Tech

Popular open source vulnerability scanner Nuclei forced to patch worrying security flaw

Share
Share


  • Popular open source vulnerability scanner Nuclei was found to be vulnerable itself
  • A bug allowed crooks to smuggle malicious code past the scanner
  • The vulnerability was fixed in September 2024, but many users still haven’t updated

A vulnerability scanning tool was found to have been vulnerable itself, allowing crooks to smuggle malicious code past the gatekeeper.

Cybersecurity researchers from Wiz found a bug in ProjectDiscovery’s Nuclei in August 2024, after investigating the open source vulnerability scanner, which is designed to automate the detection of security issues across various protocols, systems, and applications using customizable YAML-based templates.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
From action movies to urban planning, new method for creating large 3D models of urban areas is faster and cheaper
Tech

From action movies to urban planning, new method for creating large 3D models of urban areas is faster and cheaper

Ground truth, generated images, and visualization of Gaussian means of our Waterloo...

Research reveals hidden gifts of the ‘black box’ for modeling grid behavior
Tech

Research reveals hidden gifts of the ‘black box’ for modeling grid behavior

ORNL’s “black box” grid modeling method protects proprietary information about the inner...