Security News > 2024 > September > Chinese Hackers Exploit GeoServer Flaw to Target APAC Nations with EAGLEDOOR Malware

2024-09-23 04:49
A suspected advanced persistent threat (APT) originating from China targeted a government organization in Taiwan, and possibly other countries in the Asia-Pacific (APAC) region, by exploiting a recently patched critical security flaw impacting OSGeo GeoServer GeoTools. The intrusion activity, which was detected by Trend Micro in July 2024, has been attributed to a threat actor dubbed Earth Baxia
News URL
https://thehackernews.com/2024/09/chinese-hackers-exploit-geoserver-flaw.html
Related news
- Hackers exploit SimpleHelp RMM flaws to deploy Sliver malware (source)
- Chinese Hackers Exploit MAVInject.exe to Evade Detection in Targeted Cyber Attacks (source)
- Chinese hackers use custom malware to spy on US telecom networks (source)
- Malware botnets exploit outdated D-Link routers in recent attacks (source)
- Hackers exploit Four-Faith router flaw to open reverse shells (source)
- Chinese APT Exploits BeyondTrust API Key to Access U.S. Treasury Systems and Documents (source)
- Chinese hackers targeted sanctions office in Treasury attack (source)
- US sanctions Chinese company linked to Flax Typhoon hackers (source)
- Chinese hackers also breached Charter and Windstream networks (source)
- Hackers exploit KerioControl firewall flaw to steal admin CSRF tokens (source)