Announcing: Windows Defender ATP support for Windows 7 and Windows 8.1

2018-02-13 KENNETH 0

Announcing: Windows Defender ATP support for Windows 7 and Windows 8.1 With Windows 10 we built the most secure Windows ever, by hardening the platform itself and by developing Windows Defender Advanced Threat Protection (ATP) – a unified endpoint security platform that helps stop breaches. This means that for the first time we’ve built threat and exploit protection, and Endpoint Detection & Response right into the operating system, powered by the cloud. We hear from our customers security is one of the biggest motivators for their move to Windows 10. Meanwhile, we know that while in their transition, some may have a mix of Windows 10 and Windows 7 devices in their environments. We want to help our customers achieve the best security possible on their way to Windows 10 ahead of the end of support for Windows 7 in [ more… ]

No Image

USN-3565-1: Exim vulnerability

2018-02-13 KENNETH 0

USN-3565-1: Exim vulnerability Ubuntu Security Notice USN-3565-1 12th February, 2018 exim4 vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Exim could be made to crash or run programs if it received specially crafted network traffic. Software description exim4 – Exim is a mail transport agent Details Meh Chang discovered that Exim incorrectly handled memory in certaindecoding operations. A remote attacker could use this issue to cause Eximto crash, resulting in a denial of service, or possibly execute arbitrarycode. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.10: exim4-daemon-heavy 4.89-5ubuntu1.3 exim4-daemon-light 4.89-5ubuntu1.3 Ubuntu 16.04 LTS: exim4-daemon-heavy 4.86.2-2ubuntu2.3 exim4-daemon-light 4.86.2-2ubuntu2.3 Ubuntu 14.04 LTS: exim4-daemon-heavy 4.82-3ubuntu2.4 exim4-daemon-light 4.82-3ubuntu2.4 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard [ more… ]

No Image

USN-3566-1: PHP vulnerabilities

2018-02-13 KENNETH 0

USN-3566-1: PHP vulnerabilities Ubuntu Security Notice USN-3566-1 12th February, 2018 php5 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Summary Several security issues were fixed in PHP. Software description php5 – HTML-embedded scripting language interpreter Details It was discovered that PHP incorrectly handled the PHAR 404 error page. Aremote attacker could possibly use this issue to conduct cross-sitescripting (XSS) attacks. (CVE-2018-5712) It was discovered that PHP incorrectly handled memory when unserializingcertain data. A remote attacker could use this issue to cause PHP to crash,resulting in a denial of service, or possibly execute arbitrary code.(CVE-2017-12933) It was discovered that PHP incorrectly handled 'front of' and 'back of'date directives. A remote attacker could possibly use this issue to obtainsensitive information. (CVE-2017-16642) Update instructions The problem can be corrected by updating your system to the following [ more… ]

No Image

USN-3567-1: Puppet vulnerability

2018-02-13 KENNETH 0

USN-3567-1: Puppet vulnerability Ubuntu Security Notice USN-3567-1 12th February, 2018 puppet vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Summary Puppet could be made to crash or run programs. Software description puppet – Centralized configuration management Details It was discovered that Puppet incorrectly handled permissions whenunpacking certain tarballs. A local user could possibly use this issue toexecute arbitrary code. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 14.04 LTS: puppet-common 3.4.3-1ubuntu1.3 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2017-10689 Source: USN-3567-1: Puppet vulnerability

Amazon Polly 기반 블로그 음성 읽기 WordPress 플러그인 공개

2018-02-12 KENNETH 0

Amazon Polly 기반 블로그 음성 읽기 WordPress 플러그인 공개 Amazon Polly에 대해서는 2016년말 출시 소개 이후 지난 AWS re:Invent 출시 이후 한국어와 5가지의 새로운 음성이 추가되었으며 Polly가 aws 파티션의 모든 리전에서 사용할 수 있게 되었습니다. 또한 속삭임, 음성 표식, 음색 효과 및 동적 범위 압축 기능도 추가되었습니다. 신규 WordPress 플러그인 오늘 Polly를 사용하여 블로그 게시물의 고품질 오디오 버전을 생성하는 WordPress 플러그인을 출시합니다. 사용자는 게시물 내에서 또는 팟캐스트 서식에서 Amazon Pollycast라는 기능을 사용하여 오디오를 액세스할 수 있습니다! 두 옵션 모두 콘텐츠의 접근성을 향상하여 다 많은 청중에게 도달할 수 있게 해 줍니다. 이 플러그인은 AWS 팀과 AWS 어드밴스 기술 파트너인 WP Engine의 공동 노력을 통해 탄생했습니다. 보면 아시겠지만 이 플러그인은 설치와 구성이 간편하며 고객 자체의 인프라 또는 AWS에서 실행되는 WordPress의 설치 환경에서 사용할 수 있습니다. 두 경우 모두 Polly의 모든 음성을 액세스할 수 있으며 다양한 구성 옵션이 함께 제공됩니다. 생성된 오디오(각 게시물 [ more… ]