Source |
The Hacker News |
Identifiant |
3956099 |
Date de publication |
2022-01-13 00:37:23 (vue: 2022-01-13 09:06:14) |
Titre |
Iranian Hackers Exploit Log4j Vulnerability to Deploy PowerShell Backdoor |
Texte |
An Iranian state-sponsored actor has been observed scanning and attempting to abuse the Log4Shell flaw in publicly-exposed Java applications to deploy a hitherto undocumented PowerShell-based modular backdoor dubbed "CharmPower" for follow-on post-exploitation.
"The actor's attack setup was obviously rushed, as they used the basic open-source tool for the exploitation and based their operations |
Notes |
|
Envoyé |
Oui |
Condensat |
abuse actor applications attack attempting backdoor based basic been charmpower deploy dubbed exploit exploitation exposed flaw follow hackers has hitherto iranian java log4j log4shell modular observed obviously open operations post powershell publicly rushed scanning setup source sponsored state tool undocumented used vulnerability |
Tags |
Tool
Vulnerability
|
Stories |
|
Move |
|