¿À´ÃÀÇ Å°¿öµå : ¾Ï½ÃÀå, ¼Ò´Ï ¹ý¹«ÆÀ, ±¸±Û, ¾îÁî´ÏÇÁ, ÆÐÄ¡
ÇØÄ¿µéÀÇ ¾Ï½ÃÀå ÀÏ¹Ý ½ÃÀå°ú Èí»çÇÏ°í ¼Ò´Ï ÇÈ󽺴 ¹ýÀûÀÎ ´ëÀÀ
ÆÐÄ¡ ¾È ÇÏ¸é ¿¹Àü ¼ö¹ý¿¡ ¶Õ¸®°í, ±¸±ÛÀº HTTPS ÁöÁö
[º¸¾È´º½º ¹®°¡¿ë] ÇØÅ· »ç°ÇÀÌ ¸¹ÀÌ ÀϾ٠Çß´õ´Ï ¾Ï½ÃÀåÀÌ È°±âÂ÷Áö°í ÀÖ´Ù´Â ¼Ò½ÄÀÔ´Ï´Ù. ½ÃÀå ±Ô¸ðµµ Ä¿Áö°í °¡°Ýµµ ¿À¸£´Â µí Çѵ¥, ¸¶Âù°¡Áö·Î °æÀïµµ ´Ã¾î³ª°í ÀÖ¾î Á¡Á¡ ¿ì¸®°¡ ¾Æ´Â º¸Åë ½ÃÀå°ú ´àÀº²ÃÀÌ µÇ¾î°¡°í ÀÖ½À´Ï´Ù. ¿©·¯ °¡Áö ¡®´ý¡¯À̳ª ¡®¼ºñ½º¡¯¸¦ ¾ñ¾î¼ ÆÄ´Â °æ¿ì°¡ ´Ã¾î³ª°í ÀÖ°í, °í±Þ Á¤º¸¸¸ ÆÄ´Â ÇØÄ¿µµ ÀÖ´Ù°í ÇÕ´Ï´Ù. ÇØÄ¿¸¦ ÈÀÌÆ® ÇØÄ¿·Î ÀüȯÇØ ±â¿ëÇÏÀÚ´Â ÀÇ°ßÀÌ ´Ã¾î³ª°í ÀÖ°í, ±×·± »ç·Êµµ »ý±â°í ÀÖ´Â °¡¿îµ¥ ½ÃÀ帶Àú ÀÌ·¸°Ô ´àÀº²Ã·Î º¯ÇØ°£´Ù¸é ÇØÄ¿¿Í º¸¾È ´ã´çÀÚ(ȤÀº ÈÀÌÆ® ÇØÄ¿) »çÀÌÀÇ °æ°è°¡ ´õ ºü¸£°Ô ¹«³ÊÁú ¼ö ÀÖ°Ú´Ù´Â ¿ì·Á°¡ »ý±é´Ï´Ù.
¼Ò´Ï´Â, ºñ·Ï °ø½Ä ¹ßÇ¥´Â ¾Æ´Ï¾úÁö¸¸, ¾îÁ¦±îÁö ¡®µðµµ½º¡¯·Î ¸Â´ëÀÀ ÇÏ°Ú´Ù´Â ÀÔÀåÀ̾ú´Âµ¥ ÀÏ´Ü Ç¥¸éÀûÀ¸·Î´Â ¹ý¹«ÆÀÀ» ÅëÇØ ¹ýÀûÀÎ ´ëÀÀÀ» ½ÃµµÇÏ´Â °ÍÀ¸·Î º¸ÀÔ´Ï´Ù. À¯ÃâµÈ Á¤º¸ÀÇ 2Â÷ÀûÀÎ È®»êÀÇ Ã¥ÀÓÀ» ¹¯°Ú´Ù°í ¾Ë·Á¿Â °ÍÀÌÁÒ. ¶ÇÇÑ ±¸±ÛÀº ³»³âºÎÅÍ ºê¶ó¿ìÀú¸¦ ÅëÇØ HTTPÀÇ ºÒ¾ÈÀü¼ºÀ» »ç¿ëÀڵ鿡°Ô ¾Ë·Á¾ß ÇÑ´Ù°í ÁÖÀåÇÏ°í Àִµ¥¿ä, ÀÌ´Â HTTPSÀÇ µµÀÔÀ» ¼µÎ¸£±â À§ÇÑ Áغñ·Î º¸ÀÔ´Ï´Ù. ÇÑÆí ÇÏ´ÏÀ£°ú QNAP NAS¿¡¼ °¢°¢ Ãë¾àÁ¡µéÀÌ ¹ß°ßµÇ¾ú´Ù°í ÇÕ´Ï´Ù. ÇÏ´ÏÀ£Àº ¿¬¸»¿¬½Ã¿¡ POS¿Í ¿¬°üµÈ Ãë¾àÁ¡À̶ó ±ä±ÞÇÑ ÆÐÄ¡°¡ ¿ä±¸µÇ°í ÀÖÀ¸¸ç, QNAP NASÀÇ °æ¿ì´Â ¿À·¡ Àü¿¡ ÇÒ ¼ö ÀÖ´ø ÆÐÄ¡¸¦ ¾ÆÁ÷µµ ÇÏÁö ¾Ê¾Æ¼ ÇØÅ·´çÇÏ°í ÀÖ´Â °ÍÀ̶ó Áö±ÝÀÌ¶óµµ »¡¸® ÆÐÄ¡ÇÒ °ÍÀ» ¿ä±¸¹Þ°í ÀÖ´ä´Ï´Ù.
1. µµ³ Á¤º¸ ½ÃÀå È°¼ºÈ(Security Week)
http://www.securityweek.com/stolen-identity-business-going-strong
ÇØÄ¿µéÀÇ ½ÃÀå¿¡ º»°Ý ºÕ ÀϾî(The Register)
http://www.theregister.co.uk/2014/12/15/roll_up_come_see_the_booming_hacker_bazaar/
ÇØÄ¿µé, ¾Ï½ÃÀå¿¡¼ °í°´ À¯Ä¡ À§ÇØ 100% º¸ÀåÁ¦ ½Ç½Ã(Infosecurity Magazine)
http://www.infosecurity-magazine.com/news/hackers-offer-100-guarantees-on/
ÁöÇϽÃÀå¿¡¼ µµ³ Á¤º¸ °¡°Ý ¿Ã¶ó(Dark Reading)
http://www.darkreading.com/attacks-breaches/price-tag-rises-for-stolen-identities-sold-in-the-underground/d/d-id/1318165?
µ¨ ½ÃÅ¥¾î¿÷½º¿¡¼ ÇØÄ¿µéÀÇ °Å·¡°¡ ÀÌ·ç¾îÁö°í ÀÖ´Â ¾Ï½ÃÀåÀ» Á¶»çÇß½À´Ï´Ù. ±×¸®°í À§ Çìµå¶óÀÎÀÌ ¸»ÇÏ´Â °Íó·³ ±²ÀåÈ÷ È°¼ºÈµÇ¾î ÀÖ´Ù°í Çϳ׿ä. ¹°°¡µµ ¿Ã¶ó°¡°í ÀÖ°í, °æÀïµµ ½Éȵǰí ÀÖ¾î¼ °¢Á¾ ¼ºñ½º±îÁö ÀÌ·ç¾îÁö°í ÀÖ´Ù°í Çϴµ¥¿ä, ƯÈ÷ »ç¿ëÀÌ ºÒ°¡ÇÒ °æ¿ì ´Ù¸¥ ¾ÆÀÌÅÛµé·Î ±³È¯ÇØÁشٴ 100% º¸ÀåÁ¦¸¦ ½Ç½ÃÇÏ´Â ÇØÄ¿µµ ÀÖ°í ÇÁ¸®¹Ì¾ö Ä«µå¸¸ °Å·¡ÇÏ´Â ÇØÄ¿µµ ÀÖ½À´Ï´Ù. ¶ÇÇÑ ÈÉÄ£ Á¤º¸»Ó ¾Æ´Ï¶ó °¡Â¥ ½Å¿øÁ¤º¸µµ Á¶±Ý ´õ ºñ½Ñ °¡°ÝÀ¸·Î °Å·¡µÇ°í ÀÖÁö¸¸, ¹«¾ùº¸´Ù ¿ÃÇØ ¼Ò¸Å»ó ÂÊ È¤Àº POS ÂÊ »ç°í°¡ ¸¹¾Ò´ø ¸¸Å ½Å¿ëÄ«µå Á¤º¸°¡ ³ÑÃijª°í ÀÖ´Ù°í ÇÕ´Ï´Ù.
2. ¼Ò´Ï ÇÈó½º ¹ý¹«ÆÀ, À¯ÃâµÈ Á¤º¸ ÆıâÇÒ °Í Ã˱¸(SC Magazine)
http://www.scmagazine.com/hackers-renew-threats-sony-legal-team-strives-to-stem-damage/article/388429/
¼Ò´Ï°¡ ¹Ìµð¾î¿¡°Ô : À¯Ãâ Á¤º¸ °ø°³ ¸ØÃâ °Í Ã˱¸(The Register)
http://www.theregister.co.uk/2014/12/15/sony_to_media_stop_publishing_our_stolen_stuff_or_well_get_nasty/
À¯Ãâ »çÅ¿¡ ´ëÀÀÇÏ´Â ¼Ò´Ï : ¹ýÀ¸·Î ÇսôÙ(CU Infosecurity)
http://www.cuinfosecurity.com/sony-breach-response-legal-threats-a-7676
ÇØÄ¿µéÀÌ Å©¸®½º¸¶½º ¼±¹°À» ¿¹°íÇÑ °¡¿îµ¥ ¼Ò´Ï ³»ºÎ ȸÀÇ ¿¾î(Security Week)
http://www.securityweek.com/sony-meeting-after-hackers-vow-christmas-gift
¾îÁ¦´Â ¼Ò´Ï ÇÈ󽺰¡ À¯ÃâµÈ Á¤º¸ÀÇ È®»êÀ» ¸·°íÀÚ ÀÚü µðµµ½º °ø°ÝÀ» Áغñ Áß¿¡ ÀÖ´Ù°í Çߴµ¥¿ä, ¿À´ÃÀº ±×°Íº¸´Ù´Â Á» ´õ ¡®Á¤½Ä¡¯ ·çÆ®¸¦ ÅëÇØ ÇÇÇظ¦ ÁÙÀÌ°íÀÚ ÇÏ´Â ¼Ò´ÏÀÇ ¿òÁ÷ÀÓ¿¡ ´ëÇÑ º¸µµ°¡ ³ª¿À°í ÀÖ½À´Ï´Ù. Ãß°¡·Î Á¤º¸¸¦ À¯ÃâÇÏ´Â ÀÚ¿¡°Ô´Â ¹ýÀûÀ¸·Î ´ëÀÀÇÏ°Ú´Ù°í ¾öÆ÷¸¦ ³õÀº °ÍÀÌÁÒ. ÀÌ°Ç ¾îÁ¦ º¸µµµÈ ¹æ¹ýº¸´Ù´Â ³í¶õÀÌ ÀûÀ» °Í °°½À´Ï´Ù.
¶ÇÇÑ GOP´Â ¼Ò´Ï¿¡°Ô Å©¸®½º¸¶½º ¼±¹°À» ¿¹°íÇÑ ¹Ù ÀÖ½À´Ï´Ù. ÀÌ¿¡ ´ëÇØ ±ä±Þ ȸÀÇ°¡ ¼ÒÁýµÇ¾ú´Âµ¥¿ä, ÀÚ¼¼ÇÑ »çÇ×Àº ºñ°ø°³¶ó°í ÇÕ´Ï´Ù. LA º»»ç¿¡¼ ÇöÁö ½Ã°£À¸·Î ¿ù¿äÀÏ ¿ÀÈÄ 1½Ã¿¡ ¿·ÈÀ» ÀÌ È¸ÀÇ ³»¿ëÀÌ ¹«¾ùÀÏÁö, ¾î¶² ´ëÀÀÃ¥ÀÌ ¸¶·ÃµÉÁö ÀÚ¸ø ±Ã±ÝÇÕ´Ï´Ù.
3. ±¸±Û, 2015³â¿¡´Â HTTPÀÇ ºÒ¾ÈÁ¤¼º ¡®Ç¥±âÇÏÀÚ¡¯°í Á¦¾È(Threat Post)
http://threatpost.com/google-proposes-marking-http-as-insecure-in-2015/109875
±¸±ÛÀÇ Å©·ÒÆÀÀº ³»³âºÎÅÍ »ç¿ëÀڵ鿡°Ô HTTP°¡ º¸¾È»ó »ó´çÈ÷ ¾ÈÀüÇÏÁö ¾Ê´Ù´Â »ç½ÇÀ» ¾Ë·ÁÁÙ °èȹÀ» ¼¼¿ì°í ÀÖ½À´Ï´Ù. ¶ÇÇÑ Àڽŵé»Ó ¾Æ´Ï¶ó °æÀï À¥ ºê¶ó¿ìÀú Á¦ÀÛ»çµé¿¡°Ôµµ ÀÌ¿Í °°Àº Á¦¾ÈÀ» Àü´ÞÇÏ°í ÀÖ½À´Ï´Ù. ¾Æ¸¶µµ HTTPSÀÇ µµÀÔÀ» À§ÇÑ Ã¹ ´ÜÃ߶ó°í Àü¹®°¡µéÀº ºÐ¼®ÇÏ°í ÀÖ½À´Ï´Ù. ±¸±ÛÀº 100% ¾ÏȣȰ¡ ÀÌ·ç¾îÁöÁö ¾Ê´Â ÀÌ»ó ¡®º¸¾È¡¯À̳ª ¡®¾ÈÀü¡¯À» ¾ð±ÞÇÒ ¼ö ¾øÀ¸¸ç, ±×·± ¾ÈÀüÇÑ È¯°æÀ» ¸¸µé±â À§Çؼµµ HTTPSÀÇ µµÀÔÀÌ ½Ã±ÞÇÏ´Ù´Â ÀÔÀåÀÔ´Ï´Ù. ¾ó¸¶ Àü ÀÎÅÍ³Ý È¯°æ ÀÚüÀÇ °Ç°À» À§ÇØ ¾Ö¾²°Ú´Ù°í Çß´ø ±¸±ÛÀÇ ¹ßÇ¥°¡ »ý°¢³³´Ï´Ù. ½½½½ ½Ãµ¿À» °Å´Â ¸ð¾çÀÔ´Ï´Ù.
4. ¾îÁî´ÏÇÁ ¸Ö¿þ¾î º¯Á¾, ¼¼°èÀûÀ¸·Î ±ÞÁõ(SC Magazine)
http://www.scmagazine.com/ursnif-malware-moves-to-pe-infector-format/article/388417/
¾îÁî´ÏÇÁ ¸Ö¿þ¾î, µ¥ÀÌÅÍ ÈÉÄ¡°í ÆÄÀÏ ¿À¿°½ÃÄÑ(Security Week)
http://www.securityweek.com/ursnif-malware-steals-data-infects-files-us-uk
ÇØÄ¿µéÀÌ ¾ÏÈ£¿Í ¹Î°¨ÇÑ Á¤º¸¸¦ ÈÉÄ¡±â À§ÇØ »ç¿ëÇÏ´Â ¸Ö¿þ¾î Áß¿¡ ¾îÁî´ÏÇÁ(Ursnif)¶ó´Â °ÍÀÌ ÀÖ½À´Ï´Ù. ±× º¯Á¾ÀÎ PE_URSNIF.A-O°¡ °©Àڱ⠱ÞÁõÇÏ°í ÀÖ´Ù°í ÇÕ´Ï´Ù. ½ºÆÔ ¸Þ½ÃÁö¿Í Æ®·ÎÀ̸ñ¸¶ ´Ù¿î·Î´õ µîÀ» ÅëÇØ ¹øÁö°í ÀÖ´Ù°í Çϴµ¥¿ä, ÃÖ±Ù °¨Áö ¼Ö·ç¼Ç ´ëºÎºÐÀ» Åë°úÇÑ´Ù°í ÇÕ´Ï´Ù. º»°ÝÀûÀÎ È°µ¿À» ½ÃÀÛÇϱâ Àü¿¡ 30ºÐ µ¿¾ÈÀº Á×Àº µíÀÌ ¼û¾îÀִµ¥, ±×°Í ¶§¹®¿¡ °¨Áö°¡ ¾î·Æ´Ù°í ÇÕ´Ï´Ù.
5. ÇÏ´ÏÀ£ POS ¼ÒÇÁÆ®¿þ¾î¿¡¼ ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡ ¹ß°ß(Threat Post)
http://threatpost.com/honeywell-pos-software-vulnerable-to-stack-buffer-overflows/109868
ÇÏ´ÏÀ£ POS ½ºÀ§Æ®, Ä¡¸íÀûÀÎ Ãë¾àÁ¡ °¡Áö°í ÀÖ¾î(Security Week)
http://www.securityweek.com/honeywell-opos-suite-affected-serious-vulnerability
ÇÏ´ÏÀ£ POS ¼ÒÇÁÆ®¿þ¾î¿¡¼ ½ºÅà ¹öÆÛ ¿À¹öÇ÷οì Ãë¾àÁ¡ÀÌ ¹ß°ßµÇ¾ú½À´Ï´Ù. ÀÌ Ãë¾àÁ¡À» ¾Ç¿ëÇÒ °æ¿ì ÇØÄ¿°¡ ¾Ç¼º Äڵ带 ½ÇÇàÇÒ ¼ö ÀÖ´Ù°í ÇÕ´Ï´Ù. Ãë¾àÁ¡Àº HWOPOSScale.ocx¿Í HWOPOSSCANNER.ocx µÎ °÷¿¡¼ ¹ß°ßµÇ¾ú´Ù°í Çϴµ¥, µÑ ´Ù POS Çϵå¿þ¾î¿Í À©µµ¿ì POS ½Ã½ºÅÛÀ» Á¢¸ñ½ÃÅ°´Â µ¥ ÇÊ¿äÇÑ ¿ä¼Ò¶ó°í ÇÕ´Ï´Ù. 1.13.4.15 ÀÌÀü ¹öÀüÀº ÀüºÎ Ãë¾àÇϸç ÇÏ´ÏÀ£¿¡¼´Â ÀÌ ¹®Á¦¸¦ ÇØ°áÇϱâ À§ÇÑ ÆÐÄ¡¸¦ ¹èÆ÷ Áß¿¡ ÀÖ½À´Ï´Ù.
6. ½©¼îÅ© ¿ú, ÆÐÄ¡ ¾È µÈ QNAP NAS¿¡¼ ¹ß°ß(Threat Post)
http://threatpost.com/shellshock-worm-exploiting-unpatched-qnap-nas-devices/109870
½©¼îÅ© »ç¿ëÇÏ´Â ¿ú, QNAP ³×Æ®¿öÅ© ½ºÅ丮Áö ½Ã½ºÅÛ °¨¿°(Security Week)
http://www.securityweek.com/worm-uses-shellshock-infect-qnap-network-storage-systems
ÇØÄ¿µéÀÌ NAS ±â±â¿¡ ÀúÀåµÇ¾î ÀÖ´Â Á¤º¸¿¡ Á¢±ÙÇϱâ À§ÇØ ½©¼îÅ© Ãë¾àÁ¡À» ÀÌ¿ëÇÑ °ÍÀ¸·Î µå·¯³µ½À´Ï´Ù. ÀÌ´Â ½©¼îÅ©¿¡ ´ëÇÑ ¼Ò½ÄÀÌ ¹ßÇ¥µÈ Á÷ÈÄ¿¡ ÀÖ¾ú´ø ÀÏÀÌ°í ÀÌ¿¡ ´ëÇÑ ÆÐÄ¡µµ ÀÌ¹Ì 10¿ù¿¡ ¹ßÇ¥µÈ ¹Ù ÀÖ½À´Ï´Ù. ÇÏÁö¸¸ ±â±â¿¡ ÆÐÄ¡¸¦ Àû¿ëÇÏ´Â °Ô »ý°¢º¸´Ù ±î´Ù·Î¿î ÀÏÀ̶ó Â÷ÀÏÇÇÀÏ ¹Ì·é °÷ÀÌ ¸¹°í, ±×¿¡ µû¶ó ½©¼îÅ©°¡ ¿©ÀüÈ÷ »ç¿ëÀÚµéÀ» ³ë¸®°í ÀÖ´Â »óŶó°í ÇÕ´Ï´Ù.
[±¹Á¦ºÎ ¹®°¡¿ë ±âÀÚ(globoan@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(http://www.boannews.com/) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>