Lucene search

K
hiveproHiveForce LabsHIVEPRO:1047DC1F7030353E0FB22774F01A0313
HistoryNov 22, 2023 - 4:54 a.m.

Kinsing Malware Utilizes Apache ActiveMQ RCE to Deploy Rootkits

2023-11-2204:54:01
HiveForce Labs
www.hivepro.com
33
kinsing
malware
apache activemq
rce
rootkits
cve-2023-46604
vulnerability
remote code execution
cryptocurrency miner
threat level red
hiveforce labs

AI Score

9.7

Confidence

High

EPSS

0.971

Percentile

99.8%

Summary: The Kinsing malware operator is actively taking advantage of the critical vulnerability CVE-2023-46604 in Apache ActiveMQ, an open-source message broker. The vulnerability allows remote code execution, facilitating deployment of Kinsing malware ( aka h2miner), which functions as a cryptocurrency miner. Threat Level - Red | Attack Report For a detailed threat advisory, download the pdf file here To receive real-time threat advisories, please follow HiveForce Labs on LinkedIn.