TippingPoint Threat Intelligence and Zero-Day Coverage – Week of January 15, 2018

Credit to Author: Elisa Lippincott (TippingPoint Global Product Marketing)| Date: Fri, 19 Jan 2018 14:36:46 +0000

It’s been just over 14 years since I almost left this crazy world due to a bad car accident. I have a number of scars and daily pains that serve as reminders of that day. While some may think scars and pain are a burden and a nuisance, I think of them as reminders of how far I’ve come since that day and how much I still have to accomplish. I don’t like to be told that I can’t do something, so you can imagine my reaction when my doctor said that I’d never be able to run or even walk normally again.

A permanent limp was not going to be in my future…period. With dedication, a lot of hard work, and even more patience, I proved my doctor wrong. I’ve since participated in three half marathons (I didn’t set any world records) and can wear 5” inch heels and walk without a limp.

Last week, Gartner issued their 2018 Magic Quadrant for Intrusion Detection and Prevention Systems and Trend Micro is a leader again. There were a couple of years when TippingPoint products didn’t sit in that coveted top right leaders quadrant for one reason or another, but I always knew in my heart that we’d get back up there despite the odds. As fate would have it, the TippingPoint business would change ownership in 2016 – and with a little dedication, a lot of hard work, and even more patience, we made it back to the leaders quadrant in 2017. You can click here to download a complimentary copy of the full 2018 Gartner Magic Quadrant for Intrusion Detection and Prevention Systems report and learn how we and the other vendors fared.

Zero-Day Filters

There are 26 new zero-day filters covering five vendors in this week’s Digital Vaccine (DV) package. A number of existing filters in this week’s DV package were modified to update the filter description, update specific filter deployment recommendation, increase filter accuracy and/or optimize performance. You can browse the list of published advisories and upcoming advisories on the Zero Day Initiative website. You can also follow the Zero Day Initiative on Twitter @thezdi and on their blog.

Adobe (13)

  • 29949: ZDI-CAN-5201: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29952: ZDI-CAN-5205: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29963: ZDI-CAN-5211: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29964: ZDI-CAN-5213: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29965: ZDI-CAN-5214: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29966: ZDI-CAN-5222: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29968: ZDI-CAN-5224: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29969: ZDI-CAN-5225: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29970: ZDI-CAN-5226: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29972: ZDI-CAN-5236: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29974: ZDI-CAN-5240: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29975: ZDI-CAN-5258: Zero Day Initiative Vulnerability (Adobe Acrobat Pro DC)
  • 29991: ZDI-CAN-5310: Zero Day Initiative Vulnerability (Adobe Flash) 

Advantech (1)

  • 26343: HTTP: Advantech WebAccess nvA1Media Vulnerable ActiveX Method Usage (ZDI-17-532,ZDI-17-554)

Fuji (1)

  • 30132: HTTP: Fuji Electric Monitouch V-SFT Project File Buffer Overflow (ZDI-17-643, ZDI-17-644)

Microsoft (1)

  • 30067: DNS: Microsoft Windows DNSAPI NSEC3 Buffer Overflow Vulnerability (ZDI-17-846)

OMRON (10)

  • 29976: ZDI-CAN-5299: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29977: ZDI-CAN-5300: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29978: ZDI-CAN-5301: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29981: ZDI-CAN-5302: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29982: ZDI-CAN-5303,5304: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29984: ZDI-CAN-5305: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29985: ZDI-CAN-5306: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29988: ZDI-CAN-5307: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29989: ZDI-CAN-5308: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)
  • 29990: ZDI-CAN-5309: Zero Day Initiative Vulnerability (OMRON CX-Supervisor)

Missed Last Week’s News?

Catch up on last week’s news in my weekly recap.

http://feeds.trendmicro.com/TrendMicroSimplySecurity