Get a Pentest and security assessment of your IT network.

Cyber Security

Critical RCE Bug Affects Millions of OpenWrt-based Network Devices

The vulnerability resides in the OPKG package manager of OpenWrt that exists in the way it performs integrity checking of downloaded packages using the SHA-256 checksums embedded in the signed repository index. The vulnerability was discovered earlier this year by Guido Vranken from the ForAllSecure software company. Vulnerability could allow a remote man-in-the-middle attacker in a position to intercept the communication of a targeted device to execute arbitrary code by tricking the system into installing a malicious software update without verification.

Source: https://thehackernews.com/2020/03/openwrt-rce-vulnerability.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security