Security Researcher Explains His Dependency Confusion Exploit Method
Birsan points out he was able to exploit a security vulnerability and run code on servers run by over 30 companies, including Microsoft, Apple, and PayPal. As Microsoft noted yesterday, the exploit is very simple and will lead to a way major companies handle in-house app development. Many corporations develop their own applications to be used in-house amongst employees or sent out externally. Developers within organizations use package managers for handling libraries that are then put together to assemble an app....