{"id":12738,"date":"2018-07-06T07:00:02","date_gmt":"2018-07-06T15:00:02","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2018\/07\/06\/news-6506\/"},"modified":"2018-07-06T07:00:02","modified_gmt":"2018-07-06T15:00:02","slug":"news-6506","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2018\/07\/06\/news-6506\/","title":{"rendered":"Zero-Day Coverage Update \u2013 Week of July 2, 2018"},"content":{"rendered":"<p><strong>Credit to Author: Elisa Lippincott (Global Threat Communications)| Date: Fri, 06 Jul 2018 13:51:43 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"225\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2018\/07\/0-day-graphic-large-300x225.png\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"float: left; margin-right: 5px;\" srcset=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2018\/07\/0-day-graphic-large-300x225.png 300w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2018\/07\/0-day-graphic-large.png 305w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>The General Data Protection Regulation (GDPR) has been up and running for a couple of months now and your organization is compliant. It\u2019s time to take a little break \u2013 well, not so fast! Late last week, the State of California passed a new <a href=\"http:\/\/leginfo.legislature.ca.gov\/faces\/billNavClient.xhtml?bill_id=201720180AB375\">data privacy law<\/a> called the California Consumer Privacy Act of 2018. Set to go in effect on January 1, 2020, it is being regarded as the strongest digital privacy policy in the United States. While it\u2019s not as comprehensive as GDPR, there is opportunity for additional revisions to the law since it was passed by the legislature just in time to withdraw the proposed law from the November ballot. Had the initiative ended up on the ballot, any amendments to the existing text would be next to impossible. There will be much more discussion on this as the deadline gets closer. In the meantime, you can check to see if your organization is GDPR compliant by visiting <a href=\"http:\/\/www.trendmicro.com\/gdpr\">www.trendmicro.com\/gdpr<\/a>.<\/p>\n<p><strong>Zero-Day Filters<\/strong><\/p>\n<p>There are 29 new zero-day filters covering eight vendors in this week\u2019s Digital Vaccine (DV) package. A number of existing filters in this week\u2019s DV package were modified to update the filter description, update specific filter deployment recommendation, increase filter accuracy and\/or optimize performance. You can browse the list of <a href=\"http:\/\/www.zerodayinitiative.com\/advisories\/published\/\">published advisories<\/a> and <a href=\"http:\/\/www.zerodayinitiative.com\/advisories\/upcoming\/\">upcoming advisories<\/a> on the <a href=\"http:\/\/www.zerodayinitiative.com\/\">Zero Day Initiative<\/a> website. You can also follow the Zero Day Initiative on Twitter <a href=\"https:\/\/twitter.com\/thezdi\">@thezdi<\/a> and on their <a href=\"https:\/\/www.zerodayinitiative.com\/blog\">blog<\/a>.<\/p>\n<p><strong><em>ABB (4)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>32331: ZDI-CAN-6144: Zero Day Initiative Vulnerability (ABB Panel Builder 800)<\/li>\n<li>32332: ZDI-CAN-6143: Zero Day Initiative Vulnerability (ABB Panel Builder 800)<\/li>\n<li>32334: ZDI-CAN-6142: Zero Day Initiative Vulnerability (ABB Panel Builder 800)<\/li>\n<li>32336: ZDI-CAN-6136: Zero Day Initiative Vulnerability (ABB Panel Builder 800)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>Advantech (3)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>32353: ZDI-CAN-6300: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>32354: ZDI-CAN-6301: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<li>32356: ZDI-CAN-6302: Zero Day Initiative Vulnerability (Advantech WebAccess Node)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>Delta (1)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>32348: ZDI-CAN-6322: Zero Day Initiative Vulnerability (Delta Industrial Automation PMSoft)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>Foxit (4)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>32343: ZDI-CAN-6332: Zero Day Initiative Vulnerability (Foxit Reader)<\/li>\n<li>32345: ZDI-CAN-6330: Zero Day Initiative Vulnerability (Foxit Reader)<\/li>\n<li>32346: ZDI-CAN-6329: Zero Day Initiative Vulnerability (Foxit Reader)<\/li>\n<li>32347: ZDI-CAN-6326: Zero Day Initiative Vulnerability (Foxit Reader)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>LAquis SCADA (1)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>32351: ZDI-CAN-6319: Zero Day Initiative Vulnerability (LAquis SCADA)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>Microsoft (2)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>32350: ZDI-CAN-6080: Zero Day Initiative Vulnerability (Microsoft Windows)<\/li>\n<li>32352: ZDI-CAN-6081: Zero Day Initiative Vulnerability (Microsoft Windows)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>Quest (2)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>32342: ZDI-CAN-6075: Zero Day Initiative Vulnerability (Quest KACE Systems Management)<\/li>\n<li>32355: ZDI-CAN-6095: Zero Day Initiative Vulnerability (Quest KACE Systems Management)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong><em>WECON (12)<\/em><\/strong><\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"20px\"><\/td>\n<td>\n<ul>\n<li>32257: ZDI-CAN-5956: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32319: ZDI-CAN-5924: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32323: ZDI-CAN-5938: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32324: ZDI-CAN-5931: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32325: ZDI-CAN-5929,5930: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32326: ZDI-CAN-5928: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32328: ZDI-CAN-5925,5926: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32329: ZDI-CAN-5927: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32330: ZDI-CAN-6062: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32333: ZDI-CAN-6063,6065: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32335: ZDI-CAN-6064: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<li>32339: ZDI-CAN-6067: Zero Day Initiative Vulnerability (WECON LeviStudioU)<\/li>\n<\/ul>\n<\/td>\n<\/tr>\n<tr>\n<td height=\"10px\"><\/td>\n<td><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><strong>Missed Last Week\u2019s News?<\/strong><\/p>\n<p>Catch up on last week\u2019s news in my <a href=\"https:\/\/blog.trendmicro.com\/tippingpoint-threat-intelligence-and-zero-day-coverage-week-of-june-25-2018\/\">weekly recap<\/a>.<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\/zero-day-coverage-update-week-of-july-2-2018\/\">Zero-Day Coverage Update \u2013 Week of July 2, 2018<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\"><\/a>.<\/p>\n<p><a href=\"https:\/\/blog.trendmicro.com\/zero-day-coverage-update-week-of-july-2-2018\/\" target=\"bwo\" >http:\/\/feeds.trendmicro.com\/TrendMicroSimplySecurity<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Elisa Lippincott (Global Threat Communications)| Date: Fri, 06 Jul 2018 13:51:43 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"225\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2018\/07\/0-day-graphic-large-300x225.png\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"float: left; margin-right: 5px;\" srcset=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2018\/07\/0-day-graphic-large-300x225.png 300w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2018\/07\/0-day-graphic-large.png 305w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>The General Data Protection Regulation (GDPR) has been up and running for a couple of months now and your organization is compliant. It\u2019s time to take a little break \u2013 well, not so fast! Late last week, the State of California passed a new data privacy law called the California Consumer Privacy Act of 2018&#8230;.<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\/zero-day-coverage-update-week-of-july-2-2018\/\">Zero-Day Coverage Update \u2013 Week of July 2, 2018<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\"><\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10378,10413],"tags":[18901,18255,12116,10384,714,10415,11524],"class_list":["post-12738","post","type-post","status-publish","format-standard","hentry","category-security","category-trendmicro","tag-california-consumer-privacy-act-of-2018","tag-digital-vaccine","tag-gdpr","tag-network","tag-security","tag-zero-day-initiative","tag-zero-day"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/12738","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=12738"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/12738\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=12738"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=12738"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=12738"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}