Chinese government website security is often worryingly bad, say Chinese researchers
ID: 2be9d010-341d-5578-ae9b-bf713db8fb20
STIX ID: report--2be9d010-341d-5578-ae9b-bf713db8fb20
Feed Name: The Register (Security)
A Harbin Institute of Technology study analyzed nearly 14,000 Chinese government websites and found widespread security and dependency issues — over a quarter of domains lack NS records, heavy reliance on a few DNS/ISP/CDN providers, 4,250 sites using a jQuery version vulnerable to CVE-2020-23064, unsigned DNSSEC signatures, and thousands of sites missing key HTTP security headers — creating significant risk of web-based attacks and large-scale service disruptions, though no active exploitation was reported.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
