TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 19, 2017
Credit to Author: Elisa Lippincott (TippingPoint Global Product Marketing)| Date: Fri, 23 Jun 2017 14:44:46 +0000
Yesterday I celebrated my 29th birthday (again) and it was great to celebrate with friends, family, and coworkers. They say age is just a number, and I truly believe that. Unfortunately, we live in a world where laws require us to count numbers so that it can be determined if we can vote, drink, rent a car, and even retire from the workforce.
In our cyber security world, we love to count. In the world of the Zero Day Initiative (ZDI), the number of vulnerabilities disclosed so far in 2017 is just a number, but it’s a really big number! Last year, the ZDI publicly disclosed a record 690 vulnerabilities covering almost 50 vendors. As of the publishing of this blog, the number currently stands at 441! Is this the year we hit 1,000? Only time will tell. In the meantime, I invite you to take a sneak peek into the inner workings of the ZDI by reading Dustin Child’s blog: The Inside Scoop on the World’s Leading Bug Bounty Program.
Adobe Security Updates
This week’s Digital Vaccine (DV) package includes coverage for Adobe updates released on or before June 13, 2017. The following table maps Digital Vaccine filters to the Adobe updates. Filters marked with an (*) shipped prior to this DV package, providing zero-day protection for our customers. You can get more detailed information on this month’s security updates from Dustin Childs’ June 2017 Security Update Review from the Zero Day Initiative:
Bulletin # | CVE # | Digital Vaccine Filter # | Status |
APSB17-17 | CVE-2017-3075 | *28094 | |
APSB17-17 | CVE-2017-3076 | 28656 | |
APSB17-17 | CVE-2017-3077 | 28669 | |
APSB17-17 | CVE-2017-3078 | 28657 | |
APSB17-17 | CVE-2017-3079 | 28658 | |
APSB17-17 | CVE-2017-3081 | 28659 | |
APSB17-17 | CVE-2017-3082 | 28660 | |
APSB17-17 | CVE-2017-3083 | 28661 | |
APSB17-17 | CVE-2017-3084 | 28662 |
Zero-Day Filters
There are 24 new zero-day filters covering four vendors in this week’s Digital Vaccine (DV) package. A number of existing filters in this week’s DV package were modified to update the filter description, update specific filter deployment recommendation, increase filter accuracy and/or optimize performance. You can browse the list of published advisories and upcoming advisories on the Zero Day Initiative website.
Adobe (16)
| |
Hewlett Packard Enterprise (3)
| |
Microsoft (2)
| |
Trend Micro (3)
| |
Missed Last Week’s News?
Catch up on last week’s news in my weekly recap.