Shellshock Bug: A New Threat to OS X, Linux & UNIX! - See more at: http://www.easytechy.co.uk/shellshock-bug-new-threat-os-x-linux-unix
Shellshock, a new vulnerability affecting Mac OS X, Linux and UNIX operating systems, is also referred as the “Bash Bug” that can gain control of your system deceptively. This bug affects Bash which is a common component present in many versions of Linux and UNIX. Bash is the command language interpreter which allows you to type commands in a simple text-based window and then these commands are run by the operating system. Also, it can run those commands that are passed to it by applications and due to this feature it gets affected by Shellshock.
There is the type of command that allows environment variables to be set. These environment variables are dynamic, named values. Attacker tack-on malicious code to the environment variable. According to Symantec, this bug is really critical as Bash is commonly used in Linux and UNIX operating system. For exploitation, this bug needs some specific conditions. Once it is exploited, attacker can steal information as well as gain control over the computer. Also, it can access other computers on the infected network. In order to make the attack successful, an application should be forced containing malicious environment variable to Bash. Those servers utilizing CGI (Common Gateway Interface) are the most common pathway of attack.
What should you do?
Taking note of the threat posed by this Shellshock, it is recommended to take measures for safeguarding your system. In this regard, you must fix affected servers. Along with servers, you can observe the infection on saved images also. Therefore, be careful while using these images later. Some common protective measures that should apply:
Always keep Windows, OS X and Linux updated
Take proper security maintenance
Use password manager
Don’t click without thinking
Security is the most important concern and thereby, it is essential to patch the defected ones. For further security, you can call tech support agents as they can suggest better ways to make your system protected.













