微軟:2023 年的 5 個身份優先事項

微軟發佈了一篇2023 年的 5 個身份優先事項

  • 使用“深度防禦”方法防止身份洩露。
  • 實現身份安全現代化,以更少的資源做更多的事情。
  • 通過配置身份和網絡訪問解決方案協同工作來全面保護訪問。
  • 簡化和自動化身份管理。
  • 以更便宜、更快速、更值得信賴的方式驗證遠程用戶。

詳情請看:

​​Microsoft Entra: 5 identity priorities for 2023

Posted in  on 5月 15, 2023 by Kevin |  

CISA新增了7個弱點漏洞到已知被利用的弱點漏洞清單-2023/05/12

CISA新增了7個弱點漏洞到已知被利用的弱點漏洞清單:

  • CVE-2023-25717 Multiple Ruckus Wireless Products CSRF and RCE Vulnerability
  • CVE-2021-3560 Red Hat Polkit Incorrect Authorization Vulnerability
  • CVE-2014-0196 Linux Kernel Race Condition Vulnerability
  • CVE-2010-3904 Linux Kernel Improper Input Validation Vulnerability
  • CVE-2015-5317 Jenkins User Interface (UI) Information Disclosure Vulnerability
  • CVE-2016-3427 Oracle Java SE and JRockit Unspecified Vulnerability
  • CVE-2016-8735 Apache Tomcat Remote Code Execution Vulnerability
詳情請看:

CISA發布了15個工業控制系統的安全公告-2023/05/11

CISA發布了15個工業控制系統的安全公告,包含安全議題,漏洞與曝露的風險:

  • ICSA-23-131-01 Siemens Solid Edge
  • ICSA-23-131-02 Siemens SCALANCE W1750D
  • ICSA-23-131-03 Siemens Siveillance
  • ICSA-23-131-04 Siemens SIMATIC Cloud Connect 7
  • ICSA-23-131-05 Siemens SINEC NMS Third-Party
  • ICSA-23-131-06 Siemens SCALANCE LPE9403
  • ICSA-23-131-07 Sierra Wireless AirVantage
  • ICSA-23-131-08 Teltonika Remote Management System and RUT Model Routers
  • ICSA-23-131-09 Rockwell Automation Kinetix 5500 EtherNetIP Servo Drive
  • ICSA-23-131-10 Rockwell Automation Arena Simulation Software
  • ICSA-23-131-11 BirdDog Cameras & Encoders
  • ICSA-23-131-12 SDG PnPSCADA
  • ICSA-23-131-13 PTC Vuforia Studio
  • ICSA-23-131-14 Rockwell PanelView 800
  • ICSA-23-131-15 Rockwell ThinManager
詳情請看:
Posted in  on 5月 12, 2023 by Kevin |  

The Hacker News:使用者權限對軟體即服務(SaaS)的影響

The Hacker News發佈了一篇文章關於使用者權限對軟體即服務(SaaS)的影響

文章中提出了四個思考的問題點,讓管理者思考如何防護:
  • 什麼是用戶權限?
  • “最小特權規則”的目的是什麼?
  • 為什麼用戶權限對安全很重要?
  • 為什麼用戶訪問審查很重要?

詳情請看:

Why Do User Permissions Matter for SaaS Security?

Posted in  on 5月 11, 2023 by Kevin |  

CISA新增了3個弱點漏洞到已知被利用的弱點漏洞清單-2023/05/01

CISA新增了3個弱點漏洞到已知被利用的弱點漏洞清單

  • CVE-2023-1389 TP-Link Archer AX-21 Command Injection Vulnerability
  • CVE-2021-45046 Apache Log4j2 Deserialization of Untrusted Data Vulnerability 
  • CVE-2023-21839 Oracle WebLogic Server Unspecified Vulnerability 

詳情請看:

Help Net Security:2023年加強資安事件應變的建議

Help Net Security發佈了一篇2023年加強資安事件應變的建議

文章中建議了5個作法,可以提升組織資訊安全事件回應的方法:
  • 提高事件應變計劃和行動手冊的同仁意識
  • 在採用新技術時修改資安事件應變計劃計劃
  • 定期演練與測試資安事件應變計劃
  • 制定零日攻擊預算
  • 確保培訓是重中之重

詳情請看:

How to improve your incident response plan for 2023

Posted in  on 5月 01, 2023 by Kevin |