Critical SaltStack vulnerabilities exploited in several data breaches

Critical SaltStack vulnerabilities exploited in several data breaches

  • SaltStack patched two critical vulnerabilities in its software last week, but hackers used the flaws over the weekend to breach several unpatched networks, including DigiCert’s.
  • SaltStack issued a statement confirming that attacks had occurred and urging customers to update their software to prevent further breaches and follow best practices to harden their Salt environments.

SearchSecurity – Rob Wright | May 5, 2020