Security News > 2019 > February > Running Elasticsearch 1.4.2 or earlier? There's targeted malware going for your boxen

Running Elasticsearch 1.4.2 or earlier? There's targeted malware going for your boxen
2019-02-27 13:59

Yes it's years out of date but there's no such thing as security through obscurity Cisco's security limb has spotted nefarious people targeting Elasticsearch clusters using relatively ancient vulns to plant malware, cryptocurrency miners and worse – though it does root out some other cybercrims’ dodgy wares, cuckoo-style.…


News URL

http://go.theregister.com/feed/www.theregister.co.uk/2019/02/27/elasticsearch_malware_cisco_talos/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Elasticsearch 8 0 7 4 0 11