Ausnahme gefangen: SSL certificate problem: certificate is not yet valid ๐Ÿ“Œ Iranian Hackers Breached Federal Agency Using Log4Shell Exploit

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š Iranian Hackers Breached Federal Agency Using Log4Shell Exploit


๐Ÿ’ก Newskategorie: IT Security Nachrichten
๐Ÿ”— Quelle: it.slashdot.org

An anonymous reader quotes a report from BleepingComputer: The FBI and CISA revealed in a joint advisory published today that an unnamed Iranian-backed threat group hacked a Federal Civilian Executive Branch (FCEB) organization to deploy XMRig cryptomining malware. The attackers compromised the federal network after hacking into an unpatched VMware Horizon server using an exploit targeting the Log4Shell (CVE-2021-44228) remote code execution vulnerability. After deploying the cryptocurrency miner, the Iranian threat actors also set up reverse proxies on compromised servers to maintain persistence within the FCEB agency's network. "In the course of incident response activities, CISA determined that cyber threat actors exploited the Log4Shell vulnerability in an unpatched VMware Horizon server, installed XMRig crypto mining software, moved laterally to the domain controller (DC), compromised credentials, and then implanted Ngrok reverse proxies on several hosts to maintain persistence," the joint advisory reads. The two U.S. federal agencies added that all organizations who haven't yet patched their VMware systems against Log4Shell should assume that they've already been breached and advise them to start hunting for malicious activity within their networks. CISA warned in June that VMware Horizon and Unified Access Gateway (UAG) servers are still being preyed upon by multiple threat actors, including state-sponsored hacking groups, using Log4Shell exploits. Log4Shell can be exploited remotely to target vulnerable servers exposed to local or Internet access to move laterally across breached networks to access internal systems that store sensitive data.

Read more of this story at Slashdot.

...



๐Ÿ“Œ US govt: Iranian hackers breached federal agency using Log4Shell exploit


๐Ÿ“ˆ 81.07 Punkte

๐Ÿ“Œ Iranian Hackers Breached Federal Agency Using Log4Shell Exploit


๐Ÿ“ˆ 81.07 Punkte

๐Ÿ“Œ Iranian Hackers Compromised a U.S. Federal Agencyโ€™s Network Using Log4Shell Exploit


๐Ÿ“ˆ 69.07 Punkte

๐Ÿ“Œ Federal Depository Library Program Govn agency breached by Iranian hackers


๐Ÿ“ˆ 52.88 Punkte

๐Ÿ“Œ US: Iranian Hackers Breached Government with Log4Shell


๐Ÿ“ˆ 47.72 Punkte

๐Ÿ“Œ A U.S. Federal Agency Was the Victim of Iranian Government-Sponsored Hackers


๐Ÿ“ˆ 40.88 Punkte

๐Ÿ“Œ U.S. Federal Agency Network Breached By Hackers


๐Ÿ“ˆ 40.81 Punkte

๐Ÿ“Œ Iranian Government Hackers Exploit Log4Shell in SysAid Apps for Initial Access


๐Ÿ“ˆ 40.61 Punkte

๐Ÿ“Œ Microsoft: Iranian attackers are using Log4Shell to target organizations in Israel


๐Ÿ“ˆ 35.38 Punkte

๐Ÿ“Œ Allies Warn of Iranian Ransom Attacks Using Log4Shell


๐Ÿ“ˆ 35.38 Punkte

๐Ÿ“Œ CISA says a hacker breached a federal agency


๐Ÿ“ˆ 35.35 Punkte

๐Ÿ“Œ CISA Says Threat Actor Breached Federal Agency's Network


๐Ÿ“ˆ 35.35 Punkte

๐Ÿ“Œ Week in review: Log4Shell lingers, NIS2 directive adopted, LastPass breached (again)


๐Ÿ“ˆ 30.19 Punkte

๐Ÿ“Œ Iranian Hackers Breached Albanian Government One Year Before Disruptive Attacks


๐Ÿ“ˆ 29.52 Punkte

๐Ÿ“Œ Iranian hackers breached Albaniaโ€™s Institute of Statistics (INSTAT)


๐Ÿ“ˆ 29.52 Punkte

๐Ÿ“Œ Iranian Hackers Group Breached U.S Government Website & Posted a Revenge Messages


๐Ÿ“ˆ 29.52 Punkte

๐Ÿ“Œ U.S. government website operated by the Federal Depository Library Program hacked and defaced by Iranian hackers.


๐Ÿ“ˆ 29.24 Punkte

๐Ÿ“Œ Iranian Hackers Compromise Websites of an African Bank and a US Federal Library


๐Ÿ“ˆ 29.24 Punkte

๐Ÿ“Œ U.S. Federal Network Hacked โ€“ Iranian APT Hackers Compromised Domain Controller


๐Ÿ“ˆ 29.24 Punkte

๐Ÿ“Œ British Cyber Agency Warns of Russian and Iranian Hackers Targeting Key Industries


๐Ÿ“ˆ 29.17 Punkte

๐Ÿ“Œ US Government Agency Website Hacked By Iranian Hackers


๐Ÿ“ˆ 29.17 Punkte

๐Ÿ“Œ Foreign hackers breached Russian federal agencies, said FSB


๐Ÿ“ˆ 29.17 Punkte

๐Ÿ“Œ SolarWinds hackers also breached the US NNSA nuclear agency


๐Ÿ“ˆ 29.09 Punkte

๐Ÿ“Œ Hackers Exploited ColdFusion Vulnerability to Breach Federal Agency Servers


๐Ÿ“ˆ 28.81 Punkte

๐Ÿ“Œ CISA: Hackers are still using Log4Shell to breach networks, so patch your systems


๐Ÿ“ˆ 28.76 Punkte

๐Ÿ“Œ US federal payroll agency hacked using SolarWinds software flaw


๐Ÿ“ˆ 28.46 Punkte

๐Ÿ“Œ Multiple Hacker Groups Exploit 3-Year-Old Vulnerability to Breach U.S. Federal Agency


๐Ÿ“ˆ 28.24 Punkte

๐Ÿ“Œ #0daytoday #MobileIron Log4Shell Remote Command Execution Exploit CVE-2021-44228 [remote #exploits #0day #Exploit]


๐Ÿ“ˆ 27.97 Punkte

๐Ÿ“Œ Iranian APT Actors Breached a US Government Network


๐Ÿ“ˆ 24.06 Punkte

๐Ÿ“Œ AA22-320A: Iranian Government-Sponsored APT Actors Compromise Federal Network, Deploy Crypto Miner, Credential Harvester


๐Ÿ“ˆ 23.78 Punkte

๐Ÿ“Œ Iranian Government-Sponsored APT Actors Compromise Federal Network, Deploy Crypto Miner, Credential Harvester


๐Ÿ“ˆ 23.78 Punkte

๐Ÿ“Œ US, UK, Canada and Australia Link Iranian Government Agency to Ransomware Attacks


๐Ÿ“ˆ 23.71 Punkte

๐Ÿ“Œ Iranian Atomic Energy Agency Admits Email Hack


๐Ÿ“ˆ 23.71 Punkte

๐Ÿ“Œ Iranian Fars News Agency claims cyberattack on a company involved in the construction of Tel Aviv metro


๐Ÿ“ˆ 23.71 Punkte











matomo