실시간 최신 보안 인텔리전스

사이버 위협을 한발 앞서 대응하세요

Windows 취약점, Linux 익스플로잇, OWASP Top 10을 다루는 실시간 보안 권고.

🛡️ 보안 평가 신청 서비스 보기
전체 🪟 Windows 🐧 Linux 🔟 Security Top 10
22 개 글
🐧 Linux HIGH

Linux sudo 취약점 CVE-2025-32462 — 일반 사용자 root 권한 탈취

sudo 1.9.x 권한 상승 취약점. 일반 사용자가 root 권한 탈취 가능. CVSS 7.4. 즉시 패치 필요.

👤 Admin 🕐 1y ago 👁 4,530
🔟 Top 10 HIGH

Broken Access Control: IDOR, Path Traversal and JWT Privilege Escalation

Broken Access Control is OWASP #1 for the fourth year. This guide covers the three most exploited patterns — IDOR, path traversal, and JWT algorithm confusion — with real-world examples and fixes.

👤 admin 🕐 1y ago 👁 8
🔟 Top 10 CRITICAL

SQL Injection in 2025: Still #1 — Modern WAF Bypass Techniques and Defenses

SQL injection remains the most exploited web vulnerability in 2025. Modern bypass techniques including JSON operator injection, second-order SQLi, and Unicode WAF evasion are examined with defensive countermeasures.

👤 admin 🕐 1y ago 👁 8
🔟 Top 10 HIGH

2025년 상반기 국내 개인정보 유출 사고 총정리 — 1,200만 건 유출

2025년 상반기 국내 개인정보 1,200만 건 유출. 쇼핑몰 SQL 인젝션, 의료기관 내부자, 앱서비스 클라우드 설정 오류 등.

👤 Admin 🕐 1y ago 👁 9,209
🔟 Top 10 HIGH

OWASP Top 10 2025 Update: What Changed and What to Prioritize

OWASP has refreshed the Top 10 for 2025 with new entries around LLM/AI security, software supply chain risks, and elevated SSRF. Here is a complete breakdown of changes and actionable priorities.

👤 admin 🕐 1y ago 👁 7
🪟 Windows CRITICAL

Windows NTLM Relay Attacks in 2025: DropTheMIC & ESC8 Combinations

Modern NTLM relay chains combining DropTheMIC, ESC8 (AD CS HTTP relay), and Shadow Credentials allow full domain compromise without cracking a single password hash.

👤 admin 🕐 1y ago 👁 8
🪟 Windows CRITICAL

CVE-2025-29824: CLFS Driver Zero-Day Exploited by RansomEXX

A use-after-free in the Windows Common Log File System (CLFS) driver was exploited as a zero-day by the RansomEXX ransomware group before Microsoft patched it in April 2025.

👤 admin 🕐 1y ago 👁 7
🐧 Linux CRITICAL

regreSSHion (CVE-2024-6387): OpenSSH RCE — Patch Status & Hardening Guide

regreSSHion is a signal handler race condition in OpenSSH allowing unauthenticated remote code execution as root on glibc-based Linux systems. Over 14 million internet-facing servers were initially vulnerable.

👤 admin 🕐 1y ago 👁 7
🪟 Windows HIGH

Chrome V8 타입 컨퓨전 취약점 긴급 패치 — 원클릭 공격 가능

Chrome V8 타입 컨퓨전 취약점. 악성 웹페이지 방문만으로 원격 코드 실행 가능. 즉시 최신 버전으로 업데이트.

👤 Admin 🕐 1y ago 👁 6,789

🎯 위험도 가이드

긴급 CVSS 9.0–10.0
높음 CVSS 7.0–8.9
보통 CVSS 4.0–6.9
낮음 CVSS 0.1–3.9
🔐

보안 평가가 필요하신가요?

전문적인 모의 침투 테스트 및 취약점 평가 서비스를 제공합니다.

지금 신청