Get a Pentest and security assessment of your IT network.

News

Critical RCE Bug Found in Homebrew Package Manager for macOS and Linux

A security vulnerability in the official Homebrew Cask repository could have been exploited by an attacker to execute arbitrary code on users’ machines. The issue stemmed from the way code changes in its GitHub repository were handled, resulting in a scenario where a malicious pull request could be automatically reviewed and approved. The flaw was reported to the maintainers on April 18 by a Japanese security researcher named RyotaK. In light of the findings, Homebrew has removed the “automerge” GitHub Action as well as disabled and removed all vulnerable repositories.

Source: https://thehackernews.com/2021/04/critical-rce-bug-found-in-homebrew.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

IntelCrawler profiled Syrian Electronic Army group

News

Wikileaks Vault 7 Imperial projects revealed the 3 hacking tools Achilles, SeaPea and Aeris