released
http://www.proftpd.org/docs/RELEASE_NOTES-1.3.9d
http://www.proftpd.org/docs/NEWS-1.3.9d

+ Apache Strutsの脆弱性(Moderate: CVE-2026-73631, CVE-2026-73633, CVE-2026-73634, CVE-2026-73635, Low: CVE-2026-73632)
https://security.sios.jp/vulnerability/struts-security-vulnerability-20260814/
CVE-2026-73631
CVE-2026-73633
CVE-2026-73634
CVE-2026-73635
CVE-2026-73632

JVN#40688603 miCheckerにおけるXML外部実体参照(XXE)に関する脆弱性
https://jvn.jp/jp/JVN40688603/index.html

JVN#91713656 Synology Assistantにおける不適切なファイルアクセス権設定の脆弱性
https://jvn.jp/jp/JVN91713656/index.html

JVNVU#97860021 CISA ICS Advisory / ICS Medical Advisory(2026年08月13日)
https://jvn.jp/vu/JVNVU97860021/index.html

未成年保護から選挙対策まで、世界で強まるSNS規制 第1回
EUのSNS規制、日本企業にも波及 未成年保護で広告とUIに制約
https://xtech.nikkei.com/atcl/nxt/column/18/03714/080500001/?ST=nxt_thmit_security

海外依存を抜け出せ、国産セキュリティー製品の勝ち筋 第1回
海外製品が止まっても日本を守る、国産セキュリティー振興の全貌を徹底解説
https://xtech.nikkei.com/atcl/nxt/column/18/03715/080600001/?ST=nxt_thmit_security

2026年8月14日金曜日

14日 金曜日、友引

+ RHSA-2026:54654 Important: bind security update
https://access.redhat.com/errata/RHSA-2026:54654
CVE-2026-10723
CVE-2026-11622
CVE-2026-11721
CVE-2026-13204
CVE-2026-13321

+ RHSA-2026:54575 Important: dracut security update
https://access.redhat.com/errata/RHSA-2026:54575
CVE-2026-15816

+ RHSA-2026:54542 Important: .NET 10.0 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:54542
CVE-2026-62899
CVE-2026-62900
CVE-2026-62901
CVE-2026-62909

+ RHSA-2026:54538 Important: .NET 8.0 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:54538
CVE-2026-62899
CVE-2026-62900
CVE-2026-62901
CVE-2026-62909

+ RHSA-2026:54509 Important: bind9.16 security update
https://access.redhat.com/errata/RHSA-2026:54509
CVE-2026-10723
CVE-2026-11331
CVE-2026-11622
CVE-2026-11721
CVE-2026-13204
CVE-2026-13321

+ RHSA-2026:54485 Important: freerdp security update
https://access.redhat.com/errata/RHSA-2026:54485
CVE-2026-64624
CVE-2026-67289
CVE-2026-67299
CVE-2026-68580

+ RHSA-2026:54662 Moderate: nghttp2 security update
https://access.redhat.com/errata/RHSA-2026:54662
CVE-2026-58055

+ RHSA-2026:54571 Important: dracut security update
https://access.redhat.com/errata/RHSA-2026:54571
CVE-2026-15816

+ RHSA-2026:54510 Important: bind security update
https://access.redhat.com/errata/RHSA-2026:54510
CVE-2026-10723
CVE-2026-11331
CVE-2026-11622
CVE-2026-11721
CVE-2026-13204
CVE-2026-13321

+ RHSA-2026:54487 Important: freerdp security update
https://access.redhat.com/errata/RHSA-2026:54487
CVE-2026-64624
CVE-2026-67289
CVE-2026-67299
CVE-2026-68580

+ RHSA-2026:54484 Moderate: python-idna security update
https://access.redhat.com/errata/RHSA-2026:54484
CVE-2026-45409

+ Microsoft Drivers for PHP for SQL Server 5.13.2 released
https://learn.microsoft.com/ja-jp/sql/connect/php/download-drivers-php-sql-server?view=sql-server-ver17

+ UPDATE: Oracle Critical Patch Update Advisory - July 2026
https://www.oracle.com/security-alerts/cpujul2026.html

+ Unbounded Memory Growth in QUIC Server Incoming Channel Queue
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-14456
CVE-2026-14456

+ PostgreSQL 18.6, 17.11, 16.15, 15.19, 14.24 and 19 Beta 3 Released!
https://www.postgresql.org/about/news/postgresql-186-1711-1615-1519-1424-and-19-beta-3-released-3365/
https://www.postgresql.org/docs/18/release-18-6.html
https://www.postgresql.org/docs/17/release-17-11.html
https://www.postgresql.org/docs/16/release-16-15.html
https://www.postgresql.org/docs/15/release-15-19.html
https://www.postgresql.org/docs/14/release-14-24.html

日経コンピュータ 勝村幸博の「今日も誰かが狙われる」
ランサムウエア攻撃者の侵入経路 脆弱性悪用を抜きメールが首位に
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/052100113/080500192/?ST=nxt_thmit_security

JVN#00941257 VoiceTraにおける接続先の制限が不適切な脆弱性
https://jvn.jp/jp/JVN00941257/index.html

2026年8月13日木曜日

13日 木曜日、先勝

+ ■PowerDNS Authoritative Serverの脆弱性情報が公開されました (CVE-2026-52682)
https://jprs.jp/tech/security/2026-08-12-powerdns-auth.html

+ ■PowerDNS Recursorの脆弱性情報が公開されました(CVE-2026-52682)
https://jprs.jp/tech/security/2026-08-12-powerdns-recursor.html

+ RHSA-2026:54371 Important: nodejs:24 security update
https://access.redhat.com/errata/RHSA-2026:54371
CVE-2026-11822
CVE-2026-11824
CVE-2026-14257
CVE-2026-54272
CVE-2026-69152
CVE-2026-69192

+ RHSA-2026:54290 Moderate: python-idna security update
https://access.redhat.com/errata/RHSA-2026:54290
CVE-2026-45409

+ RHSA-2026:54272 Important: abrt security update
https://access.redhat.com/errata/RHSA-2026:54272
CVE-2026-54228
CVE-2026-54229
CVE-2026-54230
CVE-2026-54231

+ RHSA-2026:54246 Moderate: kernel security update
https://access.redhat.com/errata/RHSA-2026:54246
CVE-2026-45991
CVE-2026-53009

+ RHSA-2026:54243 Important: grafana security update
https://access.redhat.com/errata/RHSA-2026:54243
CVE-2026-33377
CVE-2026-42127

+ RHSA-2026:54268 Important: python3.9 security update
https://access.redhat.com/errata/RHSA-2026:54268
CVE-2026-11940

+ RHSA-2026:54184 Important: grafana security update
https://access.redhat.com/errata/RHSA-2026:54184
CVE-2026-42127

+ Google Chrome 152.0.7977.42/.43 released
https://chromereleases.googleblog.com/2026/08/early-stable-update-for-desktop.html

+ Mozilla Firefox 153.0.4 released
https://www.firefox.com/en-US/firefox/153.0.4/releasenotes/

+ Wireshark 4.6.8, 4.4.18 released
https://www.wireshark.org/docs/relnotes/wireshark-4.6.8.html
https://www.wireshark.org/docs/relnotes/wireshark-4.4.18.html

+ 2026 年 8 月のセキュリティ更新プログラム (月例)
https://www.microsoft.com/en-us/msrc/blog/2026/08/202608-security-update

+ OpenSSHの脆弱性(Medium: CVE-2026-73282, Low: CVE-2026-73281, CVE-2026-73283)とOpenSSH 10.5リリース
https://security.sios.jp/vulnerability/openssh-security-vulnerability-20260812/
CVE-2026-73282
CVE-2026-73281
CVE-2026-73283

現場から始めるデータ活用 当事者意識の持ち方・持たせ方
「Excelでこっそり共有」はやめよう 現場のセキュリティー意識が鍵に [第7回]
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/022000534/080600007/?ST=nxt_thmit_security

ニュース解説
OpenAIが先端AIのガードレール緩和、一部個人・組織で 中国モデルに危機感
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11962/?ST=nxt_thmit_security

JVNVU#96623328 TCG TPM2.0のリファレンス実装における複数の脆弱性(CVE-2026-6726、CVE-2026-6727)
https://jvn.jp/vu/JVNVU96623328/index.html

JVNVU#96740507 ECプラットフォーム「Opencart」におけるディレクトリトラバーサルの脆弱性
https://jvn.jp/vu/JVNVU96740507/index.html

JVNVU#98375707 Siemens製品に対するアップデート(2026年8月)
https://jvn.jp/vu/JVNVU98375707/index.html

JVNVU#95587179 CISA ICS Advisory / ICS Medical Advisory(2026年08月11日)
https://jvn.jp/vu/JVNVU95587179/index.html

2026年8月12日水曜日

12日 水曜日、大安

+ RHSA-2026:53848 Important: isns-utils security update
https://access.redhat.com/errata/RHSA-2026:53848
CVE-2026-55995

+ RHSA-2026:53363 Important: fence-agents security update
https://access.redhat.com/errata/RHSA-2026:53363
CVE-2026-59886

+ RHSA-2026:52949 Important: java-1.8.0-ibm security update
https://access.redhat.com/errata/RHSA-2026:52949
CVE-2026-8400
CVE-2026-16243
CVE-2026-16439
CVE-2026-16441
CVE-2026-41254
CVE-2026-46968
CVE-2026-47010
CVE-2026-47021
CVE-2026-47027
CVE-2026-47057
CVE-2026-47058
CVE-2026-47059
CVE-2026-47063
CVE-2026-60147

+ RHSA-2026:52772 Important: perl-DBI:1.641 security update
https://access.redhat.com/errata/RHSA-2026:52772
CVE-2026-14380
CVE-2026-14739

+ RHSA-2026:52765 Moderate: kernel security update
https://access.redhat.com/errata/RHSA-2026:52765
CVE-2026-64496

+ RHSA-2026:52396 Important: postgresql:12 security update
https://access.redhat.com/errata/RHSA-2026:52396
CVE-2026-6479

+ RHSA-2026:53847 Important: isns-utils security update
https://access.redhat.com/errata/RHSA-2026:53847
CVE-2026-55995

+ RHSA-2026:53452 Moderate: gstreamer1-plugins-good security update
https://access.redhat.com/errata/RHSA-2026:53452
CVE-2026-18649

+ RHSA-2026:53329 Important: kernel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:53329
CVE-2025-54518
CVE-2026-31530
CVE-2026-64368
CVE-2026-64531

+ RHSA-2026:52674 Moderate: libarchive security update
https://access.redhat.com/errata/RHSA-2026:52674
CVE-2026-14164

+ Google Chrome 151.0.7922.137/.138, 150.0.7871.230 released
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_01815628406.html
https://chromereleases.googleblog.com/2026/08/extended-stable-update-for-desktop_01657873926.html

+ Mozilla Thunderbird 153.0.3 released
https://www.thunderbird.net/en-US/thunderbird/153.0.3/releasenotes/

+ OpenSSH 10.5 released
https://www.openssh.org/releasenotes.html#10.5

+ Postfix stable release 3.11.6 and legacy releases 3.10.13, 3.9.14, 3.8.20, 3.7.22, 3.6.20, 3.5.27
https://www.postfix.org/announcements/postfix-3.11.6.html

VU#431093 TCG TPM 2.0 reference code found vulnerable to information leakage and timing side-channel attacks
https://www.kb.cert.org/vuls/id/431093

VU#614868 Opencart ecommerce platform contains directory traversal vulnerability
https://www.kb.cert.org/vuls/id/614868

ニュース解説
OpenAI、次世代AI「Astra」の開発を一部停止 高いサイバー攻撃能力を懸念
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11960/?ST=nxt_thmit_security

JVN#40467227 LINE PC版(Windows版)のインストーラにおけるDLL読み込みに関する脆弱性
https://jvn.jp/jp/JVN40467227/index.html

JVNVU#91804527 CISA ICS Advisory / ICS Medical Advisory(2026年08月07日)
https://jvn.jp/vu/JVNVU91804527/index.html

JVNVU#95261826 nothingsのstb TrueTypeライブラリにおけるヒープベースのバッファオーバーフローの脆弱性
https://jvn.jp/vu/JVNVU95261826/index.html

2026年8月10日月曜日

10日 月曜日、仏滅

VU#987105 The nothings stb TrueType library, up to version 1.26, contains a heap buffer overflow vulnerability
https://www.kb.cert.org/vuls/id/987105

ニュース解説
ニチレイ、サイバー被害で特損10億円も詳細語らず 専門家に聞く公表リスク
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11958/?ST=nxt_thmit_security

2026年8月7日金曜日

7日 金曜日、赤口

+ RHSA-2026:51105 Important: LibRaw security update
https://access.redhat.com/errata/RHSA-2026:51105
CVE-2026-51235

+ RHSA-2026:51035 Moderate: kernel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:51035
CVE-2026-23415
CVE-2026-43450

+ About the security content of macOS Tahoe 26.6.1
https://support.apple.com/en-us/148170
CVE-2026-65400

+ About the security content of macOS Sequoia 15.7.9
https://support.apple.com/en-us/148171

+ About the security content of macOS Sonoma 14.8.9
https://support.apple.com/en-us/148172

+ Google Chrome 151.0.7922.108/.109, 150.0.7871.224 released
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_01193673229.html
https://chromereleases.googleblog.com/2026/08/extended-stable-update-for-desktop.html

+ OpenLDAP 2.7.0, 2.6.14 released
https://www.openldap.org/software/release/changes.html
https://www.openldap.org/software/release/changes_lts.html

+ JVNVU#92139835 OpenSSLのOCSPレスポンス検証におけるクライアント側のメモリリークの脆弱性(CVE-2026-54876)
https://jvn.jp/vu/JVNVU92139835/index.html
CVE-2026-54876

VU#487613 Alinto SOGo v5.12.7 vulnerable to cross-site scripting via malformed ICS calendar invitations
https://www.kb.cert.org/vuls/id/487613

ダークサイドAI 第5回
企業AIの「闇落ち」を防げ、擬似的な攻撃でシステムの弱点をあぶり出す
https://xtech.nikkei.com/atcl/nxt/column/18/03673/072700006/?ST=singleview

ニュース解説
Mythosが実在の開発者攻撃 なりすましでマルウエア混入図り、発覚後は弁明
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11952/?ST=nxt_thmit_security

JVNVU#92842469 CISA ICS Advisory / ICS Medical Advisory(2026年08月06日)
https://jvn.jp/vu/JVNVU92842469/index.html

JVNVU#96816564 Alinto SOGo v5.12.7における不正な形式のICSカレンダー招待を介したクロスサイトスクリプティングの脆弱性
https://jvn.jp/vu/JVNVU96816564/index.html

2026年8月6日木曜日

6日 木曜日、大安

+ RHSA-2026:50728 Important: ruby:3.3 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:50728
CVE-2026-27820
CVE-2026-42256
CVE-2026-42257
CVE-2026-47240
CVE-2026-47241
CVE-2026-47242

+ RHSA-2026:50223 Important: Satellite 6.16.12 Async Update
https://access.redhat.com/errata/RHSA-2026:50223
CVE-2025-9230
CVE-2026-2332
CVE-2026-12515
CVE-2026-48526
CVE-2026-48864
CVE-2026-54059
CVE-2026-54060
CVE-2026-54297
CVE-2026-55379
CVE-2026-55380
CVE-2026-57236
CVE-2026-59197

+ RHSA-2026:49927 Moderate: fence-agents security update
https://access.redhat.com/errata/RHSA-2026:49927
CVE-2026-44431

+ RHSA-2026:49922 Important: thunderbird security update
https://access.redhat.com/errata/RHSA-2026:49922
CVE-2026-14899
CVE-2026-15718
CVE-2026-15719
CVE-2026-16349
CVE-2026-16350
CVE-2026-16351
CVE-2026-16352
CVE-2026-16353
CVE-2026-16354
CVE-2026-16355
CVE-2026-16356
CVE-2026-16357
CVE-2026-16358
CVE-2026-16359
CVE-2026-16360
CVE-2026-16361
CVE-2026-16362
CVE-2026-16363
CVE-2026-16368
CVE-2026-16369
CVE-2026-16371
CVE-2026-16374
CVE-2026-16375
CVE-2026-16377
CVE-2026-16379
CVE-2026-16381
CVE-2026-16383
CVE-2026-16387
CVE-2026-16390
CVE-2026-16391
CVE-2026-16396
CVE-2026-16405
CVE-2026-16412

+ RHSA-2026:49857 Moderate: kernel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:49857
CVE-2026-52923

+ RHSA-2026:50828 Important: ruby:3.3 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:50828
CVE-2026-27820
CVE-2026-42256
CVE-2026-42257
CVE-2026-47240
CVE-2026-47241
CVE-2026-47242

+ RHSA-2026:50827 Important: ruby:4.0 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:50827
CVE-2026-27820
CVE-2026-42256
CVE-2026-42257
CVE-2026-47240
CVE-2026-47241
CVE-2026-47242

+ RHSA-2026:50817 Important: gimp security update
https://access.redhat.com/errata/RHSA-2026:50817
CVE-2026-42169
CVE-2026-66758
CVE-2026-66759

+ RHSA-2026:50263 Important: Satellite 6.18.8 Async Update
https://access.redhat.com/errata/RHSA-2026:50263
CVE-2025-9230
CVE-2026-2332
CVE-2026-12515
CVE-2026-48526
CVE-2026-54059
CVE-2026-54060
CVE-2026-54297
CVE-2026-55379
CVE-2026-55380
CVE-2026-57236

+ RHSA-2026:50223 Important: Satellite 6.16.12 Async Update
https://access.redhat.com/errata/RHSA-2026:50223
CVE-2025-9230
CVE-2026-2332
CVE-2026-12515
CVE-2026-48526
CVE-2026-48864
CVE-2026-54059
CVE-2026-54060
CVE-2026-54297
CVE-2026-55379
CVE-2026-55380
CVE-2026-57236
CVE-2026-59197

+ RHSA-2026:50222 Important: Satellite 6.17.10 Async Update
https://access.redhat.com/errata/RHSA-2026:50222
CVE-2025-9230
CVE-2026-2332
CVE-2026-12515
CVE-2026-48526
CVE-2026-54059
CVE-2026-54060
CVE-2026-54297
CVE-2026-55379
CVE-2026-55380
CVE-2026-57236

+ RHSA-2026:50221 Important: Satellite 6.19.3 Async Update
https://access.redhat.com/errata/RHSA-2026:50221
CVE-2026-2332
CVE-2026-12515
CVE-2026-54059
CVE-2026-54060
CVE-2026-54297
CVE-2026-55379
CVE-2026-55380
CVE-2026-57236

+ RHSA-2026:50108 Important: ldns security update
https://access.redhat.com/errata/RHSA-2026:50108
CVE-2026-10846

+ RHSA-2026:49921 Important: thunderbird security update
https://access.redhat.com/errata/RHSA-2026:49921
CVE-2026-14899
CVE-2026-15718
CVE-2026-15719
CVE-2026-16349
CVE-2026-16350
CVE-2026-16351
CVE-2026-16352
CVE-2026-16353
CVE-2026-16354
CVE-2026-16355
CVE-2026-16356
CVE-2026-16357
CVE-2026-16358
CVE-2026-16359
CVE-2026-16360
CVE-2026-16361
CVE-2026-16362
CVE-2026-16363
CVE-2026-16368
CVE-2026-16369
CVE-2026-16371
CVE-2026-16374
CVE-2026-16375
CVE-2026-16377
CVE-2026-16379
CVE-2026-16381
CVE-2026-16383
CVE-2026-16387
CVE-2026-16390
CVE-2026-16391
CVE-2026-16396
CVE-2026-16405
CVE-2026-16412

+ RHSA-2026:49838 Important: osbuild-composer security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:49838
CVE-2026-32280
CVE-2026-32281

+ Google Chrome 151.0.7922.75/.76 released
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop.html

+ Mozilla Firefox 153.0.3 released
https://www.firefox.com/en-US/firefox/153.0.3/releasenotes/

+ Mozilla Thunderbird 153.0.2 released
https://www.thunderbird.net/en-US/thunderbird/153.0.2/releasenotes/

+ OpenSSLの脆弱性(Low: CVE-2026-54876)
https://security.sios.jp/vulnerability/openssl-security-vulnerability-20260806/
CVE-2026-54876

JVN#28045338 NetKids iMarkにおける複数の脆弱性
https://jvn.jp/jp/JVN28045338/index.html

JVNVU#92898025 CISA ICS Advisory / ICS Medical Advisory(2026年08月04日)
https://jvn.jp/vu/JVNVU92898025/index.html

JVNVU#92804348 ロボット掃除機DEEBOT PRO M1、DEEBOT PRO K1VACおよびスマートフォンアプリECOVACS PROにおける複数の脆弱性
https://jvn.jp/vu/JVNVU92804348/index.html

JVN#52865575 freo2におけるアップロードするファイルの検証が不十分な脆弱性
https://jvn.jp/jp/JVN52865575/index.html

ニュース&リポート
ニチレイの東西両センターで障害 不正アクセスの影響を避けられず
冷蔵倉庫の入出庫業務などに支障
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/020800017/072801472/?ST=nxt_thmit_security

記者の眼
シャドーAIにとどまらない企業リスク、三菱電機は「見逃し」契機に体制強化
https://xtech.nikkei.com/atcl/nxt/column/18/00138/072302073/?ST=nxt_thmit_security

ニュース解説
企業秘密を出さずにAIを使う、日本発の「秘匿AI」基盤が本格始動
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11948/?ST=nxt_thmit_security

中部電力で個人情報漏洩の可能性、グループ役職員や取引先など7万人超
https://xtech.nikkei.com/atcl/nxt/news/24/03331/?ST=nxt_thmit_security

日経コンピュータ「ITが危ない」
GitHub内部リポジトリーが標的 漏洩リスクは公開版の6倍に
「非公開だから安全」という思い込みが危険
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/092400133/072800200/?ST=nxt_thmit_security

データは語る
過半数がペーパーレス化に課題 取引先との商慣習が障壁に
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/020600010/072800230/?ST=nxt_thmit_security

AIインフラ最前線 第5回
AI活用で高まるセキュリティーリスク、パッチ作成の自動化など防御も強化へ
https://xtech.nikkei.com/atcl/nxt/column/18/03551/073100005/?ST=nxt_thmit_security

勝村幸博の「今日も誰かが狙われる」
ランサムウエア攻撃者の侵入経路、脆弱性悪用を抜き「メール」が首位に
https://xtech.nikkei.com/atcl/nxt/column/18/00676/072900230/?ST=nxt_thmit_security

EPARKリラク&エステに不正アクセス、顧客情報3300万レコードが漏洩の恐れ
https://xtech.nikkei.com/atcl/nxt/news/24/03330/?ST=nxt_thmit_security

サイバーセキュリティ2026決定、対策強化を「日本成長戦略」の大前提に
https://xtech.nikkei.com/atcl/nxt/news/24/03328/?ST=nxt_thmit_security

2026年8月4日火曜日

4日 火曜日、先負

マルウエア徹底解剖
マルウエアの正体を暴くサンドボックス [第80回]
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/111900071/071600081/?ST=nxt_thmit_security

ケーススタディー
ネットワーク刷新しβ’モデルへ移行 ゼロトラスト型で安全性水準を向上
兵庫県太子町
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/020600004/072800214/?ST=nxt_thmit_security

piyokangoの週刊システムトラブル
シミックヘルスケア、受託運営システムで患者情報が流出 公開ファイルから
https://xtech.nikkei.com/atcl/nxt/column/18/00598/010900375/?ST=nxt_thmit_security

2026年8月3日月曜日

3日 月曜日、友引

+ RHSA-2026:49524 Important: perl-Archive-Tar security update
https://access.redhat.com/errata/RHSA-2026:49524
CVE-2026-9538

+ RHSA-2026:49511 Important: frr security update
https://access.redhat.com/errata/RHSA-2026:49511
CVE-2026-37460

+ RHSA-2026:49214 Important: kernel security update
https://access.redhat.com/errata/RHSA-2026:49214
CVE-2026-31692
CVE-2026-43116
CVE-2026-46150
CVE-2026-64530

+ RHSA-2026:49525 Important: perl-Archive-Tar security update
https://access.redhat.com/errata/RHSA-2026:49525
CVE-2026-9538

+ RHSA-2026:49212 Important: kernel security update
https://access.redhat.com/errata/RHSA-2026:49212
CVE-2026-52923
CVE-2026-52993
CVE-2026-64530

+ Linux Kernel 7.0-7.0.8 & 7.0-rc-7.0-rc7 - Use After Free Exploit
https://cxsecurity.com/issue/WLB-2026080002
CVE-2026-46215

VU#243636 VPS.org one-click deployment templates contain multiple vulnerabilities
https://www.kb.cert.org/vuls/id/243636

JVNVU#98879231 三菱電機製複数製品で使用しているCC-Link IE TSN通信プロトコルにおける通信チャネルで送受信するメッセージに対する完全性の検証不備に起因する脆弱性
https://jvn.jp/vu/JVNVU98879231/index.html

JVN#72334274 サイボウズ Garoonにおけるクロスサイトスクリプティングの脆弱性
https://jvn.jp/jp/JVN72334274/index.html

JVNVU#91736352 VPS.orgのone-click deploymentテンプレートにおける複数の脆弱性
https://jvn.jp/vu/JVNVU91736352/index.html

JVNVU#92540957 シャープ製ネットワークスキャナーツールの初期設定がセキュアでない問題
https://jvn.jp/vu/JVNVU92540957/index.html

JVNVU#98759887 シャープ製および東芝テック製複合機(MFP)における複数の脆弱性
https://jvn.jp/vu/JVNVU98759887/index.html

JVNVU#97496464 CISA ICS Advisory / ICS Medical Advisory(2026年07月30日)
https://jvn.jp/vu/JVNVU97496464/index.html

JVNVU#90278463 SGLangにおける複数の脆弱性
https://jvn.jp/vu/JVNVU90278463/index.html

JVNVU#92804348 ロボット掃除機DEEBOT PRO M1、DEEBOT PRO K1VACおよびスマートフォンアプリECOVACS PROにおける複数の脆弱性
https://jvn.jp/vu/JVNVU92804348/index.html

JVNVU#94952030 BaserCMSにおけるCSVファイルインジェクションの脆弱性
https://jvn.jp/vu/JVNVU94952030/index.html

キーワード
Shadow AI(シャドーAI)
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/020600009/072800228/?ST=nxt_thmit_security

フォーカス
AIエージェントのリスク ID管理とログで統制
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/020600014/072800233/?ST=nxt_thmit_security

日経コンピュータ「動かないコンピュータ」
デジタル庁などが仕様に疑義 マイナ署名関連の一部機能を停止
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/020600011/072800212/?ST=nxt_thmit_security

ニュース解説
AnthropicのAIも他社侵入、しかも3件 設定ミスでネットアクセス可能に
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11940/?ST=nxt_thmit_security