{"id":12396,"date":"2018-05-25T08:00:22","date_gmt":"2018-05-25T16:00:22","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2018\/05\/25\/news-6165\/"},"modified":"2018-05-25T08:00:22","modified_gmt":"2018-05-25T16:00:22","slug":"news-6165","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2018\/05\/25\/news-6165\/","title":{"rendered":"TippingPoint Threat Intelligence and Zero-Day Coverage \u2013 Week of May 21, 2018"},"content":{"rendered":"<p><strong>Credit to Author: Elisa Lippincott (TippingPoint Global Product Marketing)| Date: Fri, 25 May 2018 12:00:45 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"205\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint-300x205.jpg\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"float: left; margin-right: 5px;\" srcset=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint.jpg 300w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint-125x85.jpg 125w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>Not that I needed to the reminder, but the influx of emails with the subject line \u201cUpdates to our Privacy Policy\u201d from companies that I deal with (and some that I\u2019ve never heard of!) means that TODAY is the day! The General Data Protection Regulation (GDPR) has officially taken effect. Originally adopted by the European Union (EU) in 2016 in an effort to protect EU citizen data in a consistent manner, the regulation gave companies two years to achieve GDPR compliance. So everyone is 100 percent compliant, right? C\u2019mon, you had two years to get ready.<\/p>\n<p>Unfortunately, as everyone suspected, it\u2019s not even close. According to a <a href=\"https:\/\/iapp.org\/media\/pdf\/resource_center\/Ponemon_race-to-gdpr.pdf\">survey<\/a> conducted last month by the Ponemon Institute to over 1,000 companies in the United States and Europe, half of the companies will not meet the deadline or didn\u2019t know if they would. But that\u2019s just one side of the story. Reuters <a href=\"https:\/\/www.reuters.com\/article\/us-europe-privacy-analysis\/european-regulators-were-not-ready-for-new-privacy-law-idUSKBN1I915X\">surveyed<\/a> 24 European regulators earlier this month and 17 them said they didn\u2019t have the funding or resources in place to respond to GDPR complaints. It will be interesting to see how GDPR plays out and how it will be enforced. Will my favorite shoe store stop sending me sale notices? Will it mean the death of the e-newsletter? Only time will tell.<\/p>\n<p>If you need information on how to prepare for GDPR, Trend Micro has a resource page that includes a checklist, case studies and other key resources. You can even learn from our experiences on how we prepared for GDPR. Get the latest information here: <a href=\"https:\/\/www.trendmicro.com\/en_us\/business\/capabilities\/solutions-for\/gdpr-compliance.html\">https:\/\/www.trendmicro.com\/en_us\/business\/capabilities\/solutions-for\/gdpr-compliance.html<\/a><\/p>\n<p><strong>New Product Version Release<\/strong><\/p>\n<p>Earlier this week, we released version 5.0.1 build 108768 of the TippingPoint Security Management System (SMS). For a complete list of enhancements and changes, customers can refer to the product Release Notes located on the <a href=\"https:\/\/tmc.tippingpoint.com\/TMC\/\">Threat Management Center (TMC) website<\/a>. For questions or technical assistance, customers can contact the Trend Micro TippingPoint Technical Assistance Center (<a href=\"https:\/\/tmc.tippingpoint.com\/TMC\/Support?parentFolderId=support&amp;contentId=Support_Contacts\">TAC<\/a>).<\/p>\n<p><strong>Zero-Day Filters<\/strong><\/p>\n<p>There are 15 new zero-day filters covering five vendors in this week\u2019s Digital Vaccine (DV) package. A number of existing filters in this week\u2019s DV package were modified to update the filter description, update specific filter deployment recommendation, increase filter accuracy and\/or optimize performance. You can browse the list of <a href=\"http:\/\/www.zerodayinitiative.com\/advisories\/published\/\">published advisories<\/a> and <a href=\"http:\/\/www.zerodayinitiative.com\/advisories\/upcoming\/\">upcoming advisories<\/a> on the <a href=\"http:\/\/www.zerodayinitiative.com\/\">Zero Day Initiative<\/a> website. You can also follow the Zero Day Initiative on Twitter <a href=\"https:\/\/twitter.com\/thezdi\">@thezdi<\/a> and on their <a href=\"https:\/\/www.zerodayinitiative.com\/blog\">blog<\/a>.<\/p>\n<p><strong><em>Advantech (9)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>31776: ZDI-CAN-5608,5612: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>31777: ZDI-CAN-5609: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>31778: ZDI-CAN-5610,5649: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>31789: ZDI-CAN-5643: Zero Day Initiative Vulnerability (Advantech WebAccess HMI Designer)<\/li>\n<li>31842: ZDI-CAN-5650: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>31843: ZDI-CAN-5651: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>31844: ZDI-CAN-5652: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>31846: ZDI-CAN-5653: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>31847: ZDI-CAN-5654: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>Microsoft (3)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>31759: ZDI-CAN-5605: Zero Day Initiative Vulnerability (Microsoft Edge)<\/li>\n<li>31784: HTTP: Microsoft Edge Undo Information Disclosure Vulnerability (ZDI-18-428)<\/li>\n<li>31787: ZDI-CAN-5613: Zero Day Initiative Vulnerability (Microsoft Edge)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>NetGain (1)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>31764: TCP: NetGain Systems Enterprise Manager RMI Registry Insecure Deserialization (ZDI-17-953)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>Squid (1)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>31765: HTTP: Squid Reverse Proxy sslBumpAccessCheck Denial-of-Service Vulnerability (ZDI-18-309)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>Trend Micro (1)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>31788: ZDI-CAN-5640: Zero Day Initiative Vulnerability (Trend Micro Endpoint Application Control)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong>Missed Last Week\u2019s News?<\/strong><\/p>\n<p>Catch up on last week\u2019s news in my <a href=\"https:\/\/blog.trendmicro.com\/tippingpoint-threat-intelligence-and-zero-day-coverage-week-of-may-14-2018\/\">weekly recap<\/a>.<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\/tippingpoint-threat-intelligence-and-zero-day-coverage-week-of-may-21-2018\/\">TippingPoint Threat Intelligence and Zero-Day Coverage \u2013 Week of May 21, 2018<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\"><\/a>.<\/p>\n<p><a href=\"https:\/\/blog.trendmicro.com\/tippingpoint-threat-intelligence-and-zero-day-coverage-week-of-may-21-2018\/\" target=\"bwo\" >http:\/\/feeds.trendmicro.com\/TrendMicroSimplySecurity<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Elisa Lippincott (TippingPoint Global Product Marketing)| Date: Fri, 25 May 2018 12:00:45 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"205\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint-300x205.jpg\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"float: left; margin-right: 5px;\" srcset=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint.jpg 300w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint-125x85.jpg 125w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>Not that I needed to the reminder, but the influx of emails with the subject line \u201cUpdates to our Privacy Policy\u201d from companies that I deal with (and some that I\u2019ve never heard of!) means that TODAY is the day! The General Data Protection Regulation (GDPR) has officially taken effect. Originally adopted by the European&#8230;<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\/tippingpoint-threat-intelligence-and-zero-day-coverage-week-of-may-21-2018\/\">TippingPoint Threat Intelligence and Zero-Day Coverage \u2013 Week of May 21, 2018<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\"><\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10378,10413],"tags":[18255,12116,10384,714,18522,18256,10415],"class_list":["post-12396","post","type-post","status-publish","format-standard","hentry","category-security","category-trendmicro","tag-digital-vaccine","tag-gdpr","tag-network","tag-security","tag-security-management-system","tag-tippingpoint","tag-zero-day-initiative"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/12396","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=12396"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/12396\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=12396"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=12396"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=12396"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}