Researchers Warn macOS textutil, KeePassXC Can Fuel Automation Attacks
ID: 53ca5906-55ef-577b-9662-0733703d1f16
STIX ID: report--53ca5906-55ef-577b-9662-0733703d1f16
Feed Name: GBHackers
Threat Score
Researchers demonstrate that trusted local utilities can become security-relevant in automation: macOS textutil may automatically fetch remote resources when converting HTML (creating an SSRF-style risk), and KeePassXC KDBX files can carry attacker-controlled KDF parameters that massively increase CPU time and enable resource-exhaustion attacks; mitigations include disabling external loads, sandboxing, restricting outbound access, and limiting or validating KDF settings.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
