Shellshock in the Wild

  • 29 September 2014
  • 0 replies
  • 118 views

Userlevel 7
Badge +54
The topic Major Bash Vulnerability Affects Linux, UNIX, Mac OS X is going to be an going one for quite a while until all the security holes are finally plugged and as can be seen from this article the exploits are now in full swing.
 
Written by Michael Lin, James Bennett and David Bianco - September 27, 2014
 
The exploitation of the BASH bug, now widely referred to as “Shellshock”, is in full swing.  Attackers have mobilized—multiple proof-of-concept scripts are available, including a Metasploit module, making this vulnerability very accessible. The ease of exploitation, the simplicity of the vulnerability, and the extremely widespread install base of BASH, make this bug so deadly—and shows why enterprises need to apply patches as soon as possible. We have observed a significant amount of overtly malicious traffic leveraging BASH, including:
  • Malware droppers
  • Reverse shells and backdoors
  • Data exfiltration
  • DDoS
Full Article

0 replies

Be the first to reply!

Reply