Nov. 2, 2023, 7 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Threat actors are targeting a recently disclosed flaw in Apache ActiveMQ in order to attempt to deploy ransomware against targeted organizations.


Researchers with Rapid7 on Wednesday said that they have observed suspected exploitation of the remote code execution flaw (tracked as CVE-2023-46604) in two different customer environments. Apache disclosed this flaw and released patches for it on Oct. 25, and proof-of-concept exploit code is also available for the bug.


“Based on the ransom note and available evidence, we attribute the …

apache apache activemq code code execution customer cve cve-2023-46604 deploy environments exploitation flaw order organizations patches ransomware rapid7 remote code remote code execution researchers target targeting threat threat actors

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Computer and Forensics Investigator

@ ManTech | 221BQ - Cstmr Site,Springfield,VA

Senior Security Analyst

@ Oracle | United States

Associate Vulnerability Management Specialist

@ Diebold Nixdorf | Hyderabad, Telangana, India