Accidental ‘write’ Permissions In Alibaba PostgreSQL Let Attackers Access Sensitive Data

Two new critical flaws have been found in Alibaba Cloud’s popular services, ApsaraDB and AnalyticDB. Both of them were in support of PostgreSQL. Wiz security research team has termed this vulnerability as #BrokenSesame.  One of these vulnerabilities performs Supply-Chain attacks on the database services leading to an RCE. Another was potential unauthorized access to Alibaba’s […]

The post Accidental ‘write’ Permissions In Alibaba PostgreSQL Let Attackers Access Sensitive Data appeared first on GBHackers – Latest Cyber Security News | Hacker News.

This article has been indexed from GBHackers – Latest Cyber Security News | Hacker News

Read the original article: