Netskope Threat Labs

FILE-IMAGE ImageMagick PostScript decode delegate command injection attempt

IPS-SWG

1 SID: 41120

First seen
August 2023
Last seen
October 2026

Detects content exploiting the ImageTragick class of flaws in ImageMagick, where pipe characters in delegate commands run shell commands. A crafted image file can execute arbitrary code on servers that process untrusted images.