Source |
IT Security Guru |
Identifiant |
5187134 |
Date de publication |
2022-06-16 10:02:48 (vue: 2022-06-16 10:07:34) |
Titre |
Hackers Exploit Old Telerik Flaws to Deploy Cobalt Strike |
Texte |
‘Blue Mockingbird’, a threat actor, targets Telerik UI vulnerabilities to compromise servers, install Cobalt Strike beacons, and mine Monero by hijacking system resources. The attacker leverages the CVE-2019-18935 flaw, a critical severity (CVSS v3.1: 9.8) deserialisation that leads to remote code execution in the Telerik UI library for ASP.NET AJAX. In May 2020, the same […]
|
Notes |
|
Envoyé |
Oui |
Condensat |
‘blue 18935 2019 2020 actor ajax asp attacker beacons cobalt code compromise critical cve cvss deploy deserialisation execution exploit flaw flaws hackers hijacking install leads leverages library may mine mockingbird’ monero net old remote resources same servers severity strike system targets telerik threat vulnerabilities |
Tags |
Threat
Guideline
|
Stories |
|
Move |
|