Hackers used the Log4Shell vulnerability to install hidden miners
The experts have identified attacks aimed at devices running Linux

13.12.2021 - 12:20
112
1 min
0
.
What’s new? The experts from Netlab 360 reported a critical vulnerability in Apache Log4j, a Java-based logging library. The attackers used it to install the malware and hidden miners.
Information on the Netlab 360 blog
What is the danger of a critical vulnerability? Log4Shell or LogJam is a Remote Code Execution class vulnerability. If the attackers manage to exploit it on one of the servers, they will be able to execute the arbitrary code and take full control of the system. The hackers took advantage of the situation to launch the Kinsing crypto miners and organize large-scale DDoS attacks. .
What are the experts saying? The Apache Foundation recommends that all developers upgrade the library to version 2.15.0, or if this is not possible, use one of the methods described on the Apache Log4j Security Vulnerabilities page. The experts added:
“At the moment, there have been no instances of exploitation of vulnerabilities by ransomware or APT-groups, however, the fact of the deployment of Cobalt Strike beacons indicates the forthcoming malicious campaigns.”
Useful material?
Market
Experts have linked this to the upcoming halving on the altcoin’s network
Jun 2, 2023
Market
The group of investors amended the claim they filed in June 2022 about a pyramid scheme
Jun 2, 2023
Market
The Russian fintech company B-crypto is responsible for the technical support of the process
Jun 2, 2023
Mining
The profit growth took place amid an increase in the number of transactions on the network
Jun 2, 2023
Politics
Virtual asset service providers will come under the regulator’s supervision on September 1
Jun 1, 2023
Market
The campaign is designed to increase the popularity of FLOKI through marketing communication with the payment system
Jun 1, 2023