Eyeon Security Information security company

보안 동향

㈜아이온시큐리티에서 서비스 이용 고객님들의 안정적인 시스템 운영을 위해
필수적인 주요 보안 조치 사항을 안내해드립니다.

KT 개인정보 유출 제재 이달 중 결론... 과징금 규모 얼마나? 관리자 2026-07-20 05:18:50
KT 개인정보 유출 제재 이달 중 결론... 과징금 규모 얼마나?
관리자  2026-07-20 05:18:50
보안 동향 브리핑
SECURITY
DAILY REPORT
Eyeon Security

생성일시: 2026-07-20 05:13

보안뉴스 (신규 5건)
[신간] 26년 정보보안 현장 경험 담아... ‘CISO의 시선으로 바라본 정보보안 실무’ 출간
수집일: 2026-07-20
기사 이미지
26년 정보보안 현장의 경험을 담은 실무서… “보안은 신뢰이고, 신뢰는 생존이다”[보안뉴스 한세희 기자] ​”가장 취약한 보안 구멍은 시스템이 아니라 사람의 마음이다.” “보안은 기술이 아니라 신뢰를 지키는 일이다.”정보보안 전문가 최재영 보안스토리 대표가 26년간 기업 정보보안 현장에서 경험한 실무와 철학을 담은 신간 ‘CISO의 시선으로 바
원문 바로가기 →
KT 개인정보 유출 제재 이달 중 결론... 과징금 규모 얼마나?
수집일: 2026-07-20
기사 이미지
관련 매출 3%까지 과징금 가능… 감경 및 가중 요소 고려해 산정[보안뉴스 한세희 기자] 지난해 발생한 KT 개인정보 유출 및 무단 소액 결제 사건에 대한 정부 제재가 이르면 이달 결정된다. 19일 관련 업계에 따르면, 개인정보보호위원회는 29일 전체 회의를 열고 KT에 대한 과징금 부과 등 제재안을 심의·의결할 전망이다. KT는 지난해 9월 가입자 2만2
원문 바로가기 →
1인 가구 증가, 휴가 떠날 때 걱정도 ‘문 앞 택배 도난’... 에스원 휴가철 주택 안전 실태 설문
수집일: 2026-07-20
기사 이미지
1인 가구 시대, 달라진 휴가철 ‘빈집 걱정’1인 가구, 쌓인 택배 통한 ‘혼자 사는 사실 노출’ 우려... 다인 가구는 여전히 ‘외부인 침입’ 걱정[보안뉴스 한세희 기자] 1인 가구가 늘어나면서 휴가철을 맞아 장기간 집을 비울 때 사람들이 가장 걱정하는 것은 ‘문 앞 택배 도난’과 ‘반려견’ 등인 것으로 나타났다. 다인 가구의 경우 외부인에 의한 침입을
원문 바로가기 →
엔비디아 소프트웨어 위장, 윈도우 호스트 제어하는 신종 ‘라부바RAT’ 포착
수집일: 2026-07-20
기사 이미지
러스트 기반 신종 RAT 악성코드... 다중 통신 경로 지원해 탐지 회피[보안뉴스 김형근 기자] 보안 감시망을 교란하기 위해 엔비디아 정상 소프트웨어로 위장한 러스트(Rust) 기반 신종 원격 제어 악성코드(RAT), 일명 ‘라부바RAT’(LabubaRAT)이 발견됐다.보안 기업 블랙포인트사이버(Blackpoint Cyber)는 최근 발간한 분석 보고서에서
원문 바로가기 →
이스온, 국토교통부 ‘디지털도로 AI 신기술 지원사업’ 협약 체결
수집일: 2026-07-20
기사 이미지
레일로봇으로 고속도로 터널 화재 관리천장 레일 위 달리며 감시와 안내, 소화까지 수행산업통상자원부 R&D로 키운 원천기술 상용화[보안뉴스 엄호식 기자] 포항의 강소기업 이스온(대표이사 김웅욱)이 국토교통부 ‘디지털도로 AI 신기술 지원사업에 최종 선정돼 지난 7월 8일 전담기관인 한국지능형교통체계협회(ITS Korea)와 협약을 체결했다. 과제명은
원문 바로가기 →
KISA 보안공지 (신규 3건)
SonicWall 제품 보안 업데이트 권고
수집일: 2026-07-20

□ 개요
o SonicWall社는 자사 제품에서 발생하는 취약점을 해결한 보안 업데이트 발표 [1]
o 영향을 받는 버전을 사용 중인 사용자는 해결 방안에 따라 최신 버전으로 업데이트 권고

□ 설명
o SMA1000 Appliance Work Place 인터페이스에서 발생하는 Server-Side Request Forgery(SSRF) 취약점(CVE-2026-15409) [1][2]
o SMA1000 Appliance Management Console(AMC)에서 발생하는 Code Injection 취약점(CVE-2026-15410) [1][3]

□ 영향을 받는 제품 및 해결 방안

취약점 제품명 영향받는 버전 해결 버전
CVE-2026-15409 SMA1000 Series (6210, 7210, 8200v) 12.4.3-03245, 12.4.3-03387, 12.4.3-03434 (platform-hotfix) 12.4.3-03453 (platform-hotfix) 이상
CVE-2026-15409 SMA1000 Series (6210, 7210, 8200v) 12.5.0-02283, 12.5.0-02624, 12.5.0-02800 (platform-hotfix) 12.5.0-02835 (platform-hotfix) 이상
CVE-2026-15410 SMA1000 Series (6210, 7210, 8200v) 12.4.3-03245, 12.4.3-03387, 12.4.3-03434 (platform-hotfix) 12.4.3-03453 (platform-hotfix) 이상
CVE-2026-15410 SMA1000 Series (6210, 7210, 8200v) 12.5.0-02283, 12.5.0-02624, 12.5.0-02800 (platform-hotfix) 12.5.0-02835 (platform-hotfix) 이상

※ 하단의 참고 사이트를 확인하여 업데이트 수행 [1]
※ SonicWall 방화벽에서 실행되는 SSL-VPN 및 SMA 100 Series 제품군은 해당 취약점의 영향을 받지 않음 [1]

□ 참고사이트
[1] https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0008
[2] https://nvd.nist.gov/vuln/detail/CVE-2026-15409
[3] https://nvd.nist.gov/vuln/detail/CVE-2026-15410

□ 문의사항
o 한국인터넷진흥원 사이버민원센터 : 국번없이 118

□ 작성 : 디지털위협대응본부 취약점관리센터

원문 바로가기 →
美 CISA 발표 주요 Exploit 정보공유(Update. 2026-07-16)
수집일: 2026-07-20

□ 개요
o 美 CISA에서 현재 자주 악용되고 있는 취약점 목록 발표 [1]
o 영향을 받는 버전을 사용 중인 사용자는 해결 방안에 따라 최신 버전으로 업데이트 권고

□ 영향을 받는 제품

CVE제조사취약점내용조치사항
CVE-2026-39808FortinetFortinet FortiSandbox OS Command Injection VulnerabilityFortinet FortiSandbox contains an OS command injection vulnerability that could allow an unauthenticated attacker to execute unauthorized code or commands via crafted HTTP requests.Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
CVE-2026-25089FortinetFortinet FortiSandbox OS Command Injection VulnerabilityFortinet FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS contain an OS command injection vulnerability that allows an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests.Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
CVE-2026-58644MicrosoftMicrosoft SharePoint Deserialization of Untrusted Data VulnerabilityMicrosoft SharePoint contains a deserialization of untrusted data vulnerability that allows an unauthorized attacker to execute code over a network.Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

※ 하단의 참고 사이트를 확인하여 업데이트 수행 [1]

□ 참고사이트
[1] https://www.cisa.gov/known-exploited-vulnerabilities-catalog

□ 작성 : 디지털위협대응본부 취약점관리센터

원문 바로가기 →
美 CISA 발표 주요 Exploit 정보공유(Update. 2026-07-15)
수집일: 2026-07-20

□ 개요
o 美 CISA에서 현재 자주 악용되고 있는 취약점 목록 발표 [1]
o 영향을 받는 버전을 사용 중인 사용자는 해결 방안에 따라 최신 버전으로 업데이트 권고

□ 영향을 받는 제품

CVE제조사취약점내용조치사항
CVE-2023-4346KNX AssociationKNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism VulnerabilityKNX Association KNX Protocol Connection Authorization Option 1 contains an overly restrictive account lockout mechanism vulnerability that could allow an attacker to purge all devices without additional security options enabled and set a BCU key to lock the device. Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
CVE-2026-46817OracleOracle E-Business Suite Improper Privilege Management VulnerabilityOracle E-Business Suite contains an improper privilege management vulnerability that allows an unauthenticated attacker with network access via HTTP to compromise Oracle Payments. Successful attacks of this vulnerability can result in takeover of Oracle Payments.Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

※ 하단의 참고 사이트를 확인하여 업데이트 수행 [1]

□ 참고사이트
[1] https://www.cisa.gov/known-exploited-vulnerabilities-catalog

□ 작성 : 디지털위협대응본부 취약점관리센터

원문 바로가기 →
본 메일은 시스템에 의해 자동으로 수집 및 발송된 보안 동향 모니터링 리포트입니다.

첨부 파일 :