16 Dec 2013

Attackers exploited ColdFusion vulnerability to install Microsoft IIS malware

Author: AndraCOFuztit | Filed under: News

Attackers exploited a vulnerability in Adobe ColdFusion to install data-stealing malware that works as a module for Microsoft’s Internet Information Services (IIS) Web server software. Researchers from security firm Trustwave recently reported they’ve identified IIS (Internet Information Server) Web servers infected with malicious IIS modules designed to steal information submitted by users on websites hosted on those servers. The modules are rogue DLL (dynamic link library) files and were installed by a malware program the Trustwave researchers dubbed ISN that infects both 32-bit and 64-bit versions of IIS6 and IIS7+

Taken from:
Attackers exploited ColdFusion vulnerability to install Microsoft IIS malware

Tags: , , , , , , , ,

Leave a Reply