<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>資安通報 &#8211; FAQBOOK</title>
	<atom:link href="https://faqbook.net/category/%E8%B3%87%E5%AE%89%E9%80%9A%E5%A0%B1/feed" rel="self" type="application/rss+xml" />
	<link>https://faqbook.net</link>
	<description>Some SOP  Note  Leamed Article</description>
	<lastBuildDate>Sun, 14 Jun 2020 09:10:02 +0000</lastBuildDate>
	<language>zh-TW</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=5.6.2</generator>
	<item>
		<title>美國頂尖航太供應商遭 Maze 勒贖軟體攻擊，損失資料量達 1.5TB</title>
		<link>https://faqbook.net/aze-group</link>
					<comments>https://faqbook.net/aze-group#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Sun, 14 Jun 2020 09:10:02 +0000</pubDate>
				<category><![CDATA[勒贖軟體]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[aze group]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[maze]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=787</guid>

					<description><![CDATA[<p>位在德州的美國頂尖航太產業供應商 VT SAA，日前證實其公司網路遭到 Maze 勒贖軟體駭侵攻擊，儲存於該公司內部網路的敏感資料遭竊，且資料量高達 1.5TB。位在德州的美國頂尖航太產業供應商 VT SAA，在海洋、陸地和航太領域的軍用電子設備都是領導者；日前該公司證實其內部網路遭到 Maze 駭侵團體發動勒贖軟體駭侵攻擊；儲存於該公司內部網路的敏感資料遭竊，且資料量高達 1.5TB。</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/aze-group">美國頂尖航太供應商遭 Maze 勒贖軟體攻擊，損失資料量達 1.5TB</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/aze-group/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>駭侵者針對 Office 365 遠距工作用戶發動釣魚郵件詐騙攻擊</title>
		<link>https://faqbook.net/hacker-office365</link>
					<comments>https://faqbook.net/hacker-office365#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Wed, 10 Jun 2020 18:22:51 +0000</pubDate>
				<category><![CDATA[O365]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[Office]]></category>
		<category><![CDATA[Office 365]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[遠距工作]]></category>
		<category><![CDATA[釣魚郵件]]></category>
		<category><![CDATA[駭侵者]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=750</guid>

					<description><![CDATA[<p>資安廠商發現，近來有一波針對遠距工作 Office 365 用戶的釣魚郵件詐騙攻擊，佯稱用戶所屬單位要調整 VPN 設定，實則騙取駭入該單位所需的各項資訊。</p>
<p>Email 資安防護資安廠商 Abnormal Security 日前發表研究報告，指出該公司發現近來有一波針對遠距工作 Office 365 用戶的釣魚郵件詐騙攻擊；在釣魚郵件中，駭侵者佯稱用戶所屬單位要調整 VPN 設定，要求用戶輸入登入其 Office 365 的帳號密碼，以騙取駭入該單位所需的各項資訊。</p>
<p>廠商說，該公司在這波攻擊中已經觀察到至少 15,000 起針對不同目標的攻擊活動。由於疫情關係，全球有許多大型公司要求員工透過 VPN 在家工作，因此這波假稱更改 VPN 設定的釣魚攻擊相當有效。</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/hacker-office365">駭侵者針對 Office 365 遠距工作用戶發動釣魚郵件詐騙攻擊</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/hacker-office365/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Cisco 多漏洞問題</title>
		<link>https://faqbook.net/cisco-bugs</link>
					<comments>https://faqbook.net/cisco-bugs#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Fri, 30 Mar 2018 03:20:34 +0000</pubDate>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[Cisco bugs]]></category>
		<category><![CDATA[Cisco 多漏洞問題]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=673</guid>

					<description><![CDATA[<p>說明<br />
Cisco 多漏洞問題會影發服務中斷，異常<br />
詳細可參考 Cisco 網頁上說明</p>
<p>影響內容<br />
思科 IOS and IOS XE<br />
思科 Catalyst 2960-L and Digital Building Series<br />
思科 Catalyst 3850 and 3650 Series<br />
處理方式<br />
供應商已發放修補程式。<br />
參考官網更新</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/cisco-bugs">Cisco 多漏洞問題</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/cisco-bugs/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>OpenSSL Bugs</title>
		<link>https://faqbook.net/openssl-bugs</link>
					<comments>https://faqbook.net/openssl-bugs#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Fri, 30 Mar 2018 02:56:14 +0000</pubDate>
				<category><![CDATA[OpenSSL]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[OpenSSL Bugs]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=670</guid>

					<description><![CDATA[<p>說明<br />
Two vulnerabilities were reported in OpenSSL. A user can cause denial of service conditions on the target system. A user can bypass authentication in certain cases.</p>
<p>A user can create specially crafted ASN.1 data with a recursive definition that, when processed by the target application using the OpenSSL</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/openssl-bugs">OpenSSL Bugs</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/openssl-bugs/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>apache: Multiple vulnerabilities</title>
		<link>https://faqbook.net/apache-multiple-vulnerabilities</link>
					<comments>https://faqbook.net/apache-multiple-vulnerabilities#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Fri, 30 Mar 2018 02:47:15 +0000</pubDate>
				<category><![CDATA[Apache]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[apache]]></category>
		<category><![CDATA[apache: Multiple vulnerabilities]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=665</guid>

					<description><![CDATA[<p>說明<br />
The Apache httpd reports:</p>
<p>Out of bound write in mod_authnz_ldap with AuthLDAPCharsetConfig enabled<br />
(CVE-2017-15710)</p>
<p>mod_session: CGI-like applications that intend to read from mod_session’s<br />
‘SessionEnv ON’ could be fooled into reading user-supplied data instead.<br />
(CVE-2018-1283)</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/apache-multiple-vulnerabilities">apache: Multiple vulnerabilities</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/apache-multiple-vulnerabilities/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>IBM DB2: Multiple vulnerabilities</title>
		<link>https://faqbook.net/ibm-db2-multiple-vulnerabilities</link>
					<comments>https://faqbook.net/ibm-db2-multiple-vulnerabilities#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Wed, 21 Mar 2018 17:40:10 +0000</pubDate>
				<category><![CDATA[IBM]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[ibm db2]]></category>
		<category><![CDATA[ibm-db2-multiple-vulnerabilities]]></category>
		<category><![CDATA[multiple vulnerabilities]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=615</guid>

					<description><![CDATA[<p>說明<br />
Impact/Access: Execute Arbitrary Code/Commands – Remote/Unauthenticated<br />
Access Privileged Data – Remote/Unauthenticated<br />
Overwrite Arbitrary Files – Existing Account<br />
Denial of Service – Remote/Unauthenticated</p>
<p>影響內容<br />
Software version: 9.7, 10.1, 10.5, 11.1</p>
<p>處理方式<br />
軟件供應商已提供修補程式</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/ibm-db2-multiple-vulnerabilities">IBM DB2: Multiple vulnerabilities</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/ibm-db2-multiple-vulnerabilities/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>ISC BIND 繞過限制漏洞</title>
		<link>https://faqbook.net/isc-bind-security-issues</link>
					<comments>https://faqbook.net/isc-bind-security-issues#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Fri, 16 Mar 2018 15:26:56 +0000</pubDate>
				<category><![CDATA[ISC BIND]]></category>
		<category><![CDATA[資安通報]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=570</guid>

					<description><![CDATA[<p>說明<br />
“update-policy local;”, which is a permission cluster provided<br />
as a shortcut for operators who use Dynamic DNS (DDNS), was<br />
misleadingly named in that its original implementation did not<br />
actually enforce a requirement that the updates it allows originate<br />
locally.</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/isc-bind-security-issues">ISC BIND 繞過限制漏洞</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/isc-bind-security-issues/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>CURL 多項漏洞</title>
		<link>https://faqbook.net/curl-security-issues</link>
					<comments>https://faqbook.net/curl-security-issues#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Fri, 16 Mar 2018 15:13:54 +0000</pubDate>
				<category><![CDATA[CURL]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[curl-security-issues]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=567</guid>

					<description><![CDATA[<p>1. 遠程用戶可能會導致目標應用程序在處理RTSP URL時觸發緩衝區復制錯誤，並導致應用程序崩潰或訪問目標系統上潛在的敏感信息。<br />
2. 遠程服務器可以將特製的重定向返回到LDAP URL以觸發ldap_get_attribute_ber（）中的空指針取消引用可能導致目標應用程序崩潰。允許LDAP URL的應用程序也受到影響。使用OpenLDAP構建的捲曲版本受到影響。</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/curl-security-issues">CURL 多項漏洞</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/curl-security-issues/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>VMware Security Advisories(安全通報)</title>
		<link>https://faqbook.net/vmware-security-advisories</link>
					<comments>https://faqbook.net/vmware-security-advisories#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Fri, 16 Mar 2018 14:57:52 +0000</pubDate>
				<category><![CDATA[VMware]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[VMware Security Advisories]]></category>
		<guid isPermaLink="false">https://faqbook.net/?p=564</guid>

					<description><![CDATA[<p>說明<br />
VMware Workstation和Fusion報告了一個漏洞。遠程用戶可能會導致目標系統上的拒絕服務條件。<br />
遠程用戶可以打開大量的VNC會話，導致未指定的拒絕服務條件。<br />
手動啟用VNC的系統會受到影響。</p>
<p>影響內容<br />
Workstation 12.X, 14.X<br />
Fusion 8.X, 10.X<br />
處理方式<br />
更新至版本:<br />
Workstation 14.1.1<br />
Fusion 10.1.1</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/vmware-security-advisories">VMware Security Advisories(安全通報)</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/vmware-security-advisories/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Exim 任意執行程式碼漏洞</title>
		<link>https://faqbook.net/exim-security-issues</link>
					<comments>https://faqbook.net/exim-security-issues#respond</comments>
		
		<dc:creator><![CDATA[derek]]></dc:creator>
		<pubDate>Thu, 15 Mar 2018 01:52:35 +0000</pubDate>
				<category><![CDATA[Exim]]></category>
		<category><![CDATA[資安通報]]></category>
		<category><![CDATA[exim]]></category>
		<category><![CDATA[exim-security-issues]]></category>
		<guid isPermaLink="false">http://faqbook.net/?p=538</guid>

					<description><![CDATA[<p>說明<br />
在2018年2月5日報告了Exim的base64解碼函數中的溢出漏洞，標識為CVE-2018-6789。自從exim第一次提交以來就存在這個錯誤，因此所有版本都受到影響。根據研究，可以利用它來獲得預授權遠程代碼執行，並且至少有400,000台服務器處於風險之中。補丁版本4.90.1已經發布，我們建議立即升級exim。</p>
<p>影響內容<br />
Exim 4.90.1之前的版本</p>
<p>這篇文章 <a rel="nofollow" href="https://faqbook.net/exim-security-issues">Exim 任意執行程式碼漏洞</a> 最早出現於 <a rel="nofollow" href="https://faqbook.net">FAQBOOK</a>。</p>
]]></description>
		
					<wfw:commentRss>https://faqbook.net/exim-security-issues/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
