Proof of concept (PoC) exploit code for a critical vulnerability in Atlassian’s Confluence Data Center and Server technology has become publicly available. ShadowServer reported 36 unique IP addresses attempting to exploit the vulnerability over 24 hours. The bug allows attackers to access privileged functionality and data, and can delete or block data on a Confluence instance. Despite the vulnerability becoming public, there are reportedly no active exploits yet. Atlassian recommends immediate actions for protection and patching of the system.
FBI Deletes PlugX Malware from 4,250 Hacked Computers in Multi-Month Operation
The FBI has deleted PlugX malware from more than 4,250 infected computers as part of a US Department of Justice-approved multi-month operation. PlugX, controlled by