Mmastodon TechnologyCybersecurity first seen 6 h ago, last 6 h ago, peak #11
Critical vulnerability found in NASA's AIT-Core software
Original: NASA-AMMOS AIT-Core ≤3.1.1 has a CRITICAL vuln (CVE-2026-105105): ZeroMQ bus lacks auth, exposing command & telemetry to
NASA's AMMOS AIT-Core toolkit, used for spacecraft ground systems, has a critical vulnerability tracked as CVE-2026-105105. The flaw affects versions up to 3.1.1: its ZeroMQ bus ships without authentication, potentially exposing spacecraft commands and telemetry to remote attackers. NASA has released version 3.1.2, which restricts bus access to the local loopback interface, and users are urged to upgrade immediately.
Why now: A newly disclosed critical flaw in NASA software used for mission command and telemetry raises fresh concerns about space infrastructure security.
NASAAMMOS AIT-CoreZeroMQCVE-2026-105105
Evidence
- NASA-AMMOS AIT-Core ≤3.1.1 has a CRITICAL vuln (CVE-2026-105105): ZeroMQ bus lacks auth, exposing command & telemetry to remote attackers. Upgrade to 3.1.2 restricts access to loopback. Details: https:// radar.offseq.com/threat/cve-20… · offseq@infosec.exchange · 1
API: https://socialmediatrends-api.osmike.com/v1/trends/864422