Unidentified threat actors breached a server running an unpatched, 11-year-old version of Adobe’s ColdFusion 9 software in minutes. The server was used to collect timesheet and accounting data for payroll as well as to host a number of virtual machines. The attacks originated from an internet address assigned to the Ukrainian ISP Green Floid. The attackers used a wide range of sophisticated methods to conceal files, inject code into memory, and cover their tracks by overwriting files with garbled data.”]
Source: https://thehackernews.com/2021/09/cring-ransomware-gang-exploits-11-year.html

