Microsoft Confirms Chinese State-Backed Atlassian Confluence Attacks

Microsoft has revealed that a Chinese-backed threat group, known as Storm-0062, is currently exploiting a critical zero-day vulnerability in Atlassian Confluence Server and Confluence Data Center. The proof-of-concept exploits for this vulnerability are now publicly available, raising the alarming possibility of mass exploitation. Last week, Atlassian acknowledged the remotely exploitable privilege-escalation vulnerability (CVE-2023-22515) that affects…

The post Microsoft Confirms Chinese State-Backed Atlassian Confluence Attacks appeared first on Petri IT Knowledgebase.

Continue reading Microsoft Confirms Chinese State-Backed Atlassian Confluence Attacks

Critical Atlassian Confluence vulnerability exploited by state-backed threat actor

A critical flaw in Atlassian Confluence Data Center and Server (CVE-2023-22515) has been exploited by a state-backed threat actor, Microsoft’s threat analysts have pinpointed. About the vulnerability CVE-2023-22515 was initially classified as a c… Continue reading Critical Atlassian Confluence vulnerability exploited by state-backed threat actor

Microsoft Blames Nation-State Threat Actor for Confluence Zero-Day Attacks

Microsoft says an APT group tracked as Storm-0062 has been hacking Confluence installations since mid-September, three weeks before Atlassian’s disclosure.
The post Microsoft Blames Nation-State Threat Actor for Confluence Zero-Day Attacks appeared fir… Continue reading Microsoft Blames Nation-State Threat Actor for Confluence Zero-Day Attacks

Critical Atlassian Confluence zero-day exploited by attackers (CVE-2023-22515)

Atlassian has fixed a critical zero-day vulnerability (CVE-2023-22515) in Confluence Data Center and Server that is being exploited in the wild. “Atlassian has been made aware of an issue reported by a handful of customers where external attacker… Continue reading Critical Atlassian Confluence zero-day exploited by attackers (CVE-2023-22515)

Atlassian Ships Urgent Patch for Exploited Confluence Zero-Day

Atlassian confirms that “a handful of customers” were hit by exploits targeting a remotely exploitable flaw in its Confluence Data Center and Server products.
The post Atlassian Ships Urgent Patch for Exploited Confluence Zero-Day appeared first on Sec… Continue reading Atlassian Ships Urgent Patch for Exploited Confluence Zero-Day

Bamboo CI/CD tool review

A review of the continuous integration and delivery tool, Bamboo CI/CD. Learn about its features, benefits, and pricing.
The post Bamboo CI/CD tool review appeared first on TechRepublic.
Continue reading Bamboo CI/CD tool review

Cloudflare integrates with Atlassian, Microsoft, and Sumo Logic to boost zero trust security

Cloudflare announced new integrations with Atlassian, Microsoft, and Sumo Logic to help businesses of any size secure the tools and applications they rely on with enterprise-ready zero trust security. Now businesses will be able to use security insight… Continue reading Cloudflare integrates with Atlassian, Microsoft, and Sumo Logic to boost zero trust security