Help the World by Healing Your NGINX Configuration

2020-04-22 KENNETH 0

Help the World by Healing Your NGINX Configuration In his famous speech at the University of Texas in 2014, Admiral William H. McRaven said that if you want to change the world, start off by making your bed. Sometimes small things can have a big impact – whether it’s making your bed in the morning or making few changes to your website’s HTTP server configuration. Does that seem like an overstatement? The first months of 2020 have flushed down the drain all definitions of what’s normal and reasonable in our world. With almost half of the Earth’s population locked down in their homes due to the COVID‑19 pandemic, the Internet has become their only mode of communication, entertainment, buying food, working, and education. And each week the Internet is seeing higher network traffic and server load than ever before. According to a report [ more… ]

Now available for you and your family: See how Microsoft 365 helps you connect, work and learn from home

2020-04-21 KENNETH 0

Now available for you and your family: See how Microsoft 365 helps you connect, work and learn from home Microsoft 365 Personal and Family subscriptions are now generally available worldwide. “As everyone adapts to different and innovative ways of living, working, and organizing, we are here to help in that process,” says Yusuf Mehdi, corporate vice president, Modern Life, Search & Devices, in a blog post. “Today, we’re excited that Microsoft 365 has more to offer across free and premium experiences.” Mehdi lists 10 ways Microsoft can help you and your family experience more efficiency, enjoyment and ease across your lives. Head over to the Microsoft 365 post to read his list, which also previews features on the horizon. To check out plans and pricing and subscribe, head over to the Microsoft 365 product page. The post Now available for [ more… ]

No Image

USN-4333-1: Python vulnerabilities

2020-04-21 KENNETH 0

USN-4333-1: Python vulnerabilities python2.7, python3.4, python3.5, python3.6, python3.7 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Ubuntu 14.04 ESM Ubuntu 12.04 ESM Summary Several security issues were fixed in Python. Software Description python3.7 – An interactive high-level object-oriented language python2.7 – An interactive high-level object-oriented language python3.6 – An interactive high-level object-oriented language python3.5 – An interactive high-level object-oriented language python3.4 – An interactive high-level object-oriented language Details It was discovered that Python incorrectly stripped certain characters from requests. A remote attacker could use this issue to perform CRLF injection. (CVE-2019-18348) It was discovered that Python incorrectly handled certain HTTP requests. An attacker could possibly use this issue to cause a denial of service. (CVE-2020-8492) Update instructions The problem can be corrected by updating your system to the [ more… ]

No Image

USN-4334-1: Git vulnerability

2020-04-21 KENNETH 0

USN-4334-1: Git vulnerability git vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Git could be made to expose sensitive information. Software Description git – fast, scalable, distributed revision control system Details Carlo Arenas discovered that Git incorrectly handled certain URLs containing newlines, empty hosts, or lacking a scheme. A remote attacker could possibly use this issue to trick Git into returning credential information for a wrong host. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.10 git – 1:2.20.1-2ubuntu1.19.10.3 Ubuntu 18.04 LTS git – 1:2.17.1-1ubuntu0.7 Ubuntu 16.04 LTS git – 1:2.7.4-0ubuntu1.9 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2020-11008 Source: USN-4334-1: Git vulnerability

Amazon FSx 파일 서비스, 서울 리전 출시

2020-04-21 KENNETH 0

Amazon FSx 파일 서비스, 서울 리전 출시 Amazon FSx는 인기 있는 파일 시스템 구성을 위한 하드웨어 프로비저닝, 소프트웨어 구성, 패치 및 백업과 같은 시간 소모적인 관리 작업을 피하면서, 널리 사용되는 오픈 소스 및 상용 라이센스 파일 시스템의 풍부한 기능과 빠른 성능을 활용할 수 있습니다. 오늘 부터 서울 리전에서 사용 가능합니다! Amazon FSx는 현재 Windows File Server 및 고성능 워크로드 용 Luster 중에서 선택할 수 있습니다. 이제 부터 비용 효율적인 용량과 높은 수준의 안정성을 제공하며 다른 AWS 서비스와 통합되어 클라우드 네이티브 방식으로 파일 시스템을 관리하고 사용할 수 있습니다. 윈도용 Amazon FSx 파일 서버는 업계 표준 SMB (Service Message Block) 프로토콜을 통해 액세스 할 수있는 완전 관리되고 안정적인 파일 스토리지를 제공합니다. Luster 용 Amazon FSx는 기계 학습, 고성능 컴퓨팅 (HPC), 비디오 처리, 재무 모델링 및 EDA (Electronic Design Automation)와 같은 워크로드의 빠른 처리에 최적화 된 고성능 파일 시스템을 제공합니다. 두 파일 시스템에 [ more… ]