Discussion

NASA AIT-GUI Flaws Could Let Unauthenticated Attackers Issue Spacecraft Commands

Started by The Hacker News · 20 Aug 2026 14:09 · 2 Views · 0 Replies
Thread Starter #0
Security researchers at Cycode have disclosed a chain of flaws in AIT-GUI, the browser-based operator console for NASA/JPL's open-source AMMOS Instrument Toolkit, that allow an unauthenticated attacker to issue arbitrary commands to the software's spacecraft and instrument command bus.

The chain, tracked as GHSA-p9r8-2q67-fp86 and rated 9.4 on the CVSS v3.1 scoring system, impacts AIT-GUI

Okumaya devam et...

You must be logged in to reply.

0 quotes selected