-
Oracle cve-2020-14606 & CVE-2020-14701. It makes interested people want to know more (17-7-2020)
Preface: The addition of a forged TCP packet to an existing TCP session. Can only be performed on unsecured sessions (not HTTPS). About Oracle Critical Patch Update – July 2020 : When I open the related Oracle article. It was amazing that containing a whole bunch of vulnerability details. Meanwhile I had headache that how…
-
Point of view – CVE-2020-1350 Windows DNS Server RCE (14th Jul 2020)
Preface: Perhaps we ignore DNS server side design weakness so far. It is on the way impacting cyber security world. Background: DNS is a hierarchical client-server protocol. Each domain is served by one or more DNS servers, meaning requests for subdomains are sent to these servers. Replies can also be cached by intermediate servers in…
-
Even you have Phoenix shield, all depends on endpoint – 14th jul 2020
Preface: Mobile has 50.13%, Desktop has 47.06% – June 2019 – June 2020 Background: MobileIron helps you simplify the configuration of enterprise settings including email, Wi-Fi, and VPN and more. Meanwhile, MobileIron provides unified endpoint and enterprise mobility management (EMM) for mobile devices. Vulnerabilities details: Please refer to url https://www.mobileiron.com/en/blog/mobileiron-security-updates-available Comment: The official announcement did…
-
reflections on the poc – aruba clearpass policy manager multiple vulnerabilities (13th Jul 2020)
Preface: WiFi features from beginning phase a small group of access extended to enterprises infrastructure nowadays. Even the IoT 4.0 and Industrial system especially ICS and IACS system will be found his footprint. Background: Aruba’s ClearPass Policy Manager, part of the Aruba 360 Secure Fabric, provides role- and device-based secure network access control for IoT,…
-
security focus: Citrix security bulletin CTX276688 (9th JUl 2020)
Preface: Typically, North-South traffic is load balanced by Ingress devices such as Citrix ADCs while East-West traffic is load balanced by kube-proxy. Since kube-proxy only provides limited layer-4 load balancing, service owners can utilize the Citrix ingress controller to achieve sophisticated layer-7 controls for East-West traffic using the Ingress CPX ADCs. Security Focus: With reference…
-
VMware release security update for VeloCloud – 7th Jul 2020
Background: The VMware SD-WAN Orchestrator provides centralized enterprise-wide installation, configuration and real-time monitoring in addition to orchestrating the data flow through the cloud network. Technical highlight – The VeloCloud Orchestrator (VCO) stores only flow statistics with high resolution to provide visibility and troubleshooting capability.By default, a maximum of one million flows are rolled up per…
-
Bootstrap modal forms capable live add edit delete datatables records – stay alert (7th jul 2020)
Preface: Bootstrap modal forms are displayed-on-action pop-up forms that are used for gathering data from website visitors and to register or log users. Background: PHPZAG[.]COM is a programming blog that publishes practical and useful tutorials for programmers and web developers. Solution formulated by PHPZAG – Live Add, Edit and Delete Datatables Records with Ajax, PHP…
-
Cloud service providers remain vigilant – Nginx controller NATS vulnerability – CVE-2020-5910
Preface: Nginx was written specifically to address the performance limitations of Apache web servers Background: In March 2019, Nginx Inc was acquired by F5 Networks for US$670 million. According to statistic on 2020. Nginx server deployed by “375 million websites. There are 1,500 paying customers. Vulnerability detail : A malicious user with access to the…
-
Samba releases security updates – 4th Jul 2020
Preface: A set of unsafe default configurations for LDAP channel binding and LDAP signing exist on Active Directory domain controllers that let LDAP clients communicate with them without enforcing LDAP channel binding and LDAP signing. This can open Active Directory domain controllers to an elevation of privilege vulnerability, said Microsoft. Notice: If you are a…
-
Perhaps Microsoft Windows Codecs Library Remote Code Execution Vulnerability let attacker exploit “write4”. 2nd Jul 2020
Preface: Currently, there are no known workarounds or mitigations for these vulnerabilities. Thankfully, the Redmond adds that the flaws are not publicly disclosed and that there are no known exploits in the wild. The firm credits Trend Micro’s Zero Day Initiative for privately disclosing the bugs. Background:From security point of view, attacker who keen to…