More than 4,000 website vulnerabilities disabled thanks to expired domains

Báo Thanh niênBáo Thanh niên10/01/2025


According to BleepingComputer , two experts from the cybersecurity company watchTowr, Benjamin Harris and Aliz Hammond, discovered many expired domains that were used to control unauthorized access points around the world. By re-registering the above domains, the research team took control and prevented the website vulnerabilities from being exploited again in the future.

Hơn 4.000 lỗ hổng website bị vô hiệu nhờ tên miền hết hạn- Ảnh 1.

One of the expired website domains that was once a target for hackers has now been re-registered and its security vulnerabilities have been disabled.

To do this, the researchers set up a system to record requests from the malware involved. They found that the software was still running and sending requests from compromised systems, even if they were no longer actively operating. Through this, they identified a number of victims and popular access control software such as r57shell, c99shell, and China Chopper.

These unauthorized access points were installed on servers belonging to governments, universities, and large organizations around the world. The victims included systems in China, Thailand, South Korea, Nigeria, and Bangladesh. Among them, some systems of government agencies and courts in China were compromised.

The software varied in complexity, from advanced hacking tools used by organized hacker groups to simpler ones. This led researchers to suspect that many different groups were involved, with varying degrees of skill. Some source IP addresses were found to be linked to Hong Kong and China, but experts said these were likely just intermediary servers, not definitive proof of the origin of the attacks.

Some of the malware has been linked to the notorious Lazarus Group, but in this case, experts believe it may have been repurposed by other attackers.

At the time of publication, the number of vulnerabilities discovered was 4,000, but researchers warn that the actual number could be much higher as not all compromised systems have been identified. Taking control of and disabling these vulnerabilities is considered an important measure to prevent them from being exploited for malicious purposes in the future.



Source: https://thanhnien.vn/hon-4000-lo-hong-website-bi-vo-hieu-nho-ten-mien-het-han-185250110144809547.htm

Comment (0)

No data
No data

Same tag

Same category

Why is the upcoming Vietnamese blockbuster 'Snow White' receiving a strong reaction from the audience?
Phu Quoc in top 10 most beautiful islands in Asia
People's Artist Thanh Lam is grateful to her doctor husband, and "corrects" herself thanks to marriage
Welcome to Vietnam

Same author

Heritage

Figure

Business

No videos available

News

Ministry - Branch

Local

Product