r/cybersecurity 🔐 Cybersecurity 👁 0

ssh-keysign-pwn: Linux LPE allows unprivileged users to read root-owned files. PoC with SSH server privkey

In short: Patched last night by Linus, so technically not a 0day Yann Horn (Google PZ) proposed a fix six years ago Only hours after Linus patched, Brad Spengler went "look what we have here" _SiCK (who did Copy Fail 2

📄

This source provides headlines only. Use the button below to read the complete article on the original site.

📰 Read the original article on r/cybersecurity

Originally published by r/cybersecurity. Aggregated on AIWithGhost for educational purposes — full credit and traffic to the original publisher.