logo

7-year-old Oracle WebLogic bug under active exploitation

ID: a210ea1d-f08e-5128-a409-c7b50db84bf6

STIX ID: report--a210ea1d-f08e-5128-a409-c7b50db84bf6

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2024-06-06

Date Updated: 2026-04-26

Author: Connor Jones

...
...

The report describes active exploitation of a seven-year-old Oracle WebLogic vulnerability (CVE-2017-3506), now added to CISA's Known Exploited Vulnerabilities list, by the Water Sigbin (8220 Gang) alongside CVE-2023-21839 to deploy cryptocurrency miners and other malware; it highlights sophisticated obfuscation techniques, historical abuse of the flaw, and widespread lack of patching that increases risk to organizations including government entities.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.