Get a Pentest and security assessment of your IT network.

News

Reevaluate “low-risk”” PHP unserialization vulnerabilities

researcher says”

Source: PHP unserialization vulnerabilities in the PHP programming language have been documented since 2009. They allow hackers to perform different kinds of attacks by supplying malicious inputs to the unserialize function. This attack vector has been documented by 2009, so the fact that these flaws exist is nothing new. Last years massive Equifax breach was reportedly initiated through deserialization. The vulnerability can even be exploited using a basic JPEG image, originally a Phar archive converted into valid JPEG by changing its first 100 bytes.”]

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks