A newly disclosed security flaw in the Amazon WorkSpaces client for Linux has raised serious concerns across organizations relying on AWS virtual desktop infrastructure. The vulnerability, identified as CVE-2025-12779, enables local attackers to extract valid authentication tokens and gain unauthorized access to other users’ WorkSpace sessions.
First seen on thecyberexpress.com
Jump to article: thecyberexpress.com/amazon-workspaces-cve-2025-12779/
![]()

