Tech

Popular open source vulnerability scanner Nuclei forced to patch worrying security flaw

Share
Share


  • Popular open source vulnerability scanner Nuclei was found to be vulnerable itself
  • A bug allowed crooks to smuggle malicious code past the scanner
  • The vulnerability was fixed in September 2024, but many users still haven’t updated

A vulnerability scanning tool was found to have been vulnerable itself, allowing crooks to smuggle malicious code past the gatekeeper.

Cybersecurity researchers from Wiz found a bug in ProjectDiscovery’s Nuclei in August 2024, after investigating the open source vulnerability scanner, which is designed to automate the detection of security issues across various protocols, systems, and applications using customizable YAML-based templates.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
South Korea’s LG Energy Solution exits from .4bn Indonesia project
Tech

South Korea’s LG Energy Solution exits from $8.4bn Indonesia project

Credit: Unsplash/CC0 Public Domain South Korea’s LG Energy Solution said Tuesday it...

The Oscars’ new AI rule provides a tentative green light for generative tech in movies
Tech

The Oscars’ new AI rule provides a tentative green light for generative tech in movies

Ahead of the 98th Oscars ceremony, scheduled for March 2026, the Academy...

US urges curb of Google’s search dominance as AI looms
Tech

US urges curb of Google’s search dominance as AI looms

Google contends the US is overreaching by asking a federal judge to...

Auto Shanghai to showcase electric competition at sector’s new frontier
Tech

Auto Shanghai to showcase electric competition at sector’s new frontier

The Shanghai auto show is the world’s biggest and will showcase some...