c
July 12, 2023, 2:18 a.m. |

Cloud Security Alliance cloudsecurityalliance.org

Originally published by Sysdig. Written by Miguel Hernández. During May, a new vulnerability CVE-2023-32784 was discovered that affected KeePass. KeePass is a popular open source password manager which runs on Windows, Mac, or Linux. The vulnerability allows the extraction of the master key in cleartext from the memory of the process that was running. The master key will allow an attacker to access all the stored credentials.We strongly recommend updating to KeePass 2.54 to fix the vulnerabil...

cve cve-2023-32784 detection keepass key linux mac manager master master key may memory open source password password manager popular process processes sysdig vulnerability windows written

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Threat Analysis Engineer

@ Gen | IND - Tamil Nadu, Chennai

Head of Security

@ Hippocratic AI | Palo Alto

IT Security Vulnerability Management Specialist (15.10)

@ OCT Consulting, LLC | Washington, District of Columbia, United States

Security Engineer - Netskope/Proofpoint

@ Sainsbury's | Coventry, West Midlands, United Kingdom

Journeyman Cybersecurity Analyst

@ ISYS Technologies | Kirtland AFB, NM, United States