Get a Pentest and security assessment of your IT network.

Cyber Security

Plugins for Popular Text Editors Could Help Hackers Gain Elevated Privileges

Advanced text editors for Unix and Linux systems are vulnerable to a critical privilege escalation flaw that could be exploited by attackers to run malicious code on a victims’ machines. The issue resides in the way these text editors load plugins for these editors. Their folder permissions integrity is not maintained correctly, which opens the door for attackers with regular user permissions to elevate their privileges and execute arbitrary code on the user’s machine. Users should avoid loading 3rd-party plugins when the editor is elevated and deny write permissions for non-elevated users.

Source: https://thehackernews.com/2018/03/text-editors-extensibility.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security