Get a Pentest and security assessment of your IT network.

Cyber Security

Plugins for Popular Text Editors Could Help Hackers Gain Elevated Privileges

Advanced text editors for Unix and Linux systems are vulnerable to a critical privilege escalation flaw that could be exploited by attackers to run malicious code on a victims’ machines. The issue resides in the way these text editors load plugins for these editors. Their folder permissions integrity is not maintained correctly, which opens the door for attackers with regular user permissions to elevate their privileges and execute arbitrary code on the user’s machine. Users should avoid loading 3rd-party plugins when the editor is elevated and deny write permissions for non-elevated users.

Source: https://thehackernews.com/2018/03/text-editors-extensibility.html

Related posts
Cyber Security

Zip Codes & PII: Are They Personal Data?

Cyber Security

Zero-Day Vulnerabilities: User Defence Guide

Cyber Security

Zero Knowledge Voting with Trusted Server

Cyber Security

ZeroNet: 51% Attack Risks & Mitigation