How to Add Wallarm to Protect Your NGINX Plus Installation

2017-07-21 KENNETH 0

How to Add Wallarm to Protect Your NGINX Plus Installation Why a WAF? If you are developing applications based on a high‑performance application server such as NGINX Plus, you need to consider security implications, especially if your web application accepts requests from outside the company perimeter. A web application firewall (WAF) is a security module focused on applications themselves, providing highly granular and customizable logic for protecting both web applications and the underlying data. For example, many of the vulnerabilities a WAF protects from are common across many web applications. These types of vulnerabilities are well documented in Open Web Application Security Project (OWASP) and include SQL injection, cross‑site scripting, field/cookie validation, and others. Together, NGINX Plus and WAF: Inspect traffic at Layer 7 Protect web applications from OWASP vulnerabilities Can be configured with security rules based on signatures, specific to the web [ more… ]

[도서] Make: 드론

2017-07-21 KENNETH 0

[도서] Make: 드론 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]Make: 드론 데이비드 맥그리피 저/임지순 역/김용현,정성일 감수 | 한빛미디어 | 2017년 08월 판매가 18,000원 (10%할인) | YES포인트 1,000원(5%지급) 이벤트 : 주목 IT 신간&예약판매 사은품 이벤트 강력한 드론 비행을 위한 상용 드론 개조 프로젝트! 『Make: 드론』은 쉽게 구할 수 있는 대중적인 상용 드론을 개조하여, 기존 모델보다 강력한 드론으로 업그레이드하는 프로젝트를 다룬 책이다. 이 책에서는 Source: [도서] Make: 드론

No Image

USN-3357-1: MySQL vulnerabilities

2017-07-21 KENNETH 0

USN-3357-1: MySQL vulnerabilities Ubuntu Security Notice USN-3357-1 20th July, 2017 mysql-5.5, mysql-5.7 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.04 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in MySQL. Software description mysql-5.5 – MySQL database mysql-5.7 – MySQL database Details Multiple security issues were discovered in MySQL and this update includesnew upstream MySQL versions to fix these issues. MySQL has been updated to 5.5.57 in Ubuntu 14.04 LTS. Ubuntu 16.04 LTSand Ubuntu 17.04 have been updated to MySQL 5.7.19. In addition to security fixes, the updated packages contain bug fixes,new features, and possibly incompatible changes. Please see the following for more information:http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-56.htmlhttp://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-57.htmlhttp://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-19.htmlhttp://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.04: mysql-server-5.7 5.7.19-0ubuntu0.17.04.1 Ubuntu 16.04 LTS: mysql-server-5.7 5.7.19-0ubuntu0.16.04.1 Ubuntu 14.04 [ more… ]

No Image

RHSA-2017:1792-1: Critical: java-1.6.0-sun security update

2017-07-21 KENNETH 0

RHSA-2017:1792-1: Critical: java-1.6.0-sun security update Red Hat Enterprise Linux: An update for java-1.6.0-sun is now available for Oracle Java for Red Hat Enterprise Linux 6 and Oracle Java for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. CVE-2017-10053, CVE-2017-10067, CVE-2017-10074, CVE-2017-10081, CVE-2017-10087, CVE-2017-10089, CVE-2017-10096, CVE-2017-10101, CVE-2017-10102, CVE-2017-10105, CVE-2017-10107, CVE-2017-10108, CVE-2017-10109, CVE-2017-10110, CVE-2017-10115, CVE-2017-10116, CVE-2017-10135, CVE-2017-10193, CVE-2017-10198, CVE-2017-10243 Source: RHSA-2017:1792-1: Critical: java-1.6.0-sun security update

No Image

RHSA-2017:1791-1: Critical: java-1.7.0-oracle security update

2017-07-21 KENNETH 0

RHSA-2017:1791-1: Critical: java-1.7.0-oracle security update Red Hat Enterprise Linux: An update for java-1.7.0-oracle is now available for Oracle Java for Red Hat Enterprise Linux 6 and Oracle Java for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. CVE-2017-10053, CVE-2017-10067, CVE-2017-10074, CVE-2017-10081, CVE-2017-10086, CVE-2017-10087, CVE-2017-10089, CVE-2017-10090, CVE-2017-10096, CVE-2017-10101, CVE-2017-10102, CVE-2017-10105, CVE-2017-10107, CVE-2017-10108, CVE-2017-10109, CVE-2017-10110, CVE-2017-10114, CVE-2017-10115, CVE-2017-10116, CVE-2017-10118, CVE-2017-10135, CVE-2017-10176, CVE-2017-10193, CVE-2017-10198, CVE-2017-10243 Source: RHSA-2017:1791-1: Critical: java-1.7.0-oracle security update