cognitive cybersecurity intelligence

News and Analysis

Search

Hackers Exploiting A Six-Year-Old IIS Vulnerability To Gain Remote Access

The eSentire Threat Response Unit reports ongoing exploitation of CVE-2019-18935, a six-year-old IIS vulnerability in Progress Telerik UI, allowing attackers to execute arbitrary code on unpatched servers. Threat actors use a reverse shell via w3wp.exe to gather system information, deploying tools like JuicyPotatoNG. Organizations should enhance patch management and utilize Endpoint Detection and Response solutions to mitigate these risks.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts

Identity and Access Management (IAM)

Identity and Access Management (IAM)

CISOs face mounting pressure to secure digital identities, with 80% of breaches stemming from compromised credentials. Identity and Access Management (IAM) must evolve into a