Blog | G5 Cyber Security

Kaspersky Unvalidated redirection flaw exploitable to serve malware

The cyber Security Analyst Consultant at Q-CERT Ebrahim Hegazy has found an Unvalidated Redirection Vulnerability in the website of the giant security solutions vendor Kasperskys website. The vulnerability was reported to Kaspersky web-team and is now fixed. The consequences of unfixing of such vulnerability are critical infection – since the redirection is coming from a trusted source especially if the attacker registered a domain name similar to Karksky.com.”]

Source: https://securityaffairs.co/wordpress/17244/hacking/kaspersky-unvalidated-redirection-flaw-exploitable-to-serve-malware.html

Exit mobile version