<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/">
    <channel>
        <title>보안 전문 커뮤니티 SecurityPlus</title>
        <link>http://www.securityplus.or.kr/xe/</link>
        <description>보안전문 커뮤니티 SecurityPlus의 RSS 피드입니다.</description>
        <language>ko</language>
        <pubDate>Sat, 13 Mar 2010 16:18:25 +0900</pubDate>
        <lastBuildDate>Sat, 13 Mar 2010 16:18:25 +0900</lastBuildDate>
        <generator>XpressEngine 1.4.0.3</generator>
                <copyright>SecurityPlus</copyright>
                                <item>
            <title>Ontology-based Mobile Malware Behavioral Analysis</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=19055</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=19055</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=19055#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. 
&amp;nbsp;
&quot;Ontology-based Mobile Malware Behavioral Analysis&quot; 제...</description>
                        <pubDate>Sat, 13 Mar 2010 02:43:53 +0900</pubDate>
                        <category>모바일</category>
                        <category>Mobile</category>
                        <category>악성코드</category>
                        <category>Malware</category>
                                </item>
                <item>
            <title>On the Hardness of Subset Sum Problem</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=19052</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=19052</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=19052#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. 
&amp;nbsp;
&quot;On the Hardness of Subset Sum Problem&quot; 제하의 영문...</description>
                        <pubDate>Sat, 13 Mar 2010 02:41:51 +0900</pubDate>
                                </item>
                <item>
            <title>IE6,7 제로데이 Exploit</title>
            <dc:creator>방립동</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=19041</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=19041</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=19041#comment</comments>
                                    <description>IE6,7 제로데이 익스플로잇 입니다.
ActiveX가 아닌 IE 고유의 취약점을 공략하고 있네요..
내용...</description>
                        <pubDate>Sat, 13 Mar 2010 00:48:57 +0900</pubDate>
                                </item>
                <item>
            <title>2009년 4분기 IBM X-Force Threat Insight 한글판</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=19029</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=19029</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=19029#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. 2009년 4분기 IBM X-Force Threat Insight 한글판입니다.2009...</description>
                        <pubDate>Fri, 12 Mar 2010 19:28:56 +0900</pubDate>
                                </item>
                <item>
            <title>웹 어플리케이션 보안 체크리스트 배포</title>
            <dc:creator>방립동</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18995</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18995</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18995#comment</comments>
                                    <description>최근 웹해킹을 통해 대규모 개인정보 유출이 다시 터졌습니다.
유명 백화점, 커뮤티니등 2000만명의...</description>
                        <pubDate>Fri, 12 Mar 2010 18:08:43 +0900</pubDate>
                                </item>
                <item>
            <title>정보보안 기술과 보안 경영 정보보안 거버넌스의 이해</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18986</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18986</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18986#comment</comments>
                                    <description>
				
				
								
								정보보안 기술과 보안 경영
정보보안 거버넌스의 이해
이국내 대부분 기업들은 정보보안에 대한 인식...</description>
                        <pubDate>Thu, 11 Mar 2010 18:59:05 +0900</pubDate>
                        <category>정보보안 거버넌스</category>
                                </item>
                <item>
            <title>OVAL에 대해서</title>
            <dc:creator>키즈</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18972</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18972</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18972#comment</comments>
                                    <description>Open Vulnerability Assessment Language (OVAL) 이란 단체에 대해 아시는 분 계신가요?http:/...</description>
                        <pubDate>Thu, 11 Mar 2010 11:23:34 +0900</pubDate>
                                </item>
                <item>
            <title>MS Internet Explorer 신규 원격코드실행 취약점 주의</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18967</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18967</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18967#comment</comments>
                                    <description>&lt;div class=&quot;xe_content&quot;&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 개요&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o Microsoft의 Internet Explorer의 iepeers.dll 모듈에서 유효하지 않은 
포인터 참조로 인해&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;원격코드가 실행 가능한 취약점이 발견 [1, 2]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 공격자는 특수하게 조작된 
콘텐트로 구성된 악의적인 웹 사이트를 구성한 후, 스팸 메일이나&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 메신저의 링크를 통해 사용자가 해당 사이트에 
방문하도록 유도하여 임의의 원격코드를 실행&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;가능함 [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 취약점을 악용한 사례가 보고되고 있으므로 
사용자의 각별한 주의가 요구됨 [1]&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 해당 시스템&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 영향 받는 소프트웨어 [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - IE
 6 SP1 on Microsoft Windows 2000 SP4&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - IE 6 for Windows XP, 
Windows Server 2003&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - IE 7 for Windows XP,Windows Server 
2003,Windows Vista,Windows Server 2008&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 영향 받지 않는 소프트웨어 [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - IE 5.01 SP4 on Microsoft Windows 2000 SP4&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - IE 8 for Windows 
XP, Windows Server 2003, Windows Vista,&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;Windows Server 2008, 
Windows 7, and Windows Server 2008 R2&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 권장 조치 방안&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 현재 해당 
취약점에 대한 보안업데이트는 발표되지 않았으나 Internet Explorer 8을 사용할&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;경우 취약점에 노출되지
 않음&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o iepeers.dll의 접근 제어 목록(ACL: Access Control List)을 변경 [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - 관리자 권한의 명령 프롬프트에서 다음 명령을 실행&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;img alt=&quot;&quot; src=&quot;http://www.krcert.or.kr/images/100310-1.jpg&quot; align=&quot;baseline&quot; border=&quot;0&quot; hspace=&quot;0&quot; /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 해당 명령 실행 시 인쇄 등의 기능에 영향이 있을 수 있으며 복구를 
위해서는 다음 명령 실행&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;img alt=&quot;&quot; src=&quot;http://www.krcert.or.kr/images/100310-2.jpg&quot; align=&quot;baseline&quot; border=&quot;0&quot; hspace=&quot;0&quot; /&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 인터넷 및 로컬 인트라넷 영역에서 ActiveX 컨트롤이나 
Active 스크립팅의 사용을 제한&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Active 스크립팅을 사용하는 일부 웹 사이트는 정상적으로 동작하지 않을 수
 있으므로 주의) [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 해당 영역의 보안 수준을 &quot;높음&quot;으로 변경&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 도구 메뉴 → 인터넷 
옵션 → 보안 탭 → 보안설정을 변경할 영역 선택 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; → 보안 수준을 &quot;높음&quot;으로 변경&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
해당 영역의 Active 스크립팅 기능만 제한&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 도구 메뉴 → 인터넷 옵션 → 보안 탭 → 보안설정을 변경할 
영역 선택&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; → 사용자 지정 수준 버튼&amp;nbsp;→스크립팅 섹션의 Active 스크립팅을&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 
&amp;nbsp;&quot;사용 안함&quot; 또는 &quot;확인&quot;으로 설정&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;img alt=&quot;&quot; src=&quot;http://www.krcert.or.kr/images/100310-3.jpg&quot; align=&quot;baseline&quot; border=&quot;0&quot; hspace=&quot;0&quot; /&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o IE 6 SP2 또는 IE 7에 DEP 설정&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
Microsoft 기술자료문서[3]에 “자동 해결” 섹션의 “Microsoft Fix it 50285” 위의 링크를&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 &amp;nbsp;클릭하여 파일 다운로드 후 설치&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ Windows XP SP3, Windows Vista SP1 또는 이후 
버전의 운영체제에서 IE 8을 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 사용하는 경우 설치할 필요 없음&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 원상태로 복구하기 
위해서는 “Microsoft Fix it 50286”를 적용&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ DEP (Data Execution 
Prevention, 데이터 실행 방지) : 프로그램의 비실행영역 메모리&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 에서 코드가 실행되지 않도록 
함으로써 악성코드 및 다른 보안 위험으로부터 손상되지 않게&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;해 주는 보안 기능&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;img alt=&quot;&quot; src=&quot;http://www.krcert.or.kr/images/100310-4.jpg&quot; align=&quot;baseline&quot; border=&quot;0&quot; hspace=&quot;0&quot; /&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o KrCERT/CC와 MS보안 업데이트
 사이트[4]를 주기적으로 확인하여 해당 취약점에 대한 보안&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;업데이트 발표 시 신속히 최신 업데이트를 적용하거나 
자동 업데이트를 설정&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 자동업데이트 설정 방법: 시작→제어판→보안센터→자동업데이트→자동(권장) 선택&lt;/span&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;
 o 취약점에 의한 피해를 줄이기 위하여 사용자는 다음과 같은 사항을 준수해야함&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 파일공유 기능 등을 사용하지 
않으면 비활성화하고 개인방화벽을 반드시 사용&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 사용하고 있는 백신프로그램의 최신 업데이트를 유지하고, 실시간 
감시기능을 활성화&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 신뢰되지 않는 웹 사이트의 방문 자제&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 출처가 불분명한 이메일의 링크 
클릭하거나 첨부파일 열어보기 자제&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 기타 문의사항&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 보안업데이트는 언제 발표되나요?&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
해당 보안업데이트의 발표 일정은 미정이나, 발표 시 KrCERT/CC 홈페이지를 통해 신속히&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;공지할 
예정입니다.&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 한국인터넷진흥원 인터넷침해대응센터: 국번없이 118&lt;/span&gt;&lt;/p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[참고사이트]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[1] &lt;/span&gt;&lt;a href=&quot;http://www.microsoft.com/technet/security/advisory/981374.mspx&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.microsoft.com/technet/security/advisory/981374.mspx&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[2]
 &lt;/span&gt;&lt;a href=&quot;http://www.vupen.com/english/advisories/2010/0567&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.vupen.com/english/advisories/2010/0567&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[3]
 &lt;/span&gt;&lt;a href=&quot;http://support.microsoft.com/kb/981374&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://support.microsoft.com/kb/981374&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[4]
 &lt;/span&gt;&lt;a href=&quot;http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=ko&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=ko&lt;/span&gt;&lt;/a&gt;&lt;/div&gt;</description>
                        <pubDate>Thu, 11 Mar 2010 02:05:05 +0900</pubDate>
                                </item>
                <item>
            <title>제10회 클라우드 컴퓨팅 보안 연구회 세미나 안내</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18946</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18946</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18946#comment</comments>
                                    <description>.attach_div {float:left;margin:3px;} .attach_content_div {font-size:14px; text-align:cente...</description>
                        <pubDate>Thu, 11 Mar 2010 01:06:15 +0900</pubDate>
                                </item>
                <item>
            <title>악성 웹·사이버 피싱·문서보안 문제 심각</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18944</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18944</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18944#comment</comments>
                                    <description>-
 IBM 엑스-포스 보고서, 웹·멀티미디어 애플리케이션 취약성 커져 [디지털데일리 이유지기자] ...</description>
                        <pubDate>Thu, 11 Mar 2010 00:54:19 +0900</pubDate>
                                </item>
                <item>
            <title>ISO 27001 국제 표준 기반 Router Technical Audit Checklist</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18927</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18927</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18927#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. ISO 27001 국제 표준 기반 Router Technical Audit Checkl...</description>
                        <pubDate>Wed, 10 Mar 2010 13:19:46 +0900</pubDate>
                        <category>ISO27001</category>
                        <category>Router</category>
                        <category>라우터</category>
                                </item>
                <item>
            <title>Open source for securing data with advanced Crypto-Steganography technology</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18920</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18920</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18920#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;Open source for securing data with advanced Crypto-Stega...</description>
                        <pubDate>Wed, 10 Mar 2010 13:16:58 +0900</pubDate>
                        <category>스테가노그라피</category>
                        <category>Steganography</category>
                        <category>오픈소스</category>
                        <category>Open Source</category>
                                </item>
                <item>
            <title>Multiple Bits Embedding Approach for the Hit-pattern-based VQ Reversible Steganography</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18913</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18913</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18913#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;Multiple Bits Embedding Approach for the Hit-pattern-ba...</description>
                        <pubDate>Wed, 10 Mar 2010 13:13:13 +0900</pubDate>
                        <category>Steganography</category>
                        <category>스테가노그라피</category>
                                </item>
                <item>
            <title>2010 기업 보안 현황 보고서(Symantec 2010 State of Enterprise Security Study)</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18909</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18909</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18909#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. 시만텍에서 발표한 &quot;2010 기업 보안 현황 보고서(Symantec 2010 ...</description>
                        <pubDate>Wed, 10 Mar 2010 12:16:55 +0900</pubDate>
                                </item>
                <item>
            <title>2010년 3월 MS 정기 보안 업데이트 권고</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18899</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18899</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18899#comment</comments>
                                    <description>&lt;div class=&quot;xe_content&quot;&gt;&lt;p&gt;&lt;strong&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[MS10-016] Windows Movie Maker 취약점으로 인한 원격코드실행 문제&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□
 영향&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 공격자가 영향 받는 시스템에 대해 완전한 권한 획득&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 설명&amp;nbsp; &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o MS의 동영상 편집 
관련 프로그램 Windows Movie Maker 및 MS Producer에 원격코드 실행 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 가능한 버퍼오버플로우 
취약점 존재&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ Windows Movie Maker : 윈도우즈 운영체제에 설치되어 있는 동영상 편집 프로그램&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 ※ MS Producer : MS 오피스 문서 등을 동영상과 같은 다양한 멀티미디어 컨텐츠로 제작할 수&amp;nbsp;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;있도
록 지원하는 프로그램&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 공격자는 Windows Movie Maker 및 MS Producer에서 열어볼 수 있는 
파일(.mswmm 등)을&amp;nbsp;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 조작하여 사용자에게 전송하여 이를 열어보도록 유도함. 공격이 성공하면 공격자는 프로그램 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 설치, 삭제, 계정 생성 등 영향 받는 시스템에 대해 완전한 권한 획득 가능&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 관련취약점 :&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
Movie Maker and Producer Buffer Overflow Vulnerability – CVE-2010-0265 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;
 o 영향 : 원격코드실행&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 중요도 : 중요&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 해당시스템&amp;nbsp; &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 영향 받는 소프트웨어 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - Windows Movie Maker 2.1 on Windows XP SP2, SP3&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Movie
 Maker 2.1 on Windows XP Professional x64 Edition SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows 
Movie Maker 6.0, 2.6 on Windows Vista, SP1, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Movie 
Maker 6.0 on Windows Vista x64 Edition, SP1, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Movie 
Maker 2.6 on Windows 7 32-bit&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Movie Maker 2.6 on 
Windows 7 x64&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ Windows 7의 경우 취약한 버전의 소프트웨어를 별도로 설치한 경우 영향 받음&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - Microsoft Producer 2003&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 영향 받지 않는 소프트웨어 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft 
Windows 2000 SP4&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows 
Server 2003 x64 Edition SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 with SP2 for 
Itanium-based Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for 32-bit Systems, 
SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for x64-based Systems, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
Windows Server 2008 for Itanium-based Systems, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows 7 
for 32-bit Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows 7 for x64-based Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
Windows Server 2008 R2 for x64-based Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 
2008 R2 for Itanium-based Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Live Movie Maker&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□
 해결책&amp;nbsp; &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 해당 시스템에 대한 마이크로소프트사의 취약점 패치 적용&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 참조사이트 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 영문 : &lt;/span&gt;&lt;a href=&quot;http://www.microsoft.com/technet/security/Bulletin/MS10-016.mspx&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.microsoft.com/technet/security/Bulletin/MS10-016.mspx&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;
 o 한글 : 추후 공지&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;strong&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[MS10-017] MS Office Excel 취약점으로 인한 원격코드실행 
문제&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 영향&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 공격자가 영향 받는 시스템에 대해 완전한 권한 획득&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 설명&amp;nbsp; &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;
 o MS Office Excel이 조작된 개체가 포함된 Excel 파일을 처리할 때 메모리 및 특정 정보 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 
파싱(Parsing) 문제로 원격코드 실행이 발생하는 취약점 존재&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 공격자는 조작된 Excel 파일을 사용자에게 
전송하여 이를 열어보도록 유도함. 공격이 성공하면 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 공격자는 프로그램 설치, 삭제, 계정 생성 등 영향 받는 시스템에
 대해 완전한 권한 획득 가능&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 관련취약점 :&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office Excel Record 
Memory Corruption Vulnerability - CVE-2010-0257&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft 
Office Excel Sheet Object Type Confusion Vulnerability - CVE-2010-0258&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - Microsoft Office Excel MDXTUPLE Record Heap Overflow Vulnerability&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;-
 CVE-2010-0260&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office Excel MDXSET Record Heap 
Overflow Vulnerability - CVE-2010-0261&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office Excel 
FNGROUPNAME Record Uninitialized Memory Vulnerability&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;- 
CVE-2010-0262&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office Excel XLSX File Parsing Code 
Execution Vulnerability&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;- CVE-2010-0263&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft 
Office Excel DbOrParamQry Record Parsing Vulnerability - CVE-2010-0264&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;
 o 영향 : 원격코드실행&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 중요도 : 중요&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 해당시스템&amp;nbsp; &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 영향 받는 소프트웨어 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - Microsoft Office XP SP3&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office 2003 SP3&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
2007 Microsoft Office System SP1, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office 2004 for
 Mac&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office 2008 for Mac&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - OpenXML File Format
 Converter for Mac&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office Excel Viewer SP1, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - Microsoft Office Compatibility Pack for Word, Excel, PowerPoint 2007&amp;nbsp;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;File
 Formats SP1, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office SharePoint Server 2007 SP1, 
SP2 (32-bit editions)&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Office SharePoint Server 2007 
SP1, SP2 (64-bit editions)&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 영향 받지 않는 소프트웨어 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft 
Office File Converter Pack&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Works 8.5, 9.0&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 
해결책&amp;nbsp; &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 해당 시스템에 대한 마이크로소프트사의 취약점 패치 적용&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 참조사이트 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp; o 영문 : &lt;/span&gt;&lt;a href=&quot;http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;
 o 한글 : 추후 공지&lt;/span&gt;&lt;/p&gt;&lt;/div&gt;</description>
                        <pubDate>Wed, 10 Mar 2010 09:49:15 +0900</pubDate>
                                </item>
                <item>
            <title>Energizer DUO USB 배터리 충전기 프로그램을 통해 전파되는 악성 코드 주의</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18889</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18889</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18889#comment</comments>
                                    <description>&lt;div class=&quot;xe_content&quot;&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 개요&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 에너자이저 USB 배터리 충전기[1, 2]의 충전 상태를 알려주기 위한 프로그램에서 악성코드가 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 
발견됨 [3, 4, 5]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 발견된 악성코드는 원격의 공격자가 감염 PC의 TCP 7777번 포트를 이용해 비인가된&amp;nbsp; 접근을 
&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 하여&amp;nbsp;디렉토리/파일 목록 열람, 파일 송수신, 임의의 프로그램 실행 등을 수행 가능한 백도어임 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [3, 4, 
5]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 해당 프로그램을 설치하여 사용하고 있는 이용자의 조치가 요구됨&lt;/span&gt;&lt;/p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;
&lt;/span&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 해당 시스템&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 영향 받는 소프트웨어&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Energizer DUO USB Battery 
Charger&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 해당 프로그램은 에너자이저 본사를 통해 배포되며 업데이트 과정에서 악성코드를 다운로드 
&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 및&amp;nbsp;설치함 (현재는 다운로드가 중단된 상태임)&lt;/span&gt;&lt;/p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;
&lt;/span&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 해결 방안&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 해당 프로그램 삭제 및 C:\WINDOWS\system32\Arucer.dll파일 삭제 후 시스템 
재시작[3,5]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 사용하고 있는 백신프로그램의 최신 업데이트 및 시스템 전체를 대상으로 정밀 검사&lt;/span&gt;&lt;/p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;
&lt;/span&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 기타 문의사항&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 에너자이저 코리아 : 02-2103-8292&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 한국인터넷진흥원 인터넷침해대응센터: 국번없이 
118&lt;/span&gt;&lt;/p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;
&lt;/span&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[참고사이트]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[1] &lt;/span&gt;&lt;a href=&quot;http://www.energizer.co.kr/product/prt_info3.asp&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.energizer.co.kr/product/prt_info3.asp&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[2] 
&lt;/span&gt;&lt;a href=&quot;http://heyday83.tistory.com/42&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://heyday83.tistory.com/42&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[3] 
&lt;/span&gt;&lt;a href=&quot;http://hummingbird.tistory.com/1930&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://hummingbird.tistory.com/1930&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[4] 
&lt;/span&gt;&lt;a href=&quot;http://www.symantec.com/connect/blogs/trojan-found-usb-battery-charger-software&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.symantec.com/connect/blogs/trojan-found-usb-battery-charger-software&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[5] 
&lt;/span&gt;&lt;a href=&quot;http://www.vupen.com/english/advisories/2010/0549&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.vupen.com/english/advisories/2010/0549&lt;/span&gt;&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;</description>
                        <pubDate>Tue, 09 Mar 2010 22:19:10 +0900</pubDate>
                                </item>
                <item>
            <title>윈도우즈 플랫폼 상의 아파치 웹 서버 2.2.14 내 원격 코드 실행 취약점 보안 공고</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18887</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18887</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18887#comment</comments>
                                    <description>&lt;div class=&quot;xe_content&quot;&gt;&lt;span style=&quot;font-size: 14px; font-weight: bold; color: rgb(255, 0, 255);&quot;&gt;기존 윈도우즈 플랫폼 상의 아파치 웹 서버를 2.2.15 이상 최신 버젼으로 업데이트가 권장됩니다.&lt;/span&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[CVE-2010-0425] 윈도우즈 플랫폼 상의 아파치 웹 서버 2.2.14 내 원격 코드 실행 취약점&lt;/span&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 영향&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 악의적인 사용자에 의해 원격에서 시스템 권한으로 악의적인 코드 실행을 허용함.&lt;/span&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 설명&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 윈도우즈 플랫폼 상에서 아파치 웹 서버의 핵심 모듈인 mod_isapi(인터넷 서버 확장 API 구현) 상에서 악의적으로 조작된 요청을 함에 의해 메모리로부터 ISAPI 모듈 제거가 가능하고, 메모리에 남은 Function Pointer는 여전히 ISAPI 함수가 참조될 때마다 호출됨으로써 결과적으로 &quot;Dangling Pointer&quot; 취약점에 노출되게 된다.&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 이 때문에 성공적인 공격은 SYSTEM 권한으로 악의적인 코드 실행이 가능하다.&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 영향 받는 소프트웨어&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 윈도우즈 플랫폼 상의 아파치 웹 서버 2.2.14 이하&lt;/span&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 위험 정도&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 위험 정도: High Risk&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; * Exploit Code 공개됨&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;a target=&quot;_self&quot; href=&quot;http://www.senseofsecurity.com.au/advisories/SOS-10-002-pwn-isapi.cpp&quot;&gt;http://www.senseofsecurity.com.au/advisories/SOS-10-002-pwn-isapi.cpp&lt;/a&gt; &lt;/span&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 해결책 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 윈도우즈 플랫폼용 아파치 웹 서버 2.2.15 이상 최신 버젼으로 업그레이드&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;a target=&quot;_blank&quot; href=&quot;http://httpd.apache.org/download.cgi#apache22&quot;&gt;http://httpd.apache.org/download.cgi#apache22&lt;/a&gt;&lt;/span&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 참조 사이트&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - &lt;a target=&quot;_blank&quot; href=&quot;http://xforce.iss.net/xforce/xfdb/56624&quot;&gt;http://xforce.iss.net/xforce/xfdb/56624&lt;/a&gt;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - &lt;a target=&quot;_blank&quot; href=&quot;http://www.senseofsecurity.com.au/advisories/SOS-10-002&quot;&gt;http://www.senseofsecurity.com.au/advisories/SOS-10-002&lt;/a&gt;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - &lt;a target=&quot;_blank&quot; href=&quot;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0425&quot;&gt;http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0425&lt;/a&gt;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - &lt;a target=&quot;_blank&quot; href=&quot;http://www.securityfocus.com/bid/38494&quot;&gt;http://www.securityfocus.com/bid/38494&lt;/a&gt;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; - &lt;a target=&quot;_blank&quot; href=&quot;http://svn.apache.org/viewvc?view=revision&amp;amp;revision=917870&quot;&gt;http://svn.apache.org/viewvc?view=revision&amp;amp;revision=917870&lt;/a&gt;&lt;/span&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 출처: SecurityPlus (http://www.securityplus.or.kr)&lt;/span&gt;&lt;br  /&gt;&lt;/div&gt;</description>
                        <pubDate>Tue, 09 Mar 2010 22:17:00 +0900</pubDate>
                                </item>
                <item>
            <title>THE SECURITY EXPOSURE OF SOFTWARE PORTFOLIOS</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18882</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18882</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18882#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;THE SECURITY EXPOSURE OF SOFTWARE PORTFOLIOS&quot; ...</description>
                        <pubDate>Tue, 09 Mar 2010 21:45:29 +0900</pubDate>
                        <category>패치</category>
                        <category>Patch</category>
                                </item>
                <item>
            <title>Risk-based Penetration Testing</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18875</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18875</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18875#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;Risk-based Penetration Testing&quot; 제하의 보안 PPT입니다. 다...</description>
                        <pubDate>Tue, 09 Mar 2010 21:24:10 +0900</pubDate>
                        <category>모의해킹</category>
                        <category>Penetration</category>
                        <category>위험</category>
                        <category>Risk</category>
                                </item>
                <item>
            <title>MARIONETTE: Client Honeypot for Investigating and Understanding Web-based Malware Infection on Implicated Websites</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18868</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18868</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18868#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;MARIONETTE: Client Honeypot for Investigating and U...</description>
                        <pubDate>Tue, 09 Mar 2010 21:15:51 +0900</pubDate>
                        <category>허니팟</category>
                        <category>Honeypot</category>
                        <category>악성코드</category>
                        <category>Malware</category>
                                </item>
                <item>
            <title>Incident Handling &amp; Log Analysis in a Web Driven World</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18782</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18782</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18782#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;Incident Handling &amp;amp; Log Analysis in a Web Driven...</description>
                        <pubDate>Fri, 05 Mar 2010 13:24:33 +0900</pubDate>
                        <category>로그</category>
                        <category>Log</category>
                                </item>
                <item>
            <title>Malware Detection Focusing on Behaviors of Process and its Implementation</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18777</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18777</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18777#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;Malware Detection Focusing on Behaviors of Process and...</description>
                        <pubDate>Fri, 05 Mar 2010 13:19:42 +0900</pubDate>
                        <category>악성코드</category>
                        <category>Malware</category>
                                </item>
                <item>
            <title>RSA: 경제위기에도 IT 보안 전문가 연봉 늘어</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18775</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18775</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18775#comment</comments>
                                    <description>
극심한 경기침체로 인해 일자리를 잃거나 새로운 일자리를 찾는데 어려움을 겪고 있는 구직자들의...</description>
                        <pubDate>Fri, 05 Mar 2010 12:15:10 +0900</pubDate>
                                </item>
                <item>
            <title>2009 국내 지식정보보안산업 시장 및 동향 조사 보고서</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18772</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18772</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18772#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. 한국인터넷진흥원 주관, 지식정보보안산업협회와 코리아데이타네트워...</description>
                        <pubDate>Fri, 05 Mar 2010 11:47:44 +0900</pubDate>
                                </item>
                <item>
            <title>Windows 보안 시스템 DEP 우회 셈플 코드</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18758</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18758</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18758#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. 3월 1일에 구글의 유명 보안 연구가인 SkyLined(실제 이름 Be...</description>
                        <pubDate>Thu, 04 Mar 2010 22:27:40 +0900</pubDate>
                        <category>DEP</category>
                                </item>
                <item>
            <title>5가지 도메인으로 보는 IT 거버넌스</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18752</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18752</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18752#comment</comments>
                                    <description>경영 속의 IT5가지 도메인으로 보는 IT 거버넌스
&amp;nbsp;
IT 거버넌스가 2010년에도 많은 기업들의...</description>
                        <pubDate>Thu, 04 Mar 2010 18:08:28 +0900</pubDate>
                        <category>IT거버넌스</category>
                                </item>
                <item>
            <title>Advanced Digital Forensic</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18745</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18745</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18745#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;Advanced Digital Forensic&quot; 제하의 보안 PPT입니다. 다루고...</description>
                        <pubDate>Thu, 04 Mar 2010 16:07:37 +0900</pubDate>
                        <category>포렌식</category>
                        <category>Forensic</category>
                                </item>
                <item>
            <title>Malicious Web Page Detection Based on Anomaly Semantics</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18742</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18742</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18742#comment</comments>
                                    <description>안녕하세요. SecurityPlus입니다. &quot;Malicious Web Page Detection Based on Anomaly Semantics...</description>
                        <pubDate>Thu, 04 Mar 2010 16:03:58 +0900</pubDate>
                                </item>
                <item>
            <title>(주)인프니스 - CERT 신입/경력사원 모집</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18713</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18713</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18713#comment</comments>
                                    <description>&lt;div class=&quot;xe_content&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;(주&lt;/span&gt;&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;) &lt;/span&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;인프니스&lt;/span&gt;&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; www.infnis.com &amp;lt;&lt;a target=&quot;_blank&quot; title=&quot;http://www.infnis.com/&quot; href=&quot;https://mail.infnis.com/exchweb/bin/redir.asp?URL=http://www.infnis.com&quot;&gt;&lt;font color=&quot;#0000ff&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.infnis.com&lt;/span&gt;&lt;/font&gt;&lt;/a&gt;&amp;gt; &amp;nbsp;&lt;/span&gt;&lt;p class=&quot;MsoNormal&quot;&gt;&lt;font face=&quot;굴림&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 10pt;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;&lt;/span&gt;&lt;/font&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot;&gt;인프니스는 국내 최초로&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; IPSec VPN&lt;/span&gt;에&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; Router, Switch &lt;/span&gt;기능을 접목시킨 업체로서 &lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;KT&lt;/span&gt;의
 &lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;“Managed CPE VPN &lt;/span&gt;임대 서비스&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;”, 
“X4Biz &lt;/span&gt;임대 서비스&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;”&lt;/span&gt;에 장비 공급과 관제 서비스를 제공하고 있는 주
 사업자입니다&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;. &lt;/span&gt;또한&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;, Firewall, IPS,
 VPN&lt;/span&gt;의 기본 보안 기능과&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; Web Filtering, Anti-Virus, 
Anti-Spam &lt;/span&gt;등의 부가 보안 기능을 모두 도입한 통합 보안 장비&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;(UTM ; 
Unified Threat Management)&lt;/span&gt;를 개발하여 많은 고객과 함께 하고 있습니다&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;. &lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class=&quot;MsoNormal&quot;&gt;&lt;font face=&quot;굴림&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&amp;nbsp;&lt;br  /&gt;1. &lt;/span&gt;&lt;/font&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot;&gt;모집분야&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; : &lt;/span&gt;침해사고분석대응팀&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;(&lt;/span&gt;신입&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;/&lt;/span&gt;경력&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;)&lt;br  /&gt;&lt;br  /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class=&quot;MsoNormal&quot;&gt;&lt;font face=&quot;굴림&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;2. &lt;/span&gt;&lt;/font&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot;&gt;자격 요건&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; &lt;br  /&gt;- &amp;nbsp;4&lt;/span&gt;년제 대학 
관련학과 졸업자&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;- &lt;/span&gt;정보보안 및 네트워크 관련 기본적인 지식 보유&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;- &lt;/span&gt;경력지원은 총 경력&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; 2&lt;/span&gt;년 이상 만을 
인정하며&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;, 2&lt;/span&gt;년 미만은 신입 지원으로 간주함&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class=&quot;MsoNormal&quot;&gt;&lt;a target=&quot;_blank&quot; name=&quot;OLE_LINK1&quot;&gt;&lt;font face=&quot;굴림&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;- &lt;/span&gt;&lt;/font&gt;&lt;/a&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot;&gt;침해사고 분석 대응&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; &lt;br  /&gt;-
 &lt;/span&gt;네트워크 기반 악성코드 및 취약점 분석&lt;/span&gt;&lt;/font&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;&amp;nbsp;&lt;br  /&gt;3. &lt;/span&gt;&lt;/font&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot;&gt;우대 조건&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;- &lt;/span&gt;정
보보호 관련 자격증 소지자&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; &lt;br  /&gt;- &lt;/span&gt;네트워크 기반 악성코드 분석 유 경험자&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;&amp;nbsp;&lt;br  /&gt;4. &lt;/span&gt;채용일정&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; : 2010-03-03 ~ 
2010-03-25&lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class=&quot;MsoNormal&quot;&gt;&lt;font face=&quot;굴림&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;5.
 &lt;/span&gt;&lt;/font&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot;&gt;접수방법&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;: &lt;/span&gt;당사 표준지원양식을 이용하여 지원서 작성 후 &lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;“&lt;/span&gt;지
원분야&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;-&lt;/span&gt;본인이름&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;.zip” &lt;/span&gt;으로 
압축하여 담당자&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; E-mail&lt;/span&gt;로 접수&lt;span lang=&quot;EN-US&quot;&gt;&lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class=&quot;MsoNormal&quot;&gt;&lt;font face=&quot;굴림&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;6. &lt;/span&gt;&lt;/font&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot;&gt;전형절차&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;- 1&lt;/span&gt;차&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;: &lt;/span&gt;서류심사&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; &lt;br  /&gt;- 2&lt;/span&gt;차&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;: &lt;/span&gt;실무면접&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; - &lt;/span&gt;서류전형 합격자에 한하여 
개별통지 예정&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; &lt;br  /&gt;- 3&lt;/span&gt;차&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;: &lt;/span&gt;임원
면접&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;&lt;br  /&gt;7. &lt;/span&gt;제출서류 및 접수처&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;-
 &lt;/span&gt;이력서&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;(&lt;/span&gt;사진 부착&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;), &lt;/span&gt;자
기소개서&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;- &lt;/span&gt;면접 시 &lt;u&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;최종학교 성적증명서&lt;/span&gt;&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;(&lt;/span&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;신
입사원&lt;/span&gt;&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;),&lt;/span&gt;&lt;/u&gt;&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; &lt;/span&gt;기타 증명서 및 
자격증 사본 제출&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; &lt;br  /&gt;- &lt;/span&gt;우편접수&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; : &lt;/span&gt;서
울시 강남구 신사동&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; 613-5 &lt;/span&gt;캐럴라인타워&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; 6F&lt;/span&gt;&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; &lt;/span&gt;㈜인프니스 경영지원팀&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;- &lt;/span&gt;표준지원양식&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;: &lt;a target=&quot;_blank&quot; title=&quot;http://www.infnis.com/down/INFNIS_resume.doc&quot; href=&quot;https://mail.infnis.com/exchweb/bin/redir.asp?URL=http://www.infnis.com/down/INFNIS_resume.doc&quot;&gt;&lt;font color=&quot;#0000ff&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.infnis.com/down/INFNIS_resume.doc&lt;/span&gt;&lt;/font&gt;&lt;/a&gt;&lt;br  /&gt;-
 &lt;/span&gt;담당자&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; Email: &lt;a target=&quot;_blank&quot; title=&quot;blocked::panda@infnis.com&quot; href=&quot;http://cafe.naver.com/ArticleRead.nhn?clubid=10414494&amp;amp;articleid=15366&quot;&gt;&lt;font color=&quot;#0000ff&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;panda@infnis.com&lt;/span&gt;&lt;/font&gt;&lt;/a&gt; &amp;lt;&lt;a target=&quot;_blank&quot; title=&quot;mailto:panda@infnis.com&quot; href=&quot;mailto:panda@infnis.com&quot;&gt;&lt;font color=&quot;#0000ff&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;mailto:panda@infnis.com&lt;/span&gt;&lt;/font&gt;&lt;/a&gt;&amp;gt; &lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class=&quot;MsoNormal&quot;&gt;&lt;font face=&quot;굴림&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;8. &lt;/span&gt;&lt;/font&gt;&lt;font face=&quot;굴림&quot;&gt;&lt;span style=&quot;font-family: 굴림; font-size: 14px;&quot;&gt;기타사항&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;- &lt;/span&gt;경력 지원자인 경우
 지원서에 최종연봉 및 희망연봉 표시&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;&lt;br  /&gt;- &lt;/span&gt;모집기간 중 수시로&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; 1&lt;/span&gt;차 전형&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;(&lt;/span&gt;서류심사&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;)&lt;/span&gt;후 합격자에 한해&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt; 2&lt;/span&gt;차 전형&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;(&lt;/span&gt;실무면접&lt;span style=&quot;font-size: 14px;&quot; lang=&quot;EN-US&quot;&gt;) &lt;/span&gt;일정을 통보함&lt;div class=&quot;autosourcing-stub&quot;&gt;&lt;p style=&quot;margin: 20px 0pt 30px; padding: 0pt; font-size: 12px; font-family: dotum;&quot;&gt;&lt;strong style=&quot;padding: 0pt 7px 0pt 0pt;&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[출처]&lt;/span&gt;&lt;/strong&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt; &lt;/span&gt;&lt;a href=&quot;http://cafe.naver.com/securityplus/15366&quot; target=&quot;_blank&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;(주) 
인프니스-CERT 신입/경력사원 모집  (SecurityPlus)&lt;/span&gt;&lt;/a&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt; &lt;/span&gt;&lt;span style=&quot;padding: 0pt 7px 0pt 5px; font-size: 14px;&quot;&gt;|&lt;/span&gt;&lt;strong style=&quot;padding: 0pt 7px 0pt 0pt;&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;작성자&lt;/span&gt;&lt;/strong&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;
 &lt;/span&gt;&lt;a href=&quot;http://cafe.naver.com/securityplus.cafe?iframe_url=/CafeMemberNetworkView.nhn%3Fm=view%26memberid=hjs214&quot; target=&quot;_blank&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;걱정이&lt;/span&gt;&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;&lt;/span&gt;&lt;/font&gt;&lt;/p&gt;&lt;/div&gt;</description>
                        <pubDate>Thu, 04 Mar 2010 01:00:51 +0900</pubDate>
                                </item>
                <item>
            <title>MS VBScript 원격 코드 실행 취약점 보안 공지</title>
            <dc:creator>SecurityPlus</dc:creator>
            <link>http://www.securityplus.or.kr/xe/?document_srl=18703</link>
            <guid isPermaLink="true">http://www.securityplus.or.kr/xe/?document_srl=18703</guid>
                        <comments>http://www.securityplus.or.kr/xe/?document_srl=18703#comment</comments>
                                    <description>&lt;div class=&quot;xe_content&quot;&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 개요&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o Internet Explorer를 사용할 때 VBScript가 윈도우 도움말 파일과 상호 동작하는 
방식의 문제로 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 인해 임의의 원격코드가 실행될 수 있는 취약점이 공개 [1, 2, 3]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 공격자는 
스팸 메일이나 메신저의 링크를 통해 특수하게 조작된 콘텐트로 구성된 악의적인 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 웹 사이트에 방문 후 F1키를 
누르도록 사용자를 유도하여, 해당 사용자의 권한으로 원격코드&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;실행이 가능함&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 대화상자가 
팝업되었을 때 F1키를 누르지 않는 경우, 공격이 성공하지 않음&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ VBScript (Visual Basic 
Scripting Edition) : MS社에 의해 개발된 동적 스크립트 언어로 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; MS의 웹 
클라이언트(IE)-서버(IIS) 환경에서 주로 사용됨&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 모든 버전의 Internet Explorer을 대상으로 공격이
 가능한 취약점이 공개되었으므로 인터넷&amp;nbsp;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;사용자의 주의가 요구됨&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 해당 시스템&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 영향 받는
 소프트웨어 [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Microsoft Windows 2000 SP4&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows XP 
SP2, SP3&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows XP Professional x64 Edition SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
Windows Server 2003 SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 with SP2 for 
Itanium-based Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2003 x64 Edition SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;
 o 영향 받지 않는는 소프트웨어 [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Vista, SP1, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 
Windows Vista x64 Edition, SP1, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for 
32-bit Systems, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for Itanium-based 
Systems, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 for x64-based Systems, SP2&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - Windows 7 for 32-bit Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows 7 for x64-based 
Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Windows Server 2008 R2 for x64-based Systems&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -
 Windows Server 2008 R2 for Itanium-based Systems&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 임시 해결 방안&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;
 o 현재 해당 취약점에 대한 보안업데이트는 발표되지 않았음&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 웹 사이트의 대화상자가 팝업된 경우 F1키를 누르지 
말아야 함&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 대화상자가 무한히 반복적으로 팝업되면서 F1키를 누르도록 유도할 경우에는 로그오프 또는 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 작업 관리자에서 IE 종료&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 윈도우 도움말 시스템의 접근을 제한 [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 명령 프롬프트에서 다음 
명령을 실행&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;img alt=&quot;&quot; src=&quot;http://www.krcert.or.kr/images/100302_IE_VB1.jpg&quot; align=&quot;baseline&quot; border=&quot;0&quot; hspace=&quot;0&quot; /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 해당 명령 실행 시 윈도우 도움말 시스템의 사용이 불가능하며 복구를 
위해서는 다음 명령 실행&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;img alt=&quot;&quot; src=&quot;http://www.krcert.or.kr/images/100302_IE_VB2.jpg&quot; align=&quot;baseline&quot; border=&quot;0&quot; hspace=&quot;0&quot; /&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 인터넷 및 로컬 인트라넷 영역에서 ActiveX 컨트롤이나 
Active 스크립팅의 사용을 제한 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (Active&amp;nbsp;스크립팅을 사용하는 일부 웹 사이트는 정상적으로 동작하지 않을
 수 있으므로 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 주의) [1]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 해당 영역의 보안 수준을 &quot;높음&quot;으로 변경&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※
 도구 메뉴 → 인터넷 옵션 → 보안 탭 → 보안설정을 변경할 영역 선택 → 보안 수준을 &quot;높음&quot;&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 으로 
변경&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 해당 영역의 Active 스크립팅 기능만 제한&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 도구 메뉴 → 인터넷 옵션 → 보안 탭
 → 보안설정을 변경할 영역 선택 → 사용자 지정 수준 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 버튼 → 스크립팅 섹션의 Active 스크립팅을
 &quot;사용 안함&quot; 또는 &quot;확인&quot;으로 설정&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;img style=&quot;width: 282px; height: 262px;&quot; alt=&quot;&quot; src=&quot;http://www.krcert.or.kr/images/100302_IE_VB3.jpg&quot; width=&quot;289&quot; align=&quot;baseline&quot; border=&quot;0&quot; height=&quot;286&quot; hspace=&quot;0&quot; /&gt;&lt;img style=&quot;width: 255px; height: 244px;&quot; alt=&quot;&quot; src=&quot;http://www.krcert.or.kr/images/100302_IE_VB4.jpg&quot; width=&quot;275&quot; align=&quot;baseline&quot; border=&quot;0&quot; height=&quot;256&quot; hspace=&quot;0&quot; /&gt;&lt;br  /&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 
KrCERT/CC와 MS 보안업데이트 사이트[4]를 주기적으로 확인하여 해당 취약점에 대한 보안&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 업데이트 발표 시 
신속히 최신 업데이트를 적용하거나 자동업데이트를 설정&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ※ 자동업데이트 설정 방법: 
시작→제어판→보안센터→자동업데이트→자동(권장) 선택&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 취약점에 의한 피해를 줄이기 위하여 사용자는 다음과 같은 사항을
 준수해야함&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 파일공유 기능 등을 사용하지 않으면 비활성화하고 개인방화벽을 반드시 사용&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 사용하고
 있는 백신프로그램의 최신 업데이트를 유지하고, 실시간 감시기능을 활성화&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 신뢰되지 않는 웹 사이트의 방문 자제&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 - 출처가 불분명한 이메일의 링크 클릭하거나 첨부파일 열어보기 자제&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;□ 기타 문의사항&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 보안업데이트는 
언제 발표되나요?&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - 해당 보안업데이트의 발표 일정은 미정이나, 발표 시 KrCERT/CC 홈페이지를 통해 신속히 &lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;
 공지할 예정입니다.&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;&amp;nbsp;&amp;nbsp; o 한국인터넷진흥원 인터넷침해대응센터: 국번없이 118&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[참고사이트]&lt;/span&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[1] &lt;/span&gt;&lt;a href=&quot;http://www.microsoft.com/technet/security/advisory/981169.mspx&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.microsoft.com/technet/security/advisory/981169.mspx&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[2]
 &lt;/span&gt;&lt;a href=&quot;http://isec.pl/vulnerabilities/isec-0027-msgbox-helpfile-ie.txt&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://isec.pl/vulnerabilities/isec-0027-msgbox-helpfile-ie.txt&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[3]
 &lt;/span&gt;&lt;a href=&quot;http://www.securityfocus.com/bid/38463/&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://www.securityfocus.com/bid/38463/&lt;/span&gt;&lt;/a&gt;&lt;br  /&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;[4]
 &lt;/span&gt;&lt;a href=&quot;http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=ko&quot;&gt;&lt;span style=&quot;font-size: 14px;&quot;&gt;http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=ko&lt;/span&gt;&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;</description>
                        <pubDate>Wed, 03 Mar 2010 17:04:44 +0900</pubDate>
                                </item>
            </channel>
</rss>
