Unknown threat agents have been linked to a malevolent initiative primarily focused on Japanese entities starting from January 2025.
“The perpetrator utilized the security issue CVE-2024-4577, an RCE vulnerability in the PHP-CGI setup of PHP running on Windows, in order to establish the first point of entry to the compromised systems,” as stated by Cisco Talos expert Chetan Raghuprasad in a detailed
“The perpetrator utilized the security issue CVE-2024-4577, an RCE vulnerability in the PHP-CGI setup of PHP running on Windows, in order to establish the first point of entry to the compromised systems,” as stated by Cisco Talos expert Chetan Raghuprasad in a detailed
