Get a Pentest and security assessment of your IT network.

Cyber Security

Researcher Says NSA’s Ghidra Tool Can Be Used for RCE

Ghidra, a free, open-source software reverse-engineering tool, has been found to be a potential conduit to remote code-execution. The vulnerability was discovered by researcher with the handle @sghctoma less than 24 hours after the tool was released by the National Security Agency at RSA. Tencent Security researchers said that they found that attackers can chain together an exploit for the vulnerability, the abuse of Java features and the exploitation of known weaknesses in the NTLM protocol in Windows to perform an SMB relay attack.

Source: https://threatpost.com/nsa-ghidra-bug-rce/142937/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security