2026年7月28日火曜日

28日 火曜日、友引

+ ■PowerDNS Recursorの脆弱性情報が公開されました(CVE-2026-52688、CVE-2026-52686)
https://jprs.jp/tech/security/2026-07-27-powerdns-recursor.html

+ About the security content of iOS 26.6 and iPadOS 26.6
https://support.apple.com/en-us/128066
CVE-2026-64733
CVE-2026-43801
CVE-2026-28928
CVE-2026-43776
CVE-2026-64725
CVE-2026-43730
CVE-2026-64747
CVE-2026-64707
CVE-2026-43811
CVE-2026-43813
CVE-2026-64746
CVE-2026-64734
CVE-2026-43797
CVE-2026-43673
CVE-2026-43744
CVE-2026-43803
CVE-2026-43711
CVE-2026-3784
CVE-2026-3783
CVE-2026-43753
CVE-2026-43714
CVE-2026-64742
CVE-2026-64740
CVE-2026-43796
CVE-2026-64692
CVE-2026-43780
CVE-2026-43818
CVE-2026-64716
CVE-2026-64758
CVE-2026-64754
CVE-2026-64693
CVE-2026-43805
CVE-2026-64749
CVE-2026-43778
CVE-2026-64709
CVE-2026-64735
CVE-2026-43739
CVE-2026-43816
CVE-2026-43822
CVE-2026-64729
CVE-2026-43814
CVE-2026-64700
CVE-2026-43799
CVE-2026-28931
CVE-2026-43817
CVE-2026-43769
CVE-2026-43810
CVE-2026-64775
CVE-2026-64720
CVE-2026-64751
CVE-2026-64721
CVE-2026-4424
CVE-2026-28973
CVE-2026-64739
CVE-2026-64743
CVE-2026-64724
CVE-2026-43723
CVE-2026-43733
CVE-2026-43729
CVE-2026-64772
CVE-2026-64771
CVE-2026-64722
CVE-2026-64774
CVE-2026-64770
CVE-2026-64769
CVE-2026-64768
CVE-2026-64711
CVE-2026-43812
CVE-2026-64741
CVE-2026-64766
CVE-2026-64765
CVE-2026-64764
CVE-2026-64763
CVE-2026-43800
CVE-2026-43740
CVE-2026-64713
CVE-2026-64730
CVE-2026-64728
CVE-2026-64783
CVE-2026-64757
CVE-2026-43804
CVE-2026-43821
CVE-2026-64718
CVE-2026-64719
CVE-2026-64726
CVE-2026-64755

+ About the security content of macOS Tahoe 26.6
https://support.apple.com/en-us/128067

+ About the security content of macOS Sequoia 15.7.8
https://support.apple.com/en-us/128071

+ About the security content of macOS Sonoma 14.8.8
https://support.apple.com/en-us/128072

+ About the security content of tvOS 26.6
https://support.apple.com/en-us/128069

+ About the security content of watchOS 26.6
https://support.apple.com/en-us/128068

+ About the security content of visionOS 26.6
https://support.apple.com/en-us/128070

+ About the security content of Safari 26.6
https://support.apple.com/en-us/128073

NEWS close-up
注目高まる「SCS評価制度」
Interopでも売り文句が飛び交った PマークやISMSと何が違うのか
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/041800012/071700334/?ST=nxt_thmit_security

変貌するCDN 第2回
CDNで「近い」サーバーに通信を導く仕組み、DNSとBGPを活用
https://xtech.nikkei.com/atcl/nxt/column/18/03697/072200002/?ST=nxt_thmit_security

piyokangoの週刊システムトラブル
日本交通、流出疑いの情報をネット上で確認 マルウエア感染で電話配車停止
https://xtech.nikkei.com/atcl/nxt/column/18/00598/010900374/?ST=nxt_thmit_security

2026年7月27日月曜日

27日 月曜日、先勝

+ ■Unboundの脆弱性情報が公開されました(CVE-2026-14586、他23件)
https://jprs.jp/tech/security/2026-07-24-unbound.html

+ RHSA-2026:46396 Important: libreswan security update
https://access.redhat.com/errata/RHSA-2026:46396
CVE-2026-12413
CVE-2026-14957
CVE-2026-50721
CVE-2026-50722

+ RHSA-2026:46391 Important: grafana security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:46391
CVE-2026-44740

+ RHSA-2026:45115 Important: kernel security update
https://access.redhat.com/errata/RHSA-2026:45115
CVE-2025-40026
CVE-2026-52993
CVE-2026-53059

+ RHSA-2026:46397 Important: libreswan security update
https://access.redhat.com/errata/RHSA-2026:46397
CVE-2026-12413
CVE-2026-14957
CVE-2026-50721
CVE-2026-50722

+ RHSA-2026:45192 Important: kernel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:45192
CVE-2025-40026
CVE-2026-52950
CVE-2026-52976
CVE-2026-53006
CVE-2026-53059

+ Mozilla Thunderbird 153.0.1 released
https://www.thunderbird.net/en-US/thunderbird/153.0.1esr/releasenotes/

+ UPDATE: Oracle Critical Patch Update Advisory - July 2026
https://www.oracle.com/security-alerts/cpujul2026.html

+ Linux Kernelの脆弱性(RefluXFS:CVE-2026-64600)
https://security.sios.jp/vulnerability/kernel-security-vulnerability-20260724/
CVE-2026-64600

JVNVU#93636354 CISA ICS Advisory / ICS Medical Advisory(2026年07月23日)
https://jvn.jp/vu/JVNVU93636354/index.html

JVNVU#99418634 Silverhand製Logtoにおける認証や認可に影響する複数の脆弱性
https://jvn.jp/vu/JVNVU99418634/index.html

piyokangoの月刊システムトラブル
UPSIDERに不正アクセス サプライチェーン攻撃に遭う
https://xtech.nikkei.com/atcl/nxt/mag/nnw/18/031800050/071600089/?ST=nxt_thmit_security

変貌するCDN 第1回
今やコンテンツ配信だけではないCDN、Web発展とともに多機能化
https://xtech.nikkei.com/atcl/nxt/column/18/03697/072200001/?ST=nxt_thmit_security

吉川孝志のマルウエア徹底解剖 第30回
生成AI時代に重要性が高まるサンドボックス、仕組みから包括的に解説する
https://xtech.nikkei.com/atcl/nxt/column/18/02805/071700031/?ST=nxt_thmit_security

北郷達郎のテクノロジー温故知新
「電話と紙」で育った技術記者が顧みる、情報収集方法の変遷
https://xtech.nikkei.com/atcl/nxt/column/18/02598/071700035/?ST=nxt_thmit_security

LLMを適所で生かす、セキュリティーの要件定義 第4回
セキュリティー要件の抜け漏れを防ぐ鉄則、まず検討項目を洗い出す
https://xtech.nikkei.com/atcl/nxt/column/18/03679/070800004/?ST=nxt_thmit_security

2026年7月24日金曜日

24日 金曜日、仏滅

+ Google Chrome 150.0.7871.186/.187 released
https://chromereleases.googleblog.com/2026/07/stable-channel-update-for-desktop_01320465736.html

+ UPDATE: Oracle Critical Patch Update Advisory - July 2026
https://www.oracle.com/security-alerts/cpujul2026.html

VU#492466 Logto Identity Platform has authentication and authorization failures in core protocol handling
https://www.kb.cert.org/vuls/id/492466

LLMを適所で生かす、セキュリティーの要件定義 第3回
要件決めの前に「保護ニーズ」を知ろう、対策のジャンルはLLMで把握
https://xtech.nikkei.com/atcl/nxt/column/18/03679/070800003/?ST=nxt_thmit_security