• Home
  • Privacy Policy
  • Terms and Conditions
  • DMCA
  • Disclaimer
  • Contact us
Friday, July 11, 2025
No Result
View All Result
NEWSLETTER defal
Lebanon Hub
NEWSLETTER
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
No Result
View All Result
Lebanon Hub
No Result
View All Result

Patched Apache ActiveMQ bug abused to drop Godzilla web shells

January 22, 2024
in Cyber Security
0
Home Cyber Security
0
VIEWS
Share on FacebookShare on Twitter



Regardless of being hid inside an unknown kind of binary, the JSP code was picked and run by the Java net server as a sound script.

“Apparently, the Jetty JSP engine, which is the built-in net server in Apache ActiveMQ, truly parsed, compiled and executed the embedded Java code that was encapsulated within the unknown binary,” TrustWave stated. “Additional examination of the Java code generated by Jetty confirmed that the net shell code was transformed into Java code and due to this fact was executed.”

This assault technique can efficiently circumvent safety measures, evading detection by safety endpoints throughout scanning.

Godzilla deploys a multi-functional backdoor

As soon as the JSP code is efficiently deployed, risk actors can use the net shell by way of the Godzilla administration consumer interface to achieve full management over the goal system.

The Godzilla net shell contains a set of malicious functionalities, together with viewing community particulars, conducting port scans, executing MimiKatz and MeterPeter instructions, working shell instructions, remotely managing SQL databases, and injecting shellcode into processes.

Dropping Godzilla isn’t the primary abuse of the bug because it has been, since its public disclosure in Oct 2023, actively exploited by attackers for crypto mining, distant entry trojans and ransomware. Affected variations embrace Apache ActiveMQ 5.18.0 (earlier than 5.18.3), 5.17.0 (earlier than 5.17.6), 5.16.0 (earlier than 5.16.7), and Apache ActiveMQ earlier than 5.15.16.



Source link

Tags: AbusedActiveMQApacheBugDropGodzillapatchedshellsweb
Next Post
Microsoft says it was hit by Russian hackers who wanted to know its secrets

Microsoft says it was hit by Russian hackers who wanted to know its secrets

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Beirut, LB
14°
Cloudy / Wind
05:4017:50 EET
Feels like: 13°C
Wind: 34km/h SW
Humidity: 65%
Pressure: 1012.19mbar
UV index: 0
FriSatSun
14°C / 9°C
16°C / 11°C
18°C / 12°C
powered by Weather Atlas

Recent News

PlayStation Vita’s Greatest Hidden Game

PlayStation Vita’s Greatest Hidden Game

July 11, 2025
DnD rival Pathfinder is cooking up a fun, flexible co-op RPG to challenge BG3

DnD rival Pathfinder is cooking up a fun, flexible co-op RPG to challenge BG3

July 11, 2025
Raising investment in 2025 and Pokémon Go’s .8 billion milestone | Week in Views

Raising investment in 2025 and Pokémon Go’s $8.8 billion milestone | Week in Views

July 11, 2025
Travis Kelce’s new look gets fans talking after he marks ‘end’ of an era

Travis Kelce’s new look gets fans talking after he marks ‘end’ of an era

July 11, 2025
German backpacker Carolina Wilga found alive after 12 days missing in WA outback

German backpacker Carolina Wilga found alive after 12 days missing in WA outback

July 11, 2025
Prime Day last call: These 7 all-time-low Apple deals are still available

Prime Day last call: These 7 all-time-low Apple deals are still available

July 11, 2025
ISACA Addresses Experience Gap with CISA Associate Designation

ISACA Addresses Experience Gap with CISA Associate Designation

July 11, 2025
Finn Little Cast on ‘Yellowstone’ Beth/Rip Spinoff as Carter

Finn Little Cast on ‘Yellowstone’ Beth/Rip Spinoff as Carter

July 11, 2025
Lebanon Hub

Get the Latest Lebanon News and world News on LebanonHub.com. Local News, Sports, Technology, Music, Celebrity, Gaming News and Cryptocurrency Updates.

Category

  • Altcoin
  • Australia
  • Bitcoin
  • Blockchain
  • Celebrity
  • Cyber Security
  • Ethereum
  • Exchange
  • Litecoin
  • Local News
  • Mobile
  • Movies
  • Music
  • New Released
  • PC
  • PlayStation
  • Popular
  • Reviews
  • Sports
  • Startups
  • Technology
  • TV
  • XBOX

Recent News

PlayStation Vita’s Greatest Hidden Game

PlayStation Vita’s Greatest Hidden Game

July 11, 2025
DnD rival Pathfinder is cooking up a fun, flexible co-op RPG to challenge BG3

DnD rival Pathfinder is cooking up a fun, flexible co-op RPG to challenge BG3

July 11, 2025
  • Home
  • DMCA
  • Disclaimer
  • Privacy Policy
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2022 - Lebanon Hub.

No Result
View All Result
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up

Copyright © 2022 - Lebanon Hub.