Skip to content
The Nexus
SECURITYAug 20 · 11:05 UTCTHE HACKER NEWS[email protected] (The Hacker News)

NASA AIT-GUI Flaws Could Let Unauthenticated Attackers Issue Spacecraft Commands

Security researchers at Cycode disclosed a chain of flaws in AIT-GUI, the operator console for NASA/JPL's open-source AMMOS Instrument Toolkit. These flaws allow an unauthenticated attacker to issue arbitrary commands to the software’s spacecraft and instrument command bus. The vulnerability was tracked as GHSA-p9r8-2q67-fp86 and rated 9.4 on CVSS v3.1.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this
Related Signal

Adjacent reporting