FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayYour RSS feeds

Additional Supply Chain Vulnerabilities Uncovered in AMI MegaRAC BMC Software

By Ravie Lakshmanan
Two more supply chain security flaws have been disclosed in AMI MegaRAC Baseboard Management Controller (BMC) software, nearly two months afterΒ three security vulnerabilitiesΒ were brought to light in the same product. Firmware security firm EclypsiumΒ saidΒ the two shortcomings were held back until now to provide AMI additional time to engineer appropriate mitigations. The issues, collectively

Critical 'Pantsdown' BMC Vulnerability Affects QCT Servers Used in Data Centers

By Ravie Lakshmanan
Quanta Cloud Technology (QCT) servers have been identified as vulnerable to the severe "Pantsdown" Baseboard Management Controller (BMC) flaw, according to new research published today. "An attacker running code on a vulnerable QCT server would be able to 'hop' from the server host to the BMC and move their attacks to the server management network, possibly continue and obtain further
❌