Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Beyond CVEs: The Exploitation of Everyday Misconfigurations

Summary

From a DistrictCon talk, Wiz shows how everyday misconfigurations in Selenium Grid, Spring Boot and PostgreSQL became full compromise — no CVE needed, just default credentials and exposed services.
Published
Collected

original ↗

Related coverage

back