
ISC StormCast for Wednesday, October 5th, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
The New Vulnerability in PHP Repository Packages
Sonar source found another vulnerability in the PHP repository packages. This was actually an older vulnerability back in April 2021 that Sonar source found by launching command injection into the repository code itself. The attacker of course could potentially have complete control over this repository. There is no indication that the vulnerability has been exploited so far.
Transcript
Play full episode