|
@campuscodi | |||||
|
Mini-scoop: Hackers exploited a zero-day in the Trend Micro OfficeScan antivirus to plant malicious files on Mitsubishi Electric servers
zdnet.com/article/trend-… pic.twitter.com/JL6vnxgJpz
|
||||||
|
||||||
|
Catalin Cimpanu
@campuscodi
|
24. sij |
|
Zero-day is CVE-2019-18187.
When Trend Micro patched the bug last year, the company warned that it was being abused in the wild.
success.trendmicro.com/solution/00015… pic.twitter.com/BWhwO3SoUv
|
||
|
|
||
|
Judy O'Leary
@JudyOLeary1
|
24. sij |
|
Jeebus ...
|
||
|
|
||
|
Jeremy Kirk
@Jeremy_Kirk
|
25. sij |
|
Nice scoop! I totally suspected this but couldn't quite nail it down.
|
||
|
|
||
|
Jeremy Kirk
@Jeremy_Kirk
|
25. sij |
|
Funny I looked at CVE-2019-18187 earlier this week and thought: "Nah, it wouldn't take them as long as three and half months from when they detected an intrusion to figure out it was actually a Trend Micro zero day." Doh.
|
||
|
|
||