January 17th 2019, By Curtis Franklin Jr.
Multiple threat actors are using relatively simple techniques to take advantage of the vulnerability, launching cryptominers, skimmers, and other malware payloads.
Last month a code execution vulnerability
was found in the ThinkPHP framework, a rapid-development framework developed by Chinese firm TopThink. While the vulnerability, designated CVE-2018-20062
, was patched by the developer, a researcher has now found active exploits of the vulnerability in the wild.