<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Netrc on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/netrc/</link><description>Recent content in Netrc on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Fri, 13 Jun 2025 08:42:01 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/netrc/index.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-6429: Azure netrc Credential Leak via Proxy</title><link>https://zxcloudsecurity.co.uk/posts/azure-netrc-credential-leak-reused-proxy-connection-cve-2026-6429/</link><pubDate>Sat, 13 Jun 2026 08:42:01 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/azure-netrc-credential-leak-reused-proxy-connection-cve-2026-6429/</guid><description>CVE-2026-6429 exposes netrc credentials through reused proxy connections in Azure environments. Learn the impact and mitigation steps.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-6429">Microsoft Security Response Center</a></p>
<hr>
<p>CVE-2026-6429 is a credential leak vulnerability where netrc credentials can be inadvertently exposed when an HTTP proxy connection is reused across requests. This occurs because authentication credentials stored in netrc files may be transmitted to unintended destinations via a reused proxy connection. If exploited, an attacker with visibility into proxy traffic could capture sensitive credentials used by Azure-connected workloads.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Review any Azure workloads or pipelines that use netrc files for credential storage alongside HTTP proxy configurations, and consider rotating any credentials that may have transited affected connections. Disable connection reuse on proxy clients where feasible, and audit proxy logs for unexpected credential forwarding until a patch is applied.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-6429">CVE-2026-6429 netrc credential leak with reused proxy connection</a></p>
]]></content:encoded></item></channel></rss>