Get a Pentest and security assessment of your IT network.

News

Zip Slip Flaw Affects Thousands of Open-Source Projects

A known critical vulnerability has been given the moniker Zip Slip in an effort to raise awareness of its prevalence. An exploit allows attackers to remotely overwrite archive files with their own content, and from there pivot to achieving remote command execution on the machine. A recent analysis shows the bug affects multiple open-source ecosystems, including JavaScript, Ruby,.NET and Go. As a result, thousands of developer projects, including ones from Amazon, Apache, HP, Pivotal and many others, have been identified as vulnerable.

Source: https://threatpost.com/zip-slip-flaw-affects-thousands-of-open-source-projects/132577/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Reflection of cyber-attack to Wells Fargo in world media

News

CVE-2016-6563 RCE flaw affects D-Link Routers, disable remote admin