Critical AWS Security Breach: Attackers Weaponize Pandoc Flaw to Hijack EC2 Credentials in Live Attacks
Cybercriminals are actively exploiting a Server-Side Request Forgery (SSRF) vulnerability in Pandoc, a Linux document conversion tool, to target AWS cloud infrastructure and steal credentials from the Instance Metadata Service (IMDS). The attacks use malicious HTML iframe elements to make ...
