Over 3,000 internet-connected Apache ActiveMQ servers are exposed to a critical remote code execution vulnerability, tracked as CVE-2023-46604. The vulnerability has been actively exploited to deliver ransomware. To avoid these attacks, the Apache Software Foundation has recommended that organizations update to the latest fixed version of the software. The ActiveMQ serves as the most commonly-used open-source, multi-protocol and java-based message broker, with around 13,120 companies using the system according to Enlyft.
China-Backed Hackers Infiltrate U.S. Treasury
The US Treasury was hacked by a China-state-sponsored actor, who stole a key to access unclassified documents. This follows other incidents where Chinese groups infiltrated