Security News > 2020 > December > Gitpaste-12 worm botnet returns with 30+ vulnerability exploits

Recently discovered Gitpaste-12 worm that spreads via GitHub and also hosts malicious payload on Pastebin, has returned with even more exploits.
This time, the advanced worm and botnet has returned with over 30 vulnerability exploits.
Expanding on its predecessor, this new version of Gitpaste-12 comes equipped with over 30 vulnerability exploits, concerning Linux systems, IoT devices, and open-source components.
The newer version of Gitpaste-12 has exploits for "At least 31 known vulnerabilities - seven of which were also seen in the previous Gitpaste-12 sample - as well as attempts to compromise open Android Debug Bridge connections and existing malware backdoors," explains Langton.
Some of these vulnerability exploits concern popular open-source applications, such as JBoss Seam 2, CutePHP, mongo-express, Pi-hole, and FuelCMS. Whereas, well-known proprietary web applications like vBulletin are targeted by the worm.
News URL
Related news
- Ballista Botnet Exploits Unpatched TP-Link Vulnerability, Targets Over 6,000 Devices (source)
- Researchers Find New Exploit Bypassing Patched NVIDIA Container Toolkit Vulnerability (source)
- PolarEdge Botnet Exploits Cisco and Other Flaws to Hijack ASUS, QNAP, and Synology Devices (source)
- Hackers Exploit Paragon Partition Manager Driver Vulnerability in Ransomware Attacks (source)
- BlackLock Ransomware Exposed After Researchers Exploit Leak Site Vulnerability (source)