Sam Stepanyan :verified: 🐘
3b5fd1b98a2d38f8a5a7551ac9d337e8d265506b1db3b4a4d3e8cad14cea68d7
https://twitter.com/securestep9
#OWASP London Chapter Leader(@OWASPLondon). Application Security (#AppSec) Architect & Consultant. OWASP Global Board Member. OWASP Nettacker Project co-leader. #CISSP
#Linux: #DjVuLibre vulnerability CVE-2025-53367 could be exploited to gain code execution on a Linux Desktop system when the user tries to open a crafted PDF document. The POC works on a fully up-to-date Ubuntu 25.04 (x86_64):
👇
#Cybersecurity researchers said they have discovered what they say is the first #opensource software supply chain attacks specifically targeting the banking sector. The attacker cleverly utilized #npm packages & Azure's CDN subdomains:
#SupplyChainSecurity
https://thehackernews.com/2023/07/banking-sector-targeted-in-open-source.html