Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Vulnerabilities

Video: Watch The Shellshock Vulnerability Being Exploited in Action

The recently disclosed “Bash Bug” or “Shellshock” vulnerability that affects most versions of Linux, Unix, and Mac OS X operating systems is the latest threat to set IT security teams scrambling to protect their systems.

The recently disclosed “Bash Bug” or “Shellshock” vulnerability that affects most versions of Linux, Unix, and Mac OS X operating systems is the latest threat to set IT security teams scrambling to protect their systems.

Disclosed to the world on Sept. 24, the GNU Bash Remote Code Execution Vulnerability (CVE-2014-6271) could be exploited to execute code and take over a machine.

Attackers can leverage the vulnerability to attack a variety of devices and web servers and take over the operating system, make changes or perform other actions.

RelatedWhat We Know About Shellshock So Far, and Why the Bash Bug Matters

Symantec has put together the video below which demonstrates the threatening vulnerability in action and answers many important questions. 

There have already been reports of limited, targeted attacks targeting the vulnerability and some in the security community believe this bug could be worse than Heartbleed.

Advertisement. Scroll to continue reading.

Related: Bash ‘Shellshock’ Vulnerability Under Attack

RelatedWhat We Know About Shellshock So Far, and Why the Bash Bug Matters

Written By

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this live webinar for a practical framework for evolving your AI security program from a single application to an enterprise AI ecosystem and autonomous agents.

Register

In this live webinar, learn how to define your minimum viable business, identify the systems it depends on, measure actual recovery time against business requirements, and present the gaps to the board as measurable risk.

Register

People on the Move

Naveen Bhateja has been appointed Chief People Officer at HackerOne.

The Department of War has appointed Sonu Shankar as Principal Deputy Chief Information Officer.

Trellix has named David Pieterse as Chief Operating Officer GTM and David Soto as Chief Information Security Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.