logo

Rackspace monitoring systems rocked by zero-day

ID: 1a123092-d99f-5958-bfef-633198a48a91

STIX ID: report--1a123092-d99f-5958-bfef-633198a48a91

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2024-09-30

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Rackspace discovered and contained an exploitation of a zero-day remote code execution flaw in a third-party utility bundled with ScienceLogic's SL1 monitoring product that was used to access three internal monitoring web servers and obtain limited monitoring/customer information (account names/numbers, usernames, device IDs, device IPs, and AES256-encrypted internal device agent credentials). Rackspace isolated affected systems, worked with ScienceLogic to deploy a patch, rotated internal device agent credentials as a precaution, and reported no broader disruption to other products or services.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.