[remote] gogs 0.13.0 - Remote Code Execution (RCE)
文章描述了针对Gogs 0.13.0及以下版本的远程代码执行漏洞(CVE-2024-39930),展示了如何通过创建仓库、添加SSH密钥并利用git-upload-pack命令注入恶意代码来实现远程控制。该漏洞允许攻击者在目标服务器上执行任意命令。
You must login to view this content
You must login to view this content
The DOJ announced a far-reaching operation that aimed to knock out a substantial number of North Korean IT worker scams that have victimized more than 100 U.S. companies that unwittingly hired North Korean operatives as remote workers, who then stole data and money to support the Pyongyang regime.
The post U.S. Target North Korean IT Worker Scams with Raids, Indictments appeared first on Security Boulevard.