Security Alert: Update PuTTY, WinSCP, FileZilla, TortoiseGit, and TortoiseSVN ASAP Users of PuTTY, WinSCP, FileZilla, TortoiseGit, and TortoiseSVN need to update those applications as soon as possible.

April 19, 2024 12:34 pm

Is this email displaying correctly? View it in a browser.

Enterprise Research IS Alert

Security Alert: Update PuTTY, WinSCP, FileZilla, TortoiseGit, and TortoiseSVN ASAP

Users of PuTTY, WinSCP, FileZilla, TortoiseGit, and TortoiseSVN need to update those applications as soon as possible.

The latest versions of the above applications address a critical vulnerability that could be exploited to achieve full recovery of NIST P-521 (ecdsa-sha2-nistp521) private keys.

Additionally, any ECDSA NIST-P521 keys used with the above applications should be revoked by removing them from ~/.ssh/authorized_keys files and their equivalents in other SSH servers.

Additional information