Beware of the Messengers, Exploiting ActiveMQ Vulnerability
In this Threat Analysis Report, Cybereason Security Services examines an incident on a Linux server, which saw malicious shell (bash) executions from a Java process running Apache ActiveMQ.

Fred O'Connor
This week Cybereason Lab released research discussing how the group behind Kovter malware is upgrading this threat to carry out more malicious activity. These upgrades provide the hackers with complete control over high-valued corporate assets, which are later sold on the dark Web to nation-states, groups engaged in financial cyber crime or hacktivist gangs. We've seen this attack targeting the networks of some Fortune 500 companies.
In our latest research report, we dissect an attack that stood out for how quickly the hackers were able to prepare the asset for sale. Here's what SC Magazine had to say about this discovery.
Fred is a Senior Content Writer at Cybereason who writes a variety of content including blogs, case studies, ebooks and white papers to help position Cybereason as the market leader in endpoint security products.
In this Threat Analysis Report, Cybereason Security Services examines an incident on a Linux server, which saw malicious shell (bash) executions from a Java process running Apache ActiveMQ.
In this Threat Analysis report, Cybereason Security Services investigate the rising activity of the malware GootLoader. GootLoader is a malware loader known to abuse JavaScript to download post-exploitation malware/tools and persist within the infected machine.
In this Threat Analysis Report, Cybereason Security Services examines an incident on a Linux server, which saw malicious shell (bash) executions from a Java process running Apache ActiveMQ.
In this Threat Analysis report, Cybereason Security Services investigate the rising activity of the malware GootLoader. GootLoader is a malware loader known to abuse JavaScript to download post-exploitation malware/tools and persist within the infected machine.
Get the latest research, expert insights, and security industry news.
Subscribe