cognitive cybersecurity intelligence

News and Analysis

Search

Kinsing malware exploits Apache ActiveMQ RCE to plant rootkits

The Kinsing malware operator is exploiting a critical vulnerability in the Apache ActiveMQ message broker to compromise Linux systems. This flaw, allowing remote code execution, was previously targeted by ransomware gangs such as HelloKitty and TellYouThePass. The malware targets competing Monero miners, evades detection, and adds rootkits into the Linux system configuration files to execute with every system process. System administrators are urged to upgrade Apache Active MQ to patched versions to mitigate the threat.

Source: www.bleepingcomputer.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts