No Image

USN-4630-1: Raptor vulnerability

2020-11-12 KENNETH 0

USN-4630-1: Raptor vulnerability Hanno Böck discovered that Raptor incorrectly handled certain memory operations. If a user were tricked into opening a specially crafted document in an application linked against Raptor, an attacker could cause the application to crash, resulting in a denial of service, or possibly execute arbitrary code. Source: USN-4630-1: Raptor vulnerability

[도서] 실습으로 배우는 하드웨어 보안

2020-11-12 KENNETH 0

[도서] 실습으로 배우는 하드웨어 보안 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]실습으로 배우는 하드웨어 보안 스와럽 부니와,마크 테라니푸어 공저/송지연,김병극,나가진 공역/김기주 감수 | 에이콘출판사 | 2020년 11월 판매가 45,000원 (10%할인) | YES포인트 2,500원(5%지급) 최근 들어 대두되기 시작한 하드웨어 보안에 대한 포괄적인 개념과 대책을 실습을 통해 배울 수 있다. 하드웨어 보안의 이론, 사례 연구와 각 대책을 소개하며, 이를 하드웨어 해킹용 연습 보드에서 실습할 수 있도 Source: [도서] 실습으로 배우는 하드웨어 보안

No Image

USN-4629-1: MoinMoin vulnerabilities

2020-11-11 KENNETH 0

USN-4629-1: MoinMoin vulnerabilities Michael Chapman discovered that MoinMoin incorrectly handled certain cache actions. An attacker could possibly use this issue to execute arbitrary code. (CVE-2020-25074) Catarina Leite discovered that MoinMoin incorrectly handled certain SVG files. An attacker could possibly use this issue to execute arbitrary code. (CVE-2020-15275) Source: USN-4629-1: MoinMoin vulnerabilities

No Image

USN-4628-1: Intel Microcode vulnerabilities

2020-11-11 KENNETH 0

USN-4628-1: Intel Microcode vulnerabilities Moritz Lipp, Michael Schwarz, Andreas Kogler, David Oswald, Catherine Easdon, Claudio Canella, and Daniel Gruss discovered that the Intel Running Average Power Limit (RAPL) feature of some Intel processors allowed a side- channel attack based on power consumption measurements. A local attacker could possibly use this to expose sensitive information. (CVE-2020-8695) Ezra Caltum, Joseph Nuzman, Nir Shildan and Ofir Joseff discovered that some Intel(R) Processors did not properly remove sensitive information before storage or transfer in some situations. A local attacker could possibly use this to expose sensitive information. (CVE-2020-8696) Ezra Caltum, Joseph Nuzman, Nir Shildan and Ofir Joseff discovered that some Intel(R) Processors did not properly isolate shared resources in some situations. A local attacker could possibly use this to expose sensitive information. (CVE-2020-8698) Source: USN-4628-1: Intel Microcode vulnerabilities

No Image

if(kakao)2020 코멘터리 02 : Klaytn, Caver, KAS 가 만들어가는 쉽고 빠른 BApp 개발 환경

2020-11-11 KENNETH 0

if(kakao)2020 코멘터리 02 : Klaytn, Caver, KAS 가 만들어가는 쉽고 빠른 BApp 개발 환경 안녕하세요, Ground X의 Platform Development Team입니다. Ground X의 블록체인 플랫폼 Klaytn, 그리고 Klaytn을 쉽게 쓰기 위한 API Service (KAS)와 SDK (caver)를 개발하고 있습니다. 이번 if(Kakao)2020에서는 Klaytn의 성능 및 비용 개선을 위해 노력한 경험, caver의 사용성 개선을 위해 노력한 경험, KAS의 reference BApp을 개발한 경험, 그리고 Ground X에서의 devops에 대해 들려드릴 예정인데요, 이번 글을 통해 먼저 […] Source: if(kakao)2020 코멘터리 02 : Klaytn, Caver, KAS 가 만들어가는 쉽고 빠른 BApp 개발 환경