CRITICAL ALERT: Large-scale exploitation campaign targeting website content management systems (CMS)
ID: 9b27afde-9c9b-5360-8434-1c9889dc4d6b
STIX ID: report--9b27afde-9c9b-5360-8434-1c9889dc4d6b
Feed Name: ASD's ACSC - Alerts RSS
Date Published: 2026-07-09
Date Updated: 2026-07-24
Author: Australian Cyber Security Centre (ACSC)
This advisory from ASD's ACSC warns of a broad, active exploitation campaign targeting multiple CMS platforms and plugins worldwide (including many small-to-medium Australian businesses) to deploy webshells via vulnerabilities such as unauthenticated file upload, RCE, SSRF and deserialization. The alert lists affected software and CVEs, describes impacts (defacement, credential capture, malware distribution, lateral movement), and provides immediate remediation steps: inspect for webshells, review logs, isolate compromised servers, remove persistence, restore from known-good backups, and patch vulnerable software.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
