logo

Dama webshell deployment via ThinkPHP exploitation (Campaign)

ID: e1367155-376e-551f-aa02-4cd59bd635d0

STIX ID: report--e1367155-376e-551f-aa02-4cd59bd635d0

Feed Name: Wiz Cloud Threat Landscape

Threat Score
60/100

Date Published: 2024-06-05

Date Updated: 2026-05-01

Author: [email protected] (Wiz Threat Research)

...
...

Akamai Security Research documents active exploitation of ThinkPHP web applications leveraging 1-day vulnerabilities that result in attackers installing the Dama webshell; the post likely outlines the exploit chain, webshell behavior, indicators of compromise, and mitigation recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.