{"id":10572,"date":"2017-11-22T07:00:03","date_gmt":"2017-11-22T15:00:03","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2017\/11\/22\/news-4344\/"},"modified":"2017-11-22T07:00:03","modified_gmt":"2017-11-22T15:00:03","slug":"news-4344","status":"publish","type":"post","link":"https:\/\/www.palada.net\/index.php\/2017\/11\/22\/news-4344\/","title":{"rendered":"TippingPoint Threat Intelligence and Zero-Day Coverage \u2013 Week of November 20, 2017"},"content":{"rendered":"<p><strong>Credit to Author: Elisa Lippincott (TippingPoint Global Product Marketing)| Date: Wed, 22 Nov 2017 14:10:15 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"205\" src=\"http:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint-300x205.jpg\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"float: left; margin-right: 5px;\" srcset=\"http:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint.jpg 300w, http:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint-125x85.jpg 125w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>It\u2019s that time of year again, when many will gather with their families, eat way too much, and catch those crazy Black Friday sales. I\u2019ve been seeing \u201cBlack Friday\u201d sales for almost two weeks now. Cyber Monday, which falls on the Monday after the U.S. Thanksgiving holiday, is probably going to be coupled with news of increased identity theft incidents.<\/p>\n<p>I\u2019ve said it before and I\u2019ll say it again: if you choose to skip Black Friday and wait for Cyber Monday, be on the lookout for great deals you learn about via email or social media (don\u2019t click the links!). Don\u2019t use free public Wi-Fi to make purchases; and make sure sites you visit are secure (HTTPS) and have a valid encryption certificate. If you\u2019re using your mobile phone, make sure you download apps from official app marketplaces or use a retailer\u2019s actual URL. I hope you all have a safe and Happy Thanksgiving!<\/p>\n<p><strong>Adobe Security Update<\/strong><\/p>\n<p>This week\u2019s Digital Vaccine\u00ae (DV) package includes coverage for Adobe updates released on or before November 14, 2017. The following table maps Digital Vaccine filters to the Adobe updates. Filters marked with an asterisk (*) shipped prior to this DV package, providing preemptive zero-day protection for customers. You can get more detailed information on this month\u2019s security updates from Dustin Childs\u2019 <a href=\"https:\/\/www.zerodayinitiative.com\/blog\/2017\/11\/14\/the-november-2017-security-update-review\">November 2017 Security Update Review<\/a> from the Zero Day Initiative:<\/p>\n<div class=\"lightTable\">\n<table width=\"0\">\n<tbody>\n<tr>\n<td width=\"90\"><strong>Bulletin #<\/strong><\/td>\n<td width=\"120\"><strong>CVE #<\/strong><\/td>\n<td width=\"144\"><strong>Digital Vaccine Filter #<\/strong><\/td>\n<td width=\"300\"><strong>Status<\/strong><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16360<\/td>\n<td width=\"144\">29994<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16361<\/td>\n<td width=\"144\">29999<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16362<\/td>\n<td width=\"144\">30030<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16363<\/td>\n<td width=\"144\">30023<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16364<\/td>\n<td width=\"144\">30006<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16365<\/td>\n<td width=\"144\">30027<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16366<\/td>\n<td width=\"144\">30019<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16367<\/td>\n<td width=\"144\">30014<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16368<\/td>\n<td width=\"144\">30015<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16369<\/td>\n<td width=\"144\">*28924<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16370<\/td>\n<td width=\"144\">29996<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16371<\/td>\n<td width=\"144\">30001<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16372<\/td>\n<td width=\"144\">30004<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16373<\/td>\n<td width=\"144\">30039<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16374<\/td>\n<td width=\"144\">30044<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16375<\/td>\n<td width=\"144\">30043<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16376<\/td>\n<td width=\"144\"><\/td>\n<td width=\"300\">Vendor Deemed Reproducibility or Exploitation Unlikely<\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16377<\/td>\n<td width=\"144\"><\/td>\n<td width=\"300\">Vendor Deemed Reproducibility or Exploitation Unlikely<\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16378<\/td>\n<td width=\"144\"><\/td>\n<td width=\"300\">Vendor Deemed Reproducibility or Exploitation Unlikely<\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16379<\/td>\n<td width=\"144\"><\/td>\n<td width=\"300\">Vendor Deemed Reproducibility or Exploitation Unlikely<\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16380<\/td>\n<td width=\"144\"><\/td>\n<td width=\"300\">Vendor Deemed Reproducibility or Exploitation Unlikely<\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16381<\/td>\n<td width=\"144\">*29639<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16382<\/td>\n<td width=\"144\">*29638<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16383<\/td>\n<td width=\"144\">*29637<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16384<\/td>\n<td width=\"144\">*29636<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16385<\/td>\n<td width=\"144\">*29635<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16386<\/td>\n<td width=\"144\">*29584<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16387<\/td>\n<td width=\"144\">*29484<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16388<\/td>\n<td width=\"144\">30040<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16389<\/td>\n<td width=\"144\">30041<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16390<\/td>\n<td width=\"144\">29998<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16391<\/td>\n<td width=\"144\">30003<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16392<\/td>\n<td width=\"144\">30002<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16393<\/td>\n<td width=\"144\">30005<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16394<\/td>\n<td width=\"144\">30035<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16395<\/td>\n<td width=\"144\">30037<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16396<\/td>\n<td width=\"144\">30032<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16397<\/td>\n<td width=\"144\">30000<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16398<\/td>\n<td width=\"144\">29995<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16399<\/td>\n<td width=\"144\">29997<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16400<\/td>\n<td width=\"144\">*29852<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16401<\/td>\n<td width=\"144\">*29851<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16402<\/td>\n<td width=\"144\">*29853<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16403<\/td>\n<td width=\"144\">*29833<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16404<\/td>\n<td width=\"144\">*29850<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16405<\/td>\n<td width=\"144\">30038<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16406<\/td>\n<td width=\"144\">30042<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16407<\/td>\n<td width=\"144\">30045<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16408<\/td>\n<td width=\"144\">30034<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16409<\/td>\n<td width=\"144\">30036<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16410<\/td>\n<td width=\"144\">30024<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16411<\/td>\n<td width=\"144\">30021<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16412<\/td>\n<td width=\"144\">30020<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16413<\/td>\n<td width=\"144\">30018<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16414<\/td>\n<td width=\"144\">30016<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16415<\/td>\n<td width=\"144\">30025<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16416<\/td>\n<td width=\"144\">30007<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16417<\/td>\n<td width=\"144\">30013<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16418<\/td>\n<td width=\"144\">30017<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16419<\/td>\n<td width=\"144\">30022<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-16420<\/td>\n<td width=\"144\">30026<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-36<\/td>\n<td width=\"120\">CVE-2017-11293<\/td>\n<td width=\"144\"><\/td>\n<td width=\"300\">Vendor Deemed Reproducibility or Exploitation Unlikely<\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-33<\/td>\n<td width=\"120\">CVE-2017-3112<\/td>\n<td width=\"144\">30008<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-33<\/td>\n<td width=\"120\">CVE-2017-3114<\/td>\n<td width=\"144\">30009<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-33<\/td>\n<td width=\"120\">CVE-2017-11213<\/td>\n<td width=\"144\">30010<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-33<\/td>\n<td width=\"120\">CVE-2017-11215<\/td>\n<td width=\"144\">30011<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<tr>\n<td width=\"90\">APSB17-33<\/td>\n<td width=\"120\">CVE-2017-11225<\/td>\n<td width=\"144\">30012<\/td>\n<td width=\"300\"><\/td>\n<\/tr>\n<\/tbody>\n<\/table><\/div>\n<p>&nbsp;<\/p>\n<p><strong>Zero-Day Filters<\/strong><\/p>\n<p>There are no new zero-day filters in this week\u2019s Digital Vaccine (DV) package. A number of existing filters in this week\u2019s DV package were modified to update the filter description, update specific filter deployment recommendation, increase filter accuracy and\/or optimize performance. You can browse the list of <a href=\"http:\/\/www.zerodayinitiative.com\/advisories\/published\/\">published advisories<\/a> and <a href=\"http:\/\/www.zerodayinitiative.com\/advisories\/upcoming\/\">upcoming advisories<\/a> on the <a href=\"http:\/\/www.zerodayinitiative.com\/\">Zero Day Initiative<\/a> website. You can also follow the Zero Day Initiative on Twitter <a href=\"https:\/\/twitter.com\/thezdi\">@thezdi<\/a> and on their <a href=\"https:\/\/www.zerodayinitiative.com\/blog\">blog<\/a>.<\/p>\n<p><strong>Missed Last Week\u2019s News?<\/strong><\/p>\n<p>Catch up on last week\u2019s news in my <a href=\"http:\/\/blog.trendmicro.com\/tippingpoint-threat-intelligence-zero-day-coverage-week-november-13-2017\/\">weekly recap<\/a>.<\/p>\n<p><a href=\"http:\/\/blog.trendmicro.com\/tippingpoint-threat-intelligence-zero-day-coverage-week-november-20-2017\/\" target=\"bwo\" >http:\/\/feeds.trendmicro.com\/TrendMicroSimplySecurity<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Elisa Lippincott (TippingPoint Global Product Marketing)| Date: Wed, 22 Nov 2017 14:10:15 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"205\" src=\"http:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint-300x205.jpg\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"float: left; margin-right: 5px;\" srcset=\"http:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint.jpg 300w, http:\/\/blog.trendmicro.com\/wp-content\/uploads\/2017\/08\/TippingPoint-125x85.jpg 125w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/>It\u2019s that time of year again, when many will gather with their families, eat way too much, and catch those crazy Black Friday sales. I\u2019ve been seeing \u201cBlack Friday\u201d sales for almost two weeks now. Cyber Monday, which falls on the Monday after the U.S. Thanksgiving holiday, is probably going to be coupled with news&#8230;<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10378,10413],"tags":[10384,714,10415],"class_list":["post-10572","post","type-post","status-publish","format-standard","hentry","category-security","category-trendmicro","tag-network","tag-security","tag-zero-day-initiative"],"_links":{"self":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/10572","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=10572"}],"version-history":[{"count":0,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/10572\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=10572"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=10572"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=10572"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}