Figure 1. Using adversarial samples and AI to make an ML system more robust
REF: https://blog.trendmicro.com/trendlabs-security-intelligence/adversarial-sample-generation-making-machine-learning-systems-robust-for-security/
2018年8月3日 星期五
2018年8月2日 星期四
[Check_mk Announce] New Check_MK beta release 1.5.0b10
---------- Forwarded message ---------
..Changes in all Check_MK Editions:
WATO:
* 6366 FIX: User and profile edit dialogs show wrong language when 'en' is configured
User interface:
* 6367 FIX: Fixed HTML fragments shown in hover title of perfometers
* 6360 FIX: Fixed HTML fragments in global settings titles
* 6363 FIX: Fixed "host_inventory" exception when using "Has inventory data" filter
* 6357 FIX: Facelift theme: Icon buttons were not using themed buttons
* 5917 FIX: Facelift theme: Fixed Logo in Browser tab
HW/SW inventory:
* 6386 FIX: esx_vsphere_hostsystem: Fixed crash if no hardware system information is available
* 6369 FIX: Fixed date shown for the first inventory history entry
DEB packaging:
* 6365 FIX: Another fix for debian package incompatibilities (extends 6340)
Core & setup:
* 6358 FIX: Fixed stale services on cluster nodes
Checks & agents:
* 6380 FIX: oracle_jobs: Bugfix for auto_drop=TRUE jobs
NOTE: Please refer to the migration notes!
* 6315 FIX: mssql_backup: Fixed missing default levels
* 6383 FIX: db2_bp_hitratios: Fixed conversion to float if any value contains a comma instead of a dot
* 6384 FIX: check_mk_agent.linux, check_mk_agent.solaris, check_mk_agent.openwrt: Quote command line in asynchronous MRPE call to prevent globbing and word splitting
* 6364 FIX: check_mk_active_bi: Fixed crashed checks (Regression in 1.5.0b9)
* 6381 FIX: apc_inrow_system_events, liebert_system_events: Fixed handling of empty section
* 6385 FIX: Check_MK service: Fixed 'missing agent sections' warning if the time period of a service is active
..You can download Check_MK from our download page:
* http://mathias-kettner.de/chec k_mk_download.html
Please mail bug reports and qualified feedback to feedback@check-mk.org.
We greatly thank you for using Check_MK and wish you a successful monitoring,
From: Check_mk Announcements
Date: Fri, Jul 27, 2018 at 4:36 PM
Date: Fri, Jul 27, 2018 at 4:36 PM
..Changes in all Check_MK Editions:
WATO:
* 6366 FIX: User and profile edit dialogs show wrong language when 'en' is configured
User interface:
* 6367 FIX: Fixed HTML fragments shown in hover title of perfometers
* 6360 FIX: Fixed HTML fragments in global settings titles
* 6363 FIX: Fixed "host_inventory" exception when using "Has inventory data" filter
* 6357 FIX: Facelift theme: Icon buttons were not using themed buttons
* 5917 FIX: Facelift theme: Fixed Logo in Browser tab
HW/SW inventory:
* 6386 FIX: esx_vsphere_hostsystem: Fixed crash if no hardware system information is available
* 6369 FIX: Fixed date shown for the first inventory history entry
DEB packaging:
* 6365 FIX: Another fix for debian package incompatibilities (extends 6340)
Core & setup:
* 6358 FIX: Fixed stale services on cluster nodes
Checks & agents:
* 6380 FIX: oracle_jobs: Bugfix for auto_drop=TRUE jobs
NOTE: Please refer to the migration notes!
* 6315 FIX: mssql_backup: Fixed missing default levels
* 6383 FIX: db2_bp_hitratios: Fixed conversion to float if any value contains a comma instead of a dot
* 6384 FIX: check_mk_agent.linux, check_mk_agent.solaris, check_mk_agent.openwrt: Quote command line in asynchronous MRPE call to prevent globbing and word splitting
* 6364 FIX: check_mk_active_bi: Fixed crashed checks (Regression in 1.5.0b9)
* 6381 FIX: apc_inrow_system_events, liebert_system_events: Fixed handling of empty section
* 6385 FIX: Check_MK service: Fixed 'missing agent sections' warning if the time period of a service is active
..You can download Check_MK from our download page:
* http://mathias-kettner.de/chec
Please mail bug reports and qualified feedback to feedback@check-mk.org.
We greatly thank you for using Check_MK and wish you a successful monitoring,
Plex: Polishing Podcasts
| We are super duper psyched to share with y’all that podcasts are officially out of beta*! Along with rich metadata and features like On Deck, personalized recommendations, variable speed playback, and a customizable home screen, we’ve got some awesome new goodies for your podcast pleasure: |
[USN-3722-1] ClamAV vulnerabilities
---------- Forwarded message ----------
From: Marc Deslauriers
Date: 2018-07-25 2:44 GMT+08:00
Summary:
ClamAV could be made to hang if it opened a specially crafted file.
Details:
It was discovered that ClamAV incorrectly handled parsing certain HWP
files. A remote attacker could use this issue to cause ClamAV to hang,
resulting in a denial of service. (CVE-2018-0360)
It was discovered that ClamAV incorrectly handled parsing certain PDF
files. A remote attacker could use this issue to cause ClamAV to hang,
resulting in a denial of service. (CVE-2018-0361)
References:
https://usn.ubuntu.com/usn/usn-3722-1
CVE-2018-0360, CVE-2018-0361
From: Marc Deslauriers
Date: 2018-07-25 2:44 GMT+08:00
Summary:
ClamAV could be made to hang if it opened a specially crafted file.
Details:
It was discovered that ClamAV incorrectly handled parsing certain HWP
files. A remote attacker could use this issue to cause ClamAV to hang,
resulting in a denial of service. (CVE-2018-0360)
It was discovered that ClamAV incorrectly handled parsing certain PDF
files. A remote attacker could use this issue to cause ClamAV to hang,
resulting in a denial of service. (CVE-2018-0361)
References:
https://usn.ubuntu.com/usn/usn-3722-1
CVE-2018-0360, CVE-2018-0361
Trello: Tweak These 5-Minute Productivity Tricks To Make Your Workdays More Organized
Start Your Morning Routine The Night Before
Mastering productive morning routines has become an art over the years. Olympic Gold medalists, movie stars, and millionaires all share their strategies on how to maximize the early hours of their days in order to set themselves up for a productive workday. It’s true that people who wake up earlier are often more productive, but you can get an additional boost the night before.
REF: https://blog.trello.com/tweak-5-minute-productivity-tricks-make-workdays-more-organized
New Version of the Spectre Vulnerability Allows Attack from the Network
By Swapnil Bhartiya
Monthly reports of new Spectre-related vulnerabilities are keeping security experts busy. Now a team of security researchers at the Graz University of Technology (Austria) has discovered another flaw, dubbed NetSpectre, that allows attacks over the network.
TrendLabs: Spam Campaign Abusing SettingContent-ms Found Dropping Same FlawedAmmyy RAT Distributed by Necurs
Figure 2. Infection chain of the spam campaign
REF: https://blog.trendmicro.com/trendlabs-security-intelligence/spam-campaign-abusing-settingcontent-ms-found-dropping-same-flawedammy-rat-distributed-by-necurs/
訂閱:
文章 (Atom)

