Trending

#webshell

Latest posts tagged with #webshell on Bluesky

Latest Top
Trending

Posts tagged #webshell

New Episode ALERT: Hackers hijack NGINX traffic via React2Shell! 50%+ of the web at risk. Patch, audit configs, use WAFs & FIM. Stay ahead. #Cybersecurity #NGINX #WebShell https://youtu.be/tgiJ98eJ8MA

1 0 0 0

New Episode ALERT: Hackers hijack NGINX traffic via React2Shell! 50%+ of the web at risk. Patch, audit configs, use WAFs & FIM. Stay ahead. #Cybersecurity #NGINX #WebShell https://youtu.be/tgiJ98eJ8MA

0 0 0 0

New Episode ALERT: Hackers hijack NGINX traffic via React2Shell! 50%+ of the web at risk. Patch, audit configs, use WAFs & FIM. Stay ahead. #Cybersecurity #NGINX #WebShell https://youtu.be/tgiJ98eJ8MA

0 0 0 0
Video

๐Ÿ•ต๏ธโ€โ™‚๏ธ When an 'innocent' #PHP file hides a #backdoorโ€ฆ
During an investigation on a compromised server, we came across an obfuscated PHAR stub - a classic sign of a #webshell trying to evade basic scanners.

Check out our technical analysis ๐Ÿ”
Have you ever encountered this type of โ€œpackagedโ€ webshell? ๐Ÿ’ฌ

1 1 0 0

๐Ÿ“ฐ Peretas Eksploitasi Celah ArrayOS AG VPN untuk Tanam Webshell

๐Ÿ‘‰ Baca artikel lengkap di sini: ahmandonk.com/2025/12/05/arrayos-ag-vp...

#array-networks #arrayos #asia #cisa #cybersecurity #jpcert #ssl-vpn #vpn #vulnerability #webshell

0 0 0 0
Post image

Attori russi legati a Sandworm colpiscono organizzazioni ucraine con tattiche stealth e webshell Localolive, rubando dati e mantenendo accesso persistente.

#apt #GRU #Russia #sandworm #ThreatHunterTeam #ucraina #webshell
www.matricedigitale.it/2025/10/29/s...

0 0 0 0

๐Ÿ“ฐ Chinese Hackers Exploit ArcGIS Geo-Mapping Tool for Year-Long Undetected Access

๐Ÿ‘‰ Baca artikel lengkap di sini: ahmandonk.com/2025/10/15/chinese-hacke...

#apt #arcgis #china #cybersecurity #esri #flax-typhoon #infosec #persistence #softether #vpn #webshell

0 0 0 0
Post image

Flax Typhoon trasforma una SOE ArcGIS in web shell persistente e usa SoftEther VPN per spionaggio e credential harvesting in attacco di lunga durata.

#apt #ArcGIS #cina #credentialharvesting #FlaxTyphoon #SOE #VPN #webshell
www.matricedigitale.it/2025/10/14/f...

0 0 0 0
Misconfigured PHP Upload Path Exploited

~Varonis~
A misconfigured public file upload page allowed threat actors to upload a PHP web shell and a mailer script to a Linux server.
-
IOCs: mailer. php
-
#Misconfiguration #ThreatIntel #WebShell

1 0 0 0
Preview
NetScaler ADC/Gateway zero-day exploited by attackers (CVE-2025-7775) - Help Net Security NetScaler has fixed 3 vulnerabilities in its ADC and Gateway devices, one of which (CVE-2025-7775) has been exploited in zero-day attacks.

NetScaler ADC/Gateway zero-day exploited by attackers (CVE-2025-7775)

๐Ÿ“– Read more: www.helpnetsecurity.com/2025/08/26/n...

#0Day #webshell #cybersecurity

1 1 0 0
Post image

ESET first detected an attempt to exploit part of the execution chain on July 17 in๐Ÿ‡ฉ๐Ÿ‡ช. Here, the final #webshell payload was not delivered. The first time we registered the payload was on July 18 in๐Ÿ‡ฎ๐Ÿ‡น. We have since seen active ToolShell exploitation all over the world. 2/5

0 1 1 1
Preview
GitHub - ekky19/Yara-Standalone-Webshell-Scanner: YARA Standalone WSS is an offline webshell scanning tool that uses YARA rules to detect malicious or suspicious files in webroot directories. No installation required โ€” just drop your files, run the scanner, and review the generated HTML and TXT reports. YARA Standalone WSS is an offline webshell scanning tool that uses YARA rules to detect malicious or suspicious files in webroot directories. No installation required โ€” just drop your files, run th...

Offline webshell scanning tool, based on YARA rules github.com/ekky19/Yara-... #DFIR #yara #webshell

1 0 0 0
Original post on asec.ahnlab.com

Case of Attacks Targeting South Korean Web Servers Using MeshAgent and SuperShell Lately, attacks on South Korean web servers utilizing MeshAgent and SuperShell have been identified. The presence o...

#Malware #Public #aNotepad #Ladon #MeshAgent [โ€ฆ]

[Original post on asec.ahnlab.com]

0 0 0 0
Preview
New Critical SAP NetWeaver Flaw Exploited to Drop Web Shell Brute Ratel Framework remote access and to send extra payloads read more about New Critical SAP NetWeaver Flaw Exploited to Drop Web Shell Brute Ratel Framework

New Critical SAP NetWeaver Flaw Exploited to Drop Web Shell Brute Ratel Framework reconbee.com/new-critical...

#SAP #NetWeaver #webshell #framework #CyberSecurity #CybersecurityNews #cyberattack

1 0 0 0

8/ Sucuri is seeing redirects to fake browser updates, #webshell backdoors fetching code from #GitHub, and JS hijackers replacing content or links. Keep those instances patched, clean up unused plugins/themes, and lock down admin accounts (MFA!).

0 0 1 0
Preview
RESURGE Malware Exploits Ivanti Flaw with Rootkit and Web Shell Features spread malware known as the SPAWN ecosystem read more about RESURGE Malware Exploits Ivanti Flaw with Rootkit and Web Shell Features.

RESURGE Malware Exploits Ivanti Flaw with Rootkit and Web Shell Features reconbee.com/resurge-malw...

#RESURGEmalware #malwareattack #ivanti #rootkit #webshell #malware #cyberattack

1 0 0 0
Post image

Malware nascosto nei MU-Plugins infetta WordPress con redirect, webshell e contenuti spam difficili da rilevare.

#cybersecurity #malware #MUPlugins #redirect #sicurezzasitiweb #spaminjection #webshell #Wordpress
www.matricedigitale.it/sicurezza-in...

0 0 0 0
Post image

Malware nascosto nei MU-Plugins infetta WordPress con redirect, webshell e contenuti spam difficili da rilevare.

#cybersecurity #malware #MUPlugins #redirect #sicurezzasitiweb #spaminjection #webshell #Wordpress
www.matricedigitale.it/sicurezza-in...

0 0 0 0
Post image

Malware nascosto nei MU-Plugins infetta WordPress con redirect, webshell e contenuti spam difficili da rilevare.

#cybersecurity #malware #MUPlugins #redirect #sicurezzasitiweb #spaminjection #webshell #Wordpress
www.matricedigitale.it/sicurezza-in...

0 0 0 0
Preview
ShellSweep Tool Detects Potential Webshell Files The ShellSweep tool utilizes entropy analysis to identify potential webshell files in specified directories, focusing on common file types and allowing for customizable scanning options.

Introducing ShellSweep, a powerful tool for #cybersecurity that employs entropy analysis to pinpoint potential webshell files in your directories. It focuses on common file types and offers customizable scanning options. Enhance your threat detection today! #threat #webshell

0 0 0 0
Post image

#webshell #opendir #netsupport #rat at:

appointedtimeagriculture\\.com/wp-includes/blocks/post-...

GatewayAddress=95.179.158.213:443
RADIUSSecret=dgAAAPpMkI7ke494fKEQRUoablcA

0 0 0 0
Post image

#webshell #opendir #netsupport #rat at:

https:// appointedtimeagriculture\.com/wp-includes/blocks/post-content/

GatewayAddress=95.179.158.213:443
RADIUSSecret=dgAAAPpMkI7ke494fKEQRUoablcA

0 0 0 0

๐Ÿ Malware: In at least one of the appliances undergoing analysis, @Mandiant observed the deployment of the previously observed SPAWN ecosystem of malware (which includes the SPAWNANT installer, SPAWNMOLE tunneler and the SPAWNSNAIL SSH backdoor) #Malware #Webshell

0 0 1 0
Screenshot from one of my web server logs showing the HTTP GET request with a URL for the PHP webshell.

Screenshot from one of my web server logs showing the HTTP GET request with a URL for the PHP webshell.

URL for the PHP webshell opened in a web browser to get the PHP text file for this webshell.

URL for the PHP webshell opened in a web browser to get the PHP text file for this webshell.

VirusTotal results showing the file returned from that URL is a PHP webshell.

VirusTotal results showing the file returned from that URL is a PHP webshell.

2024-12-04 (Wednesday): Reviewing my most recent web server access logs for my malware-traffic-analysis.net blog shows what looks like an attempt to get a PHP #webshell on my web server.

The URL for the PHP webshell is hxxp://1.14.123[.]164/ote.txt

6 1 0 0