No Image

USN-5545-1: Linux kernel (OEM) vulnerability

2022-08-03 KENNETH 0

USN-5545-1: Linux kernel (OEM) vulnerability Arthur Mongodin discovered that the netfilter subsystem in the Linux kernel did not properly perform data validation. A local attacker could use this to escalate privileges in certain situations. Source: USN-5545-1: Linux kernel (OEM) vulnerability

No Image

Update to Windows Subsystem for Android™ on Windows 11 (August 2022)

2022-08-03 KENNETH 0

Update to Windows Subsystem for Android™ on Windows 11 (August 2022) Hello Windows Insiders, Today we are shipping an update for Windows Subsystem for Android™ on Windows 11 to all Windows Insider channels (U.S. only). This update (version 2206.40000.15.0) includes several new updates such as updates for input compatibility in apps such as games, networking and windowing improvements, and reliability updates. What’s New New suite of shims available to toggle in the Windows Subsystem for Android Settings app which enables better experiences in several apps Compatibility for games with joysticks (mapped to WASD) Compatibility for gamepad in games Compatibility for aiming in games with arrow keys Compatibility for sliding in games with arrow keys Scrolling improvements Networking improvements Android minimum window size defaulted to 220dp Improved dialog when unsupported VPN is detected New toggle to view/save diagnostic data in the [ more… ]

No Image

Announcing Windows 11 Insider Preview Build 22621.450 and 22622.450

2022-08-03 KENNETH 0

Announcing Windows 11 Insider Preview Build 22621.450 and 22622.450 Hello Windows Insiders, today we are releasing Windows 11 Insider Preview Build 22621.450 and Build 22622.450 (KB5015890) to the Beta Channel. In addition to the handful of fixes and improvements noted below, this update includes improvements to how we apply updates on top of each other as well. Build 22622.450 = New features rolling out. Build 22621.450 = New features off by default. As a reminder, Insiders who landed in the group with new features turned off by default (Build 22621.xxxx) can check for updates and choose to install the update that will have features rolling out (Build 22622.xxx). Fixes included for BOTH Build 22621.450 & Build 22622.450 This update includes the following improvements: New! We enhanced Microsoft Defender for Endpoint’s ability to identify and intercept ransomware and advanced attacks. New! [ more… ]

No Image

USN-5463-2: NTFS-3G vulnerabilities

2022-08-02 KENNETH 0

USN-5463-2: NTFS-3G vulnerabilities USN-5463-1 fixed vulnerabilities in NTFS-3G. This update provides the corresponding updates for Ubuntu 14.04 ESM and Ubuntu 16.04 ESM. Original advisory details: Roman Fiedler discovered that NTFS-3G incorrectly handled certain return codes. A local attacker could possibly use this issue to intercept protocol traffic between FUSE and the kernel. (CVE-2022-30783) It was discovered that NTFS-3G incorrectly handled certain NTFS disk images. If a user or automated system were tricked into mounting a specially crafted disk image, a remote attacker could use this issue to cause a denial of service, or possibly execute arbitrary code. (CVE-2022-30784, CVE-2022-30786, CVE-2022-30788, CVE-2022-30789) Roman Fiedler discovered that NTFS-3G incorrectly handled certain file handles. A local attacker could possibly use this issue to read and write arbitrary memory. (CVE-2022-30785, CVE-2022-30787) Source: USN-5463-2: NTFS-3G vulnerabilities

Amazon GuardDuty 신규 기능 – Amazon EBS 볼륨에 대한 맬웨어 탐지 제공

2022-08-02 KENNETH 0

Amazon GuardDuty 신규 기능 – Amazon EBS 볼륨에 대한 맬웨어 탐지 제공 Amazon GuardDuty를 사용하면 AWS 계정과 워크로드를 모니터링하여 악의적인 활동을 탐지할 수 있습니다. 오늘은 GuardDuty에 맬웨어를 탐지하는 기능을 추가합니다. 맬웨어는 워크로드를 위협하거나 리소스를 다른 용도로 사용하거나 데이터에 무단으로 액세스하는 데 사용되는 악성 소프트웨어입니다. GuardDuty 맬웨어 보호를 활성화하는 경우 EC2에서 실행 중인 EC2 인스턴스 또는 컨테이너 워크로드 중 하나가 의심스러운 활동을 수행하고 있음을 GuardDuty에서 탐지하면 맬웨어 스캔이 시작됩니다. 예를 들어, EC2 인스턴스가 다른 EC2 인스턴스에 대해 서비스 거부(DoS) 또는 무차별 대입 공격을 수행하거나 악의적으로 알려진 명령 및 통제 서버와 통신하는 경우 맬웨어 스캔이 트리거됩니다. GuardDuty는 많은 파일 시스템 유형을 지원하고, Windows 및 Linux 실행 파일, PDF 파일, 아카이브, 2진, 스크립트, 설치 프로그램, 이메일 데이터베이스 및 일반 이메일이 있는 맬웨어를 포함하거나 확산시키는 데 사용되는 것으로 알려진 파일 형식을 스캔합니다. 잠재적 맬웨어가 식별되면 위협 및 파일 이름, 파일 경로, EC2 인스턴스 ID, [ more… ]