Get the latest tech news

Attacking UNIX Systems via CUPS


Hello friends, this is the first of two, possibly three (if and when I have time to finish the Windows research) writeups. We will start with targeting GNU/Linux systems with an RCE. As someone who’s

Full disclosure, I’ve been scanning the entire public internet IPv4 ranges several times a day for weeks, sending the UDP packet and logging whatever connected back. You will maybe be thinking now “wow, that’s a lot of stuff to read, code, RFCs, PDFs of forgotten standards, this research must have been so tiring”, but in reality this was a weekend worth of rabbit holes, this was the fun part. The actual work, the heavy, boring stuff started when on September 5, after confirming my findings, I decided to open a security advisory on the OpenPrinting cups-browsed repository and do what to me was the right thing to do: responsible disclosure.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Cups

Cups

Photo of unix systems

unix systems

Related news:

News photo

Unauthenticated RCE Flaw With CVSS 9.9 Rating For Linux Systems Affects CUPS

News photo

Drinking 3 cups of coffee linked to preventing multiple diseases

News photo

Sorry, Your Paper Coffee Cup Is a Toxic Nightmare