<img alt="" src="https://secure.hims1nice.com/151009.png" style="display:none;">
" style="background-color: #2c3e50;">
 

News

Targeted Attack Campaign Against ManageEngine

Posted by Brad Watson on Nov 8, 2021 4:40:06 PM
Brad Watson
Find me on:

Targeted Attack Campaign Against ManageEngine ADSelfService Plus Delivers Godzilla Webshells, NGLite Trojan and KdcSponge Stealer

On Sept. 16, 2021, the US Cybersecurity and Infrastructure Security Agency (CISA) released an alert warning that advanced persistent threat (APT) actors were actively exploiting newly identified vulnerabilities in a self-service password management and single sign-on solution known as ManageEngine ADSelfService Plus. The alert explained that malicious actors were observed deploying a specific webshell and other techniques to maintain persistence in victim environments; however, in the days that followed, a second unrelated campaign to carry out successful attacks against the same vulnerability was observed.

Read More

Contact us if you need any assistance.

 

Contact Us

Topics: Security

KiZAN Logo White

Gold Microsoft Partner Logo

 

Louisville, KY

9462 Brownsboro Rd Suite 327

502.327.0333

 

Cincinnati, OH

9035 Meridian Way

513.563.6000

 

Subscribe to Notifications

Subscribe