New Oracle WebLogic zero-day discovered in the wild

General News

Summary

Security researchers have spotted a new zero-day vulnerability impacting the Oracle WebLogic server that is currently being targeted in the wild. Activity on this front is bound to change in the upcoming weeks, with hackers moving from scanning and probing vulnerable servers to full-on attacks. For example, a hacker group made over $226,000 worth of Monero in late 2017 by exploiting CVE-2017-10271, another Oracle WebLogic flaw, also impacting the WSL-WSAT component. Over the past year and a half, Oracle WebLogic servers have been targeted incessantly, especially by criminal groups engaged in crypto-mining operations. This is because Oracle WebLogic servers usually have access to huge amounts of resources, but also because they are extremely popular, making them easy to find and a prime target for any hacker.

Classifications

industries
Fintech & Banking
applications
Business Intelligence

AskAI Classifications

Labels
Enterprise Software Database Software Cloud Computing

Linked Companies

Oracle
$1B+
Waratek
$1M to $5M