cognitive cybersecurity intelligence

News and Analysis

Search

Hackers Exploiting A Six-Year-Old IIS Vulnerability To Gain Remote Access

The eSentire Threat Response Unit reports ongoing exploitation of CVE-2019-18935, a six-year-old IIS vulnerability in Progress Telerik UI, allowing attackers to execute arbitrary code on unpatched servers. Threat actors use a reverse shell via w3wp.exe to gather system information, deploying tools like JuicyPotatoNG. Organizations should enhance patch management and utilize Endpoint Detection and Response solutions to mitigate these risks.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts