Source: – Author: Bill Toulas A logic flaw between Ubuntu’s ‘command-not-found’ package suggestion system and the snap package repository could enable attackers to promote malicious Linux packages to unsuspecting users. The problem arises from the utility’s ability to suggest snap packages for installation when they are missing without a validation mechanism to ensure that […]
La entrada Ubuntu ‘command-not-found’ tool can be abused to spread malware – Source: se publicó primero en CISO2CISO.COM & CYBER SECURITY GROUP.