Microsoft says hacker group is exploiting new Atlassian 0day vulnerability

According to technology media Techcrunch , Microsoft's threat intelligence team posted on X (formerly Twitter) that it observed a hacker group named Storm-0062 exploiting a recently disclosed key in Atlassian Confluence data centers and servers. defect.

Atlassian disclosed a vulnerability in its Confluence data center and servers on October 4: CVE-2023-22515 .

Microsoft's security team said it had observed the exploit since September 14. Atlassian updated its security notice this week noting that the flaw is being actively exploited and that it could allow a remote attacker to create unauthorized administrator accounts to access Confluence servers .

Guess you like

Origin www.oschina.net/news/261452/atlassian-zero-day