7-year-old Oracle WebLogic bug under active exploitation
ID: a210ea1d-f08e-5128-a409-c7b50db84bf6
STIX ID: report--a210ea1d-f08e-5128-a409-c7b50db84bf6
Feed Name: The Register (Security)
Threat Score
The report describes active exploitation of a seven-year-old Oracle WebLogic vulnerability (CVE-2017-3506), now added to CISA's Known Exploited Vulnerabilities list, by the Water Sigbin (8220 Gang) alongside CVE-2023-21839 to deploy cryptocurrency miners and other malware; it highlights sophisticated obfuscation techniques, historical abuse of the flaw, and widespread lack of patching that increases risk to organizations including government entities.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
