News Score: Score the News, Sort the News, Rewrite the Headlines

Microsoft says attackers use exposed ASP.NET keys to deploy malware

Microsoft warns that attackers are deploying malware in ViewState code injection attacks using static ASP. NET machine keys found online. As Microsoft Threat Intelligence experts recently discovered, some developers use ASP.NET validationKey and decryptionKey keys (designed to protect ViewState from tampering and information disclosure) found on code documentation and repository platforms in their own software. ViewState enables ASP.NET Web Forms to control state and preserve user inputs across ...

Read more at bleepingcomputer.com

© News Score  score the news, sort the news, rewrite the headlines