Apache RocketMQ已知弱點遭濫用,殭屍網路Muhstik藉此綁架未修補漏洞的分散式訊息串流系統,擴大DDoS攻擊規模
支付動態 · 2024-06-11

研究人員針對最新一波殭屍網路Muhstik的攻擊行動提出警告,指出駭客鎖定的目標,主要是分散式訊息串流資料平臺Apache RocketMQ的已知漏洞CVE-2023-33246

此外,該惡意程式還會掃描SSH服務進行橫向移動,從而感染其他電腦。

但為何對方運用一年前公布的已知漏洞發起攻勢?研究人員利用物聯網搜尋引擎Shodan進行調查,結果發現,全球約有5,216臺RocketMQ伺服器,曝露於CVE-2023-33246的資安風險當中,而這些伺服器幾乎位於中國。

值得留意的是,這項漏洞在今年一月傳出已遭到嘗試利用的情況。當時Shadowserver基金會指出,已有駭客透過近400個來源IP位址,試圖利用CVE-2023-33246及CVE-2023-37582。

Popular articles
DraftKings drops another $5M into Missouri sports betting race
Sports Betting
Italian regulator updates technical rules for gambling systems verification
Regulation
Wynn Resorts obtains United Arab Emirates gaming license
Regulation
Dutch gambling regulator wanrs lottery over advertorial
Regulation
BEGE and EEGS 2025 Dates Announced!
Online Casino
Hotel-casino court rulings reveal flaws in AI price-fixing allegations
Regulation
Swedish lawmaker proposes lowered gambling tax to fight black market
Sports Betting
1spin4win releases unique slot Don Catleone Hold and Win featuring gangster cats
Online Casino
Vietnam's tightening online gaming policy creates new market opportunities
Southeast Asia
Spanish regulator warns of identity theft via online gambling platforms
Regulation
PrizePicks announces two executive staff appointments
Sports Betting
German gambling regulator wins case against lottery operator
Regulation
Online casino in Germany: Schleswig-Holstein issues licences for live casino and table games
Online Casino
Crypto in gambling: Market overview 2024
Marketing
New Partnership: 1spin4win Integrates Classic Slots into Pokerdom’s Gaming Library
Online Casino
Home
Game
Cooperation
Find
My