No Image

USN-4479-1: Django vulnerabilities

2020-09-01 KENNETH 0

USN-4479-1: Django vulnerabilities It was discovered that Django, when used with Python 3.7 or higher, incorrectly handled directory permissions. A local attacker could possibly use this issue to obtain sensitive information, or escalate permissions. Source: USN-4479-1: Django vulnerabilities

No Image

The Month in WordPress: August 2020

2020-09-01 KENNETH 0

The Month in WordPress: August 2020 August was special for WordPress lovers, as one of the most anticipated releases, WordPress 5.5, was launched. The month also saw several updates from various contributor teams, including the soft-launch of the Learn WordPress project and updates to Gutenberg. Read on to find out about the latest updates from the WordPress world. WordPress 5.5 Launch The team launched WordPress 5.5 on August 11. The major release comes with a host of features like automatic updates for plugins and themes, enabling updates over uploaded ZIP files, a block directory, XML sitemaps, block patterns, inline image editing, and lazy-loading images, to name a few. WordPress 5.5 is now available in 50 languages too! You can update to the latest version directly from your WordPress dashboard or download it directly from WordPress.org. Subsequent to the 5.5 release, [ more… ]

미국 로스엔젤레스 지역 내 두번째 AWS Local Zone 공개

2020-09-01 KENNETH 0

미국 로스엔젤레스 지역 내 두번째 AWS Local Zone 공개 2019년 12월에 미국 로스앤젤레스에 새로운 형태의 인프라 서비스인 AWS Local Zone을 발표했습니다. AWS Local Zone은 기존 AWS 리전을 최종 사용자에게 가깝게 확대하여 해당 리전의 AWS 서비스 하위 집합에 대해 10ms 미만으로 지연을 낮춰줍니다. AWS Local Zone은 상위 리전(오레곤 리전)에 연결되고, 서비스 및 리소스 액세스는 상위 리전의 엔드포인트를 통해 실행됩니다. 따라서 Local Zone이 애플리케이션과 최종 사용자에게 투명해집니다. Local Zone에서 실행되는 애플리케이션은 Amazon의 중복되고 대역폭이 매우 높은 사설 네트워크 백본을 통해 상위 리전에 연결되어 해당 리전의 하위 집합 서비스뿐만 아니라 모든 AWS 서비스에 액세스할 수 있습니다. 게시물 말미에 Jeff는 “(Andy Jassy가 종종 말하듯) 때가 무르익으면 모든 지역에 2개 이상의 Local Zone이 생길 것입니다. 2020년에는 로스앤젤레스(us-west-2-lax-1b)에서 두 번째 Local Zone을 열 계획이며 다른 지역도 고려하고 있습니다.”라고 적었습니다. 이제 그 시기가 왔습니다! 고객의 요청에 따라 AWS에서는 이 지역(및 전체 남부 캘리포니아) 고객들이 매우 낮은 지연으로 [ more… ]

Setting Up App Security as-a-Service for NGINX in Under 5 Minutes with F5 Essential App Protect

2020-09-01 KENNETH 0

Setting Up App Security as-a-Service for NGINX in Under 5 Minutes with F5 Essential App Protect Modern applications require modern app security solutions. With the ever‑increasing pace of framework‑based app development, the growth of microservices topologies, and the ever‑changing security landscape, app security is becoming increasingly challenging for developer teams. This is where modern web application firewall (WAF) solutions step in. F5 Essential App Protect, launched earlier this year, and NGINX App Protect both provide WAF capabilities for NGINX and NGINX Plus by focusing on signature‑based app protection and are built with DevOps and CI/CD in mind. However, they are architected, configured, and deployed in different ways, and serve different purposes depending on your organization’s needs: NGINX App Protect runs on NGINX Plus and is deployed as a lightweight software package within your app infrastructure to provide advanced security protection for your [ more… ]

No Image

USN-4478-1: Python-RSA vulnerability

2020-09-01 KENNETH 0

USN-4478-1: Python-RSA vulnerability It was discovered that Python-RSA incorrectly handled certain ciphertexts. An attacker could possibly use this issue to obtain sensitive information. Source: USN-4478-1: Python-RSA vulnerability