Get a Pentest and security assessment of your IT network.

Cyber Security

Hackers Compromise Cisco Servers Via SaltStack Flaws

Cisco said attackers have been able to compromise its servers after exploiting two known, critical SaltStack vulnerabilities. The flaws exist in the open-source Salt management framework, which are used in Cisco network-tooling products. Two Cisco products incorporate a version of SaltStack that is running the vulnerable salt-master service. The bugs were first made public by the Salt Open Core team on April 29. They include an authentication bypass issue, tracked as CVE-2020-11651, and a directory-traversal flaw.

Source: https://threatpost.com/hackers-compromise-cisco-servers-saltstack/156091/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security