The Latest in IT Security

Elastix VoIP systems targeted by massive malware campaign

18
Jul
2022
Elastix VoIP systems targeted by massive malware campaign

image credit: adobe stock

A number of different threat actors have attacked VoIP(opens in new tab) telephony servers belonging to Elastix with more than 500,000 different malware(opens in new tab) samples between December 2021 and March 2022, researchers have claimed.

Elastix is a unified communications server software, bringing together IP PBX, email, IM, faxing and collaboration tools.

The researchers are speculating the attackers exploited CVE-2021-45461, a high-severity (9.8) vulnerability that allows for remote code execution. Their goal was to set up a PHP web shell that would allow them to run arbitrary code on the compromised endpoints.

Read More

Comments are closed.

Categories

SATURDAY, APRIL 20, 2024
WHITE PAPERS

Mission-Critical Broadband – Why Governments Should Partner with Commercial Operators:
Many governments embrace mobile network operator (MNO) networks as ...

ARA at Scale: How to Choose a Solution That Grows With Your Needs:
Application release automation (ARA) tools enable best practices in...

The Multi-Model Database:
Part of the “new normal” where data and cloud applications are ...

Featured

Archives

Latest Comments