No Image

2023 신입 공채 Android 뉴크루들의 항해 일지 (직무 기술 온보딩 회고)

2023-03-28 KENNETH 0

2023 신입 공채 Android 뉴크루들의 항해 일지 (직무 기술 온보딩 회고) 안녕하세요, 2023 신입 공채를 통해 카카오에 입사한 뉴크루 톡안드로이드 P셀 dante입니다. 지난 7주 동안 진행된 안드로이드(Android) 직무 기술 온보딩에서 어떤 경험을 했는지 공유해 보고자 합니다. 온보딩 소개 기술 온보딩 강의는 오준석 님(John)이 진행해 주셨고, 안드로이드 기술 온보딩은 아래와 같은 일정으로 진행되었습니다. 기술 온보딩 일정 신입들은 온보딩 기간 동안 1~2주 단위로 앱을 만드는 미션을 받게 됩니다. […] Source: 2023 신입 공채 Android 뉴크루들의 항해 일지 (직무 기술 온보딩 회고)

No Image

2023 카카오 신입 공채 iOS 온보딩 회고

2023-03-28 KENNETH 0

2023 카카오 신입 공채 iOS 온보딩 회고 들어가며 안녕하세요! 오픈링크 iOS셀의 forest입니다. 저는 지난 12월 2023 블라인드 신입공채로 카카오에 합류하게 되었습니다. 공채 뉴크루들은 입사하여, 약 1달간의 공통 온보딩 과정을 마친 후에 6주 동안 직무별 기술 온보딩 프로그램을 진행하게 됩니다. 이 중 제가 경험한 iOS 직무 기술 온보딩 프로그램에 대해서 회고해보려 합니다. 온보딩 첫날 기념사진 iOS 온보딩은 이렇게 진행됩니다 온보딩은 ⌜Swift 프로그래밍⌟ 저자이자 […] Source: 2023 카카오 신입 공채 iOS 온보딩 회고

No Image

USN-5978-1: Linux kernel (OEM) vulnerabilities

2023-03-28 KENNETH 0

USN-5978-1: Linux kernel (OEM) vulnerabilities It was discovered that the network queuing discipline implementation in the Linux kernel contained a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-1281) It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. (CVE-2022-2196) It was discovered that some AMD x86-64 processors with SMT enabled could speculatively execute instructions using a return address from a sibling thread. A local attacker could possibly use this to expose sensitive information. (CVE-2022-27672) Gerald Lee discovered that the USB Gadget file system implementation in the Linux kernel contained a [ more… ]

No Image

USN-5977-1: Linux kernel (OEM) vulnerabilities

2023-03-28 KENNETH 0

USN-5977-1: Linux kernel (OEM) vulnerabilities It was discovered that the network queuing discipline implementation in the Linux kernel contained a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-1281) It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. (CVE-2022-2196) Thadeu Cascardo discovered that the io_uring subsystem contained a double- free vulnerability in certain memory allocation error conditions. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2023-1032) Source: USN-5977-1: Linux kernel (OEM) vulnerabilities

No Image

USN-5976-1: Linux kernel (OEM) vulnerabilities

2023-03-28 KENNETH 0

USN-5976-1: Linux kernel (OEM) vulnerabilities It was discovered that the Upper Level Protocol (ULP) subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-0461) It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. (CVE-2022-2196) It was discovered that the Intel 740 frame buffer driver in the Linux kernel contained a divide by zero vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-3061) It was [ more… ]