Tag: RCE attacks

Hackers exploit Gladinet CentreStack cryptographic flaw in RCE attacks
News

Hackers exploit Gladinet CentreStack cryptographic flaw in RCE attacks

The encryption technique used in Gladinet's CentreStack and Triofox products for safe remote file access and sharing has a new, unreported weakness that hackers are taking advantage of. Researchers caution that the attackers can gain hardcoded cryptographic keys and accomplish remote code execution by taking advantage of the security flaw. Gladinet recommended clients to update their goods to the most recent version, which had been released on November 29 at the time of the message, despite the fact that the new cryptographic vulnerability lacks an official identification. Additionally, the business gave clients a list of indicators of compromise (IoCs) that showed how the problem was being used in the real world. At least nine organizations have been the target of attacks usi...
Researchers Uncover 30+ Flaws in AI Coding Tools Enabling Data Theft and RCE Attacks
News

Researchers Uncover 30+ Flaws in AI Coding Tools Enabling Data Theft and RCE Attacks

Several AI-powered Integrated Development Environments (IDEs) that mix legitimate functionality with quick injection primitives to accomplish data exfiltration and remote code execution have been found to have more than 30 security flaws. Security researcher Ari Marzouk (MaccariTA) has dubbed the security flaws IDEsaster. Among the well-known IDEs and extensions they impact include Cursor, Windsurf, Kiro.dev, GitHub Copilot, Zed.dev, Roo Code, Junie, and Cline. Twenty-four of them have been given CVE IDs. Marzouk told The Hacker News, I think the most surprising finding of this research is that multiple universal attack chains affected every single AI IDE tested. The base software (IDE) is essentially ignored in the threat model of all AI IDEs (and coding assistants that interact...
CISA Warns of CentreStack’s Hard-Coded MachineKey Vulnerability Enabling RCE Attacks
News

CISA Warns of CentreStack’s Hard-Coded MachineKey Vulnerability Enabling RCE Attacks

Citing evidence of active exploitation in the field, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a severe security issue affecting Gladinet CentreStack to its list of known exploited vulnerabilities (KEV) on Tuesday. The vulnerability, identified as CVE-2025-30406 (CVSS score: 9.0), pertains to a situation where a cryptographic key that has been hard-coded could be exploited to accomplish remote code execution. Version 16.4.10315.56368, which was made available on April 3, 2025, addresses it. According to CISA, Gladinet CentreStack has a hard-coded cryptographic key vulnerability in the way it handles the keys needed for ViewState integrity verification. An attacker can remotely execute code by successfully forging ViewState payloads for server-side deseri...
Prompt Injection Flaw in Vanna AI Exposes Databases to RCE Attacks
News

Prompt Injection Flaw in Vanna AI Exposes Databases to RCE Attacks

Researchers studying cybersecurity have found a high-severity security vulnerability in the Vanna.AI framework that might be used to remotely execute code by using prompt injection methods. According to supply chain security company JFrog, the vulnerability, listed as CVE-2024-5565 (CVSS score: 8.1), is related to a case of prompt injection in the "ask" function that may be used to fool the library into executing arbitrary commands. A large language model (LLM) is used by Vanna, a Python-based machine learning toolkit, to translate "just asking questions" (also known as prompts) into an equivalent SQL query, allowing users to converse with their SQL database and gain insights. The swift adoption of generative artificial intelligence (AI) models in recent times has highlighted the...
libcue Library Flaw Opens GNOME Linux Systems Vulnerable to RCE Attacks
News

libcue Library Flaw Opens GNOME Linux Systems Vulnerable to RCE Attacks

A new security hole in the libcue package has been found to compromise GNOME Linux systems and might be used to execute code remotely (RCE) on vulnerable hosts. The CVE-2023-43641 bug, which affects libcue, a library used to parse cue sheet files, is described as a case of memory corruption (CVSS: 8.8). Versions 2.2.1 and before are affected. Tracker Miners, a search engine application that is included in GNOME and indexes system data for quick access, incorporates libcue. The issue stems from a track_set_index function bug that allows code execution read more libcue Library Flaw Opens GNOME Linux Systems Vulnerable to RCE Attacks. Stay informed with the best cybersecurity news and raise your cybersecurity awareness with our comprehensive coverage of the latest threats, breach...
Exploit released for Juniper firewall bugs allowing RCE attacks
News

Exploit released for Juniper firewall bugs allowing RCE attacks

For vulnerabilities in Juniper SRX firewalls that, when combined, might give unauthenticated attackers remote code execution in Juniper's JunOS on unpatched devices, proof-of-concept exploit code has been made available to the public. Juniper revealed four moderately serious issues in its SRX firewalls and EX switches and issued security updates two weeks ago. The PHP-based J-Web interface that administrators can use to manage and configure Juniper devices on their networks was determined to have security issues. An attacker can upload arbitrary files via J-Web with a specific request that doesn't require authentication, resulting in a loss of integrity for a certain portion of the file system, which may allow chaining to other vulnerabilities read more Exploit released for Juniper ...