cognitive cybersecurity intelligence

News and Analysis

Search

Lazarus Hackers Exploiting IIS Servers to Deploy ASP-based Web Shells

The Lazarus group has launched sophisticated attacks on South Korean web servers, deploying ASP-based web shells as first-stage Command and Control (C2) servers. These attacks, evolving since May 2024, feature improved security and obfuscation techniques. Malicious scripts facilitate communication with attackers and enable file operations. Security experts recommend inspecting server vulnerabilities, rotating passwords, and enhancing monitoring to counteract these persistent threats.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts