News | KiZAN Technologies

Targeted Attack Campaign Against ManageEngine

Written by Brad Watson | Nov 8, 2021 9:40:06 PM

Targeted Attack Campaign Against ManageEngine ADSelfService Plus Delivers Godzilla Webshells, NGLite Trojan and KdcSponge Stealer

On Sept. 16, 2021, the US Cybersecurity and Infrastructure Security Agency (CISA) released an alert warning that advanced persistent threat (APT) actors were actively exploiting newly identified vulnerabilities in a self-service password management and single sign-on solution known as ManageEngine ADSelfService Plus. The alert explained that malicious actors were observed deploying a specific webshell and other techniques to maintain persistence in victim environments; however, in the days that followed, a second unrelated campaign to carry out successful attacks against the same vulnerability was observed.

Read More

Contact us if you need any assistance.