{"id":317745,"date":"2022-09-30T18:19:12","date_gmt":"2022-09-30T17:19:12","guid":{"rendered":"https:\/\/www.stormshield.com\/?p=317745"},"modified":"2024-05-29T08:59:37","modified_gmt":"2024-05-29T07:59:37","slug":"alerte-securite-proxynotshell-la-reponse-des-produits-stormshield","status":"publish","type":"post","link":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/","title":{"rendered":"Alerte s\u00e9curit\u00e9 ProxyNotShell : la r\u00e9ponse des produits Stormshield"},"content":{"rendered":"<p><strong>La d\u00e9couverte de vuln\u00e9rabilit\u00e9s Zero-Day ProxyNotShell replonge les serveurs Exchange dans un niveau de risque \u00e9lev\u00e9 en attendant la correction Microsoft. Le point sur la menace, avec l\u2019\u00e9quipe Stormshield Customer Security Lab. <\/strong><\/p>\n<p>Nouvelle version du 04.10.22.<\/p>\n<p>&nbsp;<\/p>\n<h2>Le contexte des vuln\u00e9rabilit\u00e9s ProxyNotShell<\/h2>\n<p>Durant une analyse de type r\u00e9ponse sur incident, une \u00e9quipe de SOC\/CERT a d\u00e9couvert que le syst\u00e8me d\u2019information avait \u00e9t\u00e9 attaqu\u00e9 \u00e0 travers des vuln\u00e9rabilit\u00e9s sur un serveur Microsoft Exchange. Encore inconnues par Microsoft et donc non patch\u00e9es, ce sont deux vuln\u00e9rabilit\u00e9s critiques Zero-days : une SSRF (<em>Server Side Request Forgery<\/em>) et une RCE (<em>Remote Code Execution<\/em>) qui s'enchainent.<\/p>\n<p>Plus pr\u00e9cis\u00e9ment, ces vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 r\u00e9f\u00e9renc\u00e9es au ZDI (<em>Zero Day Initiative<\/em>). Il s\u2019agit de la ZDI-CAN-18333 avec un score de 8.8 et de la ZDI-CAN-18802 avec un score de 6.3. Les CVE viennent d\u2019\u00eatre publi\u00e9es sous les matricules <strong>CVE-2022-41040<\/strong> et <strong>CVE-2022-41082<\/strong>, cette derni\u00e8re \u00e9tant scor\u00e9e CVSS 3.1 \u00e0 9.6.<\/p>\n<p>Ces vuln\u00e9rabilit\u00e9s sont tr\u00e8s proches de ProxyShell d\u00e9couverte en 2021 (CVE-2021-34473), \u00e0 tel point qu\u2019on peut se demander si ce sont r\u00e9ellement de nouvelles vuln\u00e9rabilit\u00e9s. Cependant, les versions corrig\u00e9es d\u2019Exchange sont vuln\u00e9rables \u00e0 ces nouvelles techniques d\u2019exploitation, il s\u2019agit donc bien de nouvelles vuln\u00e9rabilit\u00e9s. <strong>Derri\u00e8re le nom \u00ab ProxyNotShell \u00bb, se cachent ces deux vuln\u00e9rabilit\u00e9s.<\/strong><\/p>\n<p>&nbsp;<\/p>\n<h2>Les d\u00e9tails techniques des vuln\u00e9rabilit\u00e9s ProxyNotShell<\/h2>\n<p>La vuln\u00e9rabilit\u00e9 RCE impacte les serveurs Windows Echange <em>on-premise<\/em> et ayant Outlook Web Access d\u2019activ\u00e9.<\/p>\n<p>Pour l\u2019exploiter, un attaquant provoquera l'envoi d'une requ\u00eate SOAP \u00ab<em>autodiscover<\/em>\u00bb pr\u00e9par\u00e9e sur mesure, dans un format\u00a0similaire \u00e0 la vuln\u00e9rabilit\u00e9 ProxyShell, de type : <strong><em>POST\/autodiscover\/autodiscover.json?@toto.com\/PowerShell\/[...]HTTP\/1.1<\/em><\/strong><\/p>\n<p>Ce type de requ\u00eate va provoquer l\u2019ex\u00e9cution \u00e0 distance d\u2019un code PowerShell, afin, par exemple, de d\u00e9poser un Web Shell sur le serveur et prendre le contr\u00f4le de celui-ci \u00e0 distance. Le processus Exchange ayant un haut niveau de privil\u00e8ge, il s\u2019agit d\u2019une porte d\u2019acc\u00e8s tr\u00e8s efficace pour prendre le contr\u00f4le total du serveur.<\/p>\n<p>&nbsp;<\/p>\n<h2>Les versions impact\u00e9es par les vuln\u00e9rabilit\u00e9s ProxyNotShell<\/h2>\n<p>Les versions de Microsoft Exchange 2013, 2016 et 2019 sont impact\u00e9es.<\/p>\n<p>&nbsp;<\/p>\n<h2>Les moyens de protection fournis par Stormshield<\/h2>\n<h3>Stormshield Network Security<\/h3>\n<p>Une signature IPS a \u00e9t\u00e9 publi\u00e9e sur SNS, elle permet de d\u00e9tecter l\u2019exploitation de la vuln\u00e9rabilit\u00e9 RCE. Cette signature n\u00e9cessite un d\u00e9chiffrement SSL pr\u00e9alable pour \u00eatre fonctionnelle.<\/p>\n<ul>\n<li><strong>http:url:decoded <\/strong>\u2192 Exploitation of Microsoft Exchange ProxyNotShell vulnerability (CVE-2022-41040, CVE-2022-41082)<\/li>\n<\/ul>\n<table class=\" aligncenter\" width=\"623\">\n<tbody>\n<tr>\n<td style=\"text-align: center;\" width=\"312\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-227874\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/indice.png\" alt=\"\" width=\"135\" height=\"101\" \/><\/p>\n<p><em>Indice de confiance de la protection propos\u00e9e par Stormshield<\/em><\/td>\n<td width=\"312\">\n<p style=\"text-align: center;\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-227874\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/indice.png\" alt=\"\" width=\"135\" height=\"101\" \/><\/p>\n<p style=\"text-align: center;\"><em>Indice de confiance de l\u2019absence de faux positif<\/em><\/p>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h3>Stormshield Endpoint Security Evolution<\/h3>\n<p>Avec la solution SES (7.2 et Evolution) install\u00e9e sur le serveur Exchange, il sera possible de d\u00e9tecter d\u2019\u00e9ventuels comportements malveillants faisant suite \u00e0 l\u2019exploitation de la vuln\u00e9rabilit\u00e9.<\/p>\n<p>Nous avons publi\u00e9 une politique de s\u00e9curit\u00e9 compos\u00e9e de 2 jeux de r\u00e8gles (pour SES Evolution 2.3 et sup\u00e9rieur) permettant de d\u00e9tecter la pr\u00e9sence des marqueurs de fichiers (hash) list\u00e9s dans ce document et de bloquer les connexions aux serveurs C2.<\/p>\n<p>Cette politique de s\u00e9curit\u00e9 est disponible dans le serveur de mises \u00e0 jour, elle s\u2019appelle \u00ab\u00a0<strong>Stormshield - Windows server policy<\/strong>\u00a0\u00bb. Elle comporte les jeux de r\u00e8gles suivants\u00a0:<\/p>\n<ul>\n<li><strong><em>Stormshield - Blocklist ruleset for network communication to known malicious actors<\/em><\/strong><\/li>\n<li><strong><em>Stormshield - Audits for known dangerous behaviour<\/em><\/strong><\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<h3>Autres recommandations<\/h3>\n<p>Microsoft a publi\u00e9 un premier outil (<a href=\"https:\/\/www.microsoft.com\/security\/blog\/2022\/09\/30\/analyzing-attacks-using-the-exchange-vulnerabilities-cve-2022-41040-and-cve-2022-41082\/\" target=\"_blank\" rel=\"noopener\">EOMTv2<\/a>), qui fournit aux administrateurs des mesures d'att\u00e9nuation face \u00e0 la vuln\u00e9rabilit\u00e9 CVE-2022-41040. Il est important de noter que le script doit \u00eatre ex\u00e9cut\u00e9 individuellement pour chaque serveur.<\/p>\n<p>&nbsp;<\/p>\n<h2>IOCs et infos utiles<\/h2>\n<p>L\u2019ensemble des indicateurs de compromission suivant ont \u00e9t\u00e9 int\u00e9gr\u00e9s \u00e0 nos solutions de protection (Breach Fighter, SNS &amp; SES).<\/p>\n<p><strong>Nom de fichiers et hash :<\/strong><\/p>\n<p><strong><em>pxh4HG1v.ashx <\/em><\/strong><br \/>\n[SHA256] c838e77afe750d713e67ffeb4ec1b82ee9066cbe21f11181fd34429f70831ec1<\/p>\n<p><strong><em>RedirSuiteServiceProxy.aspx <\/em><\/strong><br \/>\n[SHA256] 65a002fe655dc1751add167cf00adf284c080ab2e97cd386881518d3a31d27f5<\/p>\n<p><strong><em>RedirSuiteServiceProxy.aspx <\/em><\/strong><br \/>\n[SHA256] b5038f1912e7253c7747d2f0fa5310ee8319288f818392298fd92009926268ca<\/p>\n<p><strong><em>Xml.ashx <\/em><\/strong><br \/>\n[SHA256] c838e77afe750d713e67ffeb4ec1b82ee9066cbe21f11181fd34429f70831ec1<\/p>\n<p><strong><em>errorEE.aspx <\/em><\/strong><br \/>\n[SHA256] be07bd9310d7a487ca2f49bcdaafb9513c0c8f99921fdf79a05eaba25b52d257<\/p>\n<p><strong><em>Dll.dll <\/em><\/strong><br \/>\n[SHA256] 074eb0e75bb2d8f59f1fd571a8c5b76f9c899834893da6f7591b68531f2b5d82<br \/>\n[SHA256] 45c8233236a69a081ee390d4faa253177180b2bd45d8ed08369e07429ffbe0a9<br \/>\n[SHA256] 9ceca98c2b24ee30d64184d9d2470f6f2509ed914dafb87604123057a14c57c0<br \/>\n[SHA256] 29b75f0db3006440651c6342dc3c0672210cfb339141c75e12f6c84d990931c3<br \/>\n[SHA256] c8c907a67955bcdf07dd11d35f2a23498fb5ffe5c6b5d7f36870cf07da47bff2<\/p>\n<p><strong><em>80000000.dll <\/em><\/strong><br \/>\n[SHA256] 76a2f2644cb372f540e179ca2baa110b71de3370bb560aca65dcddbd7da3701e<\/p>\n<p><strong>IP &amp; URL<\/strong><\/p>\n<p>125[.]212[.]220[.]48<br \/>\n5[.]180[.]61[.]17<br \/>\n47[.]242[.]39[.]92<br \/>\n61[.]244[.]94[.]85<br \/>\n86[.]48[.]6[.]69<br \/>\n86[.]48[.]12[.]64<br \/>\n94[.]140[.]8[.]48<br \/>\n94[.]140[.]8[.]113<br \/>\n103[.]9[.]76[.]208<br \/>\n103[.]9[.]76[.]211<br \/>\n104[.]244[.]79[.]6<br \/>\n112[.]118[.]48[.]186<br \/>\n122[.]155[.]174[.]188<br \/>\n125[.]212[.]241[.]134<br \/>\n137[.]184[.]67[.]33<br \/>\n185[.]220[.]101[.]182<br \/>\n194[.]150[.]167[.]88<br \/>\n206[.]188[.]196[.]77<br \/>\n212[.]119[.]34[.]11<\/p>\n","protected":false},"excerpt":{"rendered":"<p>La d\u00e9couverte de vuln\u00e9rabilit\u00e9s Zero-Day ProxyNotShell replonge les serveurs Exchange dans un niveau de risque \u00e9lev\u00e9 en attendant la correction Microsoft. Le point sur la menace, avec l\u2019\u00e9quipe Stormshield Customer Security Lab. Nouvelle version du 04.10.22. &nbsp; Le contexte des vuln\u00e9rabilit\u00e9s ProxyNotShell Durant une analyse&#8230;<\/p>\n","protected":false},"author":65,"featured_media":190179,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1503],"tags":[4368],"business_size":[],"industry":[],"help_mefind":[],"features":[],"type_security":[],"maintenance":[],"offer":[],"administration_tools":[],"cloud_offers":[],"listing_product":[1565,1530],"class_list":["post-317745","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-alertes","tag-la-cybersecurite-par-stormshield","listing_product-ses-fr","listing_product-sns-fr"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Vuln\u00e9rabilit\u00e9s ProxyNotShell : les protections avec Stormshield<\/title>\n<meta name=\"description\" content=\"Alerte s\u00e9curit\u00e9 Stormshield : quelles protections face aux vuln\u00e9rabilit\u00e9s ProxyNotShell ? R\u00e9ponses avec l&#039;\u00e9quipe de s\u00e9curit\u00e9 Stormshield\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Vuln\u00e9rabilit\u00e9s ProxyNotShell : les protections avec Stormshield\" \/>\n<meta property=\"og:description\" content=\"Alerte s\u00e9curit\u00e9 Stormshield : quelles protections face aux vuln\u00e9rabilit\u00e9s ProxyNotShell ? R\u00e9ponses avec l&#039;\u00e9quipe de s\u00e9curit\u00e9 Stormshield\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/\" \/>\n<meta property=\"og:site_name\" content=\"Stormshield\" \/>\n<meta property=\"article:published_time\" content=\"2022-09-30T17:19:12+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-05-29T07:59:37+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2560\" \/>\n\t<meta property=\"og:image:height\" content=\"1422\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Pierre-Olivier Kaplan\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Stormshield\" \/>\n<meta name=\"twitter:site\" content=\"@Stormshield\" \/>\n<meta name=\"twitter:label1\" content=\"\u00c9crit par\" \/>\n\t<meta name=\"twitter:data1\" content=\"Pierre-Olivier Kaplan\" \/>\n\t<meta name=\"twitter:label2\" content=\"Dur\u00e9e de lecture estim\u00e9e\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/\"},\"author\":{\"name\":\"Pierre-Olivier Kaplan\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/9ab97406c59f09f701a9c5174c3f552f\"},\"headline\":\"Alerte s\u00e9curit\u00e9 ProxyNotShell : la r\u00e9ponse des produits Stormshield\",\"datePublished\":\"2022-09-30T17:19:12+00:00\",\"dateModified\":\"2024-05-29T07:59:37+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/\"},\"wordCount\":864,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"keywords\":[\"La cybers\u00e9curit\u00e9 - par Stormshield\"],\"articleSection\":[\"Alertes\"],\"inLanguage\":\"fr-FR\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/\",\"name\":\"Vuln\u00e9rabilit\u00e9s ProxyNotShell : les protections avec Stormshield\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"datePublished\":\"2022-09-30T17:19:12+00:00\",\"dateModified\":\"2024-05-29T07:59:37+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/9ab97406c59f09f701a9c5174c3f552f\"},\"description\":\"Alerte s\u00e9curit\u00e9 Stormshield : quelles protections face aux vuln\u00e9rabilit\u00e9s ProxyNotShell ? R\u00e9ponses avec l'\u00e9quipe de s\u00e9curit\u00e9 Stormshield\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"contentUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"width\":2560,\"height\":1422},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Alerte s\u00e9curit\u00e9 ProxyNotShell : la r\u00e9ponse des produits Stormshield\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#website\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/\",\"name\":\"Stormshield\",\"description\":\"Stormshield\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/9ab97406c59f09f701a9c5174c3f552f\",\"name\":\"Pierre-Olivier Kaplan\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/581086a18f7de7a0ab389d44f817db4843ba44e9ba379a7f643b5e54fbada438?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/581086a18f7de7a0ab389d44f817db4843ba44e9ba379a7f643b5e54fbada438?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/581086a18f7de7a0ab389d44f817db4843ba44e9ba379a7f643b5e54fbada438?s=96&d=mm&r=g\",\"caption\":\"Pierre-Olivier Kaplan\"},\"description\":\"Pierre-Olivier wears many hats in the game world, alternating between game-designer and rogue. Passionate about history and computer security, he specialised in the latter after graduating from EPITA and joined the ranks of Stormshield. IRL, he eats anything with a hummus base, ideal to be in top shape and tackle the latest cyber threats.\",\"sameAs\":[\"https:\\\/\\\/www.linkedin.com\\\/in\\\/pierre-olivier-kaplan-53254191\\\/\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Vuln\u00e9rabilit\u00e9s ProxyNotShell : les protections avec Stormshield","description":"Alerte s\u00e9curit\u00e9 Stormshield : quelles protections face aux vuln\u00e9rabilit\u00e9s ProxyNotShell ? R\u00e9ponses avec l'\u00e9quipe de s\u00e9curit\u00e9 Stormshield","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/","og_locale":"fr_FR","og_type":"article","og_title":"Vuln\u00e9rabilit\u00e9s ProxyNotShell : les protections avec Stormshield","og_description":"Alerte s\u00e9curit\u00e9 Stormshield : quelles protections face aux vuln\u00e9rabilit\u00e9s ProxyNotShell ? R\u00e9ponses avec l'\u00e9quipe de s\u00e9curit\u00e9 Stormshield","og_url":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/","og_site_name":"Stormshield","article_published_time":"2022-09-30T17:19:12+00:00","article_modified_time":"2024-05-29T07:59:37+00:00","og_image":[{"width":2560,"height":1422,"url":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","type":"image\/jpeg"}],"author":"Pierre-Olivier Kaplan","twitter_card":"summary_large_image","twitter_creator":"@Stormshield","twitter_site":"@Stormshield","twitter_misc":{"\u00c9crit par":"Pierre-Olivier Kaplan","Dur\u00e9e de lecture estim\u00e9e":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/#article","isPartOf":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/"},"author":{"name":"Pierre-Olivier Kaplan","@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/9ab97406c59f09f701a9c5174c3f552f"},"headline":"Alerte s\u00e9curit\u00e9 ProxyNotShell : la r\u00e9ponse des produits Stormshield","datePublished":"2022-09-30T17:19:12+00:00","dateModified":"2024-05-29T07:59:37+00:00","mainEntityOfPage":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/"},"wordCount":864,"commentCount":0,"image":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/#primaryimage"},"thumbnailUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","keywords":["La cybers\u00e9curit\u00e9 - par Stormshield"],"articleSection":["Alertes"],"inLanguage":"fr-FR"},{"@type":"WebPage","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/","url":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/","name":"Vuln\u00e9rabilit\u00e9s ProxyNotShell : les protections avec Stormshield","isPartOf":{"@id":"https:\/\/www.stormshield.com\/fr\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/#primaryimage"},"image":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/#primaryimage"},"thumbnailUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","datePublished":"2022-09-30T17:19:12+00:00","dateModified":"2024-05-29T07:59:37+00:00","author":{"@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/9ab97406c59f09f701a9c5174c3f552f"},"description":"Alerte s\u00e9curit\u00e9 Stormshield : quelles protections face aux vuln\u00e9rabilit\u00e9s ProxyNotShell ? R\u00e9ponses avec l'\u00e9quipe de s\u00e9curit\u00e9 Stormshield","breadcrumb":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/"]}]},{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/#primaryimage","url":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","contentUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","width":2560,"height":1422},{"@type":"BreadcrumbList","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-proxynotshell-la-reponse-des-produits-stormshield\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.stormshield.com\/fr\/"},{"@type":"ListItem","position":2,"name":"Alerte s\u00e9curit\u00e9 ProxyNotShell : la r\u00e9ponse des produits Stormshield"}]},{"@type":"WebSite","@id":"https:\/\/www.stormshield.com\/fr\/#website","url":"https:\/\/www.stormshield.com\/fr\/","name":"Stormshield","description":"Stormshield","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.stormshield.com\/fr\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":"Person","@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/9ab97406c59f09f701a9c5174c3f552f","name":"Pierre-Olivier Kaplan","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/secure.gravatar.com\/avatar\/581086a18f7de7a0ab389d44f817db4843ba44e9ba379a7f643b5e54fbada438?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/581086a18f7de7a0ab389d44f817db4843ba44e9ba379a7f643b5e54fbada438?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/581086a18f7de7a0ab389d44f817db4843ba44e9ba379a7f643b5e54fbada438?s=96&d=mm&r=g","caption":"Pierre-Olivier Kaplan"},"description":"Pierre-Olivier wears many hats in the game world, alternating between game-designer and rogue. Passionate about history and computer security, he specialised in the latter after graduating from EPITA and joined the ranks of Stormshield. IRL, he eats anything with a hummus base, ideal to be in top shape and tackle the latest cyber threats.","sameAs":["https:\/\/www.linkedin.com\/in\/pierre-olivier-kaplan-53254191\/"]}]}},"_links":{"self":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/317745","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/users\/65"}],"replies":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/comments?post=317745"}],"version-history":[{"count":7,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/317745\/revisions"}],"predecessor-version":[{"id":524009,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/317745\/revisions\/524009"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/media\/190179"}],"wp:attachment":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/media?parent=317745"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/categories?post=317745"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/tags?post=317745"},{"taxonomy":"business_size","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/business_size?post=317745"},{"taxonomy":"industry","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/industry?post=317745"},{"taxonomy":"help_mefind","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/help_mefind?post=317745"},{"taxonomy":"features","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/features?post=317745"},{"taxonomy":"type_security","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/type_security?post=317745"},{"taxonomy":"maintenance","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/maintenance?post=317745"},{"taxonomy":"offer","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/offer?post=317745"},{"taxonomy":"administration_tools","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/administration_tools?post=317745"},{"taxonomy":"cloud_offers","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/cloud_offers?post=317745"},{"taxonomy":"listing_product","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/listing_product?post=317745"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}