March 21, 2024, 1:05 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Threat actors have been exploiting a critical JetBrains flaw - disclosed and fixed earlier in March - in widespread attacks that have deployed ransomware, backdoors and cryptocurrency miners on compromised systems.


The JetBrains flaw (CVE-2024-27198), an authentication bypass in the web component of the TeamCity continuous integration and continuous deployment (CI/CD) server, can be exploited by unauthenticated attackers for remote code execution. The flaw was initially patched on March 4, along with another bug (CVE-2024-27199), in version 2023.11.4. Shortly after …

attacks authentication authentication bypass backdoors bypass can compromised continuous continuous integration critical cryptocurrency cve cve-2024-27198 deployment exploiting flaw integration jetbrains march miners ransomware server systems teamcity the web threat threat actors web

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Data Privacy Manager m/f/d)

@ Coloplast | Hamburg, HH, DE

Cybersecurity Sr. Manager

@ Eastman | Kingsport, TN, US, 37660

KDN IAM Associate Consultant

@ KPMG India | Hyderabad, Telangana, India

Learning Experience Designer in Cybersecurity (f/m/div.) (Salary: ~113.000 EUR p.a.*)

@ Bosch Group | Stuttgart, Germany

Senior Security Engineer - SIEM

@ Samsara | Remote - US