Ransom & Dark Web Issues Week 1, Jun 2024

Ransom & Dark Web Issues Week 1, Jun 2024

ASEC Notes publishes Ransom & Dark Web Issues Week 1, Jun 2024      

Microsoft Office Outlook Vulnerability (CVE-2023-23397) Appearance and Manual Measure Guide

Microsoft Office Outlook Vulnerability (CVE-2023-23397) Appearance and Manual Measure Guide

AhnLab Security Emergency response Center (ASEC) recently published a notice about a Microsoft Office Outlook vulnerability. Warning for Microsoft Office Outlook Privilege Escalation Vulnerability (CVE-2023-23397)   CVE-2023-23397 is a vulnerability that leaks a user’s account credentials upon receiving an email and triggering a notification. The stolen information includes the ‘NTLM’

PlugX Malware Being Distributed via Vulnerability Exploitation

PlugX Malware Being Distributed via Vulnerability Exploitation

ASEC (AhnLab Security Emergency response Center) has recently discovered the installation of the PlugX malware through the Chinese remote control programs Sunlogin and Awesun’s remote code execution vulnerability. Sunlogin’s remote code execution vulnerability (CNVD-2022-10270 / CNVD-2022-03672) is still being used for attacks even now ever since its exploit code was

Cases of Attacks Targeting Vulnerable Atlassian Confluence Servers

Cases of Attacks Targeting Vulnerable Atlassian Confluence Servers

The ASEC analysis team has been monitoring attacks that are targeting vulnerable systems. This post will discuss cases of attacks targeting vulnerable Atlassian Confluence Servers that are not patched. Atlassian’s Confluence is a major collaboration platform used by many companies across the globe. Being a web-based platform, services such as