March 20, 2024, 11:26 a.m. | info@thehackernews.com (The Hacker News)

The Hacker News thehackernews.com

Multiple threat actors are exploiting the recently disclosed security flaws in JetBrains TeamCity software to deploy ransomware, cryptocurrency miners, Cobalt Strike beacons, and a Golang-based remote access trojan called Spark RAT.
The attacks entail the exploitation of CVE-2024-27198 (CVSS score: 9.8) that enables an adversary to bypass authentication measures and gain administrative

access adversary attacks authentication bypass called cobalt cobalt strike cryptocurrency cryptomining cve cve-2024-27198 cvss cvss score deploy exploitation exploiting flaw flaws golang jetbrains jetbrains teamcity miners ransomware rat remote access remote access trojan score security security flaws software spark strike teamcity threat threat actors trojan

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Senior - Penetration Tester

@ Deloitte | Madrid, España

Associate Cyber Incident Responder

@ Highmark Health | PA, Working at Home - Pennsylvania

Senior Insider Threat Analyst

@ IT Concepts Inc. | Woodlawn, Maryland, United States