Keep your eyes on these

VERY IMPORTANT

Security Articles

RSS

Recent Attack Uses Vulnerability on Confluence Server

released on 2021-10-22 @ 09:37:48 AM
In August 2021, Atlassian published a security advisory about CVE-2021-26084 that could enable a threat actor to run arbitrary code on unpatched Confluence Server and Data Center instances. FortiGuard Labs analyzed the situation and published a Threat Signal with relevant information. After releasing the advisory, there occur massive scanning and proof-of-concept exploit code in public. FortiGuard Labs also collected a lot attacking traffic. In this blog FortiGuard Labs will analyze the payloads leveraging this vulnerability, deep dive into the attack and summarize the IOCs for these suspicious activities that may hint the network was affected by CVE-2021-26084.