No Image

USN-3976-1: Samba vulnerability

2019-05-14 KENNETH 0

USN-3976-1: Samba vulnerability samba vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.04 Ubuntu 18.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Samba could allow unintended access to network services. Software Description samba – SMB/CIFS file, print, and login server for Unix Details Isaac Boukris and Andrew Bartlett discovered that Samba incorrectly checked S4U2Self packets. In certain environments, a remote attacker could possibly use this issue to escalate privileges. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.04 samba – 2:4.10.0+dfsg-0ubuntu2.1 Ubuntu 18.10 samba – 2:4.8.4+dfsg-2ubuntu2.4 Ubuntu 18.04 LTS samba – 2:4.7.6+dfsg~ubuntu-0ubuntu2.10 Ubuntu 16.04 LTS samba – 2:4.3.11+dfsg-0ubuntu0.16.04.20 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2018-16860 Source: USN-3976-1: Samba vulnerability

Validating OAuth 2.0 Access Tokens with NGINX and NGINX Plus

2019-05-14 KENNETH 0

Validating OAuth 2.0 Access Tokens with NGINX and NGINX Plus Image courtesy of John T. on unsplash.com There are many options for authenticating API calls, from X.509 client certificates to HTTP Basic authentication. In recent years, however, a de facto standard has emerged in the form of OAuth 2.0 access tokens. These are authentication credentials passed from client to API server, and typically carried as an HTTP header. OAuth 2.0, however, is a maze of interconnecting standards. The processes for issuing, presenting, and validating an OAuth 2.0 authentication flow often rely on several related standards. At the time of writing there are eight OAuth 2.0 standards, and access tokens are a case in point, as the OAuth 2.0 core specification (RFC 6749) does not specify a format for access tokens. In the real world, there are two formats in common usage: JSON Web Token (JWT) as [ more… ]

Announcing UI Tests in CI/CD for Desktop App Developers

2019-05-14 KENNETH 0

Announcing UI Tests in CI/CD for Desktop App Developers For many years the ability to run UI tests in CI/CD has provided great value to web developers. This past Microsoft Build 2019 we were excited to announce desktop app developers can now also run UI tests in Azure DevOps! Desktop applications can now run automated UI tests in CI/CD on Azure DevOps using hosted or private agents, and setup is simple with a new Pipeline task. Why UI tests in CI will help App Developers Continuous Integration (CI) enables you to run automated tests of your application every time there’s a code change, and typically on servers so you’re not tying up desktop machines for testing. App developers have had the ability to run UI tests using WinAppDriver, and adding these tests to CI is important for a couple key [ more… ]

[도서] 머신 러닝 교과서 with 파이썬, 사이킷런, 텐서플로

2019-05-14 KENNETH 0

[도서] 머신 러닝 교과서 with 파이썬, 사이킷런, 텐서플로 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]머신 러닝 교과서 with 파이썬, 사이킷런, 텐서플로 세바스찬 라시카,바히드 미자리리 공저/박해선 역 | 길벗 | 2019년 05월 판매가 29,700원 (10%할인) | YES포인트 330원(1%지급) 이벤트 : IT모바일 예약판매 이벤트 아마존 머신 러닝 분야 베스트셀러! 기본기에 충실한 머신 러닝 입문서 코드 실행만으로는 머신 러닝을 충분히 이해할 수 없다. 머신 러닝을 제대로 이해하고 싶다면 코드 외에도 머신 러닝 이론과 머신 러닝 알 Source: [도서] 머신 러닝 교과서 with 파이썬, 사이킷런, 텐서플로

[도서] 쿠버네티스 기초 다지기 3/e

2019-05-14 KENNETH 0

[도서] 쿠버네티스 기초 다지기 3/e 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]쿠버네티스 기초 다지기 3/e 조나단 바이에르,제시 화이트 공저/박규태 역 | 에이콘출판사 | 2019년 05월 판매가 31,500원 (10%할인) | YES포인트 1,750원(5%지급) 이벤트 : IT모바일 예약판매 이벤트 쿠버네티스와 컨테이너 관리를 시작하는 입문자를 위한 안내서로, 쿠버네티스를 처음 접하는 사람들을 위해 얕지만 넓은 범위의 내용을 다룬다. 컨테이너와 쿠버네티스의 특징과 기능을 살펴보고 모니터링, 보안, 운 Source: [도서] 쿠버네티스 기초 다지기 3/e