Get a Pentest and security assessment of your IT network.

News

GandCrab attackers exploit recently patched Confluence vulnerability

Atlassian’s Confluence is a Java-based web application that provides a shared wiki-type workspace for enterprise employees. The vulnerability, tracked as CVE-2019-3396, is in the software’s Widget Connector that allows users to embed content from YouTube, Twitter and other websites into web pages. Attackers can exploit the flaw to inject a rogue template and achieve remote code execution on the server. There is currently no tool available to decrypt files affected by GandCrab version 5.2 which is being used in this attack.”]

Source: https://www.csoonline.com/article/3391026/gandcrab-attackers-exploit-recently-patched-confluence-vulnerability.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Thousands of Magento websites compromised to serve malware

News

Office 365 Secure Score: An Introduction