Áö±Ý ¹Ù·Î ÃֽŠ¹öÀüÀÎ 18.0.0.194À¸·Î ¾÷µ¥ÀÌÆ® ´çºÎ
[º¸¾È´º½º ÁÖ¼ÒÇü] ¾îµµºñ(Adobe)°¡ Ãë¾àÁ¡À» º¸¿ÏÇÑ ±ä±Þ º¸¾È ÆÐÄ¡¸¦ °ø°³Çß´Ù. ÀÌ´Â °ø°ÝÀÚ°¡ »ç¿ëÀÚÀÇ ½Ã½ºÅÛÀ» ÅëÁ¦ÇÒ ¼ö ÀÖ´Â Ãë¾àÁ¡ÀÌ´Ù. ÀÌ¹Ì ÇØ´ç Ãë¾àÁ¡À» ÀÌ¿ëÇÏ¿© Ÿ±ê ÀͽºÇ÷ÎÀÕ °ø°ÝÀÌ ½ÃÀÛµÆÀ¸¸ç °ø°ÝÀÚ´Â Áß±¹ ±â¹ÝÀÇ °Å´ë ÇØÄ¿±×·ìÀÎ APT 3(ȤÀº UPS)¶ó´Â ÀÇȤ±îÁö Á¦±âµÈ »óȲ.
ÀÌ¿¡ µû¶ó ¾îµµºñ´Â Áö±Ý ¹Ù·Î ÃֽŠ¹öÀüÀÎ 18.0.0.194·Î ¾÷µ¥ÀÌÆ®ÇÒ °ÍÀ» ´çºÎÇß´Ù. ƯÈ÷, À©µµ¿ì 7¿¡¼ ÀÎÅÍ³Ý ÀͽºÇ÷η¯ ºê¶ó¿ìÀú¸¦ »ç¿ëÇÏ°í ÀÖ´Â ÀÌ¿Í À©µµ¿ì XP¿¡¼ ÆÄÀ̾îÆø½º(Firefox)¸¦ »ç¿ëÇÏ°í ÀÖ´Â À̵éÀº ¼µÎ¸£¶ó°í µ¡ºÙ¿´´Ù.
À̹ø¿¡ ÆÐÄ¡µÈ Ãë¾àÁ¡ÀÇ ¹øÈ£´Â CVE-2015-3113ÀÌ°í ±Û·Î¹ú º¸¾È¾÷üÀÎ ÆÄÀ̾î¾ÆÀÌ(FireEye) ¿¬±¸¿ø¿¡ ÀÇÇØ Ãë¾àÁ¡À» ÅëÇÑ °ø°Ý Á¤È²ÀÌ ¹ß°ßµÆ´Ù. ¾îµµºñ¿¡ µû¸£¸é ¡°Á¦ÇÑÀûÀÌ°í Ÿ±êÀÌ ºÐ¸íÇÑ °ø°Ý(Limited, targeted attack)¡±À» °¡Çϸç Ç×°ø¿ìÁÖ»ê¾÷(Aerospace), ¹æ¾î½Ã¼³(Defense), °Ç¼³ ¹× °øÇÐ ºÐ¾ß(Construction and Engineering), ±â¼ú ¹× Á¤±âÅë½Å »ê¾÷(Tech and Telecom), ±³Åë¼ö´Ü »ê¾÷(Transportation Industries)À» ÁýÁßÀûÀ¸·Î ³ë¸®°í ÀÖ´Ù.
ÇÑÆí ¿©±â¸¦ ´©¸£¸é ¿µÇâÀ» ¹Þ´Â Ç÷§Æû ºÐ·ù¿Í ¾îµµºñ ÃֽŹöÀüÀ» ´Ù¿î¹ÞÀ» ¼ö ÀÖ´Â ÆäÀÌÁö·Î ¿¬°áµÈ´Ù.
[±¹Á¦ºÎ ÁÖ¼ÒÇü ±âÀÚ(sochu@boannews.com)]
<ÀúÀÛ±ÇÀÚ: º¸¾È´º½º(http://www.boannews.com/) ¹«´ÜÀüÀç-Àç¹èÆ÷±ÝÁö>