본문 바로가기

보안정보/2020년 3월

2020년 3월 18일 보안정보 스크래핑

3월 18일 보안정보 스크래핑 

==================================================================== 

+ 주요 취약점 - 특이사항 없음
 
==================================================================== 

+ 취약점 - Adobe Acrobat and Adobe Reader 취약점

 1. Adobe Acrobat and Adobe Reader 취약점

Adobe Acrobat and Adobe Reader privilege escalation
CVE-2020-3803
https://exchange.xforce.ibmcloud.com/vulnerabilities/177853

Adobe Acrobat and Adobe Reader code execution
CVE-2020-3797
https://exchange.xforce.ibmcloud.com/vulnerabilities/177852

Adobe Acrobat and Adobe Reader information disclosure
CVE-2020-3800
https://exchange.xforce.ibmcloud.com/vulnerabilities/177850

Adobe Acrobat and Adobe Reader code execution
CVE-2020-3802
https://exchange.xforce.ibmcloud.com/vulnerabilities/177849

Adobe Acrobat and Adobe Reader code execution
CVE-2020-3801
https://exchange.xforce.ibmcloud.com/vulnerabilities/177848

Adobe Acrobat and Adobe Reader code execution
CVE-2020-3793
https://exchange.xforce.ibmcloud.com/vulnerabilities/177847

Adobe Acrobat and Adobe Reader code execution
CVE-2020-3792
https://exchange.xforce.ibmcloud.com/vulnerabilities/177846

Adobe Acrobat and Adobe Reader buffer overflow
CVE-2020-3799
https://exchange.xforce.ibmcloud.com/vulnerabilities/177845

Adobe Acrobat and Adobe Reader code execution
CVE-2020-3795
https://exchange.xforce.ibmcloud.com/vulnerabilities/177844

Adobe Acrobat and Adobe Reader information disclosure
CVE-2020-3806
https://exchange.xforce.ibmcloud.com/vulnerabilities/177843

Adobe Acrobat and Adobe Reader code execution
CVE-2020-3805
https://exchange.xforce.ibmcloud.com/vulnerabilities/177239

Adobe Acrobat and Adobe Reader information disclosure
CVE-2020-3804
https://exchange.xforce.ibmcloud.com/vulnerabilities/177238

==================================================================== 

+ 보안이슈 - 랜섬웨어 공격자들, 방어자들에게 틈을 주고 있다 외 2건 

 1. 랜섬웨어 공격자들, 방어자들에게 틈을 주고 있다
랜섬웨어 공격자들, 최초 침투 후 평균 3일 동안 정찰해 가장 치명적인 곳 파악함.
게다가 사람이 근무하지 않는 시간대를 주로 노림.
따라서 보안 시스템을 24시간 운영하고, 재빠른 대응 체제를 구축하는 것이 중요.
출처: 보안뉴스 (https://www.boannews.com/media/view.asp?idx=87031)

 2. 중국發 게임 플랫폼 '스팀' 해킹 기승
최근 중국 해커의 스팀 계정을 해킹하려는 시도가 부쩍 늘어
해킹 피해를 막으려면 ‘스팀 가드’ 등 보안 서비스 사용이 필수
컴퓨터가 악성코드 등에 감염된 경우에는 스팀가드를 쓰더라도 손쉽게 뚫릴 수 있어
출처: 아이티조선 (http://it.chosun.com/site/data/html_dir/2020/03/17/2020031702296.html)

 3. 해킹을 막는 ‘사소하고 기본적인’ 보안 조치
초연결 시대, 우리의 일상을 뿌리채 흔들 수 있는 해킹으로부터 스스로를 지켜보자
출처: 시시티비뉴스 (http://www.cctvnews.co.kr/news/articleView.html?idxno=160780)

====================================================================