logo

Researchers Warn macOS textutil, KeePassXC Can Fuel Automation Attacks

ID: 53ca5906-55ef-577b-9662-0733703d1f16

STIX ID: report--53ca5906-55ef-577b-9662-0733703d1f16

Feed Name: GBHackers

Threat Score
35/100

Date Published: 2026-04-27

Date Updated: 2026-04-27

Author: Mayura Kathir

...
...

Researchers demonstrate that trusted local utilities can become security-relevant in automation: macOS textutil may automatically fetch remote resources when converting HTML (creating an SSRF-style risk), and KeePassXC KDBX files can carry attacker-controlled KDF parameters that massively increase CPU time and enable resource-exhaustion attacks; mitigations include disabling external loads, sandboxing, restricting outbound access, and limiting or validating KDF settings.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.