Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Tide’s Evo Tiles Are a Fresh, Overengineered Take on the Tide Pod

    6 Best 2-in-1 Laptops (2026), WIRED-Approved and Tested

    Fellow Series 1 Espresso Machine Review (2026): Excellent, but a Work in Progress

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      Tensions between the Pentagon and AI giant Anthropic reach a boiling point

      February 21, 2026

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026

      To avoid accusations of AI cheating, college students are turning to AI

      January 29, 2026
    • Business

      Gartner: Why neoclouds are the future of GPU-as-a-Service

      February 21, 2026

      The HDD brand that brought you the 1.8-inch, 2.5-inch, and 3.5-inch hard drives is now back with a $19 pocket-sized personal cloud for your smartphones

      February 12, 2026

      New VoidLink malware framework targets Linux cloud servers

      January 14, 2026

      Nvidia Rubin’s rack-scale encryption signals a turning point for enterprise AI security

      January 13, 2026

      How KPMG is redefining the future of SAP consulting on a global scale

      January 10, 2026
    • Crypto

      XRP Struggles as On-Chain Stress Mounts: Is a Bottom Forming?

      February 23, 2026

      Vitalik Buterin Sold Over 8,800 ETH in February: Did It Impact the Price?

      February 23, 2026

      Vitalik Buterin Explains How Crypto Can Protect Users When Perfect Security Remains Impossible

      February 23, 2026

      Ethereum, Solana Defy L1 Myth — Bitwise CIO Sees Prediction Markets Changing Everything

      February 23, 2026

      5 Critical Factors That Could End Gold’s 7-Month Green Streak

      February 23, 2026
    • Technology

      Tide’s Evo Tiles Are a Fresh, Overengineered Take on the Tide Pod

      February 24, 2026

      6 Best 2-in-1 Laptops (2026), WIRED-Approved and Tested

      February 24, 2026

      Fellow Series 1 Espresso Machine Review (2026): Excellent, but a Work in Progress

      February 24, 2026

      Salsa Wanderosa Electric Bike Review: Full-Suspension Drop-Bar Gravel Ride

      February 24, 2026

      The Best Laptop Tote Bags to Buy (2026), WIRED-Tested and Reviewed

      February 24, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»A critical Erlang/OTP security flaw is “surprisingly easy” to exploit, experts warn
    Technology

    A critical Erlang/OTP security flaw is “surprisingly easy” to exploit, experts warn

    TechAiVerseBy TechAiVerseApril 18, 2025No Comments3 Mins Read3 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    A critical Erlang/OTP security flaw is “surprisingly easy” to exploit, experts warn
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    A critical Erlang/OTP security flaw is “surprisingly easy” to exploit, experts warn – so patch now

    (Image credit: Shutterstock)

    • Security researchers find a 10/10 flaw in Erlang/OTP SSH
    • Horizon3 Attack Team says the flaw is “surprisingly easy” to exploit
    • A patch is available, so users should update now

    Erlang/OTP SSH, a set of libraries for the Erlang programming language, carries a maximum-severity vulnerability that allows for remote code execution and is “surprisingly easy” to exploit, researchers are warning.

    A team of cybersecurity researchers from the Ruhr University Bochum (Germany) recently discovered an improper handling of pre-authentication protocol messages flaw, which affects all versions of Erlang/OTP SSH. It is tracked as CVE-2025-32433 and carries a severity score of 10/10 (critical).

    Erlang/OTP SSH is a module within the Erlang/OTP standard library that provides support for implementing Secure Shell (SSH) clients and servers in Erlang applications.

    Remote code execution

    Erlang is a functional programming language and runtime system designed for building highly concurrent, distributed, and fault-tolerant systems. It was originally developed by Ericsson, for use in telecoms, but has expanded into messaging systems, databases, and other applications where uptime and scalability are critical.

    “The issue is caused by a flaw in the SSH protocol message handling which allows an attacker to send connection protocol messages prior to authentication,” a warning on the OpenWall vulnerability mailing list reads.

    Soon after the news broke, security researchers from the Horizon3 Attack Team tried to reproduce the flaw and found it to be “surprisingly easy”, which should be cause for concern.

    “Just finished reproducing CVE-2025-32433 and putting together a quick PoC exploit — surprisingly easy,” the team said on X. “Wouldn’t be shocked if public PoCs start dropping soon. If you’re tracking this, now’s the time to take action.”

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    Taking action would mean applying the patch which is now available and which mitigates the risk. Since all older versions are vulnerable, all users are advised to upgrade to versions 25.3.2.10 and 26.2.4.

    Threat actors are more active in the short window between a patch being released, and being applied by the users. Most organizations are not that diligent when it comes to patching, giving cybercriminals a relatively easy exploit avenue.

    Via BleepingComputer

    You might also like

    • OpenSSH vulnerabilities could pose huge threat to businesses everywhere
    • Take a look at our guide to the best authenticator app
    • We’ve rounded up the best password managers

    Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous Article$1.26 Billion Bitcoin Unstaking Slashes Babylon’s TVL and BABY Token Value
    Next Article HP agrees million-dollar settlement over “false advertising” on PCs, keyboards
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    Tide’s Evo Tiles Are a Fresh, Overengineered Take on the Tide Pod

    February 24, 2026

    6 Best 2-in-1 Laptops (2026), WIRED-Approved and Tested

    February 24, 2026

    Fellow Series 1 Espresso Machine Review (2026): Excellent, but a Work in Progress

    February 24, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025691 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025279 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025159 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025122 Views
    Don't Miss
    Technology February 24, 2026

    Tide’s Evo Tiles Are a Fresh, Overengineered Take on the Tide Pod

    Tide’s Evo Tiles Are a Fresh, Overengineered Take on the Tide PodLaundry is a $100…

    6 Best 2-in-1 Laptops (2026), WIRED-Approved and Tested

    Fellow Series 1 Espresso Machine Review (2026): Excellent, but a Work in Progress

    Salsa Wanderosa Electric Bike Review: Full-Suspension Drop-Bar Gravel Ride

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    Tide’s Evo Tiles Are a Fresh, Overengineered Take on the Tide Pod

    February 24, 20262 Views

    6 Best 2-in-1 Laptops (2026), WIRED-Approved and Tested

    February 24, 20262 Views

    Fellow Series 1 Espresso Machine Review (2026): Excellent, but a Work in Progress

    February 24, 20262 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    This new Roomba finally solves the big problem I have with robot vacuums

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.