Start your day with intelligence. Get The OODA Daily Pulse.
JFrog artifactory flaws exploited for admin access and backdoors.
Wiz reported that attackers are exploiting three Artifactory vulnerabilities to bypass authentication and gain administrative control over self‑hosted instances. Two of the bugs have been chained since mid‑August to obtain anonymous‑user tokens and escalate them to full admin privileges, allowing persistent accounts, malicious plugins and second‑stage payloads. A third flaw was used in early September for configuration theft, token minting and attaching attacker SSH keys to new user accounts. CISA has added all three vulnerabilities to its KEV list, and organizations are urged to update to the latest supported versions immediately.
Read more:
https://www.securityweek.com/three-jfrog-artifactory-flaws-exploited-for-backdoor-deployment/