Multiple malware families delivered exploiting GeoServer GeoTools flaw CVE-2024-36401
Security Affairs
SEPTEMBER 8, 2024
The researchers observed threat actors exploiting CVE-2024-36401 in attacks aimed at IT service providers in India, technology companies in the U.S., government entities in Belgium, and telecommunications companies in Thailand and Brazil. The backdoor is attributed to the China-linked Winnti (aka APT41 ) cyberespionage group.
Let's personalize your content