Get a Pentest and security assessment of your IT network.

News

Trustico Shuts Down Website Over Alert of Serious Flaw

Certificate vendor Trustico is facing a new crisis after a researcher tweeted about a severe vulnerability in the company’s website. The vulnerability would appear to give root access to – and allow the downloading of – digital certificates. Trustico has sought since early February to revoke about 50,000 certificates, or nearly every digital certificate the 12-year-old company has ever issued. Other researchers, running with Predragovi’s alert, reported that the website appeared to be running as “root,” and that any commands transferred to the site using the data-transfer tool curl could be executed with root-level privileges.”]

Source: https://www.cuinfosecurity.com/trustico-shuts-down-website-over-alert-serious-flaw-a-10692

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2