this post was submitted on 21 Aug 2024
1 points (100.0% liked)
Cybersecurity
5 readers
63 users here now
An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!
Rules
Community Rules
- Be kind
- Limit promotional activities
- Non-cybersecurity posts should be redirected to other communities within infosec.pub.
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
The company doing this is https://www.n-able.com/ - here's are the details: https://sintonen.fi/advisories/n-able-ecosystem-agent-improper-certificate-validation.txt
...except for the PoC exploit which is insanely simple to pull off. Anyone with #mitmproxy and half a brain can do it.