Tech

Popular open source vulnerability scanner Nuclei forced to patch worrying security flaw

Share
Share


  • Popular open source vulnerability scanner Nuclei was found to be vulnerable itself
  • A bug allowed crooks to smuggle malicious code past the scanner
  • The vulnerability was fixed in September 2024, but many users still haven’t updated

A vulnerability scanning tool was found to have been vulnerable itself, allowing crooks to smuggle malicious code past the gatekeeper.

Cybersecurity researchers from Wiz found a bug in ProjectDiscovery’s Nuclei in August 2024, after investigating the open source vulnerability scanner, which is designed to automate the detection of security issues across various protocols, systems, and applications using customizable YAML-based templates.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Need faster internet? Researchers just sent data at crazy speeds without a single cable
Tech

Need faster internet? Researchers just sent data at crazy speeds without a single cable

Researchers set new wireless data record over 4.6km with infrared Data beams...

Online sellers are losing billions to fake chargebacks in 2025 – and it’s you and me paying the price
Tech

Online sellers are losing billions to fake chargebacks in 2025 – and it’s you and me paying the price

Fraudulent chargebacks are no longer rare, they’re a rising epidemic draining billions...

NYT Connections hints and answers for Sunday, May 4 (game #693)
Tech

NYT Connections hints and answers for Sunday, May 4 (game #693)

Looking for a different day? A new NYT Connections puzzle appears at...