{"id":1581,"date":"2022-02-03T13:55:23","date_gmt":"2022-02-03T21:55:23","guid":{"rendered":"https:\/\/live-rsa-hub.pantheonsite.io\/?page_id=1581"},"modified":"2025-02-07T16:23:56","modified_gmt":"2025-02-07T21:23:56","slug":"vulnerability-response-policy","status":"publish","type":"page","link":"https:\/\/www.rsa.com\/ko\/vulnerability-response-policy\/","title":{"rendered":"\ucde8\uc57d\uc810 \ub300\uc751 \uc815\ucc45"},"content":{"rendered":"<h3>\uc18c\uac1c<\/h3>\n<p>RSA\ub294 \uace0\uac1d\uc774 \uc81c\ud488\uc758 \ubcf4\uc548 \ucde8\uc57d\uc131\uacfc \uad00\ub828\ub41c \uc704\ud5d8\uc744 \ucd5c\uc18c\ud654\ud560 \uc218 \uc788\ub3c4\ub85d \uc9c0\uc6d0\ud558\uae30 \uc704\ud574 \ub178\ub825\ud558\uace0 \uc788\uc2b5\ub2c8\ub2e4. \uc6b0\ub9ac\uc758 \ubaa9\ud45c\ub294 \uace0\uac1d\uc5d0\uac8c \ucde8\uc57d\uc810\uc744 \ud574\uacb0\ud558\uae30 \uc704\ud55c \uc815\ubcf4, \uc9c0\uce68 \ubc0f \uc644\ud654 \uc635\uc158\uc744 \uc801\uc2dc\uc5d0 \uc81c\uacf5\ud558\ub294 \uac83\uc785\ub2c8\ub2e4. RSA \uc81c\ud488 \ubcf4\uc548 \uc0ac\uace0 \ub300\uc751\ud300(RSA PSIRT)\uc740 RSA\uc5d0 \ubcf4\uace0\ub418\ub294 \ubaa8\ub4e0 \uc81c\ud488 \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \ub300\uc751 \ubc0f \uacf5\uac1c\ub97c \uc870\uc815\ud558\ub294 \uc5c5\ubb34\ub97c \ub2f4\ub2f9\ud569\ub2c8\ub2e4.<\/p>\n<h3>\ubcf4\uc548 \ucde8\uc57d\uc810 \uc2e0\uace0 \ubc29\ubc95<\/h3>\n<p>RSA \uc81c\ud488\uc5d0\uc11c \ubcf4\uc548 \ucde8\uc57d\uc810\uc744 \ubc1c\uacac\ud558\uba74 \uc989\uc2dc \ub2f9\uc0ac\uc5d0 \ubcf4\uace0\ud574 \uc8fc\uc2dc\uae30 \ubc14\ub78d\ub2c8\ub2e4. \ubcf4\uc548 \uc5f0\uad6c\uc6d0, \uc5c5\uacc4 \uadf8\ub8f9, \uacf5\uae09\uc5c5\uccb4 \ubc0f \uae30\uc220 \uc9c0\uc6d0\ud300\uc5d0 \uc561\uc138\uc2a4\ud560 \uc218 \uc5c6\ub294 \uae30\ud0c0 \uc0ac\uc6a9\uc790\ub294 \ucde8\uc57d\uc810 \ubcf4\uace0\uc11c\ub97c RSA\uc5d0 \uc9c1\uc811 \ubcf4\ub0b4\uc57c \ud569\ub2c8\ub2e4.\u00a0<a href=\"mailto:responsibledisclosure@rsa.com\">\uc774\uba54\uc77c\uc744 \ud1b5\ud55c PSIRT<\/a>. \ubcf4\uc548 \ucde8\uc57d\uc810\uc744 \uc801\uc2dc\uc5d0 \ud30c\uc545\ud558\ub294 \uac83\uc740 \uace0\uac1d\uc5d0 \ub300\ud55c \uc7a0\uc7ac\uc801 \uc704\ud5d8\uc744 \uc644\ud654\ud558\ub294 \ub370 \ub9e4\uc6b0 \uc911\uc694\ud569\ub2c8\ub2e4.<\/p>\n<p>RSA \uc81c\ud488 \uace0\uac1d\uacfc \ud30c\ud2b8\ub108\ub294 RSA \uc81c\ud488\uc5d0\uc11c \ubc1c\uacac\ub41c \ubcf4\uc548 \ubb38\uc81c\ub97c \uc2e0\uace0\ud558\ub824\uba74 \ud574\ub2f9 \uae30\uc220 \uc9c0\uc6d0\ud300\uc5d0 \uc5f0\ub77d\ud574\uc57c \ud569\ub2c8\ub2e4. \uae30\uc220 \uc9c0\uc6d0 \ud300, \ud574\ub2f9 \uc81c\ud488 \ud300 \ubc0f RSA PSIRT\uac00 \ud611\ub825\ud558\uc5ec \ubcf4\uace0\ub41c \ubb38\uc81c\ub97c \ud574\uacb0\ud558\uace0 \uace0\uac1d\uc5d0\uac8c \ub2e4\uc74c \ub2e8\uacc4\ub97c \uc548\ub0b4\ud569\ub2c8\ub2e4.<\/p>\n<p>\uc7a0\uc7ac\uc801 \ucde8\uc57d\uc810\uc744 \uc2e0\uace0\ud560 \ub54c\ub294 \uc2e0\uace0\ub41c \ubb38\uc81c\uc758 \uc131\uaca9\uacfc \ubc94\uc704\ub97c \ub354 \uc798 \ud30c\uc545\ud560 \uc218 \uc788\ub3c4\ub85d \uc544\ub798 \uc815\ubcf4\ub97c \ucd5c\ub300\ud55c \ub9ce\uc774 \ud3ec\ud568\ud574 \uc8fc\uc138\uc694:<\/p>\n<ul>\n<li>\ucde8\uc57d\uc810\uc774 \ud3ec\ud568\ub41c \uc81c\ud488 \uc774\ub984 \ubc0f \ubc84\uc804<\/li>\n<li>\ubb38\uc81c\uac00 \uc7ac\ud604\ub41c \ud658\uacbd \ub610\ub294 \uc2dc\uc2a4\ud15c \uc815\ubcf4(\uc608: \uc81c\ud488 \ubaa8\ub378 \ubc88\ud638, OS \ubc84\uc804 \ub4f1)<\/li>\n<li>\ucde8\uc57d\uc810 \uc720\ud615 \ubc0f\/\ub610\ub294 \ud074\ub798\uc2a4(XSS, \ubc84\ud37c \uc624\ubc84\ud50c\ub85c, RCE, CWE<a>,<\/a>\u00a0<a>\ub4f1<\/a>.)<\/li>\n<li>\ucde8\uc57d\uc810 \uc7ac\ud604\uc744 \uc704\ud55c \ub2e8\uacc4\ubcc4 \uc9c0\uce68<\/li>\n<li>\uac1c\ub150 \uc99d\uba85 \ub610\ub294 \uc775\uc2a4\ud50c\ub85c\uc787 \ucf54\ub4dc<\/li>\n<li>\ucde8\uc57d\uc810\uc758 \uc7a0\uc7ac\uc801 \uc601\ud5a5<\/li>\n<\/ul>\n<h3>\ucde8\uc57d\uc810 \ubcf4\uace0\uc11c \ucc98\ub9ac<\/h3>\n<p>RSA\ub294 \ubcf4\uc548 \uc5f0\uad6c\uc790\uc640 \uc88b\uc740 \uad00\uacc4\ub97c \uc720\uc9c0\ud558\ub294 \uac83\uc744 \uc911\uc694\ud558\uac8c \uc0dd\uac01\ud558\uba70, \uc5f0\uad6c\uc790\uc758 \ub3d9\uc758\ud558\uc5d0 \uc720\ud6a8\ud55c \uc81c\ud488 \ucde8\uc57d\uc810\uc744 \ubc1c\uacac\ud558\uace0 \ud574\ub2f9 \ubb38\uc81c\ub97c \ube44\uacf5\uac1c\ub85c \ubcf4\uace0\ud55c \uc5f0\uad6c\uc790\ub97c \uc778\uc815\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4. \uadf8 \ub300\uac00\ub85c \uc5f0\uad6c\uc790\ub294 \ucde8\uc57d\uc810\uc744 \uacf5\uac1c\uc801\uc73c\ub85c \uacf5\uac1c\ud558\uae30 \uc804\uc5d0 \ub2f9\uc0ac\uc5d0 \ucde8\uc57d\uc810\uc744 \uc218\uc815\ud560 \uc218 \uc788\ub294 \uae30\ud68c\ub97c \uc8fc\uc2e4 \uac83\uc744 \uc694\uccad\ud569\ub2c8\ub2e4. RSA\ub294 \ucde8\uc57d\uc810\uc758 \uacf5\uac1c\ub97c \uc870\uc728\ud558\ub294 \uac83\uc774 \uace0\uac1d \ubcf4\ud638\uc758 \ud575\uc2ec\uc774\ub77c\uace0 \ubbff\uc2b5\ub2c8\ub2e4.<\/p>\n<p>\uc774 \uc815\ucc45\uc5d0 \ub530\ub974\uba74, \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \ubaa8\ub4e0 \uacf5\uac1c \uc815\ubcf4\ub294 \uc774\ubbf8 \uacf5\uac1c\ub41c \uc815\ubcf4\uac00 \uc544\ub2cc \uacbd\uc6b0 \uad6c\uc81c\ucc45\uc774 \ub9c8\ub828\ub418\uace0 \uacf5\uac1c \ud65c\ub3d9\uc774 \uc870\uc815\ub420 \ub54c\uae4c\uc9c0 RSA\uc640 \ubcf4\uace0 \ub2f9\uc0ac\uc790 \uc0ac\uc774\uc5d0\ub9cc \uc720\uc9c0\ub429\ub2c8\ub2e4.<\/p>\n<h3>\ucde8\uc57d\uc810 \uac1c\uc120<\/h3>\n<p>\ubcf4\uace0\ub41c \ucde8\uc57d\uc810\uc744 \uc870\uc0ac\ud558\uace0 \uac80\uc99d\ud55c \ud6c4 RSA\uc758 \uc801\uadf9\uc801\uc778 \uc9c0\uc6d0\uc744 \ubc1b\uc544 \uc81c\ud488\uc5d0 \ub300\ud55c \uc801\uc808\ud55c \ud574\uacb0 \ubc29\ubc95\uc744 \uac1c\ubc1c\ud558\uace0 \uc778\uc99d\uc744 \uc2dc\ub3c4\ud569\ub2c8\ub2e4. \ud574\uacb0 \ubc29\ubc95\uc740 \ub2e4\uc74c \uc911 \ud558\ub098 \uc774\uc0c1\uc758 \ud615\ud0dc\ub97c \ucde8\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4:<\/p>\n<ul>\n<li>RSA\uc5d0\uc11c \ud328\ud0a4\uc9d5\ud55c \uc601\ud5a5\uc744 \ubc1b\ub294 \uc81c\ud488\uc758 \uc0c8 \ub9b4\ub9ac\uc2a4\uc785\ub2c8\ub2e4;<\/li>\n<li>\uc601\ud5a5\uc744 \ubc1b\ub294 \uc81c\ud488 \uc704\uc5d0 \uc124\uce58\ud560 \uc218 \uc788\ub294 RSA \uc81c\uacf5 \ud328\uce58\uc785\ub2c8\ub2e4;<\/li>\n<li>\ucde8\uc57d\uc810\uc744 \uc644\ud654\ud558\ub294 \ub370 \ud544\uc694\ud55c \ud0c0\uc0ac \uacf5\uae09\uc5c5\uccb4\uc758 \uc5c5\ub370\uc774\ud2b8 \ub610\ub294 \ud328\uce58\ub97c \ub2e4\uc6b4\ub85c\ub4dc\ud558\uc5ec \uc124\uce58\ud558\ub294 \ubc29\ubc95\uc5d0 \ub300\ud55c \uc9c0\uce68\uc785\ub2c8\ub2e4;<\/li>\n<li>\ucde8\uc57d\uc810\uc744 \uc644\ud654\ud558\uae30 \uc704\ud574 \uc81c\ud488 \uad6c\uc131\uc744 \uc870\uc815\ud558\ub294 \ubc29\ubc95\uc744 \uc0ac\uc6a9\uc790\uc5d0\uac8c \uc548\ub0b4\ud558\ub294 RSA\uc5d0\uc11c \ubc1c\ud45c\ud55c \uc218\uc815 \uc808\ucc28 \ub610\ub294 \ud574\uacb0 \ubc29\ubc95\uc785\ub2c8\ub2e4.<\/li>\n<\/ul>\n<p>RSA\ub294 \uc0c1\uc5c5\uc801\uc73c\ub85c \ud569\ub9ac\uc801\uc778 \ucd5c\ub2e8 \uc2dc\uac04 \ub0b4\uc5d0 \ud574\uacb0 \ubc29\ubc95 \ub610\ub294 \uc2dc\uc815 \uc870\uce58\ub97c \uc81c\uacf5\ud558\uae30 \uc704\ud574 \ucd5c\uc120\uc744 \ub2e4\ud569\ub2c8\ub2e4. \ub300\uc751 \uc77c\uc815\uc740 \uc2ec\uac01\ub3c4, \uc601\ud5a5, \ud574\uacb0 \ubc29\ubc95\uc758 \ubcf5\uc7a1\uc131, \uc601\ud5a5\uc744 \ubc1b\ub294 \uad6c\uc131 \uc694\uc18c(\uc608: \uc77c\ubd80 \uc5c5\ub370\uc774\ud2b8\ub294 \ub354 \uae34 \uac80\uc99d \uc8fc\uae30\uac00 \ud544\uc694\ud558\uac70\ub098 \uc8fc\uc694 \ub9b4\ub9ac\uc2a4\uc5d0\uc11c\ub9cc \uc5c5\ub370\uc774\ud2b8 \uac00\ub2a5), \uc81c\ud488 \uc218\uba85 \uc8fc\uae30 \ub0b4 \ub2e8\uacc4, \ube44\uc988\ub2c8\uc2a4 \uc6b4\uc601 \uc0c1\ud0dc \ub4f1 \uc5ec\ub7ec \uc694\uc778\uc5d0 \ub530\ub77c \ub2ec\ub77c\uc9d1\ub2c8\ub2e4.<\/p>\n<h3>\uc601\ud5a5 \ubc0f \uc2ec\uac01\ub3c4 \ub4f1\uae09<\/h3>\n<p>RSA\ub294 \ud604\uc7ac\u00a0<a href=\"https:\/\/www.first.org\/cvss\/user-guide\" target=\"_blank\" rel=\"noopener\">\uacf5\ud1b5 \ucde8\uc57d\uc810 \uc810\uc218 \uc2dc\uc2a4\ud15c<\/a>\u00a0\ubc84\uc804 3.1(CVSS v3.1) \uac1c\ubc29\ud615 \ud504\ub808\uc784\uc6cc\ud06c\ub294 RSA\uc758 \uc18c\ud504\ud2b8\uc6e8\uc5b4 \ucde8\uc57d\uc810\uc758 \ud2b9\uc131\uacfc \uc2ec\uac01\uc131\uc744 \uc804\ub2ec\ud558\uae30 \uc704\ud55c \uac83\uc785\ub2c8\ub2e4.  \ucde8\uc57d\uc810\uc744 \uc775\uc2a4\ud50c\ub85c\uc787\ud558\ub294 \ub370 \ud544\uc694\ud55c \ub178\ub825 \uc218\uc900\uacfc \uc775\uc2a4\ud50c\ub85c\uc787 \uc131\uacf5 \uc2dc \ub370\uc774\ud130 \ub610\ub294 \ube44\uc988\ub2c8\uc2a4 \ud65c\ub3d9\uc5d0 \ubbf8\uce58\ub294 \uc7a0\uc7ac\uc801 \uc601\ud5a5 \ub4f1 \ub2e4\uc591\ud55c \uc694\uc18c\uac00 \uace0\ub824\ub429\ub2c8\ub2e4.<\/p>\n<p>\ubcf4\uc548 \uad8c\uace0\uc758 \uc804\ubc18\uc801\uc778 \uc601\ud5a5\uc740 \uc2dd\ubcc4\ub41c \ubaa8\ub4e0 \ucde8\uc57d\uc810 \uc911 \uac00\uc7a5 \ub192\uc740 CVSS \uae30\ubcf8 \uc810\uc218\uc5d0 \ub300\ud55c CVSS \uc2ec\uac01\ub3c4 \uc815\uc131\uc801 \uc2ec\uac01\ub3c4 \ub4f1\uae09 \ucc99\ub3c4\uc5d0 \ub530\ub978 \uc2ec\uac01\ub3c4(\uc989, \uc2ec\uac01, \ub192\uc74c, \uc911\uac04, \ub0ae\uc74c)\ub97c \ud14d\uc2a4\ud2b8\ub85c \ud45c\ud604\ud55c \uac83\uc785\ub2c8\ub2e4. \ud574\ub2f9\ub418\ub294 \uacbd\uc6b0, RSA\ub294 \uad8c\uace0\uc5d0 \ub300\ud55c \uc804\ubc18\uc801\uc778 \uc601\ud5a5\uacfc \uc2dd\ubcc4\ub41c \uac01 \ucde8\uc57d\uc810\uc5d0 \ub300\ud574 CVSS v3.1 \uae30\ubcf8 \uc810\uc218 \ubc0f \ud574\ub2f9 CVSS v3.1 \ubca1\ud130\ub97c \uc81c\uacf5\ud569\ub2c8\ub2e4. RSA\ub294 \ubaa8\ub4e0 \uace0\uac1d\uc774 \uae30\ubcf8 \uc810\uc218\uc640 \ud574\ub2f9 \ud658\uacbd\uacfc \uad00\ub828\uc774 \uc788\uc744 \uc218 \uc788\ub294 \uc2dc\uac04\uc801 \ubc0f\/\ub610\ub294 \ud658\uacbd\uc801 \uc9c0\ud45c\ub97c \ubaa8\ub450 \uace0\ub824\ud558\uc5ec \uc804\ubc18\uc801\uc778 \uc704\ud5d8\uc744 \ud3c9\uac00\ud560 \uac83\uc744 \uad8c\uc7a5\ud569\ub2c8\ub2e4.<\/p>\n<h3>\uad6c\uc81c \ucee4\ubba4\ub2c8\ucf00\uc774\uc158<\/h3>\n<p>\uc77c\ubc18\uc801\uc73c\ub85c \ub2f9\uc0ac\ub294 \ud574\ub2f9\ub418\ub294 \uacbd\uc6b0 RSA \ubcf4\uc548 \uacbd\uace0\ub97c \ud1b5\ud574 \uace0\uac1d\uc5d0\uac8c \ud574\uacb0 \ubc29\ubc95\uc744 \uc804\ub2ec\ud569\ub2c8\ub2e4. \uace0\uac1d\uc744 \ubcf4\ud638\ud558\uae30 \uc704\ud574 RSA\ub294 \uc601\ud5a5\uc744 \ubc1b\ub294 \uc81c\ud488\uc5d0 \ub300\ud55c \ud574\uacb0\ucc45\uc744 \ub9c8\ub828\ud55c \ud6c4 \ubcf4\uc548 \uc8fc\uc758\ubcf4\ub97c \ubc1c\ud45c\ud558\uae30 \uc704\ud574 \ub178\ub825\ud569\ub2c8\ub2e4. RSA\ub294 \uc81c\ud488\uc5d0 \uc0ac\uc6a9\ub418\ub294 \uad6c\uc131 \uc694\uc18c\uc758 \uacf5\uac1c \uacf5\uac1c \ub610\ub294 \ub110\ub9ac \uc54c\ub824\uc9c4 \ucde8\uc57d\uc810\uc5d0 \uc801\uc808\ud788 \ub300\uc751\ud558\uae30 \uc704\ud574 \ubcf4\uc548 \uacf5\uc9c0\ub97c \ub354 \ube68\ub9ac \ubc1c\ud45c\ud560 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<p>\ubcf4\uc548 \uc8fc\uc758\ubcf4\ub294 \uace0\uac1d\uc774 \ucde8\uc57d\uc131\uc758 \uc601\ud5a5\uc744 \ud3c9\uac00\ud558\uace0 \uc7a0\uc7ac\uc801\uc73c\ub85c \ucde8\uc57d\ud55c \uc81c\ud488\uc744 \uc218\uc815\ud560 \uc218 \uc788\ub3c4\ub85d \ucda9\ubd84\ud55c \uc138\ubd80 \uc815\ubcf4\ub97c \uc81c\uacf5\ud558\uae30 \uc704\ud55c \uac83\uc785\ub2c8\ub2e4. \uc545\uc758\uc801\uc778 \uc0ac\uc6a9\uc790\uac00 \uc815\ubcf4\ub97c \uc545\uc6a9\ud558\uc5ec \uace0\uac1d\uc5d0\uac8c \ud574\ub97c \ub07c\uce60 \uc218 \uc788\ub294 \uac00\ub2a5\uc131\uc744 \uc904\uc774\uae30 \uc704\ud574 \uc804\uccb4 \uc138\ubd80 \uc815\ubcf4\ub294 \uc81c\ud55c\ub420 \uc218 \uc788\uc2b5\ub2c8\ub2e4.<\/p>\n<p>RSA \ubcf4\uc548 \uc8fc\uc758\ubcf4\uc5d0\ub294 \uc77c\ubc18\uc801\uc73c\ub85c \ud574\ub2f9\ub418\ub294 \uacbd\uc6b0 \ub2e4\uc74c \uc815\ubcf4\uac00 \ud3ec\ud568\ub429\ub2c8\ub2e4:<\/p>\n<ul>\n<li>\uc804\uccb4 \uc601\ud5a5\uc740 \uc2dd\ubcc4\ub41c \ubaa8\ub4e0 \ucde8\uc57d\uc810 \uc911 \uac00\uc7a5 \ub192\uc740 CVSS \uae30\ubcf8 \uc810\uc218\uc5d0 \ub300\ud55c CVSS \uc2ec\uac01\ub3c4 \uc815\uc131\uc801 \uc2ec\uac01\ub3c4 \ub4f1\uae09 \ucc99\ub3c4\uc5d0 \ub530\ub978 \uc2ec\uac01\ub3c4(\uc608: \uc2ec\uac01, \ub192\uc74c, \uc911\uac04, \ub0ae\uc74c)\ub97c \ud14d\uc2a4\ud2b8\ub85c \ud45c\ud604\ud55c \uac83\uc785\ub2c8\ub2e4;<\/li>\n<li>\uc601\ud5a5\uc744 \ubc1b\ub294 \uc81c\ud488 \ubc0f \ubc84\uc804<\/li>\n<li>\ud655\uc778\ub41c \ubaa8\ub4e0 \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c CVSS \uae30\ubcf8 \uc810\uc218 \ubc0f \ubca1\ud130\uc785\ub2c8\ub2e4;<\/li>\n<li><a href=\"http:\/\/cve.mitre.org\/\" target=\"_blank\" rel=\"noopener\">\uc77c\ubc18\uc801\uc778 \ucde8\uc57d\uc810 \uc5f4\uac70<\/a>\u00a0(CVE) \uc2dd\ubcc4\uc790\ub97c \uc0ac\uc6a9\ud558\uc5ec \uc2dd\ubcc4\ub41c \ubaa8\ub4e0 \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \uc815\ubcf4\ub97c \ub2e4\uc591\ud55c \ucde8\uc57d\uc810 \uad00\ub9ac \uae30\ub2a5(\uc608: \ucde8\uc57d\uc810 \uc2a4\uce90\ub108, \ub9ac\ud3ec\uc9c0\ud1a0\ub9ac \ubc0f \uc11c\ube44\uc2a4\uc640 \uac19\uc740 \ub3c4\uad6c)\uc5d0\uc11c \uacf5\uc720\ud560 \uc218 \uc788\ub3c4\ub85d \ud569\ub2c8\ub2e4;<\/li>\n<li>\ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \uac04\ub7b5\ud55c \uc124\uba85\uacfc \uc545\uc6a9\ub420 \uacbd\uc6b0 \ubc1c\uc0dd\ud560 \uc218 \uc788\ub294 \uc601\ud5a5\uc5d0 \ub300\ud574 \uc124\uba85\ud569\ub2c8\ub2e4;<\/li>\n<li>\uc5c5\ub370\uc774\ud2b8\/\ud574\uacb0 \ubc29\ubc95 \uc815\ubcf4\uac00 \ud3ec\ud568\ub41c \ud574\uacb0 \ubc29\ubc95 \uc138\ubd80 \uc815\ubcf4;<\/li>\n<li>\ud574\ub2f9\ub418\ub294 \uacbd\uc6b0 \ucde8\uc57d\uc810\uc744 \uc2e0\uace0\ud558\uace0 RSA\uc640 \ud611\ub825\ud558\uc5ec \uc870\uc728\ub41c \ub9b4\ub9ac\uc2a4\ub97c \uc81c\uacf5\ud55c \ubc1c\uacac\uc790\uc5d0\uac8c \uac10\uc0ac\uc758 \ub73b\uc744 \uc804\ud569\ub2c8\ub2e4.<\/li>\n<\/ul>\n<h3>\ucd94\uac00 \uacf5\uac1c \uc815\ubcf4<\/h3>\n<p>RSA\uc758 \uc815\ucc45\uc740 \ubcf4\uc548 \uad8c\uace0 \ubc0f \uad00\ub828 \ubb38\uc11c(\uc608: \ub9b4\ub9ac\uc2a4 \ub178\ud2b8, \uae30\uc220 \uc790\ub8cc \ubb38\uc11c, FAQ \ub4f1)\uc5d0\uc11c \uc81c\uacf5\ud558\ub294 \uac83 \uc774\uc0c1\uc758 \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \uad6c\uccb4\uc801\uc778 \uc815\ubcf4\ub294 \uc81c\uacf5\ud558\uc9c0 \uc54a\ub294 \uac83\uc785\ub2c8\ub2e4. \ud655\uc778\ub41c \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \uc775\uc2a4\ud50c\ub85c\uc787\/\uac1c\ub150 \uc99d\uba85 \ucf54\ub4dc\ub294 \ubc30\ud3ec\ud558\uc9c0 \uc54a\uc2b5\ub2c8\ub2e4. \uc5c5\uacc4 \uad00\ud589\uc5d0 \ub530\ub77c RSA\ub294 \ub0b4\ubd80 \ubcf4\uc548 \ud14c\uc2a4\ud2b8 \ub610\ub294 \uae30\ud0c0 \uc720\ud615\uc758 \ubcf4\uc548 \ud65c\ub3d9\uc5d0\uc11c \uc5bb\uc740 \uacb0\uacfc\ub97c \uc678\ubd80 \uae30\uad00\uacfc \uacf5\uc720\ud558\uc9c0 \uc54a\uc2b5\ub2c8\ub2e4.<a>.<\/a><\/p>\n<h3>\uae30\ud0c0 \ubcf4\uc548 \ubb38\uc81c RSA\uc5d0 \uc54c\ub9ac\uae30<\/h3>\n<p>\uae30\ud0c0 \ubcf4\uc548 \ubb38\uc81c\ub97c RSA\uc5d0 \uc2e0\uace0\ud574\uc57c \ud558\ub294 \uacbd\uc6b0 \uc544\ub798 \ub098\uc5f4\ub41c \uc5f0\ub77d\ucc98\ub85c \ubb38\uc758\ud558\uc2dc\uae30 \ubc14\ub78d\ub2c8\ub2e4:<\/p>\n<table border=\"1\" width=\"624\" cellspacing=\"0\" cellpadding=\"4\">\n<tbody>\n<tr>\n<th width=\"312\">\ubcf4\uc548 \ubb38\uc81c<\/th>\n<th width=\"312\">\uc5f0\ub77d\ucc98 \uc815\ubcf4<\/th>\n<\/tr>\n<tr>\n<td width=\"312\">RSA.com \ub610\ub294 \uae30\ud0c0 \uc628\ub77c\uc778 \uc11c\ube44\uc2a4, \uc6f9 \uc560\ud50c\ub9ac\ucf00\uc774\uc158 \ub610\ub294 \uc790\uc0b0\uc758 \ubcf4\uc548 \ucde8\uc57d\uc810 \ub610\ub294 \ubb38\uc81c\ub97c \uc2e0\uace0\ud558\ub824\uba74 \ub2e4\uc74c\uacfc \uac19\uc774 \ud558\uc138\uc694.<\/td>\n<td width=\"312\">\ub2e4\uc74c \uc8fc\uc18c\ub85c \ubcf4\uace0\uc11c\ub97c \uc81c\ucd9c\ud558\uc138\uc694.\u00a0<a href=\"mailto:responsibledisclosure@rsa.com\">responsibledisclosure@rsa.com<\/a>\u00a0\ub97c \ucc38\uc870\ud558\uc5ec \ubb38\uc81c\ub97c \uc7ac\ud604\ud558\ub294 \ub2e8\uacc4\ubcc4 \uc9c0\uce68\uc744 \ud655\uc778\ud558\uc138\uc694.<\/td>\n<\/tr>\n<tr>\n<td width=\"312\">\uac1c\uc778\uc815\ubcf4 \ubcf4\ud638 \uad00\ub828 \uc694\uccad \ub610\ub294 \uc9c8\ubb38 \uc81c\ucd9c\ud558\uae30<\/td>\n<td width=\"312\">\ucc38\uc870\u00a0<a href=\"\/ko\/privacy\/\">RSA \uac1c\uc778\uc815\ubcf4 \ubcf4\ud638<\/a>\u00a0\ud398\uc774\uc9c0\ub85c \uc774\ub3d9\ud569\ub2c8\ub2e4.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>&nbsp;<\/p>\n<h3>\uace0\uac1d \uad8c\ub9ac: \ubcf4\uc99d, \uc9c0\uc6d0 \ubc0f \uc720\uc9c0 \uad00\ub9ac<\/h3>\n<p>RSA \uc18c\ud504\ud2b8\uc6e8\uc5b4 \uc81c\ud488\uc758 \ucde8\uc57d\uc810\uc744 \ud3ec\ud568\ud558\uc5ec \ubcf4\uc99d, \uc9c0\uc6d0 \ubc0f \uc720\uc9c0\ubcf4\uc218\uc640 \uad00\ub828\ub41c RSA \uace0\uac1d\uc758 \uad8c\ub9ac\ub294 RSA\uc640 \uac1c\ubcc4 \uace0\uac1d \uac04\uc758 \ud574\ub2f9 \uacc4\uc57d\uc5d0 \uc758\ud574 \uaddc\uc728\ub429\ub2c8\ub2e4. \uc774 \uc6f9 \ud398\uc774\uc9c0\uc758 \uc9c4\uc220\uc740 \uace0\uac1d\uc758 \uad8c\ub9ac\ub97c \uc218\uc815, \ud655\ub300 \ub610\ub294 \uc218\uc815\ud558\uac70\ub098 \ucd94\uac00 \ubcf4\uc99d\uc744 \uc0dd\uc131\ud558\uc9c0 \uc54a\uc2b5\ub2c8\ub2e4.<\/p>\n<h3>\uba74\ucc45 \uc870\ud56d<\/h3>\n<p>RSA\uc758 \ucde8\uc57d\uc810 \ub300\uc751 \uc815\ucc45\uc758 \ubaa8\ub4e0 \uce21\uba74\uc740 \uc0ac\uc804 \ud1b5\uc9c0 \uc5c6\uc774 \uc0ac\uc548\ubcc4\ub85c \ubcc0\uacbd\ub420 \uc218 \uc788\uc2b5\ub2c8\ub2e4. \ud2b9\uc815 \ubb38\uc81c \ub610\ub294 \ubb38\uc81c \uc720\ud615\uc5d0 \ub300\ud55c \ub300\uc751\uc740 \ubcf4\uc7a5\ub418\uc9c0 \uc54a\uc2b5\ub2c8\ub2e4. \uc774 \ubb38\uc11c\uc5d0 \ud3ec\ud568\ub41c \uc815\ubcf4 \ub610\ub294 \uc5ec\uae30\uc5d0 \ub9c1\ud06c\ub41c \uc790\ub8cc\uc758 \uc0ac\uc6a9\uc740 \uc804\uc801\uc73c\ub85c \uc0ac\uc6a9\uc790\uc758 \ucc45\uc784\uc785\ub2c8\ub2e4. RSA\ub294 \uc5b8\uc81c\ub4e0\uc9c0 \uc0ac\uc804 \ud1b5\uc9c0 \uc5c6\uc774 \ub2e8\ub3c5 \uc7ac\ub7c9\uc73c\ub85c \ubcf8 \ubb38\uc11c\ub97c \ubcc0\uacbd\ud558\uac70\ub098 \uc5c5\ub370\uc774\ud2b8\ud560 \uc218 \uc788\ub294 \uad8c\ub9ac\ub97c \ubcf4\uc720\ud569\ub2c8\ub2e4.<\/p>","protected":false},"excerpt":{"rendered":"<p>\uc18c\uac1c RSA\ub294 \uace0\uac1d\uc774 \uc81c\ud488\uc758 \ubcf4\uc548 \ucde8\uc57d\uc131\uacfc \uad00\ub828\ub41c \uc704\ud5d8\uc744 \ucd5c\uc18c\ud654\ud560 \uc218 \uc788\ub3c4\ub85d \uc9c0\uc6d0\ud558\uae30 \uc704\ud574 \ub178\ub825\ud558\uace0 \uc788\uc2b5\ub2c8\ub2e4. \uc6b0\ub9ac\uc758 \ubaa9\ud45c\ub294 \uace0\uac1d\uc5d0\uac8c \ucde8\uc57d\uc810\uc744 \ud574\uacb0\ud558\uae30 \uc704\ud55c \uc815\ubcf4, \uc9c0\uce68 \ubc0f \uc644\ud654 \uc635\uc158\uc744 \uc801\uc2dc\uc5d0 \uc81c\uacf5\ud558\ub294 \uac83\uc785\ub2c8\ub2e4. \ubaa8\ub4e0 \uc81c\ud488 \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \ub300\uc751 \ubc0f \uacf5\uac1c\ub97c \uc870\uc728\ud558\ub294 RSA \uc81c\ud488 \ubcf4\uc548 \uc0ac\uace0 \ub300\uc751\ud300(RSA PSIRT)\uc774 \uacf5\uc778\ub418\uc5b4 \uc788\uc2b5\ub2c8\ub2e4. <a href=\"https:\/\/www.rsa.com\/ko\/vulnerability-response-policy\/\">\uacc4\uc18d<\/a><\/p>","protected":false},"author":6,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"template-policy.blade.php","meta":{"_acf_changed":false,"_searchwp_excluded":"","inline_featured_image":false,"footnotes":""},"class_list":["post-1581","page","type-page","status-publish","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Vulnerability Response Policy - RSA<\/title>\n<meta name=\"description\" content=\"The RSA Product Security Incident Response Team (RSA PSIRT) is chartered and responsible for coordinating the response and disclosure for all product vulnerabilities that are reported to RSA.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.rsa.com\/ko\/vulnerability-response-policy\/\" \/>\n<meta property=\"og:locale\" content=\"ko_KR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Vulnerability Response Policy\" \/>\n<meta property=\"og:description\" content=\"The RSA Product Security Incident Response Team (RSA PSIRT) is chartered and responsible for coordinating the response and disclosure for all product vulnerabilities that are reported to RSA.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.rsa.com\/ko\/vulnerability-response-policy\/\" \/>\n<meta property=\"og:site_name\" content=\"RSA\" \/>\n<meta property=\"article:modified_time\" content=\"2025-02-07T21:23:56+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.rsa.com\/wp-content\/uploads\/rsa-og-image.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Vulnerability Response Policy\" \/>\n<meta name=\"twitter:description\" content=\"The RSA Product Security Incident Response Team (RSA PSIRT) is chartered and responsible for coordinating the response and disclosure for all product vulnerabilities that are reported to RSA.\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/www.rsa.com\/wp-content\/uploads\/rsa-og-image.jpg\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.rsa.com\\\/vulnerability-response-policy\\\/\",\"url\":\"https:\\\/\\\/www.rsa.com\\\/vulnerability-response-policy\\\/\",\"name\":\"Vulnerability Response Policy - RSA\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.rsa.com\\\/#website\"},\"datePublished\":\"2022-02-03T21:55:23+00:00\",\"dateModified\":\"2025-02-07T21:23:56+00:00\",\"description\":\"The RSA Product Security Incident Response Team (RSA PSIRT) is chartered and responsible for coordinating the response and disclosure for all product vulnerabilities that are reported to RSA.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.rsa.com\\\/vulnerability-response-policy\\\/#breadcrumb\"},\"inLanguage\":\"ko-KR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.rsa.com\\\/vulnerability-response-policy\\\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.rsa.com\\\/vulnerability-response-policy\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.rsa.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Vulnerability Response Policy\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.rsa.com\\\/#website\",\"url\":\"https:\\\/\\\/www.rsa.com\\\/\",\"name\":\"RSA\",\"description\":\"Cybersecurity and Digital Risk Management Solutions\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.rsa.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.rsa.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"ko-KR\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.rsa.com\\\/#organization\",\"name\":\"RSA\",\"url\":\"https:\\\/\\\/www.rsa.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"ko-KR\",\"@id\":\"https:\\\/\\\/www.rsa.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.rsa.com\\\/wp-content\\\/uploads\\\/rsa.png\",\"contentUrl\":\"https:\\\/\\\/www.rsa.com\\\/wp-content\\\/uploads\\\/rsa.png\",\"width\":2880,\"height\":1020,\"caption\":\"RSA\"},\"image\":{\"@id\":\"https:\\\/\\\/www.rsa.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\ucde8\uc57d\uc810 \ub300\uc751 \uc815\ucc45 - RSA","description":"RSA \uc81c\ud488 \ubcf4\uc548 \uc0ac\uace0 \ub300\uc751\ud300(RSA PSIRT)\uc740 RSA\uc5d0 \ubcf4\uace0\ub418\ub294 \ubaa8\ub4e0 \uc81c\ud488 \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \ub300\uc751 \ubc0f \uacf5\uac1c\ub97c \uc870\uc815\ud558\ub294 \ucc45\uc784\uc744 \ub9e1\uace0 \uc788\uc2b5\ub2c8\ub2e4.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.rsa.com\/ko\/vulnerability-response-policy\/","og_locale":"ko_KR","og_type":"article","og_title":"Vulnerability Response Policy","og_description":"The RSA Product Security Incident Response Team (RSA PSIRT) is chartered and responsible for coordinating the response and disclosure for all product vulnerabilities that are reported to RSA.","og_url":"https:\/\/www.rsa.com\/ko\/vulnerability-response-policy\/","og_site_name":"RSA","article_modified_time":"2025-02-07T21:23:56+00:00","og_image":[{"width":1200,"height":630,"url":"https:\/\/www.rsa.com\/wp-content\/uploads\/rsa-og-image.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_title":"Vulnerability Response Policy","twitter_description":"The RSA Product Security Incident Response Team (RSA PSIRT) is chartered and responsible for coordinating the response and disclosure for all product vulnerabilities that are reported to RSA.","twitter_image":"https:\/\/www.rsa.com\/wp-content\/uploads\/rsa-og-image.jpg","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.rsa.com\/vulnerability-response-policy\/","url":"https:\/\/www.rsa.com\/vulnerability-response-policy\/","name":"\ucde8\uc57d\uc810 \ub300\uc751 \uc815\ucc45 - RSA","isPartOf":{"@id":"https:\/\/www.rsa.com\/#website"},"datePublished":"2022-02-03T21:55:23+00:00","dateModified":"2025-02-07T21:23:56+00:00","description":"RSA \uc81c\ud488 \ubcf4\uc548 \uc0ac\uace0 \ub300\uc751\ud300(RSA PSIRT)\uc740 RSA\uc5d0 \ubcf4\uace0\ub418\ub294 \ubaa8\ub4e0 \uc81c\ud488 \ucde8\uc57d\uc810\uc5d0 \ub300\ud55c \ub300\uc751 \ubc0f \uacf5\uac1c\ub97c \uc870\uc815\ud558\ub294 \ucc45\uc784\uc744 \ub9e1\uace0 \uc788\uc2b5\ub2c8\ub2e4.","breadcrumb":{"@id":"https:\/\/www.rsa.com\/vulnerability-response-policy\/#breadcrumb"},"inLanguage":"ko-KR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.rsa.com\/vulnerability-response-policy\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.rsa.com\/vulnerability-response-policy\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.rsa.com\/"},{"@type":"ListItem","position":2,"name":"Vulnerability Response Policy"}]},{"@type":"WebSite","@id":"https:\/\/www.rsa.com\/#website","url":"https:\/\/www.rsa.com\/","name":"RSA","description":"\uc0ac\uc774\ubc84 \ubcf4\uc548 \ubc0f \ub514\uc9c0\ud138 \ub9ac\uc2a4\ud06c \uad00\ub9ac \uc194\ub8e8\uc158","publisher":{"@id":"https:\/\/www.rsa.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.rsa.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"ko-KR"},{"@type":"Organization","@id":"https:\/\/www.rsa.com\/#organization","name":"RSA","url":"https:\/\/www.rsa.com\/","logo":{"@type":"ImageObject","inLanguage":"ko-KR","@id":"https:\/\/www.rsa.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.rsa.com\/wp-content\/uploads\/rsa.png","contentUrl":"https:\/\/www.rsa.com\/wp-content\/uploads\/rsa.png","width":2880,"height":1020,"caption":"RSA"},"image":{"@id":"https:\/\/www.rsa.com\/#\/schema\/logo\/image\/"}}]}},"_links":{"self":[{"href":"https:\/\/www.rsa.com\/ko\/wp-json\/wp\/v2\/pages\/1581","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.rsa.com\/ko\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.rsa.com\/ko\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.rsa.com\/ko\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.rsa.com\/ko\/wp-json\/wp\/v2\/comments?post=1581"}],"version-history":[{"count":17,"href":"https:\/\/www.rsa.com\/ko\/wp-json\/wp\/v2\/pages\/1581\/revisions"}],"predecessor-version":[{"id":32871,"href":"https:\/\/www.rsa.com\/ko\/wp-json\/wp\/v2\/pages\/1581\/revisions\/32871"}],"wp:attachment":[{"href":"https:\/\/www.rsa.com\/ko\/wp-json\/wp\/v2\/media?parent=1581"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}