dCERT issued two advisories for Rsync covering separate vulnerabilities that could expose organizations using the file synchronization tool to attack. One advisory describes an unspecified attack path in Rsync, indicating a flaw that could be exploited without public technical detail in the notice, while a second advisory warns that another vulnerability could allow attackers to bypass security measures.
The paired notices indicate multiple security issues affecting Rsync and raise concern for environments that rely on it for file transfer, backup, or synchronization workflows. Although the advisories provide limited public detail, the combination of an attack-enabling flaw and a security-control bypass suggests defenders should review affected Rsync deployments, monitor for vendor guidance, and prioritize remediation once patches or mitigation steps are confirmed.

See affected versions and whether adversaries are exploiting it.
2 events from the most recent confirmed update back to the earliest known activity.
dCERT published advisory 2026-1134 describing an Rsync vulnerability that allows bypassing security measures. The reference does not provide additional impact or remediation details.
dCERT published advisory 2025-2449 describing an Rsync vulnerability that could allow an unspecified attack. No further technical details are provided in the reference content.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.