Patch Now: New Mirai, Gafgyt Variants Target 16 Flaws Via Multi-Exploits
[Read: The Equifax Breach: What to do now and what to watch out for]
One of the targets of the new Mirai variant is , a known remote code execution (RCE) vulnerability in Apache Struts that attackers exploited with Object Graph Navigation Language (OGNL). The remaining 15 vulnerabilities include RCE flaws and an OS command injection security glitch in enterprise-used routers, NVRs, CCTVs and DVRs. The Gafgyt samples exploit , a flaw found in unsupported versions caused by insufficient sanitization of the remote procedure call (XML-RPC).
?[Read: Critical Remote Code Execution vulnerability (CVE-2018-11776) found in Apache Struts]
Researchers uncovered that the Mirai samples were recently moved to a domain with an IP address also hosting the new variants of Gafgyt. ?Additionally, these activities may serve as a warning that the incorporation of these multi-exploits for IoT and Linux botnets could indicate that the attackers are moving from consumer devices to enterprise targets with outdated versions, since organizations use the open source application framework to develop Java EE web applications. Left unchecked and unpatched, attackers could use these devices in distributed denial of service (DDoS) campaigns.
[Read: ]
Patches released for earlier vulnerabilities should be updated as soon as possible. Additionally, make sure that your home network security is updated, as a compromised home device can also expose enterprise assets to risks. Here are some suggestions to improve your digital security hygiene:
- Update your software and firmware to prevent vulnerability exploits.
- Change your devices' default security credentials to prevent unauthorized access.
- Enable the routers’ built-in firewall.
- Download and use software and applications from legitimate app stores and vendors, especially if your IoT devices connect to mobile devices.
live casino online Solutions
The?live casino online??Deep Security? solution provides?virtual patching?that protects gateways, servers and endpoints from threats that abuse vulnerabilities in critical applications such as Apache Struts. The?live casino online??TippingPoint? system provides virtual patching and extensive??against network-exploitable vulnerabilities via?Digital Vaccine? filters.?
The live casino online Smart Home Network??has protected customers from these threats since 2017 via these rules:
1133528 WEB Apache Struts 2 Remote Code Execution -1.1 (CVE-2017-5638)1133529 WEB Apache Struts 2 Remote Code Execution -1.2 (CVE-2017-5638)
1133530 WEB Apache Struts 2 Remote Code Execution -2.1 (CVE-2017-5638)
1133531 WEB Apache Struts 2 Remote Code Execution -2.2 (CVE-2017-5638)
1133532 WEB Apache Struts 2 Remote Code Execution -2.3 (CVE-2017-5638)
live casino online??Deep Discovery??protects customers from this threat via these Deep Discovery Inspector (DDI) rules:
2623 - Remote Code Execution - HTTP (Request) - Variant 2
2745 - CVE-2018-9866 SonicWall XML RPC Remote Code Execution? Exploit? - HTTP (Request)
Like it? Add this infographic to your site:
1. Click on the box below. 2. Press Ctrl+A to select all. 3. Press Ctrl+C to copy. 4. Paste the code into your page (Ctrl+V).
Image will appear the same size as you see above.
Recent Posts
- Unveiling AI Agent Vulnerabilities Part I: Introduction to AI Agent Vulnerabilities
- The Ever-Evolving Threat of the Russian-Speaking Cybercriminal Underground
- From Registries to Private Networks: Threat Scenarios Putting Organizations in Jeopardy
- Trend 2025 Cyber Risk Report
- The Future of Social Engineering