700+ self-hosted Gits battered in 0-day attacks with no fix imminent
ID: dfdfbfb4-8445-5b62-92d0-14f7a5313abc
STIX ID: report--dfdfbfb4-8445-5b62-92d0-14f7a5313abc
Feed Name: The Register (Security)
Threat Score
Wiz researchers disclosed a zero-day (CVE-2025-8110) in Gogs (<=0.13.3) that bypasses a previous patch by abusing symbolic links and the PutContents API to overwrite files outside repos, enabling remote code execution; over 700 of ~1,400 internet-exposed Gogs instances were confirmed compromised with Supershell C2 payloads. Researchers recommend disabling open registration and restricting internet exposure, and published IOCs to detect exploitation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
