Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Share Post: Reddit Facebook
Hezbollah hackers attack unpatched Atlassian servers at telcos, ISPs
#1
Volatile Cedar, an advanced hacker group believed to be connected to the Lebanese Hezbollah Cyber Unit, has been silently attacking companies around the world in espionage operations.
The threat actor likely accessed more than 250 Oracle and Atlassian servers belonging mainly to organizations providing mobile communications and internet-based services.
Also known as Lebanese Cedar, the actor has been active since at least 2012 but fell of the researchers’ radar in 2015. Their operations resurfaced in early 2020 with what security researchers call the BeardStache global campaign, which may have compromised hundreds of companies.
Recon and exploitation
In a report today, cybersecurity company ClearSky says that Lebanese Cedar seems to focus on collecting intelligence and stealing company databases with sensitive information - such as client call records and private data in the case of telecommunications companies.
According to the researchers, the threat actor makes reconnaissance efforts to select their victims and relies on public tools to find them. They use URI Brute Force tools (GoBuster and DirBuster) to look for open directories that could allow a web shell injection.


Source
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Atlassian reveals critical flaws in almost everything it makes and touches mrtrout 0 604 07-21-2022 , 07:56 PM
Last Post: mrtrout
  Chinese hackers use Windows zero-day to attack defense, IT firms mrtrout 0 631 10-12-2021 , 10:34 PM
Last Post: mrtrout
  Valve's Source Engine Cheating Exploit Has Remained Unpatched For Two Years Bjyda 0 816 04-13-2021 , 05:09 PM
Last Post: Bjyda
  New Bugs Could Let Hackers Bypass Spectre Attack Mitigations On Linux Systems Bjyda 0 940 03-29-2021 , 05:07 PM
Last Post: Bjyda
  Unpatched Bug in WiFi Mouse App Opens PCs to Attack Bjyda 0 864 03-03-2021 , 11:30 PM
Last Post: Bjyda

Forum Jump:


Users browsing this thread: 1 Guest(s)