Get a Pentest and security assessment of your IT network.

News

Zero-Day Vulnerabilities Discovered in Enterprise-Grade VPN

Aviatrix, an enterprise VPN company with customers that include NASA, Shell and BT, has recently dealt with a vulnerability that was uncovered by Immersive Labs researcher Alex Seymour. Seymour found that during the VPN’s installation process on Windows, Linux and FreeBSD, the permission set applied to the client’s installation directory was highly permissive. The vulnerability would have allowed an attacker who already had access to a machine to escalate privileges and achieve anything they wanted; for example, gaining access to files, folders and network services that the user would not previously have been able to access. A patch for the VPN has been released (v2.4.10)”]

Source: https://www.darkreading.com/abtv/zero-day-vulnerabilities-discovered-in-enterprise-grade-vpn/a/d-id/756135

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

RasGas, The Second Victim!

News

Technical analysis of the Locker virus on mobile phones