Netcrook Logo

Tag: DNS vulnerability

8 article(s)

DNS Backdoor in AWS Bedrock AgentCore Exposes Cloud Data to Stealthy Attacks

18 Mar 2026 news 🌍 North America

A critical flaw in AWS Bedrock’s AgentCore Code Interpreter allows attackers to bypass sandbox protections and create secret command-and-control channels using DNS traffic, enabling covert data theft and remote control. AWS urges customers to lock down their environments as the threat landscape evolves.

#AWS Bedrock | #DNS vulnerability | #Command and Control

Invisible Leaks: DNS Loophole in AWS Bedrock AgentCore Exposes Cloud Data

18 Mar 2026 news 🌍 North America

A critical DNS vulnerability in AWS Bedrock AgentCore's Code Interpreter lets attackers evade sandbox isolation, establish covert command-and-control, and exfiltrate data undetected. Here's how the flaw works, why it matters, and what AWS customers must do to stay safe.

#AWS Bedrock | #DNS vulnerability | #Cybersecurity

AWS Bedrock Sandbox Flaw: DNS Loophole Lets Hackers Steal Data from AI Code Interpreter

17 Mar 2026 news 🌍 North America

Researchers uncovered a DNS vulnerability in AWS Bedrock’s AI Code Interpreter, enabling attackers to exfiltrate data from supposedly isolated environments. With AWS opting for warnings over a technical fix, experts urge organizations to rethink their AI security strategies.

#DNS vulnerability | #AWS Bedrock | #AI security

DNS Deception: CleanTalk Plugin Flaw Exposes WordPress Sites to Full Takeover

16 Feb 2026 news

A critical flaw in the CleanTalk plugin allowed attackers to seize control of WordPress sites by spoofing DNS records. Discover how the exploit worked, its impact, and urgent steps for site owners.

#WordPress | #CleanTalk | #DNS vulnerability

DNS Spoofing Flaw in CleanTalk Plugin Puts WordPress Sites at Risk

16 Feb 2026 news

A high-severity flaw in the CleanTalk Spam Protection plugin for WordPress lets attackers bypass authorization using DNS tricks, enabling site takeover and remote code execution. Immediate updates are urged.

#DNS vulnerability | #WordPress security | #CleanTalk plugin

DNS Domino: How a Newly Exposed ISC BIND Flaw Threatens to Topple Critical Infrastructure

23 Jan 2026 news

A high-severity vulnerability in ISC BIND could let attackers remotely crash DNS servers, threatening the stability of critical infrastructure. Patches are available, but immediate action is needed to avoid widespread disruption.

#ISC BIND | #DNS vulnerability | #Denial-of-Service

BIND 9 Flaw Exposes Global DNS Servers to Easy Remote Crash Attacks

23 Jan 2026 news

A newly revealed flaw in BIND 9 allows attackers to crash DNS servers remotely with no authentication, threatening a major portion of the world’s internet infrastructure. Here’s what you need to know—and why patching now is critical.

#BIND 9 | #DNS vulnerability | #DoS attacks

DNS Downfall: Critical BIND 9 Bug Lets Attackers Remotely Crash Servers

22 Jan 2026 news

A critical flaw in BIND 9 allows attackers to remotely crash DNS servers using malformed records, threatening Internet stability. Immediate patching is required as no workaround exists.

#BIND 9 | #DNS vulnerability | #denial-of-service