Get a Pentest and security assessment of your IT network.

News

Java and Python Contain Security Flaws That Allow Attackers to Bypass Firewalls

Java and Python contain similar security flaws that allow an attacker to bypass firewalls by injecting malicious commands inside FTP URLs. Both issues remain unpatched. The FTP protocol injection issue was first detailed by Russian security lab ONsec in 2014, but never got the public attention it needed. At the heart of the issue resides an older issue in the FTP protocol itself, which is classic mode FTP. The attack relies on convincing users to access a malicious Java or Python applications installed on a server.

Source: https://www.bleepingcomputer.com/news/security/java-and-python-contain-security-flaws-that-allow-attackers-to-bypass-firewalls/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

1 day attack with DDoS booter costs $60 causing $720k in damageSecurity Affairs

News

NSA-linked Cisco exploit poses bigger threat than previously thought