July 1, 2024, 7:16 p.m. |

CSO Online www.csoonline.com






Researchers have uncovered a serious remote code execution vulnerability in the Open Secure Shell (OpenSSH) server that could let unauthenticated attackers obtain a root shell on servers and take them over. Through internet scanning services like Shodan and Censys, Qualys researchers identified over 14 million potentially vulnerable OpenSSH instances that were exposed to the internet.


The flaw, tracked as CVE-2024-6387, has been dubbed regreSSHion because it is a regression of an older flaw — CVE-2006-5051 — patched in …

attackers censys code code execution internet internet security millions openssh qualys regresshion remote code remote code execution researchers risk root scanning serious server servers services shell shodan unauthenticated uncovered vulnerabilities vulnerability vulnerable

Microsoft Active Directory Engineer - TS/SCI with Polygraph

@ General Dynamics Information Technology | USA VA Chantilly - 14700 Lee Rd (VAS100)

GSOC Analyst & Team Lead

@ Western Digital | Colorado Springs, CO, United States

FAIT Manager - IT Risk Assessment - Dublin

@ EY | Dublin 2, IE

FAIT Senior Manager - IT Risk Assessment - Dublin

@ EY | Dublin 2, IE

Engineer - Sailpoint IdentityNow I Remote, Bangalore

@ Optiv | Bengaluru

Security Sales Specialist

@ NTT DATA | Madrid, Spain