New Episode ALERT: Hackers hijack NGINX traffic via React2Shell! 50%+ of the web at risk. Patch, audit configs, use WAFs & FIM. Stay ahead. #Cybersecurity #NGINX #WebShell https://youtu.be/tgiJ98eJ8MA
Latest posts tagged with #webshell on Bluesky
New Episode ALERT: Hackers hijack NGINX traffic via React2Shell! 50%+ of the web at risk. Patch, audit configs, use WAFs & FIM. Stay ahead. #Cybersecurity #NGINX #WebShell https://youtu.be/tgiJ98eJ8MA
New Episode ALERT: Hackers hijack NGINX traffic via React2Shell! 50%+ of the web at risk. Patch, audit configs, use WAFs & FIM. Stay ahead. #Cybersecurity #NGINX #WebShell https://youtu.be/tgiJ98eJ8MA
New Episode ALERT: Hackers hijack NGINX traffic via React2Shell! 50%+ of the web at risk. Patch, audit configs, use WAFs & FIM. Stay ahead. #Cybersecurity #NGINX #WebShell https://youtu.be/tgiJ98eJ8MA
๐ต๏ธโโ๏ธ When an 'innocent' #PHP file hides a #backdoorโฆ
During an investigation on a compromised server, we came across an obfuscated PHAR stub - a classic sign of a #webshell trying to evade basic scanners.
Check out our technical analysis ๐
Have you ever encountered this type of โpackagedโ webshell? ๐ฌ
๐ฐ Peretas Eksploitasi Celah ArrayOS AG VPN untuk Tanam Webshell
๐ Baca artikel lengkap di sini: ahmandonk.com/2025/12/05/arrayos-ag-vp...
#array-networks #arrayos #asia #cisa #cybersecurity #jpcert #ssl-vpn #vpn #vulnerability #webshell
Attori russi legati a Sandworm colpiscono organizzazioni ucraine con tattiche stealth e webshell Localolive, rubando dati e mantenendo accesso persistente.
#apt #GRU #Russia #sandworm #ThreatHunterTeam #ucraina #webshell
www.matricedigitale.it/2025/10/29/s...
๐ฐ Chinese Hackers Exploit ArcGIS Geo-Mapping Tool for Year-Long Undetected Access
๐ Baca artikel lengkap di sini: ahmandonk.com/2025/10/15/chinese-hacke...
#apt #arcgis #china #cybersecurity #esri #flax-typhoon #infosec #persistence #softether #vpn #webshell
Flax Typhoon trasforma una SOE ArcGIS in web shell persistente e usa SoftEther VPN per spionaggio e credential harvesting in attacco di lunga durata.
#apt #ArcGIS #cina #credentialharvesting #FlaxTyphoon #SOE #VPN #webshell
www.matricedigitale.it/2025/10/14/f...
~Varonis~
A misconfigured public file upload page allowed threat actors to upload a PHP web shell and a mailer script to a Linux server.
-
IOCs: mailer. php
-
#Misconfiguration #ThreatIntel #WebShell
NetScaler ADC/Gateway zero-day exploited by attackers (CVE-2025-7775)
๐ Read more: www.helpnetsecurity.com/2025/08/26/n...
#0Day #webshell #cybersecurity
ESET first detected an attempt to exploit part of the execution chain on July 17 in๐ฉ๐ช. Here, the final #webshell payload was not delivered. The first time we registered the payload was on July 18 in๐ฎ๐น. We have since seen active ToolShell exploitation all over the world. 2/5
Offline webshell scanning tool, based on YARA rules github.com/ekky19/Yara-... #DFIR #yara #webshell
Case of Attacks Targeting South Korean Web Servers Using MeshAgent and SuperShell Lately, attacks on South Korean web servers utilizing MeshAgent and SuperShell have been identified. The presence o...
#Malware #Public #aNotepad #Ladon #MeshAgent [โฆ]
[Original post on asec.ahnlab.com]
New Critical SAP NetWeaver Flaw Exploited to Drop Web Shell Brute Ratel Framework reconbee.com/new-critical...
#SAP #NetWeaver #webshell #framework #CyberSecurity #CybersecurityNews #cyberattack
8/ Sucuri is seeing redirects to fake browser updates, #webshell backdoors fetching code from #GitHub, and JS hijackers replacing content or links. Keep those instances patched, clean up unused plugins/themes, and lock down admin accounts (MFA!).
RESURGE Malware Exploits Ivanti Flaw with Rootkit and Web Shell Features reconbee.com/resurge-malw...
#RESURGEmalware #malwareattack #ivanti #rootkit #webshell #malware #cyberattack
Malware nascosto nei MU-Plugins infetta WordPress con redirect, webshell e contenuti spam difficili da rilevare.
#cybersecurity #malware #MUPlugins #redirect #sicurezzasitiweb #spaminjection #webshell #Wordpress
www.matricedigitale.it/sicurezza-in...
Malware nascosto nei MU-Plugins infetta WordPress con redirect, webshell e contenuti spam difficili da rilevare.
#cybersecurity #malware #MUPlugins #redirect #sicurezzasitiweb #spaminjection #webshell #Wordpress
www.matricedigitale.it/sicurezza-in...
Malware nascosto nei MU-Plugins infetta WordPress con redirect, webshell e contenuti spam difficili da rilevare.
#cybersecurity #malware #MUPlugins #redirect #sicurezzasitiweb #spaminjection #webshell #Wordpress
www.matricedigitale.it/sicurezza-in...
Introducing ShellSweep, a powerful tool for #cybersecurity that employs entropy analysis to pinpoint potential webshell files in your directories. It focuses on common file types and offers customizable scanning options. Enhance your threat detection today! #threat #webshell
#webshell #opendir #netsupport #rat at:
appointedtimeagriculture\\.com/wp-includes/blocks/post-...
GatewayAddress=95.179.158.213:443
RADIUSSecret=dgAAAPpMkI7ke494fKEQRUoablcA
#webshell #opendir #netsupport #rat at:
https:// appointedtimeagriculture\.com/wp-includes/blocks/post-content/
GatewayAddress=95.179.158.213:443
RADIUSSecret=dgAAAPpMkI7ke494fKEQRUoablcA
๐ Malware: In at least one of the appliances undergoing analysis, @Mandiant observed the deployment of the previously observed SPAWN ecosystem of malware (which includes the SPAWNANT installer, SPAWNMOLE tunneler and the SPAWNSNAIL SSH backdoor) #Malware #Webshell
Screenshot from one of my web server logs showing the HTTP GET request with a URL for the PHP webshell.
URL for the PHP webshell opened in a web browser to get the PHP text file for this webshell.
VirusTotal results showing the file returned from that URL is a PHP webshell.
2024-12-04 (Wednesday): Reviewing my most recent web server access logs for my malware-traffic-analysis.net blog shows what looks like an attempt to get a PHP #webshell on my web server.
The URL for the PHP webshell is hxxp://1.14.123[.]164/ote.txt