Get a Pentest and security assessment of your IT network.

News

Remote desktop tool distributed by Comodo enabled privilege escalation

Security software vendor Comodo has patched a security weakness in its GeekBuddy remote PC support tool. The vulnerability could have enabled local malware or exploits to gain admin privileges on computers. Google Project Zero researcher Tavis Ormandy recently discovered that the VNC server installed by the tool is protected by an easy-to-determine password. The password consisted of the first eight characters from the SHA1 cryptographic hash of a string made up of the computer’s Disk Caption, Disk Signature, Disk Serial Number and Disk Total Tracks. The VNC session that the password unlocks has admin privileges.”]

Source: https://www.csoonline.com/article/3035521/remote-desktop-tool-distributed-by-comodo-enabled-privilege-escalation.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks