Hackers Exploiting Confluence Server to Enable RDP Access & Remote Code Execution

Cybersecurity researchers have uncovered a sophisticated attack campaign where threat actors exploited a known vulnerability in unpatched Atlassian Confluence servers to deploy ransomware. The intrusion, which occurred in June 2024, leveraged CVE-2023-22527 – a template injection vulnerability-to gain initial access to victim networks, enabling remote code execution and unauthorized system access. The attackers displayed patience, […]

The post Hackers Exploiting Confluence Server to Enable RDP Access & Remote Code Execution appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: